Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 485 of 656|Showing 24201-24250 of 32765
wellcomecollection.org favicon

Wellcome Collection

wellcomecollection.org

70
Non-profitUnited KingdommediumMEDIUM

Wellcome Collection is a well-established non-profit cultural institution based in London, offering a free museum and library focused on health, science, medicine, and human experience. The website provides rich content including exhibitions, events, stories, and publications, targeting a broad audience interested in these themes. The organization maintains a strong market position as a reputable educational and cultural resource. Technically, the website is built on modern frameworks such as Next.js and Prismic CMS, hosted on AWS infrastructure, and incorporates advanced analytics and cookie consent mechanisms, reflecting a mature digital presence. Security posture is strong with HTTPS enforced and privacy-conscious analytics, though DNSSEC is not enabled and no explicit security or incident response policies are published. Overall, the site is professional, accessible, and trustworthy, with clear contact information and compliance with privacy regulations. Strategic recommendations include enhancing DNS security, publishing security policies, and maintaining vigilance on third-party scripts. The domain registration is privacy protected but consistent with legitimate use for a non-profit entity, with a domain age appropriate for the organization's history.

45
68
17
85
72
85
100
museumlibraryhealthscienceeducation+5 more
React (Next.js)Google Tag ManagerGoogle AnalyticsSegment Analytics+2
2025-07-10T04:41:00.856Z
O

Otok Krk energija d.o.o.

oke.hr

40
EnergyCroatiasmallHIGH

Otok Krk energija d.o.o. is a Croatian limited liability company focused on producing and supplying renewable energy, primarily solar, to achieve energy independence for the island of Krk. The company is relatively new, founded in 2019, and is owned by the local municipality of Baška with plans to include other local government units as co-owners. Their business model centers on local investment and sustainable energy production, positioning themselves as a key player in the regional green energy market. The website reflects this mission with content in Croatian and some English, targeting local residents, investors, and governmental bodies interested in renewable energy projects. Technically, the website uses common web technologies such as Bootstrap, jQuery, and popular carousel libraries, with integration of Google Analytics and Facebook SDK for tracking and marketing purposes. The site is moderately optimized for mobile and SEO but lacks advanced accessibility features. Security posture is moderate; HTTPS is used but no explicit security headers or incident response policies are published. Privacy and cookie policies exist but lack active consent mechanisms. Overall, the website is professional and trustworthy but could improve in security and privacy compliance. Recommendations include implementing security headers, adding cookie consent, publishing incident response information, and enhancing contact transparency.

15
10
2
85
62
75
-
energyrenewablesolarcroatialocalcommunity+2 more
jQueryBootstrapOwl CarouselPrettyPhoto+3

Partner Domains:

ezok.hr
partner
solarniklaster.org
partner

+2 more partners

2025-07-10T04:40:35.691Z
nextgi.com favicon

NextGi

nextgi.com

68
TechnologyUnited StatessmallMEDIUM

NextGi is a small technology company founded in 2008, specializing in managed IT and security services with a strong emphasis on cybersecurity and customer support. Their website presents a professional and consistent brand image, targeting small to medium businesses seeking comprehensive IT solutions including managed security, VoIP, cloud hosting, and network optimization. The company leverages partnerships with major technology providers such as AWS, Microsoft, and Bitdefender, enhancing their market credibility. Technically, the website uses modern JavaScript libraries and analytics tools, is hosted behind Cloudflare, and employs HTTPS for secure communications. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. However, there are gaps in privacy compliance and security best practices, notably the absence of privacy and cookie policies, security headers, and incident response information. From a security perspective, the domain registration is consistent and trustworthy, with no signs of suspicious activity. The company demonstrates a security-first approach in its service offerings but should improve its website security posture by implementing recommended headers and compliance documentation. Overall, the website is functional and professional but could benefit from enhanced privacy and security transparency. The risk assessment indicates moderate security maturity with no critical vulnerabilities detected but highlights compliance gaps that could expose the company to regulatory risks. Strategic recommendations include publishing privacy and cookie policies, adding security headers, and providing incident response contacts to strengthen trust and compliance.

