Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 42 of 251|Showing 2051-2100 of 12548
paddle.be favicon

Paddle

paddle.be

45
GovernmentBelgiummediumHIGH

Paddle is a well-established CMS platform provider founded in 2003, specializing in flexible and secure content management solutions primarily for governments, public sector organizations, hospitals, and non-profits. The company offers its CMS as both Platform-as-a-Service and Software-as-a-Service, with a strong emphasis on accessibility, security, and ease of use. Their market position is supported by a significant user base and numerous modules and integrations, reflecting a mature and scalable product offering. The website content is professionally crafted, multilingual, and includes customer testimonials and support options, enhancing trust and credibility. Technically, the website leverages Drupal CMS and integrates multiple modern analytics and marketing tools such as Google Analytics, Matomo, Hotjar, and Facebook Pixel, all implemented with asynchronous loading and consent mechanisms to respect user privacy. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some security headers are not explicitly detected. The SSL configuration is good, ensuring secure communications. From a security perspective, the site enforces HTTPS and implements cookie consent, but lacks publicly visible security policies, incident response contacts, or vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms a consistent and legitimate domain registration dating back to 2003, reinforcing the trustworthiness of the business. Overall, Paddle's website reflects a professional, secure, and privacy-conscious digital presence suitable for its target sectors. Strategic improvements could include publishing explicit security policies, incident response contacts, and vulnerability disclosure information to further enhance security posture and compliance.

55
43
2
72
-
65
40
cmsdrupalgovernmentnon-profitprivacy+3 more
Drupal CMSGoogle Tag ManagerGoogle Analytics (gtag.js)Facebook Pixel+4
2025-10-25T09:31:24.750Z
D

DISCO S WAVE, INC.

disco.ac

65
MediaN/amediumMEDIUM

DISCO S WAVE, INC. operates the website disco.ac, providing an all-in-one music management platform designed to help artists, rights holders, brands, and music supervisors organize, share, and discover music tracks efficiently. The company positions itself as a trusted SaaS provider in the media industry with a strong customer base and a focus on simplifying music catalog management and collaboration. The platform leverages AI-powered discovery tools and offers mobile applications on iOS and Android, reflecting a modern and accessible digital infrastructure. Technically, the website is built using modern frameworks such as React and Next.js, hosted likely on Cloudflare infrastructure, and integrates various analytics and marketing tools including Google Tag Manager, TikTok Pixel, Facebook Pixel, and Intercom for customer engagement. The site demonstrates excellent performance, mobile optimization, and SEO practices, contributing to a high-quality user experience. From a security perspective, the site enforces HTTPS, implements key security headers, and provides a cookie consent mechanism aligned with GDPR compliance. However, it lacks publicly available security policies, incident response details, and vulnerability disclosure information, which are areas for improvement. The WHOIS data is not publicly available, indicating privacy protection, which is common for commercial SaaS businesses but slightly reduces transparency. Overall, the website presents a professional, trustworthy, and well-structured digital presence with moderate risk due to limited public registrant information and absence of explicit security disclosures. Strategic enhancements in transparency and security communication would further strengthen trust and compliance.

30
68
2
85
75
80
100
musicmanagementsaasmediamusicindustryplatform+3 more
ReactNext.jsCloudflare StreamIntercom+3
2025-10-25T09:11:47.152Z
mav.hu favicon

MÁV-csoport

mav.hu

54
TransportationHungaryenterpriseMEDIUM

MÁV-csoport is the Hungarian state-owned railway group providing comprehensive passenger and freight rail services, infrastructure management, and related support functions. The website serves as a central portal for travel information, ticketing, service updates, and corporate information, targeting general public users and business partners. The company holds a leading market position in Hungary's transportation sector with multiple subsidiaries under its umbrella. Technically, the website is built on Drupal CMS with modern web technologies including jQuery and responsive design elements. It integrates Google Analytics and Facebook Pixel for analytics and marketing purposes, with a clear cookie consent mechanism ensuring GDPR compliance. The site demonstrates good mobile optimization, accessibility, and SEO practices. From a security perspective, the site enforces HTTPS and uses anonymized IP tracking in analytics. However, it lacks some advanced security headers and does not publicly disclose a security policy or incident response contacts. No vulnerabilities or suspicious activities were detected in the content or scripts. Overall, the website is professional, trustworthy, and compliant with privacy regulations, supporting the business's credibility. Strategic improvements in security headers and transparency around security policies could further enhance its posture.

