Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 25 of 25|Showing 1201-1247 of 1247
B

Belépés ide: 24.hu

24xtra.hu

40
MediaHungarysmallHIGH

24xtra.hu is a user authentication portal associated with the Hungarian media brand 24.hu, providing login and registration services including social login options via Facebook, Apple, and Google. The site targets Hungarian-speaking users of 24.hu services and acts as a gateway for accessing content or services requiring user authentication. The business model centers on user identity management for a media platform. Technically, the site is hosted on Amazon AWS infrastructure using CloudFront CDN and employs Keycloak for single sign-on capabilities. The technology stack includes modern JavaScript modules and standard web technologies, but performance metrics are unavailable or minimal, indicating potential areas for improvement. Mobile optimization and accessibility are basic but functional. From a security perspective, the site implements several important HTTP security headers and enforces HSTS with preload. However, the absence of a valid SSL certificate and lack of HTTPS support critically undermine the security posture. No OCSP stapling or session resumption is configured, and no privacy or cookie policies are published, indicating compliance gaps. No contact or business information is provided on the site, limiting transparency. Overall, the site is functional as a login portal but requires urgent improvements in SSL/TLS configuration and privacy compliance to enhance trust and security. The domain registration is consistent with the 24.hu brand, supporting legitimacy. Strategic recommendations include obtaining a valid SSL certificate, publishing privacy and cookie policies, and improving performance and accessibility.

85
15
25
60
97
75
100
loginauthenticationmediasocial-loginhungary+1 more
nginxJavaScript ES ModulesCloudFront CDNKeycloak SSO+1
2025-06-15T09:01:00.664Z
pingidentity.com favicon

Ping Identity

pingidentity.com

60
TechnologyUnited StatesenterpriseMEDIUM

Ping Identity is a leading enterprise identity security company specializing in identity and access management solutions. Their platform offers comprehensive services including customer identity, workforce identity, B2B identity, decentralized identity, and advanced authentication methods such as passwordless and zero trust. The company targets large enterprises across various sectors including government, financial services, healthcare, retail, media, and telecommunications. With a strong market position supported by industry analyst recognitions, Ping Identity delivers secure and seamless digital experiences for its customers. Technically, the website is built on a modern infrastructure leveraging Adobe Experience Manager CMS, AWS hosting, and advanced web technologies such as Lottie animations and Google Tag Manager. The site demonstrates good mobile optimization, accessibility, and SEO practices. However, the SSL certificate is currently invalid, and no TLS protocols are enabled, which significantly impacts the security posture. Security-wise, the site implements strong security headers and cookie policies with consent mechanisms, indicating good privacy compliance. Certifications like ISO 27001, SOC 2, and FedRAMP further strengthen their security credibility. Nonetheless, the invalid SSL certificate and lack of TLS support are critical issues that must be addressed urgently to ensure secure communications. Overall, Ping Identity's website reflects a mature and professional digital presence with strong business credibility and privacy compliance. Addressing the SSL and TLS issues will elevate their security posture and trustworthiness further.

85
25
25
80
50
85
100
identitysecurityiamenterprisesecuritycustomeridentityworkforceidentity+3 more
Adobe Helix RUMGoogle Tag ManagerLottie animationsMarketo forms+5
2025-06-15T07:17:28.134Z
shiftboard.com favicon

Shiftboard, Inc.

