Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

151329
Websites
130
Industries
113
Countries
52
Avg Score
Page 379 of 633|Showing 18901-18950 of 31634
crimejusticelab.org favicon

Center on Crime and Community Resilience

crimejusticelab.org

50
GovernmentUnited StatessmallMEDIUM

The Center on Crime and Community Resilience is an academic research lab based at the University of Pennsylvania's Department of Criminology. It focuses on partnering with governments and non-profit organizations to develop research-based solutions aimed at preventing crime and improving the justice system. The lab emphasizes community-responsive policy development and maintains long-term partnerships to ensure sustained impact. The website reflects a professional and consistent brand image, targeting government agencies, non-profits, and academic stakeholders. Technically, the website is built on WordPress with Bootstrap for responsive design, enhanced by modern libraries such as FontAwesome and AOS for animations. Hosting is provided by DigitalOcean, and SEO is managed via the Yoast plugin. Google Analytics and Google Tag Manager are used for user tracking, though no explicit cookie consent mechanism is present. The site performs moderately well with good mobile optimization and accessibility features. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, it lacks DNSSEC and important security headers, and does not provide visible security policies or incident response contacts. No vulnerability disclosure or data protection officer information is found. The WHOIS data is consistent with the website's academic nature, showing a legitimate registration without privacy protection. Overall, the website is trustworthy and professionally maintained but could improve its security posture and privacy compliance by adding cookie consent, security headers, and explicit policies. These enhancements would strengthen user trust and regulatory compliance.

15
53
10
60
72
70
40
crimejusticepolicyresearchnon-profit+2 more
WordPressBootstrapGoogle AnalyticsFontAwesome+2
2025-07-28T02:37:29.150Z
baltimorecity.gov favicon

City of Baltimore

baltimorecity.gov

69
GovernmentUnited StateslargeMEDIUM

The City of Baltimore's official website serves as a comprehensive digital portal for residents, businesses, and visitors, providing access to government services, news, events, and resources. It positions itself as the authoritative source for municipal information and public engagement in Baltimore, Maryland. The site leverages a mature technical infrastructure based on Drupal 7 CMS, enhanced with modern web technologies such as Google Analytics, Google Tag Manager, and reCAPTCHA for security. The design is professional and consistent with government branding, offering good user experience and mobile optimization. From a security perspective, the website enforces HTTPS and employs CAPTCHA on its contact forms, demonstrating a commitment to secure user interactions. However, the absence of key security headers and a cookie consent mechanism indicates areas for improvement in compliance and defense-in-depth strategies. The lack of publicly available WHOIS data reduces transparency but does not detract significantly from the site's legitimacy given its .gov domain and official content. Overall, the website is a reliable and trustworthy government resource with solid technical foundations and good content quality. Strategic enhancements in security headers, privacy compliance, and WHOIS transparency would further strengthen its security posture and user trust.

55
53
17
85
85
80
100
governmentpublicservicesbaltimorecityofficial+5 more
Drupal 7jQuery 1.7Google AnalyticsGoogle Tag Manager+4

Partner Domains:

pay.baltimorecity.gov
service
mayor.baltimorecity.gov
related

+3 more partners

2025-07-28T02:37:24.111Z
wypr.org favicon

WYPR

wypr.org

64
MediaUnited StatesmediumMEDIUM

WYPR is a well-established public radio station serving the Baltimore metropolitan area and surrounding Maryland regions. The organization operates a comprehensive media platform including radio broadcasts, podcasts, news coverage, and community events. Their market position is that of a regional public media leader with a focus on local news and cultural programming. The website reflects a mature digital presence with consistent branding and a user-friendly interface targeting the general public and local community members. The business model relies on membership, donations, and underwriting support typical of public media entities. Technically, the website employs a modern tech stack including Brightspot CMS, Cloudflare DNS, and integrates multiple analytics and advertising services such as Google Analytics, Chartbeat, and Facebook SDK. The site is mobile optimized and demonstrates good SEO and accessibility practices, though performance is moderate. Security posture is solid with HTTPS enforced and clientTransferProhibited domain status, but could be improved by enabling DNSSEC and adding additional security headers. No WAF or blocking mechanisms were detected, allowing full content access. Security-wise, the site shows good practices but lacks published security policies or incident response information. Privacy compliance is partial; a privacy policy is present and comprehensive, but no explicit cookie consent mechanism or GDPR compliance indicators were found. The domain WHOIS data is consistent and supports the legitimacy of the organization, with a long registration history dating back to 2001. Overall, WYPR's website is professional, trustworthy, and serves its audience effectively. Strategic recommendations include enhancing DNS security with DNSSEC, implementing a cookie consent mechanism to improve privacy compliance, publishing security and incident response policies, and adding security headers to strengthen defenses against web threats.

