Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 44 of 166|Showing 2151-2200 of 8294
nasiukrajinci.cz favicon

Ministry of Interior

nasiukrajinci.cz

66
GovernmentCzech RepublicmediumMEDIUM

The website nasiukrajinci.cz is an official Czech government platform managed by the Ministry of Interior, providing comprehensive information and resources to support Ukrainian refugees in the Czech Republic. It offers multilingual content covering legal stay, financial aid, healthcare, education, employment, and additional assistance. The site also targets Czech citizens and organizations willing to help Ukrainians, positioning itself as a central information hub in this humanitarian context. The business model is public service oriented, with no commercial intent, focusing on accessibility and clarity. Technically, the website is built on modern web technologies including React and Next.js, hosted on Azure DNS infrastructure. It integrates Google Tag Manager for analytics and employs a cookie consent mechanism compliant with GDPR. The site demonstrates good mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure suitable for government services. From a security perspective, the site uses HTTPS and implements cookie consent but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data aligns with the official nature of the site, showing consistent registration and domain age appropriate for the service's launch in 2022. Overall, the website is trustworthy, professionally maintained, and fulfills its mission effectively. Strategic recommendations include enhancing security headers, publishing a security policy, and providing clearer contact information for incident response to further strengthen trust and compliance.

95
40
17
60
62
75
100
governmentrefugeeaidukraineczechrepublichumanitarian+5 more
ReactNext.jsGoogle Tag ManagerCookie Consent Service from portal.gov.cz

Partner Domains:

www.mvcr.cz
partner
www.hzscr.cz
partner

+3 more partners

2025-10-12T23:35:27.093Z
kr-stredocesky.cz favicon

Středočeský kraj

kr-stredocesky.cz

64
GovernmentCzech RepubliclargeMEDIUM

Středočeský kraj is the official regional government authority for the Central Bohemian Region in the Czech Republic. The website serves as a comprehensive portal providing residents and stakeholders with access to government services, news, projects, and contact information. It targets the general public and regional entities, offering transparent and accessible information about regional administration and initiatives. The business model is public service oriented, focusing on information dissemination and citizen engagement. Technically, the website is built on the Liferay CMS platform with modern web technologies including React and Alloy UI. It integrates analytics tools such as Google Analytics and AppDynamics for performance monitoring and user behavior analysis. The site demonstrates good mobile optimization, accessibility, and SEO practices, ensuring a positive user experience across devices. From a security perspective, the site employs HTTPS with strong SSL configuration and security headers, including Content-Security-Policy with nonce support. Forms appear to be secured via the Liferay framework's built-in protections. However, there is room for improvement in cookie consent mechanisms and explicit vulnerability disclosure policies. No critical vulnerabilities or suspicious activities were detected. Overall, the website is a trustworthy and professional government portal with a strong security posture and good compliance with privacy regulations. Strategic recommendations include implementing explicit cookie consent, publishing a vulnerability disclosure policy, and enhancing incident response contact visibility to further strengthen trust and compliance.

45
40
2
70
100
75
100
governmentregionalpublicservicesczechrepublicliferay+1 more
Liferay PortalReactAUI (Alloy UI)jQuery+2

Partner Domains:

bezpecny.stredoceskykraj.cz
partner
kusk.maps.arcgis.com
partner

+3 more partners

2025-10-12T23:34:26.613Z
contentstack.com favicon

Contentstack Inc.

contentstack.com

75
TechnologyN/aenterpriseMEDIUM

Contentstack Inc. operates a leading adaptive digital experience platform that integrates AI-driven content management with real-time customer data to deliver personalized experiences across multiple digital channels. Positioned as an enterprise-grade SaaS provider, Contentstack targets developers, business users, and digital leaders seeking flexible and scalable headless CMS solutions. The platform's key services include headless content management, real-time data analytics, omnichannel personalization, intelligent agents, and front-end hosting, supported by a strong brand presence and major global customers. Technically, the website leverages modern web technologies such as React and Next.js, integrates Google Tag Manager for analytics, and employs CookiePro for consent management, reflecting a mature digital infrastructure. The site is well-optimized for performance, mobile responsiveness, and SEO, with comprehensive metadata and structured content. From a security perspective, the site enforces HTTPS, implements multiple security headers, and uses consent mechanisms for privacy compliance. However, explicit security policies and incident response contacts are not prominently published, indicating areas for improvement. No vulnerabilities or exposed sensitive data were detected during analysis. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy standards, although the absence of WHOIS data introduces some uncertainty about domain registration details. Strategic recommendations include publishing detailed security and incident response policies and enhancing transparency around data protection roles.

