Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 518 of 656|Showing 25851-25900 of 32765
C

City and County of San Francisco

sf.gov

57
GovernmentUnited StateslargeMEDIUM

The City and County of San Francisco operates SF.gov as its official government portal, providing residents, businesses, and visitors with access to a wide range of public services and information. The website features comprehensive content including services like job search, marriage licensing, birth certificate requests, and contact information for city staff. It also prominently displays profiles of elected officials, reinforcing its authoritative position as a government resource. The site targets a broad audience including local citizens, government employees, and businesses operating within San Francisco. Technically, SF.gov is built on modern web technologies including React and Next.js, with a CMS likely based on Wagtail. The site demonstrates excellent mobile optimization, accessibility, and SEO practices. It integrates Google Tag Manager and Google Analytics for user tracking and performance monitoring. The website is served over HTTPS with strong security headers, indicating a robust security posture. However, it lacks a visible cookie consent mechanism and explicit security or incident response policies, which are areas for improvement. From a security perspective, the site follows best practices such as enforcing HTTPS, implementing security headers, and avoiding exposure of sensitive data. No vulnerabilities or suspicious domains were detected. The WHOIS data is limited, showing no registrar or creation date, but this is typical for government domains using privacy protection. The domain's legitimacy is supported by consistent branding and official content. Overall, SF.gov presents a secure, professional, and trustworthy online presence for the San Francisco government. Strategically, the site should enhance privacy compliance by implementing a cookie consent banner and publishing clear security policies and incident response contacts. Adding a vulnerability disclosure or security.txt file would further improve transparency and trust. Regular audits of third-party scripts and tracking tools are recommended to maintain security and privacy standards. These steps will strengthen the site's compliance posture and user trust while maintaining its role as a critical public service platform.

20
53
17
85
67
30
100
governmentpublicservicescityportalsanfranciscoofficial+1 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics

Partner Domains:

careers.sf.gov
partner
www.sfbos.org
partner

+1 more partners

2025-07-05T19:05:13.276Z
A

Alibris

alibris.co.uk

62
E-commerceUnited KingdomlargeMEDIUM

Alibris UK operates as a large-scale online marketplace specializing in new and used books, textbooks, music, movies, and eBooks. The platform connects consumers with thousands of independent sellers worldwide, offering a vast inventory exceeding 200 million items. Established in 1997, Alibris has positioned itself as a premier destination for media enthusiasts in the UK and internationally. The website demonstrates a professional and consistent brand presence, supported by trust indicators such as BBB accreditation and positive customer reviews on Sitejabber. Technically, the website employs a modern technology stack including jQuery, Bootstrap, Google Analytics, and Facebook Pixel, ensuring a responsive and user-friendly experience across devices. The site is well-optimized for SEO and accessibility, with comprehensive metadata and structured data enhancing search engine visibility. Performance is moderate, with room for optimization. Security best practices are observed with HTTPS enforcement and cookie consent mechanisms, though additional security headers and a published security policy would strengthen the posture. From a security and compliance perspective, the site maintains good privacy practices with a detailed privacy policy and cookie consent banner compliant with GDPR. However, no explicit incident response or vulnerability disclosure information is present, representing an area for improvement. The WHOIS data for the exact domain queried (www.alibris.co.uk) is unavailable due to domain naming rules, but the overall legitimacy is supported by the website content and external trust signals. Overall, Alibris UK presents a credible, well-established e-commerce platform with solid technical and security foundations. Strategic enhancements in security transparency and WHOIS domain clarity would further bolster trust and compliance.

65
68
17
70
52
45
100
booksmusicmoviesecommercemarketplace+5 more
jQuery 3.6.0Bootstrap 4.6.1Google AnalyticsGoogle Tag Manager+5

Partner Domains:

library.alibris.com
partner
www.alibris.com
partner

+1 more partners

2025-07-05T18:01:14.317Z
H

Hawaiian Airlines

hawaiianairlines.co.nz

61
TransportationNew ZealandlargeMEDIUM

Hawaiian Airlines operates as Hawaii's largest and longest-serving airline, providing non-stop flights from the U.S. mainland and international destinations to Hawaii. The website targets travelers primarily from New Zealand and other international markets, offering comprehensive travel booking services including flights, vacation packages, hotels, and car rentals. The airline is positioned strongly in the transportation sector with a large market presence and a parent company relationship with Alaska Airlines. The site demonstrates consistent branding and professional content quality, supporting its market position. Technically, the website employs a modern technology stack including AngularJS, Google Tag Manager, Adobe DTM, and various analytics and marketing tools such as New Relic and Quantum Metric. The site is well-optimized for mobile and accessibility, with good SEO practices and performance. Security measures include HTTPS with TLS 1.3, security headers, and secure form handling, though there is room for improvement in cookie consent mechanisms and explicit security policy disclosures. The security posture is strong with no evident vulnerabilities or exposed sensitive data. However, the lack of visible cookie consent and absence of a published security or incident response policy are areas for enhancement. The WHOIS data for the .co.nz domain is not publicly available, which is typical for New Zealand domains but reduces transparency slightly. Overall, the domain and website content strongly indicate a legitimate and trustworthy business. Strategically, Hawaiian Airlines should focus on improving privacy compliance by implementing clear cookie consent banners and publishing detailed security policies. Enhancing transparency with direct security contacts and vulnerability disclosure mechanisms will further strengthen trust. Continuous monitoring of third-party scripts and maintaining up-to-date security practices will ensure sustained security and compliance.

35
58
2
70
72
70
100
airlinetravelflightsbookinghawaiianairlines+2 more
AngularJSGoogle Tag ManagerAdobe DTMNew Relic+6

Partner Domains:

hawaiianairlines.com
partner
alaskaair.com
parent

+1 more partners

2025-07-05T17:57:01.983Z
flash-speed.com favicon

Flash-Speed

flash-speed.com

57
E-commerceN/asmallMEDIUM

Flash-Speed is a small e-commerce focused company offering a Shopify app designed to optimize page speed by removing unused Javascript and CSS. The company targets Shopify store owners seeking to improve their store performance and revenue through faster page loads. The website is professionally designed using Webflow and integrates multiple analytics and marketing tools such as Google Analytics, Facebook Pixel, TikTok Pixel, and Klaviyo, indicating a mature digital marketing approach. The app has garnered positive user feedback with a 5-star average rating and over 100 installs, positioning it as a niche player in the Shopify app ecosystem. Technically, the website is hosted on Webflow's CDN, uses HTTPS with excellent SSL configuration, and employs modern web technologies and frameworks. The site is mobile optimized and performs well, with good SEO and accessibility basics. However, there is room for improvement in security headers and privacy compliance, particularly the absence of a cookie consent mechanism and explicit security or incident response policies. From a security perspective, the site enforces HTTPS and does not expose sensitive data in its HTML content. The lack of WHOIS registration data is a concern, reducing domain trustworthiness and raising questions about domain legitimacy. No critical vulnerabilities or malware indicators were found, but the absence of security policies and contact information for incident response limits the security posture. Overall, Flash-Speed presents a professional and functional online presence with a solid technical foundation and positive market reception. The main risks relate to domain registration transparency and privacy compliance. Strategic improvements in security headers, privacy mechanisms, and clearer contact information would enhance trust and compliance.

30
53
17
55
57
65
100
shopifypagespeedjavascriptoptimizatione-commercewebflow
WebflowGoogle Tag ManagerGoogle AnalyticsFacebook Pixel+2
2025-07-05T17:56:31.925Z
simularity.com favicon

Simularity Inc.

simularity.com

45
TechnologyUnited StatessmallHIGH

Simularity Inc. is a technology company specializing in AI-driven geospatial imagery analysis software, primarily serving government and intelligence sectors. Their flagship product, AIADS, automates the detection and classification of unusual changes in satellite and geospatial data, enabling expert analysts to focus on critical areas. The company has established partnerships with notable organizations and is recognized in various media outlets, reinforcing its market position in a niche but important segment. The website is built on a modern WordPress platform using Elementor and Astra theme, integrating Google Analytics and Google reCAPTCHA for analytics and security. The technical infrastructure is solid with good mobile optimization and moderate performance. However, there is room for improvement in security practices, such as enabling DNSSEC and implementing security headers. Security posture is adequate with HTTPS enforced and no visible sensitive data exposure, but lacks explicit incident response and vulnerability disclosure information. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism detected, which may pose compliance risks in certain jurisdictions. Overall, the website and business demonstrate a high level of professionalism and trustworthiness, with recommendations to enhance security and privacy compliance to further strengthen their digital maturity and risk posture.

