Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157333
Websites
130
Industries
113
Countries
52
Avg Score
Page 594 of 1003|Showing 29651-29700 of 50114
streamguys.com favicon

StreamGuys

streamguys.com

53
TechnologyN/amediumMEDIUM

StreamGuys is a specialized technology company providing comprehensive streaming media and podcasting solutions to a diverse range of clients including broadcasters, public media, government, and commercial radio sectors. Their offerings include live streaming, podcast hosting, SaaS broadcast tools, server-side ad insertion, analytics, and monetization services. The company positions itself as a trusted partner with over 2000 organizations relying on their expertise and 24/7 support. Technically, the website is built on WordPress using the Divi theme, enhanced with SEO tools like Rank Math and security features such as Google reCAPTCHA. The site demonstrates good mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure. Performance is moderate, with room for optimization. Security posture is solid with HTTPS enforced and anti-bot measures in place, though explicit security headers and a published security policy are absent. No critical vulnerabilities were detected in the visible content. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR considerations. Overall, the website and business present a low-risk profile with strong professionalism and trust signals. The absence of WHOIS data is a minor concern but does not significantly detract from legitimacy given the business presence and content quality. Strategic recommendations include enhancing security headers, publishing incident response contacts, and continuous monitoring of third-party scripts.

15
65
17
75
82
70
20
streamingpodcastingmediatechnologyanalytics+1 more
WordPressDivi ThemejQueryGoogle reCAPTCHA+1

Partner Domains:

portal.streamguys.com
service
2025-07-29T02:18:39.177Z
supercast.com favicon

Supercast Podcast Corp.

supercast.com

67
MediaN/amediumMEDIUM

Supercast Podcast Corp. operates a specialized podcast subscription platform designed to empower podcasters and content networks to monetize their audiences effectively. The company positions itself as a leading player in the podcast monetization space, offering tailored subscription management, premium content feeds, and growth strategy support. Their platform is trusted by top podcasters and networks, generating millions in annual revenue. Technically, the website is built on modern web technologies including Webflow CMS, Stripe for payments, and integrates analytics and customer engagement tools such as Google Analytics, Hotjar, and Intercom. The site is well-optimized for performance, mobile responsiveness, and SEO, providing an excellent user experience. Security-wise, the site enforces HTTPS and uses reputable third-party services, but lacks explicit security headers and published security policies, which could be improved. The absence of WHOIS registration data raises some legitimacy concerns, though the professional presentation and comprehensive privacy and cookie policies indicate a mature digital presence. Overall, the platform is a credible and professional service with room for enhanced transparency and security documentation.

60
68
17
60
72
80
100
podcastsubscriptionmediapodcastercontent+2 more
WebflowjQueryStripeGoogle Analytics+6

Partner Domains:

acast.com
partner
supercast.tech
service

+1 more partners

2025-07-29T02:17:03.532Z
employers.org favicon

California Employers Association

employers.org

61
GovernmentUnited StatesmediumMEDIUM

The California Employers Association website serves as a membership-based organization providing HR assistance, workplace investigations, and employment law resources to employers primarily in California. The business model focuses on offering tiered membership plans and HR support services to organizations seeking expert guidance in employment matters. The website reflects a medium-sized, established association with a domain age dating back to 1995, indicating a long-standing presence in the market. Technically, the site is built on WordPress with the Yoast SEO plugin, leveraging Cloudflare DNS and Azure CDN for asset delivery. The infrastructure is modern and supports mobile responsiveness with good SEO optimization. However, some technical improvements such as enabling DNSSEC and adding security headers could enhance security posture. From a security perspective, the site uses HTTPS and has domain status protections but lacks visible security headers, privacy policies, cookie consent mechanisms, and incident response information. No vulnerabilities or exposed sensitive data were detected in the provided content. The absence of privacy and cookie policies impacts compliance with GDPR and related regulations. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance and security best practices. Strategic recommendations include implementing comprehensive privacy and cookie policies with consent mechanisms, adding security headers, and publishing vulnerability disclosure and incident response contacts to improve trust and compliance.

