Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149092
Websites
130
Industries
113
Countries
52
Avg Score
Page 26 of 61|Showing 1251-1300 of 3048
C

Costa Coffee

costacoffee.hr

48
RetailCroatialargeHIGH

Costa Coffee's Croatian website serves as a localized digital presence for the internationally recognized coffeehouse brand. The site primarily focuses on showcasing coffee products and brand information tailored to the Croatian market. The business operates within the retail sector, targeting general consumers and coffee enthusiasts. The website reflects a consistent brand identity aligned with Costa Coffee's global image and is supported by The Coca-Cola Company as its parent entity. Technically, the website leverages modern web technologies including React and Gatsby, supported by Akamai CDN for optimized performance. The site is mobile-optimized and employs standard security best practices such as HTTPS enforcement and security headers. Cookie consent is managed through OneTrust, indicating a basic level of privacy compliance. From a security perspective, the site demonstrates a solid posture with no detected vulnerabilities or exposed sensitive data. However, the absence of explicit privacy policy, terms of service, and incident response contact details suggests areas for improvement in compliance and transparency. The WHOIS data confirms the domain's legitimacy and consistency with the brand's regional presence. Overall, the website is professional, secure, and trustworthy, but would benefit from enhanced privacy and security disclosures to meet higher compliance standards.

-
40
17
70
-
75
100
coffeeretailbrandcroatiacostacoffee
ReactGatsbyGoogle Tag ManagerOneTrust Cookie Consent+1
2025-10-08T22:49:04.277Z
servsafe.com favicon

ServSafe

servsafe.com

72
EducationUnited StateslargeMEDIUM

ServSafe is a prominent provider of food safety training and certification programs targeting food service professionals, instructors, and administrators. Their offerings include Food Manager, Food Handler, Alcohol, Allergens, Academic, and Workplace training, positioning them as a leader in the food safety education sector in the United States. The website is professionally designed with clear navigation and consistent branding, supporting a large-scale educational business model focused on online certification and training services. Technically, the site leverages a mix of modern front-end frameworks like Bootstrap and jQuery, integrated with ASP.NET WebForms on the backend, and employs various marketing and analytics tools such as Google Analytics, Microsoft Clarity, Marketo, and OneTrust for cookie consent management. The site demonstrates good mobile optimization and accessibility compliance, although performance is moderate due to the complexity of scripts and integrations. From a security perspective, the website enforces HTTPS and includes CSRF protections in forms, but lacks explicit security headers like Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is well addressed with comprehensive privacy and cookie policies, including GDPR considerations. However, no explicit incident response or vulnerability disclosure policies were found. Overall, the website presents a trustworthy and professional front for ServSafe's business operations. The absence of WHOIS registration data slightly reduces trust but is likely due to privacy protection. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure information, and improving contact information visibility to further strengthen trust and compliance.

80
88
17
70
67
75
100
foodsafetytrainingcertificationeducationfoodhandler+3 more
Bootstrap CSSjQueryMarketo MunchkinMicrosoft ASP.NET WebForms+7
2025-10-08T21:45:11.802Z
ahlei.org favicon

American Hotel & Lodging Educational Institute

ahlei.org

72
HospitalityN/aenterpriseMEDIUM

The American Hotel & Lodging Educational Institute (AHLEI) operates a comprehensive hospitality education and certification platform, serving a global audience of hospitality professionals, educators, and students. The website offers a wide range of training programs, certification exams, academic resources, and international partnerships, positioning AHLEI as a leader in the hospitality education sector. The business model is primarily education and certification services supported by e-commerce for training materials and exams. Technically, the website leverages modern technologies including Kentico CMS, Microsoft Application Insights, Google Tag Manager, and marketing automation tools like Marketo, indicating a mature digital infrastructure. The site is well-optimized for mobile and accessibility, with strong SEO practices. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers and a public security policy are absent. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though it could improve transparency around security and incident response. The domain WHOIS data for the subdomain is not separately available, which is typical for subdomains, and does not raise legitimacy concerns. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and compliance.