35
35
55
87
65
85
100
manageditcybersecurityvoipcloudsolutionsbackupanddisasterrecovery+5 more
jQuerySwiper.jsAOS (Animate On Scroll)Font Awesome+3

Partner Domains:

aws.amazon.com
partner
extremenetworks.com
partner

+3 more partners

2025-07-10T04:38:49.879Z
А

Асоціація УМДПЛ

umdpl.info

56
Non-profitUkrainesmallMEDIUM

The website umdpl.info represents a Ukrainian human rights non-profit association named Асоціація УМДПЛ, also branded as “ФРІРАЙТС”. It focuses on digital rights, penitentiary oversight, legal education, criminal justice, and activist protection. The organization targets activists, government bodies, and the general Ukrainian public, providing educational resources, reports, and special projects. The domain is well-established since 2008, supporting the organization's credibility and longevity. Technically, the site runs on an outdated WordPress 4.4.2 CMS with older jQuery libraries, which introduces security risks. The site uses Google Analytics and Facebook SDK for tracking and social media integration. Mobile optimization and accessibility are basic, with moderate performance. No advanced SEO or modern frameworks are detected. Security posture is moderate but with notable gaps: HTTPS is enabled, but no DNSSEC, no security headers, and no cookie consent mechanisms are present. The outdated CMS and libraries increase vulnerability exposure. No explicit privacy or cookie policies were found, indicating compliance gaps with GDPR and related regulations. Overall, the site is functional and credible for its non-profit mission but requires technical and security modernization. Strategic improvements in security headers, CMS updates, privacy compliance, and user experience would enhance trust and reduce risk.

50
35
2
60
62
70
100
humanrightsnon-profitukrainelegaleducationdigitalrights+1 more
WordPress 4.4.2jQuery 1.11.3Google AnalyticsGoogle APIs+1

Partner Domains:

antydot.info
partner
policeundercontrol.umdpl.info
partner

+3 more partners

2025-07-10T04:37:29.474Z
zonercloud.com favicon

ZONER, s.r.o.

zonercloud.com

73
TechnologySlovakiamediumMEDIUM

ZonerCloud, operated by ZONER, s.r.o., is a Slovakia-based cloud services provider specializing in high-performance virtual private servers (VPS), managed hosting, email hosting, cloud storage, and AI/GPU server rentals. The company positions itself as a market leader in VPS performance within its region, leveraging partnerships with VMware and Microsoft to deliver reliable and scalable cloud infrastructure solutions. Their offerings target businesses and developers seeking affordable, powerful, and flexible cloud computing resources with rapid deployment times and strong uptime guarantees. Technically, the website demonstrates a mature digital infrastructure using modern web technologies such as Bootstrap, jQuery, and various UI/UX libraries. It integrates analytics and marketing tools including Google Analytics, Google Tag Manager, and Facebook Pixel, alongside a live chat support system. The site is well-optimized for mobile devices, features comprehensive cookie consent mechanisms, and employs HTTPS with a DigiCert SSL certificate, indicating a strong commitment to security and privacy. From a security perspective, while the site enforces HTTPS and uses secure forms with CSRF tokens, it lacks publicly available formal security policies or incident response disclosures. No critical vulnerabilities or exposed sensitive data were detected in the content. The absence of WHOIS registrant data slightly reduces trust but is mitigated by the professional presentation and trust signals such as certifications and partner logos. Overall, ZonerCloud presents a trustworthy and professional cloud service platform with strong business credibility and technical maturity. Strategic improvements in transparency around security policies and incident response, as well as WHOIS data availability, would further enhance trust and compliance posture.