30
58
17
65
62
80
100
employerscaliforniahrmembershipassociation+2 more
WordPressYoast SEOFontAwesomejQuery+1
2025-07-29T02:16:16.085Z
rrar.com favicon

Raleigh Regional Association of REALTORS®

rrar.com

60
Real EstateUnited StatesmediumMEDIUM

The Raleigh Regional Association of REALTORS® (RRAR) is a regional professional association serving real estate agents and affiliates in the Raleigh, North Carolina area. The organization provides membership services, professional development opportunities, advocacy, and community engagement to support its members. The website reflects a mature membership association model with clear navigation, event calendars, and resources tailored to real estate professionals. Technically, the site uses a mix of modern JavaScript libraries and tracking tools such as Google Analytics and Facebook Pixel, hosted on a CMS platform identified as Accrisoft. The site is mobile-optimized and uses HTTPS, ensuring secure communications. However, there is no visible cookie consent mechanism, and security headers are not detected, which could be improved for better compliance and security posture. The WHOIS data for the domain is missing or unavailable, which raises questions about domain registration transparency but does not necessarily indicate malicious intent given the professional nature of the site. Overall, the site is trustworthy and serves its business purpose effectively.

35
53
2
75
65
75
100
realestateassociationmembershipprofessionaldevelopmentadvocacy+2 more
jQueryGoogle AnalyticsFacebook PixelGoogle Tag Manager+3

Partner Domains:

raleighrealtorstore.com
partner
rrargivingnetwork.org
partner

+1 more partners

2025-07-29T02:16:10.562Z
nojcc.org favicon

New Orleans Jewish Community Center

nojcc.org

66
Non-profitUnited StatesmediumMEDIUM

The New Orleans Jewish Community Center (JCC) is a well-established non-profit organization serving the New Orleans and Metairie communities. It offers a broad range of services including fitness centers, aquatics programs, early childhood education, summer camps, and cultural events focused on Jewish heritage and community engagement. The website reflects a community-oriented business model targeting local families and individuals interested in health, education, and cultural enrichment. The organization maintains partnerships with recognized entities such as the Jewish Community Centers Association, Jewish Federation of Greater New Orleans, and United Way, enhancing its market position and trustworthiness. Technically, the website is built on the Accrisoft CMS platform and employs a modern technology stack including jQuery libraries, Google Tag Manager, Google Analytics 4, Facebook Pixel, and Hotjar for analytics and user behavior tracking. The site is mobile optimized with good navigation and SEO practices, though performance is moderate. Security posture is solid with HTTPS enabled and no exposed sensitive data, but lacks visible security headers and explicit incident response or security policies. From a security and compliance perspective, the site does not expose vulnerabilities in the HTML content and uses secure analytics tools. However, the absence of WHOIS data due to a malformed WHOIS response limits domain trust assessment. Privacy compliance is basic with a privacy policy present but no explicit cookie policy banner. No incident response or vulnerability disclosure information is publicly available. Overall, the site is safe with no adult or malicious content detected. Strategically, the organization should enhance transparency by publishing security policies, improving cookie consent mechanisms, and implementing security headers. Addressing these gaps will strengthen user trust and compliance posture while maintaining its strong community presence.

45
58
17
85
62
85
100
fitnesscommunitycenterjewishcultureeducationaquatics+2 more
jQueryjQuery UIjQuery Cycle2Google Tag Manager+8

Partner Domains:

jcca.org
partner
www.jewishnola.com
partner

+1 more partners

2025-07-29T02:16:00.378Z
msdinsight.dk favicon

MSD Insight Denmark

msdinsight.dk

64
HealthcareDenmarkmediumMEDIUM

MSD Insight Denmark operates as a healthcare information portal providing comprehensive resources, product information, therapeutic area details, patient materials, and event registrations targeted primarily at healthcare professionals in Denmark. The website is branded under MSD, a well-known global pharmaceutical company, and links to official MSD domains for privacy and terms of use, reinforcing its legitimacy and professional positioning. The business model centers on delivering educational and informational content to support healthcare providers and patients. Technically, the website is built on WordPress VIP with modern technologies including Yoast SEO for search optimization, Google Tag Manager for analytics, and OneTrust for cookie consent management. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. Performance is moderate, with no evident technical debt or critical errors. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks explicit security headers and detailed security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is strong, with clear links to GDPR-compliant privacy policies and cookie management. WHOIS data is not publicly available, indicating privacy protection, which is reasonable for this type of healthcare information portal. Overall, the website presents a professional, trustworthy, and secure platform for healthcare information dissemination. Strategic recommendations include enhancing security headers, publishing explicit security policies, and maintaining regular audits of third-party scripts to further strengthen security posture.

