Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149092
Websites
130
Industries
113
Countries
52
Avg Score
Page 497 of 523|Showing 24801-24850 of 26142
zone.fi favicon

Zone Media Oy

zone.fi

40
TechnologyFinlandmediumHIGH

Zone Media Oy operates the website zone.fi, providing domain registration, web hosting, email, and virtual server services primarily targeting Finnish businesses, associations, and private individuals. With over 25 years of experience and a customer base exceeding 50,000 web hosting accounts and 145,000 domains, Zone holds a strong market position as a reliable and comprehensive hosting provider in Finland. Their service portfolio includes WordPress-optimized hosting, managed virtual servers, and security monitoring, emphasizing local data center hosting in Finland for data protection and compliance. Technically, the website is built on WordPress with modern technologies such as TLS 1.3, OCSP stapling, and integrates multiple third-party tools including Google Analytics, Hotjar, Zendesk, and Cookiebot for analytics, customer support, and privacy compliance. The site demonstrates good performance and mobile optimization, with clear navigation and professional design. SEO practices are well implemented with Yoast SEO plugin and structured data. From a security perspective, the site enforces HTTPS with strong TLS protocols, has SPF and DMARC email authentication configured with reject policies, and shows no critical vulnerabilities. Cookie consent mechanisms are in place, ensuring GDPR compliance. However, improvements are recommended in enabling HSTS, fixing CAA records, and publishing a security.txt file to enhance security posture further. Overall, zone.fi presents a trustworthy, professional, and secure online presence with strong compliance and user experience. The domain registration details align with the business claims, reinforcing legitimacy. Strategic recommendations include enhancing HTTPS enforcement, improving transparency in vulnerability disclosure, and maintaining up-to-date security practices to sustain trust and compliance.

75
-
25
78
82
90
20
domainregistrationwebhostingemailservicesvirtualserverswordpresshosting+3 more
WordPressjQueryYoast SEOCookiebot+6

Partner Domains:

zonemx.eu
partnerpending
smaily.com
partnerpending

+3 more partners

2025-06-15T17:01:29.582Z
expertinsights.com favicon

Expert Insights

expertinsights.com

64
TechnologyN/amediumMEDIUM

Expert Insights is a mature and reputable online platform specializing in providing actionable guidance and tools to help businesses make smarter cybersecurity and cloud IT decisions. Established in 2004, the company has positioned itself as a leading community for comparing cybersecurity solutions, offering expert assessments, shortlists, market guides, news, and podcasts. The website targets IT decision-makers and businesses seeking trusted cybersecurity vendor information. Technically, the site is built on WordPress, leveraging Gravity Forms for data collection and Google Tag Manager for analytics, with Cloudflare DNS services. While the site demonstrates strong content quality, professional design, and good SEO and accessibility practices, it suffers from a critical security shortfall due to the absence of a valid SSL certificate and HTTPS configuration, exposing users to potential risks. The domain's WHOIS data confirms legitimacy and strong domain protection, but the lack of HTTPS significantly impacts the overall security posture. Privacy compliance is moderate, with a clear privacy policy but no visible cookie consent mechanism. Overall, the site is trustworthy and content-rich but requires urgent security improvements to protect user data and enhance trust.

55
40
25
85
85
90
100
cybersecuritysecuritysolutionsvendoranalysisitmanagementcloudsecurity+3 more
WordPressGravity FormsjQueryCloudflare DNS+3
2025-06-15T16:57:04.211Z
bcskoolitus.ee favicon

BCS Koolitus AS

bcskoolitus.ee

40
EducationEstoniamediumHIGH

BCS Koolitus AS is a well-established Estonian company specializing in IT training and certification services for both IT specialists and general computer users. The company offers a broad range of courses including Microsoft Office, IT infrastructure management, programming languages, and e-learning platforms. Their market position is strong within Estonia, supported by extensive project experience and recognized quality certifications such as the HAKA quality mark. The website reflects a professional and consistent brand image with detailed service descriptions and active client engagement through testimonials and project showcases. Technically, the site is built on WordPress with modern technologies and includes multilingual support, though performance optimization is needed due to slow load times and large page size. Security posture is generally good with HTTPS and OCSP stapling, but improvements are recommended in DNS and email security configurations. Privacy compliance is basic with cookie consent mechanisms and privacy policies present, but GDPR compliance could be enhanced. Overall, the company demonstrates credible business operations with clear contact information and a moderate level of digital maturity.

