Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157333
Websites
130
Industries
113
Countries
52
Avg Score
Page 364 of 1003|Showing 18151-18200 of 50114
branco.com favicon

Branco Enterprises Inc.

branco.com

59
Real EstateUnited StatesmediumMEDIUM

Branco Enterprises Inc. is a well-established construction company operating primarily in the Midwest United States, with offices in Neosho and Springfield, Missouri. Founded in 1933, Branco offers a comprehensive range of construction services including general contracting, design-build, construction management, and pre-construction evaluations. The company positions itself as a leader in the regional construction industry, serving sectors such as education, healthcare, community, and commercial projects. Their website reflects a professional and modern digital presence, showcasing project portfolios, safety initiatives, and career opportunities. Technically, the site is built on WordPress with Elementor and integrates advanced tools such as Google Analytics, Google Maps API, and Facebook Pixel for marketing and analytics purposes. Security measures include HTTPS enforcement, reCAPTCHA on forms, and standard security headers, contributing to a strong security posture. However, the absence of a visible cookie consent mechanism and limited privacy compliance indicators suggest room for improvement in regulatory adherence. The WHOIS data for the domain is unavailable, likely due to privacy protection, which slightly reduces transparency but is common for businesses of this type. Overall, Branco Enterprises presents a credible and professional online presence with a solid foundation for further enhancing privacy and security compliance.

70
58
17
80
62
80
20
constructiongeneralcontractingdesign-buildmissouribrancoenterprises+4 more
WordPressElementorGravity FormsGoogle Maps API+3
2025-10-12T14:22:48.335Z
R

Random User Generator | Home

randomuser.me

55
TechnologyIcelandsmallMEDIUM

RandomUser.me is a niche technology service providing a free, open-source API for generating random user data, including profile photos and personal information placeholders. The service targets developers and software engineers who need realistic dummy data for testing and development purposes. The website is well established, with a domain age since 2013, and maintains a consistent brand presence with open-source transparency and active social media engagement. The business model relies on sponsorships, donations, and advertising revenue via Google Adsense. Technically, the site uses modern JavaScript, jQuery, and integrates Google Analytics and Adsense for tracking and monetization. Hosting and DNS services are provided via Cloudflare, ensuring good performance and availability. The site is mobile optimized and provides clear API usage instructions, though accessibility features are basic. No CMS or major frameworks are detected, indicating a lightweight custom implementation. From a security perspective, the site enforces HTTPS and uses WHOIS privacy protection appropriately. However, it lacks visible security headers such as CSP or HSTS, and does not publish a privacy policy or cookie consent mechanism, which are compliance gaps. No incident response or vulnerability disclosure information is provided, limiting transparency for security issues. The site does not expose sensitive data or show signs of vulnerabilities in the provided content. Overall, RandomUser.me is a credible and useful developer tool with moderate security posture and some compliance shortcomings. Strategic improvements in privacy documentation, security headers, and incident response transparency would enhance trust and compliance. The site is safe for general audiences and does not contain adult or questionable content.

15
35
2
85
65
60
100
apirandomuserdeveloperopen-sourceplaceholderdata
JavaScriptjQueryGoogle AnalyticsGoogle Adsense+1

Partner Domains:

randomapi.com
partner
2025-10-12T14:20:32.981Z
travefy.com favicon

Travefy, Inc.

travefy.com

73
HospitalityUnited StatesmediumMEDIUM

Travefy, Inc. is a well-established travel software company founded in 2012, specializing in providing integrated SaaS solutions for travel agents, agencies, tour operators, and related hospitality sectors. Their platform consolidates itinerary management, proposals, CRM, and marketing tools into a unified system designed to streamline travel business operations and enhance client engagement. With over 30,000 travel brands worldwide using their services, Travefy holds a strong market position supported by extensive supplier integrations and a dedicated support team. Technically, the website is built on modern web technologies including Webflow CMS, HubSpot, Mixpanel, and Google Tag Manager, hosted on AWS infrastructure. The site demonstrates excellent performance, mobile optimization, and SEO practices. Security is robust with HTTPS enforced, PCI-DSS compliance, and multiple security headers implemented. However, DNSSEC is not enabled, and there is no public security.txt or explicit incident response contact information. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms and GDPR compliance indicators. Business credibility is high, supported by consistent branding, customer testimonials, and trust signals such as PCI-DSS certification. Overall, Travefy presents a professional, secure, and user-friendly digital presence with a mature technical infrastructure and strong business legitimacy. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing transparency around incident response to further strengthen security and trust.