85
48
2
70
52
70
100
healthcaremsdmedicalinformationpatientresourcesevents+1 more
WordPressYoast SEOGoogle Tag ManagerOneTrust Cookie Consent+1
2025-07-29T02:15:35.115Z
test-ipv6.cz favicon

CZ.NIC z.s.p.o

test-ipv6.cz

52
TechnologyCzech RepublicsmallMEDIUM

The website test-ipv6.cz is a specialized technical service operated by CZ.NIC z.s.p.o, a Czech domain registry organization. It provides IPv6 connectivity testing tools that help users and network administrators verify their IPv6 readiness and diagnose potential issues. The site is positioned as a niche technical resource with a focus on IPv6 adoption and network diagnostics. The business model appears to be a free service supported by CZ.NIC and community contributions, targeting technically savvy users and ISPs. From a technical perspective, the website uses standard web technologies including JavaScript, jQuery, and Piwik analytics. The hosting provider is identified as HETZNER-AS based on IP and ISP data. The site performs moderately in performance and mobile optimization, with basic accessibility and SEO features. The technical infrastructure is functional but could benefit from modern security headers and enhanced mobile responsiveness. Security posture is moderate; the site uses HTTPS for test URLs and avoids exposing sensitive data. However, it lacks explicit security headers such as Content-Security-Policy and HSTS, and does not publish privacy or cookie policies, which are compliance gaps. No incident response or vulnerability disclosure information is provided. The WHOIS data confirms domain legitimacy with consistent registration by CZ.NIC since 2011. Overall, the website is a trustworthy and useful technical resource with good business credibility but has room for improvement in privacy compliance and security best practices. Strategic recommendations include implementing privacy and cookie policies, adding security headers, and publishing vulnerability disclosure and incident response details to enhance trust and compliance.

15
25
17
60
47
80
100
ipv6connectivitytestnetworkingtechnologycznic
JavaScriptjQueryPiwik AnalyticsCSS+1
2025-07-29T02:14:19.457Z
ivhhn.org favicon

International Volcanic Health Hazard Network (IVHHN)

ivhhn.org

58
OtherUnited KingdomsmallMEDIUM

The International Volcanic Health Hazard Network (IVHHN) is a specialized academic and public health organization focused on researching and disseminating information about volcanic health hazards. Affiliated with the University of Cambridge and recognized as an IAVCEI Commission, IVHHN provides scientific protocols, public information resources, a comprehensive academic library, and crisis management briefings. The website serves researchers, public health officials, and the general public interested in volcanic hazards. Technically, the site is built on Drupal 8 with Bootstrap and uses Cloudflare for DNS and hosting services. It integrates Google Analytics with IP anonymization and Google Translate for multilingual support. The site is mobile optimized and offers a good user experience with clear navigation and professional design. Security posture is moderate with HTTPS enabled and no exposed sensitive data, but lacks DNSSEC and security headers. Privacy compliance is weak due to missing privacy and cookie policies and no consent mechanisms. Business credibility is high given the academic affiliation and long domain age. Overall, the site is trustworthy and professionally maintained but would benefit from enhanced privacy and security policies.

40
35
2
70
65
75
100
volcanichealthpublichealthscientificprotocolsvolcanicashcrisismanagement+3 more
Drupal 8Bootstrap 3.4.1jQueryGoogle Analytics+1
2025-07-29T01:10:21.789Z
azcommerce.com favicon

Arizona Commerce Authority

azcommerce.com

65
GovernmentUnited StateslargeMEDIUM

The Arizona Commerce Authority website serves as the official digital presence of the state-level economic development agency focused on supporting business recruitment, growth, and creation within Arizona. The site highlights key industries such as aerospace, technology, manufacturing, healthcare, and energy, providing resources like industry databases, asset maps, and newsletters to engage stakeholders. The business model centers on government-driven economic development with a broad target audience including businesses and investors interested in Arizona's economic landscape. Technically, the site employs a mature technology stack including AngularJS, Bootstrap, Umbraco CMS, and integrates multiple third-party analytics and marketing tools. The website is mobile optimized with good navigation and content quality, though accessibility features could be improved. Security posture is solid with HTTPS and reCAPTCHA usage, but lacks explicit security headers and published security policies. The absence of WHOIS registration data raises concerns about domain legitimacy, though the website's branding and contact information strongly suggest an official entity. Overall, the site is professional and trustworthy but would benefit from enhanced privacy compliance and security transparency.

