Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 31 of 99|Showing 1501-1550 of 4914
bosch-home.ie favicon

Bosch

bosch-home.ie

60
ManufacturingIrelandlargeMEDIUM

Bosch Home Appliances Ireland operates a professional and comprehensive website showcasing a wide range of home appliances including cooking, dishwashing, laundry, refrigeration, and coffee machines. The company is positioned as a leading manufacturer and retailer in the home appliance sector, targeting consumers in Ireland with a focus on quality, reliability, and precision. The website reflects strong brand consistency aligned with Bosch's global identity and offers extensive product information and customer support resources. Technically, the website leverages modern web technologies such as React and Next.js, ensuring fast performance and excellent mobile optimization. The presence of Adobe Launch and ConsentManager indicates a mature approach to marketing and privacy compliance. Security best practices are observed with HTTPS enforcement and appropriate security headers, contributing to a robust security posture. While WHOIS data is unavailable, limiting domain registration verification, the website's professional presentation and comprehensive policies suggest a legitimate and trustworthy business operation. Privacy and cookie policies are present and GDPR compliant, with consent mechanisms implemented. No critical vulnerabilities or security issues were detected during analysis. Overall, Bosch Home Appliances Ireland demonstrates a strong digital presence with good security and privacy practices, supporting its market position as a reputable home appliance provider. Continued monitoring and enhancement of security policies and public vulnerability disclosures are recommended to maintain and improve trust.

40
25
17
70
80
65
100
homeappliancesboschkitchenlaundrydishwashing+2 more
ReactNext.jsAdobe LaunchConsentManager+1
2025-10-11T10:44:05.870Z
thebal.com favicon

NBA Media Ventures, LLC

thebal.com

72
MediaN/alargeMEDIUM

The Basketball Africa League (BAL) website, hosted as a subdomain of nba.com, serves as the official digital platform for the BAL, a professional basketball league featuring 12 teams across Africa. The site provides comprehensive content including news, schedules, team information, statistics, videos, and merchandise, targeting basketball fans and the African basketball community. Affiliated with NBA Media Ventures, LLC, the site benefits from strong brand recognition and a large organizational backing. Technically, the website employs modern web technologies such as React and Next.js, integrates advanced analytics and marketing tools including Google Tag Manager, Adobe DTM, and Facebook Pixel, and ensures a fast, mobile-optimized user experience. The site is well-structured with good SEO and accessibility practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, implements key security headers, and includes privacy and cookie policies aligned with GDPR requirements. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not present, representing areas for improvement. The absence of WHOIS data for the subdomain is expected given it is part of the nba.com domain, which is a trusted and established entity. Overall, the BAL website demonstrates a high level of professionalism, security, and compliance, with strong business credibility and user trust. Strategic recommendations include publishing detailed security policies, adding vulnerability disclosure information, and enhancing contact transparency for security incidents.

25
95
17
85
82
85
100
sportsbasketballafricanbabal+5 more
ReactNext.jsAdobe DTMGoogle Tag Manager+3

Partner Domains:

nba.com
parent
wnba.com
partner

+2 more partners

2025-10-11T09:35:47.191Z
W

Women's National Basketball Association

wnba.com

74
MediaUnited StateslargeMEDIUM

The Women's National Basketball Association (WNBA) official website serves as the authoritative digital platform for the league, providing comprehensive information including schedules, standings, player stats, team details, news, ticket sales, and merchandise. The site targets basketball fans and sports enthusiasts, positioning itself as a key media outlet for women's professional basketball in the United States. The website is well-branded, professionally designed, and consistently maintained, reflecting the league's stature and market presence. Technically, the site leverages modern web technologies such as React and Next.js, ensuring fast performance, mobile responsiveness, and good accessibility. It integrates various third-party services for analytics, advertising, and consent management, demonstrating a mature digital infrastructure. The presence of comprehensive privacy and cookie policies with active consent mechanisms indicates a strong commitment to privacy compliance, including GDPR. From a security perspective, the website enforces HTTPS with excellent SSL configuration and implements multiple security headers, contributing to a robust security posture. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a publicly accessible security.txt or incident response information suggests room for improvement in transparency and vulnerability management. Overall, the website presents a low-risk profile with high trustworthiness and professionalism. The main limitation is the lack of publicly available WHOIS data, likely due to privacy protection, which does not detract from the site's legitimacy given its official branding and content. Strategic recommendations include publishing security and incident response policies and enhancing contact transparency to further strengthen trust and security culture.

