Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150012
Websites
130
Industries
113
Countries
52
Avg Score
Page 2809 of 3001|Showing 140401-140450 of 150012
H

Hasura, Inc.

promptql.io

65
TechnologyUnited StatesmediumHIGH

PromptQL is an AI platform developed by Hasura, Inc. that provides enterprise-grade natural language analysis and automation solutions with human-level reliability. The platform is designed to codify unique business language into deterministic commands for large language models, enabling complex data-driven processes to be automated and analyzed efficiently. Positioned as a reliable AI staff-level analyst or engineer, PromptQL targets enterprise data and AI teams seeking to enhance decision-making and operational efficiency. Technically, the website leverages modern web technologies including React and Next.js, with integrations to marketing and analytics tools such as Marketo, Segment, Google Analytics, Microsoft Clarity, and PostHog. The site demonstrates good mobile optimization, SEO practices, and moderate performance. Hosting appears to be managed by Hasura or associated cloud providers. From a security perspective, the site employs HTTPS with strong security headers like Content Security Policy and Referrer Policy. It uses a comprehensive cookie consent mechanism compliant with GDPR, offering users granular control over cookie categories. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response information are not published, representing an area for improvement. Overall, the website presents a professional, trustworthy, and well-structured digital presence for PromptQL, with strong privacy compliance and marketing transparency. Strategic recommendations include publishing detailed security and incident response policies, enhancing accessibility features, and maintaining vigilance over third-party script security to sustain trust and compliance.

15
83
25
75
60
75
100
aiautomationenterprisedataanalysisnaturallanguageprocessing+4 more
ReactNext.jsGoogle FontsMarketo+4

Partner Domains:

hasura.io
parent
2025-06-17T22:08:48.368Z
hei.news favicon

Home Equity Lending News LLC

hei.news

57
FinanceUnited StatessmallMEDIUM

Home Equity Lending News LLC operates a specialized online news platform focused on home equity lending, investment contracts, and related financial products. The website provides industry news, market studies, advertising services, and newsletters targeting professionals and stakeholders in the home equity finance sector. The business positions itself as a niche media outlet with a consistent brand and good content quality. Technically, the website is built on WordPress CMS with modern front-end technologies including Bootstrap and jQuery. It uses Matomo and Google Analytics for tracking, and Ezoic for advertising and performance optimization. The site is mobile-optimized and implements SEO best practices with structured data and meta tags. From a security perspective, the site enforces HTTPS, uses cookie consent mechanisms compliant with GDPR, and disables right-click on images to protect content. However, explicit security headers like CSP and X-Frame-Options are not evident, and no public security or incident response policies are found. No vulnerabilities or exposed sensitive data were detected. Overall, the website demonstrates a good balance of business credibility, technical maturity, and privacy compliance, with room for improvement in security policy transparency and additional security headers.

35
80
25
60
-
75
100
financehomeequitynewsinvestmentrealestate+1 more
WordPress CMSPHPJavaScriptjQuery+5

Partner Domains:

our-hometown.com
partner
sfranalytics.com
partner

+1 more partners

2025-06-17T22:08:16.338Z
swetrix.com favicon

Swetrix

swetrix.com

52
TechnologyUnited KingdomsmallMEDIUM

Swetrix is a privacy-first web analytics platform positioned as a cookieless and GDPR-compliant alternative to Google Analytics. The company targets website owners and businesses seeking detailed user insights without compromising visitor privacy. Their business model is subscription-based with a free trial and tiered pricing based on monthly event volumes. The platform is open source, enhancing transparency and trust. Technically, Swetrix employs a modern technology stack including React, Vue, Svelte, Node.js, and Next.js frameworks. The website is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. The absence of cookies for tracking and the use of anonymous data collection methods demonstrate a strong commitment to privacy compliance. From a security perspective, the site enforces HTTPS and avoids collecting personal identifiers, reducing risk exposure. However, explicit security headers and a formal security policy or incident response contacts are not present, representing areas for improvement. No vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, Swetrix presents a trustworthy and professional online presence with a strong privacy and compliance posture. Strategic recommendations include enhancing security headers, publishing a security policy, and establishing a vulnerability disclosure program to further strengthen security and trust.