55
68
17
87
77
90
100
travelsoftwaretravelagentscrmitinerary+2 more
Webflow CMSHubSpot AnalyticsMixpanelGoogle Tag Manager+3
2025-10-12T13:15:44.461Z
rcl.com favicon

RCL Systems, Inc.

rcl.com

68
TechnologyUnited StatessmallMEDIUM

RCL Systems, Inc. is a Texas-based IT support and consulting firm specializing in managed IT services for businesses, primarily in Houston. The company positions itself as a premier provider of IT solutions, offering services such as network management, computer services, and tech support. Their website reflects a professional and business-focused approach, targeting organizations seeking reliable IT management to optimize their operations. Technically, the website is built on Joomla CMS with modern front-end frameworks like Bootstrap and jQuery. It employs security measures such as HTTPS encryption and Google reCAPTCHA to protect user interactions. Analytics are conducted via Microsoft Clarity, indicating a moderate level of digital maturity. However, the site lacks visible privacy and cookie policies, which are critical for compliance and user trust. From a security perspective, the site demonstrates good baseline practices but could improve by implementing security headers, publishing a security policy, and providing vulnerability disclosure information. The absence of WHOIS data for the domain raises some concerns about domain registration transparency, although the website content and business information appear legitimate and professional. Overall, RCL Systems presents a credible business front with room for enhancement in privacy compliance and security transparency. Addressing these gaps would strengthen their trustworthiness and regulatory adherence.

65
35
55
70
65
80
100
itsupportmanageditservicestechnologyhoustonbusinessservices
Joomla CMSBootstrap CSSjQueryGoogle reCAPTCHA+3
2025-10-12T13:14:07.398Z
promotron.com favicon

PromoTron Solutions S.A.

promotron.com

61
TechnologyCzech RepublicmediumMEDIUM

PromoTron Solutions S.A. is a Czech Republic-based company specializing in cloud-based SaaS software solutions tailored for the promotional products industry. Their platform serves distributors, importers, manufacturers, and printing houses by digitizing sales processes, automating communication, and enhancing data exchange. With a market presence since 2017 and over 500 customers across 28+ countries, PromoTron offers multiple products including TronShop, TronManager, TronLogo, and TronCalculator, positioning itself as a key player in promotional industry digitalization. Technically, the website employs modern web technologies such as Bootstrap, jQuery, and various analytics and tracking tools including Google Analytics, Facebook Pixel, and LinkedIn Insight Tag. The site is mobile-optimized with good SEO and accessibility features, though some security headers are not explicitly detected. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the absence of security headers and lack of published security policies or incident response contacts suggest room for improvement. The WHOIS data is unavailable, which slightly reduces trust but is mitigated by strong business indicators and customer testimonials. Overall, PromoTron presents a professional, trustworthy, and technically competent online presence with a clear focus on the promotional industry SaaS market. Strategic enhancements in security transparency and WHOIS data availability would further strengthen their credibility and risk profile.

15
80
2
60
67
80
100
softwarepromotionalbusinessonline3ddesigningpromotionalproductssaas+2 more
jQueryBootstrap 4.1.2FancyBox 3Slick Carousel+6
2025-10-12T13:11:05.042Z
congress.gov favicon

Library of Congress

congress.gov

63
GovernmentUnited StateslargeMEDIUM

Congress.gov is the official website of the U.S. Congress, managed by the Library of Congress. It provides comprehensive legislative data, including bills, resolutions, Congressional Records, committee information, and member profiles. The site serves a broad audience including researchers, students, government officials, and the general public, offering authoritative and educational resources on the legislative process. The business model is a government information service, positioning itself as the primary source for U.S. legislative information online. Technically, the website employs modern JavaScript libraries such as jQuery and Bootstrap, integrates mapping capabilities via ArcGIS API, and uses Adobe's Dynamic Tag Management for analytics. The site is well-structured, mobile-optimized, and accessible, with good SEO practices. Performance is moderate, reflecting the complexity and volume of data served. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, explicit security headers and a public security policy or incident response page are absent. The WHOIS data is incomplete, likely due to .gov domain registry policies, but the domain and content strongly indicate legitimacy. Privacy compliance is limited, with no visible privacy or cookie policies on the homepage. Overall, Congress.gov is a highly credible and authoritative government resource with strong content quality and technical implementation. Strategic improvements include publishing clear privacy and cookie policies, enhancing security headers, and establishing a vulnerability disclosure program to further strengthen trust and compliance.

