Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150709
Websites
130
Industries
113
Countries
52
Avg Score
Page 275 of 781|Showing 13701-13750 of 39003
cisecurity.org favicon

Center for Internet Security

cisecurity.org

81
Non-profitUnited StatesmediumLOW

The Center for Internet Security (CIS) is a reputable nonprofit organization dedicated to improving cybersecurity for public and private entities by leveraging a global IT community. Their website reflects a professional and well-structured digital presence, offering resources, collaboration opportunities, and cybersecurity best practices. The organization targets IT professionals, businesses, and government agencies seeking to enhance their security posture. Technically, the website employs modern web technologies including Vue.js, jQuery, and Sitecore CMS, supported by analytics and marketing tools such as Matomo, Cookiebot, and Optimizely. The site is mobile-optimized, accessible, and SEO-friendly, indicating a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses cookie consent mechanisms, and integrates privacy-compliant analytics. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security headers should be verified and a security.txt file could enhance vulnerability disclosure. Overall, CIS presents a low-risk profile with strong business credibility and compliance posture. Strategic recommendations include enhancing security header implementation, formalizing vulnerability disclosure, and continuous monitoring of third-party scripts to maintain security integrity.

85
88
67
75
65
80
100
cybersecuritynonprofitinformationsecurityprivacycompliance+1 more
JavaScriptjQueryMatomo AnalyticsCookiebot+2
2025-10-08T11:16:47.359Z
wondros.com favicon

Wondros

wondros.com

60
MediaUnited StatessmallMEDIUM

Wondros is a strategic creative agency specializing in storytelling, strategy, and campaigns aimed at turning complex ideas into impactful communications. The company serves a diverse client base including health, science, education, social justice, and human rights sectors. Their market position is supported by a portfolio of notable clients and projects, with a focus on building trust and driving engagement through measurable outcomes. The website reflects a professional and consistent brand image with excellent content quality and clear navigation. Technically, the site employs modern tracking and marketing tools such as Google Analytics, Hotjar, HubSpot, and Sopro, hosted on a GoDaddy-registered domain. Mobile optimization and SEO practices are good, though accessibility features are basic. Security posture is adequate with HTTPS enabled and domain-level protections, but lacks DNSSEC and security headers, and does not publicly disclose security or incident response policies. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism despite tracking scripts. Overall, the site is trustworthy and professionally maintained, with room for improvement in security and privacy transparency.

15
53
47
85
77
85
40
creativeagencystorytellingstrategiccommunicationscampaignshealthcommunications+2 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsHotjar+2

Partner Domains:

fieldnotes.wondros.com
partner
2025-10-08T11:16:02.240Z
kendros.com favicon

2L.COMM SA

kendros.com

40
TransportationSwitzerlandsmallHIGH

Kendros.com operates as a specialized travel industry information portal primarily targeting travel agencies and tourism professionals. The platform aggregates and distributes daily information from various service providers, including travel offers, directories, visa information, and news updates. The business is linked to 2L.COMM SA, a Swiss company, and serves a niche market within the transportation and hospitality sectors. The website content is mostly in French and provides basic but relevant information for its target audience. Technically, the website is built on legacy ASP.NET WebForms technology with JavaScript enhancements and uses Google Analytics for visitor tracking. The site is moderately optimized with basic mobile and accessibility features but lacks modern security headers and advanced privacy compliance mechanisms. The absence of a clear cookie policy and GDPR compliance indicators suggests room for improvement in privacy practices. From a security perspective, the site uses HTTPS but lacks critical security headers such as Content-Security-Policy and anti-CSRF protections. No vulnerabilities were directly observed, but the missing WHOIS data for the domain raises concerns about domain registration legitimacy. Overall, the security posture is moderate but could benefit from enhancements to protect user data and improve trust. The overall risk assessment indicates a moderately trustworthy site with some compliance and security gaps. Strategic recommendations include implementing comprehensive privacy and cookie policies, enhancing security headers and form protections, and resolving domain registration transparency issues to strengthen legitimacy and user trust.

