Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 53 of 140|Showing 2601-2650 of 6977
learningfromearthquakes.org favicon

Earthquake Engineering Research Institute

learningfromearthquakes.org

59
Non-profitUnited StatesmediumMEDIUM

The Learning From Earthquakes website is a professionally maintained platform operated by the Earthquake Engineering Research Institute, a reputable non-profit organization focused on earthquake research and community resilience. The site provides comprehensive earthquake investigation records and program information, targeting researchers, engineers, policymakers, and communities globally. The business model is educational and research-oriented, with a medium-sized organizational footprint and a well-established market position in the non-profit sector. Technically, the website is built on WordPress with Elementor and several supporting plugins, hosted by GreenGeeks. It demonstrates good mobile optimization, SEO practices, and a modern tech stack, although performance is moderate. The site lacks advanced security headers and DNSSEC, which are recommended for enhanced security. Privacy compliance is limited, with no cookie consent mechanism and a basic privacy policy. Security posture is adequate with HTTPS enabled and no exposed sensitive data, but improvements are needed in security headers and published policies. The domain registration is consistent and transparent, supporting the site's legitimacy. Overall, the website is trustworthy and professional but would benefit from enhanced privacy and security practices to meet modern compliance standards.

25
58
10
70
52
75
100
earthquakeresearchnon-profiteducationresilience+2 more
WordPress 6.8.3Elementor 3.32.4Jet Menu pluginJet Engine plugin+3

Partner Domains:

eeri.org
parent
2025-10-12T08:38:01.981Z
bookthatapp.com favicon

BookThatApp (a Fork Equity company)

bookthatapp.com

68
E-commerceN/amediumMEDIUM

BookThatApp is a specialized SaaS provider offering appointment scheduling solutions primarily for Shopify merchants. Positioned as the #1 Shopify appointment scheduling app, it serves over 8000 customers with a comprehensive suite of booking features including calendar synchronization, automated reminders, and Zoom integration. The company is part of Fork Equity and has been operational since 2010, focusing on streamlining appointment management for various industries such as beauty, wellness, rentals, events, and professional services. The website demonstrates a high level of professionalism, with excellent content quality, clear navigation, and strong customer trust signals. Technically, the site is built on Webflow with modern JavaScript libraries and integrates well with Shopify and other popular platforms. Security posture is good with HTTPS and secure forms, though some security headers are missing and no explicit incident response or vulnerability disclosure policies are published. Privacy compliance is mostly addressed with a comprehensive privacy policy, but lacks a cookie consent mechanism. Overall, the website and business present a credible and mature digital presence, though the absence of WHOIS data for the domain introduces some uncertainty regarding domain registration legitimacy.

45
68
17
75
75
80
100
appointmentschedulingshopifyappbookingsoftwaree-commercecalendarsync+1 more
WebflowjQuery 3.5.1Swiper.jsGoogle Tag Manager+2
2025-10-12T07:29:40.463Z
mulwi.com favicon

Mulwi

mulwi.com

63
E-commerceN/amediumMEDIUM

Mulwi is a specialized SaaS provider offering Shopify product feed management software designed to streamline e-commerce operations and boost sales by integrating with over 200 shopping engines. The company has established a strong market presence since its founding in 2018, serving over 2500 customers worldwide with a highly rated app on the Shopify platform. Their key services include ready-to-use and custom feed templates, product filtering, and instant synchronization with Shopify stores. Technically, the website employs modern JavaScript frameworks such as Alpine.js and Swiper.js, integrates analytics and user behavior tracking tools like Google Tag Manager, Mixpanel, and Hotjar, and is hosted behind Cloudflare DNS services. The site is well-optimized for SEO and mobile devices, providing an excellent user experience with clear navigation and professional design. Security-wise, the domain is properly locked with multiple client status prohibitions, uses HTTPS with good SSL configuration, but lacks DNSSEC and publicly available security policies or incident response contacts. Privacy compliance is a notable gap, as no privacy or cookie policies with consent mechanisms were found. Overall, Mulwi demonstrates a mature digital presence with strong business credibility but should improve transparency around privacy and security policies to enhance trust and compliance.