15
15
25
70
82
60
100
ittrainingeducatione-learningcertificationestonia
WordPress 6.0.9jQuery 3.6.0Google reCAPTCHA v3Owl Carousel+5

Partner Domains:

thinkific.com
partner60
itcrafters.eu
partnerpending

+1 more partners

2025-06-15T16:55:58.839Z
toode.lv favicon

SIA Toode

toode.lv

40
ManufacturingLatviamediumHIGH

SIA Toode is a medium-sized manufacturing company based in Latvia specializing in steel roofing and wall profiles, rainwater drainage systems, and related construction materials. The company has a regional presence with partner sites in Estonia, Lithuania, and Finland, positioning itself as a key player in the Baltic and Nordic construction materials market. Their website reflects a professional business with clear product offerings and a focus on construction professionals and building owners. Technically, the website is built on WordPress with modern JavaScript libraries and integrates Google Analytics and Cookiebot for tracking and compliance. However, performance is somewhat slow, and accessibility is basic. Security posture is adequate with HTTPS and SPF/DMARC records but lacks advanced SSL features such as HSTS and OCSP stapling, and no security headers are detected. Privacy compliance is supported by a privacy policy and cookie consent mechanism, though no incident response or security policy is visible. Overall, the domain registration data is consistent and trustworthy, supporting the legitimacy of the business. Strategic improvements in security headers, SSL configuration, and incident response transparency would enhance the site's security and trustworthiness.

50
-
25
75
77
45
40
steelroofingconstructionmaterialsmanufacturinglatviabim+1 more
WordPressjQuerySlick CarouselSelect2+4

Partner Domains:

toode.ee
partnerpending
toode.lt
partnerpending

+1 more partners

2025-06-15T16:49:35.854Z
nelioabtesting.com favicon

Nelio Software

nelioabtesting.com

40
TechnologyN/asmallHIGH

Nelio Software operates a mature and professionally maintained website offering a native A/B testing and conversion optimization service specifically designed for WordPress users. The company holds a reputable position in the WordPress ecosystem, evidenced by its WordPress VIP Technology Partner status and comprehensive service offerings including heatmaps, popups, and analytics. The website demonstrates excellent content quality, clear navigation, and strong branding consistency, targeting marketers, eCommerce businesses, publishers, and agencies seeking to optimize their WordPress sites. Technically, the site is built on WordPress with modern plugins and integrations such as Yoast SEO, Nelio A/B Testing, and Nelio Popups. Hosting is provided by SiteGround, and the site employs standard web technologies including jQuery and Google Tag Manager. While performance and mobile optimization are good, the SSL certificate is expired, and security best practices like HSTS and DNSSEC are not implemented, which lowers the overall security posture. Security-wise, the site uses HTTPS with TLS 1.3 and 1.2 protocols and shows no signs of known SSL vulnerabilities or exposed sensitive data. However, the expired SSL certificate and lack of domain protection mechanisms present risks that should be addressed promptly. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place, aligning with GDPR requirements. Overall, the website is trustworthy and professional but requires immediate attention to SSL certificate renewal and enhanced domain security measures to maintain its credibility and protect user data. Strategic improvements in security headers and domain protection will further strengthen its security posture and business reputation.