15
35
2
70
62
75
-
travellogintourisminformationindustry+1 more
ASP.NET WebFormsJavaScriptGoogle Analytics (gtag.js)
2025-10-08T11:08:26.090Z
morgesavenir.ch favicon

Ville de Morges

morgesavenir.ch

48
GovernmentSwitzerlandmediumHIGH

The website 'Morges Avenir' serves as an official information portal for the city of Morges, Switzerland, focusing on public works, infrastructure projects, and urban environment updates. It targets residents and users of the city, providing timely updates on construction, traffic disruptions, and public announcements. The site is positioned as a government service platform, offering transparency and communication about municipal projects. Technically, the website employs a modern tech stack including HTML5, CSS, JavaScript with jQuery and Bootstrap frameworks, and mapping technologies such as OpenLayers and proj4. It is mobile responsive and provides a moderate performance experience. The site integrates Google Analytics and Google Tag Manager for user tracking but lacks visible privacy and cookie policies, which is a compliance gap. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks visible security headers and formal security or incident response policies. The absence of privacy and cookie policies reduces its privacy compliance score. Overall, the security posture is moderate but could be improved with better header implementation and transparency. The overall risk assessment is low, given the official nature and trustworthy domain registration. Strategic recommendations include implementing privacy and cookie policies, adding security headers, and publishing vulnerability disclosure and incident response information to enhance trust and compliance.

25
35
17
65
62
85
20
publicworkscityinfrastructuregovernmentmorgesconstructionupdates+1 more
HTML5CSSJavaScriptjQuery+3
2025-10-08T11:05:30.459Z
bolle.ch favicon

Bolle & Cie SA

bolle.ch

70
RetailSwitzerlandmediumMEDIUM

Bolle & Cie SA operates a well-established Swiss wine retail business with a history dating back to 1865. Their website, bolle.ch, serves as an e-commerce platform offering a variety of Swiss wines including their flagship La Licorne collection. The company targets wine consumers and enthusiasts primarily in Switzerland, leveraging a professional online presence with clear branding and consistent messaging. The business model focuses on direct online sales, complemented by wine tastings and events, positioning Bolle & Cie as a reputable player in the Swiss wine retail market. Technically, the website is built on the Shopify platform using the Dawn theme, incorporating modern web technologies and third-party marketing and analytics tools such as Google Tag Manager and Sendinblue. The site demonstrates good performance, mobile optimization, and accessibility standards. Security measures include HTTPS enforcement, standard security headers, and captcha protection on forms, reflecting a mature security posture. However, explicit security policies and incident response information are not publicly available. From a security and compliance perspective, the site includes comprehensive privacy and cookie policies with consent mechanisms, indicating GDPR awareness and compliance. No critical vulnerabilities or suspicious activities were detected. The WHOIS data confirms the legitimacy of the domain registration, consistent with the company's Swiss origins and long history. Overall, bolle.ch is a professionally managed e-commerce site with strong business credibility, good technical implementation, and solid security practices. Strategic improvements could include publishing detailed security policies, incident response contacts, and terms of service to enhance transparency and trust further.

55
75
100
80
75
17
73
winee-commerceswitzerlandshopifyretail+3 more
ShopifyJavaScriptGoogle Tag ManagerSendinblue (Brevo) marketing scripts+3

Partner Domains:

thewinefamily.ch
partner
2025-10-08T11:04:35.296Z
annas-archive.li favicon

Anna’s Archive

annas-archive.li

62
TechnologyN/alargeMEDIUM

Anna’s Archive is a large-scale open-source digital library that aggregates and mirrors content from prominent shadow libraries such as Sci-Hub, Library Genesis, and Z-Library. It serves a global audience of researchers, students, and academics seeking open access to scholarly books and papers. The platform emphasizes transparency, community involvement, and open data, positioning itself as a key player in the open access movement. The website is multilingual and provides extensive metadata and datasets to support research and data curation efforts. Technically, the website employs modern web technologies including JavaScript, Tailwind CSS, and advanced DOM manipulation techniques. It uses a dark mode library for user experience enhancement and demonstrates good mobile optimization and accessibility. The site is well-structured with clear navigation and SEO-friendly metadata. From a security perspective, the site enforces HTTPS, implements strong security headers, and avoids exposing sensitive data. However, it lacks explicit cookie consent mechanisms and does not provide clear incident response or vulnerability disclosure information, which are areas for improvement. No signs of malicious activity or vulnerabilities were detected. Overall, Anna’s Archive presents a trustworthy and professional digital library platform with strong community and open data credentials. Strategic enhancements in privacy compliance and security transparency would further strengthen its position and user trust.

