Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 567 of 656|Showing 28301-28350 of 32765
lugeja.ee favicon

URRAM

lugeja.ee

47
EducationEstoniamediumHIGH

URRAM is a specialized Estonian library portal that provides users with access to a wide range of library catalogs, articles, and library information. It integrates with national authentication services such as ID-card, Mobile-ID, and Smart-ID, enabling secure user login and management of library services like reservations and loans. The platform targets library users across Estonia, including students, researchers, and the general public, positioning itself as a key national resource in the education and public service sectors. Technically, the website employs a modern frontend stack including Bootstrap 4.4.1, jQuery 3.4.1, and various Bootstrap extensions for UI components and date pickers. It uses Google Analytics for user tracking but lacks visible cookie consent mechanisms. The site is mobile responsive and offers a good user experience with clear navigation and search functionalities. However, some technical improvements are recommended, such as updating JavaScript libraries and enhancing accessibility. From a security perspective, the site enforces HTTPS and uses secure national eID authentication methods, which are strong trust signals. However, the absence of security headers and the use of an outdated jQuery version present potential vulnerabilities. The lack of explicit privacy and cookie policies also indicates compliance gaps with GDPR requirements. Overall, URRAM is a moderately mature digital platform with a solid business credibility in the Estonian library ecosystem. Strategic improvements in privacy compliance, security headers, and library technology updates would enhance its security posture and user trust.

30
10
2
85
62
70
40
libraryeducationestoniaauthenticationcatalog+1 more
Bootstrap 4.4.1jQuery 3.4.1Popper.jsBootstrap-select+2

Partner Domains:

tara.ria.ee
partner
2025-06-27T00:41:54.123Z
optionseducation.org favicon

The Options Clearing Corporation

optionseducation.org

50
FinanceUnited StateslargeMEDIUM

The Options Industry Council (OIC) is a well-established educational resource operated by The Options Clearing Corporation (OCC), providing comprehensive options trading education to investors, financial advisors, and institutional participants globally. The website offers a rich array of educational materials including webinars, podcasts, strategy guides, and real-time options quotes, positioning itself as a trusted industry leader since 1992. The business model is non-profit and supported by major participant exchanges, reinforcing its credibility and market position. Technically, the website is built on the Kentico CMS platform and leverages a modern technology stack including Google Tag Manager, Google Analytics, Facebook Pixel, and Microsoft Clarity for analytics and marketing. The site demonstrates good performance, mobile optimization, and accessibility, with a professional and consistent design that enhances user experience and trustworthiness. From a security perspective, the site enforces HTTPS and employs secure form handling with hashed data submissions. While no critical vulnerabilities were detected, the absence of explicit security headers such as Content-Security-Policy and lack of published security or incident response policies represent areas for improvement. Privacy compliance is partially addressed with a comprehensive privacy policy, but the lack of a cookie consent mechanism and GDPR-specific disclosures suggests room for enhancement. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include implementing additional security headers, publishing security policies, enhancing privacy compliance with cookie consent, and improving WHOIS transparency to further strengthen trust and compliance.

85
53
17
40
65
55
-
optionseducationfinanceinvestoreducationfinancialliteracyoptionstrading+2 more
Google Tag ManagerGoogle AnalyticsFacebook PixelBing UET+7

Partner Domains:

www.theocc.com
partner
boxoptions.com
partner

+3 more partners

2025-06-27T00:41:29.040Z
kultuurikava.ee favicon

OÜ Kultuurinet

kultuurikava.ee

40
MediaEstoniasmallHIGH

Kultuurikava.ee is an Estonian cultural event listing platform operated by OÜ Kultuurinet, established in 2012. It serves as a guide to cultural happenings in Estonia, targeting local residents and visitors interested in arts and events. The platform offers event search and filtering capabilities and maintains a consistent brand presence with a professional website design. The business operates in the media sector with a niche focus on cultural events. Technically, the website leverages modern web technologies including React, Font Awesome, Leaflet.js for mapping, and integrates analytics tools such as Google Analytics and Facebook SDK. The hosting is provided by Zone Media OÜ, a known Estonian hosting provider. The site is mobile-optimized with good user experience and basic SEO and accessibility features. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks visible security headers and a cookie consent mechanism despite using tracking scripts, which indicates room for improvement in privacy compliance and security best practices. No critical vulnerabilities or suspicious indicators were found. Overall, Kultuurikava.ee presents a moderate risk profile with good business credibility and technical implementation. Strategic improvements in privacy compliance and security headers would enhance trust and regulatory adherence.

