Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150926
Websites
130
Industries
113
Countries
52
Avg Score
Page 471 of 781|Showing 23501-23550 of 39040
M

Majestic-12

majestic12.co.uk

56
TechnologyUnited KingdomsmallMEDIUM

Majestic-12 is a niche distributed search engine project based in the United Kingdom, focused on creating a web search engine through distributed computing principles similar to SETI@home. The website provides downloadable node software for participants to contribute to web crawling and indexing efforts. The project also offers SEO-related services. The website content is technical and community-oriented, with a history of updates dating back to 2007, indicating a long-standing initiative. However, the domain WHOIS data is unavailable or indicates the domain is invalid under Nominet UK rules, which raises questions about domain legitimacy or usage of a non-standard domain name. Technically, the website uses basic HTML, CSS, and JavaScript without modern frameworks or CMS. The site lacks HTTPS enforcement, with the search form submitting data over HTTP, which is a security concern. Mobile optimization and accessibility are poor, and no analytics or tracking scripts are detected, indicating minimal user tracking. The site lacks privacy, cookie, and terms of service policies, which impacts privacy compliance. From a security perspective, the absence of HTTPS and security headers reduces the security posture. No sensitive data exposure or vulnerable libraries were detected in the HTML content. The site does not provide contact information or incident response channels, limiting transparency and user trust. Overall, the security maturity is low to moderate. The overall risk assessment suggests that while the project appears legitimate and community-driven, the domain registration issues and lack of security best practices present risks. Strategic recommendations include implementing HTTPS, adding security headers, improving privacy compliance with policies, enhancing mobile usability, and clarifying domain registration status to improve trust and security posture.

15
50
2
88
67
70
100
majestic-12distributedsearchengineseomj12nodedistributedcomputing
HTMLCSSJavaScript
2025-07-16T03:38:51.062Z
elephantbet.sl favicon

Elephantbet

elephantbet.sl

63
OtherSierra LeonemediumMEDIUM

ElephantBet SL operates as a leading online sports betting and casino gaming platform primarily targeting users in Sierra Leone. The website offers a variety of gambling services including sports betting, casino games, live casino, lottery, and tournaments, positioning itself as a comprehensive entertainment destination for adult users interested in betting and gaming. The platform emphasizes a premium gaming experience with competitive odds and popular slot games. Technically, the website leverages modern web technologies such as React and integrates Cloudflare Turnstile CAPTCHA for bot mitigation, alongside Google Tag Manager for analytics. The site demonstrates good design quality, mobile optimization, and SEO practices, although accessibility features are basic. Security posture is solid with HTTPS enforced and some security headers implied, but lacks visible security policies or incident response information. The absence of WHOIS registration data and lack of visible privacy and cookie policies reduce overall trust and compliance confidence. Strategic improvements in transparency, privacy compliance, and contact information visibility are recommended to enhance user trust and regulatory adherence.

45
53
17
85
57
75
100
sportsbettingcasinogamblingsierraleoneonlinebetting+3 more
JavaScriptReact (inferred from JSX and modulepreload)Cloudflare Turnstile CAPTCHA

Partner Domains:

elephantbet.co.mz
related
elephantbet.co.ao
related

+1 more partners

2025-07-16T02:36:51.569Z
mdr.london favicon

Mishcon de Reya LLP

mdr.london

60
OtherUnited KingdomenterpriseMEDIUM

Mishcon de Reya LLP is a well-established independent law firm founded in 1973, with a significant international presence including offices in London and Singapore. The firm offers a broad range of legal and non-legal services across multiple sectors such as corporate law, dispute resolution, employment, innovation, and private client services. Their market position is strong, supported by a large team of over 1400 people and multiple subsidiaries and partner firms. The website reflects a professional and comprehensive digital presence with clear navigation and detailed service offerings. Technically, the website is built on ASP.NET Web Forms with modern web standards including responsive design, accessibility features, and SEO best practices. The site performance is moderate with good mobile optimization. Security measures include HTTPS enforcement and multiple security headers, indicating a mature security posture. However, explicit security policies and incident response information are not published, which could be improved. The overall risk profile is low with no detected vulnerabilities or suspicious content. The missing WHOIS data is a concern for domain registration transparency but does not detract significantly from the firm's credibility given the strong branding and external references. Strategic recommendations include publishing detailed security and incident response policies, adding vulnerability disclosure mechanisms, and verifying domain registration details to enhance trust.

