Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 5 of 153|Showing 201-250 of 7624
barberco.sk favicon

Barberco

barberco.sk

43
RetailSlovakiamediumHIGH

Barberco.sk is a specialized e-commerce platform focused on selling barber and grooming products primarily targeting gentlemen, barbershops, and hairdressers in Slovakia and the Czech Republic. The website offers a wide range of products including hair care, beard care, shaving accessories, and professional barber equipment. It also supports a wholesale partner program for professionals in the industry. The site is well-structured with clear navigation, product categorization, and customer support channels, reflecting a mature regional retail business. Technically, the website uses modern web technologies such as jQuery, Slick Slider, and integrates analytics and user behavior tracking tools like Google Tag Manager and Hotjar. It is hosted behind Cloudflare DNS services, ensuring reliable performance and security. The site is mobile-optimized and includes accessibility features, although some improvements could be made. From a security perspective, Barberco.sk enforces HTTPS and uses secure login forms with CSRF tokens. While basic security headers are implied, explicit Content-Security-Policy and other headers are not confirmed and should be implemented. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy and cookie policies are present with consent mechanisms, indicating GDPR awareness, but no explicit security policy or incident response contacts are published. Overall, Barberco.sk presents a trustworthy and professional online retail presence with a solid business foundation and good technical implementation. Strategic improvements in security headers, incident response transparency, and accessibility would further enhance its security posture and compliance.

45
10
17
40
72
60
20
barbere-commercegroomingslovakiaretail+3 more
jQuery 3.4.1Slick SliderHotjarGoogle Tag Manager+2

Partner Domains:

barberco.cz
partner
2025-10-31T19:25:53.550Z
hrvzz.hr favicon

Hrvatska zajednica županija

hrvzz.hr

48
GovernmentCroatiamediumHIGH

Hrvatska zajednica županija is the official Croatian County Association, providing a centralized platform for news, projects, international cooperation, and information about member counties. The website serves local government officials, citizens, media, and international partners, positioning itself as an authoritative source for county-related information in Croatia. Founded in 2008, it maintains a consistent and professional online presence with clear branding and official contact details. Technically, the website employs modern frontend technologies including Swiper.js for interactive sliders, Font Awesome for icons, and Google Fonts for typography. It is hosted with Cloudflare DNS services and uses HTTPS to secure communications. The site is mobile-optimized and offers a good user experience with clear navigation and relevant content. However, accessibility features are basic and could be improved. From a security perspective, the site uses HTTPS and modern libraries but lacks explicit security headers and a vulnerability disclosure policy. No privacy or cookie policies are present, which is a compliance gap. Contact information is clearly provided, enhancing business credibility. No advertising or tracking services are detected, indicating a privacy-respecting approach. Overall, the website is trustworthy and professionally maintained, with a strong alignment between WHOIS data and website content, indicating legitimacy. Strategic improvements in privacy compliance, security headers, and accessibility would enhance its security posture and user trust.

15
10
17
70
72
75
40
governmentcroatiacountiesnewsprojects+1 more
HTML5CSS3JavaScriptSwiper.js+3
2025-10-31T19:19:00.187Z
worldheartobservatory.org favicon

World Heart Federation

worldheartobservatory.org

63
HealthcareN/amediumMEDIUM

The World Heart Federation operates the World Heart Observatory, a global platform dedicated to aggregating and disseminating cardiovascular health data and insights. The organization targets healthcare professionals, policymakers, researchers, and advocates to support global heart health initiatives. The website reflects a non-profit model focused on advocacy and data transparency, positioning itself as a global leader in cardiovascular health information. Technically, the website is built on WordPress with a custom child theme and leverages modern web technologies including Bootstrap, jQuery, and multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, and Hotjar. The site is hosted with Cloudflare DNS and uses HTTPS, ensuring secure communications. Mobile optimization and SEO practices are good, though accessibility is basic. From a security perspective, the site employs HTTPS and domain transfer protection but lacks DNSSEC and advanced security headers, which are recommended for enhanced protection. No privacy policy or terms of service were detected on the analyzed page, which is a compliance gap. The site uses cookie consent mechanisms, indicating some level of GDPR awareness. Overall, the website is professional, trustworthy, and serves its mission well, but could improve privacy compliance and security hardening. Strategic recommendations include enabling DNSSEC, publishing comprehensive privacy and terms policies, and enhancing security headers to strengthen the security posture.

