Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 35 of 166|Showing 1701-1750 of 8294
klim.co.nz favicon

Klim Type Foundry

klim.co.nz

61
MediaNew ZealandsmallMEDIUM

Klim Type Foundry is a well-established independent typeface design studio based in Wellington, New Zealand, founded in 2004. The company specializes in designing and selling a wide range of fonts online and providing custom typographic services to an international clientele. Their website reflects a strong market position within the niche of typography and font design, targeting graphic designers and creative professionals globally. The business model is primarily e-commerce combined with bespoke design services, supported by a professional and content-rich website that showcases their font collections and design philosophy. Technically, the website is built using modern web technologies including Gatsby and React, hosted on AWS infrastructure, and optimized for performance and mobile responsiveness. The site employs Google Analytics for visitor tracking and Imgix for image optimization, indicating a mature digital infrastructure. SEO and accessibility features are well implemented, contributing to a positive user experience. From a security perspective, the site uses HTTPS with a good SSL configuration, but lacks DNSSEC and security headers which are recommended for enhanced protection. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial; a comprehensive privacy policy is present, but cookie consent mechanisms and detailed data retention policies are absent. Contact information is limited to a contact form, with no direct emails or phone numbers published. Overall, Klim Type Foundry presents a low-risk profile with a professional online presence and solid business credibility. Strategic improvements in security headers, cookie consent, and incident response transparency would further strengthen their security posture and regulatory compliance.

70
53
17
85
-
85
100
typefacefontstypographydesignmedia+1 more
GatsbyReactGoogle AnalyticsImgix
2025-10-18T14:38:22.260Z
M

Midea CZ

mideacz.cz

64
EnergyCzech RepublicsmallMEDIUM

MideaCZ.cz is a recently established (2023) Czech Republic based distributor and reseller specializing in HVAC and heating systems, including air conditioners, heat pumps, and related products. The website targets residential and commercial customers seeking modern climate control solutions. The business positions itself as a partner of the Midea brand, offering a range of energy-efficient and technologically advanced products. The site is built on a modern React and Next.js framework, hosted by Websupport, and integrates industry-standard tools such as Google Analytics, Google Ads, and Cookiebot for privacy compliance and marketing. From a technical perspective, the website demonstrates a moderate level of digital maturity with responsive design, decent performance, and basic SEO and accessibility features. The use of Cookiebot ensures GDPR-compliant cookie management and transparent user consent mechanisms. However, explicit privacy and security policy pages are not prominently available, and no terms of service or vulnerability disclosure information is found. Security posture is adequate with HTTPS enforced and no obvious vulnerabilities or exposed sensitive data. The site could improve by implementing additional security headers and publishing formal security policies and incident response contacts. Advertising practices are transparent with clear use of major ad networks and tracking pixels. Overall, the website presents a professional and trustworthy front for a small to medium-sized business in the energy sector. Strategic recommendations include enhancing security disclosures, adding contact details such as emails and phone numbers, and improving SEO and accessibility to strengthen business credibility and user trust.

20
83
17
80
52
85
100
hvacairconditioningheatpumpsenergyczechrepublic+3 more
ReactNext.jsCookiebotGoogle Tag Manager+2
2025-10-18T13:33:23.518Z
ccifi-connect.com favicon