80
95
25
-
92
-
100
lawfirmlegalservicescorporatelawdisputeresolutionemploymentlaw+5 more
ASP.NETJavaScriptCSSHTML5

Partner Domains:

www.mishconkaras.com.hk
partner
mdr-i.com
subsidiary

+3 more partners

2025-07-16T02:35:16.141Z
dpmul.cz favicon

Dopravní podnik města Ústí nad Labem a.s.

dpmul.cz

58
TransportationCzech RepublicmediumMEDIUM

Dopravní podnik města Ústí nad Labem a.s. is a medium-sized public transportation company operating bus and trolleybus services primarily in the Ústí nad Labem region of the Czech Republic. The company provides a range of services including ticket sales, electronic tickets, contracted transport, and additional offerings such as a cable railway and driving school. The website reflects a well-established operator with a domain registered since 1999, consistent with the company's history and market presence. Technically, the website employs modern web technologies including Bootstrap for responsive design, JavaScript libraries for interactive elements, and Leaflet for mapping services. The site is mobile-optimized, accessible, and SEO-friendly, providing a good user experience. Hosting and domain registration are managed by a reputable Czech registrar, REG-ZONER. From a security perspective, the site uses HTTPS and implements cookie consent with Cloudflare Turnstile captcha for form protection. However, explicit security headers are not clearly declared, and there is no visible security policy or incident response contact information. No vulnerabilities or exposed sensitive data were detected in the content. Overall, the website is professional, trustworthy, and compliant with GDPR requirements, with clear contact information and active social media channels. Strategic improvements could include publishing a formal security policy, enhancing security headers, and providing incident response contacts to strengthen security posture and user trust.

30
10
2
85
72
85
100
publictransportbustrolleybusstnadlabemczechrepublic+3 more
HTML5CSS3JavaScriptBootstrap+2
2025-07-16T02:33:05.768Z
freshcorner.rs favicon

MOL Serbia d.o.o.

freshcorner.rs

63
EnergySerbiamediumMEDIUM

Fresh Corner is a retail food and beverage brand operating primarily at Slovnaft gas stations in Serbia, offering coffee, hot dogs, sandwiches, pastries, and hot meals. The company is part of MOL Serbia d.o.o., indicating a connection to the MOL Group, a significant energy sector player. The website is professionally designed with good mobile optimization and clear navigation, targeting general consumers and travelers seeking quick food options at fuel stations. The business model focuses on convenience retail integrated with energy services, positioning Fresh Corner as a recognized local brand with a medium-sized market presence. Technically, the website employs modern web technologies including Google Maps API for location services, Google Tag Manager, Google Analytics, and Facebook Pixel for marketing and analytics. The site uses HTTPS with a valid SSL configuration and includes a cookie consent mechanism compliant with GDPR. However, DNSSEC is not enabled, and no explicit security headers were detected in the provided data, indicating room for security enhancements. The site lacks a published security policy or incident response contact, which could improve trust and compliance. From a security perspective, the site demonstrates good practices such as CSRF token usage and cookie consent with detailed categories. Tracking technologies are used responsibly with user consent. No critical vulnerabilities or suspicious domains were found. The WHOIS data confirms domain legitimacy with consistent registration details and appropriate domain age. Overall, the site maintains a good security posture but could benefit from additional security headers and formal security documentation. The overall risk assessment is low, with the site presenting a trustworthy and professional front for its business operations. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing a security policy, and considering a vulnerability disclosure program to further enhance security and compliance posture.

