Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 48 of 775|Showing 2351-2400 of 38748
infracert.no favicon

KraftCERT AS

infracert.no

70
EnergyNorwaysmallMEDIUM

KraftCERT AS is a specialized non-profit cybersecurity organization focused on securing process control systems within the Norwegian energy sector, including power, petroleum, and related industries. It operates as an Information Sharing and Analysis Center (ISAC) and Incident Response Team (IRT), providing members with vulnerability monitoring, threat intelligence, incident handling, advisory services, exercises, and training. The organization is recognized nationally and internationally, holding certifications such as Trusted Introducer and membership in FIRST. The website reflects a professional and focused approach, targeting companies in critical infrastructure sectors with clear contact channels and published PGP keys for secure communication. Technically, the website employs modern frameworks like Bootstrap 5, ensuring mobile responsiveness and a good user experience. However, it lacks explicit privacy and cookie policies, and no analytics or tracking scripts are detected, indicating a privacy-conscious design. The absence of WHOIS data limits domain trust verification, but the website content and contact information appear legitimate and consistent with the organization's mission. From a security perspective, the site demonstrates good practices such as HTTPS usage and incident response contact availability. The publication of PGP keys enhances secure communication. Nonetheless, the lack of security headers and formal privacy compliance documents represents areas for improvement. Overall, the site is trustworthy and professional but could enhance compliance and security posture with additional policies and technical headers. The overall risk assessment is moderate with recommendations to improve privacy compliance, implement security headers, and publish vulnerability disclosure policies. These steps would strengthen trust and align the organization with best practices in cybersecurity governance.

80
35
47
70
72
85
100
cybersecurityincidentresponseenergysectorisaccert+2 more
Bootstrap 5JavaScript

Partner Domains:

infracert.no
partner
2025-10-30T12:04:41.981Z
legeforeningen.no favicon

Legeforeningen

legeforeningen.no

10
HealthcareNorwaylargeCRITICAL

Legeforeningen is a well-established Norwegian medical association founded in 1886, serving as a professional body for doctors and medical students across Norway. The website provides comprehensive information about the association's advocacy, educational offerings, membership benefits, and job opportunities. It targets medical professionals and students, positioning itself as a key player in Norway's healthcare sector. The site is professionally designed with consistent branding and high-quality content, reflecting its authoritative market position. Technically, the website employs modern JavaScript frameworks such as Vue.js, integrates Matomo for analytics, and uses Microsoft Application Insights for telemetry. The CMS appears to be Episerver, supporting a structured and responsive design. Performance is moderate with good mobile optimization and basic accessibility features. SEO practices are well implemented with appropriate meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks visible security headers and does not publicly disclose security policies or incident response procedures. Privacy compliance is partially addressed with a privacy and cookie policy present, but no explicit cookie consent mechanism is detected. The domain WHOIS data is consistent with the organization's identity, supporting legitimacy. Overall, Legeforeningen's website is a credible, professional platform with strong business credibility and good technical implementation. Enhancements in security headers, privacy consent mechanisms, and public security policies would further strengthen its posture.

-
-
-
-
-
-
-
legeforeningenmedicalassociationnorwayhealthcaredoctors+2 more
JavaScriptMatomo AnalyticsMicrosoft Application InsightsVue.js (inferred from vue components)+1

Partner Domains:

legejobber.no
partner
tidsskriftet.no
partner
2025-10-30T11:40:16.469Z
openbaarministerie.nl favicon

Openbaar Ministerie

openbaarministerie.nl

63
GovernmentNetherlandslargeMEDIUM

The Openbaar Ministerie (OM) website serves as the official online presence of the Dutch Public Prosecution Service, a key government entity responsible for criminal prosecution and law enforcement leadership in the Netherlands. The site provides comprehensive information about the OM's role, ongoing cases, news updates, and public resources. It targets a broad audience including the general public, legal professionals, victims, and suspects, offering transparency and accessibility to justice-related information. The OM operates under the Ministry of Justice and Security, reinforcing its authoritative position in the national justice system. Technically, the website employs modern web technologies including JavaScript and jQuery UI, with analytics powered by Piwik PRO, reflecting a moderate to advanced digital maturity. The site is hosted on government infrastructure, ensuring reliability and compliance with national standards. Mobile optimization and accessibility features are well implemented, contributing to a positive user experience. SEO and metadata are properly configured, enhancing discoverability. From a security perspective, the site enforces HTTPS with strong SSL configuration and uses nonce attributes in scripts to mitigate injection risks. Privacy and cookie policies are clearly presented with consent mechanisms, aligning with GDPR requirements. However, explicit security policy documentation and incident response contacts are not publicly available, representing an area for improvement. No vulnerabilities or suspicious activities were detected in the content or technical setup. Overall, the OM website demonstrates a high level of professionalism, trustworthiness, and compliance appropriate for a government justice institution. Strategic recommendations include publishing formal security policies, enhancing security headers, and providing clear incident response contacts to further strengthen security posture and public trust.

