Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157331
Websites
130
Industries
113
Countries
52
Avg Score
Page 331 of 800|Showing 16501-16550 of 39982
mixdesk.com favicon

Mixdesk

mixdesk.com

64
TechnologyN/amediumMEDIUM

Mixdesk is a mature technology company founded in 2013, specializing in AI-driven customer service and global marketing solutions. Their platform integrates multiple communication channels including LiveChat, WhatsApp, Facebook, Instagram, Line, Email, and Telegram, enabling businesses to expand globally with AI-powered automation and multilingual support. The company serves over 400,000 businesses worldwide, positioning itself as a leading SaaS provider in the omnichannel customer engagement space. Technically, Mixdesk employs modern web technologies such as React and Next.js, hosted on AWS infrastructure, ensuring fast performance and excellent mobile optimization. The website demonstrates good SEO practices and accessibility features, contributing to a high-quality user experience. Analytics and marketing tools including Google Tag Manager, Facebook Pixel, and Baidu Analytics are integrated for data-driven marketing and user tracking. From a security perspective, the site enforces HTTPS and employs domain locks to prevent unauthorized changes. However, DNSSEC is not enabled, and explicit security policies or incident response pages are absent. Privacy compliance is generally good with a comprehensive privacy policy, but the lack of a cookie consent mechanism is a gap that should be addressed to fully comply with GDPR requirements. Overall, Mixdesk presents a professional and trustworthy online presence with strong business credibility and technical maturity. Strategic improvements in security headers, DNS security, and privacy consent mechanisms would further enhance their security posture and compliance standing.

20
58
25
70
77
75
100
aicustomerservicemarketingautomationomnichannelmultilingual+2 more
ReactNext.jsJavaScriptAWS DNS+3
2025-09-06T04:19:49.189Z
keyrock.com favicon

Keyrock

keyrock.com

73
FinanceN/amediumMEDIUM

Keyrock is a medium-sized company specializing in providing liquidity and market making services for digital assets since 2017. Positioned as a leading change-maker in the digital asset industry, Keyrock offers a comprehensive suite of services including market making, OTC trading, options desk, treasury solutions, liquidity pool management, ecosystem development, and NFT liquidity. Their target audience primarily includes institutions and foundations operating in the tokenized economy. The company is backed by renowned investors and maintains partnerships with major exchanges, reinforcing its market position. Technically, the website is built on WordPress with Vue.js components, optimized for performance and mobile responsiveness. It employs modern SEO practices using Yoast SEO Premium and integrates Google Tag Manager for analytics. The domain is registered with Amazon Registrar and uses Cloudflare DNS, ensuring reliable hosting and DNS management. The website demonstrates excellent design quality, clear navigation, and comprehensive content relevant to its business domain. From a security perspective, the site enforces HTTPS with strong domain registration protections such as clientDeleteProhibited and clientTransferProhibited statuses. However, DNSSEC is not enabled, and no explicit security policy or incident response information is published. Forms are protected with reCAPTCHA, and no vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are comprehensive and GDPR compliant, with active consent mechanisms. Overall, Keyrock's website reflects a professional, trustworthy, and secure digital presence aligned with its business objectives. Minor improvements such as enabling DNSSEC and publishing a security policy could further enhance its security posture.

65
68
17
85
75
90
100
financedigitalassetsmarketmakingliquiditycryptocurrency+1 more
JavaScriptVue.jsYoast SEOGoogle Tag Manager+1

Partner Domains:

binance.com
partner
bitstamp.net
partner

+3 more partners

2025-09-06T04:19:19.088Z
B

BSCTrace - BNB Smart Chain (BSC) Blockchain Explorer

bsctrace.com

51
TechnologyN/asmallMEDIUM

BSCTrace is a specialized blockchain explorer and analytics platform focused on the BNB Smart Chain ecosystem. It provides users with tools to explore blockchain blocks, transactions, and addresses, catering primarily to cryptocurrency users, developers, and analysts interested in BSC data. The website is built using modern web technologies such as React and Next.js and is hosted on nodereal.io, indicating a contemporary technical infrastructure with moderate performance and good mobile optimization. From a security perspective, the site enforces HTTPS and does not expose sensitive data in its HTML content. However, it lacks several important security headers and does not provide visible privacy or cookie policies, nor contact information for security incidents. Analytics are implemented via Google Tag Manager, which introduces moderate user tracking without clear privacy compliance disclosures. Overall, the website presents a professional and functional blockchain explorer service with a moderate security posture and some compliance gaps. Strategic improvements in privacy policy publication, security header implementation, and incident response contact information would enhance trust and security. The domain registration data aligns well with the website's purpose, supporting legitimacy and business credibility.