CCI France International

ccifi-connect.com

56
OtherFrancelargeMEDIUM

CCIFI Connect is a mobile application and web platform designed exclusively for members of the French Chambers of Commerce and Industry International (CCI Françaises à l'International). It facilitates global business networking, event agenda access, and exclusive offers across multiple countries. The platform is supported by CCI France International and partners such as BlueSoft, positioning itself as the premier private network of French companies worldwide with over 35,000 member enterprises. The business model centers on membership and providing value-added networking and business development services to its users. Technically, the website employs modern web technologies including React and JavaScript ES modules, with hosting and DNS managed by reputable providers. The site is mobile-optimized and promotes its iOS and Android applications prominently. SEO and accessibility are adequately addressed, though some improvements in accessibility could be made. The cookie consent mechanism is comprehensive, supporting GDPR compliance. From a security perspective, the site enforces HTTPS and uses domain transfer protection. However, DNSSEC is not enabled, and common security headers are not explicitly detected, suggesting room for improvement. No explicit security or incident response policies are published, and no vulnerability disclosure program is evident. The domain registration data is consistent and trustworthy, with no privacy protection masking ownership. Overall, CCIFI Connect presents a professional and trustworthy business networking platform with solid technical foundations and good privacy practices. Strategic enhancements in security headers, incident response transparency, and DNS security would further strengthen its posture.

15
50
17
60
52
70
100
businessnetworkingfrenchinternationalcci+3 more
ReactJavaScript ES ModulesCSSGoogle Tag Manager

Partner Domains:

ccifrance-international.org
partner
bluesoft-group.com
partner

+1 more partners

2025-10-18T12:21:21.372Z
fsjam.org favicon

FSJam Podcast

fsjam.org

57
TechnologyN/asmallMEDIUM

FSJam.org is a professionally designed podcast website targeting developers, designers, and entrepreneurs interested in modern web technologies and full-stack application development. The site hosts episodes featuring guests discussing relevant technologies and tools. The business model revolves around content delivery through podcast episodes and sponsorships, positioning FSJam as a niche player in the technology podcast market. The site is visually appealing, well-structured, and optimized for mobile devices, reflecting a mature digital presence. Technically, the website leverages modern frameworks such as Next.js and is hosted on Vercel, ensuring fast performance and good accessibility. The use of Transistor.fm for podcast hosting integrates well with the site. Security is robust with HTTPS enforced and domain status protections in place, although DNSSEC is not enabled. The site lacks explicit privacy and cookie policies, which is a notable compliance gap. Security posture is strong with no evident vulnerabilities or exposed sensitive data. However, the absence of vulnerability disclosure and incident response information limits transparency. The site uses minimal tracking via Fathom Analytics, reflecting a privacy-conscious approach but lacking formal privacy compliance documentation. Overall, FSJam.org is a trustworthy and professional podcast platform with excellent content quality and technical implementation. To enhance compliance and trust, it should implement privacy and cookie policies, provide contact information, and consider DNSSEC activation. These improvements will strengthen its security posture and regulatory adherence.

30
35
2
60
72
80
100
podcasttechnologydevelopersfull-stackjamstack+1 more
ReactNext.jsVercel DNSTransistor.fm (podcast hosting)
2025-10-18T11:11:16.401Z
shields.io favicon

Registrant of shields.io

shields.io

60
TechnologyUnited KingdomsmallMEDIUM

Shields.io is an established open source project founded in 2013, providing concise and consistent badges for software projects. It serves a developer-centric audience by offering dynamic and static badges, an NPM library for badge rendering, and options for self-hosting via Docker. The project is community-driven with active presence on GitHub, Open Collective, and Discord, reflecting a collaborative and transparent business model supported by donations. Technically, the website is built using modern frameworks such as Docusaurus and React, hosted behind Cloudflare for DNS and CDN services. The site demonstrates good performance, mobile optimization, and accessibility. The technology stack is modern and well-maintained, with no detected technical debt or performance issues. From a security perspective, the site enforces HTTPS and uses domain status protections like clientTransferProhibited. However, it lacks DNSSEC, security headers, and published security or incident response policies. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism or GDPR indicators. Overall, Shields.io presents a low-risk profile with high legitimacy and trustworthiness. Strategic improvements in security headers, privacy compliance, and contact transparency would enhance its security posture and user trust.

