Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157331
Websites
130
Industries
113
Countries
52
Avg Score
Page 319 of 800|Showing 15901-15950 of 39982
F

F5, Inc.

nginx.org

56
TechnologyN/aenterpriseMEDIUM

nginx.org is the official website for the nginx software, a widely used HTTP web server, reverse proxy, and load balancer technology originally created by Igor Sysoev. The site provides access to documentation, downloads, community forums, and links to related projects such as njs and NGINX Unit. The business model is primarily open source with commercial enterprise support and training offered by F5, Inc., which is the parent company. The website targets developers, IT professionals, and enterprises seeking robust web server and proxy solutions. The site maintains a strong market position as a leading technology in its domain with a mature and stable presence since 2004. Technically, the website is well-structured with good content quality, mobile optimization, and clear navigation. It uses standard web technologies including HTML5, CSS, and JavaScript, with links to GitHub repositories indicating active development. No CMS or advanced frameworks are detected in the provided content. Performance is likely fast given the minimalistic design and focus on technical content. However, accessibility features are basic and SEO optimization is moderate. From a security perspective, the domain is registered with a reputable registrar and has a stable history consistent with the business claims. However, DNSSEC is not enabled and no security headers were detected in the provided data. The site lacks published privacy, cookie, or security policies, and no incident response or vulnerability disclosure information is available. No contact emails or phone numbers are listed, which limits direct communication channels. Overall, the security posture is moderate but could be improved with better policy transparency and technical security controls. The overall risk assessment is low given the reputable nature of the business and the absence of suspicious indicators. Strategic recommendations include enabling DNSSEC, publishing privacy and cookie policies, adding security headers, and providing clear security incident contacts to enhance trust and compliance. These improvements would strengthen the website's security posture and privacy compliance, aligning it with best practices for enterprise technology providers.

30
50
2
70
55
60
100
webserverreverseproxyloadbalanceropensourcenginx+4 more
HTML5CSSJavaScriptECMAScript (njs)+1
2025-10-03T16:21:59.363Z
prattwhitney.com favicon

Pratt & Whitney

prattwhitney.com

60
TransportationN/aenterpriseMEDIUM

Pratt & Whitney is a globally recognized aerospace company specializing in the design, manufacture, and servicing of aircraft engines and auxiliary power units. As a subsidiary of Raytheon Technologies, it holds a strong market position in commercial, military, business, and general aviation sectors. The website reflects a mature digital presence with comprehensive product and service offerings, targeting aerospace industry professionals and customers worldwide. The company emphasizes innovation and sustainability, as evidenced by its Future of Flight initiatives and extensive maintenance and digital health management services. Technically, the website is built on a modern CMS platform (Sitecore) and employs advanced web technologies including asynchronous JavaScript loading, Google Tag Manager, and Cloudflare CDN for performance and security. The site is mobile-optimized, accessible, and SEO-friendly, providing a seamless user experience. The presence of multiple customer portals and integration with social media platforms further enhances its digital maturity. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR compliance. However, explicit security policies, incident response information, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. No critical vulnerabilities or exposed sensitive data were detected in the analysis. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance, supporting Pratt & Whitney's reputation as a leading aerospace manufacturer. Strategic recommendations include publishing detailed security and incident response policies, establishing a vulnerability disclosure program, and enhancing transparency around data protection roles.

55
80
2
70
-
85
100
aerospaceaircraftenginesmanufacturingmilitarycommercialaviation+3 more
JavaScriptYouTube iframe APIGoogle Tag ManagerCrazy Egg+2

Partner Domains:

www.rtx.com
parent
www.collinsaerospace.com
sister

+2 more partners

2025-10-03T16:21:49.341Z
moneysmart.gov.au favicon

Australian Securities and Investments Commission

moneysmart.gov.au

69
GovernmentAustralialargeMEDIUM

Moneysmart.gov.au is an Australian Government financial education website operated by the Australian Securities and Investments Commission (ASIC). It provides free tools, calculators, tips, and resources to help Australian consumers make informed money decisions. The site is well-positioned as an authoritative government resource with a large target audience of individuals seeking financial guidance. The business model is government-funded, focusing on public education rather than commercial revenue. Technically, the website uses modern web technologies including HTTPS, Cloudflare DNS, Google Tag Manager, and JavaScript frameworks. The site is mobile-optimized, accessible, and performs well with fast loading times. SEO and metadata are well implemented, supporting good discoverability. From a security perspective, the site enforces HTTPS and uses Cloudflare DNS, but lacks DNSSEC and explicit security headers in the HTML content. No security policy or incident response information is published, and no vulnerability disclosure mechanism is evident. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism detected. Overall, the security posture is good but could be improved with additional headers and transparency. The overall risk is low given the government ownership and professional presentation, but improvements in privacy compliance and security transparency are recommended to enhance trust and compliance with modern standards.

95
35
17
70
75
75
100
financialeducationgovernmenttoolscalculatorsscams+4 more
Cloudflare DNSGoogle Tag ManagerVimeo Player APIJavaScript+2

Partner Domains:

asic.gov.au
partner
2025-10-03T16:18:07.631Z
spirig-healthcare.ch favicon

Spirig HealthCare AG

spirig-healthcare.ch

71
HealthcareSwitzerlandmediumMEDIUM

Spirig HealthCare AG is a well-established Swiss pharmaceutical company with a 75-year history, specializing in generics, specialty care, and consumer healthcare products. As part of the international STADA Arzneimittel AG group, it holds a strong market position as the third largest generics provider in Switzerland. The company targets healthcare professionals, pharmacies, and consumers, offering a broad product portfolio and emphasizing quality and affordability. The website reflects a professional and consistent brand image with comprehensive product and corporate information. Technically, the website employs modern web technologies including Amazon Cloudfront CDN, Google Tag Manager, and Usercentrics for consent management. The site is mobile-optimized, accessible, and SEO-friendly, with fast loading times and clear navigation. The use of HTTPS and consent mechanisms indicates a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses consent management tools, but could improve by explicitly implementing and verifying security headers such as Content-Security-Policy and X-Frame-Options. No critical vulnerabilities or exposed sensitive data were detected. Privacy policies and compliance pages are present and comprehensive, supporting GDPR adherence. Overall, Spirig HealthCare AG's website demonstrates a high level of professionalism, security, and compliance, supporting its credibility and trustworthiness in the healthcare sector. Strategic improvements in security headers and ongoing monitoring of third-party scripts are recommended to maintain and enhance security posture.

80
53
2
98
65
85
100
healthcarepharmaceuticalsgenericsconsumerhealthcareswisscompany+1 more
JavaScriptGoogle Tag ManagerUsercentrics (consent management)Cloudfront CDN

Partner Domains:

www.stada.de
parent
www.compliance-reporting-portal.stada.com
service
2025-10-03T16:03:00.194Z
cgu.com.au favicon

CGU Australia Pty Ltd

cgu.com.au

61
FinanceAustralialargeMEDIUM

CGU Australia Pty Ltd is a well-established Australian insurance provider with a history dating back to 1861. The company offers a broad range of insurance products including car, home, travel, business, public liability, and professional indemnity insurance. The website targets insurance brokers and individual customers, emphasizing broker partnerships and comprehensive insurance solutions. The business model relies heavily on broker distribution and partnerships with financial institutions, positioning CGU as a trusted and longstanding player in the Australian insurance market. Technically, the website is built on Adobe Experience Manager CMS and uses modern web technologies including Adobe Helix RUM for performance monitoring. The site is well-structured, mobile-optimized, and SEO-friendly, providing a professional user experience. However, some improvements could be made in cookie consent and explicit security headers to enhance privacy and security compliance. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. No major vulnerabilities were detected in the HTML content. The absence of WHOIS data is due to privacy protections common for large enterprises. Overall, the security posture is strong but could benefit from publishing security policies and incident response information to improve transparency. The overall risk assessment is low with a high trustworthiness rating. Strategic recommendations include implementing cookie consent mechanisms, adding security headers, publishing security and incident response policies, and maintaining transparency about data protection practices to further enhance user trust and compliance.