65
35
2
60
-
75
100
blockchainexplorerbnbsmartchainanalyticscryptocurrency
ReactNext.jsJavaScriptWeb Fonts (woff2)
2025-09-06T04:19:09.065Z
manta.network favicon

Manta Network

manta.network

61
TechnologyN/amediumMEDIUM

Manta Network is a blockchain technology company specializing in modular Layer 2 solutions that leverage zero-knowledge proofs and advanced cryptographic techniques to provide scalable, low-cost, and privacy-preserving infrastructure for decentralized applications. Positioned as the largest modular L2, it is backed by prominent investors such as Binance Labs and Polychain, indicating strong market credibility and growth potential. The company targets developers and blockchain users seeking high throughput and low fees, offering services including developer documentation, cross-chain bridges, staking, governance, and ecosystem grants. The website reflects a mature digital presence with professional design, comprehensive content, and active community engagement across multiple social platforms. Technically, the website employs modern web technologies including JavaScript frameworks, analytics tools, and responsive design, ensuring fast performance and good accessibility. The infrastructure integrates with Ethereum-compatible platforms and leverages Celestia data availability and OP Stack, showcasing advanced blockchain interoperability. However, the absence of explicit privacy and cookie policies and lack of visible security headers indicate areas for compliance and security enhancement. From a security perspective, the site uses HTTPS and avoids exposing sensitive data, but could improve by implementing standard security headers and publishing vulnerability disclosure information. The WHOIS data is limited due to privacy protection, which is common and justified in this sector. Overall, the site demonstrates a strong security posture with minor gaps in transparency and compliance. The overall risk assessment is low, with recommendations focusing on enhancing privacy compliance, security header implementation, and providing clear contact channels for incident response. These improvements would further solidify trust and regulatory adherence, supporting Manta Network's position as a leading modular blockchain provider.

30
35
2
85
72
85
100
blockchainmodularl2zkapplicationsethereumcelestia+7 more
HTML5CSS3JavaScriptjQuery+6

Partner Domains:

binance.com
partner
polychain.com
partner

+1 more partners

2025-09-06T04:17:33.665Z
anduril.com favicon

Anduril Industries, Inc.

anduril.com

74
GovernmentUnited StateslargeMEDIUM

Anduril Industries, Inc. is a prominent American defense technology company specializing in advanced autonomous systems and AI-powered defense platforms. The company focuses on transforming U.S. and allied military capabilities by delivering innovative products such as autonomous air vehicles, underwater vehicles, and AI sensor fusion systems. Their market position is strong, supported by strategic partnerships and sponsorships, including Ohio State Athletics and NASCAR, reflecting their commitment to innovation and community engagement. Technically, the website is built on modern frameworks such as Next.js and Sanity CMS, ensuring fast performance, mobile optimization, and good SEO practices. The infrastructure supports rich multimedia content and a professional user experience. Security posture is robust with HTTPS enforcement and comprehensive security headers, although there is room for improvement in privacy compliance mechanisms such as cookie consent. The security evaluation indicates a mature security posture with no visible vulnerabilities or exposed sensitive data. However, the absence of a dedicated security policy and incident response information suggests an opportunity to enhance transparency and readiness. Overall, the website and business demonstrate high credibility and trustworthiness, with consistent WHOIS data and clear corporate identity. Strategically, the company should focus on implementing explicit privacy and security policies, enhancing user consent mechanisms, and expanding contact information to include phone and physical addresses. These steps will further solidify trust and compliance in a highly regulated industry.