15
10
17
70
47
90
100
transportationrailwaypublictransporthungarymv+3 more
Drupal CMSjQueryGoogle AnalyticsFacebook Pixel+2

Partner Domains:

startklub.mav-start.hu
partner
karrier.mavcsoport.hu
service

+3 more partners

2025-10-25T09:08:47.380Z
heyflow.id favicon

Heyflow

heyflow.id

59
TechnologyIndonesiamediumMEDIUM

Heyflow is a technology company providing a SaaS platform for building interactive, no-code forms designed to increase user engagement and conversion rates. The platform offers drag & drop design, conditional logic, and seamless integrations with popular CRMs and analytics tools, positioning itself as a flexible and user-friendly solution for marketers and businesses. The website is professionally designed with consistent branding and clear messaging targeting business users seeking enhanced lead generation tools. Technically, the site leverages modern JavaScript frameworks, asynchronous script loading, and integrates with major analytics and marketing platforms such as Google Analytics, Google Tag Manager, and Facebook Pixel. Hosting and DNS are managed via Cloudflare, ensuring good performance and security. Security posture is solid with HTTPS enforced and domain transfer protections, though additional security headers and a formal security policy could enhance trust. Privacy compliance is addressed with a cookie consent mechanism and links to privacy and imprint pages, indicating GDPR awareness. No direct contact emails or phone numbers are provided on the site, which may impact user trust slightly. Overall, the site is secure, performant, and business credible with room for improvement in explicit security disclosures and contact transparency.

15
73
2
60
72
70
100
interactiveformsformbuilderno-codemarketingleadgeneration+3 more
JavaScriptGoogle AnalyticsGoogle Tag ManagerFacebook Pixel+3
2025-10-25T09:07:21.969Z
embedprivatevideo.com favicon

Embed Private YouTube Video

embedprivatevideo.com

49
TechnologyN/asmallHIGH

Embed Private YouTube Video is a small technology-focused business founded in 2017 that provides a specialized service and WordPress plugin enabling website owners to securely embed private YouTube videos. The company targets website owners and businesses requiring private video sharing solutions, positioning itself as a niche provider in this space. The website content is well-structured, professional, and consistent with the business model, offering clear service descriptions and customer testimonials that enhance trust. Technically, the website is built on WordPress and leverages common web technologies including jQuery, YouTube iframe API, and Google Fonts. The site is hosted under a domain registered with GoDaddy.com, LLC, with a stable registration status and no privacy protection, indicating transparency. Performance and mobile optimization are good, though accessibility is basic. SEO practices are adequately implemented with proper metadata and structured data. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks DNSSEC and security headers such as Content-Security-Policy or Strict-Transport-Security. There is no visible security policy or incident response information, and no cookie consent mechanism is present, which may impact privacy compliance. The use of Facebook Pixel indicates moderate user tracking. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a moderate risk profile with room for improvement in security best practices and privacy compliance. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent, and publishing security and incident response policies to enhance trust and compliance.

15
53
2
85
67
75
20
privatevideoyoutubeembedwordpresspluginvideoprivacyvideosharing
YouTube iframe APIjQueryWordPressPHP+2
2025-10-25T08:49:06.353Z
azionequaresimale.ch favicon

