Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 37 of 101|Showing 1801-1850 of 5032
quantummetric.com favicon

Quantum Metric

quantummetric.com

66
TechnologyN/aenterpriseMEDIUM

Quantum Metric operates as a leading enterprise digital analytics platform specializing in real-time data capture, AI-driven insights, and customer experience optimization. Positioned as a strong performer in the 2025 Forrester Wave for Digital Analytics, the company offers a comprehensive suite of services including session replay, segment building, performance monitoring, and opportunity analysis. Their platform targets product, technology, marketing, analytics, and CX teams within large enterprises, helping them improve digital strategies and increase conversions. Technically, the website is built on modern frameworks such as Next.js and React, leveraging advanced analytics and tracking technologies including proprietary Quantum Metric instrumentation, Rampmetrics, LinkedIn Insight, and Google Tag Manager. The site is well optimized for performance, mobile responsiveness, and accessibility, with a professional design and clear navigation structure. From a security perspective, the site enforces HTTPS, employs multiple security headers, and integrates cookie consent mechanisms aligned with GDPR compliance. However, the absence of publicly available WHOIS data and lack of explicit incident response or vulnerability disclosure policies slightly reduce the overall trustworthiness. No critical vulnerabilities or exposed sensitive data were detected. Overall, Quantum Metric presents a mature, professional digital presence with strong business credibility and technical sophistication. Strategic improvements in transparency around domain registration and security incident handling would further enhance trust and compliance posture.

30
58
17
80
69
90
100
digitalanalyticsaireal-timeanalyticssessionreplaycustomerexperience+3 more
Next.jsReactFont Awesome 6Video streaming+7

Partner Domains:

continuousproductdesign.com
partner
thequad.quantummetric.com
partner
2025-10-09T19:58:33.733Z
theathletic.com favicon

The Athletic

theathletic.com

78
MediaUnited StateslargeLOW

The Athletic is a premium sports news and analysis platform owned by The New York Times, offering comprehensive coverage across multiple sports leagues and teams. It targets sports enthusiasts seeking in-depth stories, scores, schedules, and podcasts through a subscription-based model. The website demonstrates a high level of professionalism, consistent branding, and excellent content quality, positioning it strongly in the media industry. Technically, the site leverages modern web technologies including React and Next.js, with integrations for analytics and consent management such as Google Tag Manager, Chartbeat, Datadog RUM, and Transcend. The site is optimized for performance, mobile responsiveness, and accessibility, providing a fast and user-friendly experience. From a security perspective, the site enforces HTTPS, employs multiple security headers, and shows no signs of exposed sensitive data or vulnerabilities. Privacy compliance is robust with clear privacy and cookie policies, GDPR adherence, and visible contact information. However, there is room to improve by publishing a vulnerability disclosure policy and enhancing incident response contact visibility. Overall, the website presents a low-risk profile with strong trust indicators and a mature digital presence. The lack of WHOIS data is likely due to privacy protections common for high-profile domains and does not detract from the site's legitimacy.

75
85
17
85
82
90
100
sportsnewsmediasubscriptionanalysis+2 more
ReactNext.jsGoogle Tag ManagerChartbeat+3

Partner Domains:

theathletic.zendesk.com
service
2025-10-09T18:55:34.008Z
saleor.cloud favicon

Saleor Commerce, Inc.