15
58
67
85
90
85
100
defensetechnologyautonomoussystemsmilitaryai+3 more
ReactNext.jsSanity CMSJavaScript+2
2025-09-06T04:16:48.541Z
3dtestosterone.net favicon

3DT Preloader

3dtestosterone.net

44
OtherN/asmallHIGH

The website 3dtestosterone.net currently serves primarily as a preloader page with minimal content focused on a thematic message celebrating 5 years of '3DTestosterone' and its association with 'Network Spirit' and 'Kyber Kommandos'. There is no clear business description, contact information, or service offerings visible, which limits understanding of the company's market position or business model. The target audience appears niche and possibly community-oriented, but this is not explicitly stated. Technically, the site uses basic HTML, CSS, and JavaScript with some audio elements and a preloading animation. There is no detected CMS or advanced frameworks. Performance appears moderate with basic mobile optimization and accessibility. SEO optimization is poor due to lack of meta tags and structured data. Analytics usage is minimal, relying on plausible analytics for basic event tracking. From a security perspective, the site uses HTTPS (implied by URL) but lacks visible security headers such as CSP or HSTS. No forms or inputs reduce attack surface, but the absence of security best practices and policies is notable. No privacy or cookie policies are present, and no contact or incident response information is provided, indicating low privacy compliance and business credibility. Overall, the site scores low on content quality, privacy compliance, and business credibility, with moderate technical implementation and security posture. The lack of business and contact information, policies, and professional content limits trustworthiness and user confidence.

15
50
2
60
75
75
40
preloaderjavascriptfitnessnetworkspirit3dtestosterone
JavaScriptHTML5CSSAudio element
2025-09-06T04:16:33.510Z
F

Fuzzland Inc.

scf.so

55
TechnologyN/asmallMEDIUM

The website scf.so is a personal professional portfolio site for Chaofan Shou, a software engineer specializing in blockchain security, fuzzing, and smart contract auditing. The site highlights his career achievements, including co-founding Fuzzland, a Web3 security and HFT company acquired by Solayer, his extensive bug bounty contributions, and academic publications. The target audience includes blockchain security professionals, researchers, and potential collaborators. The business model centers on personal branding, showcasing expertise, and promoting hiring opportunities at Fuzzland. Technically, the site uses modern JavaScript with Amplitude analytics, Google Fonts, and is hosted behind Cloudflare DNS. The site is moderately optimized for performance and mobile devices, with basic accessibility and SEO features. However, it lacks explicit privacy and cookie policies, and security headers are not detected, indicating room for improvement in security best practices. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks DNSSEC and security.txt for incident response. No vulnerabilities or exposed sensitive data were detected. The absence of privacy and cookie policies and consent mechanisms presents compliance gaps, especially regarding GDPR. Overall, the site is trustworthy and professional but could enhance its security and privacy posture. The overall risk is low given the nature of the site as a personal professional portfolio. Strategic recommendations include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and publishing a vulnerability disclosure policy to improve compliance and trust.

15
35
20
40
95
55
100
blockchainsecurityfuzzingsmartcontractsbugbounty+2 more
JavaScriptAmplitude AnalyticsGoogle FontsCloudflare DNS

Partner Domains:

fuzz.land
partner
solayer.org
partner
2025-09-06T04:15:38.403Z
hypersphere.ventures favicon

Hypersphere

hypersphere.ventures

58
FinanceN/asmallMEDIUM

Hypersphere is a specialized crypto-native investment platform focusing on venture capital and hedge funds within the blockchain and digital asset markets. The company targets asymmetric investment opportunities in both private and public blockchain networks, leveraging a team with combined crypto-native and traditional finance, legal, and compliance expertise. Their portfolio includes a broad range of early-stage and public blockchain projects, positioning them as a niche player in the crypto investment space. Technically, the website is built on a modern stack using Next.js and Sanity CMS, delivering fast performance and excellent mobile optimization. The site is professionally designed with clear navigation and relevant content, reflecting a mature digital presence. However, there is a lack of visible security headers and formal privacy or cookie policies, which are areas for improvement. From a security perspective, the site uses HTTPS and does not expose sensitive data, but the absence of explicit security policies, incident response information, and vulnerability disclosure mechanisms indicates a moderate security posture. The WHOIS data is unavailable due to privacy protection, which is common for investment firms but slightly reduces transparency. Overall, Hypersphere presents a professional and trustworthy front for its business, but enhancing privacy compliance and security transparency would strengthen its risk profile and user trust.