70
73
25
82
75
85
100
headlesscmsdigitalexperienceplatformai-drivencontentpersonalizationreal-timedata+1 more
ReactNext.jsGoogle Tag ManagerContentstack Personalize Edge SDK+1

Partner Domains:

contentstack.channeltivity.com
partner
2025-10-12T23:34:01.551Z
hamburgerjobs.de favicon

HamburgerJOBS.de

hamburgerjobs.de

58
OtherGermanymediumMEDIUM

HamburgerJOBS.de is a regional job board platform focused on the Hamburg area, providing job listings, apprenticeship opportunities, and employer discovery services. The website targets job seekers and employers within Hamburg and surrounding regions, positioning itself as a key regional employment portal. The platform is professionally designed with consistent branding and partners with the reputable Hamburger Abendblatt newspaper, enhancing its market credibility. Technically, the website leverages modern web technologies including React and Next.js, hosted on Amazon AWS infrastructure. The site demonstrates good mobile optimization and SEO practices, though accessibility features are basic. Performance is moderate, with a well-structured layout and clear navigation. From a security perspective, the site enforces HTTPS and uses AWS DNS, but lacks visible security headers and explicit security policies. No privacy or cookie policies were found in the analyzed content, indicating gaps in privacy compliance. No vulnerability disclosures or incident response contacts are provided, which could be improved to enhance trust and security posture. Overall, HamburgerJOBS.de presents a professional and trustworthy platform for regional job searching, but should address privacy and security policy transparency to meet higher compliance standards and user trust expectations.

55
80
17
70
-
65
100
jobboardregionaljobshamburgapprenticeshipsemployers
ReactNext.jsAWS DNSJavaScript

Partner Domains:

abendblatt.de
partner
2025-10-12T23:32:15.861Z
icor.info favicon

International Coordination of Revolutionary Parties and Organizations

icor.info

65
OtherN/asmallMEDIUM

The International Coordination of Revolutionary Parties and Organizations (ICOR) operates a multilingual website serving as a platform for revolutionary political parties and organizations worldwide. The site provides news, resolutions, conference information, and contributions from member organizations, positioning itself as a niche international political coordination network. The business model is non-commercial, focusing on information dissemination and coordination among leftist groups. Technically, the website is built on the Plone CMS with a React frontend, incorporating Matomo analytics for visitor tracking. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. The absence of advanced security headers and cookie consent mechanisms indicates room for improvement in security and privacy compliance. Security posture is generally sound with HTTPS enforced, but the lack of security headers and incident response information reduces the overall security maturity. The WHOIS data is unavailable due to unsupported TLD WHOIS queries, limiting domain legitimacy verification. No signs of malicious activity or vulnerabilities were detected in the content or scripts. Overall, the website is functional, professionally designed, and serves its target audience effectively. Strategic improvements in security headers, privacy compliance, and domain registration transparency would enhance trust and security posture.

70
53
25
60
62
75
100
politicsinternationalrevolutionarycoordinationnon-profit+1 more
JavaScriptReactPlone CMSMatomo Analytics
2025-10-12T23:29:43.496Z
kosignmusic.com favicon

Kobalt Music Group, Limited

kosignmusic.com

71
MediaN/amediumMEDIUM

KOSIGN is a music publishing platform powered by Kobalt Music Group, Limited, designed to empower artists, producers, and songwriters to manage and collect their global publishing royalties efficiently. The platform leverages trusted technology used by renowned songwriters, offering a streamlined process for membership application, song submission, and royalty collection. The website presents a professional and modern digital presence with clear branding and comprehensive content focused on its core services. Technically, the site is built on modern frameworks such as React and Next.js, hosted on Vercel, and integrates multiple analytics and tracking tools while maintaining good privacy compliance with a cookie consent mechanism. Security posture is strong with HTTPS and security headers in place, though explicit incident response and vulnerability disclosure information are absent. The WHOIS data is missing, which raises some concerns about domain registration legitimacy, but the overall trust is supported by the association with Kobalt and professional content. Strategic recommendations include adding explicit security and incident response policies and verifying domain registration details to enhance trust.