30
53
17
75
75
65
100
shopifye-commerceproductfeedshoppingfeedssaas+4 more
Alpine.jsSwiper.jsGoogle Tag ManagerMixpanel+2
2025-10-12T06:20:09.673Z
ogrelogic.com favicon

Ogrelogic

ogrelogic.com

65
TechnologyUnited StatesmediumMEDIUM

Ogrelogic is a Texas-based digital solutions company founded in 2014, specializing in mobile app development, website design and development, SEO, and digital marketing services. The company targets startups, SMBs, enterprises, and professionals, positioning itself as a top-rated agency with strong client testimonials and industry certifications such as Google Partner and Clutch. Their service portfolio includes custom software solutions, marketing campaigns, and staff augmentation, serving diverse industries including healthcare, energy, finance, and hospitality. Technically, the website leverages modern web technologies including HTML5, CSS3, JavaScript, jQuery, and Swiper.js for UI components. Hosting and DNS are managed via Cloudflare, ensuring good performance and security. The site is mobile-optimized with responsive design and integrates Google Tag Manager and Analytics for tracking. Contact forms are protected with Cloudflare Turnstile CAPTCHA to mitigate spam. From a security perspective, the site enforces HTTPS and uses Cloudflare DNS/CDN, but lacks visible security headers and a published security policy or incident response contacts. GDPR compliance is partial, with a privacy policy present but no cookie consent mechanism detected. WHOIS data shows consistent domain registration with no privacy protection, supporting legitimacy. Overall, Ogrelogic demonstrates a mature digital presence with strong business credibility and technical implementation. Security posture is good but can be improved by adding security headers, cookie consent, and incident response information. The site is safe for general audiences with no adult content detected.

40
53
17
70
75
85
100
digitalmarketingmobileappdevelopmentwebsitedesignseoppc+3 more
HTML5CSS3JavaScriptjQuery+4
2025-10-12T05:10:39.456Z
bestchat.com favicon

Starline Information Inc.

bestchat.com

10
TechnologyCanadasmallCRITICAL

BestChat is a Canadian-based technology company specializing in AI-driven live chat and customer service software tailored primarily for e-commerce businesses, especially Shopify entrepreneurs and online retailers. The company offers a SaaS platform featuring SmartBot, an AI chatbot designed to automate lead qualification, provide personalized product recommendations, and streamline customer interactions. Positioned as a smart chat solution with integrations across Shopify, Wix, and WordPress, BestChat targets small to medium-sized online businesses seeking to enhance sales engagement and customer support. Technically, the website employs modern JavaScript libraries such as jQuery and Swiper.js, integrates Google Analytics for tracking, and uses Cloudflare for DNS management. The site is mobile-optimized with good SEO practices and a professional design, though some accessibility features are basic. Hosting is managed via GoDaddy with Cloudflare DNS, and the site uses HTTPS with a good SSL configuration. However, DNSSEC is not enabled, and security headers are not explicitly detected. From a security perspective, BestChat demonstrates a moderate security posture with HTTPS enforced and no visible sensitive data exposure. Privacy compliance is addressed with a clear privacy policy and cookie consent mechanism, indicating GDPR awareness. However, the absence of explicit incident response contacts, vulnerability disclosure policies, and security.txt files suggests room for improvement in security transparency and readiness. Overall, BestChat presents a trustworthy and professional online presence with a mature domain and consistent business information. The site is free from blocking mechanisms or WAF challenges, allowing full content accessibility. Strategic recommendations include enhancing DNS security with DNSSEC, implementing security headers, and publishing incident response and vulnerability disclosure information to strengthen trust and compliance.