55
35
17
70
65
80
100
governmentlegislationcongresslibraryeducation+1 more
JavaScriptjQueryBootstrapArcGIS JS API+2
2025-10-12T13:09:13.679Z
treasurydirect.gov favicon

U.S. Department of the Treasury

treasurydirect.gov

71
GovernmentUnited StatesenterpriseMEDIUM

TreasuryDirect.gov is the official U.S. Department of the Treasury website providing electronic services for purchasing, managing, and redeeming U.S. Savings Bonds and other Treasury securities. It serves a broad audience including the general public, financial professionals, and government entities. The platform is the sole official channel for these financial instruments, positioning it as a critical government financial service with a strong market presence. The website offers comprehensive information, tools, and auction data to support users in managing their investments securely and efficiently. Technically, the site employs a modern technology stack including jQuery, Bootstrap, Google reCAPTCHA, and Google Tag Manager, ensuring a responsive and accessible user experience. The site is well-optimized for mobile devices and includes accessibility features. Hosting appears to be managed by or for the U.S. government, ensuring reliability and compliance with government standards. From a security perspective, TreasuryDirect.gov demonstrates a strong posture with enforced HTTPS, use of security headers, and bot protection mechanisms. No vulnerabilities or exposed sensitive data were detected. However, there is room for improvement in publishing explicit security policies, vulnerability disclosure programs, and cookie consent mechanisms to enhance compliance and transparency. Overall, TreasuryDirect.gov is a highly trustworthy, professional, and secure government website that effectively serves its mission. Strategic enhancements in privacy compliance and security transparency would further strengthen its position and user trust.

70
53
2
70
100
85
100
governmentfinancetreasurysavingsbondsmarketablesecurities+1 more
jQueryBootstrapGoogle reCAPTCHAGoogle Tag Manager+2

Partner Domains:

fedinvest.fiscal.treasury.gov
partner
slgsafe.fiscal.treasury.gov
partner

+3 more partners

2025-10-12T13:09:03.656Z
allianzpartners.com favicon

Allianz Partners

allianzpartners.com

68
OtherUnited StatesenterpriseMEDIUM

Allianz Partners is a global leader in specialty insurance, focusing on travel, tuition, event ticket, bankcard, and assistance services. The website presents a professional and consistent brand image aligned with the parent company Allianz SE. The business model centers on providing insurance products and technology solutions to partners and their customers in the US market. The site is well-structured with comprehensive product information, customer testimonials, and corporate details, targeting insurance partners and end customers. Technically, the website is built on Adobe Experience Manager CMS with modern JavaScript frameworks and includes GDPR-compliant cookie consent mechanisms. The site is mobile-optimized and uses embedded media and social media integrations. Performance is moderate with room for improvement in accessibility and security headers. Security posture is adequate with HTTPS and cookie consent but lacks explicit security policies and incident response information. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data for the domain is a concern but may be due to proxy registration or subdomain usage. Overall, the site demonstrates a mature digital presence with good privacy compliance and business credibility. Strategic recommendations include enhancing security headers, publishing security and incident response policies, adding vulnerability disclosure mechanisms, and improving accessibility compliance to strengthen trust and security culture.

80
85
2
40
85
75
100
insurancetravelinsurancespecialtyinsuranceallianzpartnerscorporate+8 more
JavaScriptjQueryAdobe Experience Manager (AEM)OneTrust (cookie consent)+2

Partner Domains:

www.allianz.com
parent
www.allianztravelinsurance.com
related
2025-10-12T12:06:16.769Z
staedtetag-rlp.de favicon

Städtetag Rheinland-Pfalz

staedtetag-rlp.de

66
GovernmentGermanymediumMEDIUM

Städtetag Rheinland-Pfalz is a governmental association representing member cities in the German state of Rheinland-Pfalz. The website serves as an information hub for municipal topics such as finance, climate initiatives, digitalization, and events. It targets municipal officials, policymakers, and citizens interested in local governance. The business model is non-profit and focused on advocacy and information dissemination. Technically, the website is built on the ionas4 CMS platform, utilizing modern JavaScript frameworks including AngularJS and SystemJS, with jQuery also present. It is hosted on infrastructure linked to Deutsche Telekom, indicating reliable hosting. The site is mobile-optimized, accessible, and employs security best practices such as HTTPS, Subresource Integrity, and Google Invisible reCAPTCHA. Security posture is strong with proper SSL configuration and security headers. However, explicit security policies and incident response contacts are not published, which could be improved. Privacy compliance is good with clear privacy and cookie policies aligned with GDPR requirements. No vulnerability disclosure or security.txt files are found. Overall, the website is professional, trustworthy, and well-maintained, with no signs of malicious activity or content safety concerns. Strategic recommendations include publishing security policies, incident response information, and vulnerability disclosure details to enhance transparency and trust.