15
53
2
97
52
85
100
insurancebrokeraustraliafinancehomeinsurance+3 more
Adobe Helix RUMBootstrap (implied by data-bs-toggle attributes)JavaScriptCSS+1

Partner Domains:

www.needabroker.com.au
partner
moneysmart.gov.au
partner
2025-10-03T16:01:24.619Z
lifefitness.co.uk favicon

Life Fitness

lifefitness.co.uk

64
HospitalityN/alargeMEDIUM

Life Fitness is a globally recognized provider of commercial and home gym fitness equipment, serving diverse markets including health clubs, hospitality, multi-unit housing, and corporate wellness. The company offers a comprehensive product catalog covering cardio, strength training, accessories, and digital fitness solutions, positioning itself as a one-stop partner for fitness facility needs. The website reflects a mature digital presence with professional design, clear navigation, and multi-language support, indicating a strong commitment to user experience and global reach. Technically, the site leverages modern web technologies such as Google Tag Manager and Usercentrics for consent management, hosted on Azure CDN with Kentico CMS, ensuring reliable performance and compliance with privacy regulations. Security posture is robust with HTTPS enforced and secure form embedding, though explicit security headers and incident response policies are not publicly disclosed. The absence of WHOIS data limits domain registration trust verification but does not detract significantly from the overall legitimacy given the professional branding and social media presence. Strategic recommendations include enhancing transparency around security policies, publishing vulnerability disclosure information, and verifying security headers to further strengthen trust and compliance.

15
58
17
80
67
90
100
fitnesscommercialgymequipmenthomegymequipmenthealthclubshospitality+5 more
Google Tag ManagerUsercentrics Consent Management PlatformSwiper CarouselGoogle Fonts (Montserrat)+3
2025-10-03T15:58:39.408Z
M

Mira Showers UK

mirashowers.co.uk

69
RetailUnited KingdommediumMEDIUM

Mira Showers UK is a well-established retail brand specializing in showers, taps, shower parts, and accessories, targeting UK consumers and trade professionals. The website reflects a professional e-commerce platform with a clear focus on bathroom products, supported by a parent company, Kohler Co., which enhances its market credibility. The site is well-branded, consistent, and provides comprehensive product information and customer engagement through social media and third-party review platforms. Technically, the website employs modern JavaScript frameworks and integrates multiple third-party services such as New Relic for monitoring, OneTrust for cookie consent, and Bazaarvoice for customer reviews. The site is mobile-optimized and demonstrates good SEO practices, although accessibility features could be improved. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS with good SSL configuration and includes standard security headers. Privacy and cookie policies are present and GDPR compliant, with active consent mechanisms. However, there is no publicly available security policy or incident response contact, and no vulnerability disclosure program is evident, which could be areas for improvement. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance. Strategic recommendations include publishing a security policy, establishing a vulnerability disclosure process, enhancing accessibility, and continuous monitoring of third-party scripts to maintain security posture.

55
88
35
60
69
65
100
showersbathroomretailuke-commerce+2 more
JavaScriptNew Relic monitoringOneTrust cookie consentAdobe Helix RUM (commented)+3

Partner Domains:

kohler.com
parent
apps.bazaarvoice.com
partner

+1 more partners

2025-10-03T15:58:29.384Z
M

Meta

m.me

73
TechnologyN/aenterpriseMEDIUM

Messenger.com is the official web platform for Meta's Messenger service, a leading global instant messaging and communication tool integrated with Facebook's ecosystem. The website offers users the ability to connect with friends and family through text, voice, and video communication, supporting community building and social interaction. The platform targets a broad general audience and operates under the Meta brand, reflecting a mature and enterprise-level business model with extensive global reach. Technically, the website is built using modern web technologies including React and Facebook's proprietary JavaScript libraries, ensuring fast performance, mobile optimization, and good accessibility. The site is hosted on Meta's infrastructure, leveraging advanced content delivery and security mechanisms. SEO and metadata are well implemented, supporting multiple languages and locales. From a security perspective, the site enforces HTTPS with strong security headers and secure login mechanisms. However, explicit security policies, incident response contacts, and vulnerability disclosure information are not publicly available, which could be improved to enhance transparency and trust. Privacy compliance is strong, with comprehensive privacy and cookie policies linked to official Meta domains, though no explicit cookie consent mechanism is observed on the landing page. Overall, Messenger.com presents a professional, trustworthy, and secure platform consistent with Meta's corporate standards. The absence of public WHOIS data is typical for large tech companies and does not detract from the site's legitimacy. Strategic recommendations include publishing detailed security policies and incident response information, implementing explicit cookie consent, and adding vulnerability disclosure channels to further strengthen security posture and user trust.