-
-
-
-
-
-
-
livechatcustomerservicesalesengagementaichatbote-commerce+2 more
jQuerySwiper.jsGoogle AnalyticsGoogle Translate+1

Partner Domains:

apps.shopify.com
partner
manage.wix.com
partner

+1 more partners

2025-10-12T04:03:48.283Z
smoobu.com favicon

Smoobu

smoobu.com

66
HospitalityGermanymediumMEDIUM

Smoobu is a medium-sized German-based company offering an all-in-one SaaS platform for vacation rental management. Their software suite includes a Channel Manager, Property Management System, Booking Engine, Guest Communication tools, Dynamic Pricing, and Website Builder, targeting vacation rental property owners and managers. The company positions itself as a professional and trusted player in the hospitality software market, with strong industry partnerships including Airbnb, Booking.com, and Expedia. The website is well-designed, multilingual, and optimized for SEO and mobile devices, reflecting a mature digital presence. Technically, the site is built on WordPress with modern JavaScript libraries and integrates multiple analytics and marketing tools such as Google Tag Manager, Snowplow, and Reddit Pixel. The site uses HTTPS and demonstrates good security hygiene, although it lacks some advanced security headers and explicit security policies. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Security posture is solid with no visible vulnerabilities or exposed sensitive data, but the absence of WHOIS transparency and security incident response information slightly reduces trust. Overall, the website and business appear legitimate and professional, with room for improvement in security disclosures and WHOIS transparency. Strategic recommendations include enhancing security headers, publishing a formal security policy and incident response plan, and adding a vulnerability disclosure program to strengthen trust and compliance.

15
83
2
85
75
85
100
vacationrentalpropertymanagementchannelmanagerbookingengineguestcommunication+3 more
JavaScriptWordPressGoogle Tag ManagerSnowplow Analytics+2
2025-10-12T04:03:17.915Z
aicpcorp.com favicon

American International Concession Products, Corp. (AICP)

aicpcorp.com

49
RetailUnited StatesmediumHIGH

American International Concession Products, Corp. (AICP) is a well-established broker and distributor specializing in concession products, premium merchandise, packaging, and crowd control equipment primarily serving the entertainment and hospitality industries. With over 35 years of experience, AICP positions itself as a leading provider in its niche, offering curated solutions to enhance guest experiences and operational efficiency. The website reflects a professional business model targeting entertainment venues, concession operators, and related clients. Technically, the website is built on WordPress with modern front-end libraries such as Bootstrap 5 and Swiper.js, ensuring a responsive and user-friendly experience. SEO is supported by Yoast SEO plugin, and performance is moderate with good mobile optimization. Hosting appears to be managed via GoDaddy, consistent with the domain registrar information. From a security perspective, the site uses HTTPS and Google reCAPTCHA on its contact forms, which are positive indicators. However, the absence of DNSSEC, security headers, and explicit security or incident response policies suggests room for improvement. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism detected. WHOIS data confirms domain legitimacy and consistency with the business claims. Overall, the website presents a credible and professional front for AICP Corp., with moderate technical maturity and basic security posture. Strategic enhancements in security headers, privacy compliance, and incident response transparency would strengthen trust and resilience.

20
53
2
75
42
80
40
concessionsnacksmerchandisepackagingcrowdcontrol+2 more
WordPressBootstrap 5jQuerySwiper.js+1

Partner Domains:

ogrelogic.com
partner
2025-10-12T04:01:42.425Z
phuket.surgery favicon

Phuket Surgery

phuket.surgery

45
HealthcareThailandsmallHIGH

Phuket Surgery is a specialized online platform established in 2017 that facilitates medical tourism in Thailand, focusing on connecting patients with reputable medical providers in locations such as Phuket and Bangkok. The platform offers services including procedure search, personalized quotes, and booking assistance, positioning itself as a trusted marketplace for international patients seeking healthcare services in Thailand. The website is professionally designed with good content quality, clear navigation, and consistent branding, targeting medical tourists and patients interested in cosmetic and other medical procedures. Technically, the website is built on WordPress using Elementor and several modern web technologies including jQuery, Bootstrap, and Google reCAPTCHA for form security. SEO is well implemented with Yoast SEO plugin and structured data in JSON-LD format. The site is mobile optimized and performs moderately well, though some accessibility features could be improved. From a security perspective, the site uses HTTPS with good SSL configuration and employs Google reCAPTCHA to protect forms. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not detected, and privacy compliance mechanisms such as cookie consent banners are missing. WHOIS data is unavailable or privacy protected, which is common but reduces transparency. No critical vulnerabilities or suspicious content were found. Overall, Phuket Surgery presents a credible and professional online presence for medical tourism services in Thailand, with recommendations to enhance security headers, privacy compliance, and transparency to further strengthen trust and compliance.