85
68
17
70
-
75
100
governmentjusticeprosecutionlawenforcementpublicservice+1 more
JavaScriptjQuery UIPiwik PRO analytics

Partner Domains:

mijnslachtofferzaak.nl
partner
moordzaak.om.nl
partner

+2 more partners

2025-10-30T11:22:37.812Z
uktv.co.uk favicon

UKTV Media Limited

uktv.co.uk

67
MediaUnited KingdomlargeMEDIUM

UKTV Media Limited operates as a multi-award winning British broadcaster providing a portfolio of television channels and on-demand services primarily targeting audiences in the UK and Ireland. Their business model focuses on content distribution and broadcasting, leveraging multiple channels such as U&Dave, U&W, and Gold, among others. The company maintains a strong market position as an established media entity with a professional and well-branded corporate website. Technically, the website is built using modern web technologies including React and Next.js, ensuring fast performance, mobile responsiveness, and good SEO practices. The use of CDN services for media content and OneTrust for cookie consent demonstrates a mature digital infrastructure. From a security perspective, the site enforces HTTPS, implements standard security headers, and provides cookie consent mechanisms aligned with GDPR requirements. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response information are not publicly available, which could be improved. Overall, the website presents a low-risk profile with high professionalism and compliance. The WHOIS data for the subdomain is unavailable due to domain naming rules, but this does not detract from the legitimacy of the site given the strong brand and consistent content. Strategic recommendations include publishing detailed security policies and adding a vulnerability disclosure program to enhance trust further.

30
88
17
75
72
65
100
mediabroadcastingcorporateuktventertainment+2 more
ReactNext.jsJavaScriptCSS

Partner Domains:

gold.uktv.co.uk
subsidiary
alibi.uktv.co.uk
subsidiary

+1 more partners

2025-10-30T11:21:57.371Z
exchangeratesapi.io favicon

APILayer

exchangeratesapi.io

62
TechnologyUnited StatesmediumMEDIUM

ExchangeRatesAPI.io is a technology-driven service providing real-time and historical currency exchange rate data via a REST API. Established in 2018 and operated under the APILayer brand, it serves over 100,000 developers worldwide, offering tiered subscription plans from free to enterprise levels. The platform is well-positioned in the financial data API market, emphasizing reliability, scalability, and ease of integration for business users. The website demonstrates professional branding, comprehensive documentation, and a clear value proposition targeting developers and businesses requiring accurate forex data. Technically, the website employs modern web standards including HTML5, CSS3, JavaScript, and jQuery, with performance optimizations and mobile responsiveness. Hosting and DNS are managed via reputable providers including GoDaddy and Cloudflare. Analytics and marketing tools such as Google Tag Manager, Crazy Egg, and FirstPromoter are integrated, supporting user engagement and affiliate programs. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, security headers could be improved and a dedicated security policy or incident response contact is absent. Privacy compliance is strong, with clear privacy and cookie policies hosted on the parent company domain, indicating GDPR awareness and consent mechanisms. Overall, ExchangeRatesAPI.io presents a trustworthy, professional, and technically sound service with minor areas for security enhancement. It is suitable for businesses seeking reliable currency data APIs with transparent pricing and support options.

15
73
2
60
77
80
100
exchangeratesapicurrencyconversionfinancialdataapireal-timecurrencydatahistoricalexchangerates+3 more
HTML5CSS3JavaScriptjQuery+2

Partner Domains:

apilayer.com
parent
ideracorp.com
parent

+3 more partners

2025-10-30T11:19:42.158Z
homedics.com favicon

Homedics

homedics.com

66
RetailUnited StateslargeMEDIUM

Homedics operates a professionally designed e-commerce website specializing in health, wellness, and relaxation products. The company positions itself as a leading global manufacturer and retailer in this sector, offering a wide range of products including massage devices, air purifiers, humidifiers, and spa-related items. The website is built on the Shopify platform, leveraging modern technologies and integrations with marketing and analytics tools such as Klaviyo, Google Tag Manager, and Dynamic Yield. The site demonstrates strong branding consistency and excellent content quality, targeting consumers interested in wellness and home comfort. Security posture is solid with HTTPS enforcement and security headers, though explicit security policies and incident response information are not publicly disclosed. Privacy and cookie policies are present and indicate GDPR compliance with active consent mechanisms. WHOIS data is unavailable, likely due to privacy protection or domain registration issues, but the website's professional presentation and Shopify hosting suggest legitimacy. Overall, the site scores well on content, technical implementation, security, and privacy compliance, with minor penalties for missing explicit contact and security policy details.

