Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 26 of 27|Showing 1251-50 of 50
lexpert.ca favicon

KM Business Information Canada Ltd.

lexpert.ca

64
MediaCanadamediumMEDIUM

Lexpert.ca is a leading Canadian legal directory and media platform operated by KM Business Information Canada Ltd. It specializes in providing comprehensive rankings, directories, and news related to lawyers and law firms across various business law sectors including energy, finance, technology, mining, infrastructure, litigation, insolvency, and mergers and acquisitions. The platform targets Canadian businesses seeking qualified legal professionals and offers digital editions, newsletters, and event coverage to support its audience. Technically, the website leverages a modern tech stack including Bootstrap, jQuery, Algolia search, and HubSpot integrations, hosted behind Cloudflare for performance and security. Despite a slow page load time, the site is mobile-optimized and SEO-friendly with consistent branding and good content quality. Security-wise, the site employs a valid SSL certificate, strict DMARC policy, and SPF records, but lacks DNSSEC and HSTS enforcement. The presence of multiple third-party marketing and analytics scripts indicates extensive user tracking, balanced by a robust cookie consent mechanism. Overall, Lexpert.ca demonstrates a mature digital presence with room for security enhancements and performance optimization.

40
40
25
85
67
85
100
legallawyerslawfirmscanadabusinesslaw+3 more
jQueryBootstrap 4.3.1FontAwesome 5.7.2Algolia Search+7

Partner Domains:

stripe.com
partner69
canadianlawyermag.com
partnerpending

+2 more partners

2025-06-14T18:18:57.811Z
qwist.com favicon

Qwist GmbH

qwist.com

63
FinanceGermanymediumMEDIUM

Qwist GmbH is a leading open finance platform operating primarily in the DACH and Iberian markets, offering a comprehensive suite of B2B2X financial technology products. Their key offerings include digital account and portfolio switching, open banking compliance solutions, financial data analytics, and digital lending integration. The company positions itself as the #1 open finance company in its region, serving major banks and financial institutions with a strong investor backing from Finch Capital and Finleap. Technically, the website is built on WordPress with the Divi theme and leverages modern marketing and analytics tools such as HubSpot, Matomo, and SalesLoft. The site employs GDPR-compliant cookie consent via Cookiebot and maintains a valid SSL certificate, although some security enhancements like HSTS and DNSSEC are absent. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, Qwist demonstrates solid foundational practices including SPF and DMARC email protections and encrypted communications. However, the absence of advanced DNS security measures and a public security or incident response policy suggests room for improvement. No critical vulnerabilities were detected in the current analysis. Overall, Qwist presents a professional and trustworthy digital presence aligned with its market leadership in open finance. Strategic security enhancements and transparency in incident response would further strengthen its risk posture and customer confidence.

30
43
25
80
67
85
100
openfinanceb2b2xapiplatformpsd2digitallending+5 more
WordPressDivi ThemeYoast SEOCookiebot+8

Partner Domains:

finchcapital.com
partnerpending
finleap.com
partnerpending

+3 more partners

2025-06-14T18:16:42.373Z
mpamag.com favicon

KM Business Information UK Ltd

mpamag.com

82
MediaUnited KingdommediumLOW

Mortgage Introducer, operated by KM Business Information UK Ltd, is a leading UK-based media platform specializing in mortgage industry news, insights, and expert advice. The website offers a broad range of content including news articles, premium subscription content, mortgage broker software reviews, and industry resources targeting mortgage brokers and financial professionals. It maintains a strong market position as a trusted source within the UK mortgage sector, supported by a consistent brand and a professional online presence. Technically, the site leverages a modern tech stack including Bootstrap, jQuery, Algolia search, HubSpot analytics, and Google Ad Manager for advertising. However, the site suffers from an invalid SSL certificate and lacks advanced security configurations such as DNSSEC and HSTS, which impacts its security posture. The security best practices include a strict DMARC policy and SPF records, but the absence of a valid SSL certificate and missing security headers reduce overall trust. The website employs extensive user tracking and marketing tools, including Facebook Pixel and Bombora, indicating a mature digital marketing strategy but raising privacy considerations. Overall, the site is professional and content-rich but requires urgent security improvements to protect user data and enhance trust.

