Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157342
Websites
130
Industries
113
Countries
52
Avg Score
Page 460 of 1064|Showing 22951-23000 of 53175
dot5hosting.com favicon

Dot5Hosting

dot5hosting.com

65
TechnologyN/asmallMEDIUM

Dot5Hosting is a small business web hosting provider offering domain registration, email, and web services primarily targeting small businesses and individual domain owners. The company has been integrated into iPage by Network Solutions, a larger hosting provider under Newfold Digital. The website serves as a login portal for customers to access control panel and webmail services. The business model focuses on providing essential hosting and domain services with additional business solutions. The market position is that of a niche provider within a larger corporate ecosystem, leveraging the brand and infrastructure of iPage and Network Solutions. Technically, the website uses a modern technology stack including Bootstrap 3, jQuery, YUI, and Genesys Web Messenger for live chat. It employs Google Tag Manager and Sift Science for analytics and fraud detection. The site is mobile optimized with basic accessibility features and moderate performance. Hosting is implied to be provided by iPage/Network Solutions. The site uses HTTPS with secure login forms and includes CSRF tokens, script integrity checks, and crossorigin attributes, indicating a good security posture. Security-wise, the site shows good practices such as HTTPS enforcement and secure form handling. However, it lacks explicit security headers like CSP, X-Frame-Options, and HSTS in the provided HTML content. The presence of a HACKER SAFE certification badge adds trust. No vulnerabilities or exposed sensitive data were detected in the analysis. Privacy compliance is strong with clear privacy and cookie policies, including consent mechanisms and GDPR compliance indicators. Contact information is limited but includes a clear support phone number. Overall, the website is professional, secure, and compliant with privacy standards. The lack of WHOIS data for the subdomain is expected and not suspicious. The site is safe for general audiences with no adult or questionable content. Strategic recommendations include adding explicit security headers, publishing incident response policies, and continuing to monitor third-party scripts for vulnerabilities.

55
68
17
65
77
60
100
webhostingloginsmallbusinessdomainregistrationemail+3 more
Bootstrap 3jQueryYUI (Yahoo User Interface)Genesys Web Messenger+5

Partner Domains:

ipage.com
parent
networksolutions.com
parent

+1 more partners

2025-10-08T12:40:52.010Z
code4dei.com favicon

Software Guru

code4dei.com

58
TechnologyMexicosmallMEDIUM

Code 4 DEI is a Spanish-language initiative launched in 2023 by Software Guru focused on promoting diversity, equity, and inclusion within the technology industry. The initiative aims to raise awareness about challenges faced by underrepresented groups and to eliminate barriers limiting their potential. The website serves as a platform for community building, education, mentorship, and advocacy, targeting individuals interested in technology and social inclusion. The business model appears to be community and event-driven with collaboration from partner organizations. Technically, the website is built using modern web technologies including the Hugo static site generator, Bootstrap for responsive design, and hosted on Netlify. It integrates Google Tag Manager for analytics and uses Font Awesome for icons. The site is mobile-optimized and performs well, with good SEO practices evident from meta tags and structured data. However, it lacks a CMS and advanced accessibility features. From a security perspective, the site uses HTTPS and has domain protections such as clientDeleteProhibited and clientTransferProhibited statuses. DNSSEC is not enabled, and no explicit security headers or policies are published. There is no privacy or cookie policy, which is a compliance gap. No incident response or vulnerability disclosure information is provided. The domain registration is recent but consistent with the initiative's launch and is registered transparently without privacy protection. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance, security policies, and DNS security improvements. The lack of privacy and cookie policies and incident response information are notable gaps. Strategic recommendations include implementing these policies, enabling DNSSEC, and publishing security and incident response details to improve trust and compliance.

30
35
17
70
52
85
100
diversityinclusiontechnologyeducationmentorship+3 more
BootstrapThemefisher FontGoogle Tag ManagerNetlify Identity Widget+1

Partner Domains:

devrel.sg.com.mx
partner
devday4w.com
partner
2025-10-08T12:40:26.834Z
pardeerand.edu favicon