65
83
17
80
72
70
100
musicpublishingroyaltiesartistsproducerssongwriters+3 more
ReactNext.jsSanity CMSVercel Speed Insights+5

Partner Domains:

www.kobaltmusic.com
partner
kosignmusic.zendesk.com
service
2025-10-12T22:26:10.452Z
autodesk.com favicon

Autodesk, Inc.

autodesk.com

74
TechnologyUnited StatesenterpriseMEDIUM

Autodesk, Inc. is a leading global technology company specializing in 3D design, engineering, and construction software solutions. With a strong market position and a comprehensive portfolio of products such as AutoCAD, Revit, and Fusion 360, Autodesk serves professionals and enterprises across architecture, engineering, manufacturing, and media industries. The company operates primarily on a SaaS and licensing business model, targeting a broad audience of design and engineering professionals worldwide. The website demonstrates a mature technical infrastructure leveraging modern web technologies including React, Adobe Experience Manager CMS, and advanced monitoring and analytics tools like Dynatrace and Tealium. The site is optimized for performance, mobile responsiveness, accessibility, and SEO, reflecting a high level of digital maturity. From a security perspective, Autodesk exhibits strong practices including HTTPS enforcement, comprehensive security headers, and publicly available security and privacy policies. Certifications such as ISO 27001 and SOC 2 further reinforce their commitment to security and compliance. No significant vulnerabilities or suspicious activities were detected, indicating a robust security posture. Overall, Autodesk presents a low-risk profile with a professional and trustworthy online presence. Strategic recommendations include maintaining up-to-date third-party libraries, implementing a security.txt file for vulnerability disclosures, and continuing to enhance incident response capabilities to sustain their leadership in security and compliance.

60
73
17
87
80
85
100
3ddesignengineeringconstructionsoftwaretechnology+5 more
JavaScriptReactWebpackDynatrace monitoring+2

Partner Domains:

plangrid.com
subsidiary
buildingconnected.com
subsidiary

+1 more partners

2025-10-12T22:23:37.663Z
C

CodePen

codepen.io

69
TechnologyUnited StateslargeMEDIUM

CodePen is a well-established online platform founded in 2012 that serves as a social development environment for front-end developers and designers. It offers an online code editor, project building, testing, and a vibrant community for sharing and discovering front-end code snippets and projects. The platform operates on a freemium business model with PRO accounts and team subscriptions, positioning itself as a leader in the front-end development community. The website is professionally designed, mobile-optimized, and provides clear navigation and rich content that caters to its target audience of front-end developers and designers. Technically, CodePen employs modern web technologies including React, SCSS, and JavaScript, hosted and protected by Cloudflare services. The site demonstrates good performance, accessibility, and SEO optimization. Security measures include HTTPS enforcement and CSRF protection in forms, although DNSSEC is not enabled and some security headers are not explicitly detected. Privacy policies and terms of service are comprehensive and publicly accessible, though a cookie consent mechanism and explicit security policies are absent. From a security perspective, CodePen maintains a strong posture with encrypted communications and domain registration consistency. However, improvements can be made by enabling DNSSEC, publishing a security policy, and implementing cookie consent to enhance GDPR compliance. No critical vulnerabilities or blocking mechanisms were detected, and the site is safe for general audiences. Overall, CodePen is a credible, professional, and secure platform with minor areas for enhancement in privacy compliance and DNS security. Strategic recommendations include enabling DNSSEC, adding cookie consent, publishing security and incident response policies, and enhancing security headers to further strengthen trust and compliance.