70
88
2
85
65
90
100
messengerfacebookchatmessagingsocial+2 more
ReactJavaScriptCSSBigPipe+2
2025-10-03T15:57:34.048Z
C

CÔNG TY CỔ PHẦN BAO BÌ TÍN THÀNH

batico.com

45
ManufacturingVietnammediumHIGH

BATICO is a Vietnamese packaging manufacturing company established in 2004, operating as a member of SCG Packaging. The company offers a variety of packaging products emphasizing quality, aesthetics, fast delivery, and sustainable packaging solutions. Their market presence spans domestic and international sectors, targeting businesses requiring packaging solutions. The website reflects a medium-sized enterprise with consistent branding and good content quality. Technically, the website uses legacy technologies such as jQuery 1.7.1 and Nivo Slider, with a custom or unknown CMS. Hosting and DNS are managed by local providers, with HTTPS enabled but lacking advanced security headers. Performance and mobile optimization are moderate to basic, with room for improvement in accessibility and SEO. Security posture is moderate; HTTPS is enforced, and domain registration is stable and consistent with business claims. However, the absence of security headers, privacy and cookie policies, and incident response contacts indicate compliance and security gaps. No vulnerabilities or malicious content were detected. Overall, the website is professional and trustworthy but would benefit from enhanced security practices, privacy compliance, and modernization of technical infrastructure to reduce risks and improve user trust.

15
50
17
70
62
70
-
packagingmanufacturingvietnambusinessindustrial
jQuery 1.7.1Nivo SliderJavaScriptCSS

Partner Domains:

scgpackaging.com
partner
2025-10-03T15:56:28.561Z
nic.lv favicon

NIC

nic.lv

61
TechnologyLatviamediumMEDIUM

NIC operates as the official registry for the .lv top-level domain, managed by the Latvian University Mathematics and Informatics Institute. The website provides domain registration and management services directly and through a broad network of partner registrars. It targets domain registrants and registrars primarily within Latvia, maintaining a strong market position as the authoritative .lv domain registry. The site is well-structured, professionally designed, and offers clear navigation and multilingual support (Latvian and English). The presence of social media channels and comprehensive contact information enhances its credibility. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with Google reCAPTCHA integrated to secure form submissions. The site is mobile-optimized and uses HTTPS with excellent SSL configuration, ensuring secure communications. While no major frameworks or CMS platforms are detected, the custom implementation appears stable and performant. SEO and accessibility are addressed at a basic to good level, with room for improvement in accessibility features. From a security perspective, the site demonstrates good practices such as HTTPS enforcement, use of CAPTCHA, and cookie consent mechanisms. However, it lacks explicit security headers and a public incident response contact or vulnerability disclosure policy. No vulnerabilities or suspicious content were detected. The WHOIS data aligns perfectly with the website’s claims, showing a long-standing domain registration consistent with the business history. Overall, NIC’s website is a trustworthy, professional platform serving a critical role in Latvia’s internet infrastructure. Strategic improvements in security headers, incident response transparency, and accessibility would further enhance its security posture and user trust.

80
25
2
70
75
50
100
domainregistryinternettechnologylatviadomainregistration+2 more
HTML5CSS3JavaScriptGoogle reCAPTCHA v2
2025-10-03T15:55:43.386Z
evoluted.net favicon

Evoluted New Media Limited

evoluted.net

69
TechnologyUnited KingdommediumMEDIUM

Evoluted New Media Limited operates as a full-service digital agency based in the UK, specializing in bespoke web design, development, and digital marketing services. The company holds a strong market position supported by multiple industry awards and B Corp certification, indicating a commitment to social and environmental standards. Their service portfolio includes design & UX, web and app development, ecommerce solutions, SEO, content marketing, and paid media, targeting businesses seeking integrated digital growth solutions. The website demonstrates a high level of professionalism, with clear navigation, comprehensive content, and multiple physical office locations across major UK cities. Technically, the site employs modern web technologies including Google Analytics, Tag Manager, and a cookie consent mechanism, ensuring good performance, mobile optimization, and privacy compliance. Security posture is strong with HTTPS, security headers, and no visible vulnerabilities, though explicit security policies and incident response information are not published. WHOIS data is unavailable or missing, which is unusual but does not detract significantly from the overall trustworthiness given the strong business indicators on the site. Overall, Evoluted presents as a credible, mature digital agency with a robust online presence and good security hygiene.

