Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157329
Websites
130
Industries
113
Countries
52
Avg Score
Page 247 of 800|Showing 12301-12350 of 39982
spreadshirt.com favicon

Spreadshirt

spreadshirt.com

65
E-commerceN/alargeMEDIUM

Spreadshirt operates a global print-on-demand e-commerce platform specializing in custom apparel, accessories, and home products. The website offers users the ability to create personalized products or shop from a wide range of designs. It targets a broad audience interested in unique, customizable merchandise and serves both individual consumers and corporate clients through its Pro services. The platform is well-established with a consistent brand presence and a comprehensive online help center to support customers. Technically, the website employs modern JavaScript frameworks and libraries such as Glide.js for UI components and OneTrust for cookie consent management, indicating a mature digital infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, with integrations for analytics and marketing tools like Adobe AppMeasurement and Trustpilot. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks explicit security headers and publicly available security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The absence of WHOIS registration data for the domain is a notable anomaly, potentially due to privacy protection or alternative domain registration, which slightly impacts trustworthiness. Overall, Spreadshirt's website is professional, secure, and privacy-compliant, with strong business credibility. Strategic improvements in security transparency and domain registration clarity would enhance trust and compliance posture.

35
53
2
80
95
75
100
e-commerceprintondemandcustomapparelretailonlineshopping+2 more
JavaScriptGlide.jsOneTrust Cookie ConsentTrustpilot Widget+1

Partner Domains:

help.spreadshirt.com
service
boards.eu.greenhouse.io
partner

+1 more partners

2025-10-12T18:58:56.830Z
reimaginebuildings.com favicon

Reimagine Buildings Collective

reimaginebuildings.com

70
EnergyN/asmallMEDIUM

The Reimagine Buildings Collective is a specialized online community platform that connects builders, designers, and changemakers focused on creating healthy, climate-ready buildings. The platform offers peer-to-peer learning, collaborative cohorts called Reimagine Labs, and a rich repository of member stories and testimonials. It targets professionals dedicated to sustainable building practices and aims to foster connection, clarity, and confidence among its members. Technically, the website leverages modern web technologies including HTML5, CSS3, JavaScript, and video streaming via Cloudflare, hosted on the Mighty Networks platform. Analytics and tracking are implemented through Google Analytics, Bing UET, and TrackJS, indicating a moderate level of user behavior monitoring. Security posture is generally good with HTTPS enforced and CSRF protections, but lacks some recommended security headers and visible privacy or cookie policies, which are areas for improvement. The domain WHOIS data for the subdomain is unavailable, which is typical for subdomains, and does not detract from the legitimacy of the platform. Overall, the website is professional, trustworthy, and well-positioned within its niche, though it would benefit from enhanced privacy disclosures and security headers to improve compliance and security posture.

65
80
25
70
52
85
100
sustainabilitybuildingcommunityclimateeducation+1 more
HTML5CSS3JavaScriptVideo.js+4
2025-10-12T18:58:51.819Z
ebay.com favicon

eBay Inc.

ebay.com

71
E-commerceUnited StatesenterpriseMEDIUM

eBay Inc. operates a leading global e-commerce platform facilitating consumer-to-consumer and business-to-consumer sales worldwide. Founded in 1995, it has established a strong market position with a multibillion-dollar business and operations in approximately 30 countries. The website offers a wide range of products including electronics, cars, fashion, collectibles, and more, targeting a broad audience of consumers and businesses. The business model centers on providing an online marketplace where buyers can shop for free while sellers pay listing and transaction fees. Technically, the website employs modern web technologies such as Marko.js, lazy loading, and extensive JavaScript for dynamic content and performance optimization. The site is well-optimized for mobile devices, accessible, and SEO-friendly. Security is robust with HTTPS enforced, multiple security headers, and client-side error monitoring. Privacy compliance is strong, featuring comprehensive privacy and cookie policies with GDPR adherence and a consent mechanism. The security posture is mature, with no evident vulnerabilities or exposed sensitive data. However, explicit security policies, incident response details, and vulnerability disclosure programs are not publicly documented on the site. The WHOIS data is unavailable due to registry restrictions, which is unusual but likely a privacy measure rather than a red flag. Overall, the site demonstrates high professionalism, trustworthiness, and operational maturity. Strategic recommendations include publishing detailed security and incident response policies, establishing a vulnerability disclosure program, and enhancing transparency around data protection officers and certifications to further strengthen trust and compliance.