85
48
2
70
72
70
100
governmentmunicipalityrheinland-pfalzclimatedigitalization+2 more
JavaScriptSystemJSjQueryAngularJS (ng directives present)+1
2025-10-12T12:04:15.008Z
tucowsdomains.com favicon

Tucows Domains Inc.

tucowsdomains.com

59
TechnologyCanadalargeMEDIUM

Tucows Domains Inc. operates a professional website providing domain registration and support services, including domain provider search and WHOIS lookup functionalities. The company is a well-established entity in the domain registration industry, backed by the parent company Tucows Inc. and its subsidiaries such as OpenSRS, Enom, Ascio, Hover, and Exact Hosting. The website targets domain owners and internet users seeking domain-related assistance, positioning itself as a trusted and ICANN-accredited registrar service provider. Technically, the website is built on WordPress CMS with modern JavaScript libraries including React, Backbone.js, and jQuery. It employs SEO best practices with Yoast SEO plugin and integrates marketing and analytics tools such as HubSpot and Google Tag Manager. The site is mobile-optimized and provides a good user experience with clear navigation and professional design. From a security perspective, the website uses HTTPS and implements reCAPTCHA on forms to prevent abuse. However, DNSSEC is not enabled, and no explicit security headers were detected, indicating room for improvement in DNS and HTTP security hardening. Privacy compliance is partial, with a privacy policy present but lacking a cookie consent mechanism, which may affect GDPR compliance. No incident response or vulnerability disclosure policies are publicly available. Overall, the website demonstrates a solid business credibility and technical foundation with moderate security posture. Strategic improvements in DNS security, privacy compliance, and security policy transparency would enhance trust and resilience against threats.

55
50
2
60
42
80
100
domainregistrationwhoislookupdomainprovidericannaccreditedtucows
WordPressYoast SEOjQueryBackbone.js+5

Partner Domains:

opensrs.com
subsidiary
www.enom.com
subsidiary

+3 more partners

2025-10-12T12:03:04.854Z
K

Kansas Department Of Transportation

ksdot.gov

56
GovernmentUnited StateslargeMEDIUM

The Kansas Department of Transportation (KDOT) is a state government agency responsible for delivering comprehensive transportation services and infrastructure across Kansas. Their website serves as a central hub for residents, travelers, businesses, and partners to access information on road conditions, projects, safety programs, permits, and employment opportunities. The site emphasizes multi-modal transportation including aviation, rail, public transit, and bicycle/pedestrian infrastructure, reflecting a broad service scope. KDOT holds a strong market position as the authoritative transportation entity for the state, providing essential public services with a large operational scale. Technically, the website employs a modern technology stack including AngularJS, jQuery, and Slick Carousel, supported by a Vision CMS platform. It integrates Google Analytics and Akamai mPulse for performance monitoring and user analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, with clear navigation and professional design. However, some security headers are not explicitly present, and no cookie consent mechanism was detected, indicating areas for compliance improvement. From a security perspective, the site uses HTTPS and has implemented session timeout and XSS keyword filtering within its CMS. No critical vulnerabilities or exposed sensitive data were found. The WHOIS data is incomplete or unavailable, which is unusual for a .gov domain, but the official domain suffix and site content strongly support legitimacy. Overall, the security posture is solid but could benefit from enhanced header policies and published security policies. The overall risk assessment is low, with the site providing trustworthy, government-backed information and services. Strategic recommendations include implementing comprehensive security headers, adding explicit cookie consent for privacy compliance, publishing security and incident response policies, and maintaining regular audits of third-party libraries to mitigate vulnerabilities.

20
35
17
40
85
70
100
governmenttransportationpublicserviceskansasdot+2 more
AngularJSjQuerySlick CarouselGoogle Analytics (GA4)+2
2025-10-12T12:02:19.065Z
T

Tyler Technologies

tylertech.com

76
GovernmentUnited StatesenterpriseLOW

Tyler Technologies is an enterprise-level software and services provider specializing in public sector solutions tailored for government agencies and educational institutions. The company offers a broad portfolio including ERP, courts and public safety, health and human services, and transformative technologies such as cybersecurity and data insights. Recognized as a leader in the Gartner Magic Quadrant for Cloud-Based ERP for U.S. Local Government, Tyler Technologies holds a strong market position with a focus on delivering secure, efficient, and integrated software solutions to its target audience. The website infrastructure is built on a modern technology stack including DNN CMS, Bootstrap, jQuery, and integrates marketing and analytics tools like Marketo and Google Tag Manager. The site demonstrates good technical maturity with responsive design, SEO optimization, and moderate performance. Security best practices are observed with HTTPS enforcement, compliance certifications (CJIS, PCI, SOC, GDPR), and a dedicated security and compliance section. However, direct contact information is limited on the main site, and WHOIS data is unavailable, which slightly impacts trust. Overall, Tyler Technologies exhibits a strong security posture and business credibility with comprehensive compliance frameworks and client support mechanisms. The absence of WHOIS transparency is a minor concern but is mitigated by the company's established market presence and external trust signals. Strategic recommendations include enhancing contact transparency, publishing security.txt, and improving accessibility compliance to further strengthen trust and security culture.

