Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 60 of 99|Showing 2951-3000 of 4917
premiercs.com favicon

Premier Construction Software

premiercs.com

67
TechnologyCanadamediumMEDIUM

Premier Construction Software is a well-established provider of cloud-based ERP solutions tailored specifically for the construction industry. Founded in 2011 and headquartered in Canada, the company offers a comprehensive platform integrating financial management, accounting, job costing, project and field management, and AI-driven automation. Their market position is strong, supported by multiple industry awards and a broad target audience including contractors, owners, developers, and project managers globally. The business model is subscription-based SaaS with tiered pricing and implementation fees, designed to scale with company size and complexity. Technically, the website leverages modern frameworks such as Next.js and React, hosted on Microsoft Azure with Cloudflare DNS and CDN services. The site demonstrates excellent performance, mobile optimization, and SEO practices. Marketing and analytics tools like HubSpot, Google Tag Manager, Hotjar, and LinkedIn Insight are actively used for user engagement and tracking. From a security perspective, the site enforces HTTPS with strong security headers and uses reputable hosting and DNS providers. However, DNSSEC is not enabled, and explicit privacy and cookie policies are missing, which are areas for improvement. No critical vulnerabilities or exposed sensitive data were detected. Overall, Premier Construction Software presents a professional, trustworthy, and technically mature online presence with minor gaps in privacy compliance. Strategic recommendations include publishing comprehensive privacy and cookie policies, enabling DNSSEC, and adding a security policy or vulnerability disclosure to enhance trust and compliance.

30
73
17
80
72
80
100
constructionerpcloudsoftwareai+3 more
ReactNext.jsMicrosoft Azure (hosting)HubSpot (marketing and forms)+4
2025-07-29T17:09:45.470Z
ceskygastronomickyinstitut.cz favicon

Český Gastronomický Institut servisní s. r. o.

ceskygastronomickyinstitut.cz

62
HospitalityCzech RepublicsmallMEDIUM

The website www.ceskygastronomickyinstitut.cz represents the Czech Gastronomic Institute's organization and promotion of the prestigious Bocuse d’Or Czech culinary competition. It serves as a platform to showcase top Czech chefs competing for a place in European and world finals, providing event information, ticket sales, media coverage, and partner details. The site targets culinary professionals, gastronomy enthusiasts, and event attendees, positioning itself as a key national player in the hospitality and gastronomy sector. Technically, the website is built using modern web technologies including React and Next.js, ensuring fast performance and excellent mobile optimization. The site employs HTTPS and includes cookie consent mechanisms, although it lacks some security headers and a comprehensive privacy policy. Tracking technologies such as Google Analytics and Facebook Pixel are present but consent is initially denied, reflecting a basic privacy compliance stance. From a security perspective, the site benefits from HTTPS and cookie consent but would improve by adding security headers and publishing clear privacy and incident response policies. The absence of WHOIS data reduces domain trustworthiness, though the professional content and reputable partnerships support legitimacy. Overall, the site is well-designed and functional, with moderate risk due to incomplete transparency and security best practices. Strategic recommendations include enhancing privacy disclosures, implementing security headers, publishing incident response contacts, and improving WHOIS transparency to bolster trust and compliance.

30
40
17
85
72
75
100
gastronomyculinarycompetitionbocusedoreventczechrepublic+5 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

bocusedor.cz
partner
makro.cz
partner
2025-07-29T17:08:34.998Z
energetickeuspory.cz favicon

Komerční banka

energetickeuspory.cz

61
EnergyCzech RepubliclargeMEDIUM

Energetické úspory is a collaborative project led by Komerční banka and partnered with major Czech companies such as ČEZ, Vekra, and Wienerberger. The website offers comprehensive energy-saving solutions for homeowners, including photovoltaic panels, heat pumps, insulation, window replacements, and tailored financing options. It also assists customers with subsidy applications, enhancing affordability and adoption of sustainable technologies. The site is well-branded, professionally designed, and targets Czech homeowners interested in reducing energy costs through reliable partners. Technically, the website is built on modern frameworks including Next.js and React, ensuring fast performance and excellent mobile optimization. It integrates Google Tag Manager and reCAPTCHA v3 for analytics and security. The site implements a robust cookie consent mechanism aligned with GDPR requirements, reflecting a mature approach to privacy compliance. Security posture is solid with HTTPS enforced and bot protection via reCAPTCHA. However, the absence of explicit security headers and incident response contact details suggests room for improvement. No vulnerabilities or suspicious content were detected. WHOIS data is unavailable due to privacy protection, but the strong business affiliations and professional presentation support the site's legitimacy. Overall, the website presents a trustworthy and professional front for energy-saving services with good technical and privacy practices. Strategic enhancements in security headers and incident response transparency would further strengthen its security posture.

