Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 49 of 64|Showing 2401-2450 of 3162
snapav.com favicon

Snap One

snapav.com

73
TechnologyUnited StateslargeMEDIUM

Snap One operates as a leading manufacturer and distributor specializing in Audio Video, Networking, Surveillance, Power, and Structured Wiring products tailored for custom integrators and professional installers. The company maintains a strong market position within the technology and B2B e-commerce sectors, offering a comprehensive product portfolio to its target audience. The website reflects a professional and consistent brand image, supporting its business model effectively. From a technical perspective, the website leverages a modern technology stack including JavaScript frameworks, Google Analytics, Google Tag Manager, Dynamic Yield for personalization, FullStory for session replay, and OneTrust for cookie consent management. The platform appears to be built on IBM WebSphere Commerce, indicating a robust e-commerce infrastructure. The site is mobile-optimized and demonstrates good SEO and accessibility practices, although some accessibility enhancements could be made. Security posture is solid with HTTPS enforced, CSRF protection tokens in forms, and use of security best practices. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not evident and should be implemented to enhance protection. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR consent mechanisms. Overall, the website is trustworthy and professionally maintained, with no signs of malicious activity or content blocking. The lack of publicly available WHOIS data suggests privacy protection, which is common and justified for commercial entities. Strategic recommendations include enhancing security headers, improving accessibility, and establishing a formal security policy and incident response contact to further strengthen trust and compliance.

65
88
2
85
75
85
100
technologye-commerceaudio-videonetworkingsurveillance+2 more
JavaScriptjQueryGoogle AnalyticsGoogle Tag Manager+3
2025-07-07T20:29:58.269Z
waystone.com favicon

Waystone

waystone.com

69
FinanceN/alargeMEDIUM

Waystone is a prominent service provider in the asset management industry, specializing in institutional governance, administration, risk, and compliance services. The company offers a broad range of regulated fund solutions, administration services, compliance support, Cayman Islands solutions, and ETF platforms, targeting asset managers and institutional investors globally. Their market position is strong, supported by multiple subsidiaries and partnerships, indicating a well-established presence in the finance sector. Technically, the website is built on WordPress CMS with modern JavaScript libraries and integrates several third-party analytics and marketing tools such as Google Tag Manager, Crazy Egg, and Demandbase. The site is hosted on AWS Cloudfront CDN, ensuring good performance and global availability. Mobile optimization and SEO practices are well implemented, contributing to a positive user experience. From a security perspective, the website enforces HTTPS and implements cookie consent mechanisms compliant with GDPR. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not clearly present, suggesting room for improvement. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS registration data is a notable anomaly, which may indicate privacy protection or recent domain registration, warranting further verification. Overall, the website demonstrates a professional and trustworthy digital presence with moderate to good security posture. Strategic recommendations include enhancing security headers, publishing clear privacy and incident response policies, and resolving WHOIS data inconsistencies to strengthen trust and compliance.

60
88
17
70
75
65
100
assetmanagementfundadministrationcomplianceriskmanagementfinance+4 more
jQuery 3.7.1WordPress 6.8.1Google Tag ManagerOneTrust Cookie Consent+4

Partner Domains:

montlakeucits.com
subsidiary
etfs.waystone.com
subsidiary

+1 more partners

2025-07-07T13:32:07.001Z
avvo.com favicon

Avvo

avvo.com

73
OtherN/alargeMEDIUM

Avvo is a well-established online legal services platform founded in 2006, providing consumers with access to a large network of over 1.1 million lawyers, legal advice, and detailed legal content. The platform serves a broad audience seeking legal assistance and information, positioning itself as a trusted intermediary between consumers and legal professionals. The website demonstrates a high level of professionalism, content quality, and user experience, supported by extensive legal resources and community engagement features. Technically, Avvo employs modern web technologies including Google Tag Manager, OneTrust for cookie consent, and performance monitoring tools like Lux. The site is mobile-optimized and implements good SEO and accessibility practices, although some accessibility features could be enhanced. Security posture is strong with HTTPS enforcement and appropriate security headers, but explicit security policies and incident response information are not publicly available. The WHOIS data for the domain is unavailable, likely due to privacy protection or registry limitations, which slightly impacts trust assessment. However, the website's content, traffic, and market presence strongly indicate legitimacy. Privacy compliance is well addressed with comprehensive cookie and privacy policies and consent mechanisms. Overall, Avvo presents a mature digital presence with a solid security foundation and strong business credibility, though improvements in transparency around security policies and incident response would further enhance trust and compliance.

55
100
17
85
57
85
100
legallawyerlegaladvicelawfirmlawpractice+3 more
Google Tag ManagerOneTrust Cookie ConsentLux (performance monitoring)JavaScript ES6++2
2025-07-07T11:14:52.504Z
districtedc.com favicon

District E Powered by Ticketmaster

districtedc.com

65
HospitalityUnited StatessmallMEDIUM

District E Powered by Ticketmaster is a specialized live-event venue located in downtown Washington, D.C., focusing primarily on esports and entertainment events. The venue is positioned as a premier destination adjacent to the Capital One Arena, targeting esports enthusiasts and entertainment consumers in the region. The business model revolves around hosting live esports competitions, entertainment shows, and private events, leveraging Ticketmaster's ticketing platform for event management. The website reflects a professional and consistent brand image aligned with its market positioning. Technically, the website is built on the Squarespace platform, utilizing modern web technologies including Google Tag Manager, Facebook Pixel, and OneTrust for cookie consent management. The site is SSL secured with HSTS enabled, indicating a strong baseline security posture. Performance and mobile optimization are adequate, with good SEO practices observed. However, accessibility features are basic and could be improved. From a security perspective, the site enforces HTTPS and includes security headers such as HSTS. Cookie consent is implemented via OneTrust, supporting GDPR compliance. However, the absence of a published privacy policy, terms of service, and incident response contact information represents compliance and transparency gaps. No WHOIS data was found for the domain, which raises concerns about domain registration legitimacy and should be investigated further. Overall, the website presents a trustworthy and professional front for the business but requires enhancements in privacy compliance documentation and domain registration transparency. Strategic recommendations include publishing comprehensive privacy and terms policies, establishing a vulnerability disclosure or security contact page, and verifying domain registration details to strengthen trust and compliance.

45
88
17
60
62
75
100
esportsentertainmentliveeventsticketmasterwashingtondc+2 more
Squarespace CMSGoogle Tag ManagerFacebook PixelOneTrust Cookie Consent+1

Partner Domains:

monumentalsports.com
partner
ticketmaster.com
partner
2025-07-07T10:06:25.814Z
hunton.com favicon

Hunton Andrews Kurth LLP

hunton.com

73
OtherUnited StateslargeMEDIUM

Hunton Andrews Kurth LLP is a well-established global law firm with over 120 years of history, serving clients primarily in the energy, financial services, real estate, and retail sectors. The firm operates through 18 offices worldwide and employs over 900 professionals. Their business model focuses on providing comprehensive legal services with a collaborative approach, targeting corporate clients and industries requiring specialized legal expertise. The website reflects a mature digital presence with professional design, clear navigation, and extensive content that supports their market position as a leading law firm. Technically, the website employs modern web technologies including Google Tag Manager for analytics and OneTrust for cookie consent management, indicating a commitment to privacy compliance and user experience. The site is mobile-optimized, accessible, and SEO-friendly, though no specific CMS or hosting provider was identified. Performance is moderate, with good use of modern image formats and SVG graphics. From a security perspective, the site uses HTTPS with strong SSL configuration and includes security headers, enhancing protection against common web threats. However, there is no publicly available security policy or incident response information, nor a vulnerability disclosure program, which could be areas for improvement. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place. Overall, the website presents a low-risk profile with high business credibility and professionalism. The absence of WHOIS data for the exact www.hunton.com domain is noted but does not detract from the legitimacy of the firm given the comprehensive and consistent website content. Strategic recommendations include publishing explicit security policies, establishing a vulnerability disclosure channel, and enhancing transparency around data protection officer contacts and certifications.