50
88
17
85
67
85
100
hospitalityeducationtrainingcertificationhotel+3 more
JavaScriptGoogle Tag ManagerMicrosoft Application InsightsMarketo Munchkin+3

Partner Domains:

servsafe.com
partner
servsuccess.com
partner

+3 more partners

2025-10-08T21:45:01.777Z
amdocs.com favicon

Amdocs

amdocs.com

71
TechnologyN/aenterpriseMEDIUM

Amdocs is a leading enterprise software and services provider specializing in digital network transformation for communications and media companies. The company positions itself as a market leader offering innovative solutions and operational expertise to large-scale telecommunications and media clients. The website reflects a mature digital presence with professional design, comprehensive content, and clear business focus. Technically, the site employs modern marketing and analytics tools such as Google Tag Manager, Marketo, and Trendemon, alongside a cookie consent mechanism powered by OneTrust, indicating a commitment to privacy compliance. Security posture is strong with HTTPS enforced and multiple security headers present, although explicit security policies and incident response contacts are not prominently published. The absence of WHOIS data is a notable anomaly but does not detract significantly from the overall legitimacy given the professional presentation and trust signals. Strategic recommendations include publishing dedicated security and vulnerability disclosure policies and enhancing transparency around incident response. Overall, the website demonstrates a high level of professionalism, security awareness, and compliance suitable for an enterprise technology company.

35
88
25
80
74
85
100
technologytelecommunicationsmediasoftwareenterprise
Google Tag ManagerMarketo MunchkinTrendemonOneTrust Cookie Consent+2
2025-10-08T21:43:06.184Z
chef.io favicon

Chef Software

chef.io

60
TechnologyN/aenterpriseMEDIUM

Chef Software is a leading enterprise technology company specializing in DevOps automation solutions that enable organizations to configure, deploy, and manage application infrastructure securely and compliantly across cloud and edge environments. As a subsidiary of Progress Software Corporation, Chef holds a strong market position with a comprehensive suite of products including infrastructure management, application delivery, edge management, and security compliance tools. The website reflects a mature digital presence with professional design, clear navigation, and extensive resources targeting DevOps professionals and enterprise IT teams. Technically, the website leverages modern technologies such as Google Tag Manager, Sitefinity CMS, and cloud-based CDN services to ensure fast performance and mobile responsiveness. Privacy and cookie consent mechanisms are well implemented, indicating good compliance with GDPR and related regulations. However, explicit security headers and vulnerability disclosure mechanisms could be enhanced to further strengthen the security posture. Security-wise, the site enforces HTTPS and avoids exposing sensitive data, reflecting a solid security baseline. The absence of WHOIS data due to privacy protection is typical for enterprise domains and does not detract from the site's legitimacy. Overall, the site demonstrates a high level of professionalism and trustworthiness suitable for its enterprise audience. Strategically, Chef should consider publishing a security.txt file and providing explicit incident response contacts to improve transparency and readiness. Enhancing security headers and continuing to monitor for vulnerabilities will maintain their strong security posture. The site’s comprehensive content and clear business focus position it well for continued growth in the DevOps automation market.

70
68
10
65
-
85
100
devopsautomationinfrastructuremanagementsecuritycompliance+3 more
JavaScriptGoogle Tag ManagerSitefinity Insight SDKOneTrust Cookie Consent+1

Partner Domains:

www.progress.com
parent
partnerlink.progress.com
partner
2025-10-08T20:34:29.378Z
hudl.com favicon

Agile Sports Technologies, Inc.

hudl.com

69
TechnologyUnited StateslargeMEDIUM

Hudl, operated by Agile Sports Technologies, Inc., is a leading sports technology company specializing in video analysis, data insights, and performance tools for athletes, coaches, teams, and sports organizations globally. Founded in 2006, Hudl offers a comprehensive suite of products including smart cameras, analysis software, scouting databases, and fan engagement platforms. The company has a strong market position supported by multiple awards, a global footprint, and a robust digital presence. Technically, Hudl's website is built on Craft CMS and leverages modern web technologies such as Google Tag Manager, OneTrust for cookie consent, and AV1 video codecs for efficient media delivery. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO, reflecting a mature digital infrastructure. From a security perspective, Hudl enforces HTTPS, employs standard security headers, and integrates cookie consent mechanisms, indicating a solid security posture. No critical vulnerabilities or exposed sensitive data were detected. However, explicit incident response contacts and vulnerability disclosure policies are not publicly evident, representing an area for improvement. Overall, Hudl presents a trustworthy and professional online presence with strong business credibility and compliance with privacy regulations such as GDPR. The absence of WHOIS data is likely due to privacy protection services, which is justified for a company of this size and industry. Strategic recommendations include enhancing transparency around security incident response and vulnerability disclosures to further strengthen trust and security culture.