70
65
2
70
52
60
100
foodbeveragescoffeehotdogpastries+7 more
Google Maps APIOwl CarouselGoogle Tag ManagerGoogle Analytics+4

Partner Domains:

molserbia.rs
partner
2025-07-16T02:32:30.686Z
qualified-dev.com favicon

Qualified

qualified-dev.com

61
TechnologyN/amediumMEDIUM

Qualified is a technology company specializing in AI-driven inbound pipeline generation through its flagship AI SDR agent, Piper. The platform automates real-time visitor engagement, personalized email follow-up, sales meeting scheduling, and content personalization to accelerate B2B marketing and sales efforts. Positioned as a leader in agentic marketing, Qualified targets marketing and sales teams seeking scalable automation solutions. The website demonstrates a mature digital presence with professional design, rich multimedia content, and integration with modern web technologies such as Webflow, Google Tag Manager, and Wistia. Privacy and cookie policies are implemented with consent mechanisms, reflecting good compliance practices. However, the absence of WHOIS data for the domain raises questions about domain registration legitimacy, possibly indicating a development or staging environment. Security posture is strong with HTTPS and secure scripts, though additional security headers and a published security policy would enhance trust. Overall, Qualified presents a credible and professional business with room for improvement in transparency and security documentation.

15
73
17
70
57
75
100
aisdrinboundpipelinegenerationagenticmarketingqualifiedpiper+3 more
JavaScriptGoogle Tag ManagerWistia video playerQualified proprietary scripts+2

Partner Domains:

qualified.com
partner
qualified-staging.com
partner

+1 more partners

2025-07-16T02:28:59.833Z
smarty.cz favicon

Smarty.cz

smarty.cz

54
RetailCzech RepubliclargeMEDIUM

Smarty.cz is a prominent Czech retailer specializing in smart electronics, gaming products, and accessories. The company operates both an e-commerce platform and multiple physical stores across the Czech Republic, offering services such as device servicing, buyback, and express delivery. Their market position is strong within the Czech retail sector for technology and gaming products, targeting consumers interested in the latest electronics and gaming gear. The website is professionally designed, mobile-optimized, and provides a rich user experience with clear navigation and comprehensive product offerings. Technically, Smarty.cz employs modern web technologies including HTML5, CSS3, JavaScript, and utilizes third-party services like Google Tag Manager and Startquestion widgets for analytics and customer engagement. The site demonstrates good performance and accessibility standards, with secure HTTPS connections and appropriate security headers in place. From a security perspective, the website shows a solid posture with HTTPS enforcement and secure form handling. However, there is a lack of publicly available security policies, incident response information, and vulnerability disclosure programs, which are areas for improvement. The absence of WHOIS data reduces transparency and slightly impacts trustworthiness, though the business presence and content quality support legitimacy. Overall, Smarty.cz presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing transparency around security policies, publishing incident response and vulnerability disclosure information, and improving WHOIS data availability to bolster trust and compliance.

60
25
2
85
-
80
100
electronicsgamingretailsmartdevicesczechrepublic
HTML5CSS3JavaScriptTiny Slider JS+3
2025-07-16T01:26:44.931Z
siilo.com favicon

Doctolib Siilo

siilo.com

83
HealthcareN/amediumLOW

Doctolib Siilo operates a secure medical messaging platform tailored for healthcare professionals, enabling confidential communication and patient data sharing within medical teams. The platform positions itself as a free, secure solution in the healthcare communication niche, supported by the parent company Doctolib. The website content is professionally presented, targeting healthcare providers and organizations, with a clear emphasis on security and privacy compliance. Technically, the site employs modern JavaScript libraries such as Alpine.js, integrates Matomo for analytics, and uses Cookiebot for GDPR-compliant cookie management. The site is mobile-optimized and demonstrates good SEO and accessibility practices. Security-wise, the site enforces HTTPS and provides a detailed cookie consent mechanism, though it lacks explicit security headers and a public vulnerability disclosure policy. The absence of WHOIS data limits domain trust verification, but the overall site professionalism and privacy compliance indicate a mature security posture. Strategic recommendations include enhancing security headers, publishing incident response contacts, and improving transparency around security certifications. Overall, the site presents a solid, trustworthy platform for healthcare communication with room for security and compliance enhancements.