saleor.cloud

76
E-commerceUnited StatesmediumLOW

Saleor Commerce, Inc. operates a leading open source, headless e-commerce platform designed for modern software development teams. The platform emphasizes composable commerce with a GraphQL-first API, enabling businesses to build flexible and scalable commerce solutions. Saleor targets developers and enterprises seeking customizable and extensible e-commerce backends, supported by a strong open source community and trusted by global brands such as Lush and Breitling. The company was founded in 2018 and is headquartered in the United States. Technically, the website leverages modern web technologies including React and Next.js, with a cloud hosting infrastructure likely on AWS. The platform supports both cloud and self-hosted deployments, with a focus on performance, mobile optimization, and accessibility. The site demonstrates good SEO practices and integrates marketing and analytics tools such as HubSpot and Google Tag Manager, with appropriate cookie consent mechanisms. From a security perspective, the site enforces HTTPS and employs domain transfer protections. However, DNSSEC is not enabled, and explicit security policies or incident response contacts are not publicly disclosed. No vulnerabilities or exposed sensitive data were detected in the analysis. The domain registration details are consistent with the business claims, enhancing trustworthiness. Overall, Saleor presents a professional, secure, and privacy-conscious digital presence with a strong emphasis on developer experience and open source collaboration. Strategic recommendations include enabling DNSSEC, publishing formal security and incident response policies, and adding a security.txt file to facilitate vulnerability disclosures.

85
83
25
70
72
85
100
ecommerceheadlessgraphqlopen-sourcecomposable-commerce+3 more
ReactNext.jsGraphQLDocker+1

Partner Domains:

mirumee.com
partner
2025-10-09T17:41:37.796Z
claraandco.co.uk favicon

Clara and Co

claraandco.co.uk

58
RetailN/asmallMEDIUM

Clara and Co is a small retail e-commerce business specializing in luxury women's fashion, emphasizing timeless elegance and contemporary style. The website presents a curated collection aimed at women who appreciate sophisticated and classic fashion. The business model is focused on online retail with features such as newsletter subscriptions and social media engagement, although direct contact details are limited to a contact form. The market position is niche, targeting customers seeking quality and timeless fashion pieces. Technically, the website is built using modern web technologies including Next.js and React, indicating a contemporary and scalable infrastructure. The site is mobile-optimized with good design quality and clear navigation, although some accessibility features could be improved. Performance is moderate, with no major issues detected in the HTML content. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the site uses HTTPS but lacks visible security headers and explicit security policies. There is no cookie consent mechanism, which may impact GDPR compliance. No vulnerabilities or exposed sensitive data were detected in the content. The WHOIS lookup failed due to domain naming rule violations, which raises concerns about domain registration legitimacy but does not necessarily reflect on the website's operational security. Overall, the website is professional and functional with moderate trustworthiness. Strategic improvements in security headers, privacy compliance, and clearer business contact information would enhance the security posture and user trust. The domain registration inconsistency should be investigated to ensure full legitimacy and compliance.

30
53
2
70
72
70
100
luxuryfashionwomenswearecommerceretail
Next.jsReactJavaScriptCSS
2025-10-09T16:38:49.663Z
F

Fröjd Interactive

frojd.se

55
TechnologySwedenmediumMEDIUM

Fröjd Interactive is a Swedish digital agency specializing in creating sustainable digital solutions that engage and convert. The company offers services including UX design, web development, analysis, optimization, content creation, and SEO. Positioned as a medium-sized agency with a stable growth trajectory, Fröjd serves business clients seeking comprehensive digital transformation and marketing solutions. The website indicates a professional brand with consistent messaging and a clear target audience of businesses requiring digital agency expertise. Technically, the site is built on modern frameworks such as React and Next.js, with integrations for analytics and cookie consent management. However, a client-side application error currently affects the main page, impacting user experience and indicating a need for technical remediation. Security posture is moderate, with cookie consent implemented but lacking visible security headers and explicit SSL configuration details. The WHOIS data for the domain www.frojd.se is missing or not found, which raises concerns about domain registration consistency, although the website content and business information appear legitimate. Overall, the site demonstrates good business credibility and privacy compliance but requires technical and security improvements to enhance trust and performance.