35
65
17
75
75
80
100
economicdevelopmentbusinesssupportarizonagovernmenttechnology+3 more
jQueryAngularJS 1.3.0Bootstrap 3.3.7jQuery UI 1.12.1+5
2025-07-29T01:09:26.441Z
zencoder.com favicon

Brightcove, Inc.

zencoder.com

65
TechnologyUnited StatesmediumMEDIUM

Brightcove, Inc. is a well-established American software company specializing in online video platform services, including the robust video encoding platform Zencoder. The company targets businesses and developers seeking reliable, scalable video encoding and streaming solutions. Brightcove holds a strong market position as a trusted provider of intelligent video engagement technologies, offering a suite of products such as Marketing Studio, Communications Studio, and Media Studio. Their business model is SaaS-based, focusing on enterprise and mid-sized customers globally. Technically, the website is built on WordPress with Elementor, enhanced by performance optimizations like NitroPack and multilingual support via Weglot. The infrastructure leverages modern web technologies and integrates major analytics and advertising platforms, ensuring a fast, mobile-optimized, and accessible user experience. Security posture is solid with HTTPS enforcement and secure script usage, though explicit security headers and dedicated security policies are not prominently published. Privacy compliance is well addressed with visible privacy and cookie policies and consent mechanisms. Overall, the site reflects a professional and credible business presence with strong branding and user engagement features.

30
65
17
80
57
85
100
videoencodingvideoplatformmediastreamingsaastechnology+1 more
Google Tag ManagerBing AdsElementorNitroPack+4

Partner Domains:

marketplace.brightcove.com
partner
2025-07-29T01:09:11.267Z
tnnet.fi favicon

TNNet Oy

tnnet.fi

61
TechnologyFinlandmediumMEDIUM

TNNet Oy is a Finnish IT infrastructure company established in 2002, providing a broad range of IT services including networking, cloud solutions, virtual servers, IT support, and security services. The company positions itself as a reliable partner offering transparent pricing and high-quality, scalable IT infrastructure solutions tailored for businesses. Their market presence is supported by a strong client base and ISO 27001 certification, underscoring their commitment to security and quality. Technically, the website is built on WordPress with modern technologies such as jQuery, Google Tag Manager, Facebook Pixel, and Smartlook for analytics and user behavior tracking, all implemented with GDPR-compliant consent mechanisms. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. From a security perspective, TNNet demonstrates strong practices including HTTPS enforcement, DNSSEC for domain security, and ISO 27001 certification. While no explicit security policy or incident response page is found, the overall posture is robust with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies. Overall, TNNet Oy presents a low-risk profile with a professional online presence, strong business credibility, and adherence to security and privacy best practices. Strategic recommendations include publishing dedicated security and incident response policies and enhancing security headers to further strengthen their security posture.

15
25
25
70
90
75
100
itinfrastructuretechnologybusinessservicesiso27001gdpr+3 more
WordPressjQueryGoogle Tag ManagerFacebook Pixel+1
2025-07-29T01:08:41.146Z
eckeroline.com favicon

Eckerö Line Ab Oy

eckeroline.com

71
TransportationFinlandmediumMEDIUM

Eckerö Line Ab Oy operates a professional and well-established ferry service between Helsinki, Finland, and Tallinn, Estonia. The company offers a range of services including passenger ferry trips, hotel packages, daycruises, onboard shopping, and cargo transport. Their market position is solid within the Baltic Sea transportation sector, targeting tourists, business travelers, families, and car travelers. The website reflects a mature digital presence with e-commerce capabilities and multilingual support. Technically, the website is built on Magento, leveraging modern JavaScript frameworks and libraries such as RequireJS and jQuery. It integrates Google Analytics 4 and Google Tag Manager for analytics and marketing, and uses Cookiebot for cookie consent management. The site is mobile optimized and performs moderately well, with good SEO and accessibility features, though some accessibility improvements are recommended. From a security perspective, the site enforces HTTPS and implements key security headers, demonstrating a good security posture. However, there is no explicit security policy or incident response information publicly available, and no vulnerability disclosure program is evident. The absence of WHOIS data for the domain is a concern, as it reduces trust and raises questions about domain registration transparency. Overall, the website is professional, trustworthy, and compliant with privacy regulations, but could improve transparency around security policies and domain registration details. Strategic recommendations include publishing a security policy, enhancing accessibility, and clarifying domain registration information to strengthen trust and compliance.