50
35
2
70
75
80
100
openaccesslibraryshadowlibraryacademicopendata+2 more
JavaScriptTailwind CSSDark Reader (dark mode library)Fetch API+3

Partner Domains:

annas-archive.se
partner
annas-archive.org
partner

+1 more partners

2025-10-08T11:03:30.129Z
R

Report-URI Ltd.

reporturi.com

74
TechnologyUnited KingdomsmallMEDIUM

Report-URI Ltd. is a UK-based technology company specializing in website and email security solutions. Their platform enables customers to detect and mitigate advanced attacks such as Magecart and hostile JavaScript threats. Positioned as a market leader, they offer a range of products including Content Security Policy monitoring, Script Watch, Threat Intelligence, and PCI DSS compliance services. Their business model is subscription-based SaaS targeting website owners, security professionals, and enterprises seeking robust security monitoring and compliance tools. Technically, the website demonstrates a mature and modern infrastructure leveraging Bootstrap, FontAwesome, and Cloudflare services for hosting and CDN. The site is well-optimized for performance, mobile responsiveness, and SEO, with structured data enhancing search visibility. Security best practices are evident with HTTPS enforcement and domain transfer protections, although DNSSEC is not enabled. The site lacks a cookie consent mechanism and explicit incident response contacts, which are areas for improvement. From a security posture perspective, Report-URI maintains a strong stance with no visible vulnerabilities or exposed sensitive data. Their certifications, including PCI DSS SAQ A, and penetration testing reports bolster trust. The absence of a security.txt file and incident response contacts slightly reduce transparency. Overall, the site is professional, trustworthy, and secure, with excellent content quality and user experience. The overall risk assessment is low, with recommendations focusing on enhancing DNS security via DNSSEC, publishing vulnerability disclosure policies, and implementing cookie consent mechanisms to improve privacy compliance. These steps will further solidify their security culture and regulatory adherence.

55
53
47
85
75
90
100
securitywebsitesecuritymagecartcsppcidss+3 more
Bootstrap 5.2.0FontAwesome Pro 6.2.0Cloudflare DNS and CDNJavaScript+1
2025-10-08T11:03:05.062Z
vioma.de favicon

vioma GmbH

vioma.de

64
HospitalityGermanymediumMEDIUM

vioma GmbH is a medium-sized German company specializing in comprehensive digital solutions for the hospitality industry, including hotel management software, booking systems, channel management, and online marketing services. The company positions itself as a 360° service provider offering innovative and award-winning software tools tailored for hotels and tourism businesses. Their market presence is supported by strong partner integrations and positive customer testimonials, indicating a solid reputation in their sector. Technically, the website is built on the Condeon CMS platform and integrates modern technologies such as Matomo Analytics, HubSpot forms, and Pipedrive for CRM. The site is well-optimized for mobile devices, features good SEO practices, and employs a robust cookie consent mechanism compliant with GDPR. The use of multiple analytics and marketing tools demonstrates a mature digital infrastructure. From a security perspective, the site enforces HTTPS and implements cookie consent with opt-in/out capabilities. However, it lacks explicit security policy documentation and incident response contact details, which are recommended for enhanced transparency and trust. No critical vulnerabilities or exposed sensitive data were detected in the analysis. Overall, vioma GmbH presents a professional, trustworthy, and technically sound online presence with strong compliance to privacy regulations. Strategic improvements in security policy disclosure and incident response readiness would further strengthen their security posture and customer confidence.