30
100
17
85
90
85
100
sportsbasketballwnbawomenssportsmedia+3 more
ReactNext.jsJavaScriptCSS+3

Partner Domains:

wnbacleveland.com
partner
wnbaexperiences.com
partner

+1 more partners

2025-10-11T09:35:36.824Z
xyflow.com favicon

xyflow

xyflow.com

60
TechnologyGermanysmallMEDIUM

xyflow is a small Berlin-based technology company specializing in the development and maintenance of open source libraries for building node-based user interfaces with React and Svelte. Their flagship products, React Flow and Svelte Flow, are widely adopted by developers and companies such as Stripe and Typeform, positioning xyflow as a key player in the niche of interactive diagram and workflow UI components. The company operates an informative and professionally designed website that serves both as a marketing platform and a community hub. Technically, the website is built using modern web technologies including Next.js, React, and Svelte, hosted on alwaysdata.com. It demonstrates excellent performance, mobile optimization, and SEO practices. The site integrates minimal user tracking via Fathom Analytics, respecting user privacy without intrusive cookie consent mechanisms. The technical infrastructure reflects a mature digital presence suitable for a small but focused software development team. From a security perspective, the site enforces HTTPS and employs domain transfer protection. However, it lacks some advanced security headers and does not publicly disclose a security policy or incident response contacts. No vulnerabilities or suspicious activities were detected in the content or WHOIS data. The domain registration is consistent with the company's history and transparent, enhancing trustworthiness. Overall, xyflow presents a low-risk profile with a strong business credibility and technical foundation. Strategic improvements in security headers, cookie consent, and public security policies would further enhance their security posture and compliance standing.

30
53
2
55
72
80
100
xyflownode-baseduireactsvelteopensource+5 more
ReactSvelteNext.jsJavaScript+1

Partner Domains:

reactflow.dev
partner
svelteflow.dev
partner
2025-10-11T08:31:32.691Z
lamborghini.com favicon

Automobili Lamborghini S.p.A.

lamborghini.com

75
TransportationGermanylargeMEDIUM

Automobili Lamborghini S.p.A. is a globally recognized luxury automotive manufacturer specializing in high-performance sports cars and supercars. The official website serves as a comprehensive platform showcasing their product lineup, latest news, events, and dealer information, targeting affluent customers and automotive enthusiasts worldwide. The brand holds a premium market position under the Volkswagen Group umbrella, emphasizing exclusivity and innovation. Technically, the website leverages modern web technologies including React and Next.js frameworks, integrated with Google Tag Manager and New Relic for analytics and performance monitoring. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, ensuring a smooth user experience across devices. Privacy compliance is robust, with clear cookie consent mechanisms and GDPR-aligned policies implemented via OneTrust. From a security perspective, the site enforces HTTPS with strong SSL configurations and employs standard security headers. While no explicit security policy or incident response details are publicly disclosed, no vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable or privacy protected, which is typical for high-profile brands to mitigate spam and abuse risks. Overall, the website presents a secure, professional, and trustworthy digital presence aligned with Lamborghini's luxury brand image. Strategic recommendations include publishing detailed security policies, establishing a vulnerability disclosure program, and enhancing transparency around data protection officer contacts to further strengthen trust and compliance.

70
88
2
100
67
85
100
luxuryautomotivesportscarssupercarsbrand+4 more
ReactNext.jsGoogle Tag ManagerNew Relic+1
2025-10-11T08:28:51.798Z
caradvisor.at favicon

car.advisor

caradvisor.at

62
TransportationAustriamediumMEDIUM

car.advisor is an Austrian online review platform specializing in customer feedback and ratings for car dealerships representing major automotive brands such as Volkswagen, Audi, SEAT, CUPRA, Škoda, Volkswagen Nutzfahrzeuge, and Das WeltAuto. The platform targets both car dealerships and customers seeking trustworthy reviews to inform their purchasing decisions. The website demonstrates a solid market position within the Austrian automotive sector, focusing on transparency and customer satisfaction. Technically, the website is built using modern web technologies including React and Next.js, hosted on Azure CDN, ensuring fast performance and good mobile optimization. The site features structured data for SEO and brand consistency. However, there is room for improvement in accessibility and security headers implementation. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. Nonetheless, it lacks explicit privacy and cookie policies, security headers, and incident response contact information, which are critical for GDPR compliance and user trust. No vulnerability disclosure or security.txt files were found, indicating limited transparency in security practices. Overall, the website is professional and functional with a good business credibility score. Strategic enhancements in privacy compliance, security policies, and contact transparency would significantly improve its security posture and user trust.