70
53
17
85
65
80
100
javascriptcsseditorcodecommunity+11 more
ReactSCSSJavaScriptCloudflare DNS+1

Partner Domains:

mongodb.com
partner
buysellads.com
partner
2025-10-12T21:18:45.403Z
commerce7.com favicon

Commerce7

commerce7.com

70
RetailN/amediumMEDIUM

Commerce7 is a medium-sized technology company founded in 2017 that provides customer-centric e-commerce solutions tailored for the alcohol industry, particularly wineries. The website positions itself as a modern commerce platform for wineries, focusing on delivering specialized services to this niche market. The business model revolves around offering a commerce platform that enables alcohol industry businesses to engage customers effectively. The company appears to have a consistent brand presence and targets a mature audience involved in alcohol commerce. Technically, the website is built using modern web technologies such as React and Gatsby, hosted on AWS infrastructure. The site demonstrates good performance and mobile optimization, with a clean and professional design. However, accessibility features are basic, and SEO optimization is good. The domain is registered with GoDaddy.com, LLC since 2017, consistent with the business age and without privacy protection, indicating transparency. From a security perspective, the website uses HTTPS and has a good SSL configuration. However, it lacks important security headers and does not provide privacy or cookie policies, which are critical for compliance with regulations like GDPR. No incident response or vulnerability disclosure information is available, and no contact information for security matters is found. These gaps suggest room for improvement in security posture and privacy compliance. Overall, the website is functional, professional, and targeted, but it should enhance its privacy and security policies and provide clearer contact information to improve trust and compliance. Strategic recommendations include implementing comprehensive privacy and cookie policies, enabling DNSSEC, adding security headers, and establishing clear incident response channels.

70
73
17
70
77
80
100
commercealcoholindustrywineriese-commercecustomercentric
ReactGatsbyAWS DNS
2025-10-12T21:12:17.704Z
githubuniverse.com favicon

GitHub

githubuniverse.com

60
TechnologyUnited StatesenterpriseMEDIUM

GitHub Universe 2025 is a flagship global developer event hosted by GitHub, a leading technology company and subsidiary of Microsoft. The event focuses on innovation, collaboration, and AI-powered software development, targeting developers, engineers, and technology professionals worldwide. The website provides comprehensive event details including dates, location, agenda, speakers, ticketing options, and highlights from previous years. The business model centers on ticket sales for in-person attendance and free virtual participation, positioning GitHub Universe as a premier industry event with strong brand recognition and market presence. Technically, the website is built using modern web technologies such as React and Next.js, ensuring fast performance, mobile optimization, and good accessibility. The site is hosted with reputable DNS and registrar services, and employs HTTPS with strong domain registration security flags. However, there is room for improvement in DNS security (DNSSEC not enabled) and in publishing comprehensive privacy and security policies. From a security perspective, the site demonstrates good baseline practices including HTTPS enforcement and domain locking. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The absence of explicit privacy, cookie, and security policies, as well as contact information for incident response, represents a compliance gap that should be addressed to enhance trust and regulatory adherence. Overall, GitHub Universe 2025's website is professional, trustworthy, and technically sound, supporting its role as a major industry event. Strategic improvements in privacy compliance and security transparency will further strengthen its security posture and user confidence.

15
53
17
40
95
80
100
technologydevelopereventconferencegithubsoftware+2 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

reg.githubuniverse.com
partner
github.com
parent
2025-10-12T20:07:23.454Z
gh.io favicon

GitHub, Inc.