55
65
55
85
77
90
100
publicsectorgovernmentsoftwareeducationsoftwarecybersecuritycompliance+2 more
jQueryjQuery UIBootstrapMarketo Munchkin+4

Partner Domains:

investors.tylertech.com
partner
2025-10-12T12:02:09.047Z
doctronic.de favicon

doctronic GmbH & Co. KG

doctronic.de

56
TechnologyGermanymediumMEDIUM

Doctronic GmbH & Co. KG is a well-established technology partner specializing in software development and digital solutions for specialized and scientific publishing houses. With 25 years of experience, the company offers tailored software, digitalization strategies, and user-friendly publishing platforms, positioning itself as a trusted B2B service provider in the German publishing technology sector. Their portfolio includes advanced services such as B2B access management, usage analytics, test automation, and AI integration, reflecting a modern and comprehensive approach to publishing technology solutions. Technically, the website is built on WordPress with a modern tech stack including jQuery, Matomo analytics, and various Gutenberg addons, hosted on SchlundTech infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, although some compliance gaps exist regarding privacy and cookie policies. Security posture is solid with HTTPS and no visible vulnerabilities, but could be improved by adding security headers and incident response information. Overall, the company demonstrates strong business credibility and technical maturity, with room for enhanced privacy compliance and security transparency.

-
28
17
55
95
70
100
technologypublishingsoftwaredigitalizationb2b+3 more
WordPress CMSPHPjQueryUltimate Addons for Gutenberg+6

Partner Domains:

xibrary.de
partner
kwaest.io
partner

+1 more partners

2025-10-12T12:01:54.011Z
visualstudio.com favicon

Microsoft Corporation

visualstudio.com

77
TechnologyUnited StatesenterpriseLOW

Visual Studio, hosted at visualstudio.microsoft.com, is a flagship product of Microsoft Corporation, a leading global technology enterprise. The website offers comprehensive developer tools including an Integrated Development Environment (IDE) and code editor, targeting software developers across platforms and languages. Microsoft’s market position as a dominant technology provider is reinforced by the professional presentation and extensive service offerings visible on the site. The business model centers on providing software development tools and cloud integration services to a broad developer audience worldwide. Technically, the website is built on WordPress with the Avada theme and leverages modern web technologies such as jQuery, New Relic for performance monitoring, Microsoft Clarity for user behavior analytics, and Adobe Target for marketing optimization. The site is hosted likely on Microsoft Azure infrastructure, ensuring robust performance, excellent mobile optimization, and good accessibility standards. SEO and metadata are well implemented, including Open Graph and JSON-LD structured data for enhanced search engine visibility. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes multiple security headers to protect against common web vulnerabilities. Privacy compliance is robust, featuring a clear privacy policy, cookie consent mechanisms, and GDPR adherence. However, explicit security policies, incident response information, and vulnerability disclosure mechanisms are not publicly evident, representing areas for improvement. Overall, the website reflects a mature, secure, and professional digital presence consistent with Microsoft’s reputation. The absence of WHOIS data for the subdomain is expected and does not detract from legitimacy. Strategic recommendations include publishing explicit security and incident response policies, adding vulnerability disclosure information, and enhancing direct security contact channels to further strengthen trust and compliance.

70
88
17
78
80
90
100
softwaredevelopmentidecodeeditormicrosoftvisualstudio+3 more
WordPressAvada ThemejQueryNew Relic+6
2025-10-12T12:01:08.908Z
verbrecherverlag.de favicon

Verbrecher Verlag

verbrecherverlag.de

44
RetailGermanysmallHIGH

Verbrecher Verlag is an independent German book publisher specializing in a broad range of literature, with a focus on belletristic and political works. The company operates an e-commerce platform powered by WordPress and WooCommerce, offering a variety of books and media products. Their market position is that of a niche independent publisher catering to readers interested in literature, politics, and culture. The website demonstrates consistent branding and good content quality, targeting a general audience interested in intellectual and cultural topics. Technically, the website is built on a modern WordPress stack with popular plugins and libraries such as WooCommerce, WPBakery Page Builder, Bootstrap, and Font Awesome. The site is mobile optimized and performs moderately well, though accessibility features are basic. Hosting is managed via domaincontrol.com DNS services. SEO practices are good with proper meta tags and structured data. From a security perspective, the site uses HTTPS and AJAX for secure transactions but lacks advanced security headers and explicit security policies. No privacy or cookie policies are found, indicating gaps in GDPR compliance. No incident response or vulnerability disclosure mechanisms are published. The site is free from WAF blocking or content restrictions, and no adult or NSFW content is present. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance, security policies, and clearer contact information to improve user trust and regulatory adherence.