80
68
2
75
77
65
100
digitalagencywebdesignwebdevelopmentdigitalmarketingseo+3 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsCookieFirst Consent+2
2025-10-03T15:55:27.665Z
hypertherm.com favicon

Hypertherm, Inc.

hypertherm.com

65
ManufacturingUnited StateslargeMEDIUM

Hypertherm, Inc. is a leading manufacturer and provider of plasma cutting systems, software, and consumables, holding the position as the world's #1 requested plasma brand. The company targets metal fabricators and industrial cutting businesses globally, offering a comprehensive product portfolio including handheld and automated plasma cutters, CAD/CAM software, CNC controls, and technical support services. The website reflects a mature digital presence with multi-language support and extensive product and resource information. Technically, the site uses modern web technologies including Bootstrap, Google Tag Manager, and Microsoft Application Insights, with good mobile optimization and accessibility features. Security posture is strong with HTTPS enforcement, secure login forms, and security headers, though public security policies and incident response information are not published. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the website demonstrates high professionalism and trustworthiness, though the absence of WHOIS data limits domain registration trust analysis.

20
58
17
85
75
85
100
plasmacuttingindustrialmanufacturingcadcamsoftwarecnccontrolsindustrialconsumables+2 more
JavaScriptGoogle Tag ManagerMicrosoft Application InsightsVidyard video player+2

Partner Domains:

www.hyperthermassociates.com
partner
www.omax.com
partner

+1 more partners

2025-10-03T15:47:05.642Z
carnegierobotics.com favicon

Carnegie Robotics

carnegierobotics.com

61
TechnologyUnited StatesmediumMEDIUM

Carnegie Robotics is a well-established company specializing in advanced robotics sensors, stereo cameras, and AI-powered embedded computing solutions for autonomous vehicles and robotics applications. Founded in 2010 and spun out of Carnegie Mellon University, the company has a strong military and commercial foundation, serving sectors such as defense, industrial automation, agriculture, and marine autonomy. Their product portfolio includes ruggedized hardware designed for harsh environments and supported by U.S.-based manufacturing and customer service. The website reflects a professional and consistent brand presence with detailed product and service information, strong partner affiliations, and multimedia content showcasing their capabilities. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript frameworks like jQuery, Owl Carousel, and smooth scrolling libraries. Hosting appears to be on AWS infrastructure with Cloudflare Stream for video delivery. The site is mobile optimized and SEO friendly with proper meta tags and Open Graph data. However, some security best practices such as DNSSEC and security headers are not implemented, and there is no cookie consent mechanism or explicit incident response contact information. Security posture is generally good with HTTPS enforced and domain registration protections in place. The WHOIS data confirms a long-standing domain registration consistent with the company's history and no privacy protection, enhancing trust. No vulnerabilities or suspicious activities were detected in the content. Privacy compliance is partial, with a privacy policy present but lacking cookie consent and GDPR explicit indicators. Overall, Carnegie Robotics presents a credible, professional, and technically sound online presence with minor areas for improvement in security headers, privacy compliance, and incident response transparency. The risk level is low, and the company appears trustworthy and established in its industry.

55
53
25
70
72
85
40
autonomyroboticsstereocamerasautonomousvehiclesmanufacturing+4 more
HTML5CSS3JavaScriptjQuery+6