-
100
17
87
82
90
100
e-commercemarketplaceretailonlineshoppingconsumer-to-consumer+1 more
JavaScriptMarko.jsBeacon APILazy loading+1

Partner Domains:

export.ebay.com
partner
2025-10-12T18:58:16.688Z
megizumstein.ch favicon

Megi Zumstein

megizumstein.ch

51
OtherSwitzerlandsmallMEDIUM

Megi Zumstein is a graphic designer based in Luzern, Switzerland, presenting a professional portfolio website showcasing various cultural and artistic projects. The website targets a general audience interested in graphic design and cultural collaborations, positioning itself as a niche individual professional service provider. The site features modern frontend technologies such as Alpine.js and SVG graphics, with a responsive design and good navigation clarity. However, it lacks comprehensive privacy and cookie policies, contact information, and security headers, which are important for compliance and trust. Technically, the website is built with modern web standards, uses HTTPS, and loads efficiently, but it could benefit from improved accessibility features and security best practices such as implementing security headers. No analytics or tracking scripts were detected, indicating minimal user tracking and good privacy from that perspective. From a security standpoint, the site has a good SSL configuration but lacks security headers and formal policies related to privacy and incident response. The domain uses privacy protection for WHOIS data, which is reasonable for a small business or individual professional. No suspicious patterns or vulnerabilities were identified in the content or technical setup. Overall, the website is professional and functional but would benefit from enhanced privacy compliance, security hardening, and clearer contact information to improve trust and regulatory adherence.

25
50
2
70
95
75
20
graphicdesignportfolioculturalprojectsswitzerlandalpinejs+1 more
JavaScriptAlpine.jsSVGCSS
2025-10-12T18:57:56.643Z
M

mikhail lychkovskiy

lychkovskiy.com

57
OtherN/asmallMEDIUM

The website lychkovskiy.com serves as a professional portfolio for Mikhail Lychkovskiy, a contemporary designer and poster artist. The site showcases a comprehensive gallery of poster artworks, emphasizing typographic treatment and a blend of national graphic styles. The business operates primarily as an independent artist, targeting design enthusiasts and art collectors, with sales facilitated through external shop links. The domain is relatively new, registered in 2022, aligning with the artist's career timeline. Technically, the website is built on the Adobe Portfolio platform, utilizing modern web technologies such as HTML5, CSS3, JavaScript, and Adobe Typekit fonts. Google Tag Manager is employed for analytics and tracking purposes. The site demonstrates good mobile optimization and user experience, with clear navigation and professional design quality. However, accessibility features are basic, and SEO optimization is moderate. From a security perspective, the site uses HTTPS with a valid SSL certificate and has domain transfer protections in place. However, DNSSEC is not enabled, and no security headers were detected, indicating room for improvement in security hardening. Privacy compliance is lacking, with no privacy or cookie policies found, and no GDPR compliance indicators present. Contact information is limited to a single email address, with no phone numbers or physical addresses provided. Overall, the website presents a trustworthy and professional portfolio for an independent artist but would benefit from enhanced privacy policies, security headers, and clearer compliance documentation to improve its security posture and regulatory adherence.

35
35
2
70
62
75
100
posterdesigngraphicdesignarttypographyportfolio+1 more
HTML5CSS3JavaScriptGoogle Tag Manager+1
2025-10-12T18:57:51.490Z
linyouting.com favicon

linyouting

linyouting.com

51
OtherN/asmallMEDIUM

The website linyouting.com serves as a personal portfolio for Youting Lin, a multidisciplinary designer specializing in graphic design and motion graphics. The site showcases various creative projects and visual works, targeting a general audience interested in design and multimedia art. The business model is primarily portfolio-based, aimed at personal branding and showcasing creative skills. The market position is niche, focusing on creative professionals and potential clients in the design industry. Technically, the site is built on the Cargo Collective platform, utilizing standard web technologies such as HTML5, CSS3, JavaScript, and jQuery. The site is hosted on Cargo's infrastructure with assets served from freight.cargo.site and static.cargo.site. The site is mobile optimized with good design quality and user experience, though some SEO and accessibility features are basic. From a security perspective, the site uses HTTPS with a valid SSL certificate and has domain transfer protection enabled. However, DNSSEC is not enabled, and no security headers are detected in the HTML content, which are areas for improvement. There are no published privacy, cookie, or terms of service policies, nor any incident response or security contact information, indicating limited compliance and transparency. Overall, the site is a well-designed personal portfolio with moderate technical maturity and security posture. The lack of privacy and security policies, as well as contact information, reduces trust and compliance scores. Strategic improvements in these areas would enhance the site's professionalism and security stance.