20
68
2
70
100
65
100
hotelsoftwareonlinemarketingbookingsystemchannelmanagerhotelwebsites+4 more
JavaScriptMatomo AnalyticsHubSpot FormsPipedrive Web Forms+6
2025-10-08T11:02:34.971Z
visaeurope.ch favicon

Visa Europe

visaeurope.ch

69
FinanceSwitzerlandenterpriseMEDIUM

Visa Europe operates as a leading digital and mobile payment network, providing a wide range of payment technologies and services including credit, debit, and digital wallets such as Apple Pay and Google Pay. The website targets both consumers and businesses primarily in Switzerland and Europe, positioning itself as a trusted market leader in the finance sector. The business model revolves around enabling secure, innovative payment solutions and supporting merchants and partners with advanced commerce technologies. Visa Europe is a subsidiary of Visa Inc., reflecting a large enterprise scale with a strong global presence. Technically, the website leverages modern web technologies including Stencil.js, jQuery, and integrates with third-party services like YouTube and Tealium for analytics and tag management. The site is hosted on Visa's CDN infrastructure, optimized for performance, mobile responsiveness, and accessibility. The content is well-structured with comprehensive metadata, SEO optimization, and multilingual support. From a security perspective, the site enforces HTTPS with strong SSL configurations and security headers such as CSP and HSTS. Privacy compliance is robust with clear privacy and cookie policies, including consent mechanisms aligned with GDPR. However, explicit security policies, incident response contacts, and vulnerability disclosure information are not publicly available, representing areas for improvement. Overall, the website demonstrates a high level of professionalism, trustworthiness, and technical maturity. The absence of critical vulnerabilities and the presence of strong privacy controls contribute to a favorable risk profile. Strategic recommendations include publishing detailed security policies and incident response contacts to enhance transparency and trust further.

75
83
17
50
52
90
100
financepaymentsdigitalpaymentsvisacontactless+4 more
YouTube iframe APIjQueryStencil.jsTealium+4

Partner Domains:

partner.visa.com
partner
usa.visa.com
sister
2025-10-08T09:46:51.411Z
eepurl.com favicon

Mailchimp

eepurl.com

51
TechnologyN/alargeMEDIUM

EepURL is a legacy URL shortening service developed as part of Mailchimp's marketing platform, specifically for Twitter integration. The service is no longer publicly available but remains functional within Mailchimp's app for existing URLs. The website content is minimal and informational, focusing on explaining the service's status and providing a link to an alternative URL shortener. The domain is well maintained with a reputable registrar and domain protection status, indicating legitimacy and operational continuity within Mailchimp's ecosystem. Technically, the website uses basic HTML and JavaScript with no advanced frameworks or CMS detected. Hosting is likely via Akamai CDN based on nameservers, supporting moderate performance and availability. The site lacks modern security headers and DNSSEC, which are recommended for enhanced security. No analytics or tracking scripts were detected, suggesting minimal user tracking. From a security perspective, the site is accessible without WAF or blocking mechanisms, but it lacks published privacy, cookie, or security policies, which reduces compliance posture. No contact or incident response information is provided, limiting transparency. The domain registration details are consistent with a legitimate business service, with strong registrar-level protections but missing DNSSEC. Overall, the website is safe and trustworthy but basic in content and security features. Strategic improvements include publishing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing contact or incident response information to enhance compliance and trust.

-
50
17
45
52
85
100
urlshorteningmailchimpmarketingtrackingtechnology
JavaScript
2025-10-08T09:41:36.915Z
mailchimp.com favicon