RAND Corporation

pardeerand.edu

77
EducationUnited StatesmediumLOW

The RAND School of Public Policy is a graduate-level educational institution uniquely integrated within the RAND Corporation, a renowned independent policy research organization. It offers specialized master's and doctoral degree programs in policy analysis, targeting future policy leaders and strategists. The school operates campuses in Santa Monica, California, and Washington, D.C., emphasizing real-world policy research and education. The website reflects a strong brand identity consistent with RAND Corporation and provides comprehensive information about programs, admissions, research, and events. Technically, the website is built on Adobe Experience Manager CMS and employs modern web technologies including Google Tag Manager, Facebook Pixel, LinkedIn Insight Tag, and Google reCAPTCHA for analytics, marketing, and security. The site is mobile responsive, well-structured, and optimized for SEO and accessibility, delivering a good user experience. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms. However, some security headers like Content-Security-Policy and X-Frame-Options are not explicitly detected, and no cookie consent mechanism is present, which could be improved for GDPR compliance. The WHOIS data for the domain 'www.rand.edu' is unavailable, which raises minor concerns but does not detract significantly from the site's legitimacy given the strong branding and content. Overall, the site demonstrates a mature digital presence with good security posture and business credibility. Strategic recommendations include enhancing security headers, implementing cookie consent, publishing security policies, and clarifying domain registration details to improve trust and compliance.

85
65
53
100
47
80
100
educationpolicyanalysisgraduateschoolpublicpolicyrandcorporation
Adobe Experience ManagerGoogle Tag ManagerFacebook PixelLinkedIn Insight Tag+2
2025-10-08T12:22:47.152Z
identitydigital.au favicon

Identity Digital Australia Pty Ltd

identitydigital.au

68
TechnologyAustraliamediumMEDIUM

Identity Digital Australia Pty Ltd operates as the official registry and service provider for .au domain names, targeting Australian businesses and individuals seeking to establish a trusted online presence with a .au domain. The company is positioned as a key player in the Australian domain market, backed by its parent company Identity Digital Inc. The website offers domain registration services, availability checks, domain drop lists, and password recovery, emphasizing trust and reliability through ISO certifications and privacy compliance. Technically, the website is built on a modern Webflow CMS platform, utilizing jQuery and GSAP for interactive animations, and integrates Google Tag Manager for analytics. The site is well-optimized for performance, mobile responsiveness, and accessibility, providing a professional user experience with clear navigation and relevant content. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms aligned with GDPR standards. It displays ISO certifications as trust indicators but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected, indicating a mature security posture, though improvements are recommended to enhance security transparency and incident readiness. Overall, the domain registration and business information are consistent and legitimate, with no signs of suspicious activity. The website is safe for general audiences, professionally designed, and compliant with privacy regulations, making it a trustworthy platform for domain registration services in Australia.

30
95
17
78
72
70
100
domainregistrationaudomainsaustralianbusinessidentitydigitaldomainservices+3 more
WebflowjQuery 3.5.1GSAP 3.11.5Google Tag Manager
2025-10-08T12:21:51.926Z
chiemsee-alpenland.de favicon

Chiemsee-Alpenland Tourismus

chiemsee-alpenland.de

48
HospitalityGermanymediumHIGH

Chiemsee-Alpenland Tourismus operates an official regional tourism website promoting the Bavarian Alps and Chiemsee region in Germany. The site provides comprehensive travel information, accommodation booking services, event promotion, and cultural highlights targeting tourists and visitors interested in this scenic area. The business model focuses on tourism promotion and facilitating bookings, positioning itself as a key regional player in hospitality and travel services. Technically, the website is built on the Neos CMS platform using the Flow PHP framework, incorporating modern web technologies such as lazy loading, accessibility tools (Eye-Able), and cookie consent management (Usercentrics). The site demonstrates good mobile optimization, accessibility, and SEO practices, with moderate performance characteristics. From a security perspective, the website enforces HTTPS and SSL encryption, especially for booking forms, and uses cookie consent mechanisms to comply with privacy regulations. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not evident, and no published privacy policy or terms of service were found in the provided content. No vulnerabilities or exposed sensitive data were detected, indicating a generally sound security posture. Overall, the website is professional, trustworthy, and well-structured, with clear contact information and strong branding consistency. To enhance compliance and security, it is recommended to publish explicit privacy and terms documents, implement additional security headers, and provide a vulnerability disclosure or security policy page.