65
65
17
70
90
80
100
ferrytraveltransportatione-commercealcohol+4 more
Magento (e-commerce platform)RequireJSjQueryGoogle Tag Manager+3

Partner Domains:

www.eckeroline.fi
sister
www.eckeroline.ee
sister
2025-07-29T01:08:31.064Z
investguam.com favicon

Guam Economic Development Authority

investguam.com

65
GovernmentGuammediumMEDIUM

The Guam Economic Development Authority (GEDA) operates as a government agency dedicated to fostering economic growth and investment in Guam. The website serves as a comprehensive portal for investors, small businesses, and the public, offering information on investment opportunities, financial assistance, public finance, and industry development programs. The site positions GEDA as a central authority in Guam's economic landscape, promoting sustainable growth and community benefits. Technically, the website is built on WordPress using the Elementor framework, incorporating modern web technologies such as jQuery and Google Analytics for tracking. The site is mobile-optimized and provides a good user experience with clear navigation and professional design. Security measures include HTTPS enforcement and Google reCAPTCHA integration, though some security headers are not explicitly detected. From a security perspective, the site demonstrates a solid posture with encrypted connections and no visible vulnerabilities or exposed sensitive data. However, the absence of a cookie consent mechanism and detailed privacy compliance features suggests room for improvement in regulatory adherence. The lack of WHOIS data is a notable anomaly, potentially indicating privacy protection or recent domain registration, which slightly impacts trust. Overall, the website is a credible and professional representation of a government economic development entity, with recommendations to enhance privacy compliance and security header implementation to further strengthen its security and trustworthiness.

25
53
17
85
85
75
100
governmenteconomicdevelopmentinvestmentsmallbusinessfinance+1 more
WordPressElementorjQueryGoogle Analytics+1
2025-07-29T01:07:15.615Z
veiovis.com favicon

TakeCare Insurance Company, Inc.

veiovis.com

48
HealthcareUnited StatesmediumHIGH

Veiovis.com represents the digital presence of TakeCare Insurance Company, Inc., a healthcare insurance provider selected by the U.S. Federal Employee Health Benefit Program as the sole Guam-based provider. The company offers a range of healthcare services including medical management, wellness programs, and global access healthcare options. The website reflects a medium-sized healthcare business with a focus on patient-centered care and sustainable healthcare business practices. The market position is strong within Guam and extends globally through its Veiovis brand. Technically, the website is built on Drupal CMS with modern front-end libraries such as jQuery, Bootstrap, and Slick Slider. It uses Google Analytics and Google Tag Manager for analytics with IP anonymization enabled, indicating some privacy consideration. The site is mobile optimized and includes accessibility features via the UserWay widget. Hosting appears to be through GoDaddy, consistent with the domain registrar. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks advanced security headers and explicit security policies. No vulnerability disclosure or incident response information is published. The domain registration is consistent and long-standing, supporting legitimacy. However, cookie consent mechanisms and GDPR compliance indicators are minimal, suggesting room for improvement in privacy compliance. Overall, the website is professional and trustworthy with moderate security posture and privacy compliance. Strategic improvements in security headers, privacy policies, and contact transparency would enhance trust and compliance.