30
80
25
60
60
75
-
analyticsprivacygdprcookielessopensource+2 more
ReactVueSvelteNode.js+1
2025-06-17T22:06:54.702Z
swetrix.org favicon

Swetrix

swetrix.org

68
TechnologyUnited KingdomsmallHIGH

Swetrix is a privacy-first web analytics platform offering a cookieless and GDPR-compliant alternative to Google Analytics. Positioned as an ethical and open source solution, it targets website owners and marketers who prioritize user privacy and data ownership. The company provides a subscription-based SaaS model with transparent pricing and a free trial, emphasizing ease of use and comprehensive analytics features including traffic insights, session analysis, marketing funnels, and custom event tracking. Technically, Swetrix employs a modern technology stack including React, Next.js, Node.js, and supports multiple frontend frameworks. The website is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. The open source nature of the platform enhances transparency and community trust. From a security perspective, the site enforces HTTPS and avoids tracking cookies, aligning with privacy best practices. However, it lacks explicit security policy documentation and incident response contacts, which are recommended for enhanced trust and compliance. No vulnerabilities or exposed sensitive data were detected. Overall, Swetrix presents a strong privacy and security posture with excellent content quality and technical implementation. Strategic improvements include publishing security policies, incident response details, and implementing a cookie consent mechanism despite the cookieless approach to further strengthen compliance and user trust.

30
80
25
80
60
80
100
analyticsprivacycookielessgdpropensource+2 more
ReactVueSvelteNode.js+1
2025-06-17T22:06:48.757Z
figure.com favicon

Figure Lending LLC dba Figure

figure.com

76
FinanceUnited StateslargeHIGH

Figure Lending LLC, operating as Figure, is a leading non-bank lender specializing in Home Equity Lines of Credit (HELOC) and related financial products. Positioned as America's #1 Non-Bank HELOC Lender, Figure leverages advanced technology platforms to provide fast, efficient, and flexible lending solutions to homeowners and small businesses. Their online application process, combined with AI-powered underwriting and partnerships with OpenAI and Google Gemini, enables rapid approvals and funding, enhancing customer experience and operational efficiency. Technically, Figure's website is built using modern frameworks such as React and Astro, supported by a robust content management system (DatoCMS) and integrated with industry-standard tools like Google Tag Manager and OneTrust for analytics and privacy compliance. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, the website enforces HTTPS, implements key security headers, and provides a comprehensive cookie consent mechanism. While explicit security policies and incident response contacts are not publicly detailed, the overall security posture is strong with no evident vulnerabilities or exposed sensitive data. Overall, Figure presents a professional, trustworthy, and technologically advanced online presence, well-aligned with its market leadership in the HELOC space. Strategic recommendations include publishing dedicated security and incident response policies and enhancing transparency around vulnerability disclosures to further strengthen trust and compliance.

70
88
25
80
72
85
100
helocnon-banklenderhomeequityfinanceloan+5 more
ReactAstroGoogle Tag ManagerOneTrust Cookie Consent+2
2025-06-17T22:06:18.606Z
upollo.ai favicon

Upollo

upollo.ai

75
TechnologyAustraliasmallHIGH

Upollo is a technology company founded in 2021, specializing in AI-powered customer insights to help businesses identify users ready to convert, churn, or expand. Positioned as a growth intelligence platform, it serves marketing, sales, customer success, and product teams with features like AI scoring, churn prevention, and automated workflows. The company is backed by reputable investors and emphasizes data-driven revenue growth. Technically, Upollo leverages a modern web infrastructure built on Webflow CMS, integrating multiple analytics and marketing tools such as Segment, Google Analytics, Microsoft Clarity, and Intercom. The website is fast, mobile-optimized, and well-structured with strong SEO and accessibility considerations. From a security perspective, Upollo demonstrates a mature posture with SOC 2 Type 2 certification, GDPR compliance, encryption at rest, and penetration testing. Cookie consent is managed via Cookiebot, ensuring user privacy and regulatory adherence. No critical vulnerabilities or blocking mechanisms were detected. Overall, Upollo presents a trustworthy and professional digital presence with strong business credibility and security practices. Strategic recommendations include publishing an incident response policy, adding a security.txt file, and maintaining up-to-date security headers and third-party libraries.