Partner Domains:

crdefensegroup.com
partner
bigliftllc.com
partner

+3 more partners

2025-10-03T15:45:55.210Z
V

Vuture

vutu.re

60
TechnologyUnited KingdommediumMEDIUM

Vuture is a technology company specializing in marketing automation solutions tailored for professional services firms such as legal, consulting, and accounting sectors. The company offers a comprehensive platform that enables personalized email marketing, event management, and detailed reporting integrated with leading CRM systems. With a global presence and a client base including top-tier firms, Vuture positions itself as a leader in marketing technology for professional services. Technically, the website is built on WordPress and leverages modern JavaScript frameworks and analytics tools such as Alpine.js, Google Tag Manager, and Hockeystack. The infrastructure is hosted on AWS, ensuring reliable performance and scalability. The site demonstrates good mobile optimization and SEO practices, although accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and provides dedicated trust and security pages, including a vulnerability reporting mechanism. However, explicit security headers are not detected, and a security.txt file is absent, representing areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR consent mechanisms. Overall, Vuture's digital presence reflects a mature and professional organization with strong business credibility and a solid security posture. The domain registration data aligns well with the company's history and market claims, supporting legitimacy. Strategic recommendations include enhancing security headers, publishing a security.txt file, and improving accessibility compliance to further strengthen trust and security.

15
80
17
70
52
65
100
marketingprofessionalservicesemailmarketingeventmarketingclientengagement+2 more
JavaScriptAlpine.jsYoast SEOGoogle Tag Manager+3

Partner Domains:

meetmarigold.com
partner
2025-10-03T15:45:00.086Z
constellationenergy.com favicon

Constellation

constellationenergy.com

64
EnergyUnited StatesenterpriseMEDIUM

Constellation is a leading energy company positioned as the nation’s largest producer of carbon-free energy, providing sustainable energy solutions to residential, commercial, and public-sector customers. The company emphasizes sustainability and innovation, offering a range of services including generation, wholesale energy, and retail products. Founded in 2022, Constellation presents itself as an enterprise-level organization with a strong focus on environmental stewardship and community impact. Technically, the website is built on Adobe Experience Manager, leveraging modern JavaScript libraries and tracking tools such as Google Tag Manager and Adobe Helix RUM. The site is well-structured, mobile-optimized, and includes comprehensive metadata and structured data for SEO and accessibility. Privacy compliance is robust, featuring a cookie consent mechanism and detailed privacy policies. From a security perspective, the site enforces HTTPS and employs cookie consent best practices. However, explicit security headers are not visible in the HTML source, and there is no publicly available incident response or vulnerability disclosure information. The absence of WHOIS data for the domain is a notable concern, potentially indicating privacy protection or registration issues, which slightly reduces the overall trust score. Overall, the website demonstrates a high level of professionalism, content quality, and privacy compliance, with moderate technical and security maturity. Strategic improvements in security transparency and domain registration verification are recommended to enhance trust and resilience.

40
88
17
40
77
70
100
energycarbon-freesustainabilitycorporateprivacy+3 more
Adobe Helix RUMGoogle Tag ManagerOneTrust Cookie ConsentBootstrap (implied by navbar classes)+1
2025-10-03T15:44:19.997Z
geojs.io favicon

GeoJS

geojs.io

71
TechnologyN/asmallMEDIUM

GeoJS is a small technology company providing a highly available REST/JSON/JSONP IP Geolocation lookup API service. The website is professionally designed and targets developers and businesses requiring geolocation data for IP addresses. The business model is based on offering free API access supported by sponsorships from reputable technology companies such as DigitalOcean, Cloudflare, and DNS Spy. The site includes useful features like ChatOps integration and multiple data formats with no current rate limits. Technically, the website is built using modern static site generation technology (Hugo), styled with Bulma CSS, and hosted on Netlify with backend API services powered by DigitalOcean and Cloudflare CDN. The site is fast, mobile optimized, and accessible with good SEO practices. The use of HTTPS is enforced, but some security headers are not explicitly detected in the HTML content. From a security perspective, the site demonstrates good baseline practices including HTTPS and CORS support. However, it lacks visible security policies, incident response information, and vulnerability disclosure mechanisms. The WHOIS data is unavailable due to privacy protection or query failure, which is common for small tech services but reduces transparency. No critical vulnerabilities or exposed sensitive data were found in the content. Overall, GeoJS presents a trustworthy and professional service with a solid technical foundation. Strategic improvements include adding security headers, publishing security and incident response policies, and implementing a vulnerability disclosure program to enhance trust and compliance.