15
50
2
40
52
75
100
graphicdesignmotiongraphicsportfoliocreativedesigner
HTML5CSS3JavaScriptjQuery+1
2025-10-12T18:56:55.736Z
lynnsohn.com favicon

Lynn Oh

lynnsohn.com

50
MediaUnited StatessmallMEDIUM

Lynn Oh's website is a professionally designed portfolio showcasing her multidisciplinary graphic design expertise, including identity, typography, and motion graphics. The site highlights collaborations with prestigious agencies and clients such as Instagram, COLLINS, Pentagram, Apple, and Nike, positioning her as an established creative professional in the media industry. The business model is focused on personal branding and freelance/contract design services targeting creative industry professionals and potential clients. Technically, the website is built on the Cargo Collective platform using modern web standards including HTML5, CSS3, and JavaScript, with custom fonts loaded from WebType. The site is mobile optimized and performs moderately well, though accessibility and SEO optimizations are basic. Hosting and domain registration are consistent and reputable, with HTTPS enabled and domain transfer protections in place. From a security perspective, the site benefits from HTTPS and domain transfer lock but lacks DNSSEC and security headers, which are recommended for enhanced protection. There are no privacy or cookie policies, nor vulnerability disclosure mechanisms, indicating gaps in compliance and security transparency. No analytics or tracking scripts were detected, suggesting minimal user tracking. Overall, the website is safe, professional, and trustworthy with excellent content quality and business credibility. However, improvements in privacy compliance, security headers, and disclosure policies would strengthen its security posture and regulatory adherence.

15
35
2
40
52
75
100
HTML5CSS3JavaScriptCargo Collective platform+1
2025-10-12T18:56:50.720Z
studiotillackknoell.com favicon

Studio Tillack Knöll

studiotillackknoell.com

48
OtherGermanysmallHIGH

Studio Tillack Knöll is a small, specialized design practice based in Stuttgart, Germany, focusing on visual communication, spatial design, and graphic design services. Their portfolio includes exhibitions, wayfinding systems, book design, branding, and digital experiences for clients in architecture, art, science, commerce, cultural institutions, and NGOs. The website presents a professional and well-structured portfolio with recent activity and project showcases, indicating an active and reputable studio with international recognition. Technically, the website is built on WordPress with modern JavaScript libraries such as Swiper.js and SEO enhancements via Yoast SEO. The site is mobile-optimized and performs moderately well, though accessibility features are basic. Hosting is inferred to be with GoDaddy.com, LLC, consistent with the domain registrar data. Security posture is adequate with HTTPS enabled and no exposed sensitive data, but lacks security headers and DNSSEC. Privacy compliance is weak due to the absence of privacy and cookie policies and no consent mechanisms. Contact information is primarily via a contact form and physical address; no direct emails or phone numbers are publicly listed. Overall, the website is professional and trustworthy but would benefit from improved privacy compliance and enhanced security headers to strengthen its security posture and regulatory adherence.

15
50
2
75
62
80
20
designgraphicdesignvisualcommunicationexhibitiondesignwayfinding+4 more
WordPressSwiper.jsYoast SEOJavaScript+1
2025-10-12T18:56:25.386Z
raffinerie.com favicon

Raffinerie AG für Gestaltung

raffinerie.com

47
MediaSwitzerlandsmallHIGH

Raffinerie AG für Gestaltung is a well-established design agency based in Zürich, Switzerland, specializing in branding, digital, and editorial design services. The company has a strong portfolio featuring notable clients such as Helsana, Greenpeace, and Zürcher Kantonalbank, positioning itself as a reputable player in the media and creative design sector. The website reflects a professional and consistent brand image, targeting businesses and organizations seeking high-quality design solutions. Technically, the website is built on modern web technologies including HTML5, CSS3, JavaScript, and Alpine.js, hosted on infrastructure associated with Metanet AG. It is optimized for mobile devices and demonstrates good performance and accessibility standards. The use of Google Tag Manager and Vimeo embeds indicates a mature digital marketing and content delivery approach. From a security perspective, the site employs HTTPS with a valid SSL certificate and has domain transfer protections in place. However, it lacks DNSSEC and security headers, which are recommended to enhance security posture. Privacy compliance is basic, with a cookie policy present but no active consent mechanism or detailed GDPR compliance indicators. No incident response or security policy pages were found. Overall, the website is trustworthy and professionally maintained, with minor improvements recommended in security headers and privacy compliance to strengthen its security and regulatory posture.