95
73
25
40
90
75
100
cloudvpsvirtualservermanagedhostingemailhosting+3 more
BootstrapjQueryFontAwesomeIon RangeSlider+7
2025-07-10T04:35:01.222Z
W

World Nuclear Association

world-nuclear-news.org

64
EnergyUnited KingdommediumMEDIUM

World Nuclear News is a well-established information service operated by the World Nuclear Association, providing authoritative news, features, and analysis on the global nuclear energy sector. The website targets industry professionals, policymakers, and stakeholders, offering a comprehensive range of content including news articles, podcasts, and newsletters. The business model is centered on information dissemination supported by an industry association, positioning itself as a trusted source within the energy sector. Technically, the website employs modern web technologies such as Bootstrap and jQuery, integrates analytics tools including Google Analytics and Microsoft Clarity, and is hosted with Cloudflare DNS services. The site demonstrates good mobile optimization and SEO practices, though some accessibility features could be enhanced. The infrastructure supports a professional and responsive user experience with moderate performance. From a security perspective, the site enforces HTTPS, uses reCAPTCHA for form protection, and maintains domain registration safeguards. However, it lacks advanced security headers and does not publish explicit security policies or incident response contacts. No vulnerabilities or suspicious activities were detected, indicating a solid security posture but with room for improvement in transparency and DNS security. Overall, the website is professional, trustworthy, and compliant with privacy regulations, including GDPR. It provides clear contact information and maintains consistent branding. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing a security policy, and establishing a vulnerability disclosure program to further enhance security and trust.

25
83
2
70
72
75
100
nuclearenergynewsanalysispodcasts+9 more
BootstrapjQueryGoogle AnalyticsMicrosoft Clarity+1
2025-07-10T03:34:19.566Z
udice.org favicon

UDICE

udice.org

54
EducationFrancemediumMEDIUM

UDICE is a French alliance of 13 major universities focused on promoting research excellence, enhancing higher education performance, and developing attractive innovation ecosystems. The website presents a professional and consistent brand image, targeting academic institutions and stakeholders in higher education and research. The business model is non-profit and collaborative, positioning UDICE as a key player in the French academic landscape. Technically, the website is built on WordPress using Elementor and Yoast SEO, with integration of Google Analytics and Tag Manager for user tracking. The site is mobile-optimized and performs moderately well, though accessibility features are basic. The SSL configuration is excellent, ensuring secure HTTPS connections. Security posture is generally good with HTTPS enforced and no exposed sensitive data, but lacks security headers and a formal security policy or incident response information. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism detected, which is a gap given GDPR relevance. Overall, the site is trustworthy and professional, though transparency is reduced by the absence of WHOIS data and limited security disclosures. Strategic improvements in security headers, privacy compliance, and incident response communication would enhance the site's security maturity and user trust.

-
35
17
70
72
55
100
educationresearchuniversityalliancefrance+3 more
WordPressElementorYoast SEOjQuery+2
2025-07-10T03:33:19.366Z
heydoo.lu favicon

SCRIPT

heydoo.lu

47
EducationLuxembourgmediumHIGH

Heydoo.lu is an official educational content platform operated under the auspices of Luxembourg's Ministry of National Education, Childhood and Youth, branded as SCRIPT. The platform aggregates a wide range of educational materials including publications, audio, video, apps, and websites, targeting students, teachers, parents, and educators. It supports multilingual content in Luxembourgish, French, and German, enhancing accessibility for its diverse audience. The website is built on Drupal 10 with modern UI frameworks and integrates analytics tools such as Google Analytics and Facebook Pixel for user behavior insights. Technically, the site demonstrates a solid infrastructure with good mobile optimization, accessibility, and SEO practices. Security posture is adequate with HTTPS enforced and anti-bot measures, though some security headers could be improved. Privacy compliance is strong, featuring comprehensive privacy and cookie policies aligned with GDPR requirements. Contact information is primarily provided via a contact form, with no direct emails or phone numbers publicly listed. The absence of WHOIS data due to a malformed domain query limits domain registration trust analysis. However, the official government affiliation and quality content strongly support the site's legitimacy. No adult or questionable content is present, making it safe for general audiences. Overall, Heydoo.lu is a credible, well-maintained educational resource platform with room for minor security enhancements.