55
88
17
85
72
80
100
lawfirmlegalservicesenergyfinancialservicesrealestate+4 more
Google Tag ManagerOneTrust Cookie ConsentWebP imagesSVG graphics
2025-07-07T07:52:10.627Z
cmmiinstitute.com favicon

ISACA

cmmiinstitute.com

75
TechnologyUnited StateslargeMEDIUM

The CMMI Institute, operated by ISACA, is a globally recognized organization providing Capability Maturity Model Integration (CMMI) best practices, training, certifications, and appraisal services. The website positions itself as a leader in process improvement and performance benchmarking, targeting organizations across industries seeking to optimize business results. The business model revolves around professional training, certification, and licensing through a network of authorized partners. The site reflects a mature and established entity with a domain age consistent with its history. Technically, the website is built on ASP.NET WebForms with a Kentico CMS, leveraging modern libraries such as jQuery and FontAwesome. It uses Cloudflare for DNS and CDN services, and integrates Google Tag Manager and OneTrust for analytics and cookie consent management. The site demonstrates good mobile optimization, accessibility, and SEO practices, though performance is moderate. From a security perspective, the site enforces HTTPS, employs domain locking statuses, and implements cookie consent mechanisms. However, DNSSEC is not enabled, and there is no explicit security policy or incident response contact information published. No vulnerabilities or exposed sensitive data were detected in the content. Overall, the security posture is solid but could be improved with additional DNS security and transparency. The overall risk assessment is low, with the website presenting a professional, trustworthy, and compliant digital presence. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and providing explicit incident response contacts to enhance trust and security transparency.

30
88
55
85
65
90
100
cmmiisacaprocessimprovementcertificationstraining+3 more
ASP.NET WebFormsjQuery 3.4.1FontAwesomeGoogle Tag Manager+1
2025-07-07T02:02:30.730Z
rwbaird.com favicon

RWBaird Corporate

rwbaird.com

75
FinanceUnited StatesenterpriseMEDIUM

RWBaird Corporate is an established, employee-owned financial services firm specializing in wealth management, capital markets, asset management, and private equity. The company targets individual, corporate, institutional, and municipal clients, positioning itself as a trusted advisor leveraging deep expertise and broad skills. The website reflects a professional and consistent brand image, supporting its market position as a reputable enterprise in the finance sector. Technically, the website employs modern technologies including jQuery, FontAwesome, Google Tag Manager, Microsoft Application Insights, and OneTrust for cookie consent, indicating a mature digital infrastructure. The site is well-optimized for mobile devices, accessible, and SEO-friendly, with good performance metrics. Privacy and cookie policies are comprehensive and GDPR compliant, demonstrating attention to regulatory requirements. From a security perspective, the site enforces HTTPS, uses standard security headers, and implements cookie consent mechanisms. However, it lacks a dedicated security policy page, incident response contact information, and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. The absence of WHOIS data is notable and warrants further investigation, although the website content and branding suggest legitimacy. Overall, RWBaird Corporate presents a strong business and technical profile with good security hygiene. Strategic improvements in security transparency and WHOIS data clarity would further enhance trust and compliance posture.