15
83
2
80
72
85
40
digitalagencywebdevelopmentuxdesignseocookieconsent+1 more
ReactNext.jsGoogle Tag ManagerCookieTractor+2

Partner Domains:

eidra.se
parent
2025-10-09T16:30:07.100Z
brandembassy.com favicon

NiCE

brandembassy.com

70
TechnologyN/aenterpriseMEDIUM

NiCE is an enterprise technology company specializing in AI-driven customer service automation solutions aimed at enhancing customer experience and operational efficiency. The company positions itself as a leader in AI customer service automation, targeting businesses seeking to transform their customer interactions through advanced technology. The website reflects a mature digital presence with a professional design, comprehensive content, and strong branding consistency. The technical infrastructure leverages modern frameworks such as Next.js and React, integrated with advanced analytics and marketing tools including Google Tag Manager, Visual Website Optimizer, and Marketo. The site demonstrates excellent performance, mobile optimization, and accessibility features. Security posture is strong with HTTPS enforcement and multiple security headers, though explicit public security policies and incident response contacts are not found. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. WHOIS data is unavailable or privacy protected, which slightly impacts trust but is common for enterprise domains. Overall, the website and business presence indicate a legitimate, professional, and secure enterprise with room for enhanced transparency in security disclosures.

20
73
17
85
95
85
100
aicustomerserviceautomationtechnologyenterprise+4 more
Next.jsReactGoogle Tag ManagerVisual Website Optimizer (VWO)+2
2025-10-09T16:29:46.689Z
hackmd.io favicon

HackMD

hackmd.io

75
TechnologyTaiwanmediumMEDIUM

HackMD is a collaborative Markdown editor platform founded in 2015 and based in Taiwan. It offers real-time document editing and sharing capabilities targeted at teams, developers, researchers, educators, and communities. The platform supports integrations such as GitHub and provides features like templates, book mode, and UML graph visualization, positioning itself as a versatile tool for knowledge sharing and collaboration. The business model is primarily freemium SaaS with paid tiers for teams and enterprises, serving a global user base including notable organizations like the Ethereum Foundation. Technically, HackMD employs modern web technologies including React and Next.js, hosted on AWS infrastructure. The website demonstrates excellent performance, mobile optimization, and SEO practices. Security is robust with HTTPS enforcement, CSRF protections, and domain transfer restrictions, although DNSSEC is not enabled. Privacy and terms policies are comprehensive and GDPR compliant, with active use of analytics tools such as Google Tag Manager and Plausible Analytics. Security posture is strong with no detected vulnerabilities or exposed sensitive data. However, explicit incident response contacts and vulnerability disclosure mechanisms are not publicly evident, representing an area for improvement. The WHOIS data is transparent and consistent with the business identity, supporting legitimacy and trustworthiness. Overall, HackMD presents a professional, secure, and user-friendly platform with a strong market position in collaborative documentation tools. Strategic recommendations include enabling DNSSEC, publishing explicit security headers, and establishing clear incident response and vulnerability disclosure channels to further enhance security and trust.

60
68
17
80
100
85
100
collaborationmarkdownreal-timeeditortechnologydocumentation+3 more
ReactNext.jsJavaScriptWebAssembly (possible for UML rendering)+1
2025-10-09T14:14:27.921Z
mneplay.me favicon

Domains By Proxy, LLC (registrar privacy proxy)

mneplay.me

51
MediaUnited StatesmediumMEDIUM

MNE Play is a digital OTT streaming platform primarily serving the Montenegrin public media service RTCG and local broadcasters. It offers live TV and radio streaming, video on demand, and catch-up services accessible globally via internet and dedicated apps on multiple platforms including Android, iOS, smart TVs, and streaming devices. The platform is positioned as the official digital extension of RTCG, targeting general audiences interested in Montenegrin media content. Technically, the website is built on modern web technologies including Next.js and React, leveraging CDN-hosted media assets and optimized image formats like WebP. The platform supports a wide range of devices and operating systems, indicating a mature digital infrastructure. Performance is moderate with good mobile optimization and SEO practices, though accessibility features are basic. From a security perspective, the site uses HTTPS with a good SSL configuration and domain registration protections such as clientDeleteProhibited status. However, DNSSEC is not enabled and security headers are absent, which are areas for improvement. Privacy compliance is partially met with a comprehensive privacy policy and terms of service, but lacks a cookie consent mechanism. Contact information is limited to an email address for OTT support. Overall, MNE Play presents a professional and trustworthy media streaming service with solid business credibility and technical foundation. Strategic enhancements in security headers, DNS security, and privacy consent mechanisms would strengthen its security posture and compliance. The platform is safe for general audiences and does not contain adult or explicit content.