45
35
2
60
72
75
100
cryptoinvestmentblockchainventurecapitalhedgefund+2 more
ReactNext.jsSanity CMSJavaScript+1
2025-09-06T04:14:48.109Z
hashed.com favicon

Hashed, Inc.

hashed.com

60
TechnologySouth KoreamediumMEDIUM

Hashed, Inc. is a global early-stage venture fund specializing in blockchain and cryptocurrency investments. With offices in Seoul, Singapore, San Francisco, Bengaluru, and Abu Dhabi, Hashed supports founders pioneering Web3 technologies. The company offers venture funding, ecosystem building, incubation, research, and event hosting to accelerate blockchain adoption worldwide. The website reflects a professional and consistent brand image, targeting blockchain entrepreneurs and investors. Technically, the website is built using modern frameworks such as React and Gatsby, ensuring fast performance and excellent mobile optimization. The site is well-structured with clear navigation and rich content, though it lacks explicit privacy and cookie policies. No forms are present on the homepage, and no tracking or advertising scripts were detected in the provided HTML. Security posture is moderate; HTTPS is enforced, but security headers and explicit security policies are absent. The WHOIS data is unavailable, which raises some concerns about domain registration transparency, though the website content and branding suggest legitimacy. Contact information is clearly provided with verified company email and multiple physical addresses. Overall, Hashed presents a strong business and technical profile with room for improvement in privacy compliance and security best practices. The lack of WHOIS data and privacy policies slightly reduces trust but does not negate the professional appearance and market position of the company.

30
35
17
85
65
70
100
blockchainventurecapitalcryptocurrencyweb3investment+1 more
ReactGatsbyJavaScriptCSS

Partner Domains:

hashedem.com
subsidiary
unopnd.com
subsidiary

+3 more partners

2025-09-06T04:14:33.069Z
jambophone.xyz favicon

JamboPhone

jambophone.xyz

68
TechnologyN/asmallMEDIUM

JamboPhone is a technology startup focused on building the world's largest on-chain mobile network powered by its flagship product, the JamboPhone, a crypto-native mobile device. The company positions itself as an innovative player in the Web3 mobile technology space, supported by notable investors such as Paradigm, Pantera, OKX, and Coinbase. The business operates primarily through an e-commerce model on the Shopify platform, targeting crypto enthusiasts and mobile consumers interested in blockchain integration. The website is professionally designed with consistent branding and clear messaging about its unique market proposition. Technically, the website leverages Shopify's robust e-commerce infrastructure, including modern JavaScript, CSS, and Shopify-specific frameworks and plugins. It integrates various marketing and analytics tools such as Twitter Ads Pixel and Google Analytics, and employs security measures like HTTPS and hCaptcha for form protection. Performance and mobile optimization are good, though some security headers could be enhanced. The domain registration is consistent with the business's recent founding, and no suspicious WHOIS data or privacy protection is used, supporting legitimacy. From a security perspective, the site demonstrates a moderate security posture with HTTPS enforced and cookie consent implemented. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. DNSSEC is not enabled, and additional security headers could improve protection. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic but present, with a privacy policy and cookie banner. Overall, JamboPhone's website is a well-constructed e-commerce platform for a niche technology product with moderate security and privacy compliance. Strategic improvements in security policy transparency and DNS security would enhance trust and resilience.

75
73
2
70
75
75
100
web3cryptomobilee-commerceshopify+1 more
ShopifyJavaScriptCSSHTML5+8
2025-09-06T04:13:32.159Z
dedaub.com favicon

Dedaub

dedaub.com

60
TechnologyN/amediumMEDIUM

Dedaub is a specialized blockchain security company focusing on smart contract audits, decompilation, and real-time monitoring solutions for Web3 projects. Established in 2018, it has built a strong market position with over 200 audits and partnerships with major blockchain entities such as the Ethereum Foundation, Coinbase, and Chainlink. Their business model revolves around providing expert security services and a comprehensive Security Suite platform to enhance blockchain project safety. Technically, the website is built on modern frameworks like Next.js and React, hosted on Cloudflare, and integrates HubSpot for marketing and forms. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. Security posture is strong with HTTPS, security headers, and no visible vulnerabilities, although DNSSEC is not enabled. Privacy compliance is an area for improvement, as explicit privacy and cookie policies are missing. Overall, the domain registration data supports the legitimacy and maturity of the business. Strategic recommendations include publishing comprehensive privacy and cookie policies, enabling DNSSEC, and adding vulnerability disclosure and incident response information to enhance trust and compliance.