20
50
2
70
72
75
-
designbrandingdigitaleditorialportfolio+3 more
HTML5CSS3JavaScriptAlpine.js+2
2025-10-12T18:55:55.324Z
E

Eilean Friis-Lund

eileanfriislund.ch

46
OtherN/asmallHIGH

Eilean Friis-Lund's website serves as a personal graphic design portfolio showcasing a gallery of images. The site targets individuals or businesses interested in graphic design services or artistic inspiration. The business model appears to be a personal brand portfolio aimed at attracting clients or commissions within a niche market. The website is small-scale with basic content quality and consistent branding. Technically, the site is built with standard HTML5, CSS3, and JavaScript without any detected frameworks or CMS. It features a responsive design optimized for mobile devices and moderate performance. However, there is a lack of advanced SEO and accessibility features, and no hosting or platform details are evident. From a security perspective, the site lacks essential security headers and published policies such as privacy or cookie policies. The absence of HTTPS information and incident response contacts indicates a low security posture. No vulnerabilities or tracking technologies were detected, but improvements are needed to enhance compliance and trust. Overall, the website presents a moderate risk profile primarily due to missing privacy and security policies and limited business information. Strategic recommendations include implementing security headers, publishing privacy and cookie policies, enforcing HTTPS, and adding incident response contacts to improve trust and compliance.

25
50
2
70
85
60
20
graphicdesignportfoliopersonalwebsiteartcreative
HTML5CSS3JavaScript
2025-10-12T18:55:40.284Z
B

Bento

bentonow.com

75
TechnologyUnited StatessmallMEDIUM

Bento is a technology company offering a comprehensive email marketing and CRM platform tailored for small businesses. Founded in 2019, Bento provides an all-in-one solution that includes marketing automation, transactional email services, AI-powered CRM features, and spam protection. The company positions itself as a user-friendly and developer-friendly platform with strong deliverability and enterprise-grade security, evidenced by its SOC 2 Type II compliance. The website reflects a modern, professional brand with clear messaging and a focus on ease of use and integration capabilities. Technically, Bento's website is built using modern web technologies including React and Next.js, hosted with Cloudflare DNS and leveraging cloud media services. The site is fast, mobile-optimized, and accessible, with good SEO practices and structured data enhancing search visibility. Security best practices are observed with HTTPS enforcement, security headers, and domain registration protections, although DNSSEC is not enabled. Privacy compliance is an area for improvement as no explicit privacy or cookie policies are present. From a security perspective, Bento demonstrates a mature posture with SOC 2 Type II certification and features like Spam Shield to maintain email list hygiene. No vulnerabilities or exposed sensitive data were detected in the analysis. However, the absence of published security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for enhancing transparency and readiness. Overall, Bento presents a trustworthy and professional online presence with strong technical and security foundations. To further improve, the company should address privacy compliance gaps, publish comprehensive policies, and enhance contact options to build greater user trust and regulatory adherence.

30
85
55
85
75
85
100
emailmarketingmarketingautomationcrmsmallbusinesstransactionalemail+2 more
ReactNext.jsCloudflare DNSJavaScript+2
2025-10-12T18:54:40.137Z
githubnext.com favicon

GitHub, Inc.

githubnext.com

68
TechnologyUnited StatesenterpriseMEDIUM

GitHub Next is a research and engineering team within GitHub, focusing on exploring the future of software development through prototyping innovative tools and technologies. Their work targets software developers and engineering teams, aiming to improve productivity and collaboration using AI and other advanced technologies. The website reflects a professional and enterprise-grade digital presence consistent with GitHub's brand and market position. Technically, the site is built using modern web technologies including Next.js and React, ensuring good performance, mobile optimization, and accessibility. The infrastructure appears robust with reputable DNS and hosting providers. However, some standard security practices like DNSSEC are not enabled, and security headers information is not available from the data. From a security perspective, the site uses HTTPS and domain registration protections, but lacks visible security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy and cookie policies are also absent, which may impact compliance with regulations like GDPR. No contact emails or phone numbers are provided, which limits direct communication channels. Overall, the website is trustworthy and professional but could improve in privacy compliance and security transparency. Strategic recommendations include publishing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact and incident response information.