15
10
2
70
42
60
40
cultureeventsestoniamediaeventlisting
Font Awesome 6Leaflet.js (mapping library)Google AnalyticsFacebook SDK+1

Partner Domains:

blog.kultuurikava.ee
partner
2025-06-27T00:40:23.728Z
ace.ee favicon

ACE Logistics Estonia AS

ace.ee

48
TransportationEstoniamediumHIGH

ACE Logistics Estonia AS is a medium-sized logistics company based in Estonia, specializing in multimodal transportation services including road, air, sea, and rail transport, as well as warehousing and customs clearance. The company operates primarily in the Baltic region and Europe, with subsidiaries in Latvia, Lithuania, and Ukraine, and is part of the ACE Logistics Group. The website reflects a professional and consistent brand image, supported by ISO 9001 and ISO 14001 certifications, indicating a commitment to quality and environmental management. The target audience includes businesses requiring comprehensive logistics solutions across multiple transport modes. Technically, the website is built on WordPress with modern plugins and frameworks such as Bootstrap and Slider Revolution, and it employs SEO best practices and cookie consent mechanisms to comply with GDPR. Security posture is generally good with HTTPS enforced and no visible critical vulnerabilities, though some plugins may require updates to mitigate known risks. Privacy compliance is strong, with clear privacy and cookie policies and consent management. Overall, the website presents a trustworthy and professional digital presence aligned with the company's business operations and market positioning.

20
25
2
85
77
70
20
logisticstransportestoniaisocertifiedmultimodaltransport+1 more
WordPressPHPjQueryBootstrap+6

Partner Domains:

www.ace.lv
subsidiary
www.ace.lt
subsidiary

+2 more partners

2025-06-27T00:40:03.645Z
aitaneestit.ee favicon

Aitan Eestit MTÜ

aitaneestit.ee

51
Non-profitEstoniasmallMEDIUM

Aitan Eestit MTÜ is a small Estonian non-profit organization founded in 2020, focused on charitable activities that connect donors with those in need. The organization primarily engages young people to collect donations and spread their message, aiming to improve social welfare in Estonia. The website reflects this mission with clear calls to action for donations and partnership, supported by a modern WordPress infrastructure using Elementor and GiveWP plugins. The site is multilingual, supporting Estonian, English, and Russian languages, enhancing accessibility for diverse audiences. Technically, the website is built on a robust WordPress platform with SEO optimization via Yoast and integrates Google Analytics for visitor tracking. The site uses HTTPS with a valid SSL certificate, ensuring secure data transmission. However, it lacks advanced security headers and DNSSEC, which could be improved to enhance security posture. The donation forms collect essential contact information such as email and phone numbers, but no explicit privacy or cookie policies are present, indicating a gap in GDPR compliance. From a security perspective, the site demonstrates basic best practices like HTTPS and nonce tokens in forms but misses critical elements like security headers and documented incident response or vulnerability disclosure policies. The WHOIS data is transparent and consistent with the organization's founding date and domain usage, supporting legitimacy. Overall, the website is functional and professional but would benefit from enhanced privacy compliance and security hardening. Strategically, the organization should prioritize implementing comprehensive privacy and cookie policies, enable DNSSEC, and add security headers to improve trust and compliance. Enhancing transparency around data protection and incident response will further strengthen their security culture and stakeholder confidence.

80
10
17
65
74
70
20
charitynon-profitdonationestoniasocialaid+2 more
WordPressElementorWooCommerceGiveWP plugin+3
2025-06-27T00:39:53.602Z
placetgroup.com favicon

Placet Group OÜ

placetgroup.com

55
FinanceEstoniamediumMEDIUM

Placet Group OÜ is a financial services company established in 2005, specializing in secured and unsecured loans, credit cards, and related financial products. Operating primarily in Estonia and Lithuania, with additional brands in Poland, the company serves private individuals and legal entities, emphasizing fast, convenient, and reliable financing solutions. Their market position is supported by a broad customer base and multiple subsidiaries, with a focus on individual customer approach and quality service. Technically, the website employs a modern JavaScript stack including jQuery, Google Analytics, and various carousel libraries, hosted under a domain registered since 2010. The site is mobile optimized and presents a professional design with clear navigation. However, some accessibility features are basic, and no CMS or advanced frameworks are detected. From a security perspective, the site uses HTTPS and Google reCAPTCHA on its contact form, but lacks DNSSEC, security headers, and published security or privacy policies. The WHOIS data is consistent with the business claims, indicating legitimacy. No WAF or blocking mechanisms are detected, allowing full content access. Overall, the website demonstrates a moderate to good security posture and business credibility but requires improvements in privacy compliance and security best practices to enhance trust and regulatory adherence.