85
58
2
100
65
80
100
geoipapigeolocationrestjson+2 more
JavaScriptHugoBulma CSSNetlify+1
2025-10-03T15:43:54.950Z
kasserver.com favicon

Kundenadministrationssystem (KAS), technische Verwaltung

kasserver.com

8
TechnologyGermanysmallCRITICAL

The website kasserver.com serves as a login portal for a Kundenadministrationssystem (Customer Administration System) focused on technical management, likely related to domain or hosting services. The business appears to be a small, technology-focused service provider based in Germany, with a domain registration dating back to 2002, indicating a mature presence. The site content is minimal and primarily functional, targeting customers who require access to technical administration tools. From a technical perspective, the website uses basic technologies including an outdated version of jQuery and standard JavaScript. The site enforces HTTPS on its login form, which is a positive security measure, but lacks modern security headers and uses no visible advanced frameworks or CMS. Performance and mobile optimization are basic, and SEO features are minimal. Security posture is moderate; while HTTPS is enforced, the use of outdated libraries and absence of security headers present potential risks. No privacy, cookie, or terms of service policies are publicly available, which impacts compliance and trust. No contact or incident response information is provided, limiting transparency. WHOIS data is consistent and transparent, supporting legitimacy. Overall, the site is functional but basic, with room for improvement in security, privacy compliance, and user experience. Strategic recommendations include updating technology stacks, implementing security headers, publishing privacy and cookie policies, and enhancing transparency with contact and security information.

-
-
-
-
-
-
-
logincustomeradministrationtechnicalmanagementdomainservicesgerman
jQuery 1.xJavaScript
2025-10-03T15:42:04.207Z
futuristica.com favicon

FUTURISTICA d.o.o.

futuristica.com

58
TechnologySloveniamediumMEDIUM

Futuristica d.o.o. is a Slovenian-based digital agency specializing in modern web development, creative web design, SEO, branding, marketing, and AI tool development. Established since 2012, the company serves a global clientele with a strong portfolio of diverse projects, positioning itself as an innovative and reliable partner in the technology sector. The website reflects a professional and consistent brand image, targeting businesses seeking digital growth solutions. Technically, the website leverages modern frameworks such as Next.js and React, with backend technologies including Golang and Laravel. Hosting and DNS are managed via reputable providers including Cloudflare, ensuring good performance and availability. The site is well optimized for mobile devices and SEO, with clear navigation and rich content. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks DNSSEC and important security headers. There is no visible privacy or cookie policy, which is a compliance gap especially under GDPR. Google Analytics is used without a consent mechanism, indicating moderate user tracking without explicit privacy compliance. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security hardening to improve its risk posture and regulatory adherence.

20
35
17
60
75
75
100
webdevelopmentdigitalmarketingwebdesignseobranding+1 more
Next.jsReactGolangLaravel+3
2025-10-03T15:41:08.921Z
kurpirkt.lv favicon

KurPirkt.lv - Visi interneta veikali. Uzzini, kur pirkt!

kurpirkt.lv

53
E-commerceLatviasmallMEDIUM

KurPirkt.lv is a Latvian e-commerce price comparison and online store catalog website designed to help users find products and compare prices across various Latvian internet stores. The platform targets Latvian online shoppers and offers services such as product search, price comparison, and listings of popular products. The website is primarily in Latvian with an option for a Russian version, indicating a regional focus. The business model centers on aggregating product data from multiple stores to facilitate informed purchasing decisions. Technically, the site uses standard web technologies including HTML5, CSS3, JavaScript, Google Fonts, and Google Tag Manager for analytics. The design is responsive and user-friendly, providing a good user experience on mobile devices. However, the site lacks advanced technical frameworks or CMS indications and shows moderate performance and SEO optimization. Security-wise, the site uses HTTPS (assumed from URL), but no explicit security headers or advanced protections are detected. There is no visible cookie consent mechanism or comprehensive privacy compliance features, which may pose compliance risks. Contact information is limited to a single email address in the footer, with no phone numbers or physical addresses provided. Overall, the website is functional and serves its business purpose but would benefit from enhanced security measures, privacy compliance, and richer contact information to improve trust and regulatory adherence.

15
28
2
70
72
70
100
pricecomparisone-commercelatviaonlineshoppingproductcatalog
HTML5CSS3JavaScriptGoogle Fonts+1
2025-10-03T15:40:23.436Z