60
95
25
85
59
85
100
saascustomersuccesschurnpreventionaiscoringgrowth+6 more
Webflow CMSGoogle Tag ManagerSegment AnalyticsMicrosoft Clarity+10

Partner Domains:

stripe.com
partner
segment.com
partner

+3 more partners

2025-06-17T22:03:38.591Z
tidio.com favicon

Tidio

tidio.com

71
TechnologyN/amediumHIGH

Tidio is a technology company specializing in AI-driven customer service solutions, including live chat, help desk software, and automation tools. Positioned as a trusted provider with over 300,000 business users, Tidio offers a comprehensive platform that integrates AI agents like Lyro to automate up to 67% of customer interactions across multiple channels. Their market presence spans ecommerce, fintech, education, and travel sectors, emphasizing scalability and multilingual support. Technically, Tidio employs a modern web infrastructure based on Next.js and React, with integrations of various analytics and marketing tools such as Google Tag Manager, Amplitude, and Cookiebot. The platform supports multiple operating systems and devices, ensuring excellent mobile optimization and accessibility. Hosting appears to leverage Cloudflare and AWS services, contributing to fast performance and robust security. From a security perspective, Tidio demonstrates strong practices including HTTPS enforcement, SOC 2 certification, and comprehensive cookie consent mechanisms aligned with GDPR and CCPA. No critical vulnerabilities or exposed sensitive data were detected. However, the site could enhance its security posture by publishing an incident response policy and a security.txt file. Overall, Tidio presents a low-risk profile with a high level of professionalism, technical maturity, and compliance. Strategic recommendations include improving transparency around incident response and data protection officer contacts to further build trust and compliance assurance.

45
95
47
65
42
85
100
aicustomerservicechatbotlivechathelpdesk+3 more
ReactNext.jsJavaScriptGoogle Tag Manager+3
2025-06-17T22:01:00.353Z
pagerangers.com favicon

PageRangers GmbH

pagerangers.com

54
TechnologyGermanysmallMEDIUM

PageRangers GmbH is a German-based company specializing in professional SEO software solutions. Their website offers a comprehensive SEO toolbox targeted at professional users and businesses seeking to optimize their online presence. The company provides key services including an SEO Suite, Content Suite, SEO hotline support, and personalized webinars. The business model is SaaS-based, focusing on delivering modular SEO and content marketing tools. The company enjoys a strong market position with thousands of satisfied users and high customer ratings, supported by a consistent brand presence and active social media engagement. Technically, the website is built on a modern WordPress CMS with Elementor and Elementor Pro, integrating multiple analytics and tracking tools such as Google Analytics, Matomo, Piwik Pro, Facebook Pixel, and Hotjar. The site is mobile-optimized with good SEO practices and a moderate performance profile. Security-wise, the site enforces HTTPS and uses asynchronous loading of scripts, but lacks explicit security headers and published security policies. Cookie consent is implemented, indicating GDPR awareness. The security posture is solid but could be improved by adding explicit security headers and incident response information. No vulnerabilities or exposed sensitive data were detected. The domain registration details align well with the company's claims, reinforcing legitimacy and trustworthiness. Overall, the website demonstrates a professional and credible online presence with good privacy compliance and business transparency.