25
65
17
85
57
80
100
healthcarecardiovasculardataglobalhealthnon-profit+2 more
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics+3
2025-10-31T19:16:59.888Z
infozagreb.hr favicon

Turistička Zajednica Grada Zagreba

infozagreb.hr

52
HospitalityCroatiamediumMEDIUM

The website www.infozagreb.hr serves as the official tourism portal for the city of Zagreb, Croatia, managed by the Turistička Zajednica Grada Zagreba. It provides comprehensive information about the city's cultural heritage, attractions, events, accommodation, and lifestyle, targeting tourists and visitors. The site is well-positioned as a trusted source for Zagreb tourism, offering detailed guides and multimedia content to enhance visitor experience. Technically, the website employs modern web technologies including React and Cloudflare services for DNS and CDN, ensuring moderate performance and good mobile optimization. The site structure and navigation are clear, with SEO-friendly metadata and structured data enhancing search visibility. However, accessibility features could be improved. From a security perspective, the site uses HTTPS and benefits from Cloudflare's infrastructure, but lacks explicit security headers and formal security policies. There is no visible privacy or cookie policy, nor incident response or vulnerability disclosure information, which are areas for improvement to enhance compliance and trust. Overall, the website is professional and trustworthy with a strong business credibility score. The absence of privacy and cookie policies and limited security headers slightly reduce the security and privacy posture. Strategic enhancements in these areas would improve compliance and user trust.

60
10
17
85
62
85
20
zagrebtourismcroatiatravelguideculture+1 more
ReactCloudflare DNSCSSJavaScript
2025-10-31T14:27:58.138Z
C

CMS Legal Services EEIG

cms-hs.com

69
OtherGermanylargeMEDIUM

CMS Legal Services EEIG operates an international law firm website focused on Germany, providing a wide range of legal and tax advisory services. The firm targets business clients requiring expertise in areas such as corporate law, banking, compliance, dispute resolution, and various industry sectors including automotive, energy, and healthcare. The website reflects a mature and professional market position with multiple offices in Germany and abroad, supporting a large enterprise scale. Technically, the website employs modern web technologies including Bootstrap for responsive design, Piwik PRO for analytics, and is hosted behind Cloudflare DNS services. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some security headers and DNSSEC are not enabled, indicating room for improvement in security hardening. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks visible security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or blocking mechanisms were detected, and the domain WHOIS data aligns well with the business identity, supporting legitimacy. Overall, the website presents a trustworthy and professional digital presence for CMS Legal Services EEIG, with recommendations to enhance privacy compliance, security policies, and DNS security to further strengthen its posture.

85
70
95
100
2
75
47
lawlegaltaxgermanyinternational+2 more
JavaScriptYouTube iframe APIPiwik PRO analyticsBootstrap (offcanvas components)+1
2025-10-31T14:23:53.966Z
A

Ably

ably.com

74
TechnologyN/amediumMEDIUM

Ably is a mature and well-established realtime platform founded in 2002, specializing in streaming data instantly between services and end-user devices. It offers a suite of developer-focused products such as Ably Pub/Sub, Chat, LiveObjects, and LiveSync, targeting businesses that require scalable, reliable, and low-latency realtime messaging infrastructure. The company positions itself as a leader in the realtime messaging market, supporting over 2 billion connected devices monthly with a strong uptime record. Technically, the website is built on modern frameworks like Gatsby and React, hosted with Cloudflare DNS and Amazon Registrar, and integrates various marketing and analytics tools including Google Tag Manager, Intercom, and HubSpot. The site is fast, mobile-optimized, and accessible with a professional design and clear navigation. Security-wise, the site enforces HTTPS, implements security headers, and uses domain status locks to prevent unauthorized changes. However, DNSSEC is not enabled, and no explicit privacy policy or terms of service pages were found, which are areas for improvement. Contact information is limited to a contact form without direct emails or phone numbers. Overall, Ably demonstrates a strong security posture and business credibility, but could enhance privacy compliance and transparency to further build trust.

60
88
47
75
57
80
100
realtimemessagingchatpubsubtechnology+4 more
ReactGatsbyCloudflare DNSOneTrust (cookie consent)+4
2025-10-31T14:21:21.518Z
signal.me favicon

Signal

signal.me

61
TechnologyUnited StateslargeMEDIUM

Signal is a well-established nonprofit organization providing a secure, privacy-focused messaging platform widely recognized for its strong encryption and open-source approach. The website signal.me serves as a contact and redirect landing page, linking users to the main signal.org domain and app download resources. The business is positioned as a leader in secure communications, targeting privacy-conscious users globally. The domain and website content align with the organization's mission and market presence. Technically, the site uses modern CSS frameworks like Bulma and JavaScript, hosted behind Cloudflare DNS services. The site is mobile optimized with responsive navigation and basic accessibility features. However, some security best practices such as DNSSEC and security headers are not implemented on this domain. The site uses HTTPS with good SSL configuration, ensuring secure connections. From a security perspective, the website shows good domain registration protections and no visible vulnerabilities or exposed sensitive data. Privacy compliance is strong on the main domain, though this subdomain lacks explicit cookie consent mechanisms. No forms or tracking scripts are present, minimizing data collection risks. Contact information is limited to a media inquiry email, with no phone or physical address listed. Overall, the website is trustworthy, professional, and safe for general audiences. Recommendations include enabling DNSSEC, adding security headers, and publishing a vulnerability disclosure policy to enhance security posture and transparency.