30
35
17
70
62
80
100
blockchainsmartcontractsecuritysecurityauditsweb3decompiler+3 more
ReactNext.jsHubSpotCloudflare+2

Partner Domains:

arbitrum.io
partner
securityalliance.org
partner

+3 more partners

2025-09-06T03:11:03.059Z
livepeer.studio favicon

Livepeer Studio

livepeer.studio

65
TechnologyUnited StatesmediumMEDIUM

Livepeer Studio is a technology company specializing in real-time and interactive video streaming solutions. Their platform offers scalable, cost-effective, and developer-friendly APIs for live streaming, video on demand, and transcoding services. Positioned as an innovative player with an open-source ethos, Livepeer Studio targets developers and businesses seeking advanced video infrastructure. The website demonstrates a strong market presence with customer case studies and a professional digital footprint. Technically, the website is built on modern web technologies including Webflow CMS, Google Tag Manager, HubSpot, and Microsoft Clarity for analytics and marketing. It is well-optimized for performance, mobile responsiveness, and SEO. The infrastructure appears robust with no blocking or WAF interference, indicating good accessibility and user experience. From a security perspective, the site uses HTTPS and employs standard security practices but lacks explicit security headers and published incident response or vulnerability disclosure information. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR considerations. However, direct company contact emails and phone numbers are not publicly listed, which may limit direct communication channels. Overall, Livepeer Studio presents a trustworthy and professional online presence with a solid technical foundation and good privacy practices. Strategic improvements in security transparency and direct contact information could further enhance trust and compliance.

15
68
2
85
75
90
100
videostreaminglivestreamingtranscodingdeveloperplatformapi+3 more
WebflowGoogle Tag ManagerHubSpotMicrosoft Clarity+4
2025-09-06T03:09:42.540Z
antinomy.studio favicon

ANTINOMY STUDIO B.V.

antinomy.studio

61
MediaNetherlandssmallMEDIUM

Antinomy Studio is a global digital creative agency based in Amsterdam, specializing in building contemporary brands and immersive digital experiences. Their services include brand design, development, strategy, animation, and motion graphics, targeting businesses seeking innovative digital branding solutions. The website showcases a professional portfolio with multimedia content and industry recognition, positioning Antinomy as a reputable player in the creative media sector. Technically, the website leverages modern frameworks such as Nuxt.js and CMS solutions like DatoCMS, integrating third-party services including Google Tag Manager and Microsoft Clarity for analytics. The site is mobile-optimized with good SEO practices, though accessibility features are basic. Performance is moderate, with rich media content embedded via Vimeo. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks visible security headers and explicit privacy or cookie policies, indicating areas for compliance improvement. No vulnerabilities or suspicious elements were detected. WHOIS data is unavailable due to privacy or query failure, but the website's professional presentation and contact information support its legitimacy. Overall, Antinomy Studio presents a strong digital presence with room for enhanced privacy compliance and security hardening to further build trust and meet regulatory standards.

30
35
2
80
72
85
100
digitalcreativestudiobrandingdesigndevelopmentmotiongraphics+2 more
JavaScriptWebGLVimeo video embeddingDatoCMS (graphql.datocms.com)+2
2025-09-06T03:09:37.530Z
bonk.io favicon