45
88
55
85
65
80
100
financewealthmanagementcapitalmarketsassetmanagementprivateequity+2 more
jQuery 3.5.1FontAwesome 5.15.4Google Tag ManagerMicrosoft Application Insights+1
2025-07-07T01:00:30.423Z
giro.com favicon

Giro Sport Design

giro.com

73
E-commerceUnited StatesmediumMEDIUM

Giro Sport Design is a well-established company specializing in designing and selling cycling and snow sports gear, operating since 1985 from Santa Cruz, California. The website serves as an e-commerce platform offering a wide range of products including helmets, shoes, apparel, gloves, socks, goggles, and accessories for men, women, and kids. Giro targets enthusiasts in cycling and snow sports markets, maintaining a consistent and professional brand presence online. Technically, the website is built on the Salesforce Commerce Cloud platform (Demandware) and leverages modern web technologies including JavaScript, jQuery, Google Tag Manager, Google Analytics, Yotpo for reviews, and Signifyd for fraud protection. The site is mobile optimized, accessible, and SEO friendly, with good performance metrics. Privacy compliance is robust, featuring a comprehensive privacy policy, cookie consent via OneTrust, and GDPR adherence. From a security perspective, the site employs HTTPS with strong SSL configuration and security headers such as Content Security Policy and Strict-Transport-Security. Third-party integrations for fraud prevention and analytics are present, though no explicit security policy or incident response information is published. The absence of WHOIS data suggests domain privacy protection, which is justified for this business type. No vulnerabilities or suspicious domains were detected. Overall, Giro.com presents a secure, professional, and user-friendly e-commerce experience with strong privacy and compliance measures. Recommendations include publishing a dedicated security policy, incident response contacts, and vulnerability disclosure program to further enhance trust and security posture.

60
88
2
85
82
85
100
cyclingsnowsportse-commercesportsgearhelmets+2 more
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics+3
2025-07-07T00:58:39.928Z
uillinois.edu favicon

University of Illinois System

uillinois.edu

64
EducationUnited StatesenterpriseMEDIUM

The University of Illinois System website represents a major public higher education system in Illinois, encompassing three universities and a healthcare enterprise. It serves a broad audience including students, faculty, alumni, and the public, offering educational programs, research initiatives, healthcare services, and public engagement. The site is professionally designed with consistent branding and comprehensive content that highlights the system's impact, leadership, and priorities. Technically, the website is built on ASP.NET WebForms with Telerik UI components, integrating multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, Facebook Pixel, and Amazon Ads. The site is mobile-optimized and accessible, with good SEO practices and performance. Privacy and cookie policies are clearly presented with consent mechanisms, reflecting compliance with GDPR and other privacy standards. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, some security headers are not explicitly detected and incident response contacts or vulnerability disclosure mechanisms are not found, suggesting areas for improvement. The WHOIS data is unavailable, which is unusual but likely due to .edu domain registry policies. Overall, the domain and website appear legitimate and authoritative. Strategically, the site effectively communicates the system's mission, economic impact, and community engagement, supporting its position as a flagship educational institution. Recommendations include enhancing security headers, publishing a security.txt file, and improving incident response visibility to strengthen trust and security culture.

30
53
17
65
82
85
100
educationuniversityresearchhealthcarepublicservice+2 more
ASP.NET WebFormsTelerik UIGoogle Tag ManagerGoogle Analytics+6
2025-07-06T23:47:42.319Z
genially.com favicon

Genially Web S.L.

genially.com

78
EducationN/amediumLOW

Genially Web S.L. operates the website genially.com, a SaaS platform founded in 2015 that enables users to create interactive and animated content for eLearning, teaching, and marketing purposes. The platform targets educators, marketers, and content creators seeking no-code authoring and gamification tools. The company positions itself as an easy-to-use solution for interactive content creation, supported by a modern web presence and active social media engagement. Technically, the website is built using React and Gatsby, hosted on AWS infrastructure, and employs industry-standard tools such as OneTrust for cookie consent and Visual Website Optimizer for analytics and A/B testing. The site demonstrates good performance, mobile optimization, and SEO practices, although accessibility features are basic. The domain is registered with Amazon Registrar, Inc. since 2015, consistent with the company's founding date. From a security perspective, the site uses HTTPS and domain status protections but lacks DNSSEC and explicit security headers. Cookie consent mechanisms are implemented, but no public security policy or incident response contacts are found. No vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, genially.com presents a professional and trustworthy online presence with room for improvement in privacy transparency and security hardening. Strategic enhancements in security policies, DNS security, and compliance documentation would strengthen its risk posture and user trust.