25
68
17
87
77
90
100
sportstechnologyvideoanalysisperformanceathlete+4 more
Google Tag ManagerOneTrust Cookie ConsentCraft CMSGoogle Fonts+2

Partner Domains:

fan.hudl.com
service
support.hudl.com
service

+3 more partners

2025-10-08T20:30:48.179Z
B

Believe

bfan.link

68
MediaN/alargeMEDIUM

Believe is a prominent global digital music company dedicated to serving independent artists and labels through a comprehensive suite of services including music distribution, publishing, and artist development. The company leverages local expertise worldwide to empower artists at every stage of their career. The website reflects a mature digital presence with professional design, clear navigation, and multimedia content that supports their business objectives. Technically, the site is built on Drupal 9 and integrates modern analytics and consent management tools, indicating a good level of digital maturity. Security posture is strong with HTTPS, security headers, and cookie consent mechanisms, though explicit security policies and incident response details are not publicly disclosed. The WHOIS data is unavailable or protected, which slightly reduces transparency but does not detract significantly from the overall trustworthiness given the professional web presence and business indicators. Strategic recommendations include publishing detailed security and incident response policies, adding vulnerability disclosure information, and enhancing transparency around data protection officer contacts and data retention policies.

35
65
17
85
75
85
100
musicdigitaldistributionindependentartistsmusicpublishingartistservices+2 more
Drupal 9HighchartsGoogle Tag ManagerOneTrust Cookie Consent+2

Partner Domains:

tunecore.com
subsidiary
sentricmusic.com
subsidiary
2025-10-08T19:23:46.758Z
mapbox.com favicon

Mapbox

mapbox.com

79
TechnologyUnited StateslargeLOW

Mapbox is a leading technology company specializing in providing APIs and SDKs for AI-powered maps, location search, turn-by-turn navigation, and geospatial data services for mobile and web applications. The company targets developers and enterprises seeking advanced location-based services integrated into their applications. Their market position is strong, with a comprehensive suite of mapping and navigation tools that leverage AI technologies to enhance user experience. Technically, Mapbox's website demonstrates a mature digital infrastructure, utilizing modern web technologies such as Webflow CMS, Google Fonts, Google Tag Manager, OneTrust for privacy compliance, and various marketing and analytics tools. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO, reflecting a high level of technical sophistication. From a security perspective, the website enforces HTTPS, employs multiple security headers, and integrates cookie consent mechanisms, indicating good security hygiene. However, the absence of a dedicated security policy page, incident response contact information, and vulnerability disclosure mechanisms suggests areas for improvement in transparency and security communication. Overall, Mapbox presents a professional and trustworthy online presence with strong business credibility and technical implementation. The main risk factor is the lack of accessible WHOIS data, which is unusual for a company of this stature and could warrant further investigation. Strategic recommendations include publishing explicit security policies, incident response contacts, and vulnerability disclosure information to enhance trust and compliance.

80
88
17
95
82
85
100
mapsnavigationlocationapisdk+3 more
Google FontsWebflowGoogle Tag ManagerOneTrust Cookie Consent+3
2025-10-08T19:21:35.540Z
isaca.org favicon

ISACA

isaca.org

83
TechnologyN/alargeLOW

ISACA is a globally recognized professional association specializing in IT governance, audit, risk, and cybersecurity. The organization offers a broad portfolio of certifications, training, and resources aimed at empowering IT professionals and advancing trust in technology. The website reflects a mature digital presence with comprehensive content tailored to its professional audience, including certifications like CISA, CISM, CRISC, and emerging technology certificates. The site is well-structured, mobile-optimized, and integrates modern tracking and consent technologies, indicating a high level of digital maturity. From a security perspective, the website enforces HTTPS, implements cookie consent mechanisms, and avoids exposing sensitive data. However, explicit security policies and incident response information are not publicly available, representing an area for improvement. The absence of WHOIS data due to query failure or privacy protection does not detract from the site's legitimacy, as ISACA is a well-established entity with consistent branding and recognized certifications. Overall, the website demonstrates a strong security posture, good privacy compliance, and professional business credibility. The technical infrastructure is modern and performant, supporting a positive user experience. Strategic recommendations include publishing detailed security policies, adding vulnerability disclosure channels, and enhancing transparency around incident response to further strengthen trust and compliance.