15
58
2
60
77
75
40
mediastreamingottpublicbroadcastermontenegro+3 more
Next.jsReactJavaScriptCSS+3
2025-10-09T11:50:05.119Z
brighttalk.com favicon

BrightTALK

brighttalk.com

74
TechnologyN/alargeMEDIUM

BrightTALK is a prominent online platform specializing in B2B professional education through webinars, virtual summits, and episodic video series. The website targets business professionals and companies seeking to stay current with industry knowledge and training. BrightTALK positions itself as a leading provider in the technology sector, offering free and paid content from world-class experts and innovators. The platform boasts millions of registered users and thousands of companies leveraging its services for marketing and education. Technically, the website is built using modern frameworks such as React and Next.js, with integration of Google Tag Manager and privacy management tools to handle user consent and tracking. The site demonstrates good mobile optimization and SEO practices, although some accessibility features could be enhanced. Performance is moderate, with a well-structured content delivery system. From a security perspective, the site enforces HTTPS and employs privacy management scripts, but lacks explicit security headers and visible incident response or vulnerability disclosure policies. No sensitive data exposure or vulnerable libraries were detected in the provided content. Privacy compliance is basic, with no clear privacy or cookie policies found in the HTML snapshot, which is a notable gap. Overall, the site presents a professional and trustworthy front with high-quality content and a solid technical foundation. However, the absence of WHOIS data and privacy documentation slightly reduces trustworthiness. Strategic improvements in privacy transparency and security headers would enhance the security posture and compliance standing.

80
75
35
100
70
70
82
b2bwebinarsvirtualeventsprofessionaleducationtechnology+1 more
ReactNext.jsGoogle Tag ManagerGoogle Publisher Tags (GPT)+2
2025-10-09T10:43:41.457Z
rdstation.com favicon

RD Station

rdstation.com

64
TechnologyBrazillargeMEDIUM

RD Station is a leading Brazilian SaaS company specializing in marketing automation, CRM, and sales enablement software. Their platform offers a comprehensive suite of tools designed to help businesses automate marketing campaigns, manage sales pipelines, and enhance customer engagement. The website reflects a mature digital presence with extensive product information, integrations, and educational resources, positioning RD Station as a market leader in Latin America. Technically, the website leverages modern web technologies including React and Next.js, served via AWS Cloudfront CDN, ensuring fast performance and excellent mobile optimization. SEO and accessibility practices are well implemented, contributing to a professional user experience. Security posture is strong with HTTPS enforced and appropriate security headers, though explicit security policies and incident response details are not publicly disclosed. Overall, the site demonstrates a robust security and privacy compliance framework with GDPR-aligned privacy and cookie policies. However, the absence of public WHOIS data and direct contact information slightly reduces transparency. The domain's legitimacy is supported by the professional quality and breadth of services offered, though WHOIS data unavailability warrants cautious monitoring. Strategic recommendations include publishing detailed security policies, establishing a vulnerability disclosure program, and providing clear security contact channels to enhance trust and compliance. Continued focus on transparency and security culture will support RD Station's strong market position and customer confidence.