15
53
2
60
72
80
-
aigeospatialsatelliteimagerygovernmenttechnology+2 more
WordPress 6.8.1Elementor 3.27.5Elementor Pro 3.23.3Google Analytics+3

Partner Domains:

allsourceanalysis.com
partner
caci.com
partner

+3 more partners

2025-07-05T17:56:26.847Z
clickguard.com favicon

ClickGUARD

clickguard.com

71
TechnologyN/amediumMEDIUM

ClickGUARD is a specialized SaaS provider offering click fraud protection software designed to monitor, detect, and eliminate fake and wasteful traffic from PPC campaigns across major advertising platforms such as Google, Meta, and Bing Ads. The company targets advertisers, marketing agencies, and in-house marketing teams seeking to optimize ad spend and improve campaign ROI by mitigating invalid traffic. Their platform includes bot mitigation, invalid traffic prevention, and comprehensive verification and reporting features, positioning them as a trusted player in the digital advertising security space. Technically, the website leverages modern web technologies including Webflow CMS, Google Tag Manager, Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and New Relic for performance monitoring. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices. Security measures include HTTPS enforcement, use of Cloudflare Turnstile captcha for bot mitigation, and secure form implementations with reCAPTCHA. Privacy compliance is robust with clear privacy and cookie policies and consent mechanisms. The security posture is strong with no detected vulnerabilities or exposed sensitive data. However, the absence of a security.txt file and incident response contact information suggests room for improvement in vulnerability disclosure and incident management transparency. The WHOIS data for the domain is unavailable, which slightly reduces trustworthiness from a domain registration perspective, but the professional website content and business presence mitigate this concern. Overall, ClickGUARD presents a credible and professional online presence with a mature technical infrastructure and solid security practices. Strategic recommendations include enhancing security header policies, publishing vulnerability disclosure information, and improving accessibility compliance to further strengthen their security and compliance posture.

15
80
47
85
75
85
100
clickfraudppcprotectionbotmitigationinvalidtrafficsaas+5 more
Google Tag ManagerGoogle AnalyticsFacebook PixelLinkedIn Insight Tag+4

Partner Domains:

help.clickguard.com
service
2025-07-05T17:55:11.132Z
shiprelax.com favicon

ShipRelax

shiprelax.com

46
TransportationUnited StatessmallHIGH

ShipRelax is a specialized third-party logistics (3PL) provider focused on cross-border e-commerce fulfillment. The company offers a global warehouse network, smart shipping solutions, branded packaging, and return logistics services to help e-commerce businesses expand internationally with lower shipping costs and faster deliveries. Their platform integrates with multiple sales channels, providing real-time visibility and analytics. The website positions ShipRelax as a reliable partner for global e-commerce growth, targeting small to medium-sized online retailers. Technically, the website is built on WordPress using Elementor and Yoast SEO, with modern front-end technologies like jQuery and FontAwesome. It is hosted likely via GoDaddy, with SSL enabled and Google Analytics integrated for tracking. The site is mobile-optimized and demonstrates good SEO practices, though some accessibility features could be improved. From a security perspective, the site uses HTTPS and domain registration protections but lacks advanced security headers and published security policies. No cookie consent mechanism or GDPR compliance indicators are present, which could be improved. No vulnerabilities or exposed sensitive data were detected. The domain registration is transparent and consistent with the business profile. Overall, ShipRelax presents a professional and trustworthy online presence with solid business credibility and technical implementation. Strategic improvements in privacy compliance and security policies would enhance trust and regulatory adherence.

15
53
2
70
72
75
-
3ple-commercefulfillmentlogisticscross-border+2 more
WordPressElementorYoast SEOjQuery+3
2025-07-05T16:53:52.617Z
kmkventures.com favicon

KMK Ventures Private Limited

kmkventures.com

70
FinanceUnited StateslargeMEDIUM

KMK Ventures Private Limited is a well-established outsourced accounting and US taxation firm founded in 2020, targeting US-based businesses including CPA firms, startups, and mid-market companies. The company offers a comprehensive suite of accounting, tax, audit, advisory, and automation services, positioning itself as a leading provider in the finance sector with a large team of over 800 professionals. Their business model focuses on providing cost-effective, experienced, and secure back-office financial solutions leveraging technology and automation. The website reflects a professional and consistent brand image with clear navigation and rich content tailored to their target audience. Technically, the website is built on WordPress using Elementor and integrates modern tools such as Google Tag Manager, Microsoft Clarity, and Tawk.to for analytics and user engagement. The site is mobile-optimized, SEO-friendly, and performs moderately well. Security posture is solid with HTTPS enforced and ISO/IEC 27001:2013 certification, though improvements such as enabling DNSSEC and publishing incident response information are recommended. Overall, KMK Ventures demonstrates a strong security culture and business credibility with transparent contact information and trust indicators. The website is safe for general audiences with no adult or questionable content. Strategic recommendations include enhancing privacy compliance with cookie consent, improving DNS security, and formalizing vulnerability disclosure and incident response processes to further strengthen trust and compliance.