20
58
25
70
52
70
-
abtestingwordpressconversionoptimizationheatmapspopups+2 more
WordPressYoast SEO pluginNelio A/B Testing pluginNelio Popups plugin+8

Partner Domains:

neliosoftware.com
partnerpending
wpvip.com
partner67
2025-06-15T15:49:07.246Z
grimex.lv favicon

GRIMEX SIA

grimex.lv

40
OtherLatviasmallHIGH

GRIMEX SIA is a Latvian company offering a diverse range of services including web development, advertising, rental of offices, warehouses, equipment, and professional workers, as well as sales agency services. The company targets businesses looking to expand or operate in Latvia and Scandinavia, positioning itself as a versatile business partner with a 5-year presence in the Scandinavian market. The website content is basic and marketing-focused, with limited detailed business information and no visible privacy or cookie policies. Technically, the website is built on WordPress with Yoast SEO and uses common marketing and analytics tools such as Google Tag Manager, Google Analytics, and Facebook Pixel. However, the site suffers from a lack of a valid SSL certificate and does not serve content over HTTPS, which is a critical security shortfall. Performance is slow, and mobile optimization and accessibility are basic. SEO is reasonably well implemented through meta tags and structured data. From a security perspective, the site has some positive configurations such as SPF and DMARC DNS records and HSTS header enabled, but the absence of a valid SSL certificate and modern TLS protocols severely undermines the security posture. No security policies, incident response contacts, or vulnerability disclosures are present, and domain registration lacks protection locks, which could pose risks. Overall, the website presents moderate business credibility but has significant security and privacy compliance gaps. Strategic improvements in SSL deployment, privacy policy publication, and security best practices are recommended to enhance trust and compliance.

40
-
25
77
100
70
20
marketingsalesagencyrentalserviceswebdevelopmentadvertising+2 more
WordPressYoast SEOGoogle Tag ManagerGoogle Analytics+2
2025-06-15T15:47:27.711Z
tribecrm.es favicon

efficy

tribecrm.es

40
TechnologySpainmediumHIGH

Tribe CRM, operated under the parent company efficy, offers a highly adaptable CRM platform designed to help businesses grow by integrating sales, marketing, and customer service functions with AI capabilities. The website targets Spanish-speaking businesses seeking customizable CRM solutions with seamless integrations and workflow automation. The company positions itself as a modern, customer-centric CRM provider with a growing client base exceeding 10,000 users. Technically, the website is built on WordPress with modern SEO and analytics tools such as Yoast SEO, Piwik PRO, and Cookiebot for consent management. However, the site suffers from a lack of valid SSL/TLS certificates, resulting in insecure HTTP connections and no HTTPS enforcement, which is a critical security concern. Performance is suboptimal with slow load times and a large page size, though mobile optimization and content quality are strong. Security posture is weak due to missing HTTPS, lack of security headers, and no DMARC record, exposing the site to potential risks. Privacy compliance is well addressed with comprehensive privacy and cookie policies and a consent mechanism in place. Business credibility is supported by clear contact information, professional content, and trust signals such as testimonials and partner links. Overall, while the business and content aspects are strong, the security deficiencies significantly impact the risk profile. Immediate remediation of SSL/TLS and security headers is recommended to protect user data and improve trust.

15
-
25
70
85
60
100
crmsoftwaremarketingsalesai+4 more
WordPressYoast SEOjQuerySelect2+3

Partner Domains:

efficy.com
parent68
salesloft.com
partner69

+3 more partners

2025-06-15T14:55:56.700Z
uvdata.dk favicon

UVdata A/S

uvdata.dk

37
EducationDenmarkmediumHIGH

UVdata A/S is a Danish software company specializing in providing comprehensive software solutions for private and free schools, afterschools, and educational institutions in Denmark. Their product portfolio includes school management systems, payroll solutions, guidance software, and time management tools, positioning them as a key player in the Danish education technology sector. The company operates under the parent company KMD, enhancing its market credibility and reach. The website content is well-structured, primarily in Danish, and targets educational institutions with relevant services and support information. Technically, the website is built on WordPress using the Avada theme and integrates several JavaScript libraries and plugins, including Matomo for analytics. However, the site suffers from performance issues with slow load times and a large number of resources. Security-wise, the website lacks a valid SSL certificate, serving content without HTTPS, which is a critical vulnerability. Additionally, it lacks essential security headers and advanced SSL features such as HSTS and OCSP stapling. Privacy compliance is addressed with clear privacy and cookie policies and a consent mechanism, aligning with GDPR requirements. Overall, while the business and content aspects are strong and credible, the technical and security posture require significant improvements to ensure user trust and data protection.