Azione Quaresimale

azionequaresimale.ch

52
Non-profitSwitzerlandmediumMEDIUM

Azione Quaresimale is a Swiss non-profit organization dedicated to fighting hunger and poverty worldwide through long-term development projects primarily in Africa, Asia, and Latin America. The website serves as a comprehensive platform for information dissemination, fundraising, and donor engagement, featuring multilingual support and detailed project descriptions. The organization holds recognized certifications such as Zewo, enhancing its credibility and trustworthiness. Technically, the website is built on a modern WordPress CMS with WooCommerce for donation processing, multilingual capabilities via WPML, and advanced SEO optimization through Yoast SEO Premium. It integrates Google Maps for project visualization and employs Google Tag Manager and Facebook Pixel for analytics and marketing. The site demonstrates good mobile optimization, accessibility, and performance. From a security perspective, the site enforces HTTPS, uses reCAPTCHA for form protection, and avoids exposing sensitive data. While some security headers are not explicitly detected, the overall posture is strong with recommendations to enhance header implementation and incident response visibility. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR. Overall, the website presents a professional, trustworthy, and secure digital presence for Azione Quaresimale, supporting its mission effectively while maintaining compliance and user trust.

15
70
25
70
72
80
-
non-profitcharitydevelopmentdonationhungerrelief+2 more
WordPress 6.8.2WooCommerce 10.0.4WPML (multilingual)WP Google Maps Pro+5

Partner Domains:

fastenaktion.ch
partner
actiondecareme.ch
partner
2025-10-25T08:04:16.115Z
vocalvideo.com favicon

Privacy service provided by Withheld for Privacy ehf

vocalvideo.com

9
TechnologyIcelandsmallCRITICAL

Vocal Video is a technology company offering a SaaS platform focused on remote video testimonial collection, editing, and hosting. The platform leverages AI and automation to provide intuitive video editing and motion graphics, targeting businesses and professionals who want to collect video reviews from customers, employees, and experts. The company positions itself as the leading remote video testimonial platform with a free signup option, indicating a growth-oriented business model. Technically, the website is built using the Framer CMS and integrates multiple marketing and analytics tools such as Google Tag Manager, Facebook Pixel, LinkedIn Insight Tag, and Bing Ads. Hosting and DNS services are provided via Cloudflare, but DNSSEC is not enabled, and security headers are missing, indicating room for security improvements. The website is accessible without WAF or blocking mechanisms, but lacks visible privacy, cookie, and terms of service policies, which impacts privacy compliance scores. The domain is privacy protected but has a legitimate registration history dating back to 2016, consistent with a mature SaaS business. Overall, the website demonstrates good design quality, user experience, and business credibility but requires enhancements in security best practices and privacy compliance documentation.

-
-
-
-
-
-
-
videotestimonialsremotevideosaasaivideoeditingcustomerreviews+1 more
JavaScriptGoogle Tag ManagerFacebook PixelBing Ads+2
2025-10-25T08:03:35.970Z
4bowl.de favicon

Logo-Solution GmbH

4bowl.de

53
HospitalityGermanymediumMEDIUM

4bowl is a German-based SaaS provider specializing in online reservation and booking systems tailored for bowling centers and leisure facilities. The company, operated by Logo-Solution GmbH, offers a comprehensive platform that enables professional management of bookings and staff, accessible via multiple devices including PC, Mac, tablets, and smartphones. With over 200 centers relying on their system, 4bowl holds a strong market position in the hospitality and leisure sector in Germany and surrounding countries. The website is well-branded, professionally designed, and provides clear information about its services and customer base. Technically, the website employs modern web technologies such as Bootstrap, jQuery, and integrates multiple marketing and analytics tools including Google Analytics, Facebook Pixel, and Tawk.to live chat. Hosting and DNS services are managed via Cloudflare, ensuring robust infrastructure and performance. The site is mobile-optimized and SEO-friendly, though accessibility features could be improved. From a security perspective, the site enforces HTTPS with strong SSL configuration and uses Cloudflare for DNS and CDN services. It implements a cookie consent banner and maintains GDPR compliance with a privacy policy. However, it lacks visible security headers, an incident response policy, and a vulnerability disclosure mechanism, which are areas for improvement. No critical vulnerabilities or exposed sensitive data were detected. Overall, 4bowl presents a trustworthy and professional online presence with a solid technical foundation and good privacy practices. Strategic enhancements in security policies and compliance documentation would further strengthen its security posture and business credibility.