85
10
2
60
75
75
100
energysavingshomeimprovementphotovoltaicsheatpumpsfinancing+3 more
Next.jsReactGoogle Tag ManagerGoogle reCAPTCHA v3+2

Partner Domains:

www.kb.cz
partner
www.cez.cz
partner

+2 more partners

2025-07-29T16:05:47.176Z
mcphub.com favicon

MCPHub

mcphub.com

58
TechnologyN/asmallMEDIUM

MCPHub is a technology platform launched in 2024 that serves as a comprehensive directory and discovery service for Model Context Protocol (MCP) servers, offering over 21,000 servers to enhance AI workflows. The platform targets developers and AI practitioners seeking to integrate and utilize AI tools and MCP servers efficiently. MCPHub positions itself as a niche leader in the AI tooling ecosystem by providing certified servers, online hosted options, and a searchable catalog. Technically, MCPHub is built on modern web technologies including Next.js and React, hosted likely on AWS infrastructure. The website demonstrates good performance, mobile optimization, and SEO practices, leveraging Google Tag Manager for analytics and tracking. However, some areas such as DNSSEC and security headers could be improved to enhance security posture. From a security perspective, the site uses HTTPS and domain registration protections but lacks visible privacy and cookie policies, which impacts compliance and user trust. No incident response or vulnerability disclosure information is present. The domain is very new, consistent with the business launch timeline, and registered through a reputable registrar. Overall, MCPHub presents a professional and functional platform with a solid technical foundation but would benefit from enhanced privacy compliance and security best practices to improve trust and regulatory adherence.

15
53
2
55
77
80
100
mcpserversaitoolsaiintegrationsdevelopertoolsaiworkflow+2 more
Next.jsReactTailwind CSSGoogle Tag Manager+1
2025-07-29T16:05:22.087Z
flipp.com favicon

Flipp Corp

flipp.com

65
RetailCanadalargeMEDIUM

Flipp Corp operates a well-established digital platform focused on helping consumers save money by aggregating weekly flyers, coupons, and deals from over 2,000 retail stores. The company offers a comprehensive shopping list feature and a mobile app to enhance user convenience and savings on groceries, electronics, and other retail products. Flipp holds a strong market position in North America as a leading flyer and coupon aggregator with a large retail partner network. Technically, the website leverages modern web technologies including React and Next.js, hosted likely on AWS infrastructure, with integrations for Google Tag Manager, Criteo advertising, and CookieYes for cookie consent management. The site is well-optimized for mobile devices, offers good accessibility, and maintains solid SEO practices. Performance is fast and user experience is smooth. From a security perspective, the site enforces HTTPS and uses nonce attributes for scripts, indicating attention to security best practices. However, it lacks DNSSEC and explicit security headers, and does not publish a security.txt or detailed security policy. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear privacy and cookie policies and consent mechanisms. Overall, Flipp presents a low-risk profile with a mature digital presence, good business credibility, and solid technical and privacy practices. Strategic improvements could focus on enhancing security headers, publishing a vulnerability disclosure policy, and providing explicit incident response contacts to further strengthen trust and security posture.