15
35
17
55
67
75
100
financeloanscreditcardsestonialithuania+3 more
jQueryjQuery UIGoogle AnalyticsGoogle Tag Manager+4

Partner Domains:

wallester.com
partner
moncera.com
partner

+3 more partners

2025-06-27T00:38:48.250Z
paskolos.lt favicon

Paskolos.lt

paskolos.lt

66
FinanceLithuaniamediumMEDIUM

Paskolos.lt is a Lithuanian financial services company specializing in consumer credit products including credit lines, consumer loans, credit cards, auto loans, and mortgage loans. Established in 2011, it operates as a medium-sized entity under the parent company UAB Nordecum. The website is professionally designed, providing clear navigation and comprehensive information tailored to Lithuanian consumers seeking flexible credit solutions. The company leverages online platforms to deliver convenient financial services with a focus on user experience and accessibility. Technically, the website employs modern JavaScript libraries, Google Tag Manager, and analytics tools, ensuring a responsive and moderately performant user experience. The presence of a chat component using Vue.js enhances customer interaction. SEO and accessibility are adequately addressed, though some improvements in accessibility could be made. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms aligned with GDPR requirements. While basic security headers are present, additional headers like Content-Security-Policy could enhance protection. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms domain legitimacy and consistency with the business profile. Overall, Paskolos.lt presents a trustworthy and compliant online presence with solid business credibility and a good security posture. Strategic enhancements in security headers and incident response transparency could further strengthen its position.

50
83
17
60
67
65
100
financecreditloanconsumerloanscreditline+2 more
JavaScriptjQuerynoUiSliderGoogle Tag Manager+2

Partner Domains:

smspinigai.lt
partner
laen.ee
partner

+3 more partners

2025-06-27T00:38:38.198Z
pginkasso.ee favicon

PG Inkasso OÜ

pginkasso.ee

49
FinanceEstoniasmallHIGH

PG Inkasso OÜ is an Estonian private company specializing in debt collection and legal consulting services. The company positions itself as one of the largest players in Estonia's debt recovery market, offering both extrajudicial and judicial debt collection, legal advice, and client consultation. Their business model focuses on providing convenient and professional debt recovery services supported by qualified specialists and auditor-controlled financial processes. The website content is professionally presented and targets Estonian businesses and debtors needing collection services. Technically, the website uses a modern tech stack including Bootstrap, jQuery, and Google Analytics, hosted behind Cloudflare DNS and nameservers. The site is mobile optimized and has good SEO practices but lacks advanced accessibility features. The domain is very new (registered in 2024) which contrasts with the company's claimed founding year (2010), suggesting a recent domain acquisition or rebranding. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks DNSSEC, security headers, and any visible privacy or cookie policies, which are important for GDPR compliance and user trust. No incident response or vulnerability disclosure information is provided. Tracking is implemented via Google Analytics and Tag Manager without a visible consent mechanism. Overall, the website is functional and professional but could improve significantly in privacy compliance, security best practices, and transparency. The domain registration is consistent with the business location but the new domain age is a point to consider. Strategic improvements in security policies, contact information visibility, and compliance documentation are recommended.

15
10
2
60
65
65
100
inkassovladjuriidilineabidebtcollectionlegalservices+1 more
BootstrapjQueryGoogle AnalyticsGoogle Tag Manager+1

Partner Domains:

placetgroup.com
partner
laen.ee
partner

+3 more partners

2025-06-26T23:33:33.809Z
waldur.com favicon

Waldur

waldur.com

46
TechnologyEstoniasmallHIGH

Waldur is a technology company specializing in an open-source hybrid cloud and HPC management platform. Their solution integrates private and public cloud resources, including OpenStack, AWS, and DigitalOcean, offering a self-service portal, billing, helpdesk, and marketplace functionalities. The company targets cloud service providers, enterprises, research institutions, and public sector organizations, positioning itself as a niche player with professional support services and a strong open-source community presence. The website content is well-structured, professionally designed, and provides comprehensive information about the product features, integrations, and documentation. Technically, the website uses a modern tech stack including ReactJS for the frontend, Jekyll for static site generation, and standard libraries like jQuery and Bootstrap. Hosting appears to be on AWS infrastructure. The site is mobile-optimized and SEO-friendly with proper meta tags and structured data. Analytics are implemented via Google Analytics and Google Tag Manager, though privacy compliance mechanisms such as cookie consent banners are missing. From a security perspective, the site enforces HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks important security headers and does not publish security policies or incident response contacts. The WHOIS data shows a consistent and long-term domain registration with no privacy protection, supporting legitimacy. Overall, the security posture is moderate but could be improved with better policy disclosures and technical hardening. The overall risk is low to moderate. Strategic recommendations include implementing privacy and cookie policies with consent mechanisms, adding security headers, publishing incident response and vulnerability disclosure information, and enabling DNSSEC for domain security. These steps will enhance trust, compliance, and security posture, supporting Waldur's professional market positioning.