40
35
17
55
62
75
20
healthcareinsuranceguamwellnessmedicalmanagement
jQueryDrupalGoogle AnalyticsFont Awesome+3
2025-07-29T01:05:46.882Z
mageewp.com favicon

MageeWP

mageewp.com

54
TechnologyN/asmallMEDIUM

MageeWP is a small technology company specializing in the development and sale of professional WordPress themes and plugins. Their offerings include both free and premium products designed to enhance website design and functionality, with compatibility for WooCommerce to support e-commerce storefronts. The company targets WordPress users and developers seeking flexible and customizable themes. The website presents a professional design with clear navigation and a consistent brand image, including a logo prominently displayed in the header. From a technical perspective, MageeWP's website is built on the WordPress platform, utilizing common libraries and frameworks such as jQuery, Bootstrap, Font Awesome, and Owl Carousel. The site demonstrates moderate performance and good mobile optimization, though accessibility features are basic. SEO optimization is adequate with proper meta tags and structured data in JSON-LD format. Security posture is moderate but could be improved. While HTTPS is implied by the canonical URL, no explicit security headers were detected in the provided HTML content. There is no visible privacy or cookie policy, which presents compliance risks, especially under GDPR. No contact information or incident response channels are provided, limiting transparency and user trust. No forms or analytics scripts were detected, suggesting minimal data collection but also limited user engagement tracking. Overall, MageeWP's website is functional and professional but lacks critical privacy and security disclosures. Strategic improvements in privacy compliance, security headers, and contact transparency would enhance trust and reduce risk.

15
50
2
40
77
75
100
wordpressthemespluginse-commercewoocommerce+1 more
jQueryBootstrapFont AwesomeOwl Carousel+3
2025-07-29T01:05:01.557Z
M

Merck & Co., Inc.

merckhelps.com

70
HealthcareUnited StatesenterpriseMEDIUM

Merck & Co., Inc. operates the merckhelps.com website to provide patient assistance programs for medicines and adult vaccines, primarily targeting patients and healthcare professionals in the United States. The site offers resources, enrollment forms, and program information to support eligible patients who lack insurance or cannot afford their medications. The business is positioned as a large, reputable pharmaceutical company with a strong commitment to patient support and assistance. Technically, the website is built on an ASP.NET Web Forms platform, utilizing modern front-end libraries such as Bootstrap and jQuery, along with marketing and tracking tools like Google Tag Manager and Bing UET. The site is mobile optimized and includes accessibility features, though these could be enhanced further. Hosting and domain registration are managed by reputable providers, with domain age consistent with the company's history. From a security perspective, the site enforces HTTPS, employs domain status locks, and integrates cookie consent mechanisms compliant with GDPR. However, there is room for improvement by enabling DNSSEC, adding advanced security headers, and publishing a formal security policy or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website demonstrates a solid security posture, good privacy compliance, and professional business credibility. The risk level is low, but strategic enhancements in security transparency and technical security controls are recommended to further strengthen trust and compliance.

80
68
17
70
57
85
100
healthcarepatientassistancepharmaceuticalmerckvaccines+2 more
BootstrapjQueryTypeahead.jsGoogle Tag Manager+3
2025-07-29T00:02:10.081Z
B

Bread Financial

comenity.com

69
FinanceN/alargeMEDIUM

Bread Financial is a technology-forward financial services company offering a range of products including credit cards, personal loans, savings accounts, and payment solutions tailored for both personal and business customers. The company maintains a strong market presence with partnerships for branded credit cards such as AAA, NFL, Victoria’s Secret, and Ulta Beauty. Their website reflects a professional and consistent brand image with comprehensive product information and financial education resources. Technically, the site is built on Adobe Experience Manager, leveraging modern analytics and marketing tools such as Adobe Target and OneTrust for cookie consent, ensuring a mature digital infrastructure. Security posture is solid with HTTPS and privacy compliance mechanisms in place, though some security headers and explicit incident response contacts are not evident. The absence of WHOIS data for the domain raises minor concerns but does not detract significantly from the overall legitimacy given the professional content and external references. Strategic recommendations include enhancing security header implementation and publishing a vulnerability disclosure policy to further strengthen trust.

55
58
2
100
72
85
100
financecreditcardsloanssavingspaymentsolutions+5 more
Adobe TargetAdobe Launch (DTM)jQueryOneTrust Cookie Consent+3

Partner Domains:

mysavings.breadfinancial.com
subsidiary
member-portal.breadpayments.com
subsidiary