40
10
17
70
62
75
20
educationgovernmentluxembourgdrupalmultilingual+1 more
Drupal 10Commerce 2UIkit 3.6.22Google Analytics+2
2025-07-10T03:32:18.658Z
istria-bike.com favicon

Istra Bike

istria-bike.com

44
TransportationCroatiasmallHIGH

Istra Bike is an official regional cycling tourism portal for the Istria region in Croatia, providing comprehensive information on bike trails, accommodation, events, and related services. The website targets cycling tourists and outdoor enthusiasts, positioning itself as a key resource for promoting cycling tourism in the area. The platform offers detailed trail information, event calendars, multimedia content, and service listings such as bike rentals and transport. Technically, the website employs modern web technologies including Bootstrap 5, jQuery, Slick Carousel, and Lightbox2, ensuring a responsive and user-friendly experience. The site is served over HTTPS and includes cookie consent mechanisms, indicating awareness of privacy regulations. However, some security best practices such as explicit security headers and detailed security policies are missing. From a security perspective, the site maintains a good baseline with HTTPS and cookie consent but lacks advanced security headers and incident response information. The absence of WHOIS data for the domain raises concerns about domain registration transparency, although the website content and partner affiliations suggest legitimacy. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is professionally designed and functional, with good content quality and user experience. The main risk lies in the missing WHOIS registration data, which slightly reduces trustworthiness. Strategic improvements in security headers, transparency policies, and domain registration clarity are recommended to enhance trust and compliance.

35
35
2
70
62
75
-
bikecyclingistriatourismoutdoor+2 more
Bootstrap 5.3.2jQuery 3.7.1Slick Carousel 1.8.1Lightbox2 2.11.4+3

Partner Domains:

www.istria-outdoor.com
partner
www.aminess.com
partner

+3 more partners

2025-07-10T03:31:51.613Z
autoklub-servisni.cz favicon

Autoklub servisní s.r.o.

autoklub-servisni.cz

60
HospitalityCzech RepublicsmallMEDIUM

Autoklub servisní s.r.o. operates a historic event venue located in central Prague, offering rental spaces and catering services primarily targeting event organizers and corporate clients. The business leverages the unique appeal of a protected first republic style building, positioning itself as a niche hospitality provider with a focus on quality and tradition. The website reflects a professional and consistent brand image with clear service offerings and customer testimonials enhancing trust. Technically, the website is built on WordPress 5.7.2 with common modern web technologies including jQuery, Google Tag Manager, Google Analytics, and Smartlook for user behavior tracking. The site is mobile optimized and SEO friendly, though performance is moderate. Security posture is adequate with HTTPS enforced and cookie consent implemented, but lacks advanced security headers and explicit privacy or security policies. The absence of WHOIS data is a notable concern, reducing domain trustworthiness and raising questions about registration transparency. No contact emails or phone numbers are explicitly provided, limiting direct communication channels. Overall, the site is functional and professional but would benefit from enhanced privacy compliance and security practices. Strategically, the company should focus on improving transparency through WHOIS data, publishing comprehensive privacy and security policies, and implementing stronger security headers to bolster trust and compliance.

15
40
2
95
72
85
100
eventvenuecateringpraguehistoricbuildingconference+1 more
WordPress 5.7.2jQuery 3.4.1Google Tag ManagerGoogle Analytics+1
2025-07-10T03:31:26.480Z
demch.co favicon

demch.co

demch.co

51
TechnologyUkrainesmallMEDIUM

demch.co is a Ukrainian-based web development company specializing in creating websites and digital services for non-profit organizations and social change initiatives. With over 12 years of experience and more than 300 projects completed, the company positions itself as a trusted partner for NGOs, government agencies, and international organizations. Their key services include full-cycle website development, consulting, technical support, branding, design, and animation. The website is professionally designed, mobile-optimized, and provides clear contact information, enhancing user trust and engagement. Technically, the site employs modern web technologies such as HTML5, CSS3, JavaScript, and popular libraries like jQuery, TweenMax, and AOS for animations. Google Analytics and Google Tag Manager are used for tracking, indicating a moderate level of user data collection. Hosting appears to be managed via NameCheap with custom DNS servers. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, it lacks DNSSEC and visible security headers, which are recommended to enhance security posture. No privacy, cookie, or terms of service policies are present, representing compliance gaps especially under GDPR. No incident response or vulnerability disclosure information is provided. Overall, the website is safe, professional, and trustworthy with a strong focus on serving the non-profit sector. Strategic improvements in privacy compliance and security hardening would further strengthen its position and reduce risk.