30
53
17
85
65
80
100
publicradionewspodcastsmediabaltimore+1 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsFacebook SDK+3

Partner Domains:

baltimorepublicmedia.org
parent
donate.nprstations.org
partner
2025-07-28T02:37:19.089Z
bkmag.com favicon

Brooklyn Magazine

bkmag.com

59
MediaN/amediumMEDIUM

Brooklyn Magazine operates as a local online media publication dedicated to covering Brooklyn's news, arts, entertainment, food, and events. The website targets residents and visitors interested in Brooklyn culture, providing curated content such as event guides, restaurant reviews, and local news. The business model relies on advertising and subscription revenue, positioning itself as a niche media outlet within the local market. The site is built on WordPress and integrates modern web technologies including Firebase, Google Tag Manager, and Google Analytics, reflecting a moderate level of digital maturity. The presence of Yoast SEO indicates attention to search engine optimization and structured data usage enhances content discoverability. From a security perspective, the website enforces HTTPS and employs some best practices such as lazy loading scripts with CSP fallback. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not detected, and no cookie consent mechanism is present, indicating partial compliance with privacy regulations such as GDPR. The absence of WHOIS registration data raises concerns about domain legitimacy and transparency, although the website content and branding appear professional and trustworthy. Overall, the site demonstrates a solid security posture with room for improvement in privacy compliance and domain registration transparency. The overall risk assessment suggests a moderate risk profile primarily due to missing WHOIS data and privacy compliance gaps. Strategic recommendations include implementing explicit security headers, adding cookie consent mechanisms, enhancing accessibility, and conducting regular security audits of third-party scripts. These measures will strengthen the site's security posture, improve user trust, and ensure regulatory compliance.

15
53
17
75
72
65
100
localnewsbrooklynmediaartsfood+2 more
WordPressjQueryFirebaseGoogle Tag Manager+5
2025-07-28T01:30:06.759Z
frontofficesports.com favicon

Front Office Sports

frontofficesports.com

61
MediaUnited StatesmediumMEDIUM

Front Office Sports is a well-established media company specializing in the business of sports. Founded in 2006, it has positioned itself as a leading multi-platform news organization serving sports business professionals and enthusiasts. The website offers a rich mix of news articles, events, newsletters, podcasts, and subscription content, targeting a niche but influential audience. Its market position is strong within the sports media sector, supported by consistent branding and professional content delivery. Technically, the website is built on WordPress and integrates a variety of modern analytics and advertising technologies including Google Analytics, Facebook Pixel, TikTok Pixel, and several ad networks. The site demonstrates good SEO practices, mobile optimization, and a moderate performance profile. However, there is room for improvement in security practices such as enabling DNSSEC and publishing explicit security policies. From a security perspective, the site uses HTTPS and standard form protections but lacks some advanced security headers and a public vulnerability disclosure policy. Privacy compliance is addressed with visible privacy and cookie policies indicating GDPR adherence. Contact information is primarily via web forms, with no direct emails or phone numbers publicly listed. Overall, Front Office Sports presents a professional and trustworthy online presence with a solid business model and technical foundation. Strategic improvements in security transparency and DNS security would further enhance its risk posture and trustworthiness.

15
70
17
82
52
70
100
sportsbusinessmedianewssportsbusiness+3 more
WordPressGravity FormsGoogle AnalyticsGoogle Tag Manager+7

Partner Domains:

events.frontofficesports.com
service
shop.frontofficesports.com
service

+3 more partners

2025-07-28T01:29:26.530Z
aaronson.org favicon

Adam Aaronson

aaronson.org

54
TechnologyUnited StatessmallMEDIUM

Aaronson.org is a personal portfolio website for Adam Aaronson, a software engineer based in New York City. The site showcases his interests and work in software, music, crossword puzzles, and blogging. The website is well-structured, professionally designed, and targets a general audience interested in Adam's projects and content. The business model is personal branding and content sharing, with no commercial transactions evident. The domain is long-standing and privacy-protected, consistent with a personal site. Technically, the site is built using Jekyll, a static site generator, and employs modern web technologies including HTML5, CSS3, and JavaScript. It integrates Google Analytics and Google Tag Manager for visitor tracking. Hosting appears to be via GoDaddy based on WHOIS data. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Performance is moderate with no critical technical issues detected. From a security perspective, the site uses HTTPS but lacks advanced security headers and DNSSEC is not enabled. No forms or sensitive data inputs are present, reducing attack surface. Privacy compliance is weak due to absence of privacy and cookie policies. The domain uses privacy protection services, which is appropriate for a personal site. No vulnerabilities or suspicious indicators were found. Overall, the website is a safe, professional personal portfolio with good content quality and technical implementation. Security posture and privacy compliance can be improved by adding policies and security headers. The risk level is low, but enhancing security and privacy transparency would strengthen trust and compliance.