gh.io

65
TechnologyUnited StatesenterpriseMEDIUM

GitHub, Inc. operates one of the world's leading developer platforms, providing a collaborative environment for millions of developers and businesses globally. The platform offers a comprehensive suite of tools including code hosting, code review, CI/CD automation, security scanning, and AI-powered coding assistance. As a Microsoft subsidiary, GitHub holds a strong market position with enterprise-grade services and a vast open source community. The website reflects a mature digital presence with excellent content quality, clear navigation, and professional branding. Technically, GitHub's website leverages modern web technologies such as React and Turbo, hosted on AWS infrastructure with Contentful CMS integration. The site demonstrates fast performance, mobile optimization, and good accessibility standards. Security practices are robust, with HTTPS enforced, multiple security headers, and secure form handling. Minor improvements such as enabling DNSSEC could further enhance DNS security. The security posture is strong, supported by certifications like ISO 27001 and SOC 2, and a clear incident response framework with dedicated security contact channels. Privacy compliance is well addressed with comprehensive policies and consent mechanisms. No critical vulnerabilities or suspicious indicators were found during analysis. Overall, GitHub's website and domain registration details confirm a legitimate, enterprise-grade platform with high trustworthiness. Strategic recommendations include enabling DNSSEC, continuous dependency auditing, and enhanced transparency on data retention to maintain leadership in security and compliance.

75
68
22
80
57
90
40
developerplatformcodehostingopensourceaicollaboration+2 more
ReactTurbo (Hotwire)Contentful CMSAWS DNS hosting+3

Partner Domains:

microsoft.com
parent
githubuniverse.com
partner
2025-10-12T19:00:32.918Z
B

Bento

bentonow.com

75
TechnologyUnited StatessmallMEDIUM

Bento is a technology company offering a comprehensive email marketing and CRM platform tailored for small businesses. Founded in 2019, Bento provides an all-in-one solution that includes marketing automation, transactional email services, AI-powered CRM features, and spam protection. The company positions itself as a user-friendly and developer-friendly platform with strong deliverability and enterprise-grade security, evidenced by its SOC 2 Type II compliance. The website reflects a modern, professional brand with clear messaging and a focus on ease of use and integration capabilities. Technically, Bento's website is built using modern web technologies including React and Next.js, hosted with Cloudflare DNS and leveraging cloud media services. The site is fast, mobile-optimized, and accessible, with good SEO practices and structured data enhancing search visibility. Security best practices are observed with HTTPS enforcement, security headers, and domain registration protections, although DNSSEC is not enabled. Privacy compliance is an area for improvement as no explicit privacy or cookie policies are present. From a security perspective, Bento demonstrates a mature posture with SOC 2 Type II certification and features like Spam Shield to maintain email list hygiene. No vulnerabilities or exposed sensitive data were detected in the analysis. However, the absence of published security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for enhancing transparency and readiness. Overall, Bento presents a trustworthy and professional online presence with strong technical and security foundations. To further improve, the company should address privacy compliance gaps, publish comprehensive policies, and enhance contact options to build greater user trust and regulatory adherence.

30
85
55
85
75
85
100
emailmarketingmarketingautomationcrmsmallbusinesstransactionalemail+2 more
ReactNext.jsCloudflare DNSJavaScript+2
2025-10-12T18:54:40.137Z
stufstorage.com favicon

Stuuf Inc.

stufstorage.com

64
Real EstateUnited StatesmediumMEDIUM

Stuf Storage is a technology-driven self-storage company that offers convenient, secure, and neighborhood-focused storage solutions by repurposing underutilized urban spaces. Their business model emphasizes ease of use with digital key access, month-to-month leases, and online booking, targeting residential customers and small businesses. The company positions itself as an innovative alternative to traditional self-storage providers, supported by strong branding and media presence. Technically, the website is built on modern frameworks such as Next.js and React, integrating multiple third-party analytics and marketing tools including Google Tag Manager, Facebook Pixel, and HubSpot. The site is well-optimized for performance, mobile responsiveness, and SEO, providing a seamless user experience. From a security perspective, the site enforces HTTPS, employs standard security headers, and avoids exposing sensitive data. However, it lacks visible cookie consent mechanisms and published security policies, which are areas for improvement. The absence of WHOIS registration data raises concerns about domain legitimacy, though the professional website content mitigates some risk. Overall, the website demonstrates a mature digital presence with strong business credibility but would benefit from enhanced privacy compliance and transparency regarding domain registration. Strategic recommendations include implementing cookie consent, publishing security and incident response policies, and verifying domain registration details.