80
88
60
87
75
90
100
itauditcybersecuritycertificationsprofessionaltraininggovernance+3 more
Google Tag ManagerOneTrust Cookie ConsentSVG graphicsFlexboxgrid CSS

Partner Domains:

engage.isaca.org
partner
store.isaca.org
partner
2025-10-08T18:15:22.815Z
synack.com favicon

Synack

synack.com

82
TechnologyUnited StatesenterpriseLOW

Synack is a leading cybersecurity company specializing in Penetration Testing as a Service (PTaaS), leveraging a global community of elite security researchers and advanced AI technologies to provide continuous vulnerability discovery and risk reduction. The company holds a strong market position with FedRAMP Moderate authorization, serving enterprise clients across various industries including technology, financial services, and public sector. Their platform integrates automation with human-led testing to deliver scalable and effective security validation. Technically, Synack's website is built on WordPress with modern SEO and analytics tools such as Yoast SEO, Google Analytics, and Google Tag Manager. The site demonstrates good performance, mobile optimization, and accessibility. Security best practices are well implemented, including HTTPS enforcement, comprehensive security headers, and cookie consent mechanisms. The company maintains a professional digital presence with extensive resources, media, and social engagement. From a security posture perspective, Synack exhibits a mature security framework with certifications like FedRAMP Moderate, secure infrastructure, and no evident vulnerabilities or exposed sensitive data. However, the absence of a public security.txt file and incident response contact details suggests areas for improvement in transparency and vulnerability disclosure. Overall, Synack presents a low-risk profile with strong business credibility and security maturity. Strategic recommendations include enhancing public security disclosures, maintaining rigorous third-party script audits, and expanding incident response visibility to further strengthen trust and compliance.

95
85
75
85
52
80
100
cybersecuritypenetrationtestingptaasfedrampsecuritytesting+2 more
WordPressYoast SEOjQueryGoogle Tag Manager+4

Partner Domains:

boards.greenhouse.io
partner
webinar.synack.com
service

+1 more partners

2025-10-08T16:47:26.945Z
onersac.com favicon

OneRSAC

onersac.com

64
TechnologyN/amediumMEDIUM

OneRSAC is a cybersecurity-focused community platform that offers expert insights, resources, and a collaborative environment for professionals in the cybersecurity industry. The website positions itself as a hub for content, connection, and culture within the cybersecurity space, targeting industry professionals and enthusiasts. The platform leverages modern web technologies including Bootstrap 5 and integrates analytics and tracking tools such as Google Tag Manager, Facebook Pixel, and LinkedIn Insight Tag to monitor user engagement and optimize marketing efforts. Privacy compliance is partially addressed through the implementation of a OneTrust cookie consent mechanism, although no explicit privacy policy or terms of service pages were detected in the provided content. Security posture is generally good with HTTPS enforced and no exposed sensitive data, but the absence of security headers and incident response contact information suggests room for improvement. The domain's WHOIS data is unavailable, which raises concerns about domain legitimacy and transparency, though the website content and technical implementation appear professional and trustworthy. Overall, the website demonstrates a solid digital presence with moderate risk due to incomplete domain registration information and privacy documentation.

