Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149092
Websites
130
Industries
113
Countries
52
Avg Score
Page 25 of 153|Showing 1201-1250 of 7624
upstatement.com favicon

Upstatement

upstatement.com

71
TechnologyUnited StatesmediumMEDIUM

Upstatement is a strategic digital studio founded in 2008, specializing in building digital products, large-scale platforms, editorial products, and brand design with a strong editorial mindset. The company serves established brands, historic institutions, visionary leaders, and mission-focused startups, boasting a notable client portfolio including Nike, Vogue, Microsoft, PBS News, MIT, and ESPN. Their market position is that of a reputable and experienced digital design and development partner with a focus on quality and storytelling. Technically, the website is built on Craft CMS, hosted by DreamHost, and employs modern web technologies including Google Analytics, Google Tag Manager, HubSpot Analytics, and Google reCAPTCHA Enterprise for form security. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses reCAPTCHA Enterprise to protect forms, and has domain transfer protections in place. However, DNSSEC is not enabled, and explicit security headers are not detected, indicating room for improvement. Privacy and cookie policies are present and GDPR compliant, but no explicit security policy or incident response information is published. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enabling DNSSEC, adding security headers, publishing a security policy, and establishing a vulnerability disclosure process to further enhance trust and security posture.

85
68
2
75
75
75
100
digitalproductswebsitedesignbranddesigneditorialdesignenterprisewebsites+1 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsreCAPTCHA Enterprise+2
2025-10-18T10:39:45.659Z
orsymphony.org favicon

Oregon Symphony

orsymphony.org

74
OtherUnited StatesmediumMEDIUM

Oregon Symphony is a well-established regional symphony orchestra with a long history dating back to 1896. The organization offers world-class concerts primarily serving the Portland and Salem, Oregon areas. Their website serves as the official source for ticket sales and information about their performances, targeting music enthusiasts and the general public interested in cultural events. The business model is typical of non-profit performing arts organizations, focusing on community engagement and ticketed events. Technically, the website employs modern JavaScript libraries and tracking tools such as Google Tag Manager, Cookiebot for consent management, and Braze for marketing automation. Hosting and DNS are managed via Cloudflare, providing performance and security benefits. The site is mobile-optimized with good SEO practices, though no explicit CMS was detected, suggesting a custom or proprietary platform. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks DNSSEC and security headers, which are recommended for enhanced protection. Cookie consent is implemented, indicating awareness of privacy regulations, but no explicit privacy policy or terms of service were found in the provided content. No vulnerability disclosure or incident response information is published, which could be improved to enhance trust and compliance. Overall, the website is professional, trustworthy, and serves its audience well. Strategic improvements in security headers, DNSSEC, and publishing privacy and security policies would strengthen its security posture and compliance readiness.

80
100
2
70
100
65
100
symphonymusicconcertsoregonarts+1 more
JavaScriptGoogle Tag ManagerCookiebotCloudflare DNS+2
2025-10-18T07:07:32.956Z
adventist.org favicon

General Conference Corporation of Seventh-day Adventists

adventist.org

68
Non-profitUnited StateslargeMEDIUM

The Seventh-day Adventist Church operates adventist.org as its official global online presence, providing comprehensive religious, educational, and humanitarian information and services. The website serves a worldwide Christian audience, offering resources on beliefs, church locations, prayer requests, and impact initiatives such as education and health. The organization is a large, well-established non-profit religious entity with a history dating back to the 19th century, reflected in the domain's long registration since 1996. Technically, the website employs modern web technologies including React and Next.js frameworks, supported by Cloudflare DNS and CDN services. It integrates multiple third-party analytics and marketing tools such as HubSpot and Google Tag Manager, ensuring robust performance, mobile optimization, and good SEO practices. The site is well-designed with excellent user experience and accessibility. From a security perspective, the site enforces HTTPS with strong domain registration protections, though DNSSEC is not enabled. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with a comprehensive privacy policy, cookie consent mechanisms, and GDPR adherence. Contact information and legal notices are clearly presented, enhancing business credibility. Overall, adventist.org demonstrates a mature digital infrastructure, strong security posture, and high content quality, supporting its mission as a trusted global religious organization. Strategic improvements could include enabling DNSSEC and publishing a formal security policy and vulnerability disclosure framework to further enhance trust and resilience.