40
-
25
70
50
85
20
educationsoftwareschoolmanagementdanishwordpress+1 more
WordPressPHPjQueryRevolution Slider+5

Partner Domains:

kmd.dk
parent40
2025-06-15T14:48:17.901Z
trees.org favicon

Trees for the Future

trees.org

57
Non-profitUnited StateslargeMEDIUM

Trees for the Future is a well-established nonprofit organization dedicated to land restoration and sustainable agriculture in developing communities worldwide. The organization is recognized as a United Nations World Restoration Flagship, highlighting its leadership in ecosystem restoration efforts. Their business model relies on donations, corporate partnerships, and community engagement to support farmers and combat hunger, poverty, and environmental degradation. The website effectively communicates their mission, impact, and opportunities for involvement, targeting donors, environmental advocates, and strategic partners. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, Google Analytics, and various marketing and fundraising tools. While the site is well-structured, mobile-optimized, and SEO-friendly, it suffers from slow load times and lacks a valid SSL certificate, which is a critical security deficiency. The absence of HTTPS and security headers exposes the site and its users to potential risks. From a security perspective, the site has significant vulnerabilities including no active SSL/TLS encryption, no HSTS, no DNSSEC, and no security headers. Although privacy and cookie policies are present with consent mechanisms, the site uses multiple third-party trackers which may impact user privacy. The domain is mature and protected by privacy proxy services, which is justified for a nonprofit entity. Overall, the security posture is weak and requires urgent improvements. The overall risk assessment indicates a trustworthy and professional nonprofit with excellent content and business credibility but with critical security gaps. Strategic recommendations include immediate SSL deployment, enhanced security headers, DNS security improvements, and a formal vulnerability disclosure policy to strengthen trust and compliance.

15
43
25
70
85
80
100
nonprofitenvironmentsustainabilityforestrestorationdonation+2 more
WordPressYoast SEOGoogle Tag ManagerGoogle Analytics+9

Partner Domains:

trees2024impact.org
partnerpending
2025-06-15T14:40:08.500Z
preely.com favicon

GetWhy A/S

preely.com

62
TechnologyDenmarksmallMEDIUM

Preely is a Denmark-based technology company offering a SaaS platform focused on enhancing product decision-making through remote user testing and continuous discovery. Their platform supports testing of prototypes across devices and integrates AI (ChatGPT) for advanced test analysis. The company targets product teams, UX professionals, and businesses seeking efficient user feedback mechanisms. The website demonstrates a professional presence with trusted clients and active social media engagement. Technically, the website is built on WordPress with WPBakery Page Builder, leveraging Cloudflare for DNS and CDN services. It employs standard marketing and analytics tools including Google Analytics, Facebook Pixel, and Cookiebot for GDPR-compliant cookie management. While the SSL certificate is valid, the site lacks advanced security headers and HSTS, and performance metrics indicate a slower load time. Security posture is moderate with no critical vulnerabilities detected, but improvements are recommended in HTTP security headers and DNSSEC implementation. Privacy compliance is strong, supported by a comprehensive privacy policy and cookie consent mechanism. Business credibility is reinforced by clear company information, testimonials, and client logos. Overall, Preely presents a trustworthy and functional online presence with room for technical and security enhancements to further strengthen its posture and user trust.

