Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 55 of 166|Showing 2701-2750 of 8293
aha.io favicon

Aha!

aha.io

77
TechnologyN/alargeLOW

Aha! is a leading SaaS provider specializing in product development software, trusted by over one million product builders worldwide. Their comprehensive suite includes tools for roadmapping, customer interview management, idea capture, project management, and agile delivery, enhanced by a purpose-built AI assistant to accelerate workflows. The company positions itself as the world's #1 product development software, serving product teams across various industries with a focus on delivering lovable products efficiently. Technically, the website leverages modern web technologies including React, Lottie animations, and integrates with Contentful for asset management. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. SEO best practices are evident through comprehensive metadata and structured data. From a security perspective, the site enforces HTTPS and employs secure form handling and event tracking. However, explicit security headers and a public security policy are absent, indicating room for improvement in transparency and defense-in-depth. Privacy compliance is strong with clear privacy and cookie policies and consent mechanisms, aligning with GDPR requirements. Overall, the website demonstrates a high level of professionalism, trustworthiness, and business credibility. The lack of public WHOIS data is consistent with privacy protection practices common among large SaaS providers. No critical security issues or content safety concerns were identified, positioning Aha! as a reliable and secure platform for product development teams.

85
58
17
80
100
85
100
productdevelopmentproductmanagementsaasaiassistantroadmapping+4 more
ReactJavaScriptCSSLottie animations+3
2025-10-10T07:38:57.462Z
dynamed.com favicon

EBSCO Industries, Inc.

dynamed.com

68
HealthcareUnited StatesenterpriseMEDIUM

DynaMed is a leading clinical decision support platform operated by EBSCO Industries, Inc., providing evidence-based medical content, alerts, drug resources, and continuing education primarily targeting healthcare professionals and institutions. The platform is subscription-based and recognized for its authoritative medical guidance, holding prestigious awards such as the Best in KLAS Clinical Decision Support recognition. Technically, the website employs modern web technologies including React, JavaScript, and integrates advanced analytics and consent management tools such as Gainsight PX, Amplitude, Datadog RUM, and Osano CMP, reflecting a mature digital infrastructure with good performance and accessibility. Security posture is strong with HTTPS enforcement, security headers, and cookie consent mechanisms, though explicit security policies and incident response contacts are not publicly disclosed. The absence of WHOIS registration data is a notable anomaly, potentially indicating privacy protection or registration issues, but the website's branding and external references confirm its association with a reputable enterprise. Overall, the site demonstrates high professionalism, trustworthiness, and compliance with privacy regulations, making it a reliable resource for its target audience.

70
68
17
55
67
80
100
healthcaremedicalclinicaldecisionsupportsubscriptioneducation+4 more
ReactJavaScriptCSSGainsight PX+3

Partner Domains:

more.ebsco.com
partner
www.ebsco.com
parent
2025-10-10T07:36:15.221Z
we.tl favicon

WeTransfer

we.tl

72
TechnologyN/alargeMEDIUM

WeTransfer is a well-established technology company founded in 2007, specializing in providing a platform for fast and easy transfer of large files. The website presents a professional and modern design, targeting general users and professionals who need to share large files efficiently. The business model is primarily freemium, offering free file transfers with options for paid upgrades. The company holds a strong market position as a leading file transfer service globally. Technically, the website leverages modern frameworks such as Next.js and React, integrates payment processing via Stripe, and uses Google Analytics and Tag Manager for analytics and marketing. Hosting is provided through Amazon AWS infrastructure, ensuring good performance and scalability. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. However, it lacks DNSSEC and visible security headers, which are recommended for enhanced security. No explicit privacy, cookie, or terms of service policies were detected in the provided content, indicating room for improvement in privacy compliance. No vulnerability disclosure or incident response information is publicly available. Overall, the website is trustworthy and professional with a good security posture but could enhance privacy compliance and security transparency. Strategic recommendations include enabling DNSSEC, publishing comprehensive privacy and cookie policies, implementing security headers, and providing clear incident response contacts.