15
33
17
40
90
60
20
publishingbookse-commerceliteraturepolitics+1 more
WordPress 6.8.3WooCommerce 7.3.0WPBakery Page BuilderjQuery+7
2025-10-12T10:58:44.326Z
connectingup.org favicon

Connecting Up | Powered by Infoxchange

connectingup.org

69
Non-profitN/amediumMEDIUM

Connecting Up, powered by Infoxchange, is a platform dedicated to providing donated and discounted technology to not-for-profit organizations. The website positions itself as an exclusive access point for non-profits to obtain software and technology from major providers such as Adobe, Microsoft, and Bitdefender. The business model focuses on supporting the non-profit sector by facilitating access to technology resources, enhancing their operational capabilities. The platform appears to be medium-sized and professionally branded, with consistent messaging and clear target audience focus. From a technical perspective, the website is built on Drupal CMS and utilizes modern front-end frameworks like Bootstrap. It integrates several analytics and marketing tools including Google Analytics, Facebook Pixel, Hotjar, and LinkedIn Insight Tag, indicating a moderate level of digital maturity and user tracking. The site is mobile optimized and demonstrates good SEO practices, though accessibility features are basic. Security-wise, the site enforces HTTPS and uses secure connections, but lacks visible security headers and explicit security policies such as incident response or vulnerability disclosure. No critical vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is limited, with no clear privacy or cookie policies found in the analyzed HTML content, which is a gap for GDPR and other regulations. Overall, the website is trustworthy and professional, serving a clear non-profit technology access purpose. Strategic improvements in privacy compliance, security headers, and incident response transparency would enhance its security posture and regulatory alignment.

80
53
17
65
72
90
100
non-profittechnologydiscountdonationsoftware+3 more
Drupal CMSBootstrap CSSjQueryFontAwesome+5
2025-10-12T10:57:59.117Z
info-jeunes.fr favicon

Info-Jeunes Auvergne-Rhône-Alpes

info-jeunes.fr

58
EducationFrancemediumMEDIUM

Info-Jeunes Auvergne-Rhône-Alpes operates a regional information portal targeting youth aged 13 to 30 in the Auvergne-Rhône-Alpes region of France. The website provides comprehensive information and advisory services on jobs, education, housing, health, transport, leisure, and international opportunities. It holds a solid market position as a trusted regional youth resource, supported by official branding and active social media channels. The business model focuses on providing free, accessible information and support to young people in the region. Technically, the website is built on WordPress using Elementor and Yoast SEO, with modern JavaScript libraries like jQuery and Matomo for analytics. The site is mobile-optimized, accessible, and SEO-friendly, with moderate performance. Hosting and domain registration are managed by reputable providers, ensuring stability. From a security perspective, the site enforces HTTPS, uses hCaptcha for form protection, and implements best practices for external links. However, it lacks visible security headers and does not publish privacy or cookie policies, which are critical for GDPR compliance. No vulnerability disclosures or incident response contacts are provided, indicating room for improvement in security transparency. Overall, the website is professional, trustworthy, and well-maintained but should enhance privacy compliance and security disclosures to meet modern standards and user expectations.

95
10
25
75
-
80
100
youthinformationeducationregionalservicesjoblistingshousing+3 more
WordPressElementorYoast SEOjQuery+2
2025-10-12T10:57:23.738Z
mousonturm.de favicon