shiftboard.com

51
ManufacturingUnited StatesenterpriseMEDIUM

Shiftboard, Inc. is an enterprise-level SaaS provider specializing in employee scheduling software tailored for mission-critical industries such as manufacturing, energy, and corrections. The company operates as a subsidiary of UKG and offers products like SchedulePro and ScheduleFlex to streamline workforce management, improve scheduling efficiency, and enhance employee engagement. The website demonstrates strong branding, customer trust signals, and comprehensive content targeting workforce managers in shift-based operations. Technically, the website is built on WordPress with performance optimizations via WP Rocket and hosted on AWS infrastructure using S3 and CloudFront. It integrates multiple marketing and analytics tools including Google Analytics, Google Ads, HubSpot, and social media platforms. The site is mobile-optimized and SEO-friendly with structured data and Open Graph metadata. From a security perspective, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical vulnerability. While some security headers like HSTS are present, the absence of TLS protocols and secure cipher suites significantly lowers the security posture. Privacy compliance is well addressed with visible privacy and cookie policies and consent mechanisms. Overall, the website is professional and content-rich but requires urgent remediation of SSL/TLS issues to ensure secure user interactions and maintain trust.

30
25
25
50
50
90
100
employeeschedulingworkforcemanagementmanufacturingenergycorrections+2 more
WordPress 6.8.1WP Rocket (performance optimization)jQuery 3.7.1Google Fonts (Lato)+10

Partner Domains:

ukg.com
parent62
2025-06-14T22:17:29.915Z
persistent.com favicon

Persistent Systems

persistent.com

59
TechnologyN/alargeMEDIUM

Persistent Systems is a well-established technology services company specializing in AI, digital engineering, and enterprise modernization. The company positions itself as a trusted partner for enterprises seeking to transform their AI journey and digital capabilities. Their website reflects a mature digital presence with comprehensive service offerings, a strong partner ecosystem, and extensive client success stories. The company targets large enterprises across multiple industries, leveraging a B2B business model with a focus on innovation and technology leadership. Technically, the website is built on WordPress and employs a modern tech stack including jQuery, Bootstrap, and various marketing and analytics tools such as Google Tag Manager, Pardot, and CookiePro. Hosting is via AWS CloudFront CDN, ensuring global content delivery. The site is well-optimized for SEO and accessibility, with multilingual support and responsive design. However, performance metrics are not explicitly available. From a security perspective, the site has several security headers configured and uses HttpOnly cookies and a detailed Content Security Policy. However, a critical issue is the absence of a valid SSL certificate and HTTPS support, severely impacting the security posture. Other TLS protocols and features like OCSP stapling and session resumption are not enabled. DNS CAA records appear malformed, which could affect certificate issuance policies. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the website demonstrates a high level of professionalism and business credibility but suffers from a critical security gap due to missing HTTPS. Strategic remediation of SSL/TLS configuration is essential to improve trust and security compliance.

75
40
25
75
50
90
100
aidigitalengineeringenterprisemodernizationtechnologyservicescloud+4 more
jQueryBootstrap 4.5.2Slick CarouselGoogle Tag Manager+13
2025-06-14T21:49:58.895Z
kirschbaumdevelopment.com favicon

Kirschbaum Development

kirschbaumdevelopment.com

49
TechnologyUnited StatessmallHIGH

Kirschbaum Development is a small technology company specializing in web application development, staff augmentation, training, and technical leadership services. They primarily focus on Laravel, Vue.js, Angular, Drupal, and Wordpress frameworks, serving a diverse client base including Fortune 50 companies and smaller organizations. Their market position is strengthened by partnerships with Laravel and endorsements from industry leaders. The website presents a professional and consistent brand image with comprehensive service offerings and client testimonials. Technically, the website leverages modern web technologies including Laravel and Vue.js frameworks, hosted on AWS CloudFront CDN. The site includes Google Tag Manager for analytics and marketing purposes. While the site is mobile optimized and SEO friendly, performance metrics are unavailable. Accessibility is basic but functional. From a security perspective, the site lacks a valid SSL certificate and does not serve content over HTTPS, which is a critical vulnerability. No advanced security headers or mechanisms such as HSTS or OCSP stapling are implemented. Cookie consent mechanisms are absent, indicating limited privacy compliance. The site uses secure cookies with CSRF tokens but overall security posture is weak. Overall, the website is professional and credible but requires urgent improvements in SSL/TLS implementation and privacy compliance to enhance security and user trust.