75
83
47
93
100
90
100
healthcaresecuremessaginggdprprivacymedicalcommunication+2 more
JavaScriptAlpine.jsMatomo AnalyticsCookiebot
2025-07-16T01:22:43.656Z
doctolib.com favicon

Doctolib

doctolib.com

66
HealthcareFrancelargeMEDIUM

Doctolib is a leading European healthcare technology company specializing in online appointment booking and teleconsultation services. The platform serves patients and healthcare professionals primarily in France, Germany, and Italy, offering a seamless way to find specialists and manage medical appointments. The company also provides professional management software for healthcare providers, enhancing operational efficiency. The website reflects a mature digital presence with comprehensive legal, privacy, and user support documentation, reinforcing trust and compliance with GDPR regulations. Technically, the website employs modern web technologies including React, Sentry for error tracking, Datadog for real user monitoring, and advanced consent management via Didomi. The infrastructure leverages Cloudflare services for security and performance, with strong SSL/TLS configurations and security headers implemented. The site is mobile-optimized and accessible, providing a fast and user-friendly experience. From a security perspective, Doctolib demonstrates robust practices such as HTTPS enforcement, cookie security with SameSite and Partitioned flags, and CAPTCHA integration to mitigate abuse. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS registration data limits full domain legitimacy verification, though the overall trust signals and professional branding mitigate this concern. Overall, Doctolib presents a secure, compliant, and professionally managed online platform with strong market positioning in healthcare technology. Strategic recommendations include enhancing transparency with a published security.txt file and continuous monitoring of third-party dependencies to maintain security posture.

55
85
47
100
70
85
-
healthcareappointmentbookingteleconsultationmedicalpatientmanagement+4 more
ReactJavaScriptSentryDatadog RUM+5

Partner Domains:

doctolib.eu.go.link
partner
doctolibpatient.zendesk.com
partner

+2 more partners

2025-07-16T01:22:33.604Z
woodfiber.dk favicon

Woodfiber ApS

woodfiber.dk

54
ManufacturingDenmarksmallMEDIUM

Woodfiber ApS is a Danish company specializing in the manufacture and distribution of sustainable wood fiber-based insulation and building materials. The company targets environmentally conscious builders, homeowners, and construction professionals within Denmark. Their product portfolio includes various wood fiber insulation products, facade systems, vapor barriers, and sound insulation materials, positioning them as a niche player in the sustainable construction materials market. The website reflects a focused business model with clear product offerings and contact information, supporting their market presence since 2013. Technically, the website is built with standard modern web technologies including HTML5, CSS3, and JavaScript, with external resources such as Google Fonts and YouTube no-cookie embeds. The site is mobile optimized and has good SEO fundamentals, though no CMS or advanced frameworks are detected. Hosting and domain registration are managed by GIGAHOST ApS, consistent with the Danish business location. Performance is moderate with room for improvement in accessibility and security headers. From a security perspective, the website uses HTTPS but lacks visible security headers and DNSSEC is not enabled, which are areas for enhancement. No forms or data collection mechanisms are present, reducing immediate data exposure risks. However, the absence of a privacy policy and cookie consent mechanism indicates non-compliance with GDPR requirements. No incident response or vulnerability disclosure information is provided, limiting transparency in security management. Overall, the website is professional and trustworthy with a moderate security posture. Strategic improvements in privacy compliance, security headers, and DNSSEC implementation would strengthen their security and regulatory standing. The business appears legitimate and stable with consistent WHOIS data and clear contact details.