Künstler*innenhaus Mousonturm

mousonturm.de

45
OtherGermanysmallHIGH

Künstler*innenhaus Mousonturm is a cultural institution based in Frankfurt am Main, Germany, specializing in theater, contemporary dance, music, and various performance arts. The website serves as an information portal for event schedules, projects, and visitor information, targeting a general audience interested in cultural and artistic events. The organization appears to be a small-sized local venue with a focus on community engagement and artistic expression. Technically, the website employs standard web technologies including HTML5, CSS3, JavaScript, jQuery, and LazySizes for image optimization. It uses Matomo analytics for user tracking, indicating a preference for privacy-conscious analytics solutions. The site is hosted on servers indicated by the nameservers your-server.de and second-ns.de, suggesting a dedicated or managed hosting environment. The website is mobile-optimized and accessible, with good SEO practices evident from meta tags and structured navigation. From a security perspective, the site uses HTTPS, but lacks visible security headers and explicit privacy or cookie policies, which are important for GDPR compliance and user trust. No forms or data collection mechanisms were detected on the main page, reducing immediate risk exposure. The WHOIS data is limited, with generic nameservers and no detailed registrant information, which slightly reduces trust but is not uncommon for cultural institutions. No WAF or blocking mechanisms were detected, and no vulnerabilities or exposed sensitive data were found. Overall, the website is professionally designed and functional, but could improve its privacy compliance and security posture by adding clear policies, security headers, and incident response contacts. These improvements would enhance user trust and regulatory compliance.

20
10
2
70
100
60
20
theatercultureartsfrankfurtperformance+2 more
HTML5CSS3JavaScriptjQuery+2
2025-10-12T10:57:03.682Z
greenstory.ca favicon

Green Story

greenstory.ca

54
ManufacturingCanadamediumMEDIUM

Green Story is a medium-sized company specializing in providing instant environmental footprint calculations and sustainability data solutions for fashion brands and suppliers. Their platform offers digital product passports, impact management, and compliance tools designed to help clients meet regulatory requirements and enhance transparency in their supply chains. The company is positioned as a leader in sustainability data services within the fashion industry, serving a global clientele with a strong emphasis on accuracy and traceability. Technically, the website is built on the Webflow CMS platform, leveraging modern JavaScript libraries and Google Tag Manager for analytics. The site demonstrates excellent design quality, mobile optimization, and SEO practices, contributing to a fast and accessible user experience. However, there is room for improvement in implementing security headers and explicit cookie consent mechanisms to enhance privacy compliance. From a security perspective, the site uses HTTPS and avoids exposing sensitive data, but lacks visible security policies or incident response information. The absence of WHOIS data due to privacy protection limits domain registration trust verification, though this is common and justified for this business type. Overall, the security posture is good but could be strengthened with additional best practices. The overall risk assessment indicates a professional and trustworthy online presence with minor compliance gaps. Strategic recommendations include enhancing security headers, publishing security and incident response policies, implementing cookie consent, and maintaining regular audits of third-party scripts to ensure ongoing security and privacy compliance.

30
53
17
70
-
80
100
sustainabilityfashionenvironmentalfootprintdigitalproductpassportlca+3 more
Google Tag ManagerWebflow CMSJavaScriptjQuery+1
2025-10-12T10:55:48.445Z
oneskyapp.com favicon

Onesky technology Pte. Ltd.

oneskyapp.com

50
TechnologySingaporemediumMEDIUM

OneSky is a professional localization platform specializing in human translation services for web, mobile apps, and games. The company targets developers and businesses seeking to capture global markets through high-quality, context-aware translations. The website demonstrates a solid market position with notable clients such as Airbnb, Microsoft, and Shopify, indicating strong industry trust and relevance. The business model revolves around a SaaS platform combined with professional translation services, catering primarily to technology sector clients. Technically, the website is built on WordPress and leverages a modern tech stack including jQuery, Bootstrap, and multiple analytics and marketing tools such as Google Analytics, Heap, Facebook Pixel, and HubSpot. The site is mobile-optimized with good SEO practices and moderate performance. However, accessibility features are basic and could be improved. The site uses HTTPS with excellent SSL configuration but lacks explicit security headers, which is a recommended enhancement. From a security perspective, the site shows good practices such as HTTPS enforcement and no visible sensitive data exposure. However, the absence of security headers and lack of incident response or vulnerability disclosure information represent areas for improvement. The WHOIS data is missing or unavailable, which raises transparency concerns but does not necessarily indicate malicious intent given the professional site presentation and active domain status. Overall, the website is professional, trustworthy, and well-positioned in its market niche. The main risks relate to WHOIS transparency and some security best practices gaps. Strategic recommendations include improving WHOIS data transparency, implementing security headers, publishing incident response contacts, and enhancing accessibility compliance to strengthen trust and security posture.