45
88
47
75
-
80
100
cybersecuritycommunityresourcestechnologysecurity+3 more
Bootstrap 5Accessible Slick CarouselGoogle Tag ManagerYouTube iframe API+1
2025-10-08T13:59:58.459Z
aspendigital.org favicon

Aspen Digital

aspendigital.org

74
GovernmentUnited StatesmediumMEDIUM

Aspen Digital is a non-profit organization focused on leveraging technology and information to empower communities and strengthen democracy. The website positions the organization as a thought leader and facilitator in technology policy and democratic engagement, targeting communities, policymakers, and technology stakeholders. The business model centers on research, policy development, and community engagement to foster democratic innovation. Technically, the website is built on WordPress with modern SEO and analytics tools such as Yoast SEO, Google Tag Manager, and New Relic for performance monitoring. The site is well-optimized for mobile and SEO, with good performance and accessibility features, although some accessibility improvements could be made. From a security perspective, the site enforces HTTPS, uses security headers, and implements cookie consent mechanisms compliant with GDPR. However, there is no publicly available security policy or incident response information, and WHOIS data is privacy protected, which is common for non-profits but limits transparency. No vulnerabilities or suspicious domains were detected. Overall, Aspen Digital's website demonstrates a professional and trustworthy online presence with a solid technical foundation and good privacy compliance. The lack of WHOIS transparency is mitigated by the site's professionalism and security posture. Strategic recommendations include publishing a security policy, incident response contacts, and vulnerability disclosure information to enhance trust and compliance.

25
88
55
70
95
80
100
technologydemocracynon-profitpolicycommunity+5 more
WordPressYoast SEOGoogle Tag ManagerGoogle Analytics+2
2025-10-08T11:16:07.266Z
mirabaud.com.br favicon

Mirabaud Family Office

mirabaud.com.br

59
FinanceBrazilmediumMEDIUM

Mirabaud Family Office Brazil is a specialized financial services provider offering comprehensive wealth management, investment advisory, and estate planning services tailored to high net worth families and individuals. As part of the historic Mirabaud Group with over 200 years of experience, the company emphasizes personalized, independent, and long-term asset preservation strategies. The website reflects a professional and consistent brand image, targeting affluent clients seeking trusted family office solutions. Technically, the website is built on the TYPO3 CMS platform, leveraging modern web technologies and integrating Google Tag Manager for analytics and cookie consent management. The site is mobile-optimized, accessible, and SEO-friendly, hosted on reputable infrastructure with secure HTTPS enforcement. From a security perspective, the site demonstrates good practices including HTTPS, cookie consent, and no visible sensitive data exposure. However, it lacks explicit security policy documentation and incident response contact details, which are recommended for enhanced trust and compliance. The WHOIS data aligns well with the business claims, showing domain legitimacy and consistency. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic improvements in security transparency and incident response readiness would further strengthen its posture.

25
95
2
65
95
85
20
financewealthmanagementfamilyofficeinvestmentadvisorybrazil
TYPO3 CMSGoogle Tag ManagerOneTrust Cookie ConsentGoogle Maps API

Partner Domains:

www.mirabaud.com
partner
www.mirabaud-am.com
partner
2025-10-08T11:09:16.566Z
mirabaud-am.com favicon

Mirabaud Asset Management

mirabaud-am.com

54
FinanceSwitzerlandmediumMEDIUM

Mirabaud Asset Management is an independent asset management firm specializing in active investment strategies across equities, fixed income, and private assets. The company emphasizes sustainable and high conviction investment approaches, targeting institutional and private investors. The website reflects a strong market position under the Mirabaud Group umbrella, offering detailed information on capabilities, funds, and corporate governance. Technically, the website is built on TYPO3 CMS with modern integrations such as Google Tag Manager and OneTrust for cookie consent, indicating a mature digital infrastructure. The site is well-optimized for SEO, mobile-friendly, and provides a professional user experience with clear navigation and comprehensive content. From a security perspective, the site enforces HTTPS and includes cookie consent mechanisms, but lacks explicit security headers and published incident response or vulnerability disclosure policies. The absence of WHOIS registration data is a notable concern, potentially impacting trustworthiness, though the professional presentation and branding mitigate this risk. Overall, the website demonstrates a high level of professionalism and compliance with privacy regulations, but could improve transparency in security policies and domain registration details to enhance trust and security posture.

25
65
2
70
100
70
20
assetmanagementfinanceinvestmentequitiesfixedincome+5 more
TYPO3 CMSGoogle Tag ManagerOneTrust Cookie ConsentYoast SEO for TYPO3

Partner Domains:

www.mirabaud.com
parent
www.mirabaud.com.br
subsidiary
2025-10-08T11:09:11.553Z