Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150477
Websites
130
Industries
113
Countries
52
Avg Score
Page 250 of 780|Showing 12451-12500 of 38955
greatplacetowork.is favicon

Great Place To Work Ísland

greatplacetowork.is

64
GovernmentIcelandmediumMEDIUM

Great Place To Work Ísland operates as the Icelandic branch of the international Great Place To Work® organization, providing services focused on workplace culture assessment, employee satisfaction surveys, and certification programs. The website targets Icelandic businesses and organizations seeking to improve and be recognized for their workplace culture. The company leverages recognized branding and maintains an active social media presence, reinforcing its market position in Iceland. Technically, the website uses modern web technologies including Google Analytics, Google Tag Manager, Facebook Pixel, and service workers, hosted likely via Cloudfront CDN and the Multiscreensite CMS platform. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. Security posture is generally good with HTTPS enforced and no exposed sensitive data, but lacks some security headers and visible privacy or cookie policies, which are areas for improvement. The absence of WHOIS data for the domain is a notable concern, reducing trust in domain legitimacy despite the professional website content. Overall, the site is functional and professional but would benefit from enhanced transparency and security practices.

70
35
17
60
72
80
100
workplacecultureemployeesatisfactioncertificationicelandgreatplacetowork+1 more
JavaScriptGoogle AnalyticsGoogle Tag ManagerFacebook Pixel+4
2025-10-10T13:23:01.633Z
discordmerch.com favicon

Discord Powered by DOTEXE

discordmerch.com

67
E-commerceUnited StatessmallMEDIUM

Discord Merch is an e-commerce website powered by DOTEXE, specializing in selling official Discord branded merchandise. The site targets the Discord user community and fans interested in purchasing branded apparel and accessories. The business operates on the Shopify platform, leveraging its e-commerce capabilities and payment processing services. The domain was registered in 2019, aligning with the business timeline, and uses Cloudflare DNS services for performance and security enhancements. From a technical perspective, the website employs modern web technologies including Shopify's Boost theme, JavaScript libraries, and third-party scripts for analytics and marketing. The site is mobile optimized and provides a good user experience with clear navigation and professional design. Performance is moderate, typical for Shopify-hosted stores with multiple external resources. Security posture is solid with HTTPS enforced and clientTransferProhibited domain status, but lacks DNSSEC and explicit security or incident response policies. Cookie consent mechanisms are implemented, but privacy and terms of service pages are missing, which impacts compliance and user trust. No contact information is readily available, which may affect customer support and trustworthiness. Overall, the website presents a moderate risk profile with good business credibility but room for improvement in privacy compliance and security transparency. Strategic recommendations include publishing privacy and terms policies, enabling DNSSEC, and providing clear contact channels for security and customer support.

75
73
17
60
65
70
100
e-commerceshopifydiscordmerchandisegaming+1 more
ShopifyJavaScriptCloudflare DNSGoogle Fonts+3
2025-10-10T13:21:13.083Z
flaticon.com favicon

Flaticon

flaticon.com

68
TechnologyN/alargeMEDIUM

Flaticon is a leading online platform offering millions of free and premium vector icons and stickers in multiple formats such as PNG, SVG, EPS, PSD, and CSS. The website targets designers, developers, and digital content creators seeking high-quality graphical resources. It operates on a freemium business model, providing free downloads with attribution and premium subscription plans for unlimited access and commercial licensing. The platform is well-positioned in the digital design market with strong brand recognition and a comprehensive resource library. Technically, Flaticon employs a modern web infrastructure leveraging JavaScript frameworks, Google Analytics, Google Tag Manager, Hotjar for user behavior analysis, and OneTrust for cookie consent management. The site is hosted on a CDN likely provided by Akamai, ensuring fast performance and excellent mobile optimization. SEO and accessibility practices are robust, supported by structured data and meta tags. From a security perspective, the site enforces HTTPS with strong SSL configuration and implements multiple security headers. It uses reCAPTCHA for form protection and provides cookie consent mechanisms aligned with GDPR. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly available, which could be improved to enhance trust and compliance. Overall, Flaticon presents a professional, secure, and user-friendly platform with high content quality and strong market presence. The absence of WHOIS registrant data slightly reduces trust but is mitigated by external verification and consistent branding. Strategic recommendations include publishing detailed security policies, providing clear contact information, and implementing a vulnerability disclosure program to further strengthen security posture and business credibility.