15
35
17
40
72
75
40
cloudhybridcloudopensourceopenstackhpc+3 more
ReactJSJekylljQueryBootstrap 4+3
2025-06-26T23:32:28.441Z
scandiweb.com favicon

Scandiweb

scandiweb.com

75
E-commerceLatvialargeMEDIUM

Scandiweb is a well-established full-service eCommerce agency specializing in Magento and Shopify development, digital marketing, and UI/UX design. Founded in 2003, it has grown to become a leader in the eCommerce development space, boasting the world's largest team of certified Magento developers and serving over 600 companies globally. The company offers a comprehensive suite of services including performance marketing, SEO, CRO, PPC, email automation, and AI-powered search optimization, positioning itself as a one-stop solution for eCommerce growth and digital transformation. Technically, the website leverages a modern technology stack including Webflow CMS, HubSpot marketing tools, Google Tag Manager, multiple analytics platforms (Google Analytics, Matomo, VWO), and various advertising pixels. The domain is hosted with Cloudflare DNS and registered via Amazon Registrar, Inc., indicating a stable and secure infrastructure. The site demonstrates good mobile optimization, SEO practices, and performance, although DNSSEC is not enabled, which is a potential area for improvement. From a security perspective, the site uses HTTPS and has domain status protections to prevent unauthorized changes. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not evident. Privacy compliance is partial, with no clear privacy or cookie policy pages detected, though cookie consent mechanisms appear to be implemented. Contact information is clearly provided, enhancing business credibility. Overall, Scandiweb presents a professional and trustworthy online presence with strong business credibility and technical maturity. To further enhance security posture and privacy compliance, it is recommended to publish detailed privacy and cookie policies, enable DNSSEC, and provide explicit security and incident response information.

70
88
17
80
75
85
100
ecommercemagentoshopifydigitalmarketingwebdevelopment+5 more
MagentoShopifyGoogle Tag ManagerGoogle Analytics+9
2025-06-26T23:31:38.288Z
T

The Options Clearing Corporation

theocc.com

52
FinanceUnited StateslargeMEDIUM

The Options Clearing Corporation (OCC) operates as a central counterparty clearing house based in Chicago, specializing in equity derivatives clearing and settlement services for the U.S. listed-options markets. It holds a unique market position as the sole entity clearing and settling every listed-options trade in the country, serving 16 exchanges. The website reflects a mature, large-scale financial institution with a focus on secure market operations, risk management, and member services. Technically, the website employs a modern technology stack including jQuery, Axios, Chart.js, Moment.js, Google Analytics, Google Tag Manager, and Microsoft Application Insights for telemetry. The site is well-structured, mobile-optimized, and demonstrates good SEO and accessibility practices. Performance is moderate, with no critical technical issues detected. From a security perspective, the site enforces HTTPS and uses secure analytics scripts, but lacks explicit published security policies, incident response contacts, and vulnerability disclosure mechanisms. No security headers were explicitly detected in the provided data, suggesting room for improvement. Privacy compliance is good with clear privacy and cookie policies, though no active cookie consent mechanism was found. Overall, the website presents a professional and trustworthy front for a critical financial market infrastructure entity. The absence of WHOIS data is a minor concern but likely due to query limitations or privacy services. Strategic recommendations include publishing formal security and incident response policies, implementing cookie consent mechanisms, and enhancing security headers to strengthen the security posture and compliance.

55
73
2
80
57
65
-
financeclearinghouseoptionsderivativesriskmanagement+1 more
jQuery 3.5.1Popper.js 1.9.9AxiosChart.js 2.7.3+4

Partner Domains:

infomemo.theocc.com
partner
marketdata.theocc.com
partner

+2 more partners

2025-06-26T23:28:32.855Z
S

Softavenue Oy

softavenue.fi

57
TechnologyFinlandsmallMEDIUM

Softavenue Oy is a Finnish IT service provider specializing in cloud services, endpoint management, network solutions, hosting, IT support, and consulting. The company positions itself as a customer-focused and professional IT partner with a strong emphasis on quality and expertise. Their website reflects a well-structured and professional digital presence targeting business customers in Finland. The company was founded in 2018, consistent with the domain registration date, and maintains active social media profiles to engage with clients. Technically, the website is built on WordPress with common industry tools such as Yoast SEO, Google Analytics, Google Tag Manager, Facebook Pixel, and LinkedIn Insight Tag. The site is mobile-optimized and performs moderately well, though some accessibility features are basic. Security is enforced via HTTPS, and forms are handled securely through Gravity Forms. However, the absence of security headers and published security or privacy policies indicates room for improvement in security posture and compliance. From a security perspective, the site shows good baseline practices with HTTPS and secure form handling but lacks explicit privacy, cookie, and incident response policies. Tracking and marketing scripts are present without visible consent mechanisms, which may pose GDPR compliance risks. No critical vulnerabilities or suspicious patterns were detected, and the domain registration details align well with the business claims, supporting legitimacy. Overall, the website is professional and credible but would benefit from enhanced privacy and security disclosures, implementation of security headers, and cookie consent mechanisms to improve compliance and trustworthiness.

65
10
15
75
95
80
100
itservicescloudservicescybersecuritymanagedservicestechnology+1 more
jQueryGoogle Tag ManagerGoogle AnalyticsFacebook Pixel+2
2025-06-26T23:28:22.823Z
xolo.io favicon

Xolo OÜ

xolo.io

70
TechnologyEstoniamediumMEDIUM

Xolo OÜ is a technology company founded in 2015, specializing in providing comprehensive business solutions tailored for solopreneurs and freelancers globally. Their platform offers services including virtual company invoicing without registration (Xolo Go), e-Residency company formation and management (Xolo Leap), accounting, tax reporting, and compliance support. The company positions itself as a trusted partner for independent business owners seeking to simplify administrative burdens and operate remotely. The website demonstrates a strong market presence with over 130,000 users and invoicing clients from 150 countries, indicating a mature and scalable business model. Technically, the website employs a modern tech stack with integrations of Google Analytics, HubSpot, Freshchat, and other marketing and analytics tools, ensuring robust user engagement tracking and customer support capabilities. The site is well-optimized for mobile devices, features clear navigation, and uses structured data for SEO enhancement. Performance is moderate, with room for optimization in loading speed. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. While explicit security headers are not visible in the HTML, the use of reputable third-party services and absence of exposed sensitive data indicate a solid security posture. However, the site could benefit from publishing a formal security policy and vulnerability disclosure program to enhance transparency and incident response readiness. Overall, Xolo presents a professional, trustworthy, and user-centric platform with strong business credibility and compliance awareness. The lack of WHOIS data transparency is mitigated by consistent website content and social proof. Strategic recommendations include enhancing security header implementation, formalizing security policies, and continuous monitoring of third-party integrations to maintain a high security standard.

65
83
2
80
57
85
100
solopreneursfreelancersbusinessformationinvoicingtaxation+4 more
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics+5
2025-06-26T23:27:12.489Z
cambridgevip.com favicon

Cambridge VIP Venture, Innovation & Partnering

cambridgevip.com

57
HealthcareUnited StatesmediumMEDIUM

Cambridge VIP is a specialized event organizer focusing on venture, innovation, and partnering conferences primarily in the healthcare and technology sectors, including biopharmaceuticals, digital health, medical devices, IT, and energy. The company operates under the parent organization Cambridge Innovation Institute and hosts multiple high-level networking summits designed to connect senior investors, executives, and entrepreneurs. Their business model centers on delivering industry-focused conferences with sponsorship and exhibition opportunities, targeting a professional audience seeking strategic insights and investment opportunities. Technically, the website is built on the Sitefinity CMS platform, utilizing modern web technologies such as Bootstrap for responsive design and integrates multiple analytics and advertising tools including Google Tag Manager, Google Analytics, Bing Ads, and LinkedIn Insight Tag. The site demonstrates good mobile optimization and SEO practices, though accessibility features are basic. Performance is moderate, with no critical technical issues detected. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism aligned with GDPR compliance. However, it lacks visible security headers and does not publish explicit security policies or incident response information. No vulnerability disclosure or security.txt files are present, which could be improved to enhance transparency and trust. The absence of WHOIS registration data is unusual but the professional presentation and detailed contact information mitigate concerns about legitimacy. Overall, Cambridge VIP presents a credible and professional online presence with a solid business focus and adequate technical implementation. Strategic improvements in security transparency and WHOIS registration clarity are recommended to further strengthen trust and compliance.

-
53
2
75
67
80
100
pharmatechnologyinvestorconferencesventureinnovation+5 more
Google Tag ManagerGoogle AnalyticsBing AdsjQuery+3

Partner Domains:

www.cambridgeinnovationinstitute.com
parent
cambridgeenertech.com
partner

+1 more partners

2025-06-26T22:23:06.733Z