15
80
17
40
-
85
40
medicaltourismthailandphukethealthcareplasticsurgery+4 more
WordPressPHPjQueryElementor+6
2025-10-12T03:57:57.386Z
anticimex.fr favicon

Anticimex France

anticimex.fr

61
OtherFrancelargeMEDIUM

Anticimex France operates as a leading provider of pest control and sanitation services, targeting both professional sectors and individual customers. The company emphasizes innovative, eco-responsible solutions and serves a broad range of industries including hospitality, manufacturing, retail, and public services. The website reflects a mature digital presence with comprehensive service descriptions and customer engagement tools. Technically, the site is built on modern frameworks such as Gatsby and React, ensuring fast performance and excellent mobile optimization. Integration with marketing and analytics tools like Marketo and Google Tag Manager supports effective customer insights and campaign management. Security best practices are observed with HTTPS enforcement and appropriate security headers, although explicit security policies and incident response details are not publicly disclosed. The overall security posture is strong, with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed through clear privacy and cookie policies with consent mechanisms, aligning with GDPR requirements. The domain WHOIS data is not publicly available, which is typical for French domains managed by AFNIC, and does not detract from the legitimacy of the business. Strategically, Anticimex France is well positioned in its market with a strong brand and comprehensive service offerings. The website quality and trust indicators support a high level of business credibility and customer confidence.

90
68
2
60
-
80
100
pestcontrolsanitationderatizationdisinfectionenvironmentallyfriendly+2 more
Gatsby 5.11.0ReactGoogle Tag ManagerMarketo+3
2025-10-12T00:34:29.626Z
dbsa.org favicon

Development Bank of Southern Africa

dbsa.org

70
FinanceSouth AfricalargeMEDIUM

The Development Bank of Southern Africa (DBSA) is a government-owned development finance institution focused on financing infrastructure projects to promote economic prosperity in Southern Africa. The website reflects a mature digital presence with comprehensive information about their services, sectors, and projects. The organization positions itself as a key player in infrastructure finance, climate financing, and sustainable development, targeting governments, municipalities, and investors across Africa. The site is well-branded, professionally designed, and offers multiple contact channels including forms, phone numbers, and social media links. Technically, the website is built on Drupal CMS and leverages modern web technologies such as lazy loading, Google Analytics, Google Tag Manager, and reCAPTCHA v3 for security on forms. The site is mobile optimized and accessible, with good SEO practices evident from meta tags and structured data. However, security headers are not detected in the provided data, which is an area for improvement. From a security perspective, the site uses HTTPS and implements anti-bot measures on forms, but lacks a published vulnerability disclosure or incident response contact information. The WHOIS data is unavailable or malformed, likely due to privacy protection, which is common for government entities. Overall, the site demonstrates a strong security posture but could enhance transparency and security header implementation. The overall risk assessment is low, with recommendations to improve security headers, publish vulnerability disclosure policies, and provide incident response contacts to further enhance trust and compliance. The website is professional, trustworthy, and aligns well with the organization's mission and government ownership.

95
68
2
80
62
70
100
developmentfinanceinfrastructuregovernmentafricasustainability+1 more
Drupal CMSGoogle AnalyticsGoogle Tag ManagerreCAPTCHA v3+4
2025-10-11T21:07:12.922Z
klimaschutz.de favicon

Nationale Klimaschutzinitiative des Bundesministeriums für Wirtschaft und Klimaschutz

klimaschutz.de

68
EnergyGermanylargeMEDIUM

The website www.klimaschutz.de represents the Nationale Klimaschutzinitiative, an official climate protection initiative under the German Federal Ministry for Economic Affairs and Climate Action. It serves as a platform to promote climate protection projects, provide information, and foster a community for citizens, companies, and municipalities engaged in climate action. The site is well-branded, professional, and targets a broad German audience interested in sustainability and energy efficiency. Technically, the site is built on Drupal 10, leveraging modern web technologies including Matomo for analytics and Cookiebot for GDPR-compliant cookie management. The site is mobile-optimized, accessible, and performs moderately well. Security best practices such as HTTPS and consent management are implemented, though some security headers could be improved. From a security perspective, the site shows a good posture with no visible vulnerabilities or exposed sensitive data. However, the absence of explicit security or incident response policies and minimal WHOIS registrant information slightly reduce trust. The domain uses managed IP name servers, which is common but lacks registrant transparency. Overall, the website is a trustworthy, professional government initiative with strong privacy compliance and a solid technical foundation. Strategic improvements in security headers, incident response transparency, and WHOIS data disclosure would further enhance its security and credibility.