25
25
25
60
67
85
100
usertestingproductfeedbackremotetestinguserinvolvementsaas+2 more
WordPressWPBakery Page BuilderGoogle AnalyticsFacebook Pixel+3
2025-06-15T14:39:53.613Z
O

Oqaasileriffik

oqaasileriffik.gl

39
GovernmentGreenlandsmallHIGH

Oqaasileriffik is the official Greenlandic Language Secretariat, providing authoritative language resources, terminology, and policy information primarily for the Greenlandic language. The website serves as a central hub for language tools, dictionaries, news, and educational materials targeting Greenlandic speakers, researchers, and government stakeholders. The organization operates as a governmental or non-profit entity focused on language preservation and development. Technically, the website is built on WordPress with Elementor and several plugins, including multilingual support via WPML. The infrastructure uses Apache on Ubuntu, but suffers from critical SSL issues with an invalid certificate and no modern TLS protocols enabled, which undermines secure communications. Performance data is limited, but the site appears content-rich and mobile-optimized with basic accessibility features. Security posture is weak due to the invalid SSL certificate, lack of HSTS, missing security headers, and absence of vulnerability disclosure or security policies. Privacy compliance is minimal, with no visible privacy or cookie policies. Contact information is clearly provided, including email, phone, and physical address, along with active social media channels. Overall, the site is functional and content-rich but requires urgent improvements in SSL configuration, security best practices, and privacy compliance to enhance trust and protect users. Strategic recommendations include obtaining a valid SSL certificate, enabling modern TLS, publishing privacy and cookie policies, and implementing security headers and vulnerability disclosure mechanisms.

15
25
17
75
50
50
40
greenlandlanguagesecretariatgreenlandiclanguagewordpressgovernment+1 more
Apache 2.4.58Ubuntu ServerWordPress 6.7.2Elementor+10

Partner Domains:

ordbog.gl
partnerpending
nutserut.gl
partnerpending

+2 more partners

2025-06-15T14:21:38.110Z
certified-senders.org favicon

Certified Senders Alliance

certified-senders.org

56
TechnologyGermanymediumMEDIUM

Certified Senders Alliance (CSA) is a technology-focused organization operating as a central whitelisting authority for commercial email senders and mailbox providers. Their primary mission is to improve the quality and deliverability of commercial emails such as newsletters, invoices, and order confirmations, while protecting recipients from spam and abuse. CSA offers certification services, monitoring tools, and data insights to help email service providers and senders maintain high reputation and compliance standards. The organization is positioned as a trusted intermediary in the email marketing ecosystem, supported by testimonials from major industry players and operated under the eco Association of the Internet Industry in Germany. Technically, the website is built on WordPress with common web technologies including Bootstrap, jQuery, and Font Awesome. It uses plugins for cookie consent (Borlabs Cookie) and bot protection (hCaptcha). However, the site suffers from a lack of a valid SSL certificate and does not support modern TLS protocols, which is a critical security shortfall. Performance is suboptimal with a slow page load time and a large page size, though mobile optimization and SEO practices are generally good. From a security perspective, the site implements DMARC with reporting and provides abuse contact emails, indicating some level of incident response readiness. However, the absence of HTTPS, security headers, and OCSP stapling significantly weakens the security posture. No explicit security policy or vulnerability disclosure mechanism is found. Privacy compliance is well addressed with comprehensive privacy and cookie policies and a consent mechanism. Overall, while the business credibility and content quality are strong, the technical and security implementations require urgent improvements to protect user data and enhance trust. Strategic recommendations include immediate SSL certificate installation, enabling modern TLS, adding security headers, and optimizing site performance.

15
43
17
50
100
80
100
emailcertificationwhitelistingemailmarketingdeliverability+2 more
WordPressPHPjQueryBootstrap+4
2025-06-15T13:47:03.774Z
dmarcadvisor.com favicon

DMARC Advisor

dmarcadvisor.com

59
TechnologyNetherlandsmediumMEDIUM

DMARC Advisor is a specialized technology company focused on providing DMARC and related email security services to businesses primarily in Europe and Africa. Their market position is strong as leading DMARC service experts, offering a comprehensive suite of tools and managed services including DMARC reporting, SPF management, DKIM validation, and BIMI hosting. The company emphasizes protecting domains against email abuse and phishing, targeting organizations that require robust email authentication solutions. Technically, the website is built on WordPress with modern JavaScript frameworks like Vue.js, and integrates various marketing and analytics tools such as Google Tag Manager and Microsoft Clarity. However, the website currently lacks a valid SSL certificate and modern TLS protocol support, which is a critical security gap. The security posture is further impacted by missing DNSSEC and improperly configured CAA records, though DMARC policies are correctly set to reject unauthorized emails. Privacy compliance is well addressed with GDPR-aligned cookie consent mechanisms and a comprehensive privacy policy. Overall, the company demonstrates a professional and trustworthy online presence but should urgently address SSL/TLS and DNS security to enhance trust and security.