75
100
17
80
82
90
100
interactivecontentelearningmarketingno-codegamification+2 more
React (implied by data-react-helmet)Gatsby (static site generator)AWS DNS hostingOneTrust cookie consent+2
2025-07-06T19:10:34.902Z
gumgum.com favicon

GumGum

gumgum.com

73
TechnologyUnited StatesenterpriseMEDIUM

GumGum is an established enterprise-level advertising technology company founded in 2004, specializing in AI-powered contextual intelligence and high-impact advertising solutions across display, video, and connected TV formats. The company positions itself as a leader in brand-safe advertising with a strong focus on delivering relevant and personalized ad experiences. Their platform integrates advanced AI to analyze audience mindset and attention metrics, serving a diverse clientele including major global brands and agencies. Technically, the website is built on Webflow CMS, hosted on AWS infrastructure, and employs modern web technologies such as Google Tag Manager, Google Analytics, and OneTrust for cookie consent management. The site is well-optimized for performance, mobile responsiveness, and SEO, with multilingual support via Weglot. Security-wise, the site enforces HTTPS and uses cookie consent mechanisms but lacks explicit security headers and published security policies. No critical vulnerabilities or exposed sensitive data were detected. Overall, GumGum demonstrates a mature digital presence with strong business credibility and good security posture, though improvements in privacy policy transparency and security header implementation are recommended.

55
83
17
80
82
85
100
advertisingcontextualintelligenceaimarketingtechnologybrandsafety+5 more
Webflow CMSGoogle Tag ManagerGoogle AnalyticsOneTrust Cookie Consent+4
2025-07-06T16:52:38.183Z
vollrathmanufacturing.com favicon

Vollrath Manufacturing Services

vollrathmanufacturing.com

66
ManufacturingUnited StateslargeMEDIUM

Vollrath Manufacturing Services is a well-established B2B manufacturing company specializing in deep draw stamping, progressive metal stamping, and complementary metal fabrication services. Founded in 2014 and operating under the parent company The Vollrath Company, LLC, it serves industrial and OEM clients primarily in the United States. The company positions itself as an industry leader with a comprehensive suite of manufacturing capabilities and engineering consulting services. The website reflects a professional and consistent brand image with clear navigation and multiple contact options, including phone and interactive chat forms. Technically, the site leverages modern web technologies including Kentico CMS, AWS hosting, and integrates marketing and analytics tools such as Google Analytics, Microsoft Clarity, and Bing UET, while maintaining GDPR and cookie compliance through OneTrust. Security posture is strong with HTTPS, domain status locks, and form protections via reCAPTCHA, although DNSSEC is not enabled and no explicit security policy or incident response contacts are published. Overall, the website is trustworthy, well-maintained, and suitable for its target industrial audience.

15
88
17
70
77
75
100
manufacturingmetalstampingdeepdrawoemengineering+2 more
JavaScriptGoogle Tag ManagerGoogle reCAPTCHABrightEdge SEO+3

Partner Domains:

vollrathcompany.com
parent
vollrathfoodservice.com
subsidiary

+2 more partners

2025-07-06T13:27:58.927Z
bonava.de favicon

Bonava

bonava.de

60
Real EstateGermanylargeMEDIUM

Bonava is a large real estate developer operating nationwide in Germany, specializing in the development and sale of newly built houses and condominiums. The website targets prospective home buyers looking for new residential properties across Germany. The company presents itself with a professional and consistent brand image, supported by a well-structured and visually appealing website. The content is relevant and focused on real estate offerings, with clear navigation and good mobile optimization. Technically, the website employs modern JavaScript libraries and tracking tools such as Google Tag Manager and Azure App Insights, along with OneTrust for cookie management. While the site uses HTTPS and includes Google site verification, explicit security headers and detailed security policies are not evident in the provided content. The site shows moderate performance and basic accessibility features. From a security perspective, the website demonstrates basic best practices but lacks visible security policies, incident response contacts, or vulnerability disclosure mechanisms. No critical vulnerabilities or suspicious patterns were detected, and the domain appears legitimate based on WHOIS data. Privacy compliance is limited due to the absence of explicit privacy and cookie policies in the analyzed content. Overall, the website is professional and trustworthy for its business purpose but would benefit from enhanced transparency in privacy, security policies, and compliance documentation to improve user trust and regulatory adherence.

45
33
2
85
72
70
100
realestatenewbuildhousingcondominiumsgermany+1 more
JavaScriptModernizrGoogle Tag ManagerOneTrust Cookie Consent+1
2025-07-06T12:18:00.699Z
stoeltingfoodservice.com favicon

Stoelting Foodservice

stoeltingfoodservice.com

62
ManufacturingUnited StatesmediumMEDIUM

Stoelting Foodservice is a specialized manufacturer of frozen dessert machines, including soft-serve ice cream, frozen yogurt, custard, gelato, and beverage dispensers. The company operates as a brand under the larger Vollrath Companies umbrella, positioning itself as a reputable provider in the foodservice equipment manufacturing sector. Their website reflects a professional and consistent brand image, targeting commercial foodservice operators such as restaurants, convenience stores, and amusement parks. Technically, the site is built on the Kentico CMS platform, employs modern web technologies, and integrates privacy and analytics tools such as OneTrust, Google Analytics, and Microsoft Clarity. Security posture is strong with HTTPS and security headers properly configured, although explicit security policies and incident response information are not publicly available. The absence of WHOIS registration data for the domain is a notable concern, potentially indicating privacy protection or data retrieval issues, which slightly reduces domain trustworthiness. Overall, the website is well-designed, compliant with privacy regulations, and serves its business purpose effectively.

15
88
17
40
82
75
100
frozendessertmachinessoftserveicecreamfrozenyogurtmachinescustardmachinesgelatomakers+3 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsOneTrust Cookie Consent+2

Partner Domains:

vollrathcompany.com
parent
vollrathfoodservice.com
sister

+2 more partners

2025-07-06T11:16:02.124Z
vollrathcompany.com favicon

The Vollrath Company, LLC

vollrathcompany.com

62
ManufacturingUnited StateslargeMEDIUM

The Vollrath Company, LLC is a well-established manufacturing business with a history dating back to 1874. It specializes in commercial cooking and serving equipment, OEM manufacturing solutions, medical products, and cleaning products. The company operates multiple subsidiaries and brands, positioning itself as a leader in the commercial foodservice and manufacturing sectors. The website reflects a professional and consistent brand image with good content quality and clear navigation aimed at commercial clients and partners. Technically, the website uses modern web technologies including JavaScript frameworks, Google Tag Manager, Microsoft Clarity for analytics, and OneTrust for cookie consent management. It is hosted with Amazon Registrar and uses AWS DNS services. The site is mobile optimized and has good SEO and accessibility basics, though some improvements could be made. From a security perspective, the site uses HTTPS and implements cookie consent, but lacks published privacy policies, terms of service, security policies, and incident response contacts. No critical vulnerabilities or suspicious patterns were detected, but adding these compliance and security documents would improve trust and regulatory adherence. Overall, the website is professional and trustworthy with moderate technical maturity and a solid business foundation. Strategic improvements in privacy and security documentation would enhance compliance and user trust.

15
88
2
40
100
75
100
manufacturingfoodservicecommercialkitchenequipmentcorporateindustrial+2 more
JavaScriptGoogle Tag ManagerMicrosoft ClarityOneTrust Cookie Consent+2

Partner Domains:

vollrathfoodservice.com
subsidiary
stoeltingfoodservice.com
subsidiary

+2 more partners

2025-07-06T11:15:57.115Z