15
68
2
70
82
80
100
automotivereviewscardealershipaustriavolkswagen+6 more
ReactNext.jsJavaScriptCSS+1
2025-10-11T08:24:25.525Z
tally.so favicon

Tally BV

tally.so

64
TechnologyBelgiummediumMEDIUM

Tally BV operates a modern, privacy-conscious online form builder platform accessible globally. Founded in 2020 and headquartered in Belgium, Tally offers a freemium SaaS model with a strong emphasis on unlimited free forms and submissions, advanced features like conditional logic, e-signatures, payments, and extensive integrations with popular productivity tools. The company positions itself as a user-friendly and GDPR-compliant alternative to traditional form builders, targeting creators, product teams, marketers, HR, and office users. The website is professionally designed, mobile-optimized, and rich in content, including testimonials and social proof, reinforcing its market credibility. Technically, the platform leverages modern web technologies including React and Next.js, hosted with Cloudflare DNS and integrated with Stripe for payments and automation platforms like Zapier, Make, and Pipedream. The site demonstrates good SEO, accessibility, and performance characteristics. Security practices are robust with HTTPS enforced, data encryption in transit and at rest, and hosting within the EU to comply with GDPR. However, there is room for improvement in publishing explicit security policies, incident response information, and enabling DNSSEC. The security posture is strong with standard security headers and privacy-friendly design, but lacks a dedicated vulnerability disclosure program and cookie consent mechanism. The WHOIS data aligns well with the business claims, showing consistent domain registration and no privacy protection, indicating transparency. Overall, the risk profile is low with no detected vulnerabilities or suspicious patterns. Strategic recommendations include enabling DNSSEC, publishing a formal security policy and incident response page, implementing a cookie consent banner, and establishing a vulnerability disclosure program to further enhance trust and compliance.

45
85
25
85
-
85
100
onlineformsformbuilderno-codefreeformsgdprcompliant+4 more
ReactNext.jsCloudflare DNSStripe+3

Partner Domains:

stripe.com
partner
zapier.com
partner

+3 more partners

2025-10-11T06:41:30.689Z
skoda-connect.com favicon

Škoda Auto a.s.

skoda-connect.com

9
TransportationUnited KingdomlargeCRITICAL

Škoda Connect is a digital platform operated by Škoda Auto a.s., a well-established automotive manufacturer under the Volkswagen Group umbrella. The website serves as a portal for connected car services and promotes the transition to the new MyŠkoda mobile app, enhancing the driving experience for Škoda vehicle owners. The platform targets Škoda customers primarily in the United Kingdom and provides access to service purchases via the Škoda Connect Shop and official retailer links. Technically, the website is built using modern web technologies including React and Next.js, ensuring a responsive and user-friendly experience. The site is moderately optimized for performance and mobile devices, with a clean design and clear navigation. However, some accessibility and SEO optimizations could be improved. No CMS or hosting provider details were explicitly identified. From a security perspective, the site uses HTTPS but lacks visible security headers and explicit incident response or vulnerability disclosure information. No WHOIS data was found for the domain, which is unusual and may indicate privacy protection or registration issues. Despite this, the website content and branding strongly suggest legitimacy as an official Škoda service portal. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a professional and trustworthy front for Škoda's connected car services, though improvements in security transparency and domain registration clarity are recommended to enhance trust and compliance.

-
-
-
-
-
-
-
automotiveconnectedcarkodamobileappvehicleservices+1 more
ReactNext.jsJavaScriptWeb fonts (woff2)

Partner Domains:

shop.skoda-connect.com
partner
retailers.skoda-auto.com
partner

+2 more partners

2025-10-11T06:41:00.474Z
autohaus.at favicon

Autohaus Austria (implied from domain and content)

autohaus.at

10
TransportationAustriamediumCRITICAL

The website 'Suche Autohaus' serves as a comprehensive online directory for authorized car dealerships across Austria, representing multiple prestigious automotive brands including Volkswagen, Audi, Seat, Skoda, Cupra, Bentley, Lamborghini, Porsche, and Weltauto. It targets consumers seeking dealership locations, contact details, and brand-specific services, positioning itself as a niche regional platform within the automotive retail sector. The platform offers map-based search functionality and detailed listings, enhancing user convenience and market reach for dealerships. Technically, the site is built on modern web technologies such as React and Next.js, integrating Google Maps for location services and OneTrust for cookie management, indicating a moderate level of digital maturity. Performance and mobile optimization are adequate, though accessibility and SEO could be improved. Security-wise, the site enforces HTTPS and uses asynchronous script loading, but lacks explicit security headers and formal security policies, which are areas for enhancement. Privacy compliance is minimal, with no explicit privacy or cookie policies found, and no incident response or vulnerability disclosure mechanisms present. Overall, the site is professional and trustworthy but would benefit from improved privacy and security transparency to align with best practices.