75
50
17
82
82
90
100
filetransfercloudstoragelargefilestechnologyfilesharing
ReactNext.jsStripeGoogle Tag Manager+1
2025-10-10T07:35:11.234Z
privy.com favicon

Privy

privy.com

70
E-commerceN/amediumMEDIUM

Privy is a SaaS company specializing in email and SMS marketing tools tailored for e-commerce brands, particularly Shopify store owners. The platform combines intuitive marketing automation with expert coaching to help over 10,000 brands grow sales effectively. Privy positions itself as Shopify's top-reviewed marketing app, offering features like list growth, campaign management, and personalized strategy support. Technically, the website is built on modern frameworks such as React and Next.js, hosted likely on Vercel, and integrates multiple analytics and marketing tools including Google Analytics, HubSpot, Facebook Pixel, and PostHog. The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and employs standard best practices, though explicit security headers are not fully confirmed in the HTML. Privacy compliance is strong with comprehensive privacy and cookie policies and GDPR indicators. However, no public incident response or vulnerability disclosure policies were found, representing an area for improvement. Overall, Privy presents a professional, trustworthy online presence with a solid business model and technical foundation. The lack of WHOIS data due to privacy protection is typical for SaaS businesses and does not detract from legitimacy. Strategic recommendations include enhancing security header transparency, publishing vulnerability disclosure information, and improving incident response visibility.

30
73
17
95
72
85
100
ecommerceemailmarketingsmsmarketingsaasshopify+3 more
ReactNext.jsJavaScriptHubSpot analytics+7
2025-10-10T07:34:15.069Z
skoda-auto.de favicon

Škoda Auto Deutschland GmbH

skoda-auto.de

69
TransportationGermanylargeMEDIUM

Škoda Auto Deutschland GmbH operates the official German website for the Škoda automotive brand, providing comprehensive information about their vehicle models, financing options, after-sales services, and electric mobility solutions. The company is a large, well-established player in the transportation sector in Germany, with a strong market presence and a broad portfolio including electric vehicles. The website targets both individual consumers and business customers, offering tools such as vehicle configurators, dealer locators, and financing calculators. Technically, the website employs a modern technology stack including React, Bootstrap, and jQuery, hosted on a reliable infrastructure likely powered by Microsoft Azure. The site is well-optimized for mobile devices, accessible, and SEO-friendly, with extensive use of structured data and meta tags. Performance is moderate, with good loading times and responsive design. From a security perspective, the site enforces HTTPS, implements key security headers, and avoids exposing sensitive data. However, it lacks a public vulnerability disclosure policy and explicit incident response contact details. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. Contact information is transparent and professional, enhancing business credibility. Overall, the website presents a low-risk profile with strong trust indicators and professional digital maturity. Strategic improvements could focus on enhancing security transparency and incident response readiness to further strengthen the security posture.

60
73
17
60
90
65
100
automotivecarsaleselectricvehicleskodagermany+5 more
jQueryBootstrapReactPopper.js+2
2025-10-10T06:29:22.607Z
nutzfahrzeuge-autohaus-ostmann.de favicon

Autohaus Ostmann GmbH & Co. KG

nutzfahrzeuge-autohaus-ostmann.de

70
TransportationGermanymediumMEDIUM

Autohaus Ostmann GmbH & Co. KG is a well-established automotive dealership group operating in the Nordhessen region of Germany, with over 60 years of experience. The company offers a broad portfolio of vehicles from Volkswagen, Volkswagen Nutzfahrzeuge, Audi, SEAT, CUPRA, ŠKODA, and MAXUS, serving both retail and commercial customers. Their services include new and used vehicle sales, servicing, repairs, parts, and fleet management, positioning them as a comprehensive automotive service provider in their regional market. The website reflects a professional and consistent brand presence aligned with Volkswagen's corporate identity. Technically, the website is built on a modern React framework integrated with Volkswagen's proprietary CMS platform, leveraging Adobe Helix RUM for performance monitoring. The site is mobile-optimized and SEO-friendly, with structured data enhancing search engine visibility. Hosting and asset delivery are managed within Volkswagen's corporate infrastructure, ensuring reliability and security. From a security perspective, the site enforces HTTPS with strong SSL configurations and implements key security headers. No critical vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are comprehensive and GDPR compliant, though explicit security policy and incident response information are not publicly detailed. The absence of a vulnerability disclosure policy suggests an area for improvement. Overall, the website demonstrates a strong digital maturity and security posture appropriate for a medium-sized automotive dealership. Strategic recommendations include publishing a dedicated security policy, enhancing incident response transparency, and adopting a vulnerability disclosure framework to further strengthen trust and compliance.