85
85
53
100
17
15
75
marketingcrmsalesautomationsaas+2 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

exact-sales.com
partner
shopify.com
partner

+3 more partners

2025-10-09T10:38:54.099Z
dexerto.com favicon

Dexerto

dexerto.com

68
MediaN/alargeMEDIUM

Dexerto is a well-established online media platform specializing in gaming culture, influencer entertainment, TV, and movies. It offers award-winning news, guides, features, and expert reviews targeting gaming enthusiasts, esports fans, and entertainment consumers. The website demonstrates a strong market position within the media industry niche, leveraging a content-rich and professionally designed platform to engage its audience. Technically, the site is built on modern web technologies including Next.js and React, ensuring fast performance and excellent mobile optimization. It integrates standard advertising and tracking services such as Google DoubleClick and OneSignal for push notifications, while maintaining good SEO and accessibility standards. The presence of structured data (JSON-LD) enhances search engine visibility and content discoverability. From a security perspective, the website enforces HTTPS and implements multiple security headers, reflecting a mature security posture. However, the absence of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms indicates areas for improvement. The lack of WHOIS registration data reduces transparency but does not detract significantly from the site's legitimacy based on content and technical indicators. Overall, Dexerto presents a low-risk profile with strong content quality and technical implementation. Strategic recommendations include publishing detailed security and incident response policies, improving transparency with contact information, and addressing the missing WHOIS data to enhance trustworthiness.

85
85
35
100
2
80
75
gamingesportsentertainmenttvmovies+5 more
Next.jsReactJavaScriptGoogle Publisher Tags (GPT)+1
2025-10-09T10:22:59.874Z
zitadel.ch favicon

CAOS Ltd.

zitadel.ch

72
TechnologySwitzerlandmediumMEDIUM

ZITADEL, operated by CAOS Ltd., is a modern identity infrastructure platform designed to simplify identity management for developers and enterprises. The company offers a multi-tenant, API-first platform that supports authentication, authorization, passwordless login, and role-based access control. Positioned as a bridge between open source and enterprise solutions, ZITADEL targets developers and businesses seeking secure and extensible identity management solutions. The platform is well-regarded in the developer community, evidenced by a strong GitHub presence and active community engagement on Discord and social media. Technically, the website is built using modern frameworks such as Next.js and React, hosted on Vercel, and integrates analytics tools like PostHog and HubSpot for marketing and user engagement. The site is fast, mobile-optimized, and accessible, with comprehensive documentation and developer resources. Security best practices are observed, including HTTPS enforcement, multi-factor authentication, and audit trails, although DNSSEC is not enabled, representing a minor security gap. From a security posture perspective, ZITADEL demonstrates maturity with ISO 27001 certification and GDPR compliance. The website includes clear privacy and cookie policies with consent mechanisms. However, there is no publicly visible security.txt or explicit incident response contact information, which could be improved. The WHOIS data is consistent with the business identity, showing no privacy protection and domain registration dating back to 2017, appropriate for the company's founding in 2020. Overall, ZITADEL presents a professional, trustworthy, and technically sound platform with strong compliance and security foundations. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing transparency around incident response to further strengthen trust and security posture.

90
65
17
60
72
85
100
identitymanagementauthenticationauthorizationopensourcemulti-tenant+4 more
ReactNext.jsGo (backend implied from SDK examples)gRPC+4
2025-10-09T09:18:11.570Z
aditude.io favicon

Aditude Inc.

aditude.io

67
TechnologyN/amediumMEDIUM

Aditude Inc. is a technology company specializing in ad operations technology for digital publishers. Their platform offers a suite of cloud-based solutions designed to maximize programmatic ad revenue through transparent, publisher-first technology and hands-on support. The company positions itself as an innovator in the ad tech space, with proprietary tools such as Cloud Wrapper, Insights, Exec, Serve, and Prebid Server, targeting publishers and advertisers seeking to optimize monetization. The website reflects a mature digital presence with modern infrastructure, including Next.js and Prismic CMS, hosted on Vercel, and integrated with marketing and analytics tools like HubSpot and Google Analytics. From a technical perspective, the website is well-optimized for performance, mobile responsiveness, and SEO, employing best practices in web development and security. Security posture is strong with HTTPS enforced and appropriate security headers, though there is room for improvement in privacy compliance, particularly regarding cookie consent mechanisms and publishing explicit security policies. The security evaluation reveals no critical vulnerabilities or exposed sensitive data, but the absence of a public WHOIS record and lack of incident response information slightly reduce trust scores. Overall, the site is professional, trustworthy, and business-focused, with clear contact channels and comprehensive privacy and terms policies. Strategically, Aditude should enhance its privacy compliance by implementing cookie consent banners and publishing security and incident response policies. Adding a vulnerability disclosure program or security.txt file and providing data protection officer contact details would further strengthen trust and compliance. These steps will improve the company's security posture and align with regulatory requirements, supporting its market position as a reliable ad tech provider.