+3 more partners

2025-07-29T00:01:39.905Z
takecareasia.com favicon

TakeCare Insurance and FHP Health Center

takecareasia.com

10
HealthcareUnited StatesmediumCRITICAL

TakeCare Insurance and FHP Health Center is a well-established healthcare insurance provider and medical clinic based in Guam, offering a comprehensive range of health insurance plans and direct healthcare services including medical, dental, vision, pharmacy, and wellness programs. The company targets residents and employers in Guam and nearby regions, positioning itself as a trusted local leader with over 19 years of domain presence and multiple industry certifications. The website reflects a professional and consistent brand image with good content quality and user experience. Technically, the website is built on Drupal CMS with modern JavaScript libraries and frameworks such as jQuery, Bootstrap, and AOS for animations. It is hosted via GoDaddy.com, LLC and uses HTTPS with a good SSL configuration. The site is mobile optimized and includes accessibility features, though some improvements are possible. Analytics are implemented via Google Analytics, indicating moderate user tracking. From a security perspective, the website employs domain status locks to prevent unauthorized changes and uses HTTPS. However, DNSSEC is not enabled, and no advanced security headers were detected, representing areas for improvement. Privacy compliance is partially addressed with comprehensive privacy and terms of service documents, but lacks a cookie consent mechanism. No incident response or vulnerability disclosure policies were found. Overall, the website is trustworthy and professional with a solid business foundation and technical infrastructure. Strategic enhancements in security headers, DNSSEC, and privacy consent mechanisms would further strengthen its security posture and compliance.

-
-
-
-
-
-
-
healthinsurancehealthcareguammedicalclinicwellness+6 more
Drupal CMSjQueryBootstrapFont Awesome+3

Partner Domains:

takecareasia.net
partner
member.envisionpharmacies.com
partner

+2 more partners

2025-07-28T23:59:57.649Z
uog.edu favicon

University of Guam

uog.edu

10
EducationUnited StatesmediumCRITICAL

The University of Guam is a public higher education institution serving Guam and the Micronesian region, offering a broad range of undergraduate and graduate programs, research initiatives, and community outreach services. The website reflects a well-established academic entity with comprehensive content targeting students, faculty, and the local community. The institution holds a strong market position as the primary university in the region, supported by official branding and recognized rankings. Technically, the website is built on the Drupal CMS platform, utilizing modern web technologies such as jQuery, Bootstrap, and various JavaScript libraries for enhanced user experience and analytics. The site demonstrates good mobile optimization and SEO practices, although accessibility could be improved. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and includes basic security headers, but lacks advanced headers like CSP and HSTS. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic, with a privacy policy and cookie consent mechanism present, though GDPR compliance is not explicitly indicated. Overall, the website is professional, trustworthy, and functional, with a solid business credibility score. The absence of WHOIS data is noted but likely due to .edu domain registration policies rather than suspicious activity. Strategic recommendations include enhancing security headers, improving accessibility, and publishing explicit security and incident response policies to strengthen trust and compliance.

-
-
-
-
-
-
-
educationuniversityacademicsresearchstudentservices+1 more
jQueryDrupal CMSFlexSliderColorbox+4

Partner Domains:

moodle.uog.edu
service
selfservice.uog.edu
service

+3 more partners

2025-07-28T23:59:47.588Z
guambar.org favicon

Guam Bar Association

guambar.org

10
GovernmentGuamsmallCRITICAL

The Guam Bar Association (GBA) is a legally established integrated bar association serving the legal community of Guam. It provides membership services, continuing legal education, ethics complaint handling, and public resources related to the legal profession. The website reflects a professional organization with a clear mission to improve justice and legal standards in Guam. The target audience includes attorneys, judges, law firms, government agencies, and the general public interested in legal matters. The association is well-positioned as the official bar association for Guam with a long history dating back to 1978. Technically, the website is built on Drupal 7 with modern front-end libraries such as jQuery and Bootstrap. It includes accessibility features and multi-language support via Google Translate. The site is moderately performant and mobile optimized. However, some security enhancements such as DNSSEC and security headers are missing. Privacy compliance is basic, with no cookie consent mechanism detected. Security posture is adequate with HTTPS enabled and secure login forms, but lacks advanced security headers and explicit incident response contacts. The domain registration is consistent with the organization's identity and location, with a long domain age supporting legitimacy. Overall, the website is a credible and professional platform for the Guam Bar Association but would benefit from improved security practices and enhanced privacy compliance to align with modern standards.