35
88
25
80
42
85
100
iconsstickersdesigngraphicsfreeresources+7 more
JavaScriptGoogle AnalyticsGoogle Tag ManagerHotjar+5

Partner Domains:

freepik.com
partner
2025-10-10T13:20:42.369Z
nutanix.com favicon

Nutanix

nutanix.com

74
TechnologyUnited StatesenterpriseMEDIUM

Nutanix operates as a leading enterprise technology company specializing in a unified platform that integrates infrastructure and management to enable seamless operation of applications, data, and AI workloads across hybrid and multi-cloud environments. The company positions itself as a leader in distributed hybrid infrastructure, offering a broad portfolio of products including cloud platforms, Kubernetes management, unified storage, and enterprise AI solutions. The website reflects a mature enterprise-grade digital presence with comprehensive product information and clear navigation tailored to IT professionals and business decision-makers. Technically, the website leverages Adobe Experience Manager as its CMS, combined with Adobe's marketing and analytics suite, and OneTrust for privacy compliance. The site demonstrates good performance, mobile optimization, and accessibility features. Security best practices are observed with HTTPS enforcement and security headers, although explicit security policies and incident response details are not publicly disclosed. The security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed through cookie consent mechanisms and a comprehensive privacy policy. The absence of WHOIS data limits transparency but does not detract from the overall legitimacy and professionalism of the site. Overall, Nutanix's website presents a trustworthy, professional, and secure digital front that aligns with its enterprise market positioning. Strategic recommendations include publishing detailed security policies, incident response contacts, and vulnerability disclosure information to enhance transparency and trust further.

80
88
10
70
77
85
100
cloudhybridinfrastructureenterprisesoftwarecloudplatformdatamanagement+2 more
Adobe Experience Manager (AEM)Adobe Launch (Tag Manager)Adobe AnalyticsOneTrust Cookie Consent+2
2025-10-10T12:19:19.048Z
H

Hewlett Packard Enterprise

hpe.com

56
TechnologyUnited StatesenterpriseMEDIUM

Hewlett Packard Enterprise (HPE) is a leading global technology company specializing in edge-to-cloud solutions, enterprise compute, data management, AI, and security services. The company targets enterprise IT decision makers and businesses seeking advanced hybrid cloud and AI-driven digital transformation. HPE maintains a strong market position with a comprehensive portfolio of products and services, including its GreenLake cloud platform and recent acquisition of Juniper Networks. The website reflects a mature digital presence with professional design, clear navigation, and extensive content including news, product information, and corporate resources. Technically, the site is built on Adobe Experience Manager, leveraging modern web technologies and hosted likely via Akamai, ensuring fast performance and mobile optimization. Security posture is strong with HTTPS, security headers, and privacy compliance mechanisms in place, though explicit security policies and incident response details are not publicly detailed. Overall, the site demonstrates high business credibility and trustworthiness, with no signs of blocking or malicious activity. Strategic recommendations include publishing detailed security policies, vulnerability disclosure information, and DPO contacts to enhance transparency and compliance.

-
88
10
80
-
85
100
enterprisetechnologycloudaisecurity+4 more
Adobe Experience Manager (AEM)JavaScriptCoveo SearchBrightcove Video Player+2

Partner Domains:

www.juniper.net
subsidiary
common.cloud.hpe.com
subsidiary

+1 more partners

2025-10-10T12:18:53.875Z
sysselmannen.no favicon

Sysselmesteren på Svalbard

sysselmannen.no

59
GovernmentNorwaysmallMEDIUM

Sysselmesteren på Svalbard is the official Norwegian government authority responsible for administration, law enforcement, environmental protection, and emergency preparedness on the Svalbard archipelago. The website serves as a comprehensive information portal for residents, visitors, researchers, and businesses, providing access to laws, regulations, permits, and public safety information. It holds a strong market position as the authoritative source for Svalbard-related governance and services. Technically, the website employs modern web technologies including Bootstrap for responsive design, FontAwesome for icons, and Microsoft Application Insights for telemetry. The site is well-structured with good SEO and mobile optimization, though some accessibility features are basic. Performance is moderate, with no major technical issues detected. From a security perspective, the site enforces HTTPS and uses telemetry tools responsibly without exposing sensitive data. However, it lacks some security headers and does not provide a public security policy or incident response contact, which are areas for improvement. Privacy compliance is partially met with a privacy policy present but no cookie consent mechanism. Overall, the website is trustworthy, professional, and serves its government function effectively. Recommendations include enhancing security headers, implementing cookie consent, publishing security policies, and considering a vulnerability disclosure program to further strengthen security posture and compliance.