15
68
2
65
-
70
100
localizationtranslationprofessionaltranslationapplocalizationgamelocalization+2 more
jQueryBootstrapGoogle Tag ManagerHeap Analytics+5
2025-10-12T10:55:43.436Z
thewpminute.com favicon

The WP Minute

thewpminute.com

56
TechnologyN/asmallMEDIUM

The WP Minute is a specialized content platform serving WordPress professionals through a community news podcast and newsletter. Founded in 2021, it provides educational tutorials, industry news, and podcasts targeting freelancers, agencies, and developers within the WordPress ecosystem. The business operates a membership model offering subscriptions to its newsletter and podcast content, positioning itself as a niche authority in the WordPress community space. Technically, the website is built on WordPress 6.8.3 using the Kadence theme and several plugins including Kadence Blocks, LifterLMS, and Advanced Ads. Hosting appears to be on AWS infrastructure, with DNS managed via AWS Route 53. The site employs HTTPS with a valid SSL certificate and uses modern web technologies such as jQuery and MediaElement.js. Performance is moderate with good mobile optimization and basic accessibility features. SEO is supported by structured data and proper meta tags. From a security perspective, the site uses HTTPS and has domain transfer protections enabled. However, DNSSEC is not enabled and no security headers were detected in the provided data, which are areas for improvement. There is no visible privacy policy, cookie policy, or terms of service on the homepage content, which impacts privacy compliance. No incident response or security contact information is provided. Analytics are handled via Fathom Analytics, indicating minimal user tracking. Overall, the website presents a professional and trustworthy front for its niche audience but would benefit from enhanced privacy compliance, security headers, and explicit contact information to improve trust and security posture. Strategic recommendations include enabling DNSSEC, adding comprehensive privacy and cookie policies with consent mechanisms, implementing security headers, and publishing security and incident response policies.

35
35
2
75
52
75
100
wordpresspodcastnewslettertechnologycommunity+3 more
WordPress 6.8.3Kadence ThemeKadence BlocksLifterLMS+4
2025-10-12T10:53:53.136Z
irs.gov favicon

Internal Revenue Service

irs.gov

70
GovernmentUnited StatesenterpriseMEDIUM

The Internal Revenue Service (IRS) website serves as the official digital platform for the U.S. federal tax authority, providing comprehensive resources for tax filing, payment, refunds, and taxpayer assistance. It targets a broad audience including individuals, businesses, nonprofits, and tax professionals. The site is well-branded, consistent, and offers extensive content relevant to its mission. Technically, the site is built on Drupal 10, leveraging modern web technologies and standard analytics tools such as Google Analytics and Google Tag Manager. The website demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate likely due to the complexity and volume of content. From a security perspective, the site enforces HTTPS and employs secure form practices. However, explicit security headers are not evident in the HTML content, and no vulnerability disclosure or incident response contacts are published. The WHOIS data is minimal, typical for .gov domains, but this limits domain registration transparency. Overall, the IRS website is a high-quality, trustworthy government resource with strong business credibility and content quality. Strategic improvements include enhancing privacy compliance with cookie consent mechanisms, publishing security policies and incident response contacts, and implementing additional security headers to strengthen the security posture.

55
58
17
70
95
80
100
governmenttaxirsfederalforms+3 more
Drupal 10Google Tag ManagerGoogle AnalyticsAddToAny sharing+1

Partner Domains:

home.treasury.gov
partner
treasury.gov
partner

+3 more partners

2025-10-12T10:53:03.040Z
govmind.de favicon

GovMind GmbH

govmind.de

60
GovernmentGermanysmallMEDIUM

GovMind GmbH operates a specialized SaaS platform focused on digital and innovative procurement solutions for the public sector in Germany. Their platform supports public procurement offices and departments in preparing tenders and market research, offering modules such as a requirements assistant, a database of innovative products, and sustainability checks. The company targets public authorities, municipalities, and related organizations, providing cloud-based licenses with tiered pricing. The website is professionally designed, well-branded, and includes comprehensive legal and privacy information, reflecting a mature digital presence. Technically, the website is built on WordPress with modern plugins including Yoast SEO, Slider Revolution, and Contact Form 7 enhanced with drag-and-drop file upload and date-time pickers. It uses Google reCAPTCHA v3 for bot protection and cookie consent management via a third-party tool. Hosting is provided by rzone.de, a professional German hosting provider. The site is mobile-optimized and SEO-friendly, with structured data and Open Graph metadata implemented. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms. However, it lacks explicit security headers and a published security policy or incident response contact. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is strong, with clear cookie consent and privacy policies aligned with GDPR. The WHOIS data is minimal but consistent with the business claims, showing no suspicious patterns. Overall, GovMind GmbH presents a trustworthy, professional, and secure online presence suitable for its public sector clientele. Strategic improvements include enhancing HTTP security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and compliance.

15
80
17
45
67
70
100
governmentprocurementsaaspublicsectordigitalinnovation+3 more
WordPress 6.8.3PHP (implied by WordPress)jQuerySlider Revolution+5
2025-10-12T10:52:37.995Z