35
10
2
65
77
70
100
buildingmaterialswoodfiberinsulationsustainableconstructiondenmarkenvironmentallyfriendly
HTML5CSS3JavaScriptGoogle Fonts (Open Sans)
2025-07-16T01:16:35.509Z
country.is favicon

Line of Flight

country.is

61
TechnologyN/asmallMEDIUM

Country.is is a technology-focused website offering a free IP-to-country geolocation API service. The service is designed primarily for developers and businesses requiring geolocation data based on IP addresses. It operates an open instance without requiring API keys and supports self-hosting via Docker, leveraging MaxMind and Cloudflare data sources. The website is positioned as a niche provider with a decade-long operational history and an open-source approach, fostering trust through transparency and community engagement on GitHub. Technically, the website employs modern web technologies including HTML5, CSS, JavaScript, FontAwesome, and Highlight.js. It uses Cloudflare for caching and performance optimization and supports Docker-based deployment for scalability. The site is mobile-optimized with good SEO practices, though accessibility features are basic. Performance is fast, and the technical infrastructure is sound for the service offered. From a security perspective, the site enforces HTTPS and implements rate limiting to prevent abuse. It does not log requests on its servers, enhancing user privacy. However, explicit security headers are not detected, and no formal privacy or cookie policies are published. Incident response and vulnerability disclosure mechanisms are absent, which could be improved to enhance trust and compliance. No vulnerabilities or exposed sensitive data were found in the analysis. Overall, the website presents a low-risk profile with a solid technical foundation and a clear business purpose. Strategic improvements in privacy compliance, security headers, and contact transparency would elevate its trustworthiness and compliance posture.

15
53
2
70
75
90
100
ipgeolocationapifreeserviceopensourcetechnology
HTML5CSS (external stylesheet)JavaScriptFontAwesome+4

Partner Domains:

wise.prf.hn
partner
partnerize.com
partner
2025-07-16T01:12:59.057Z
P

Parrish Healthcare

parrishhealthcare.com

57
HealthcareUnited StateslargeMEDIUM

Parrish Healthcare operates as a comprehensive healthcare provider network serving Brevard County, Florida. The organization offers a wide range of medical services including primary care, specialty services, emergency care, and community health programs. It holds multiple accreditations and certifications, positioning itself as a trusted healthcare leader in the region. The website reflects a professional and patient-focused approach with extensive resources, patient testimonials, and community engagement initiatives. Technically, the website is built on a modern CMS platform (Scorpion CMS) and employs standard web technologies such as JavaScript, jQuery, and integrates with Google Tag Manager and Facebook Pixel for analytics and marketing. The site is mobile optimized and includes accessibility features, enhancing user experience across devices and for users with disabilities. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, indicating attention to privacy compliance. However, the absence of visible security headers and lack of published security policies or incident response contacts suggest areas for improvement. The WHOIS data is missing, which is unusual for a healthcare entity but the website content and branding strongly indicate legitimacy. Overall, Parrish Healthcare's digital presence is robust and professional, supporting its business goals effectively. Strategic enhancements in security transparency and WHOIS registration clarity would further strengthen trust and compliance.

70
53
17
60
-
75
100
healthcaremedicalcenterpatientcarecommunityhealthprivacypolicy+5 more
JavaScriptjQueryGoogle Tag ManagerFacebook Pixel+2

Partner Domains:

careers.parrishhealthcare.com
subsidiary
pmc.apihc.com
partner

+2 more partners

2025-07-16T01:12:13.874Z
B

Betano Splash Screen

betano.pt

53
OtherPortugalsmallMEDIUM

The website www.betano.pt currently serves a Cloudflare splash screen page that blocks direct access to its main content. The domain appears to be associated with gambling services, as indicated by the iframe source URL referencing Kaizen Gaming, a known operator in the online betting industry. Due to the Cloudflare Web Application Firewall (WAF) challenge, the accessible content is minimal, lacking any visible privacy policies, terms of service, contact information, or business details. This limits the ability to perform a full security and compliance assessment. From a technical perspective, the site uses Cloudflare for security and analytics, embedding JavaScript beacons for traffic insights. However, no CMS or detailed technology stack is detectable from the limited HTML content. The absence of security headers and privacy compliance indicators further reduces the site's trustworthiness and security posture. Security-wise, the presence of a Cloudflare WAF splash screen suggests an intent to protect the site from automated threats and abuse, which is a positive security measure. However, the lack of visible policies and contact channels for incident response or data protection officers indicates gaps in compliance and transparency. The gambling nature of the business implies regulatory requirements that are not evident on the accessible page. Overall, the site’s risk assessment is constrained by the blocked content. The current publicly accessible page scores low on content quality, security posture, and privacy compliance. Strategic recommendations include improving transparency by publishing privacy and cookie policies, providing clear contact information, enhancing security headers, and ensuring GDPR compliance. For a comprehensive evaluation, access beyond the WAF splash screen is necessary.