-
-
25
85
100
85
100
mortgagebrokernewsfinanceuk+4 more
Bootstrap 4.3.1jQuery 3.3.1Underscore.js 1.9.1Google Tag Manager+11

Partner Domains:

keymedia.com
partner57
2025-06-14T17:36:56.078Z
42matters.com favicon

42matters AG

42matters.com

77
TechnologySwitzerlandmediumLOW

42matters AG is a technology company specializing in mobile and connected TV (CTV) app intelligence solutions. Their offerings include a comprehensive app market explorer, APIs for real-time app data access, and bulk file dumps for large-scale data ingestion. Positioned as a leading provider in the app intelligence market, 42matters serves a diverse clientele including ad tech firms, cybersecurity companies, SDK developers, and marketing agencies. The company is part of the Similarweb family, enhancing its market reach and capabilities. Technically, the website is built on a modern Next.js and React framework, hosted on Amazon AWS infrastructure. It employs multiple analytics and marketing tools such as Google Tag Manager, HubSpot, Microsoft Clarity, and Visual Website Optimizer, indicating a mature digital marketing and analytics strategy. Performance is moderate with room for optimization, and mobile responsiveness is good. SEO practices are well implemented with comprehensive metadata and Open Graph tags. From a security perspective, the site uses a valid Amazon-issued SSL certificate but lacks advanced TLS protocol support and security headers like HSTS, DNSSEC, and CAA records. No explicit security or incident response policies are publicly available, which may represent an area for improvement. The cookie consent mechanism is robust and GDPR compliant, reflecting good privacy practices. Overall, 42matters demonstrates a strong market position with excellent content quality and trust indicators. Security posture is adequate but could be enhanced by adopting additional best practices. Strategic recommendations include improving TLS support, enabling DNSSEC, and publishing detailed security policies to bolster trust and compliance.

85
58
25
95
85
85
100
appintelligencemobileappsconnectedtvappmarketdatasdkanalytics+4 more
Next.jsReactGoogle Tag ManagerVisual Website Optimizer+4

Partner Domains:

similarweb.com
parentpending
2025-06-14T13:53:34.764Z
zoonou.com favicon

Zoonou Limited

zoonou.com

66
TechnologyUnited KingdommediumMEDIUM

Zoonou Limited is a UK-based software testing and quality assurance company, uniquely positioned as the UK's only employee-owned software testing firm. Established in 2007, it has delivered over 5,000 projects and holds multiple certifications including B Corp, ISO 9001, ISO 27001, and Cyber Essentials Plus. The company offers a comprehensive suite of services spanning QA strategy, delivery, accessibility, cybersecurity, and test automation, targeting private, public, and third sector organizations. Their business model emphasizes employee ownership and social responsibility, aligning with their B Corp certification and commitment to inclusivity and accessibility. Technically, Zoonou employs modern web technologies including React, HubSpot marketing and analytics tools, and Umbraco CMS. The site is hosted via UK2.net and integrates multiple third-party services for marketing and analytics. While the SSL certificate is valid and strong, the site currently lacks support for modern TLS protocols, which is a notable security gap. Performance metrics indicate a slower load time, suggesting opportunities for optimization. From a security perspective, the company demonstrates good practices such as HSTS enforcement and absence of known SSL vulnerabilities. However, the lack of DNSSEC, CAA records, and a published vulnerability disclosure policy or security.txt file indicates areas for improvement. No explicit incident response or security contact information was found, which could impact responsiveness to security events. Overall, Zoonou presents a professional, trustworthy, and socially responsible brand with solid technical infrastructure but with room to enhance its security posture and performance. Strategic improvements in TLS support, DNS security, and transparency around vulnerability management would strengthen their risk profile and client confidence.