50
35
47
70
82
80
100
technologysoftwaredevelopmentresearchaigithub+1 more
ReactNext.jsJavaScriptCSS+2
2025-10-12T17:51:06.835Z
pumpparty.com favicon

PumpParty - Goon for Cash

pumpparty.com

61
TechnologyN/asmallMEDIUM

PumpParty is a newly launched skill-based gaming platform targeting a Gen-Z audience interested in mobile games and live competitions for cash prizes. The website promotes weekly live gameshows and skill-based trading games accessible via a mobile app. The business model centers on engaging users through skill rather than luck, positioning itself in a niche market of competitive gaming. Technically, the website employs modern web standards with HTML5, CSS3, and JavaScript, and integrates PostHog analytics for user behavior tracking. Hosting and DNS services leverage Cloudflare infrastructure, providing reliable performance and DNS management. The site is mobile-optimized with smooth animations and responsive design, though accessibility features are basic. From a security perspective, the site uses HTTPS and has domain status protections to prevent unauthorized transfers or deletions. However, no security headers were detected, and DNSSEC is not enabled, representing areas for improvement. The absence of privacy, cookie, and terms of service policies, as well as lack of contact information, reduces compliance and trustworthiness. No forms or user input fields were found, limiting attack surface but also indicating limited direct user data collection on the site. Overall, the website is functional and professionally designed but lacks critical compliance and security disclosures. The domain is very new, consistent with a startup phase. Strategic recommendations include implementing privacy and cookie policies, adding security headers, enabling DNSSEC, and providing clear contact and incident response information to enhance trust and compliance.

15
50
2
85
100
70
100
skill-basedgaminglivegameshowsmobileappcashprizesgaming+1 more
HTML5CSS3JavaScriptPostHog Analytics+1
2025-10-12T17:48:45.616Z
stell-engineering.com favicon

Stell

stell-engineering.com

68
TechnologyUnited StatessmallMEDIUM

Stell is a US-based technology company specializing in secure requirements management software tailored for mission-critical and highly regulated industries such as aerospace and defense. Their platform transforms complex technical documentation into actionable workflows, emphasizing collaboration, compliance, and security. The company highlights its adherence to stringent government security standards including SOC 2 Type 2 certification, NIST 800-171 compliance, and holds an IL5 ATO under U.S. Space Force sponsorship, underscoring its commitment to security and trustworthiness. Technically, Stell's website is built on the Squarespace platform, leveraging modern web technologies including JavaScript, Typekit fonts, and embedded video players. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices, though some improvements are possible. The security posture is strong with HTTPS enforced and HSTS enabled, and no obvious vulnerabilities detected in the site content or scripts. However, the WHOIS data for the domain is missing or unavailable, which raises concerns about domain registration legitimacy. Additionally, the site lacks explicit privacy and cookie policies, as well as direct contact information, which are important for compliance and user trust. Marketing and analytics tools such as Google Tag Manager and LinkedIn Insight are used, indicating moderate user tracking. Overall, Stell presents as a professional and secure SaaS provider in a niche market, but should address privacy compliance gaps and verify domain registration details to enhance trust and regulatory adherence.

45
53
47
80
62
85
100
requirementsmanagementaerospacedefensesoftwaresecure+5 more
Squarespace CMSJavaScriptTypekit fontsGoogle Tag Manager+1
2025-10-12T17:47:48.888Z
E

Eye Magazine

eyemagazine.com

59
MediaUnited KingdomsmallMEDIUM

Eye Magazine is a niche print publication focused on graphic design and visual culture, targeting professionals and enthusiasts in the creative industry. The website serves as a portal for magazine content, subscription sales, event information, and blog updates. The business model relies on print magazine sales, subscriptions, and advertising revenue. The brand is established with a history dating back to 1990, positioning itself as a respected media outlet within its sector. Technically, the website employs standard web technologies including JavaScript, Google Tag Manager for analytics, and third-party advertising scripts from AdvertServe. The site is accessible and moderately optimized for performance and mobile devices, though improvements in accessibility and SEO could be made. No CMS or hosting provider details are evident from the source. From a security perspective, the site uses HTTPS but lacks visible security headers and formal privacy or cookie policies, which are important for compliance and user trust. No contact emails or incident response information are provided, limiting transparency. The absence of WHOIS data for the domain raises concerns about domain registration legitimacy, although the website content and branding appear professional and consistent. Overall, the website presents a professional front for Eye Magazine but would benefit from enhanced privacy compliance, security hardening, and transparency regarding domain registration and contact information to improve trust and reduce risk.

55
35
2
70
65
80
100
graphicdesignmagazinevisualculturemediaprintmagazine+3 more
JavaScriptGoogle Tag ManagerAdvertServe advertising scriptsFacebook SDK+1

Partner Domains:

eyemagazine.escosubs.co.uk
partner
2025-10-12T17:45:53.323Z