55
25
2
70
75
80
100
gamblingcloudflaresecuritysplashscreen
CloudflareJavaScript
2025-07-15T22:21:53.190Z
carollinum.cz favicon

Carollinum

carollinum.cz

64
RetailCzech RepublicmediumMEDIUM

Carollinum is a luxury retail company specializing in high-end watches and accessories from prestigious brands such as Rolex, Patek Philippe, Cartier, and Breitling. The company operates boutiques primarily in the Czech Republic and Central Eastern Europe, positioning itself as a leading luxury watch retailer in the region. Their business model focuses on retail sales, complemented by services like watch repair and individual consulting. The website reflects a professional and consistent brand image targeting affluent customers interested in luxury timepieces. Technically, the website employs modern web technologies including JavaScript frameworks, Typekit fonts, and Google Tag Manager for analytics. It uses a proprietary CMS platform (PuxSiteTemplate) and demonstrates excellent mobile optimization, fast performance, and good SEO practices. Security measures include HTTPS enforcement, secure login forms with CSRF tokens, and a comprehensive cookie consent mechanism compliant with GDPR. The security posture is strong with no visible vulnerabilities or exposed sensitive data. However, the absence of security headers and a public security policy or incident response contact are areas for improvement. The WHOIS data is unavailable, which slightly reduces trustworthiness, but the website's content, branding, and business information strongly indicate legitimacy. Overall, Carollinum's website is a high-quality, secure, and privacy-compliant platform supporting their luxury retail business. Strategic recommendations include enhancing security headers, publishing a security policy, and adding a vulnerability disclosure mechanism to further strengthen trust and security posture.

35
80
2
77
52
85
100
luxurywatchesretaile-commercefashion+4 more
JavaScriptTypekit fontsGoogle Tag ManagerTiny Slider+2
2025-07-15T22:20:32.912Z
iwant.cz favicon

Smarty CZ a.s.

iwant.cz

71
RetailCzech RepublicmediumMEDIUM

iWant.cz is a Czech Republic-based retail company specializing in Apple products and authorized Apple services. As an Apple Premium Partner, it operates both online and through 11 physical stores across the country, targeting Apple users including students and businesses. The website offers a comprehensive product catalog, trade-in services, warranty extensions, and specialized student programs, positioning itself as a trusted and professional Apple reseller and service provider in the Czech market. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript libraries like Tiny Slider and Auto-complete, and integrates analytics and marketing tools such as Google Tag Manager, Google Analytics, and Sklik retargeting. The site is hosted behind Cloudflare, ensuring good performance and security. It is mobile-optimized with excellent design quality and clear navigation, providing a positive user experience. From a security perspective, the site enforces HTTPS and includes cookie consent mechanisms aligned with GDPR. However, it lacks publicly available formal security policies and incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. WHOIS data is not publicly available, likely due to privacy protection, which is common for commercial domains and does not detract from the site's legitimacy. Overall, iWant.cz demonstrates a strong business presence with professional digital infrastructure and good privacy compliance. Strategic improvements include publishing formal security policies, incident response information, and enhancing HTTP security headers to further strengthen trust and security posture.

60
88
2
85
65
85
100
applee-commerceretailtechnologyauthorizedservice+3 more
HTML5CSS3JavaScriptTiny Slider+4
2025-07-15T22:20:27.879Z