45
53
17
60
95
80
100
adtechprogrammaticadvertisingpublishersmonetizationtechnology+1 more
ReactNext.jsPrismic CMSHubSpot forms+3

Partner Domains:

now.gg
partner
poshmark.com
partner

+3 more partners

2025-10-09T09:13:55.345Z
aircall.io favicon

Aircall

aircall.io

73
TechnologyFrancelargeMEDIUM

Aircall is a leading cloud-based business phone system and unified communications platform founded in 2014 in Paris, France, with a significant presence in New York, USA. Serving over 20,000 customers worldwide, Aircall offers AI-powered communication tools including AI Voice Agent and AI Assist Pro, integrated with CRM and helpdesk systems. The company targets SMBs and enterprise clients, positioning itself as a market leader in cloud telephony and call center software with a strong emphasis on AI-driven productivity and omnichannel messaging. Technically, Aircall employs a modern technology stack including React and Next.js, hosted on AWS and Vercel, with a CMS powered by Storyblok. The website is well-optimized for SEO, mobile-friendly, and incorporates advanced analytics and cookie consent mechanisms. Structured data is extensively used to enhance search engine understanding and social media integration. From a security perspective, Aircall demonstrates strong practices with HTTPS enforcement, security headers, and domain transfer protections. However, DNSSEC is not enabled, and no explicit incident response or vulnerability disclosure policies were found. The domain registration details are consistent with the company's public information, indicating legitimacy and trustworthiness. Overall, Aircall presents a professional, secure, and compliant digital presence with comprehensive business information and a strong market position. Strategic recommendations include enabling DNSSEC, publishing incident response contacts, and establishing a vulnerability disclosure policy to further enhance security posture and trust.

30
95
29
82
72
85
100
cloudtelephonycallcentersoftwareaicommunicationscrmintegrationsunifiedcommunications+1 more
ReactNext.jsLottie animationsGoogle Tag Manager+2
2025-10-09T08:10:38.774Z
braze.eu favicon

Braze

braze.eu

65
TechnologyUnited StatesenterpriseMEDIUM

Braze is a leading customer engagement platform that enables brands to deliver personalized, AI-powered, cross-channel messaging and journey orchestration. Positioned as a market leader, Braze leverages advanced AI technologies including predictive, generative, and agentic intelligence to optimize customer interactions at scale. The platform targets enterprise-level brands and marketers seeking to unify data and automate customer engagement with high precision. Technically, Braze employs a modern web stack with Next.js and React, integrates Google Tag Manager for analytics, and uses OneTrust for cookie consent management. The website is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. Security best practices are observed with HTTPS, security headers, and no visible vulnerabilities, although explicit incident response and vulnerability disclosure information are not publicly detailed. The security posture is strong with comprehensive privacy and cookie policies indicating GDPR compliance. The absence of WHOIS transparency slightly reduces trust but is mitigated by the company's strong industry presence, certifications, and customer testimonials. Overall, Braze presents a professional, trustworthy, and technically sound online presence suitable for enterprise clients. Strategic recommendations include publishing a dedicated vulnerability disclosure policy, enhancing incident response transparency, and maintaining continuous compliance updates to reinforce trust and security culture.

35
65
17
85
42
85
100
customerengagementaimarketingautomationcross-channelmessagingbrazeai+3 more
ReactNext.jsGoogle Tag ManagerOneTrust Cookie Consent+3

Partner Domains:

partners.braze.com
partner
investors.braze.com
related

+1 more partners

2025-10-09T08:05:17.413Z