-
-
-
-
-
-
-
automotivedirectorycardealershipaustriavolkswagen+7 more
ReactNext.jsJavaScriptGoogle Maps API+2
2025-10-11T06:40:30.322Z
porsche-holding.com favicon

Porsche Holding Salzburg

porsche-holding.com

69
TransportationAustriaenterpriseMEDIUM

Porsche Holding Salzburg is Europe's largest and most successful automobile trading company, founded in 1947 and operating in 29 countries across three continents. As a wholly owned subsidiary of Volkswagen AG, it focuses on distributing Volkswagen Group brands including Volkswagen, Škoda, SEAT, CUPRA, Audi, Lamborghini, Bentley, Ducati, and Porsche. The company offers a comprehensive range of services including automobile wholesale, retail, financial services, and IT systems, positioning itself as a key player in the automotive distribution sector. Technically, the website employs modern web technologies such as React and Next.js, with integrations for privacy management (OneTrust) and analytics (Google Tag Manager). The site is well-optimized for SEO and mobile devices, featuring a professional design and clear navigation. Security best practices are observed with HTTPS enforcement and appropriate security headers, although explicit security policies and incident response contacts are not published. The security posture is strong with no visible vulnerabilities or blocking mechanisms. Privacy compliance is robust, with comprehensive privacy and cookie policies and consent mechanisms in place. However, the absence of WHOIS data for the domain introduces some uncertainty regarding domain registration legitimacy, though the website content and external references strongly support its authenticity. Overall, Porsche Holding Salzburg's digital presence reflects a mature, professional, and secure corporate environment. Strategic recommendations include publishing explicit security policies, establishing a vulnerability disclosure program, and enhancing accessibility features to further strengthen trust and compliance.

75
80
17
70
52
75
100
automobilecorporatetransportationfinanceitsystems+2 more
ReactNext.jsOneTrustGoogle Tag Manager

Partner Domains:

porscheholding-newsroom.at
partner
2025-10-11T06:40:25.310Z
equally.ai favicon

Equally AI

equally.ai

61
TechnologyN/asmallMEDIUM

Equally AI is a technology company specializing in web accessibility compliance solutions, offering an all-in-one SaaS platform that helps businesses meet ADA, EAA, and WCAG standards. The company positions itself as a leader in accessibility compliance with a strong focus on AI-driven tools and services, including accessibility widgets, audits, VPAT documentation, and compliance verification. Their market presence is supported by positive user reviews and industry recognition badges, indicating a trusted and professional service provider. Technically, the website is built using modern frameworks such as Next.js and Material UI, with integrations of popular analytics and marketing tools like Google Tag Manager and Facebook Pixel. The site demonstrates excellent performance, mobile optimization, and accessibility features, reflecting a mature digital infrastructure. Security best practices are observed with HTTPS enforcement and security headers, although explicit security policies and incident response information are not publicly available. From a security perspective, the site shows a strong posture with no visible vulnerabilities or exposed sensitive data. However, the absence of a vulnerability disclosure policy and direct security contacts suggests room for improvement in transparency and incident readiness. The domain WHOIS data is privacy protected, which is typical for SaaS companies, and no suspicious patterns were detected, supporting the legitimacy of the business. Overall, Equally AI presents a professional, secure, and trustworthy web presence with a clear business focus on accessibility compliance. Strategic recommendations include publishing detailed security policies, adding vulnerability disclosure mechanisms, and providing direct security contact information to enhance trust and compliance further.