Mailchimp

mailchimp.com

78
TechnologyUnited StatesenterpriseLOW

Mailchimp is a leading marketing, automation, and email platform that leverages AI and real-time behavioral data to help businesses convert customers effectively. As a subsidiary of Intuit Inc., it holds a strong market position with a comprehensive suite of services including email marketing, website building, social media marketing, and audience management. The platform targets small to enterprise-level businesses, startups, agencies, and developers, offering a SaaS subscription model with free trials to attract users. Technically, Mailchimp employs a modern and robust technology stack including JavaScript frameworks, Google Tag Manager, Segment, Optimizely, and FullStory for analytics and user experience optimization. The site is hosted on Akamai's infrastructure, ensuring fast performance and excellent mobile optimization. SEO and accessibility practices are well implemented, contributing to a professional and user-friendly website. From a security perspective, Mailchimp enforces HTTPS, uses domain status locks to prevent unauthorized changes, and integrates CAPTCHA and consent management tools to protect user data and comply with privacy regulations. However, explicit security policies and incident response information are not publicly detailed, and DNSSEC is not enabled, which could be improved. No vulnerabilities or suspicious activities were detected. Overall, Mailchimp presents a secure, compliant, and highly credible online presence with strong business credibility and technical maturity. The domain WHOIS data aligns with the company's history and legitimacy, reinforcing trust. Strategic recommendations include enabling DNSSEC, publishing detailed security policies, and adding a vulnerability disclosure mechanism to further enhance security posture.

45
85
47
87
79
90
100
emailmarketingmarketingautomatione-commerceaimarketingleadgeneration+2 more
JavaScriptReact (likely)Google Tag ManagerGoogle Analytics+8

Partner Domains:

intuit.com
parent
turbotax.intuit.com
sister

+2 more partners

2025-10-08T09:41:26.893Z
visa.lv favicon

Visa

visa.lv

65
FinanceLatviaenterpriseMEDIUM

Visa.lv is the Latvian regional website for Visa, a globally recognized leader in digital payment solutions. The site provides comprehensive information about Visa's services, including payment cards, mobile payments, and security technologies, targeting consumers, businesses, and fintech innovators. The website reflects Visa's strong market position and commitment to secure, innovative payment technologies. Technically, the site is built on modern web technologies including Stencil.js and leverages Adobe Experience Manager as its CMS, with Cloudflare providing hosting and CDN services. The site is well-optimized for performance, mobile responsiveness, and accessibility, and integrates advanced analytics and marketing tools such as Google Analytics, ContentSquare, Eloqua, and Tealium. Security posture is strong with HTTPS enforced, appropriate security headers, and no visible vulnerabilities or exposed sensitive data. Privacy compliance is robust, featuring comprehensive privacy and cookie policies with user consent mechanisms aligned with GDPR requirements. However, explicit security policies and incident response contacts are not publicly detailed. Overall, the website demonstrates high professionalism, trustworthiness, and digital maturity, supporting Visa's global brand reputation.

75
83
17
40
52
65
100
financepaymentsdigitalpaymentsvisasecurity+3 more
JavaScriptYouTube iframe APICloudflare (implied by cookies)Tealium (tag management)+3

Partner Domains:

partner.visa.com
partner
2025-10-08T09:40:16.728Z
visa.fr favicon

Visa

visa.fr

60
FinanceFranceenterpriseMEDIUM

Visa France operates as a regional portal for Visa Inc., a global leader in digital and mobile payment technologies. The website offers comprehensive information about Visa's payment cards, contactless and mobile payment solutions, and premium services such as Visa Premier. It targets consumers, businesses, and innovators, providing resources, partnerships, and support. The site is professionally designed, mobile-optimized, and well-structured, reflecting Visa's strong market position and brand consistency. Technically, the website leverages modern web technologies including Stencil.js, integrates third-party services like YouTube, Tealium for tag management, and Optimizely for A/B testing. Hosting and security appear robust, likely utilizing Cloudflare services, with HTTPS enforced and multiple security headers present. The site includes comprehensive privacy and cookie policies with user consent mechanisms, demonstrating good compliance with GDPR and related regulations. Security posture is strong with no detected vulnerabilities or exposed sensitive data. However, explicit security policies and incident response contacts are not publicly detailed, suggesting room for improvement in transparency. The WHOIS data is not publicly available, likely due to privacy protection, but the domain and website content align with Visa's legitimate corporate presence. Overall, Visa France's website is a secure, professional, and trustworthy platform supporting Visa's financial services in the French market, with strong compliance and technical maturity.

55
83
17
50
-
90
100
financepaymentsvisadigitalpaymentsmobilepayments+5 more
JavaScriptStencil.jsYouTube iframe APICloudflare (implied by cookies)+2

Partner Domains:

my.visa.fr
partner
visa.com
partner

+2 more partners

2025-10-08T09:40:06.708Z