80
73
22
70
70
60
100
automotivevolkswagendealershipservicegermany+1 more
ReactAdobe Helix RUMJavaScriptCSS+1
2025-10-10T06:29:07.567Z
ebsco.com favicon

EBSCO Information Services, Inc.

ebsco.com

76
EducationUnited StatesenterpriseLOW

EBSCO Information Services, Inc. is a leading global provider of research databases, e-journals, ebooks, and discovery services primarily serving academic libraries, public libraries, corporations, schools, government, and medical institutions. The company offers a comprehensive suite of authoritative information resources that support scholarly research and evidence-based clinical decision-making. Their market position is strong, with a focus on institutional subscription models and partnerships with educational and healthcare organizations worldwide. Technically, the website is built on modern web technologies including React and Next.js, ensuring fast performance, mobile responsiveness, and good accessibility. The site employs Google Tag Manager for analytics and a cookie consent mechanism, reflecting a mature digital infrastructure. The design is professional and content-rich, supporting a high-quality user experience. From a security perspective, the site uses HTTPS and has implemented cookie consent, but lacks explicit security policies, incident response information, and security headers. No vulnerabilities or exposed sensitive data were detected in the content. The WHOIS data is unavailable, likely due to privacy protection, which is common for enterprises but reduces transparency. Overall, the security posture is good but could be improved with more explicit security disclosures. The overall risk assessment is low, with the main recommendation being to enhance transparency around security policies and incident response. The site is trustworthy, professional, and compliant with privacy regulations, making it suitable for its target audience of academic and professional institutions.

85
68
17
70
100
80
100
researchdatabasesebooksacademiclibraries+4 more
ReactNext.jsGoogle Tag ManagerCookielaw.org Consent Management+1

Partner Domains:

about.ebsco.com
partner
www.dynamed.com
partner
2025-10-10T06:23:48.322Z
aragon.es favicon

Gobierno de Aragón

aragon.es

61
GovernmentSpainlargeMEDIUM

Gobierno de Aragón operates the official regional government portal for Aragón, Spain, providing citizens and stakeholders with comprehensive information and digital services related to public administration, transparency, and electronic procedures. The website serves as a central hub for accessing government resources, official bulletins, and citizen services. Technically, the site is built on the Liferay platform, leveraging modern web technologies such as React, Google Tag Manager, and Microsoft Clarity for analytics and user experience enhancements. The site demonstrates good mobile optimization, accessibility, and SEO practices. Security posture is solid with HTTPS enforcement and use of security headers, though some headers could be more explicitly confirmed. Privacy compliance is evident with a comprehensive privacy policy, but the absence of a visible cookie consent mechanism and published security policies are areas for improvement. WHOIS data is unavailable due to query restrictions, limiting full trust assessment, but the official nature and domain usage strongly indicate legitimacy. Overall, the site is professional, trustworthy, and well-maintained, serving its government function effectively.

45
25
17
75
67
80
100
governmentpublicservicesregionalspaintransparency+3 more
Liferay PortalGoogle Tag ManagerMicrosoft ClarityGoogle Custom Search Engine+6

Partner Domains:

aplicaciones.aragon.es
partner
presupuesto.aragon.es
partner

+2 more partners

2025-10-10T05:18:32.362Z
boldapps.net favicon

Bold Commerce

boldapps.net

65
TechnologyCanadalargeMEDIUM

Bold Commerce is a well-established Canadian technology company specializing in ecommerce checkout and payment integration solutions. Their flagship product, Bold Booster, simplifies payment gateway integration across multiple open-source ecommerce platforms, enabling merchants to access advanced payment options such as Apple Pay, Google Pay, and PayPal Fastlane. The company targets payment companies and merchants seeking modernized checkout experiences and operates a robust partner ecosystem including Shopify and Magento. The website reflects a mature digital presence with comprehensive content, clear navigation, and strong branding consistency. Technically, the website leverages modern web technologies including Next.js and React, supported by Cloudflare DNS and CDN services. It integrates multiple marketing and analytics tools such as Google Analytics, HubSpot, Hotjar, and Facebook Pixel, demonstrating a sophisticated digital marketing infrastructure. The site is mobile-optimized, fast-loading, and accessible, with proper SEO and metadata implementation. From a security perspective, Bold Commerce enforces HTTPS, employs standard security headers, and maintains a bug bounty program to encourage vulnerability reporting. The domain registration data is consistent with the business claims, and no suspicious patterns or vulnerabilities were detected. Privacy and cookie policies are present with consent mechanisms, indicating compliance with GDPR and other privacy regulations. Overall, Bold Commerce presents a high level of professionalism, security maturity, and business credibility. The website is safe for general audiences and supports extensive user tracking for marketing purposes. Strategic recommendations include enabling DNSSEC for enhanced DNS security, publishing a security.txt file for vulnerability disclosure, and explicitly listing security frameworks or certifications to further boost trust.