20
40
2
50
65
65
100
reservationbookingbowlingleisuresports+5 more
jQueryBootstrapFont AwesomeGoogle Analytics+5

Partner Domains:

hilfe.4bowl.de
partner
logo-solution.de
parent
2025-10-25T07:01:34.563Z
nadaciapontis.sk favicon

Nadácia Pontis

nadaciapontis.sk

59
Non-profitSlovakiamediumMEDIUM

Nadácia Pontis is a Slovak non-profit foundation dedicated to fostering positive changes through social innovation, philanthropy, and responsible business practices. The organization connects companies, organizations, and individuals to promote social impact initiatives. The website reflects a medium-sized, established non-profit entity with a clear mission and a professional online presence. The target audience includes firms, organizations, and individuals interested in social responsibility and innovation. The foundation offers services such as events, seminars, volunteer programs, and internships to engage its community. Technically, the website is built on WordPress 6.7.1 and leverages modern tools including Google Tag Manager, Google Analytics, Facebook Pixel, and various WordPress plugins for multilingual support, forms, and social media integration. The site is hosted with CDN support (Cloudfront) and uses HTTPS with strong SSL configuration. Performance and mobile optimization are good, though accessibility features are basic. SEO is well implemented with proper meta tags and structured data. From a security perspective, the site enforces HTTPS and uses reCAPTCHA for forms, indicating good baseline security practices. However, explicit security headers are missing, and there is no published security policy or incident response information. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a cookie consent mechanism present but no visible privacy policy or terms of service pages. Overall, the website is trustworthy and professional, with extensive user tracking and marketing tools. The absence of explicit privacy and security policies is a gap that should be addressed to enhance compliance and user trust. The domain registration data aligns well with the organization's identity, supporting legitimacy. Strategic recommendations include adding privacy and security policies, implementing security headers, and publishing vulnerability disclosure information.

20
40
17
75
75
65
100
non-profitphilanthropysocialinnovationresponsiblebusinessslovakia+3 more
WordPress 6.7.1Google Tag ManagerGoogle AnalyticsFacebook Pixel+6
2025-10-25T06:00:59.001Z
burgenland.info favicon

Burgenland Tourismus GmbH

burgenland.info

47
HospitalityAustriamediumHIGH

Burgenland.info is the official tourism website for the Burgenland region in Austria, providing comprehensive travel information, cultural highlights, and leisure activities. The site targets tourists and visitors seeking detailed guidance on visiting Burgenland, positioning itself as a trusted regional tourism authority. The business model focuses on tourism promotion and visitor engagement through digital content and event information. Technically, the website is built on the TYPO3 CMS platform, leveraging modern web technologies including JavaScript, CSS, and HTML5. It integrates multiple marketing and analytics tools such as Cookiebot for consent management, Facebook Pixel for advertising, Google Tag Manager, and Matomo for analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms aligned with GDPR requirements. However, explicit security headers and incident response information are not evident, suggesting room for improvement in security posture transparency. No critical vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, the website presents a professional, trustworthy, and privacy-compliant digital presence for Burgenland tourism. The lack of WHOIS data limits domain registration insights, but the official nature and content quality support legitimacy. Strategic recommendations include enhancing security headers, publishing a security policy, and adding a vulnerability disclosure channel to strengthen trust and security readiness.

80
60
-
40
2
15
95
tourismtravelaustriaburgenlandofficial+4 more
JavaScriptCSSHTMLTYPO3 CMS+4
2025-10-25T05:28:43.441Z
virginmoney.com.au favicon

Virgin Money Australia

virginmoney.com.au

71
FinanceAustralialargeMEDIUM

Virgin Money Australia is a prominent financial services provider offering a wide range of products including everyday banking accounts, credit cards, home loans, superannuation, and various insurance products. The website reflects a mature digital presence with a focus on customer rewards and comprehensive financial solutions tailored for the Australian market. The brand is well established with consistent navigation and professional design, targeting retail consumers and businesses in Australia. Technically, the site leverages Adobe Experience Manager as its CMS, integrates multiple analytics and marketing tools such as Google Tag Manager, Amplitude, Adobe Analytics, Hotjar, Facebook Pixel, and LinkedIn Insight Tag, indicating a sophisticated approach to user tracking and marketing optimization. Hosting is supported by Akamai CDN infrastructure, enhancing performance and availability. Security posture is solid with HTTPS enforced and no visible sensitive data exposure; however, the absence of DNSSEC and some security headers suggests room for improvement. Privacy compliance is moderate due to missing explicit privacy and cookie policies in the provided content. Overall, the website is professional, trustworthy, and well-positioned in the Australian financial services sector.