30
83
17
70
72
85
100
religionnon-profiteducationhumanitarianchristianity+3 more
ReactNext.jsCloudflare DNSYouTube iframe API+3

Partner Domains:

adventistlocator.org
partner
adventist.news
partner

+1 more partners

2025-10-18T05:00:55.049Z
iba.org favicon

IBÁ - Indústria Brasileira de Árvores

iba.org

58
ManufacturingBrazilmediumMEDIUM

IBÁ - Indústria Brasileira de Árvores is a well-established association representing companies in the Brazilian forest sector, focusing on industrial tree planting and native reforestation. Founded in 2014, it serves as a key reference in the sector, providing data, advocacy, and promotion of sustainable forest management practices. The website reflects a professional and consistent brand presence targeting industry stakeholders and partners. Technically, the website is built on WordPress with modern technologies including jQuery, Google Tag Manager, and Google reCAPTCHA. Hosting and DNS are managed via reputable providers including GoDaddy and Cloudflare. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Performance is moderate with room for improvement. Security posture is adequate with HTTPS enabled and use of reCAPTCHA, but lacks DNSSEC and explicit security headers. No visible privacy, cookie, or incident response policies were found, indicating gaps in compliance and transparency. The domain registration is consistent and long-standing, supporting the legitimacy of the organization. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, security hardening, and clearer contact and incident response information to improve trust and regulatory adherence.

35
53
2
70
65
60
100
foresttreesbrazilsustainabilityindustry+2 more
WordPress 6.8.3jQuery 3.7.1Google Tag ManagerGoogle reCAPTCHA+1
2025-10-18T03:58:34.715Z
judotv.com favicon

Never miss a throw! - JudoTV

judotv.com

67
MediaN/asmallMEDIUM

JudoTV is a niche media streaming platform dedicated to the sport of Judo, offering live competitions, expert commentary, training tips, and community engagement. The website targets Judo enthusiasts and sports fans, positioning itself as a specialized destination for Judo content. The business appears to be small-sized with a long-standing domain registration dating back to 2004, indicating an established presence in its niche. Technically, the website employs modern JavaScript frameworks, likely Vue.js, and integrates third-party services such as YouTube for video playback, OneSignal for notifications, and Cookiebot for cookie consent management. Hosting and DNS services are provided via Cloudflare, ensuring reliable performance and security at the infrastructure level. The site demonstrates good mobile optimization and basic accessibility features, with moderate performance. From a security perspective, HTTPS is properly enabled, and cookie consent mechanisms are in place, reflecting awareness of privacy regulations. However, the absence of security headers, privacy policy, terms of service, and incident response contacts indicates areas for improvement in compliance and security posture. No vulnerabilities or suspicious elements were detected, and the domain registration details support the legitimacy of the business. Overall, JudoTV presents a professional and focused platform with good content quality and technical implementation but requires enhancements in privacy compliance, security best practices, and transparency to strengthen trust and regulatory adherence.

35
88
17
85
65
75
100
sportsjudostreamingmedialive+1 more
JavaScriptYouTube iframe APIOneSignal SDKCookiebot+1
2025-10-18T02:49:50.143Z
mobiri.se favicon

web design software

mobiri.se

43
TechnologyN/alargeHIGH

Mobirise is a well-established technology company founded in 2017 that offers a free, AI-powered no-code web design software targeting individuals and businesses seeking easy website creation solutions. The platform supports multiple operating systems including Windows, MacOS, Linux, and Android, and emphasizes features such as drag-and-drop editing, customizable templates, offline mode, and e-commerce integration. The company holds a strong market position with over 2.5 million users and positive expert and user reviews, reflecting a mature and trusted product offering. Technically, the website is built on modern web standards including Bootstrap 5 and uses Cloudflare for DNS management. The site is mobile-optimized, fast-loading, and SEO-friendly, with a clean and professional design. However, some compliance gaps exist due to the absence of visible privacy and cookie policies, and no explicit security headers are detected, which could be improved to enhance security posture and regulatory adherence. From a security perspective, the site uses HTTPS with good SSL configuration and does not expose sensitive data or vulnerable libraries. The domain registration is consistent and long-term, supporting the legitimacy of the business. No WAF or blocking mechanisms interfere with content access, allowing full analysis. Overall, the security posture is good but could benefit from additional security headers and formalized privacy and incident response policies. The overall risk is low with strong business credibility and technical maturity. Strategic recommendations include implementing comprehensive privacy and cookie policies, adding security headers, and publishing vulnerability disclosure and incident response information to further enhance trust and compliance.