15
68
10
80
47
85
40
seoonlinemarketingsoftwaresaascontentmarketing+2 more
WordPress 6.3.5Elementor 3.23.1Elementor Pro 3.22.0Google Analytics (gtag.js)+9
2025-06-17T21:59:42.422Z
bizdetail.com favicon

Business Web Designer | Concord Web Design | bizdetail

bizdetail.com

55
TechnologyUnited StatessmallMEDIUM

Bizdetail is a boutique web design and marketing agency based in the San Francisco Bay Area, specializing in small business websites across diverse industries such as construction, medical, dental, eCommerce, and personal services. The company positions itself as a full-service partner, offering website design, management, hosting, and marketing support with a strong emphasis on client accessibility and personalized service. Their market position is that of a trusted local East Bay agency with a focus on long-term client relationships and high-quality deliverables. Technically, the website is built on WordPress using the Elementor framework, incorporating modern web technologies including PHP, JavaScript, and various UI libraries like Swiper and Flickity. The site is mobile-optimized with good performance and basic accessibility features. Security measures include HTTPS enforcement and Google reCAPTCHA on contact forms, though explicit security headers and a formal security policy are not evident. The security posture is solid with no visible vulnerabilities or exposed sensitive data. However, the absence of a cookie consent mechanism and detailed privacy compliance features indicates room for improvement in regulatory adherence. The domain registration details are consistent with the business claims, supporting the site's legitimacy. Overall, Bizdetail presents a professional, trustworthy online presence with strong business credibility and technical implementation. Strategic enhancements in privacy compliance and security transparency would further strengthen their position.

20
70
33
90
47
80
20
webdesignsmallbusinessbayareamarketingwordpress+1 more
WordPressElementorPHPJavaScript+6
2025-06-17T21:58:18.239Z
instabot.io favicon

Instabot

instabot.io

63
TechnologyN/amediumHIGH

Instabot is a technology company specializing in AI-powered chatbot software designed to help businesses generate leads, engage customers, and automate appointment scheduling across multiple channels including websites, text messaging, and social media platforms. The company targets a diverse audience including businesses of various sizes, marketing agencies seeking white-label solutions, and developers requiring API integrations. The platform emphasizes ease of use, rapid deployment, and scalability, positioning itself as a flexible and comprehensive chatbot solution in the competitive SaaS market. From a technical perspective, Instabot employs a modern technology stack featuring Vue.js for frontend development, integration with popular analytics and marketing tools such as Google Analytics, Facebook Pixel, Microsoft Clarity, and Hotjar, and supports omni-channel engagement including web, mobile, and social media. The website demonstrates good mobile optimization and SEO practices, though accessibility features are basic. Performance is moderate, with asynchronous loading of scripts to enhance user experience. Security posture is solid with HTTPS enforced and no exposed sensitive data detected. However, the site lacks some recommended security headers and does not display a cookie consent mechanism, which may impact privacy compliance. There is no publicly available security policy or incident response contact information, and no vulnerability disclosure or security.txt file was found. The WHOIS data is consistent with the business claims, showing domain registration in 2018, aligning with the company's founding year, and no privacy protection masking registrant details. Overall, Instabot presents a professional and trustworthy online presence with a strong business model and technical foundation. To enhance security and compliance, the company should consider implementing additional security headers, a cookie consent banner, and publishing clear security and incident response policies. These improvements will strengthen user trust and regulatory adherence while maintaining the platform's competitive edge.

35
53
25
80
72
55
100
chatbotaileadgenerationcustomerengagementsaas+3 more
Google Tag ManagerGoogle AnalyticsFacebook PixelMicrosoft Clarity+9
2025-06-17T21:57:54.578Z
aluksne.lv favicon