30
68
2
75
72
55
100
accessibilityadacompliancewcageaawebaccessibility+3 more
ReactNext.jsMaterial UIGoogle Tag Manager+3
2025-10-11T05:32:39.911Z
chase.com favicon

Chase

chase.com

56
FinanceUnited StatesenterpriseMEDIUM

Chase is a leading financial institution providing a wide range of banking and financial services including credit cards, mortgages, auto loans, investing, and business banking. The website serves both personal and business customers with a comprehensive digital platform that supports account management, payments, and financial planning. The brand is well-established with a strong market position as part of JPMorgan Chase & Co., one of the largest banking organizations in the United States. Technically, the website employs modern web technologies such as React and Next.js, ensuring a fast, responsive, and accessible user experience across devices. The site is well-optimized for SEO and includes comprehensive metadata and structured data to enhance search visibility. Security is robust with HTTPS enforcement, secure login forms, and multiple security headers implemented to protect users and data. From a security perspective, the site demonstrates strong best practices including secure forms, no exposed sensitive data, and use of security headers. However, the absence of a publicly visible vulnerability disclosure program and incident response contact details suggests areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR considerations. Overall, the website is professional, trustworthy, and secure, reflecting the stature of a major financial services provider. The WHOIS data anomaly does not detract from the legitimacy but should be further investigated to ensure domain registration transparency. Strategic recommendations include enhancing vulnerability disclosure visibility, maintaining security certifications, and continuous monitoring of third-party scripts.

-
-
-
85
82
90
100
bankingfinancecreditcardsmortgageautoloans+2 more
ReactJavaScriptWebpackNext.js+2

Partner Domains:

www.jpmorgan.com
parent
autofinance.chase.com
subsidiary

+2 more partners

2025-10-11T05:32:34.902Z
T

Thuisbezorgd

thuisbezorgd.nl

76
E-commerceNetherlandslargeLOW

Thuisbezorgd.nl is a leading Dutch online food and grocery delivery platform, founded in 2000 and operating under the parent company Just Eat Takeaway.com. The website offers a comprehensive range of services including takeaway food ordering, grocery deliveries, corporate ordering, and courier recruitment. It targets consumers in the Netherlands seeking convenient delivery options from over 15,000 restaurants and stores. The platform is well-positioned in the market with a strong brand presence and extensive service offerings. Technically, the website employs modern web technologies such as React and Next.js, supported by robust infrastructure likely hosted on cloud platforms. It integrates advanced analytics and marketing tools including Google Tag Manager, Snowplow, and Braze, reflecting a mature digital ecosystem. The site is optimized for performance, mobile responsiveness, accessibility, and SEO, providing an excellent user experience. From a security perspective, the site enforces HTTPS, implements key security headers, and follows best practices in form security and data protection. While no critical vulnerabilities were detected, the absence of a dedicated security policy page and security.txt file suggests room for improvement in transparency and incident response readiness. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. Overall, Thuisbezorgd.nl demonstrates a high level of professionalism, security, and compliance, making it a trustworthy platform for users. Strategic recommendations include enhancing security transparency, publishing a security.txt file, and maintaining vigilant third-party script management to sustain its strong security posture.

70
88
35
72
82
70
100
fooddeliverygrocerydeliverye-commercenetherlandsthuisbezorgd+1 more
ReactNext.jsJavaScriptCloudinary+5

Partner Domains:

justeattakeaway.com
parent
convercent.com
partner

+2 more partners

2025-10-11T04:25:42.097Z
getstream.io favicon

Stream

getstream.io

71
TechnologyN/aenterpriseMEDIUM

Stream is a technology company specializing in scalable APIs and SDKs for building in-app chat messaging, video, and activity feeds. Established in 2014, it serves a large enterprise market with over 1 billion end users and 2000+ apps relying on its platform. The company positions itself as a leader in developer experience and enterprise-grade infrastructure, offering high availability and compliance certifications such as HIPAA, GDPR, ISO 27001, and SOC 2. The website reflects a mature digital presence with modern frameworks and a strong focus on developer tools and integrations. Technically, the website is built using Next.js and React, hosted on AWS infrastructure, and leverages Prismic CMS for content management. It demonstrates fast performance, mobile optimization, and good SEO practices. The presence of Cookiebot indicates a commitment to cookie consent and privacy compliance, although explicit privacy and terms of service documents are not found in the provided content. From a security perspective, the site uses HTTPS with strong SSL configuration and displays multiple compliance certifications, indicating a robust security posture. However, there is room for improvement in publishing explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or suspicious patterns were detected. Overall, Stream presents a professional, trustworthy, and technically advanced platform with a strong market position in the developer tools space. Strategic recommendations include enhancing transparency around privacy and security policies and adding direct contact information to improve user trust and compliance.

65
65
17
85
77
75
100
chatvideoactivityfeedssdkapi+5 more
ReactNext.jsPrismic CMSAWS DNS+4
2025-10-11T04:21:55.869Z