15
10
17
70
-
50
100
aiwebdesignnocodewebsitebuildertemplates+3 more
HTML5CSS3Bootstrap 5JavaScript+2
2025-10-18T00:52:36.405Z
deliveroo.hk favicon

Deliveroo

deliveroo.hk

62
TransportationHong KonglargeMEDIUM

Deliveroo is a global online food delivery platform that previously operated in the Hong Kong market but has now exited, as clearly stated on the website. The platform connects customers with local restaurants and takeaways, offering convenient food delivery services. The website maintains consistent branding and provides links to other international Deliveroo domains, reflecting its broad market presence. The Hong Kong site serves primarily as an informational landing page to communicate the market exit and thank customers and partners. Technically, the website is built using modern web technologies including React and Next.js, hosted behind Cloudflare DNS and CDN services, and incorporates cookie consent mechanisms via OneTrust. Security posture is good with HTTPS enforced and some security-related scripts in use, though explicit security headers and policies are not publicly documented. Privacy compliance is partial, with a cookie consent banner present but no visible privacy policy or terms of service on the landing page. Contact information such as emails or phone numbers is not directly available on the page. Overall, the site is professional and trustworthy but could improve transparency around privacy and security policies.

60
80
25
82
-
70
100
fooddeliverye-commercetransportationcookieconsentreact+2 more
React (Next.js)Cloudflare DNSOneTrust Cookie ConsentPolyfill.io+3

Partner Domains:

deliveroo.co.uk
related
deliveroo.com.au
related

+1 more partners

2025-10-17T22:35:36.889Z
travelminit.ro favicon

Travelminit.ro - Îți rezervăm cazarea

travelminit.ro

56
HospitalityRomaniamediumMEDIUM

Travelminit.ro is an established Romanian online travel agency specializing in accommodation bookings including hotels, guest houses, apartments, and wellness packages primarily targeting Romanian-speaking travelers. The website offers a VIP membership program with discounts and features extensive user reviews and promotional campaigns, positioning itself as a trusted regional player in the hospitality and e-commerce sectors. The domain is well aged since 2010, indicating a mature business presence. Technically, the website employs a modern technology stack including Google Tag Manager, Google Analytics (both GA3 and GA4), Cloudflare DNS, and various marketing and personalization tools such as Criteo, Facebook Pixel, and Emarsys. The site uses Bootstrap 3 for responsive design and is optimized for desktop and mobile users with moderate performance. Hosting and DNS are managed via Cloudflare, enhancing availability and security. Security posture is good with HTTPS enforced, use of reCAPTCHA, and error tracking via Sentry. However, some security headers are not explicitly detected, and DNSSEC is not enabled, which could be improved. Privacy compliance is basic; no explicit privacy or terms of service pages were found in the provided content, and no direct contact information or security policies are visible, which may impact user trust and regulatory compliance. Overall, the website is professional, content-rich, and trustworthy, but it would benefit from publishing clear privacy and security policies and enhancing security headers and DNS configurations. The extensive use of third-party marketing and tracking scripts indicates a high level of user tracking, which should be transparently disclosed to comply with GDPR and similar regulations.

45
25
2
60
67
65
100
travelbookinghotelromaniaaccommodation+2 more
Google Tag ManagerGoogle Analytics (GA3 and GA4)Cloudflare DNSSentry (error tracking)+10

Partner Domains:

szallas.hu
partner
hotely.cz
partner

+2 more partners

2025-10-17T21:30:27.344Z
guthyjacksonfoundation.org favicon

The Guthy-Jackson Charitable Foundation

guthyjacksonfoundation.org

58
HealthcareUnited StatesmediumMEDIUM

The Guthy-Jackson Charitable Foundation is a well-established non-profit organization dedicated to funding research and advocacy for Neuromyelitis Optica (NMO), a rare autoimmune disease. Founded in 2008, the foundation has positioned itself as a leader in the healthcare non-profit sector, with a strong focus on patient support, research funding, and education. Their website reflects a professional and consistent brand image, targeting patients, caregivers, researchers, and advocates. The foundation leverages digital tools such as WordPress CMS, SEO plugins, and Google Analytics to maintain an effective online presence. Technically, the website is built on a modern WordPress platform with integrations for SEO and analytics, hosted with Cloudflare DNS and media assets served via AWS S3. The site demonstrates good mobile optimization and basic accessibility features, with a moderate performance profile. Security posture is solid with HTTPS enforced and domain protections in place, though DNSSEC is not enabled and some security headers are missing. The site includes a GDPR-compliant cookie consent mechanism, reflecting attention to privacy compliance. Security-wise, no critical vulnerabilities or blocking mechanisms were detected. The domain registration data is consistent with the organization's history and claims, enhancing trustworthiness. However, the absence of explicit privacy policy and terms of service pages in the analyzed content is a gap in compliance documentation. No incident response or vulnerability disclosure information is publicly available. Overall, the foundation's website is professional, trustworthy, and secure, with room for improvement in security headers and compliance documentation. Strategic recommendations include enabling DNSSEC, adding comprehensive privacy and terms pages, and implementing security headers to enhance protection and trust.