90
53
17
85
70
70
100
bankingfinanceinsurancesuperannuationcreditcards+2 more
Google Tag ManagerAmplitude AnalyticsAdobe Experience Manager (AEM)Adobe Dynamic Tag Management+4

Partner Domains:

youraccountonline.com
partner
clearinghouse.virginmoneysuper.com.au
partner

+2 more partners

2025-10-25T04:10:27.040Z
deepbluewatches.com favicon

Deep Blue Watches

deepbluewatches.com

61
RetailN/asmallMEDIUM

Deep Blue Watches operates an e-commerce website specializing in dive watches and related accessories, targeting professional divers, military personnel, and watch enthusiasts. The company claims to have been established since 2007, positioning itself as a niche market leader with a focus on precision and durability. The website offers a range of products, customer service options, watch registration, and financing, supported by active social media channels. Technically, the site uses a modern tech stack including Bootstrap, jQuery, and various tracking and marketing tools, hosted likely on Turbify with Cloudflare services. The site is mobile optimized and provides a good user experience with clear navigation and professional design. Security posture is strong with HTTPS, CAPTCHA protections, and secure checkout domains, though some security headers and policies are missing. Privacy compliance is basic with a privacy policy present but no cookie consent mechanism. The WHOIS data is missing, raising concerns about domain legitimacy and consistency with the claimed business history. Overall, the site is functional and trustworthy from a user perspective but would benefit from improved transparency and security documentation.

15
53
17
90
77
60
100
divewatchesscubadivingautomaticwatchestritiumtubesprofessionaldivers+3 more
Bootstrap 3.3.7jQuery 3.2.1Slick Carousel 1.6.0Font Awesome 4.7.0+9

Partner Domains:

order.store.turbify.net
partner
truelightdesigns.com
partner
2025-10-25T03:58:04.981Z
fact.co.uk favicon

FACT

fact.co.uk

66
MediaUnited KingdommediumMEDIUM

FACT Liverpool is a prominent UK-based non-profit organization dedicated to the support and exhibition of art, film, and new media. It operates a multi-functional venue featuring galleries, a cinema, a café, and event spaces, positioning itself as a leading cultural institution in Liverpool and the UK. The organization offers a diverse range of services including exhibitions, film screenings, artist residencies, educational programs, and venue hire, targeting a broad audience interested in contemporary art and digital culture. Technically, the website demonstrates a mature digital infrastructure utilizing modern analytics tools such as Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and Inspectlet, alongside asynchronous script loading for performance optimization. The site is built on a CMS platform likely powered by SEOmatic and Craft CMS, with good mobile optimization, accessibility, and SEO practices. The presence of cookie consent management and comprehensive privacy policies indicates a strong commitment to privacy compliance. From a security perspective, the site enforces HTTPS and employs standard best practices, though it lacks explicit security headers and a published security policy or incident response contact. No vulnerabilities or exposed sensitive data were detected in the analysis. The WHOIS data is unavailable due to domain naming rules errors, but other trust indicators such as charity registration numbers and consistent branding support the legitimacy of the domain. Overall, FACT Liverpool presents a professional, secure, and privacy-conscious online presence aligned with its cultural mission. Strategic improvements in security headers and incident response transparency would further enhance its security posture and trustworthiness.

60
83
2
70
62
65
100
artfilmgalleryexhibitionsevents+5 more
Google AnalyticsFacebook PixelLinkedIn Insight TagYouTube embeds+4

Partner Domains:

fact.kitsune.co.uk
partner
www.artscouncil.org.uk
partner
2025-10-25T03:16:14.203Z