20
53
17
75
77
85
100
self-storagestorageunitsdigitalkeytech-enabledstoragemonth-to-monthleases+1 more
ReactNext.jsGoogle Maps APIGoogle Tag Manager+6

Partner Domains:

lp.stufstorage.com
partner
blog.stufstorage.com
partner
2025-10-12T17:51:58.542Z
digitaldevelopmentcompass.org favicon

United Nations Development Programme (UNDP)

digitaldevelopmentcompass.org

62
GovernmentN/aenterpriseMEDIUM

The UNDP Digital Development Compass website serves as a platform to provide digital development data and insights for countries, primarily targeting governments, policymakers, and development agencies. It is part of the United Nations Development Programme's efforts to support digital transformation globally. The site is built using modern web technologies such as React and Next.js and incorporates analytics tools like Google Tag Manager and Hotjar for user behavior tracking. However, the current site is non-functional due to a client-side JavaScript error, which prevents users from accessing the intended content and services. This significantly impacts user experience and the platform's effectiveness. From a security perspective, the site lacks visible security headers and privacy-related policies, which are critical for compliance and user trust. The WHOIS data for the domain is malformed and unavailable, limiting the ability to verify domain registration details and trustworthiness. Despite this, the domain is a subdomain of undp.org, a recognized UN domain, which supports its legitimacy. Overall, the site requires urgent technical fixes to restore functionality, implementation of privacy and security policies, and improved transparency to enhance trust and compliance.

15
35
47
85
95
80
100
undpdigitaldevelopmentdatagovernmentnon-profit+3 more
ReactNext.jsGoogle Tag ManagerHotjar+1
2025-10-12T17:51:16.853Z
githubnext.com favicon

GitHub, Inc.

githubnext.com

68
TechnologyUnited StatesenterpriseMEDIUM

GitHub Next is a research and engineering team within GitHub, focusing on exploring the future of software development through prototyping innovative tools and technologies. Their work targets software developers and engineering teams, aiming to improve productivity and collaboration using AI and other advanced technologies. The website reflects a professional and enterprise-grade digital presence consistent with GitHub's brand and market position. Technically, the site is built using modern web technologies including Next.js and React, ensuring good performance, mobile optimization, and accessibility. The infrastructure appears robust with reputable DNS and hosting providers. However, some standard security practices like DNSSEC are not enabled, and security headers information is not available from the data. From a security perspective, the site uses HTTPS and domain registration protections, but lacks visible security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy and cookie policies are also absent, which may impact compliance with regulations like GDPR. No contact emails or phone numbers are provided, which limits direct communication channels. Overall, the website is trustworthy and professional but could improve in privacy compliance and security transparency. Strategic recommendations include publishing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact and incident response information.

50
35
47
70
82
80
100
technologysoftwaredevelopmentresearchaigithub+1 more
ReactNext.jsJavaScriptCSS+2
2025-10-12T17:51:06.835Z
alburn.co favicon

Alburn Technologies

alburn.co

59
TechnologyN/asmallMEDIUM

Alburn Technologies is a small technology studio specializing in applied artificial intelligence, product design, and research. The company positions itself as a niche provider targeting businesses and organizations seeking innovative AI-driven product solutions. The website is minimalistic but professional, emphasizing their core services and brand identity. Contact is facilitated through an external Airtable form, with no direct email or phone contacts provided on the site. Technically, the website is built using modern web technologies including Next.js and React, hosted on Vercel, which supports fast performance and good mobile optimization. The site uses HTTPS and defers script loading for performance but lacks important security headers that could enhance protection. SEO and accessibility features are basic but present. From a security perspective, the site benefits from HTTPS and modern hosting but misses key security headers and lacks visible privacy and cookie policies, which are important for GDPR compliance and user trust. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is privacy protected, which is typical for small tech firms, and no suspicious patterns were found. Overall, the website is safe and professional but would benefit from improved privacy compliance, enhanced security headers, and more transparent contact information to increase trust and compliance posture.

30
50
2
60
75
80
100
aiproductdesigntechnologyappliedairesearchstudio
Next.jsReactVercel Analytics
2025-10-12T17:50:16.706Z