Multiplayer.GG

bonk.io

56
TechnologyUnited KingdomsmallMEDIUM

Bonk.io is a small technology company operating a multiplayer physics-based online game that supports up to eight players simultaneously. The game emphasizes strategy and skill, offering both last man standing and team-based matches, along with a robust community-driven level editor. The website reflects a niche gaming platform with a legacy transition from Flash to HTML5 technology, maintaining user accounts and content continuity. The company Multiplayer.GG, based in Great Britain, has maintained the domain since 2013, indicating stable operations and a dedicated user base. Technically, the website employs modern web technologies including HTML5, JavaScript, and integrates third-party services such as Google Analytics and Amazon Publisher Services for advertising and tracking. DNS is managed via Cloudflare, enhancing reliability and security. However, the site lacks visible advanced security headers and DNSSEC is not enabled, which are areas for improvement. The site is moderately optimized for performance and mobile use, with basic accessibility and SEO features. From a security perspective, the site uses HTTPS (implied by external scripts loaded over HTTPS) but lacks explicit security policies or incident response contacts. No privacy policy or terms of service pages were found, though a cookie consent mechanism is implemented via a third-party privacy management service. The WHOIS data is consistent and trustworthy, with no privacy protection masking ownership, supporting legitimacy. No adult or questionable content is present, making the site safe for general audiences. Overall, Bonk.io presents a credible and functional gaming platform with room for enhancement in security posture and privacy compliance. Strategic improvements in security headers, DNSSEC, and publishing clear privacy and security policies would strengthen trust and compliance.

15
35
2
70
75
75
100
multiplayeronlinegamephysicsgamehtml5gaming+2 more
HTML5JavaScriptGoogle AnalyticsAmazon Publisher Services+2

Partner Domains:

hitbox.io
partner
supercarstadium.com
partner
2025-09-06T03:09:07.436Z
defisaver.com favicon

DeFi Saver

defisaver.com

67
FinanceN/amediumMEDIUM

DeFi Saver is a well-established decentralized finance management platform founded in 2019, offering users a comprehensive suite of tools to manage their DeFi assets and positions across multiple protocols. The platform emphasizes non-custodial, trustless access to DeFi, integrating over 15 protocols including major players like Aave, Compound, and MakerDAO. It targets crypto investors and DeFi users seeking advanced automation, leverage management, and position migration capabilities. The business model is primarily free-to-use with fees applied only on advanced features and automation triggers, positioning DeFi Saver as a competitive and user-friendly solution in the DeFi ecosystem. Technically, the website is built on a modern stack using Next.js and React, hosted on Cloudflare infrastructure, ensuring fast performance and excellent mobile optimization. The site includes rich metadata, Open Graph tags, and JSON-LD structured data to enhance SEO and social media integration. The platform demonstrates a mature digital presence with a clean, professional design and clear navigation, contributing to a positive user experience. From a security perspective, DeFi Saver shows strong commitment through multiple security audits by reputable firms (Dedaub, ConsenSys, Optimum), a non-custodial architecture, and a bug bounty program. The domain registration is consistent with the business history, and HTTPS is enforced via Cloudflare SSL. However, the site lacks explicit privacy and cookie policies, incident response contacts, and a vulnerability disclosure policy, which are areas for improvement to enhance compliance and trust. Overall, DeFi Saver presents a high-quality, secure, and professional platform with strong market positioning in the DeFi space. Addressing privacy compliance and incident response transparency would further strengthen its security posture and user trust.

25
53
47
85
65
80
100
defifinancecryptocurrencyblockchaindecentralizedfinance+4 more
ReactNext.jsJavaScriptWeb3+1
2025-09-06T03:07:54.971Z
icomoon.io favicon

Digital Privacy Corporation

icomoon.io

65
TechnologyUnited StatessmallMEDIUM

IcoMoon.io is a specialized technology service operated by Digital Privacy Corporation, focused on providing designers and developers with tools to manage, customize, and integrate SVG icons and icon fonts. The platform offers both free and premium icon packs, along with a web app for importing and exporting icons in various formats. The business model combines freemium access with one-time payments and subscription plans for enhanced features such as hosting and CDN services. The website is professionally designed, targeting a niche audience in the design and development community, and is supported by a domain registered since 2012, indicating a mature and stable presence in the market. Technically, the website employs modern web standards including HTML5, CSS3, and SVG, hosted on Amazon AWS infrastructure as indicated by the DNS records. The site is mobile optimized and performs well with good SEO practices. However, no major JavaScript frameworks or CMS platforms are detected, suggesting a custom-built solution. Security-wise, the site uses HTTPS and has domain transfer protections enabled, but lacks DNSSEC and explicit security headers, which could be improved. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism or GDPR-specific indicators. The security posture is moderate with no visible vulnerabilities or exposed sensitive data, but the absence of a published security policy or incident response contacts limits transparency. No security certifications or vulnerability disclosure programs are evident. The site is free from adult or questionable content, making it safe for general audiences. Overall, the website demonstrates a solid business credibility and technical foundation but could enhance its privacy and security practices to align with best industry standards. Recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, publishing security policies, and providing clearer contact information to improve trust and compliance.