15
35
2
70
72
60
100
personalportfoliosoftwareengineermusiccrosswordsblog
Google AnalyticsGoogle Tag ManagerJekyllHTML5+2
2025-07-28T01:28:31.169Z
instantdb.com favicon

Instant

instantdb.com

62
TechnologyN/asmallMEDIUM

Instant is a technology company offering a modern, client-side real-time database platform designed to simplify backend development for frontend developers. Positioned as a modern alternative to Firebase, Instant provides features such as authentication, permissions, storage, transactions, and offline support through a simple SDK. The company is backed by Y Combinator and features testimonials from notable industry leaders, enhancing its market credibility. The website is professionally designed, mobile-optimized, and provides clear navigation and relevant content targeted at software engineers and app builders. Technically, the site leverages modern web technologies including React and Next.js, with integrations such as Mux Player for media and Google Analytics for tracking. The site loads quickly and is well-optimized for SEO and accessibility. However, explicit security headers are not detected, and there is no cookie consent mechanism, which are areas for improvement. The domain WHOIS data is missing or unavailable, which raises some concerns about domain legitimacy, although the business presence and backing mitigate this risk. From a security perspective, the site enforces HTTPS and does not expose sensitive data or vulnerable libraries. The absence of a published security policy, incident response information, and vulnerability disclosure program suggests room for maturity in security governance. Privacy compliance is basic, with a privacy policy present but no explicit GDPR compliance indicators or cookie consent. Overall, Instant presents a strong business and technical profile with some gaps in security and privacy compliance. The domain registration inconsistency warrants further verification. Strategic recommendations include enhancing security headers, implementing cookie consent, publishing security policies, and improving privacy compliance to strengthen trust and regulatory adherence.

30
58
17
60
72
80
100
real-timedatabasefrontendbackendfirebasealternativeclient-sidedatabasereactsdk+1 more
ReactNext.jsJavaScriptMux Player+2
2025-07-28T00:25:35.535Z
W

Wallkit, Inc.

wallkit.net

46
MediaUnited StatessmallHIGH

Wallkit, Inc. operates a sophisticated SaaS platform designed to empower modern media companies with AI-driven paywalls, memberships, and audience monetization tools. The company positions itself as a next-generation solution provider, targeting publishers and content creators seeking to optimize revenue streams through predictive and flexible subscription management. Their platform integrates seamlessly with major CRM and marketing tools, enhancing data-driven decision-making and user engagement. Technically, Wallkit leverages a modern technology stack including Google Analytics, Firebase, Stripe payments, and various JavaScript libraries, optimized primarily for WordPress but adaptable to other CMS platforms. The website demonstrates good performance, mobile responsiveness, and SEO optimization, reflecting a mature digital presence. Security measures include HTTPS enforcement, GDPR and CCPA compliance, and integration of Google reCAPTCHA to protect user data and forms. From a security perspective, Wallkit shows a strong posture with secure payment processing and data protection practices. However, the absence of a publicly available dedicated security policy and incident response information suggests areas for improvement in transparency and readiness. No critical vulnerabilities or suspicious activities were detected, indicating a trustworthy operational environment. Overall, Wallkit presents a credible, professional, and secure platform with a clear business focus and strong market positioning. Strategic enhancements in security documentation and incident response communication would further solidify trust and compliance.

15
65
17
70
-
70
40
mediapaywallmembershipaisubscription+3 more
Google AnalyticsGoogle Tag ManagerGoogle reCAPTCHAStripe Payments+5