15
35
2
85
75
75
100
governmentsvalbardnorwaypublicserviceemergencypreparedness+3 more
BootstrapFontAwesomeMicrosoft Application InsightsJavaScript+2
2025-10-10T12:17:38.531Z
R

Roku

roku.com

74
TechnologyUnited StateslargeMEDIUM

Roku is a prominent technology company specializing in streaming entertainment solutions, offering a platform and devices that enable users to stream thousands of channels to their TVs. The website reflects a strong brand presence with consistent messaging and professional design, targeting a broad general audience interested in streaming media. The company maintains multiple international technical support phone numbers and active social media channels, reinforcing its global reach and customer engagement. Technically, the website employs modern tracking technologies such as Google Analytics and Google Tag Manager, indicating a mature digital marketing infrastructure. The site is accessible, mobile-optimized, and uses HTTPS, ensuring secure communications. However, explicit privacy, cookie, and terms of service policies were not detected in the provided content, which could be improved to enhance compliance and user trust. From a security perspective, the site demonstrates good practices with HTTPS and no visible vulnerabilities or exposed sensitive data. The absence of security headers and incident response information suggests areas for enhancement. The WHOIS data is unavailable, likely due to registry policies or privacy protection, which limits domain registration transparency but does not detract significantly from the site's legitimacy given the strong brand and content quality. Overall, Roku's website presents a professional and trustworthy front with room for improvement in privacy compliance and security transparency. Strategic enhancements in these areas would further solidify user confidence and regulatory adherence.

65
100
2
82
75
85
100
streamingentertainmenttechnologyrokutv+1 more
Google Tag ManagerGoogle AnalyticsJavaScript
2025-10-10T12:16:48.389Z
A

Athoscommerce

athoscommerce.com

65
E-commerceN/alargeMEDIUM

Athos Commerce is a comprehensive ecommerce technology provider offering advanced tools for product discovery, site search, merchandising, personalization, and data management. The company integrates capabilities from established platforms such as Searchspring, Klevu, and Intelligent Reach, positioning itself as a leader in ecommerce performance solutions. Their target audience includes ecommerce merchants seeking to optimize conversion rates and customer experience through AI and machine learning technologies. Technically, the website is built on WordPress with a modern tech stack including HubSpot, Google Tag Manager, Hotjar, and Visual Website Optimizer for analytics and marketing. The site demonstrates good SEO, mobile optimization, and accessibility practices, although some accessibility features could be enhanced. Performance is moderate with room for optimization. From a security perspective, the site enforces HTTPS, employs standard security headers, and uses cookie consent mechanisms aligned with GDPR compliance. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit security policies and incident response documentation suggests areas for improvement. Overall, the website presents a professional, trustworthy, and well-maintained digital presence with strong business credibility and compliance posture. Strategic recommendations include publishing security policies, enhancing accessibility, and maintaining vigilance on third-party scripts to sustain security and compliance.

15
95
17
70
52
80
100
ecommercesitesearchpersonalizationmerchandisinganalytics+3 more
JavaScriptjQueryGoogle Tag ManagerHubSpot scripts+4

Partner Domains:

athoscommerce.partnerpage.io
partner
searchspring.partnerportal.io
partner

+3 more partners

2025-10-10T12:16:08.157Z
S

Shopify

foxkit.app

60
E-commerceN/aenterpriseMEDIUM

The analyzed URL is a security verification page hosted on accounts.shopify.com, protected by Cloudflare's Web Application Firewall (WAF) and Turnstile captcha. This page acts as a gatekeeper to verify user connections before allowing access to the actual login or account services. Shopify is a leading e-commerce platform provider, offering SaaS solutions for merchants to create and manage online stores globally. However, this specific page contains minimal content and no direct business or policy information, reflecting its purpose as a security checkpoint rather than a content page. Technically, the page leverages Cloudflare's security infrastructure, including bot mitigation via Turnstile captcha, but lacks visible SEO metadata, structured data, or accessibility features. The absence of privacy, cookie, or terms of service links on this page is expected given its function but limits direct compliance assessment. No forms or data collection fields are present except a hidden captcha response input, indicating minimal data exposure risk at this stage. From a security perspective, the use of Cloudflare WAF and captcha indicates a strong posture against automated attacks and abuse. However, the lack of visible security headers and policy documents on this page reduces transparency. The WHOIS data for the subdomain accounts.shopify.com is unavailable, which is typical for subdomains managed under a parent domain with privacy or delegation. This does not raise legitimacy concerns given Shopify's established reputation. Overall, the page is secure but inaccessible for full content or compliance analysis due to the WAF challenge. Strategic recommendations include providing accessible policy documents on related pages, enhancing security header implementation, and ensuring comprehensive privacy compliance disclosures on user-facing pages.

65
35
17
100
52
85
100
e-commercesecurity-challengecloudflarecaptchashopify
CloudflareJavaScriptTurnstile Captcha
2025-10-10T12:12:03.988Z
M

Meta

messenger.com

70
TechnologyN/aenterpriseMEDIUM

Messenger.com is the official web platform for Meta's Messenger service, a leading global instant messaging and communication tool integrated with Facebook. The website offers users the ability to connect with friends and family through text, voice, and video, supporting community building and social interaction. The platform targets a broad general audience and operates under the Meta corporate umbrella, reflecting a mature and enterprise-level business model. Technically, the website employs modern web technologies including React and Facebook's proprietary BigPipe framework, ensuring fast performance and excellent mobile optimization. The infrastructure is hosted on Meta's own robust infrastructure, providing high availability and scalability. The site demonstrates good SEO and accessibility practices, with comprehensive metadata and multi-language support. From a security perspective, the site enforces HTTPS, uses secure login forms with encrypted password submission, and includes standard security headers. However, explicit cookie consent mechanisms and dedicated security policy pages are not evident, suggesting room for improvement in privacy compliance and incident response transparency. No vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, messenger.com presents a highly professional, trustworthy, and secure platform consistent with Meta's brand. The absence of WHOIS data is likely due to privacy protection and does not detract significantly from the site's legitimacy. Strategic recommendations include enhancing privacy compliance with explicit consent mechanisms, publishing security and incident response information, and providing clearer contact channels for security matters.

70
88
2
85
42
90
100
messagingsocialcommunicationmetafacebook+2 more
ReactJavaScriptCSSBigPipe+2

Partner Domains:

facebook.com
parent
2025-10-10T11:11:06.257Z
swedenabroad.com favicon

Sweden Abroad

swedenabroad.com

54
GovernmentSwedenenterpriseMEDIUM

Sweden Abroad is the official online portal representing Sweden's embassies and consulates worldwide. The website provides comprehensive information for Swedish citizens traveling or living abroad, as well as for non-Swedish citizens seeking information about Sweden. It serves as a centralized resource for travel advisories, embassy locations, and consular services, reflecting the Swedish government's commitment to supporting its citizens internationally. The site is multilingual, offering content in Swedish, English, French, Spanish, German, and Portuguese, enhancing accessibility for a global audience. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with integration of Google Tag Manager and Microsoft Azure Application Insights for analytics and monitoring. The site is mobile-optimized and accessible, with good SEO practices evident in meta tags and structured navigation. While no CMS or hosting provider details are explicitly identified, the site demonstrates moderate performance and good technical implementation. From a security perspective, the site enforces HTTPS and uses reputable analytics tools, but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. Privacy and cookie policies are present and appear GDPR compliant, though no terms of service or vulnerability disclosure policies were found. WHOIS data for the exact domain is unavailable, likely because the domain is a subdomain, but the website's official branding and government affiliations strongly support its legitimacy. Overall, Sweden Abroad presents a professional, trustworthy, and well-maintained government resource. Strategic recommendations include enhancing security headers, publishing incident response and vulnerability disclosure information, and providing clearer contact details to improve transparency and user trust.

15
25
17
60
75
60
100
governmentembassyconsulatetravelsweden+2 more
HTML5CSS3JavaScriptGoogle Tag Manager+2
2025-10-10T11:07:55.002Z