70
50
2
85
52
80
100
iconssvgicon-fontdesignvector-icons+1 more
HTML5CSS3SVGJavaScript
2025-09-06T03:03:17.767Z
cloudlift.app favicon

cloudlift

cloudlift.app

69
TechnologySwitzerlandsmallMEDIUM

Cloudlift GmbH operates a Shopify-based e-commerce website offering specialized Shopify apps aimed at improving storefronts through personalized product upload and preview features, as well as B2B wholesale tools. The company targets Shopify merchants and e-commerce store owners, positioning itself as a niche technology provider within the Shopify ecosystem. The website demonstrates a good level of professionalism and branding consistency, leveraging modern web technologies and Shopify's platform capabilities to deliver a performant and user-friendly experience. Technically, the site is built on the Shopify platform using the Dawn theme and integrates several JavaScript libraries such as FilePond for file uploads, Doka for image editing, and Fabric.js for canvas manipulation. Hosting and content delivery are managed via Shopify's CDN, ensuring fast load times and good mobile optimization. SEO is supported through structured data (JSON-LD) and proper meta tags, while accessibility features are adequately implemented. From a security perspective, the site benefits from Shopify's robust HTTPS enforcement and platform security features. However, explicit security headers and published security policies are not evident in the content. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is limited due to the absence of visible privacy and cookie policies, which is a notable gap. Contact information for security incidents or general inquiries is also missing, reducing transparency. Overall, the website presents a moderate to high trust level with strong technical and security foundations but requires improvements in privacy compliance and contact transparency to enhance user trust and regulatory adherence.

75
50
17
75
75
80
100
shopifye-commercesaastechnologyapps+1 more
Shopify platformJavaScriptShopify Liquid templatesFilePond (file upload library)+5
2025-09-06T01:58:49.131Z
E

El Corte Inglés, S.A.

primeriti.es

46
RetailSpainenterpriseHIGH

Primeriti is a flash sales e-commerce platform operated by El Corte Inglés, S.A., a leading retail company in Spain. The website offers discounted branded fashion, sportswear, accessories, and home products targeting consumers looking for exclusive deals. The platform leverages the strong brand reputation of El Corte Inglés and integrates secure user authentication via the parent company's OAuth system. The site is well-branded, professionally designed, and provides comprehensive privacy and cookie policies in Spanish, demonstrating compliance with GDPR requirements. Contact information and a designated Data Protection Officer are clearly provided, enhancing trust and transparency. Technically, the website employs modern JavaScript libraries, tag management tools like Google Tag Manager and Adobe DTM, and a content delivery network associated with the parent company. The site is mobile-optimized, accessible, and SEO-friendly, with moderate performance. Security posture is strong with HTTPS enforced, encrypted data transmission, and secure login mechanisms. However, explicit security headers and a public incident response policy are not evident, and a cookie consent mechanism is missing, which are areas for improvement. Overall, the website presents a high level of professionalism, security, and compliance suitable for an enterprise retail business. The domain registration data aligns with the business entity, confirming legitimacy. Strategic recommendations include implementing explicit cookie consent, publishing a security policy, and enhancing security headers to further strengthen the security posture and compliance.

-
25
17
70
-
70
100
e-commercefashionflashsalesretailelcorteingls+4 more
JavaScriptAdobe DTM (Adobe Dynamic Tag Management)Google Tag ManagerInsider SDK+2

Partner Domains:

cuenta.elcorteingles.es
partner
cdn.grupoelcorteingles.es
partner
2025-09-06T01:55:32.175Z