15
53
17
70
75
70
100
badgesopensourcedevelopertoolssoftwaremetricstechnology
JavaScriptReactDocusaurusNPM+1
2025-10-18T10:40:00.798Z
assistivlabs.com favicon

Assistiv Labs

assistivlabs.com

64
TechnologyN/asmallMEDIUM

Assistiv Labs is a technology company specializing in providing remote accessibility testing services using real assistive technologies such as screen readers and magnifiers. Their platform enables developers and companies to ensure their websites and applications are accessible to disabled users by testing with actual assistive tools remotely via any modern web browser. The company targets accessibility professionals, developers, and organizations committed to digital inclusion. Their market position is that of a niche SaaS provider with a focus on real AT environments, supported by notable clients such as Slack, Asana, and GOV.UK. Technically, the website is built using modern frameworks like Next.js and React, hosted on Vercel, and integrates analytics and customer support tools such as Google Analytics and HelpScout Beacon. The site demonstrates excellent design quality, mobile optimization, and accessibility features, reflecting a mature digital presence. Performance is fast, and SEO practices are good, although some improvements in security headers and cookie consent could be made. From a security perspective, the site enforces HTTPS and has domain protections like clientDeleteProhibited status. However, it lacks DNSSEC and security headers, and does not provide explicit incident response or vulnerability disclosure information. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a clear privacy policy but no cookie consent mechanism despite tracking scripts. Overall, Assistiv Labs presents a professional, trustworthy, and technically sound web presence with minor areas for security and privacy enhancement. The domain registration is consistent with the business profile, and no blocking or WAF interference was detected, allowing full content analysis.

45
53
2
75
72
85
100
accessibilityassistivetechnologyscreenreadersaccessibilitytestingremotetesting+3 more
ReactNext.jsGoogle AnalyticsHelpScout Beacon+1
2025-10-18T10:38:35.451Z
K

Konrad-Adenauer-Stiftung e.V.

kas.de

63
GovernmentGermanylargeMEDIUM

The Konrad-Adenauer-Stiftung e.V. is a well-established German political foundation focused on promoting political education, democracy, and social market economy principles both nationally and internationally. The website reflects a professional and consistent brand presence with comprehensive content aimed at a general audience interested in political and social topics. The foundation maintains an active presence on multiple social media platforms, enhancing its outreach and engagement. Technically, the website is built on the Liferay CMS platform, utilizing modern web technologies including jQuery, React, and Alloy UI. The site demonstrates good mobile optimization, accessibility, and SEO practices, with moderate performance characteristics. Analytics are handled via Matomo with a consent mechanism in place, indicating a respect for user privacy. From a security perspective, the site enforces HTTPS, employs Content Security Policy with nonce, and uses secure form submissions. However, explicit privacy policies, terms of service, and vulnerability disclosure mechanisms are not detected in the provided content, representing areas for improvement. WHOIS data is minimal but does not raise immediate concerns, though more transparency would enhance trust. Overall, the website presents a low-risk profile with strong business credibility and a good security posture, but could benefit from enhanced privacy compliance documentation and clearer contact information for security and general inquiries.

20
48
17
80
85
70
100
politicalfoundationnon-profiteducationdemocracygermany+3 more
jQuery 3.5.1PrimeIconsLiferay PortalAUI (Alloy UI)+3
2025-10-18T08:19:59.259Z
strap-bjj.com favicon

STRAP BJJ

strap-bjj.com

56
OtherN/asmallMEDIUM

Strap BJJ is a small business focused on providing a Brazilian Jiu-Jitsu mobile application available on both iOS and Android platforms. The website serves primarily as a landing page to promote app downloads and partnership opportunities. The business targets BJJ practitioners and enthusiasts, positioning itself in a niche sports app market. The website content is minimal but functional, with basic branding and contact information limited to an email address. Technically, the website is built using modern web technologies including Next.js and React, indicating a contemporary development approach. The site is mobile-optimized and loads with moderate performance, though SEO and accessibility features are basic. There is no detected CMS or hosting provider information. The absence of security headers and lack of HTTPS configuration details suggest room for improvement in security hardening. From a security perspective, the site lacks visible security policies, incident response information, and cookie consent mechanisms. The WHOIS data is missing or unavailable, which raises concerns about domain legitimacy and trustworthiness. No forms or data collection mechanisms are present, reducing immediate data exposure risks. Overall, the security posture is basic with recommendations to implement HTTPS, security headers, and privacy compliance measures. The overall risk is moderate due to the lack of domain registration transparency and minimal security controls. Strategic improvements in domain registration verification, security best practices, and privacy compliance would enhance trust and reduce risk.