75
73
2
80
47
70
100
e-commercewellnesshealthmassagerelaxation+2 more
ShopifyJavaScriptGoogle Tag ManagerKlaviyo+6

Partner Domains:

registration.homedics.com
partner
obusforme.com
subsidiary

+1 more partners

2025-10-30T11:17:11.748Z
russellhobbs.com favicon

Russell Hobbs

russellhobbs.com

53
RetailUnited KingdomlargeMEDIUM

Russell Hobbs operates as a well-established retail brand specializing in household appliances with a broad international presence, particularly across Europe. The website analyzed serves primarily as a country and region selector directing users to localized versions of the Russell Hobbs e-commerce platform. The business model focuses on retail sales supported by localized offers and customer support tailored to regional markets. The brand demonstrates consistent identity and a large market footprint with a domain age dating back to 1999, indicating long-term market presence. From a technical perspective, the website uses standard web technologies including HTML5, CSS, and JavaScript, hosted on Rackspace infrastructure. The site is moderately optimized for performance and mobile use, with basic accessibility and SEO features. However, the landing page analyzed is minimalistic, lacking advanced frameworks or CMS indicators, and does not include analytics or marketing scripts in the provided content. Security posture assessment reveals significant gaps: no visible security headers, no HTTPS confirmation in the provided data, and absence of privacy or cookie policies. The domain registration is consistent and secure with domain lock statuses, but the website itself lacks visible security best practices and compliance indicators. No contact or incident response information is provided on this page, limiting transparency and user trust. Overall, the website is functional for its purpose but requires improvements in security, privacy compliance, and user engagement features to enhance trust and regulatory adherence. Strategic recommendations include implementing HTTPS with strong SSL, publishing comprehensive privacy and cookie policies, adding security headers, and providing clear contact and incident response channels.

15
40
2
75
67
65
100
retailhouseholdappliancese-commercelocalizationbrand
HTML5CSSJavaScript
2025-10-30T11:16:56.709Z
schema.org favicon

Schema.org Community Group

schema.org

55
TechnologyN/alargeMEDIUM

Schema.org is a well-established, community-driven project founded by major technology companies including Google, Microsoft, Yahoo, and Yandex. It provides a comprehensive and extensible vocabulary for structured data markup on the Internet, widely adopted by millions of domains and powering rich experiences across major platforms. The website reflects this authoritative position with excellent content quality, consistent branding, and a clear focus on technical and developer audiences. Technically, the site employs modern web technologies such as HTML5, CSS, JavaScript, and jQuery, and integrates Google services including Custom Search Engine and Analytics. Hosting on Google nameservers and use of HTTPS ensures reliable and secure delivery. The site is mobile optimized and accessible, with good SEO practices evident. However, some security best practices such as enabling DNSSEC and publishing security headers could be improved. From a security perspective, the domain registration is consistent and trustworthy, with domain status protections in place. No WAF or blocking mechanisms interfere with content access. The site lacks explicit privacy and cookie policies, which represents a compliance gap especially under GDPR. No incident response or vulnerability disclosure information is published, which could be enhanced to improve transparency and trust. Overall, Schema.org presents a professional, secure, and authoritative web presence with minor areas for improvement in privacy compliance and security hardening. The risk profile is low, and the site is suitable for its broad technical audience.