15
68
2
85
52
60
20
tourismtravelbavarianalpschiemseebooking+4 more
PHPNeos CMSFlow FrameworkGoogle Tag Manager+4
2025-10-08T12:20:31.536Z
stuttgart-tourist.de favicon

Stuttgart-Marketing GmbH

stuttgart-tourist.de

70
HospitalityGermanymediumMEDIUM

Stuttgart-Marketing GmbH operates the official tourism website for the city of Stuttgart, Germany, providing comprehensive information and services including hotel bookings, city tours, event tickets, and cultural experiences. The website serves as a central hub for tourists and visitors, offering multilingual support and a variety of interactive features such as booking forms and event highlights. The company holds recognized certifications related to sustainability and quality, reinforcing its market position as a trusted regional tourism partner. Technically, the website employs modern web technologies including Google Analytics, Google Tag Manager, Cookiebot for privacy compliance, and interactive JavaScript components for enhanced user experience. The site is mobile-optimized, accessible, and SEO-friendly, with a professional design and clear navigation structure. Security is well-managed with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers and incident response policies are not publicly documented. Overall, the security posture is solid with no evident vulnerabilities or exposed sensitive data. Privacy compliance is strong, supported by comprehensive privacy and cookie policies. The business credibility is high, supported by clear contact information, certifications, and official domain registration. The website content is safe for general audiences, focusing on tourism and cultural events without any adult or questionable content. Strategic recommendations include enhancing security headers, publishing a formal security policy and incident response contacts, and considering a vulnerability disclosure mechanism to further strengthen trust and security culture.

50
83
2
80
100
60
100
tourismtravelstuttgarteventscitytours+2 more
Google AnalyticsGoogle Tag ManagerCookiebotBookingkit+3

Partner Domains:

hausdestourismus.de
partner
erlebnisregion.stuttgart-tourist.de
partner

+3 more partners

2025-10-08T12:20:21.516Z
zermatt.ch favicon

Zermatt-Matterhorn: Ferien in den Bergen & Alpen

zermatt.ch

62
HospitalitySwitzerlandmediumMEDIUM

The website zermatt.swiss serves as a regional tourism portal promoting vacations and holidays in the Zermatt-Matterhorn area of the Swiss Alps. It targets tourists interested in mountain and alpine experiences, providing information and services related to travel and accommodation. The business model is focused on destination marketing and tourism promotion, positioning itself as a key regional player in hospitality. The website demonstrates a good level of digital maturity, utilizing modern web technologies such as Nuxt.js, Tailwind CSS, and integrating analytics and marketing tools like Google Analytics, Facebook Connect, and Cookiebot. Performance and mobile optimization are good, though accessibility is basic. From a security perspective, the site enforces HTTPS and employs a Content-Security-Policy header, reflecting sound security practices. However, additional security headers could enhance protection. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is limited, with no explicit privacy or cookie policies found in the provided content, which is an area for improvement. Business credibility is supported by consistent WHOIS data and a professional web presence, though contact information and trust indicators are minimal. Overall, the website presents a moderate risk profile with strengths in technical implementation and business legitimacy but gaps in privacy compliance and security policy transparency. Strategic recommendations include publishing comprehensive privacy and cookie policies, enhancing security headers, and improving accessibility and user trust signals.

55
73
2
60
62
65
100
tourismtravelvacationalpszermatt+3 more
JavaScriptNuxt.jsTailwind CSSGoogle Tag Manager+3
2025-10-08T12:19:26.393Z
buxumlunic.ch favicon

BuxumLunic

buxumlunic.ch

53
MediaSwitzerlandmediumMEDIUM

BuxumLunic is a well-established digital communication agency based in Geneva, Switzerland, with over 35 years of experience. The company specializes in 360-degree communication services including branding, digital campaigns, print, visual creation, and website development. Positioned as a strategic partner for businesses and institutions, BuxumLunic targets a broad audience seeking to enhance their brand visibility and communication effectiveness. The website reflects a professional and consistent brand image with a strong portfolio and client references, indicating a solid market position in the media and communication sector. Technically, the website is built on WordPress with modern JavaScript libraries such as Swiper.js and GSAP, and integrates SEO tools like Yoast SEO. Google Tag Manager is used for analytics, showing a moderate level of digital maturity. The site is mobile-optimized and offers a good user experience with clear navigation and rich content. However, some accessibility features could be improved. From a security perspective, the site uses HTTPS with good SSL configuration but lacks explicit security headers and incident response policies. No cookie consent mechanism was detected, indicating partial GDPR compliance. No vulnerabilities or exposed sensitive data were found, but improvements in security best practices are recommended. Overall, the website is professional, trustworthy, and well-maintained, with minor gaps in privacy compliance and security policy transparency. Strategic recommendations include implementing cookie consent, enhancing security headers, and publishing incident response information to strengthen trust and compliance.