40
53
2
80
77
85
100
retailcouponsflyersshoppingdeals+2 more
ReactNext.jsGoogle Tag ManagerCriteo+1
2025-07-29T15:59:19.215Z
kompan.com favicon

KOMPAN A/S

kompan.com

73
ManufacturingDenmarklargeMEDIUM

KOMPAN A/S is a well-established manufacturer specializing in commercial playground equipment, outdoor fitness, and outdoor furniture, boasting over 50 years of industry experience. The company targets commercial buyers such as municipalities, schools, and playground operators, positioning itself as a global leader in its niche. The website reflects a professional and consistent brand image, supported by comprehensive content and clear navigation. Technically, the website leverages modern frameworks such as Next.js and React, integrates Google reCAPTCHA v3 for bot protection, and employs a robust cookie consent mechanism compliant with GDPR. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, contributing to a fast and user-friendly experience. From a security perspective, the site enforces HTTPS, includes key security headers, and avoids exposing sensitive data. However, it lacks explicit security policies, incident response information, and vulnerability disclosure mechanisms, which are recommended for enhancing trust and compliance. The absence of WHOIS data slightly impacts the trust score but is mitigated by the company's strong online presence and branding. Overall, KOMPAN's digital presence is mature and secure, with room for improvement in transparency around security policies and domain registration details. Strategic enhancements in these areas will further solidify its market credibility and compliance posture.

65
88
25
75
65
80
100
playgroundequipmentoutdoorfitnesscommercialequipmentmanufacturingcookieconsent+2 more
Next.jsReactGoogle reCAPTCHA v3CookieInformation consent management+1
2025-07-29T14:48:28.696Z
F

Fleetcor Poland sp. z o. o.

fleetcor.pl

62
EnergyPolandmediumMEDIUM

Fleetcor Poland sp. z o. o. operates as an authorized distributor of fuel cards and telematics solutions, primarily serving businesses with vehicle fleets across Poland and Europe. Their offerings include Shell and MOL fuel cards, telematics via Carnet, and additional services like videotolling, providing clients with centralized and digital fleet expense management. The company leverages a broad network of over 26,000 fuel stations in Europe, positioning itself as a comprehensive mobility partner for various business sizes. Technically, the website is built on modern frameworks such as Next.js and React, integrating multiple marketing and analytics tools including Google Tag Manager, Microsoft Clarity, Hotjar, and Marketo. The site is mobile-optimized and employs cookie consent management via Cookiebot, reflecting a mature digital infrastructure. Hosting details are not explicit, but domain registration is managed by GoDaddy, a reputable registrar. From a security perspective, the site enforces HTTPS, uses security headers, and integrates Google reCAPTCHA v3 to protect forms. However, explicit security policies, incident response details, and vulnerability disclosure mechanisms are absent, representing areas for improvement. No vulnerabilities or suspicious content were detected, and privacy compliance is supported by clear privacy and cookie policies. Overall, the website presents a professional and trustworthy digital presence aligned with its business objectives. Strategic recommendations include publishing detailed security and incident response policies, implementing a vulnerability disclosure program, and enhancing accessibility features to further strengthen compliance and user trust.

50
25
2
75
82
80
100
fleetmanagementfuelcardstelematicsvideotollingfleetcor+3 more
ReactNext.jsGoogle Tag ManagerMicrosoft Clarity+4

Partner Domains:

online.fleetcor.pl
partner
sme.myfleetcor.com
partner
2025-07-29T10:13:49.297Z
procore.com favicon

Procore Technologies, Inc.

procore.com

70
TechnologyUnited StateslargeMEDIUM

Procore Technologies, Inc. is a leading provider of construction management software, offering an all-in-one SaaS platform designed to help construction professionals manage projects efficiently, safely, and within budget. The company targets construction firms and professionals globally, with a strong market presence and a comprehensive suite of services including project management, safety, quality control, and cost management. The website reflects a mature digital presence with professional branding and extensive content tailored to its audience. Technically, the website leverages modern web technologies such as Next.js and React, with integrations of multiple marketing and analytics tools including Google Tag Manager, Facebook Pixel, and LinkedIn Insight Tag. The site is well-optimized for performance, mobile responsiveness, and accessibility, indicating a high level of digital maturity. From a security perspective, the website enforces HTTPS, employs multiple security headers, and shows no signs of exposed sensitive data or vulnerabilities. However, the absence of publicly available WHOIS data for the domain introduces a minor trust concern, although the overall business credibility and professional presence mitigate this risk. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR adherence. Overall, Procore's website demonstrates a strong security posture, excellent content quality, and robust business credibility, making it a trustworthy platform for its users.