-
35
47
60
-
85
100
webdevelopmentnon-profitsocialchangeukrainedigitalservices+3 more
HTML5CSS3JavaScriptjQuery+6
2025-07-10T03:28:04.537Z
O

Oy Suomen Tietotoimisto

sttinfo.fi

67
MediaFinlandmediumMEDIUM

Oy Suomen Tietotoimisto operates the STT Info platform, a Finnish press release distribution service targeting media professionals and companies. The website facilitates the dissemination of over 17,000 press releases annually, positioning itself as a key player in the Finnish media communication sector. The business model centers on subscription and one-time purchase of press releases, serving a professional audience seeking timely and relevant news content. The company maintains a consistent brand presence and provides comprehensive contact and privacy information, reinforcing trust and professionalism. Technically, the website employs modern web technologies including React, Google Fonts, and Cloudflare for content delivery and security. It integrates Google Analytics and social media tracking tools while implementing a robust cookie consent mechanism compliant with GDPR. The site demonstrates good mobile optimization and basic accessibility features, with a moderate performance profile. From a security perspective, the site enforces HTTPS, employs standard security headers, and manages session cookies securely. However, explicit security policies and incident response information are not published, representing an area for improvement. No vulnerabilities or suspicious patterns were detected, and WHOIS data confirms the legitimacy and consistency of the domain registration with the business identity. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance. Strategic recommendations include publishing detailed security and incident response policies, enhancing accessibility, and maintaining vigilance on third-party scripts to sustain security posture.

35
83
17
70
72
75
100
pressreleasemedianewsdistributioncookieconsentprivacypolicy+2 more
ReactGoogle FontsCloudflare (for CDN and security)Google Analytics+2

Partner Domains:

viestintapalvelut.fi
partner
2025-07-10T03:26:14.143Z
coalition-s.org favicon

cOAlition S

coalition-s.org

54
EducationN/amediumMEDIUM

cOAlition S operates as an international consortium promoting Plan S, an initiative to accelerate full and immediate Open Access to scientific publications. The organization targets research funders, academic institutions, and publishers to ensure publicly funded research is openly accessible. The website reflects a professional and authoritative presence with clear information about their mission, principles, and tools supporting Open Access. Technically, the website is built on WordPress, leveraging modern web technologies such as jQuery, Font Awesome, Google Analytics, and reCAPTCHA for security and analytics. The site is well-structured, mobile-optimized, and uses HTTPS, indicating a mature digital infrastructure. However, some security headers are missing, which could be improved to enhance security posture. Security-wise, the site enforces HTTPS and uses reCAPTCHA to protect forms, but lacks explicit security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy and cookie policies are present and indicate GDPR compliance, supporting user privacy and regulatory adherence. Overall, the website presents a low-risk profile with a strong business credibility and good technical implementation. The main limitation is the absence of WHOIS data, which restricts domain registration trust analysis. Strategic improvements in security headers and explicit security policies would further strengthen the site's security posture.

40
68
17
70
62
70
20
openaccessscientificpublishingplanscoalitionsresearchfunding+1 more
WordPressjQueryFont AwesomeGoogle Analytics+1
2025-07-10T02:21:30.407Z
energycenter.org favicon

Center for Sustainable Energy

energycenter.org

70
EnergyUnited StatesmediumMEDIUM

The Center for Sustainable Energy is a well-established nonprofit organization focused on advancing decarbonization through sustainable, equitable, and resilient transportation, buildings, and communities. Their services include program implementation, advisory, incentive management, policy analysis, and outreach, supported by their proprietary software platform Caret® for electric vehicle policy. The organization targets government agencies, utilities, policymakers, and clean energy stakeholders, positioning itself as a national leader in clean energy program management. Technically, the website is built on Drupal 10 with modern frameworks such as Bootstrap and FontAwesome, and integrates analytics and marketing tools like Google Analytics, Google Tag Manager, and Marketo. The site is mobile-optimized, accessible, and SEO-friendly, hosted likely via GoDaddy infrastructure. Performance is moderate with good technical implementation. From a security perspective, the site uses HTTPS and follows some best practices like external link security attributes, but lacks visible security headers and a cookie consent mechanism, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected. The WHOIS data shows a long-established domain with privacy protection appropriate for a nonprofit. Overall, the website is professional, trustworthy, and content-rich, with minor gaps in privacy compliance and security headers. Strategic recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, and publishing security policies to enhance trust and compliance.