15
43
25
50
50
85
100
laravelwebdevelopmentstaffaugmentationtechnicalleadershiptraining+2 more
LaravelVue.jsFilamentAngular+5
2025-06-14T21:49:28.404Z
taleez.com favicon

Boxmyjob SAS

taleez.com

60
TechnologyFrancemediumMEDIUM

Taleez, operated by Boxmyjob SAS, is a French-based SaaS company specializing in recruitment management software (ATS). The company offers a comprehensive platform that centralizes recruitment processes, including job offer multi-diffusion, candidate sourcing, process automation, and analytics. With over 15,000 users and a strong presence in the French market, Taleez positions itself as a reliable and user-friendly solution for HR teams, managers, and candidates. The website reflects a professional and consistent brand image, supported by numerous client testimonials and case studies. Technically, the website is built on Webflow CMS and integrates multiple marketing and analytics tools such as HubSpot, Google Analytics, Amplitude, and ConvertBox. Hosting is managed via OVH with CDN support from Cloudfront. Despite a rich content offering and good mobile optimization, the site suffers from slow load times and lacks a valid SSL certificate, which critically impacts its security posture. Security-wise, the absence of a valid SSL certificate and HTTPS enforcement is a major vulnerability, exposing users to potential data interception risks. Additionally, the lack of security headers and modern TLS protocols further weakens the site's defense. Privacy compliance is well addressed with comprehensive GDPR-aligned policies and cookie consent mechanisms. Contact information is clearly provided, enhancing business credibility. Overall, while Taleez demonstrates strong business credibility and content quality, its technical and security shortcomings, especially regarding SSL/TLS, pose significant risks. Addressing these issues is paramount to safeguarding user data and maintaining trust.

45
25
25
77
85
85
100
atsrecruitmenthrsoftwaresaasfrenchcompany+2 more
Webflow CMSHubSpot (forms, analytics, chat, marketing)Google Tag ManagerGoogle Analytics+11
2025-06-14T19:59:35.740Z
bidx.com favicon

Infotech

bidx.com

52
TransportationUnited StatesmediumMEDIUM

Infotech operates Bidx.com, a specialized electronic bidding platform tailored for the highway construction industry, serving 44 state transportation agencies. The platform facilitates secure and efficient bidding processes, offering tools such as competitive analysis, plan sheets access, and a small business network to empower contractors. Infotech positions itself as a market leader with a significant volume of bids processed, reflecting strong industry trust and adoption. Technically, the website is built on WordPress with the Divi theme, hosted on AWS infrastructure, and integrates various marketing and analytics tools including HubSpot and Google Tag Manager. However, the security posture reveals critical gaps including an invalid SSL certificate, lack of modern TLS protocols, and incomplete DNS security configurations. While basic security headers and DMARC policies are present, the absence of HSTS, OCSP stapling, and session resumption reduces overall security robustness. The website lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms, which are important for compliance and trust. Overall, the digital maturity is moderate with room for improvement in security and privacy compliance to align with industry best practices.

15
43
25
50
50
80
100
transportationbiddingconstructionsoftwarestateagencies+1 more
WordPressDivi ThemejQueryAmazon S3+7

Partner Domains:

infotechinc.com
partnerpending
2025-06-14T13:53:38.204Z
volkswagen-versicherungsdienst.de favicon

Volkswagen Financial Services

volkswagen-versicherungsdienst.de

65
FinanceGermanyenterpriseMEDIUM

Volkswagen Financial Services AG operates the volkswagen-versicherungsdienst.de website, providing a comprehensive portfolio of automotive insurance products including liability, partial and full coverage, warranty extensions, leasing rate insurance, credit protection, and travel insurance. The site targets primarily German private and business customers, leveraging the strong Volkswagen brand and integrated financial services ecosystem. The website is built on Adobe Experience Manager with extensive use of modern web technologies and content delivery networks, ensuring excellent performance and user experience. However, the SSL configuration is critically flawed with a self-signed certificate and no enabled TLS protocols, which undermines secure communications. Security headers are well implemented, but the absence of a cookie consent mechanism and explicit security or incident response policies indicates gaps in compliance and transparency. The site integrates multiple marketing and analytics tools, including Adobe Analytics, Google Tag Manager, and UserZoom, reflecting extensive user tracking. Overall, the site is professional, content-rich, and trustworthy from a business perspective but requires urgent security improvements to protect user data and comply with best practices.