55
83
17
70
77
60
100
climategovernmentenergyenvironmentsustainability+4 more
Drupal 10Matomo AnalyticsCookiebot Consent ManagementFont Awesome+1
2025-10-11T19:59:19.065Z
tealium.com favicon

Tealium Inc.

tealium.com

81
TechnologyUnited StatesenterpriseLOW

Tealium Inc. is a well-established enterprise founded in 2007, specializing in real-time customer data integration and management through its Customer Data Platform (CDP) and tag management solutions. Positioned as a leader in the market, recognized by Gartner's Magic Quadrant, Tealium serves a global enterprise audience with a comprehensive suite of products designed to unify, activate, and leverage customer data across multiple touchpoints in real-time. Their offerings include advanced AI data streaming, cloud data activation, and privacy-first healthcare solutions, targeting marketing, IT, and data analytics teams. Technically, the website is built on WordPress with a modern tech stack including Google Analytics, Marketo forms, and Tealium's own tag management scripts. The site demonstrates good SEO, accessibility, and mobile optimization, with a moderate performance profile. Hosting and domain registration are consistent with enterprise standards, leveraging Amazon Registrar and AWS DNS infrastructure. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, but lacks explicit security headers and a published security.txt file. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear policies and GDPR adherence. Contact information is transparent, including phone and physical address, enhancing business credibility. Overall, Tealium's website reflects a mature, professional, and trustworthy enterprise with a strong market position in customer data platforms. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure policies, and enabling DNSSEC to further strengthen security posture.

85
83
47
75
82
85
100
customerdataplatformreal-timedataaimarketingtechnologydataprivacy+3 more
Google AnalyticsMarketo FormsCookieConsent v3.1.0jQuery 3.7.1+3

Partner Domains:

aws.amazon.com
partner
2025-10-11T18:51:37.471Z
eib.org favicon

European Investment Bank

eib.org

68
FinanceN/aenterpriseMEDIUM

The European Investment Bank (EIB) is a major multilateral financial institution serving as the lending arm of the European Union. It holds a leading market position as the world's largest multilateral lender and a top provider of climate finance. The website clearly communicates its mission, services, and strategic priorities, targeting a broad audience including citizens, businesses, public sector entities, and partners. The business model revolves around providing loans, equity investments, guarantees, advisory services, and managing mandates and partnerships to support sustainable development and innovation across Europe and globally. Technically, the website employs a modern and robust technology stack including Bootstrap, FontAwesome Pro, jQuery, Swiper.js, GSAP, and Piwik PRO analytics with privacy-focused configurations. It is well-optimized for mobile devices, accessibility, and SEO, delivering a fast and professional user experience. The site uses HTTPS exclusively and integrates Google reCAPTCHA v3 to protect forms from abuse. From a security perspective, the site demonstrates strong posture with enforced HTTPS, secure forms, and privacy-compliant analytics. No vulnerabilities or exposed sensitive data were detected. However, explicit security headers like Content-Security-Policy and X-Frame-Options should be verified or enhanced. Incident response contact information is not prominently published, and a security.txt file is absent, which could be improved. Overall, the website is highly trustworthy, professional, and compliant with privacy regulations including GDPR. The lack of WHOIS data is mitigated by the strong branding and external references confirming legitimacy. Strategic recommendations include enhancing security header transparency, publishing incident response contacts, and considering a vulnerability disclosure policy to further strengthen security culture and trust.

95
68
2
70
42
80
100
financeinvestmenteumultilateralclimatefinance+5 more
BootstrapFontAwesome ProjQuery 3.5.1Swiper.js+4

Partner Domains:

www.eif.org
subsidiary
2025-10-11T18:48:37.081Z