70
25
25
100
100
75
40
dmarcemailsecurityspfdkimbimi+3 more
WordPressVue.jsGoogle Tag ManagerGoogle reCAPTCHA+3

Partner Domains:

globalcyberalliance.org
partner30
m3aawg.org
partnerpending

+2 more partners

2025-06-15T13:44:28.777Z
para-hcfs.com favicon

CorroHealth

para-hcfs.com

61
HealthcareUnited StatesmediumMEDIUM

CorroHealth is a clinically led healthcare analytics and technology company focused on optimizing revenue cycle management for hospitals and health systems. The company offers a comprehensive suite of services including utilization management, clinical documentation improvement, medical coding, chargemaster services, claims management, denials management, and value-based care solutions. Their market position is strong within the healthcare technology sector, targeting healthcare providers seeking to improve financial performance through intelligent technology and analytics. The website reflects a mature business with a professional and consistent brand presence, supported by structured data and social media integration. Technically, the website is built on WordPress using the Divi theme and incorporates modern marketing and analytics tools such as HubSpot, Google Tag Manager, Hotjar, and Microsoft Clarity. However, performance is moderate to slow, and accessibility features are basic. The site is hosted likely on Amazon AWS infrastructure and uses a Sucuri Cloudproxy WAF for protection. From a security perspective, while several security headers are properly configured and HSTS is enabled, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical vulnerability. There is no cookie consent mechanism despite the presence of tracking scripts, indicating a gap in privacy compliance. No explicit security or incident response policies are found on the site. Overall, the website demonstrates good business credibility and content quality but suffers from significant security shortcomings that should be addressed promptly to protect user data and maintain trust. Strategic recommendations include installing a valid SSL certificate, enabling modern TLS protocols, implementing cookie consent, and enhancing privacy and security policies.

70
43
25
85
50
85
100
healthcaretechnologyrevenuecyclemanagementclinicaldocumentationmedicalcoding+2 more
WordPressDivi ThemejQueryMagnific Popup+7

Partner Domains:

force.com
partner64
site.com
partner67
2025-06-15T13:26:51.965Z
horatioalger.org favicon

Horatio Alger Association

horatioalger.org

62
Non-profitUnited StateslargeMEDIUM

The Horatio Alger Association is a well-established 501(c)(3) non-profit organization dedicated to promoting the American Dream through scholarships and support services for students facing adversity. With a mature domain dating back to 1997 and a strong market position as one of North America's largest need-based scholarship providers, the organization demonstrates a clear commitment to education and philanthropy. The website reflects a professional and consistent brand image, targeting students, donors, and supporters with rich content and multimedia elements. Technically, the site is built on WordPress with modern plugins such as Yoast SEO and Google Site Kit, leveraging Cloudflare for hosting and CDN services. While the site is mobile-optimized and SEO-friendly, performance metrics are not fully available. Security posture is currently weak due to the absence of a valid SSL certificate and HTTPS support, which is a critical issue that must be addressed to protect user data and maintain trust. Privacy compliance is partially met with the presence of privacy and legal policies, but lacks a cookie consent mechanism and explicit GDPR compliance indicators. Contact information is comprehensive and clearly presented, enhancing business credibility. Overall, the site is trustworthy and professional but requires urgent security improvements to align with best practices. Strategic recommendations include immediate SSL/TLS implementation, enabling modern security headers and protocols, and introducing cookie consent mechanisms to improve privacy compliance and user trust.

55
43
17
75
85
80
100
non-profiteducationscholarshipsamericandreamphilanthropy
PHP 8.1.28WordPressYoast SEO pluginGoogle Analytics+5

Partner Domains:

horatioalger.ca
partnerpending
2025-06-15T13:23:35.803Z