30
53
20
80
75
70
100
ecommercepaymentscheckoutshopifymagento+4 more
ReactNext.jsGoogle Tag ManagerHotjar+6

Partner Domains:

shopify.com
partner
developer.boldcommerce.com
service

+1 more partners

2025-10-10T05:14:13.895Z
gov.pt favicon

República Portuguesa

gov.pt

66
GovernmentPortugalenterpriseMEDIUM

The website gov.pt serves as the official digital portal for the Portuguese government, providing citizens, residents, and businesses with access to a wide range of public services and institutional information. It holds a strong market position as the primary gateway for government digital services in Portugal, targeting a broad audience including individuals and economic entities. The portal's business model revolves around government digital transformation and public service delivery online. Technically, the site leverages modern web technologies such as React and Next.js, ensuring fast performance, mobile optimization, and accessibility compliance. The infrastructure appears robust, with secure HTTPS connections and comprehensive security headers, reflecting a mature digital presence. From a security perspective, the portal demonstrates a solid posture with enforced HTTPS, security best practices, and no visible vulnerabilities. However, explicit security policies and incident response details are not prominently published, which could be improved to enhance transparency and trust. Overall, the risk assessment is low given the official nature, strong security measures, and compliance with privacy regulations. Strategic recommendations include publishing detailed security and incident response policies, establishing a vulnerability disclosure program, and enhancing data protection officer visibility to further strengthen trust and compliance.

75
25
17
70
77
75
100
governmentpublicservicesportugaldigitalservicescitizenportal
ReactNext.jsGoogle Tag ManagerSVG icons+1
2025-10-10T05:13:38.811Z
vanguard.com favicon

The Vanguard Group, Inc.

vanguard.com

68
FinanceUnited StatesenterpriseMEDIUM

The Vanguard Group, Inc. is a leading global investment management company with a 50-year history, serving over 30 million investors worldwide. The company offers a broad range of financial products including mutual funds, ETFs, IRAs, and retirement plans, complemented by personalized financial advice and market insights. Vanguard's business model emphasizes low costs, long-term investment perspectives, and client ownership structure, positioning it as a trusted leader in the finance industry. Technically, the website leverages modern web technologies such as React and Next.js, with robust performance and excellent mobile optimization. The site employs advanced tag management and analytics tools including Adobe Launch and OneTrust for privacy compliance. Security is well implemented with HTTPS, Content Security Policy headers, and no visible vulnerabilities. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature digital infrastructure. Security posture is strong with best practices observed, though explicit security policy and incident response contacts are not publicly detailed. The WHOIS data for the subdomain is unavailable, likely due to it being a subdomain rather than a registered domain, but the main domain is well-established and trustworthy. Overall, the site is professional, secure, and compliant, with extensive tracking and advertising integrations managed transparently. The overall risk is low, with recommendations to publish explicit security policies and incident response information to enhance transparency and trust further. The site is safe for general audiences with no adult or questionable content detected.

30
68
17
87
72
85
100
investmentfinancemutualfundsretirementfinancialadvice+3 more
ReactNext.jsAdobe LaunchAdobe Data Layer+2

Partner Domains:

corporate.vanguard.com
partner
investor.vanguard.com
partner

+3 more partners

2025-10-10T03:00:45.635Z
auditeur-legal.fr favicon

Compagnie Nationale des Commissaires aux Comptes (CNCC)

auditeur-legal.fr

59
GovernmentFrancemediumMEDIUM

The website auditeur-legal.fr serves as the official informational portal for the Compagnie Nationale des Commissaires aux Comptes (CNCC), the national professional body for legal auditors in France. It provides comprehensive information about the auditing profession, its missions, and services, targeting organizations, auditors, and stakeholders in the French economy. The site positions itself as an authoritative resource promoting transparency, trust, and security in economic activities through legal auditing. Technically, the website is built as a modern React single-page application using Ant Design components, hosted likely via Gandi, and employs Matomo for analytics. The site is mobile-optimized with good navigation and professional design, although accessibility and SEO could be improved. Security-wise, the site enforces HTTPS and avoids exposing sensitive data, but lacks some security headers and explicit security policies. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or GDPR explicit indicators. Overall, the domain registration data aligns well with the website content, indicating legitimacy and consistency. The site is safe, professional, and trustworthy, with minor improvements recommended in privacy and security transparency.

90
10
2
70
72
45
100
auditeurlgalcnccauditcommissaireauxcomptes+2 more
ReactAnt DesignMatomo AnalyticsVimeo embed

Partner Domains:

annuaire.cncc.fr
partner
www.devenir-auditeur-legal.fr
partner

+1 more partners

2025-10-10T02:55:43.077Z