55
58
17
85
72
90
100
constructionmanagementsoftwareprojectmanagementtechnology+1 more
ReactNext.jsWistia video embedsGoogle Tag Manager+5
2025-07-29T06:53:34.459Z
unlayer.com favicon

Unlayer

unlayer.com

65
TechnologyN/aenterpriseMEDIUM

Unlayer is a well-established SaaS company founded in 2017, specializing in embeddable, white-label content creation tools including email, page, popup, and document builders. The company targets SaaS platforms and developers, offering powerful no-code design tools integrated via API. Positioned as an enterprise-grade platform, Unlayer serves over 1000 companies worldwide and emphasizes reliability, security, and ease of integration. The website reflects a mature digital presence with excellent design, clear navigation, and comprehensive content including case studies and testimonials. Technically, Unlayer employs a modern tech stack with TypeScript and popular JavaScript frameworks such as React, Vue, Angular, and Next.js. The platform is hosted with Cloudflare DNS and CDN services, ensuring fast performance and global availability. The site is mobile-optimized and accessible, with good SEO practices and developer-friendly APIs. From a security perspective, Unlayer demonstrates strong posture with HTTPS enforcement, SOC 2 compliance, encryption at rest, and enterprise SLAs. Security headers are properly implemented, and no vulnerabilities or exposed sensitive data were detected. However, DNSSEC is not enabled, and there is no explicit cookie consent mechanism or public incident response contact information. Overall, Unlayer presents a low-risk profile with a high level of professionalism and trustworthiness. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing a vulnerability disclosure policy, and providing incident response contacts to further enhance security and compliance.

30
53
29
70
72
80
100
embeddableeditorwhite-labelbuilderemaileditoremailbuilderpagebuilder+5 more
TypeScriptReactVueAngular+2
2025-07-29T04:32:18.091Z
keytruda.com favicon

Merck

keytruda.com

68
HealthcareUnited StatesenterpriseMEDIUM

The website www.keytruda.com serves as the official patient-facing platform for KEYTRUDA®, an immunotherapy drug developed by Merck & Co., Inc. It provides comprehensive information about the drug's indications, safety information, side effects, and patient resources. The site targets patients in the United States and its territories, offering educational content and support to help patients understand treatment options. The site is well-branded and professionally designed, reflecting Merck's position as a leading pharmaceutical company in oncology treatments. Technically, the site leverages modern web technologies including React and Next.js, with embedded video content via Brightcove and analytics through Google Tag Manager. The site is mobile-optimized and accessible, with good SEO practices implemented. Security posture is strong with HTTPS enforced and appropriate security headers present, though explicit security and incident response policies are not publicly detailed. WHOIS data is unavailable, likely due to privacy protection, but the site's content and branding strongly support its legitimacy. Overall, the site presents a trustworthy, professional resource for patients seeking information about KEYTRUDA treatment.

45
68
17
50
90
85
100
pharmaceuticalcancerimmunotherapykeytrudamerck+2 more
ReactNext.jsBrightcove Video PlayerGoogle Tag Manager+1

Partner Domains:

www.keytrudahcp.com
partner
www.merck.com
parent
2025-07-29T03:23:27.446Z
vaccines.gov favicon

U.S. Centers for Disease Control and Prevention (CDC)

vaccines.gov

72
HealthcareUnited StatesenterpriseMEDIUM

Vaccines.gov is an official U.S. government website operated under the Centers for Disease Control and Prevention (CDC) and the Department of Health and Human Services (HHS). It provides a public service by helping users locate pharmacies offering vaccines across the United States. The site is positioned as a trusted source for vaccine information and pharmacy locations, targeting the general public seeking vaccination services. The business model is government-funded public health information dissemination, with no commercial intent. Technically, the website employs modern web technologies including React and Next.js frameworks, with integration of Google Analytics, Google Tag Manager, and Adobe Launch for analytics and tracking. The site is mobile-optimized, fast-loading, and accessible, reflecting a mature digital infrastructure. The use of official .gov domain and CDC/HHS branding enhances trust and authority. From a security perspective, the site enforces HTTPS and uses secure form inputs. However, explicit security headers such as Content Security Policy and HSTS are not evident in the provided HTML content. Privacy compliance is strong with a comprehensive privacy policy linked from the CDC domain and a vulnerability disclosure policy available. No contact emails or phone numbers are explicitly listed, which is typical for government sites but may limit direct user support. No suspicious or malicious content was detected, and the site is not blocked by any WAF or security challenge. Overall, the website demonstrates a high level of professionalism, trustworthiness, and technical maturity suitable for a government public health platform. Strategic improvements include adding cookie consent mechanisms, explicit security headers, and clearer contact information for incident response to further enhance security posture and user trust.