55
25
25
80
97
85
100
softwaretestingqualityassuranceqaservicesemployee-ownedbcorp+5 more
JavaScriptHubSpotGoogle Tag ManagerGoogle Analytics+7
2025-06-14T13:25:06.738Z
mercos.com favicon

Mercos

mercos.com

64
E-commerceBrazilmediumMEDIUM

Mercos is a Brazilian software company specializing in B2B sales automation and e-commerce solutions tailored for industries, distributors, and commercial representatives. Positioned as one of the most utilized sales systems in the market, Mercos offers a comprehensive suite of services including sales force automation, B2B e-commerce portals, AI-powered order processing, payment systems, and video call sales features. The company targets medium-sized businesses seeking to streamline their sales operations and integrate seamlessly with existing ERP systems. Their market presence is reinforced by over 8,700 clients and 52,000 users, highlighting strong adoption and trust within their niche. Technically, Mercos leverages modern web technologies such as React and JavaScript, hosted on Amazon Web Services infrastructure with CloudFront CDN for content delivery. The site integrates multiple marketing and analytics tools including Google Tag Manager, HubSpot, RD Station, and Visual Website Optimizer, indicating a mature digital marketing strategy. Performance is optimized with preloading scripts and responsive design, ensuring good mobile experience and SEO. From a security perspective, Mercos maintains a valid SSL certificate issued by Amazon but currently lacks support for modern TLS protocols and advanced security headers. DNS security features like DNSSEC and CAA are not enabled, and no explicit security or incident response policies are publicly disclosed. While no critical vulnerabilities are detected, the absence of cookie consent mechanisms and limited privacy compliance features suggest areas for improvement. Overall, Mercos presents a robust business and technical foundation with excellent user experience and market positioning. However, enhancing security configurations, privacy compliance, and transparency around incident response would strengthen their risk posture and customer trust.

15
25
25
100
85
85
100
b2bsalesautomatione-commerceerpintegrationpaymentsystem+4 more
ReactJavaScriptAmazon S3CloudFront+7

Partner Domains:

gupy.io
partnerpending
rdstation.com.br
partnerpending

+3 more partners

2025-06-14T13:04:06.187Z
ad-agents.com favicon

ad agents GmbH

ad-agents.com

66
TechnologyGermanymediumMEDIUM

ad agents GmbH is a well-established digital marketing agency based in Germany, specializing in online and performance marketing services. Founded in 2006, the company offers a comprehensive portfolio including search engine advertising, SEO, Amazon marketplace services, affiliate management, social media advertising, consulting, analytics, and product data management. The agency serves a broad business audience seeking to enhance their digital marketing performance nationally and internationally. The website reflects a mature digital presence with excellent content quality, strong branding consistency, and multiple trust indicators such as client testimonials and industry certifications. Technically, the site is built on WordPress with modern performance optimizations and integrates advanced marketing and analytics tools like HubSpot, Usercentrics CMP, and eTracker. Security posture is good with valid SSL, HSTS enabled, and SPF records configured, though TLS protocols are currently disabled, which is a notable gap. Privacy compliance is well addressed with GDPR-aligned cookie consent mechanisms. Overall, the company demonstrates a strong market position with a professional and trustworthy online presence.

25
43
17
100
85
85
75
digitalmarketingperformancemarketingseoseaaffiliate+4 more
WordPressYoast SEOWP RocketHubSpot+6