30
53
2
60
72
80
100
sportsbjjmobileappmartialarts
Next.jsReactJavaScriptCSS+1
2025-10-18T08:17:48.829Z
calizy.com favicon

Calizy

calizy.com

58
TechnologyFrancesmallMEDIUM

Calizy is a technology company specializing in intelligent online appointment scheduling and shared calendar solutions tailored for teams and companies, particularly in sectors such as insurance, financial services, subcontracting, and specialized distribution. The company offers a SaaS platform that integrates with major calendar and CRM systems to optimize appointment allocation, synchronization, and customer engagement. The website reflects a professional and consistent brand presence with detailed service descriptions and client trust indicators. Technically, the website is built on modern frameworks including Next.js and React, hosted on reputable providers with media assets served via DigitalOcean Spaces. The site employs multiple analytics and marketing tools such as Matomo, Google Tag Manager, Facebook Pixel, and LinkedIn Insight Tag, indicating a moderate level of user tracking. Mobile optimization and SEO practices are good, though accessibility features are basic. From a security perspective, the site uses HTTPS and has some security best practices in place, but lacks explicit security headers and published security policies or incident response contacts. The domain registration is consistent and trustworthy, with no privacy protection masking ownership, and domain age aligns with the company's founding date. Overall, Calizy's website presents a solid business and technical foundation with room for improvement in privacy compliance documentation and security policy transparency. The risk level is moderate with no critical vulnerabilities detected.

30
35
17
50
72
80
100
appointmentschedulingsharedagendacalendarsynchronizationcrmintegrationonlinebooking+1 more
Next.jsReactMatomo AnalyticsGoogle Tag Manager+4
2025-10-18T07:08:43.111Z
adventist.org favicon

General Conference Corporation of Seventh-day Adventists

adventist.org

68
Non-profitUnited StateslargeMEDIUM

The Seventh-day Adventist Church operates adventist.org as its official global online presence, providing comprehensive religious, educational, and humanitarian information and services. The website serves a worldwide Christian audience, offering resources on beliefs, church locations, prayer requests, and impact initiatives such as education and health. The organization is a large, well-established non-profit religious entity with a history dating back to the 19th century, reflected in the domain's long registration since 1996. Technically, the website employs modern web technologies including React and Next.js frameworks, supported by Cloudflare DNS and CDN services. It integrates multiple third-party analytics and marketing tools such as HubSpot and Google Tag Manager, ensuring robust performance, mobile optimization, and good SEO practices. The site is well-designed with excellent user experience and accessibility. From a security perspective, the site enforces HTTPS with strong domain registration protections, though DNSSEC is not enabled. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with a comprehensive privacy policy, cookie consent mechanisms, and GDPR adherence. Contact information and legal notices are clearly presented, enhancing business credibility. Overall, adventist.org demonstrates a mature digital infrastructure, strong security posture, and high content quality, supporting its mission as a trusted global religious organization. Strategic improvements could include enabling DNSSEC and publishing a formal security policy and vulnerability disclosure framework to further enhance trust and resilience.

30
83
17
70
72
85
100
religionnon-profiteducationhumanitarianchristianity+3 more
ReactNext.jsCloudflare DNSYouTube iframe API+3