25
35
2
80
95
85
20
digitalagencybrandingcommunicationgenevamarketing+3 more
WordPressYoast SEO pluginjQuerySwiper.js+3

Partner Domains:

projets.buxumlunic.ch
partner
2025-10-08T12:18:46.086Z
thenationaldesk.com favicon

The National Desk

thenationaldesk.com

65
MediaUnited StateslargeMEDIUM

The National Desk is a national news media outlet founded in 2019, delivering breaking news, investigative reports, political coverage, weather updates, and live video broadcasts. It operates under the Sinclair Broadcast Group umbrella, leveraging modern web technologies including React and Next.js, and integrates multiple advertising and analytics platforms to monetize and analyze user engagement. The website is professionally designed with good content quality and accessibility features, targeting a general audience interested in national news and politics. Technically, the site is hosted on AWS infrastructure with a modern tech stack and uses HTTPS with standard security headers. However, DNSSEC is not enabled, representing a minor security gap. Privacy compliance is basic, with no explicit privacy or cookie policy found on the main site, though a consent management platform (Ketch) and accessibility widget (UserWay) are implemented. Contact information is limited to a support email, and no incident response or vulnerability disclosure policies are published. Security posture is solid but could be improved by enabling DNSSEC and publishing clear privacy and security policies. The domain registration is consistent and legitimate, registered since 2019 with no privacy protection, appropriate for a media brand. Overall, the site is trustworthy and professional but would benefit from enhanced privacy transparency and DNS security. Recommendations include enabling DNSSEC, publishing comprehensive privacy and cookie policies, adding a vulnerability disclosure or security.txt file, and providing explicit incident response contacts to improve security posture and user trust.

50
80
17
40
77
75
100
newsmedianationalweatherpolitics+2 more
Next.js (implied by _next static paths)JWPlayer (video player)Google AnalyticsGoogle Tag Manager+6

Partner Domains:

sbgi.net
partner
sinclairstoryline.com
partner
2025-10-08T12:17:30.856Z
rockstarradio.ch favicon

Media One Group

rockstarradio.ch

47
MediaSwitzerlandsmallHIGH

Rockstar is a digital radio station operated by Media One Group, focusing on rock music from the 1960s to today. The website serves as a streaming platform and brand presence for the radio station, targeting rock music enthusiasts primarily in Switzerland. The site uses modern web technologies including Vue.js and Nuxt.js, and integrates Google Tag Manager and Axeptio for analytics and consent management, although no explicit cookie or privacy policies are published. Social media presence on Instagram and Facebook supports audience engagement. Technically, the website is well-structured with responsive design and moderate performance. However, security posture is moderate due to lack of visible security headers and absence of published security or privacy policies. The domain uses privacy protection in WHOIS, which is common and acceptable for media entities, and no suspicious patterns were detected. The site content is safe for general audiences with no adult or explicit material. Overall, the website is professionally presented and credible as a niche digital radio station. Key improvements include publishing privacy and cookie policies, adding security headers, and providing clear contact information to enhance trust and compliance. These steps will strengthen the security posture and privacy compliance, aligning with best practices for media websites.

95
85
65
-
35
2
25
rockradiodigitalradiomusicmedia+2 more
JavaScriptVue.jsNuxt.jsGoogle Tag Manager+1
2025-10-08T11:43:14.823Z
mtcaptcha.com favicon

Sun Spray Technologies LLC

mtcaptcha.com

68
TechnologyUnited StatesenterpriseMEDIUM

MTCaptcha, operated by Sun Spray Technologies LLC, is a GDPR-compliant enterprise captcha service designed to protect websites from bots, human abuse, and fraud. Positioned as a privacy-focused alternative to reCAPTCHA, it offers advanced AI security, accessibility compliance (WCAG 2.1 AAA), and multi-region availability including China. The service targets enterprises, startups, and small businesses, providing customizable themes, adaptive risk engines, and enterprise dashboards with multi-user management. The website demonstrates strong branding consistency, professional design, and clear navigation, supporting a positive user experience and trustworthiness. Technically, the website leverages modern web technologies including jQuery, Webflow CMS, Google Tag Manager, Mouseflow analytics, and Swiper.js for UI components. Hosting is via Webflow's CDN, ensuring fast performance and mobile optimization. Security best practices are observed with HTTPS enforcement, sandboxed captcha iframes, and no exposed sensitive data. Analytics usage is moderate and privacy compliant, with cookie consent mechanisms in place. Security posture is strong with appropriate headers and SSL configuration, though explicit security policy and incident response contacts are not published. No vulnerabilities or suspicious domains were detected. WHOIS data confirms legitimacy and consistency with the business identity. Overall, MTCaptcha presents a mature, secure, and privacy-conscious captcha solution with a solid market position. Strategic recommendations include publishing a dedicated security policy, providing incident response contacts, adding vulnerability disclosure mechanisms, and enhancing admin portal security. These steps will further strengthen trust and compliance.