Partner Domains:

adtraction.com
partnerpending
amalytix.com
partnerpending

+3 more partners

2025-06-14T13:03:27.397Z
faethm.ai favicon

Faethm by Pearson

faethm.ai

72
Artificial Intelligence / Workforce AnalyticsNot explicitly statedmediumMEDIUM

The website demonstrates a moderate overall security posture with no critical vulnerabilities but multiple high and medium risk issues, particularly in compliance and security governance areas. Significant gaps exist in GDPR compliance, including the absence of a cookie consent banner and potentially non-compliant privacy policy, exposing the business to regulatory penalties. The lack of a documented information security framework, incident response procedures, and security policies indicates weak organizational security maturity, risking operational disruptions and regulatory non-compliance under NIS2. Technical security controls such as missing key security headers, weak SSL key length, and expiring certificates expose the site to common web-based attacks and reduce user trust. DNS and network security are relatively strong, but improvements like enabling DNSSEC would further enhance resilience. The company’s email security posture is excellent, reducing risks from phishing and email-borne threats. Addressing these gaps will improve regulatory compliance, reduce attack surface, and protect business continuity and reputation. Immediate focus on governance and privacy compliance paired with technical enhancements is recommended to mitigate high-impact risks.

45
58
25
100
72
85
100
AIWorkforce AnalyticsStrategic Workforce PlanningLabour Market InsightsTechnology Impact+1 more
HubSpotGoogle AnalyticsGoogle Analytics 4Google Tag Manager+1

Partner Domains:

pearson.com
subsidiary96
credly.com
partner73

+1 more partners

2025-06-13T22:55:39.383Z
advania.com favicon

Advania

advania.com

65
Information Technology and ServicesDenmark, Finland, Iceland, Norway, Sweden, United KingdomlargeMEDIUM

The website demonstrates a moderate security posture with no critical vulnerabilities detected; however, multiple high and medium severity issues indicate significant gaps in both technical and compliance areas. Key concerns include missing essential security headers, weak SSL/TLS configurations, and poor GDPR compliance such as absence of privacy and cookie policies, which expose the business to legal and reputational risks. Additionally, the lack of an information security framework and incident response procedures under NIS2 regulations suggests unpreparedness for cyber incidents, increasing operational risk. While network security and email security are strong points, foundational policies and controls require urgent attention to safeguard data and maintain regulatory compliance. Addressing these vulnerabilities will reduce the risk of data breaches, regulatory penalties, and customer trust erosion. Immediate remediation efforts should focus on compliance documentation, security policy implementation, and improving encryption standards. Overall, the business must prioritize governance, risk management, and technical controls to strengthen its cybersecurity resilience and regulatory standing.

45
25
25
95
72
90
100
technologyIT servicescloudcyber securitybusiness continuity+2 more
HubSpotSplide.jsHubSpot CMSCloudflare+1

Partner Domains:

advania.dk
subsidiarypending
advania.fi
subsidiarypending

+3 more partners

2025-06-13T22:51:31.812Z
carolineolds.com favicon

Caroline Olds Real Estate

carolineolds.com

68
real estateMonacosmallMEDIUM

The website demonstrates a concerning security posture with no critical issues but multiple high and medium risk vulnerabilities, primarily related to missing security headers, insufficient GDPR compliance, and lack of key NIS2 security frameworks. The absence of crucial HTTP security headers such as Strict-Transport-Security and Content-Security-Policy exposes the site to man-in-the-middle attacks, clickjacking, and cross-site scripting risks. GDPR non-compliance, including the lack of a cookie consent banner and incomplete privacy policies, poses legal and reputational risks, especially in jurisdictions enforcing data protection laws. Additionally, the site lacks documented security policies, incident response plans, and business continuity procedures required under the NIS2 directive, increasing operational risk and regulatory exposure. SSL/TLS configurations are suboptimal, with weak key lengths and impending certificate expiry risking data confidentiality and trust. DNS security is moderate but could be strengthened by enabling DNSSEC and configuring CAA records. While email and network security appear robust, the overall low scores in security headers and NIS2 compliance indicate urgent remediation is necessary to protect business assets and maintain customer trust.

20
58
25
100
60
85
100
real estateMonacoproperty salesproperty rentalsnew developments+2 more
WordPressGravity FormsYoast SEOWP Rocket+11

Partner Domains:

chambre-immobiliere-monaco.mc
partnerpending
2025-06-13T18:10:48.989Z