30
35
10
70
65
75
100
non-profithealthcareresearchcharitynmo+4 more
WordPressYoast SEO pluginGoogle AnalyticsCloudflare DNS+3
2025-10-17T19:06:43.730Z
myadlm.org favicon

Association for Diagnostics & Laboratory Medicine

myadlm.org

64
HealthcareUnited StatesmediumMEDIUM

The Association for Diagnostics & Laboratory Medicine (ADLM) is a professional organization focused on laboratory medicine and clinical chemistry. Founded recently in 2023, it serves a global community of clinical laboratorians, researchers, and healthcare professionals by providing educational resources, advocacy, networking opportunities, and scientific publications. The website reflects a mature and professional association with a strong emphasis on community engagement, education, and scientific advancement. ADLM positions itself as a key player in laboratory medicine with a comprehensive portfolio of services including conferences, journals, and certification programs. Technically, the website is built on a modern stack including Sitecore CMS, HubSpot marketing tools, Coveo search integration, and Cloudflare DNS services. The site is mobile-optimized, accessible, and SEO-friendly, though performance is moderate. The domain is registered with GoDaddy and protected with multiple EPP statuses, indicating a stable and legitimate registration. However, DNSSEC is not enabled, and security headers are not visibly configured, which are areas for improvement. From a security perspective, the site uses HTTPS and has protections against domain hijacking. Tracking and marketing scripts are present, but no explicit cookie consent mechanism was found, which may impact GDPR compliance. No incident response or security policy information is publicly available. Overall, the security posture is good but could be enhanced by adding security headers, enabling DNSSEC, and implementing privacy compliance features. The overall risk assessment is low with high trustworthiness and professionalism. Strategic recommendations include improving privacy compliance, enhancing security headers, and publishing security policies to increase transparency and user trust.

20
73
17
72
65
80
100
healthcarelaboratorymedicineeducationprofessionalassociationscientificresearch+1 more
JavaScriptjQueryHubSpotGoogle Tag Manager+2

Partner Domains:

harmonization.net
partner
comacc.org
partner

+2 more partners

2025-10-17T17:57:46.550Z
screenshotlayer.com favicon

Screenshotlayer API | Free, Powerful Screenshot API

screenshotlayer.com

62
TechnologyN/asmallMEDIUM

Screenshotlayer.com is a technology-focused website providing a free and powerful screenshot API service that enables users to capture snapshots of any website with customizable device and setting options. The service targets developers and businesses requiring automated screenshot capabilities, positioning itself as a niche API provider with a free tier for personal use. The domain was registered in 2015, indicating a mature presence in its market segment. Technically, the website employs common web technologies including jQuery, Google Tag Manager, and Facebook SDK, with DNS hosted via Cloudflare for performance and security benefits. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. Security posture is adequate with HTTPS enabled and domain status locks in place, but lacks advanced security headers and DNSSEC. Privacy compliance is weak due to the absence of privacy and cookie policies and no visible consent mechanisms. Contact information and incident response details are not explicitly provided, limiting direct communication channels. Overall, the website is functional and professional but would benefit from enhanced privacy disclosures and security practices.

35
68
17
60
65
80
100
screenshotapiurltoscreenshotautomationapitechnology
jQuery 1.11.1Google Tag ManagerFacebook SDKCloudflare DNS
2025-10-17T16:52:57.069Z
numverify.com favicon

Numverify

numverify.com

63
TechnologyN/asmallMEDIUM

Numverify is a specialized technology company providing a JSON API service focused on international and national phone number validation, carrier, location, and line type lookup. The company targets developers and businesses requiring reliable phone number verification services. Their market position is that of a niche API provider with a subscription-based business model, founded in 2015. The website content is professional, well-structured, and designed to facilitate developer engagement and service adoption. Technically, the website employs a modern tech stack including jQuery, Google Tag Manager, Facebook SDK, and Cloudflare DNS services. The site is hosted on infrastructure registered via GoDaddy and uses Cloudflare for DNS, although DNSSEC is not enabled. Performance and mobile optimization are good, with basic accessibility features and solid SEO practices. From a security perspective, the site enforces HTTPS and uses domain status locks to prevent unauthorized domain changes. However, it lacks DNSSEC and a published security.txt file, and does not explicitly disclose incident response policies or security frameworks. Tracking and marketing tools are used responsibly with privacy policies and cookie consent mechanisms in place. Overall, Numverify presents a trustworthy and professional online presence with a good security posture and compliance awareness. Strategic improvements in DNS security and incident response transparency would further enhance their security maturity and trustworthiness.

35
68
17
60
65
80
100
apiphonenumbervalidationphonelookupdevelopertoolstechnology
jQuery 1.11.1Google Tag ManagerFacebook SDKCloudflare DNS
2025-10-17T16:52:52.060Z