-
-
-
-
-
-
-
legalbarassociationguamattorneyslawyers+4 more
Drupal 7jQueryBootstrapSlick Slider+3

Partner Domains:

guamwebz.com
partner
gba.guamjobfinder.com
partner
2025-07-28T23:59:42.500Z
guam.gov favicon

Government of Guam

guam.gov

38
GovernmentGuammediumHIGH

The website www.guam.gov serves as the official government portal for the Island of Guam, providing comprehensive information and services to residents, visitors, businesses, and government employees. It offers access to government news, directories, transparency reports, emergency guides, and various resident and visitor services. The site positions itself as the authoritative source for all official Guam government information. Technically, the site is built on WordPress 6.0.9 using the Divi child theme and employs caching and performance optimization plugins. It uses modern web technologies including jQuery and Bootstrap for responsive design. The site is mobile optimized and accessibility tested, ensuring a good user experience across devices and for users with disabilities. From a security perspective, the site enforces HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks important security headers and a cookie consent mechanism, which are recommended for enhanced security and privacy compliance. The WHOIS data is incomplete, which is unusual for a government .gov domain, but the website content and domain usage strongly indicate legitimacy. Overall, the site is a well-maintained government portal with good content quality and user experience. Strategic improvements in security headers, privacy compliance, and transparency around incident response would further strengthen its security posture and trustworthiness.

-
-
-
75
72
75
-
governmentofficialguampublicservicesresidentservices+2 more
WordPress 6.0.9Divi Child Theme v2.7.8jQueryBootstrap 3.3.0+2

Partner Domains:

governor.guam.gov
partner
ghs.guam.gov
partner

+3 more partners

2025-07-28T23:59:37.423Z
guamvisitorsbureau.com favicon

Guam Visitors Bureau

guamvisitorsbureau.com

50
HospitalityUnited StatesmediumMEDIUM

The Guam Visitors Bureau operates as the official tourism authority for Guam, providing comprehensive data, marketing, and visitor safety resources to promote tourism and support industry stakeholders. The website serves as a central hub for tourism statistics, industry updates, procurement opportunities, and membership information, targeting both local businesses and visitors. Technically, the site is built on Drupal CMS with modern JavaScript libraries and integrates Google Analytics and Google Translate for analytics and multilingual support. The site is hosted behind Cloudflare DNS and uses HTTPS with domain locking for security. While DNSSEC is not enabled and no explicit security or incident response policies are published, the overall security posture is solid with no critical vulnerabilities detected. The website demonstrates good content quality, accessibility, and SEO practices, with clear navigation and professional branding consistent with a government entity. Contact information and social media presence further enhance trust. Recommendations include enabling DNSSEC, publishing security policies, and adding vulnerability disclosure mechanisms to improve security transparency and compliance.

50
53
17
40
62
75
20
tourismgovernmentguamvisitorinformationtravel+2 more
jQueryDrupal CMSGoogle AnalyticsGoogle Translate+3

Partner Domains:

visitguam.com
partner
cqa.guam.gov
partner

+3 more partners

2025-07-28T23:59:31.878Z
e-num.com favicon

E-NUM

e-num.com

9
TechnologyN/amediumCRITICAL

E-NUM is a technology company specializing in passwordless authentication services using a challenge-response mechanism facilitated by a mobile application. The website targets website owners and users seeking secure and convenient authentication solutions. With over 12 million active users, E-NUM holds a solid market position as an established authentication service provider since 2003. The business model focuses on providing authentication services to websites, enhancing security and user experience. Technically, the website employs a modern but standard technology stack including jQuery, Bootstrap, and popular UI libraries. The site is mobile optimized and presents a professional design with clear navigation. However, there is no evidence of advanced CMS usage or hosting details. Performance is moderate with room for improvement in SEO and accessibility. From a security perspective, the domain is registered with a reputable registrar and has a long history, supporting legitimacy. However, DNSSEC is not enabled, and no security headers are detected in the HTML content. The site lacks a cookie consent mechanism and detailed security or incident response policies. Contact information is limited to an email address and a registration form, with no phone or physical address provided. Overall, the website is functional, professional, and trustworthy but could improve its security posture and privacy compliance to meet modern standards. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent, and publishing comprehensive security and incident response policies.

-
-
-
-
-
-
-
authenticationsecuritypasswordlessmobileapptwo-factorauthentication
jQueryBootstrapFontAwesomeRevolution Slider+2
2025-07-28T23:59:01.389Z