50
53
17
80
95
85
100
nonprofitcleanenergysustainabilityelectricvehiclesdecarbonization+1 more
Drupal 10Bootstrap CSSFontAwesomeGoogle Analytics+3
2025-07-10T01:17:07.642Z
autoklub.cz favicon

Autoklub České republiky

autoklub.cz

66
TransportationCzech RepublicmediumMEDIUM

Autoklub České republiky is a well-established national automobile club in the Czech Republic, providing a broad range of services including motorsport event organization, membership management, driver training, insurance, and road safety advocacy. The organization is affiliated with major international automotive bodies such as FIA, FIM, and FIVA, reinforcing its authoritative position in the automotive and motorsport sectors within the country. The website serves as a comprehensive portal for members and the public, offering detailed information on disciplines, commissions, and various automotive activities. Technically, the website is built on WordPress CMS, enhanced with performance optimization tools like WP Rocket, and integrates Google Analytics and Google Tag Manager for visitor tracking and marketing insights. The site demonstrates good mobile optimization and SEO practices, with structured navigation and consistent branding. Security measures include HTTPS enforcement and standard security headers, though explicit security policies and incident response contacts are not published. From a security and compliance perspective, the site implements cookie consent mechanisms aligned with GDPR requirements, though a formal privacy policy page is not clearly identified. WHOIS data for the domain is unavailable, likely due to registry policies or privacy protection, which slightly impacts trust signals but is mitigated by the professional presentation and affiliations. No critical vulnerabilities or security issues were detected in the accessible content. Overall, Autoklub České republiky presents a credible and professional online presence suitable for its audience. Strategic recommendations include publishing a clear privacy policy, incident response contacts, and vulnerability disclosure information to enhance transparency and trust. Continued attention to security best practices and compliance will support the organization's reputation and operational resilience.

90
40
17
75
42
90
100
automobilemotorsportmembershiproadsafetyczechrepublic+1 more
WordPressWP RocketGoogle Tag ManagerGoogle Analytics+1
2025-07-10T01:15:11.875Z
fimspeedway.com favicon

SGP - FIM Speedway

fimspeedway.com

63
TransportationN/amediumMEDIUM

The website www.fimspeedway.com serves as the official digital platform for the FIM Speedway Grand Prix and related speedway events. It offers comprehensive information including event calendars, standings, results, rider profiles, news, media access, ticket purchasing, and an e-commerce shop. The site targets speedway fans and sports enthusiasts globally, positioning itself as a central hub for speedway racing content and engagement. Technically, the site is built using modern web technologies such as React and Next.js, ensuring good mobile optimization and SEO performance. It integrates Google Tag Manager and Google Analytics for tracking and uses OneTrust for cookie consent management, reflecting a moderate level of digital maturity. The site loads with moderate speed and provides a good user experience with clear navigation and consistent branding. From a security perspective, the website enforces HTTPS and implements cookie consent mechanisms, but lacks explicit security headers and published security policies. No contact information or privacy policy was detected in the provided content, which may impact user trust and compliance with data protection regulations. The absence of WHOIS data for the domain raises concerns about domain registration legitimacy, although the website content and official social media presence suggest a legitimate operation. Overall, the site is professionally designed and functional but would benefit from enhanced transparency regarding privacy, security policies, and contact information. Verification of domain registration and addition of security best practices would strengthen its trustworthiness and compliance posture.

20
88
17
70
65
70
100
speedwaysportsmotorsportfimsgp+3 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+1
2025-07-10T01:14:51.757Z