35
35
47
85
85
90
100
accountingtaxservicesoutsourcingcpafirmsfinance+1 more
WordPressElementorSlider RevolutionjQuery+6
2025-07-05T16:53:42.585Z
whipwashersmobiledetailing.com favicon

Whip Washers Mobile Detailing

whipwashersmobiledetailing.com

61
TransportationUnited StatessmallMEDIUM

Whip Washers Mobile Detailing is a specialized mobile auto detailing service operating in New Jersey, offering premium services such as ceramic coatings, paint correction, and headlight restoration. The company positions itself as the leading mobile detailing provider in the region, targeting vehicle owners seeking convenient and high-quality car care solutions. The website reflects a small-sized business founded in 2022 with a clear focus on service excellence and customer engagement through multiple social media channels. Technically, the website is built on WordPress using the Elementor page builder and Astra theme, integrating modern web technologies and analytics tools like Google Analytics and Google Tag Manager. The site is mobile-optimized and SEO-friendly, though performance is moderate and accessibility features are basic. Hosting details are not explicitly stated, but the domain is registered with GoDaddy and uses Cloudflare DNS. From a security perspective, the site employs HTTPS and domain status protections but lacks DNSSEC and important security headers. There is no visible privacy policy, cookie consent mechanism, or incident response information, which are notable compliance gaps. No vulnerabilities or suspicious activities were detected in the content or scripts. The domain registration data is consistent and transparent, supporting the legitimacy of the business. Overall, the website presents a professional and trustworthy front for a small service business but would benefit from enhanced privacy compliance and security hardening to improve user trust and regulatory adherence.

15
58
17
70
75
75
100
autodetailingmobiledetailingceramiccoatingpaintcorrectionheadlightrestoration+2 more
WordPressElementorAstra ThemejQuery+3
2025-07-05T16:52:46.189Z
amiclubwear.com favicon

AMIClubwear

amiclubwear.com

69
RetailUnited StateslargeMEDIUM

AMIClubwear is a well-established e-commerce retailer specializing in women's sexy clubwear and party dresses, targeting a mature female audience interested in fashionable and celebrity-inspired club clothing. The company operates primarily through its Shopify-based online platform, leveraging a variety of third-party marketing, analytics, and customer engagement tools to enhance user experience and drive sales. The website demonstrates consistent branding and professional content quality, supported by a long domain history dating back to 2007, which reinforces its market credibility. Technically, the website is built on the Shopify platform with integrations including Google Analytics, Facebook Pixel, Judge.me for reviews, and loyalty programs such as Bon Loyalty. The site shows good mobile optimization and SEO practices, although performance is moderate and accessibility features are basic. Security posture is adequate with HTTPS enforced and domain-level protections in place, but lacks advanced HTTP security headers and published security policies or incident response information. Privacy compliance is well addressed with clear privacy and cookie policies and a consent mechanism, aligning with GDPR requirements. However, no explicit security policy or vulnerability disclosure is found, which could be improved. The content is adult-oriented fashion (sexy clubwear and lingerie), suitable for mature audiences but not explicit adult content. No WAF or blocking mechanisms were detected, allowing full content access. Overall, AMIClubwear presents a credible and professional online retail presence with solid technical infrastructure and privacy compliance, but could enhance its security posture and transparency around incident response and vulnerability disclosures to further strengthen trust and resilience.

75
85
10
70
47
80
100
e-commercefashionclubwearwomensclothingretail+5 more
ShopifyJavaScriptGoogle Tag ManagerJudge.me Reviews+8

Partner Domains:

shareasale.com
partner
judge.me
partner

+2 more partners

2025-07-05T16:52:10.726Z
A

Alibris

alibris.com

67
RetailUnited StateslargeMEDIUM

Alibris is a well-established online marketplace specializing in new and used books, textbooks, music, and movies, operating since 1997. The platform connects consumers with independent sellers worldwide, offering a vast inventory including rare and out-of-print items. The website demonstrates a mature digital presence with comprehensive content, clear navigation, and a professional design that supports a positive user experience. The company maintains strong trust indicators such as BBB accreditation and extensive customer reviews, reinforcing its market position in the retail e-commerce sector. Technically, the website employs a modern technology stack including jQuery, Bootstrap, Google Analytics, and various advertising and tracking tools. Hosting and security infrastructure leverage Cloudflare services, ensuring good performance and HTTPS enforcement. Accessibility and SEO optimizations are well implemented, contributing to the site's usability and discoverability. However, the absence of an explicit cookie consent mechanism suggests a potential compliance gap with privacy regulations. From a security perspective, the site follows best practices with HTTPS, secure forms, and no visible vulnerabilities or exposed sensitive data. The lack of a published security policy or incident response contact limits transparency in security governance. WHOIS data is unavailable, which slightly impacts trustworthiness but is mitigated by the site's professional appearance and external trust signals. Overall, Alibris presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing privacy compliance with cookie consent, publishing security policies, and adding vulnerability disclosure mechanisms to further strengthen trust and security posture.

65
53
17
80
52
85
100
e-commercebooksmusicmoviesmarketplace+2 more
jQueryBootstrap 4.6.1Google AnalyticsGoogle Tag Manager+6

Partner Domains:

buyback.alibris.com
service
library.alibris.com
service

+1 more partners

2025-07-05T16:51:15.442Z
aeropostale.com favicon

Aeropostale

aeropostale.com

65
RetailUnited StateslargeMEDIUM

Aeropostale operates as a large retail and e-commerce company specializing in casual apparel for men and women, targeting primarily teens and young adults. The website presents a professional and consistent brand image with a focus on clothing such as jeans, hoodies, and graphic tees. The company leverages a mature digital infrastructure including Demandware (Salesforce Commerce Cloud) as its e-commerce platform and integrates multiple marketing and analytics tools such as Google Analytics, Facebook Pixel, TikTok Pixel, and Optimizely to optimize customer engagement and conversion. Privacy and cookie policies are implemented with a consent management platform, indicating compliance with GDPR and related regulations. From a security perspective, the website enforces HTTPS and employs standard security headers, contributing to a good security posture. However, the absence of explicit security policies, incident response information, and vulnerability disclosure mechanisms suggests room for improvement in transparency and preparedness. The lack of publicly available WHOIS data for the domain raises minor concerns about registration transparency, although the website content and technology usage strongly indicate legitimacy. Overall, the website is well-designed, mobile-optimized, and SEO-friendly, providing a good user experience. The extensive use of third-party marketing and tracking services implies a high level of user data collection, which is managed through consent mechanisms. No adult or inappropriate content is present, making the site suitable for a general audience. Strategic recommendations include enhancing security transparency, improving accessibility features, and verifying domain registration details to strengthen trust.

15
88
17
70
75
70
100
retaile-commerceclothingfashionmarketing+3 more
jQueryGoogle Tag ManagerGoogle AnalyticsFacebook Pixel+9
2025-07-05T16:50:35.184Z
new-casino.ca favicon

CENTRALNIC CANADA INC

new-casino.ca

51
OtherCanadasmallMEDIUM

New-Casino.ca operates as a specialized affiliate and review platform focusing on new online casinos for Canadian players. The website provides detailed listings, bonus comparisons, and casino reviews, targeting adult Canadian gamblers seeking trustworthy and up-to-date casino options. The business model is affiliate-based, generating revenue through referrals to online casinos. The site maintains a consistent brand and content quality, positioning itself as a niche leader in the Canadian online casino market. Technically, the website is built on WordPress with standard optimization plugins and uses Google Analytics and Tag Manager for tracking. The hosting and DNS infrastructure is reliable, with AWS DNS servers and a Canadian registrar. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Performance is moderate, with room for improvement in speed and technical modernization. From a security perspective, the site uses HTTPS but lacks important security headers and does not enable DNSSEC. There is no visible privacy policy, cookie policy, or terms of service, which are critical for compliance and user trust. Incident response and vulnerability disclosure information are absent, indicating a gap in security maturity. No WAF or blocking mechanisms are detected, and no critical vulnerabilities are apparent from the content. Overall, New-Casino.ca presents a moderate risk profile with good business credibility but needs to improve privacy compliance and security posture. Strategic enhancements in policy transparency, security headers, and incident response readiness are recommended to strengthen trust and compliance.

20
65
17
60
72
60
40
onlinecasinogamblingcanadacasinoreviewsbonuses+2 more
WordPress 5.7.12Google AnalyticsGoogle Tag ManagerAWS DNS+1

Partner Domains:

newcasinouk.com
partner
nyacasinonsverige.se
partner

+3 more partners

2025-07-05T16:46:48.773Z