Alūksnes novads

aluksne.lv

59
GovernmentLatviamediumMEDIUM

Alūksnes novads is the official municipal government entity for the Alūksnes region in Latvia, providing a comprehensive digital portal for residents and stakeholders. The website offers detailed information about municipal governance, public services, cultural events, education, tourism, and community news. It serves as a key communication channel between the local government and the public, supporting transparency and civic engagement. The site is well-positioned as the authoritative source for local government information in the region. Technically, the website is built on WordPress CMS with a modern technology stack including jQuery, Google Analytics, and various plugins for enhanced functionality such as event calendars, photo galleries, and accessibility tools. The site demonstrates good digital maturity with SEO optimization, mobile responsiveness, and accessibility features. Hosting appears to be on Microsoft Azure, inferred from cookie data, ensuring reliable infrastructure. From a security perspective, the website enforces HTTPS and implements cookie consent mechanisms compliant with GDPR. While explicit security headers are not fully confirmed, no critical vulnerabilities or exposed sensitive data were detected. The absence of a public security policy or incident response contact is noted, suggesting room for improvement in transparency and readiness. Overall, the site maintains a solid security posture appropriate for a government entity. The overall risk assessment is low, with the website demonstrating professionalism, compliance, and trustworthiness. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and improving incident response visibility to further strengthen security and user trust.

15
25
25
100
57
70
100
governmentmunicipalitypublicserviceslatviaalksnesnovads+5 more
WordPressPHPjQueryGoogle Analytics+7

Partner Domains:

aluksnesmakslasskola.lv
partner
aluksnesezers.lv
partner

+1 more partners

2025-06-17T21:33:41.233Z
skanste.lv favicon

Skanstes attīstības aģentūra

skanste.lv

37
Real EstateLatviamediumLOW

The website www.skanste.lv serves as an informational and promotional portal for the Skanste district, a modern urban development area in Riga, Latvia. It provides comprehensive details about residential, office, cultural, sports, and infrastructure facilities within the district, targeting residents, investors, and businesses interested in the area. The site positions itself as a key source of information and promotion for this emerging business and living district in Riga. Technically, the website employs a modern front-end stack including Bootstrap, jQuery, Google Maps API, and Google Analytics, ensuring a responsive and interactive user experience. The site is accessible, mobile-optimized, and integrates various external trusted services for analytics and mapping. However, it lacks some advanced security headers and explicit privacy or cookie policies. From a security perspective, the site uses HTTPS and does not expose sensitive data. It includes Google Analytics for user tracking but lacks visible consent mechanisms or detailed privacy disclosures, which may impact GDPR compliance. No incident response or security contact information is provided, and security headers are missing, indicating room for improvement in security posture. Overall, the website is professionally designed and functional, with good business credibility and moderate technical implementation. The absence of privacy and cookie policies and security headers are notable gaps. The domain registration data aligns well with the website's claims, supporting legitimacy. Strategic improvements in privacy compliance and security practices would enhance trust and compliance.

15
10
25
85
-
70
20
realestaterigaskansteurbandevelopmentinfrastructure+5 more
Bootstrap CSSjQueryGoogle AnalyticsGoogle Maps API+4
2025-06-17T19:19:09.622Z
M

Attention Required! | Cloudflare

maverik.com

52
OtherN/asmallMEDIUM

The website maverik.com is currently inaccessible due to a Cloudflare Web Application Firewall (WAF) block. The HTML content returned is a security challenge page indicating that the visitor has been blocked due to triggered security rules. As a result, no actual business content, metadata, or contact information is available for analysis. The site appears to be protected by Cloudflare's security services, but this also prevents any meaningful assessment of the site's business, technical, or security posture. Without access to the real content, it is impossible to evaluate the company's market position, services, or compliance status. From a technical perspective, the site uses Cloudflare for security and performance, including Cloudflare Insights for analytics. However, no other technologies, CMS, or frameworks can be identified due to the block. The lack of accessible content also means no SEO, accessibility, or user experience features can be assessed. Security-wise, the presence of a Cloudflare WAF block indicates active protection against attacks, but no further security headers or policies can be verified. The domain uses privacy protection in WHOIS, which is common but limits transparency. Overall, the security posture cannot be fully evaluated. Given the block, the overall risk assessment is that the site is currently not analyzable, and strategic recommendations focus on enabling safe access for legitimate users and ensuring transparency of policies and contact information once accessible.

35
35
10
75
60
75
100
Cloudflare
2025-06-17T18:31:04.987Z