Partner Domains:

stripe.com
partner
hubspot.com
partner

+3 more partners

2025-07-28T00:21:27.214Z
G

Goddard Media LLC

politicalwire.com

62
MediaUnited StatessmallMEDIUM

Political Wire is a well-established political news and analysis website founded in 1999 by Taegan Goddard and operated by Goddard Media LLC. It serves a niche audience interested in political developments, offering both free content and paid memberships that provide exclusive analysis, podcasts, and newsletters. The website maintains a consistent brand presence and is recognized by notable media figures, enhancing its credibility in the political media space. Technically, the site is built on WordPress with a modern tech stack including Cloudflare DNS, Memberful for membership management, and Mediavine for advertising. It employs common web technologies such as jQuery and Google Fonts, and integrates analytics and comment systems like Google Analytics and Disqus. The site is mobile optimized with good SEO practices, though accessibility features are basic. Security posture is solid with HTTPS enforced and domain transfer protections, but could be improved by enabling DNSSEC and adding security headers. Privacy compliance is basic, with a privacy policy present but no visible cookie consent mechanism despite tracking scripts. Contact information is limited to a contact form with no direct emails or phone numbers publicly listed. Overall, the website is professional, trustworthy, and serves its target audience effectively, though there is room for improvement in security and privacy transparency.

30
58
17
70
65
75
100
politicsnewsanalysissubscriptionmedia+2 more
WordPressjQueryGoogle FontsCloudflare DNS+5

Partner Domains:

politicsextra.com
partner
politicaljobhunt.com
partner

+3 more partners

2025-07-28T00:19:00.906Z
expatmortgageplatform.nl favicon

Expat Mortgage Platform (EMP)

expatmortgageplatform.nl

47
Real EstateNetherlandssmallHIGH

Expat Mortgage Platform (EMP) is a specialized mortgage advisory service targeting expatriates in the Netherlands. The company offers independent, professional mortgage advice and brokerage services, helping expats find the best Dutch mortgage products to finance their homes. With over 30 years of experience and recognition such as the Romeo 2025 award for best office for first-time buyers, EMP holds a strong market position within the real estate finance sector in the Netherlands. Their business model focuses on personalized advisory services, mortgage calculation tools, and appointment scheduling to facilitate the home buying process for expats. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, Google Tag Manager, Google Analytics, Facebook Pixel, and various plugins for forms, GDPR compliance, and social media integration. The site demonstrates good mobile optimization, accessibility, and SEO practices, supported by a hosting provider 'mijn.host'. The website performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and uses reCAPTCHA on contact forms to mitigate spam. Cookie consent is managed via the Complianz GDPR plugin, indicating good privacy compliance. However, there is no evidence of published security policies, incident response plans, or vulnerability disclosure mechanisms. DNSSEC is not enabled, and security headers are not explicitly detected, suggesting opportunities for enhancing security posture. Overall, the website is professional, trustworthy, and compliant with GDPR requirements. The domain registration data aligns with the business claims, and no suspicious patterns are detected. Strategic recommendations include enabling DNSSEC, implementing additional security headers, publishing security and incident response policies, and considering a vulnerability disclosure program to further strengthen trust and security.

15
85
2
70
42
60
20
mortgageexpatnetherlandsrealestatefinance+3 more
WordPressYoast SEOGoogle Tag ManagerGoogle Analytics+6
2025-07-27T23:16:28.483Z
ik-skinperfection.nl favicon

IK SKIN PERFECTION

ik-skinperfection.nl

73
RetailNetherlandsmediumMEDIUM

IK Skin Perfection is a Netherlands-based e-commerce retailer specializing in natural, vegan, and microplastic-free skincare products. The website serves as the official platform for the brand, offering a range of skin improvement products, daily skincare routines, and professional salon treatments. The company targets consumers seeking effective, natural skincare solutions and provides additional services such as online skin checks and professional advice. The site demonstrates a consistent brand presence and good content quality tailored to its audience. Technically, the website is built on the Magento 2 platform, leveraging modern JavaScript libraries and multiple third-party extensions for enhanced user experience, marketing, and analytics. The site employs Google Analytics, Microsoft Clarity, and Visual Website Optimizer for user behavior tracking and optimization. The technical implementation is solid with responsive design, good SEO practices, and moderate performance. From a security perspective, the site enforces HTTPS, uses security headers, and integrates Google reCAPTCHA on login forms. However, it lacks explicit published security policies, incident response information, and vulnerability disclosure mechanisms. Cookie consent is implemented, but privacy policy and terms of service pages are not clearly found, indicating room for improvement in privacy compliance. Overall, the website is professional, trustworthy, and safe for general audiences. The absence of critical security issues and the presence of trust indicators such as customer reviews support a positive risk profile. Strategic recommendations include publishing comprehensive privacy and security policies, enhancing accessibility, and formalizing vulnerability disclosure to strengthen compliance and trust.

65
95
2
85
72
85
100
naturalskincaree-commercebeautyhealthskincareproducts+2 more
MagentoRequireJSjQueryGoogle Tag Manager+6
2025-07-27T23:14:07.588Z