80
18
25
85
72
85
100
insuranceautomotiveleasingfinancingvolkswagen+5 more
Adobe Experience Manager (AEM)Adobe Launch (Tag Manager)Helix RUM (Adobe Helix Real User Monitoring)UserZoom (UX feedback tool)+7

Partner Domains:

volkswagenbank.de
partner69
vwfs.de
partner69

+2 more partners

2025-06-14T13:02:51.574Z
V

Volkswagen Financial Services AG

volkswagen-bank.com

69
FinanceGermanylargeMEDIUM

Volkswagen Financial Services AG operates as the financial and mobility services provider for the Volkswagen Group across Europe, managing financing, leasing, insurance, and mobility solutions in 17 markets. The company holds a strong market position as a wholly-owned subsidiary of Volkswagen AG, with a large operational footprint and a focus on sustainability and customer mobility. The website reflects a professional and consistent brand presence with comprehensive investor relations and media content. Technically, the site is built on Adobe Experience Manager, leveraging modern content delivery and third-party integrations for analytics and marketing. Security headers and policies are well implemented, though some SSL/TLS configuration anomalies were detected, likely due to scanning artifacts or misconfigurations. Overall, the security posture is solid but could be improved by enabling modern TLS protocols and publishing explicit security policies. The site demonstrates good privacy compliance with a comprehensive privacy policy and consent mechanisms for external data sources. Social media presence and trust indicators support a high level of trustworthiness.

80
43
22
75
80
85
100
volkswagenfinancialservicessustainabilityinvestorrelationscareer+4 more
Adobe Experience Manager (AEM)Adobe Launch (Tag Manager)JavaScriptHelix RUM+7

Partner Domains:

vwfs.com
subsidiary73
volkswagenbank.de
subsidiary69

+1 more partners

2025-06-14T12:59:57.378Z
H

Honda

honda.fr

61
TransportationFranceenterpriseMEDIUM

Honda France operates as a major enterprise in the transportation and manufacturing sectors, offering a diverse range of products including automobiles, motorcycles, marine engines, industrial equipment, garden tools, and snow throwers. The website serves as a portal to various product divisions and regional Honda sites, targeting French consumers and related markets. The business model focuses on manufacturing and retail with a strong brand presence and consistent branding across multiple languages and regions. Technically, the website is built on a modern infrastructure likely powered by Adobe Experience Manager CMS, hosted on Amazon CloudFront CDN, and uses ES6 JavaScript modules. Performance is inferred to be fast with good mobile optimization and basic accessibility and SEO. The site integrates Google Tag Manager for analytics and OneTrust for cookie consent, indicating a moderate level of digital maturity. From a security perspective, the site employs a valid DigiCert SSL certificate with strong security headers including HSTS and X-Frame-Options. However, no TLS protocols are currently enabled, which is a critical issue. The site lacks explicit privacy, terms of service, security policies, or incident response information. DNSSEC is not enabled, and no vulnerability disclosure or security.txt files are present. Overall, the security posture is good but could be significantly improved by enabling TLS, enforcing CSP, and publishing clear security and privacy documentation. The overall risk is moderate due to missing compliance documentation and TLS configuration gaps. Strategic recommendations include enabling TLS 1.2+, enforcing CSP, publishing privacy and security policies, and enhancing incident response readiness to improve trust and compliance.