Partner Domains:

adventistlocator.org
partner
adventist.news
partner

+1 more partners

2025-10-18T05:00:55.049Z
nline.ai favicon

nLine GmbH

nline.ai

62
ManufacturingGermanysmallMEDIUM

nLine GmbH is a German-based technology company specializing in AI-powered inline quality inspection solutions for extrusion products such as cables, wires, and hoses. Their flagship product, nLine, integrates high-speed cameras and proprietary AI software to provide 360° surface inspection and quality assurance, targeting manufacturing sectors including automotive, chemical, and medical industries. The company positions itself as an innovator with strong partnerships with major industry players like Helukabel, Nexans, and ABB. Technically, the website is built on modern frameworks such as Next.js and React, with content managed via Contentful CMS. The site is well-optimized for performance and mobile devices, featuring professional design and clear navigation. Tracking scripts indicate moderate user analytics, though privacy compliance could be improved with cookie consent mechanisms. From a security perspective, the site uses HTTPS with good SSL configuration but lacks visible security headers and published security policies or incident response information. The WHOIS data is unavailable or malformed, which reduces domain trustworthiness, but the presence of physical addresses, contact details, and partner logos supports legitimacy. Overall, the website demonstrates a solid business and technical foundation with room for improvement in privacy compliance and security best practices. Strategic enhancements in these areas would strengthen trust and regulatory adherence.

35
53
2
80
75
70
100
aiinlinequalitycontrolmanufacturingextrusionopticalinspection+2 more
Next.jsReactEdge ComputingProprietary AI software
2025-10-18T03:56:59.529Z
thomasnet.com favicon

Thomas Publishing Company

thomasnet.com

72
ManufacturingUnited StateslargeMEDIUM

Thomasnet.com is a leading B2B industrial supplier discovery platform operated by Thomas Publishing Company, with over 125 years of history connecting buyers and suppliers in North America. The website offers extensive services including supplier discovery, instant quotes, product catalogs, CAD models, and advertising solutions for suppliers. It targets procurement professionals, engineers, and business owners in manufacturing and industrial sectors. Technically, the site is built on modern frameworks such as React and Next.js, leveraging multiple analytics and marketing tools to optimize user experience and business insights. The website is well-optimized for SEO, mobile responsiveness, and accessibility, providing a professional and trustworthy user interface. Security posture is strong with HTTPS enforcement and bot protection, though explicit security policies and incident response information are not publicly disclosed. WHOIS data is unavailable, likely due to privacy or registry restrictions, but the site’s long-standing market presence and trust signals mitigate concerns. Overall, Thomasnet.com demonstrates a mature digital infrastructure and solid business credibility, with recommendations to enhance transparency around security and incident response.

35
80
17
95
75
85
100
b2bindustrialsupplierdiscoverymanufacturingproductsourcing+4 more
ReactNext.jsSegment analyticsGoogle Tag Manager+9

Partner Domains:

business.thomasnet.com
partner
machinesitalia.org
partner

+1 more partners

2025-10-17T22:37:17.500Z
deliveroo.com favicon

Deliveroo

deliveroo.com

75
TransportationUnited KingdomlargeMEDIUM

Deliveroo is a well-established online food delivery platform founded in 2012, operating primarily in the United Kingdom with a strong international presence. The company connects consumers with local restaurants, grocery stores, pharmacies, and gift services, offering fast and convenient delivery options. Deliveroo's market position is strong, supported by a large user base, extensive restaurant partnerships, and a robust rider network. The website reflects a mature digital presence with excellent design, clear navigation, and mobile optimization, supporting a seamless user experience across platforms. Technically, the site leverages modern frameworks such as React and Next.js, integrates Google Tag Manager for analytics, and employs OneTrust for cookie consent management, indicating a high level of digital maturity. Security-wise, the website enforces HTTPS, implements key security headers, and uses bot protection services, demonstrating a solid security posture. However, there is room for improvement in publishing explicit security policies and incident response contacts. Overall, the website is professional, trustworthy, and compliant with GDPR, making it a reliable platform for users and partners alike.

60
100
25
82
75
70
100
fooddeliverye-commercetransportationonlineorderinggroceries+2 more
ReactNext.jsGoogle Tag ManagerOneTrust Cookie Consent+2

Partner Domains:

restaurants.deliveroo.com
partner
corporate.deliveroo.co.uk
related

+1 more partners

2025-10-17T22:36:32.095Z