15
35
2
70
42
90
100
structureddataschemawebmastersseotechnology+2 more
HTML5CSSJavaScriptjQuery+2
2025-10-30T11:16:36.656Z
jbl.co.nz favicon

JBL

jbl.co.nz

68
RetailNew ZealandlargeMEDIUM

The website www.jbl.co.nz serves as the official New Zealand online store for JBL, a globally recognized audio brand. It offers a wide range of premium audio products including speakers, headphones, professional audio equipment, and home audio systems. The site targets general consumers and professional users in New Zealand, positioning itself as a trusted retail channel for JBL products. The business model is primarily e-commerce retail with additional support and product registration services. The website demonstrates consistent branding and good content quality, supporting JBL's market presence in the region. From a technical perspective, the site leverages modern web technologies including JavaScript, jQuery, Google Tag Manager, and Salesforce Commerce Cloud (Demandware) as its CMS platform. It integrates marketing and analytics tools such as Monetate and Bazaarvoice, alongside a robust cookie consent mechanism via OneTrust, indicating a mature digital infrastructure. The site is mobile optimized with good SEO and accessibility basics, though some improvements in accessibility could be made. Security posture is moderate; HTTPS is implied and cookie consent is implemented, but explicit security headers and policies are not evident in the provided data. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data limits domain legitimacy verification, but the site content and branding strongly suggest a legitimate official presence. Privacy compliance is good with cookie consent, though no explicit privacy policy or terms of service pages were found in the analyzed content. Overall, the website is a professional, well-structured e-commerce platform with a solid business reputation and adequate technical implementation. Strategic recommendations include enhancing security headers, publishing clear privacy and security policies, and improving accessibility features to further strengthen trust and compliance.

70
88
17
50
67
70
100
audiospeakersheadphonesretaile-commerce+2 more
JavaScriptjQueryGoogle Tag ManagerMonetate+3
2025-10-30T11:16:09.161Z
threejs.org favicon

10dencehispahard, S.L.

threejs.org

10
TechnologySpainmediumCRITICAL

Three.js is a well-established open-source JavaScript 3D library that enables developers to create interactive 3D graphics in web browsers using WebGL technology. The website serves as a hub for documentation, examples, developer tools, and community engagement, positioning itself as a leading resource in the web 3D graphics space. The business model is primarily community-driven with educational resources and merchandising as supplementary revenue streams. The domain is mature and registered to a Spanish company, consistent with the website's technical and community focus. Technically, the website employs modern web technologies including JavaScript and WebGL, with integration of Google Analytics and Tag Manager for user tracking. The site is performant, mobile-optimized, and provides a good user experience with clear navigation and relevant content. However, it lacks some advanced SEO and accessibility features. Security posture is adequate with HTTPS enabled and domain registration protections in place, but could be improved by enabling DNSSEC and adding security headers. From a security and compliance perspective, the site does not provide visible privacy, cookie, or terms of service policies, nor does it have a vulnerability disclosure or security incident response contact. This represents a compliance gap, especially regarding GDPR and user privacy. No contact emails or phone numbers are provided, which may limit direct communication channels. No adult or unsafe content is present, making the site safe for general audiences. Overall, the website is credible, technically sound, and trusted within its niche, but would benefit from enhanced privacy compliance and security best practices to improve user trust and regulatory adherence.

-
-
-
-
-
-
-
3djavascriptwebglopensourcetechnology+1 more
JavaScriptWebGLGoogle AnalyticsDNSimple DNS+1
2025-10-30T10:18:22.562Z
playandnope.com favicon

gotoAndPlay OÜ

playandnope.com

56
TechnologyEstoniamediumMEDIUM

Play & NOPE Alliance is a joint venture between the development house gotoAndPlay and design studio NOPE Creative, based in Estonia. The company offers comprehensive digital-first services including business transformation consulting, design and innovation, software development, and technical maintenance. Their market position is strengthened by multiple industry awards and a portfolio of reputable clients across sectors such as technology, energy, telecommunications, finance, and retail. The website reflects a mature digital presence with clear branding and professional content tailored to businesses seeking scalable digital solutions. Technically, the website is built on WordPress with modern JavaScript libraries and performance optimizations such as WP Rocket. It employs Google Tag Manager for analytics and uses cookie consent mechanisms to comply with GDPR. The site is mobile-optimized, accessible, and SEO-friendly, indicating a high level of digital maturity. From a security perspective, the site uses HTTPS with a valid SSL certificate and enforces domain transfer restrictions. However, DNSSEC is not enabled, and some security headers are missing, suggesting room for improvement. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed with clear policies and consent management. Overall, the website and business demonstrate a strong security posture and trustworthy digital presence. Strategic recommendations include enabling DNSSEC, adding security headers, and publishing a formal security policy to further enhance trust and compliance.

45
65
17
65
72
80
20
digitaltransformationdesigndevelopmentbusinessservicesestonia+2 more
WordPressJavaScriptjQueryGoogle Tag Manager+3

Partner Domains:

play.ee
partner
nope.ee
partner
2025-10-30T10:17:37.450Z