85
85
80
100
2
30
72
captchagdprenterpriseprivacybotprotection+2 more
jQueryWebflowGoogle Tag ManagerMouseflow+2
2025-10-08T11:41:44.596Z
eventbrite.com favicon

Eventbrite

eventbrite.com

74
TechnologyUnited StateslargeMEDIUM

Eventbrite is a leading global online event management and ticketing platform that enables users to discover, create, and promote a wide range of events including concerts, workshops, festivals, and virtual gatherings. The platform serves both event organizers and attendees, providing comprehensive tools for ticket sales, event marketing, and attendee management. Eventbrite holds a strong market position with a large user base and extensive event categories. Technically, the website is built on modern web technologies including React and Next.js, with robust integration of analytics and marketing tools such as Google Tag Manager, Facebook Pixel, and TikTok Pixel. The site demonstrates excellent performance, mobile optimization, and accessibility features, ensuring a high-quality user experience. From a security perspective, Eventbrite employs HTTPS with strong SSL configuration and security headers, alongside consent management for privacy compliance. While explicit security policies and incident response details are not publicly detailed, the platform shows adherence to best practices and GDPR compliance. No critical vulnerabilities or exposed sensitive data were detected. Overall, Eventbrite presents a mature, professional, and trustworthy online presence with strong business credibility. The absence of WHOIS data reduces domain registration transparency but does not detract from the platform's legitimacy or operational security. Strategic recommendations include publishing detailed security policies and vulnerability disclosure programs to enhance transparency and trust.

30
88
17
100
82
90
100
eventticketingeventmanagementonlineeventslocaleventseventmarketing
ReactNext.jsGoogle Tag ManagerGoogle Analytics+3
2025-10-08T11:40:54.481Z
jobpaths.com favicon

JobPaths

jobpaths.com

55
Non-profitUnited StatesmediumMEDIUM

JobPaths is a specialized platform founded in 2013 that provides technology solutions to nonprofits and government agencies focused on workforce development for diverse populations including veterans, military spouses, people with disabilities, and second chance candidates. The platform offers a comprehensive suite of services such as skills assessments, online training, resume generation, mentorship, and personalized dashboards. It also supports employers with job posting and candidate sourcing capabilities. The company maintains strong partnerships with reputable organizations and operates multiple microsites tailored to specific user groups, enhancing its market niche in veteran and diversity employment support. Technically, JobPaths employs a modern technology stack centered around React and Next.js, hosted likely on AWS infrastructure with media assets served via S3. The site integrates Stripe for payment processing and Google reCAPTCHA v3 for bot mitigation, alongside Google Tag Manager for analytics. The website demonstrates excellent design quality, mobile optimization, and SEO practices, providing a professional and user-friendly experience. From a security perspective, the site enforces HTTPS, uses domain status locks to prevent unauthorized domain changes, and employs bot protection mechanisms. However, DNSSEC is not enabled, and explicit security headers such as Content-Security-Policy are not detected. Privacy compliance is supported by a comprehensive privacy policy and terms of service, though a cookie consent mechanism is absent. No incident response or security policy pages were found, indicating room for improvement in transparency and readiness. Overall, JobPaths presents a trustworthy and mature online presence with a strong focus on social impact and workforce development. Strategic recommendations include enabling DNSSEC, implementing additional security headers, publishing a security policy and incident response contacts, and adding a cookie consent mechanism to enhance GDPR compliance and user trust.

85
-
85
100
17
20
53
veteransjobtrainingnonprofitgovernmentdiversity+3 more
ReactNext.jsStripeGoogle reCAPTCHA v3+2

Partner Domains:

yourjobpath.com
partner
spouses.yourjobpath.com
partner

+3 more partners

2025-10-08T11:20:53.757Z