70
-
25
70
97
85
100
hondaautomobilesmotorcyclesmarineindustrial+4 more
JavaScript ES6 modulesGoogle Tag ManagerOneTrust Cookie ConsentCloudFront CDN

Partner Domains:

industrie.honda.fr
partner
jardin.honda.fr
partner

+3 more partners

2025-06-14T12:59:47.899Z
arri.com favicon

ARRI GmbH

arri.com

69
MediaGermanylargeMEDIUM

ARRI GmbH is a well-established leader in the media industry, specializing in the design and manufacture of professional camera and lighting systems for the film and broadcast sectors. With a history dating back to 1917, ARRI maintains a strong market position supported by a comprehensive product portfolio including camera systems, lenses, lighting, rental services, and virtual production solutions. The company targets industry professionals and production companies worldwide, leveraging a large-scale operational footprint and partnerships such as ARRI Rental and Claypaky. Technically, the website is built on a modern stack including CoreMedia CMS, React, and is hosted on AWS CloudFront, delivering fast performance and good mobile optimization. Security measures include a valid SSL certificate and several HTTP security headers, though the lack of modern TLS protocols and DNSSEC indicates room for improvement. Privacy and cookie policies are present and GDPR compliant, with a consent mechanism implemented via Usercentrics. Overall, ARRI demonstrates a mature digital presence with strong branding, comprehensive content, and good security hygiene, though enhancements in encryption protocols and security disclosures could further strengthen its posture.

60
25
25
100
85
85
100
camerasystemslightingfilmindustrybroadcastvirtualproduction+3 more
nginxCoreMedia CMSJavaScriptReact (react-bundle)+7

Partner Domains:

arrirental.com
partnerpending
claypaky.it
partnerpending
2025-06-14T12:59:19.393Z
vicone.com favicon

VicOne Inc.

vicone.com

79
TechnologyN/AmediumLOW

VicOne Inc. is a specialized cybersecurity company focused on providing future-ready vehicle protection reinforced with proven automotive threat intelligence. The company targets automotive manufacturers, Tier 1 suppliers, EVSE manufacturers, and other stakeholders in the connected car ecosystem. VicOne offers a broad portfolio of cybersecurity software and services including threat intelligence platforms, vehicle security operations centers, intrusion detection/prevention systems, vulnerability and SBOM management, and penetration testing services. The company holds multiple industry certifications and has strategic partnerships with major technology and automotive players, positioning it as a trusted leader in automotive cybersecurity. Technically, the website is hosted on Microsoft IIS with ASP.NET backend, leveraging AWS CloudFront CDN for delivery. The tech stack includes modern JavaScript libraries such as jQuery, Owl Carousel, ScrollReveal, and HubSpot for analytics and marketing automation. The site demonstrates good mobile optimization and fast performance, with a comprehensive content strategy and clear navigation. However, the SSL configuration lacks modern TLS protocol support, and DNSSEC is not enabled, indicating areas for security enhancement. From a security posture perspective, VicOne implements strong HTTP security headers including CSP, HSTS, X-Frame-Options, and XSS protection. The SSL certificate is valid and issued by a trusted CA, but the absence of TLS 1.2 or higher protocols is a notable gap. The company provides comprehensive privacy and cookie policies with consent mechanisms, but lacks explicit incident response contact information and terms of service page. Overall, the security maturity is good with room for improvements in protocol support and DNS security. The overall risk assessment suggests VicOne is a well-positioned and trusted player in automotive cybersecurity with strong technical and security foundations. Strategic recommendations include enabling modern TLS protocols, implementing DNSSEC, publishing incident response contacts, and enhancing accessibility compliance to further strengthen trust and security posture.

75
58
47
85
97
90
100
automotive cybersecurityvehicle protectionthreat intelligenceconnected car securityautomotive cybersecurity solutions+4 more
Microsoft IIS 10.0ASP.NET 4.0.30319jQuery 3.6.3WebFont Loader+8

Partner Domains:

amazonaws.com
partner91
trendmicro.com
partner69

+2 more partners

2025-06-14T12:40:01.553Z