30
53
2
80
57
85
100
securemessagingprivacynonprofitcontactsignal
Bulma CSSJavaScriptCloudflare DNS
2025-10-31T14:21:06.480Z
adscale.de favicon

Ströer SSP GmbH

adscale.de

10
MediaGermanylargeCRITICAL

Ströer SSP GmbH operates a sophisticated supply-side platform (SSP) that enables publishers to optimize their digital advertising inventory across display, video, and mobile channels. The platform supports private deals, private auctions, and real-time advertising, providing advertisers access to premium inventory with strong brand safety and anti-fraud measures. The company is positioned as a leading player in the German digital advertising market, supported by its parent company Ströer Digital Group. The website reflects a professional and business-focused approach, targeting publishers and advertisers seeking programmatic advertising solutions. Technically, the website is built on TYPO3 CMS and integrates privacy-conscious tools such as Cookiebot for consent management and Matomo for analytics with DoNotTrack enabled. Hosting and DNS services are provided via Cloudflare, enhancing performance and security. The site demonstrates good mobile optimization and SEO practices, though accessibility could be improved. Security headers are partially implemented, and HTTPS is enforced, indicating a solid security posture. From a security perspective, the site employs best practices including cookie consent with blocking mode, privacy-focused analytics, and brand safety commitments. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security headers like Content-Security-Policy and X-Frame-Options could be added to strengthen defenses. Incident response and security policy information are not publicly disclosed on the analyzed page. Overall, the website presents a trustworthy and professional digital advertising platform with good privacy compliance and security awareness. Strategic recommendations include enhancing security headers, improving accessibility, and publishing incident response contacts to further build trust and compliance.

-
-
-
-
-
-
-
digitaladvertisingsspprogrammaticadvertisingcookieconsentprivacy+2 more
TYPO3 CMSMatomo AnalyticsCookiebot Consent ManagementCloudflare DNS+2
2025-10-31T12:20:14.391Z
praguemorning.cz favicon

Prague Morning - Czech Republic's biggest media outlet in English

praguemorning.cz

56
MediaCzech RepublicmediumMEDIUM

Prague Morning is a prominent English-language media outlet based in the Czech Republic, established in 2016. It serves as the largest English news source in the country, targeting English-speaking residents and visitors interested in local news and events. The website offers news publishing services with monetization primarily through advertising and subscription-based premium content. The business maintains a consistent brand presence and leverages social media platforms to engage its audience. Technically, the website is built on WordPress CMS using Elementor for page building and Yoast SEO for search engine optimization. It integrates modern web technologies including jQuery and Google Analytics for tracking. Hosting utilizes Cloudflare DNS services, and the site employs HTTPS with good SSL configuration. Advertising is managed through Google Adsense and Vidverto, with multiple tracking and marketing tools embedded. From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA for form protection. However, it lacks published privacy, cookie, and terms of service policies, which are critical for GDPR compliance and user trust. No explicit incident response or vulnerability disclosure policies are available. Security headers are assumed but not explicitly confirmed in the HTML content. Overall, the security posture is moderate but could be improved with clearer policies and enhanced security controls. The website content is safe for general audiences, with no adult or questionable material detected. WHOIS data confirms the domain's legitimacy and consistent registration since 2016, aligning with the business's operational history. Strategic recommendations include publishing comprehensive privacy and cookie policies, adding terms of service, implementing a vulnerability disclosure program, and enhancing accessibility and security headers to improve compliance and trust.

15
45
2
70
57
80
100
newsmediaenglishczechrepublicprague+3 more
WordPressElementorjQueryGoogle Analytics+3
2025-10-31T12:01:28.856Z
studo.co favicon

Studo GmbH

studo.co

75
EducationAustriamediumMEDIUM

Studo GmbH is a medium-sized technology company specializing in digital solutions for students and higher education institutions, primarily in Austria and neighboring countries. Their flagship product, the Studo Campus App, supports over 500,000 daily users and offers a suite of services including digital campus cards, workload measurement, and administrative tools. The company positions itself as a trusted partner for universities, emphasizing quality, sustainability, and personal collaboration since its founding in 2016. Technically, the website demonstrates a mature and modern infrastructure leveraging Cloudflare DNS and CDN services, Piwik PRO for analytics, and optimized assets such as WebP images. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a high level of digital maturity. Security practices include HTTPS enforcement, TÜV SÜD certification covering data protection and software quality, and annual accessibility audits, though some improvements like DNSSEC and security.txt publication are recommended. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and GDPR consent on forms, although a visible cookie consent banner is missing. Business credibility is reinforced by multiple trust indicators including certifications, testimonials from university officials, and awards. Overall, the website and business present a low-risk profile with strong professionalism and trustworthiness. Strategic recommendations include enhancing DNS security, publishing vulnerability disclosure information, and implementing explicit cookie consent mechanisms to further improve compliance and security posture.

55
65
35
98
72
85
100
educationtechnologystudentappdigitalcampusuniversitysolutions+3 more
JavaScriptCloudflare DNSPiwik PRO analyticsWebP images+2
2025-10-31T11:44:37.352Z