70
53
20
70
100
80
100
healthcaregovernmentvaccinepharmacylocatorpublichealth
ReactNext.jsFont AwesomeGoogle Tag Manager+2
2025-07-29T02:15:55.252Z
mat.org favicon

Pharmaceutical Research and Manufacturers of America (PhRMA)

mat.org

58
HealthcareUnited StateslargeMEDIUM

The Medicine Assistance Tool (MAT) website, operated by the Pharmaceutical Research and Manufacturers of America (PhRMA), serves as a comprehensive search engine to help patients, caregivers, and healthcare providers find financial assistance and resources related to prescription medications. The platform is well-established, with a domain dating back to 1999, and is positioned as a trusted healthcare resource supported by leading biopharmaceutical companies. The site offers extensive educational content on health insurance, medication coverage, and patient assistance programs, targeting a broad audience including patients and healthcare professionals. Technically, the website leverages modern web technologies such as React and Next.js, hosted on Vercel with AWS DNS infrastructure. It integrates multiple analytics and marketing tools including Google Tag Manager, Facebook Pixel, LinkedIn Insight Tag, and CrazyEgg, indicating a mature digital marketing and analytics strategy. The site is mobile-optimized, fast-loading, and SEO-friendly, with good accessibility features. From a security perspective, the site enforces HTTPS, employs standard security headers, and shows no signs of vulnerable libraries or exposed sensitive data. However, it lacks a visible cookie consent mechanism and does not publicly disclose a dedicated security policy or incident response plan, which are areas for improvement. The WHOIS data shows privacy protection via Domains By Proxy, which is justified given the healthcare nature of the site and does not raise legitimacy concerns. Overall, MAT.org is a professional, trustworthy, and technically sound healthcare assistance platform with strong business credibility. Strategic recommendations include implementing a cookie consent banner for GDPR compliance, publishing a security policy and incident response information, and adding a vulnerability disclosure policy to enhance transparency and trust.

30
53
17
40
82
60
100
healthcarepatientassistancepharmaceuticalfinancialassistanceinsuranceeducation+2 more
ReactNext.jsVercel AnalyticsCrazyEgg+5
2025-07-29T02:15:25.060Z
flightpath.fm favicon

Flightpath Software Inc.

flightpath.fm

65
MediaN/asmallMEDIUM

Flightpath Software Inc. operates a specialized SaaS platform focused on scaling podcast sponsorship businesses through predictive analytics and yield management. The platform integrates campaign, sales, and financial data to provide real-time insights and forecasting tools tailored for podcast publishers and networks. Their market position is strengthened by trusted partnerships with leading industry players and a focus on operational efficiency and revenue growth. Technically, the website is built on a modern Next.js framework with React, ensuring fast performance and mobile optimization. The site demonstrates good SEO practices and a professional design, although accessibility features are basic. Security posture is solid with HTTPS enforced and deferred script loading, but lacks some security headers and explicit incident response information. Overall, the website presents a trustworthy and professional front with a clear business focus. However, it could improve privacy compliance by implementing cookie consent mechanisms and providing more detailed security and incident response policies. Contact information is limited to a contact form, with no direct emails or phone numbers publicly listed. The risk profile is low with no detected vulnerabilities or suspicious content. Strategic recommendations include enhancing security headers, adding privacy and cookie policies, and improving transparency around incident response and data protection.

45
53
17
75
72
80
100
podcastanalyticsadvertisingsponsorshippredictiveanalytics+1 more
Next.jsReactJavaScriptWebpack

Partner Domains:

blog.flightpath.fm
partner
2025-07-28T20:35:39.277Z
mevo.com favicon

Mevo Inc.

mevo.com

62
TechnologyUnited StatessmallMEDIUM

Mevo Inc., a subsidiary of Logitech, specializes in wireless multi-camera live streaming solutions targeting content creators and professional streamers. Their product portfolio includes hardware like Mevo Core and Mevo Pro, complemented by multiple streaming and camera control applications. The company positions itself as a niche leader offering affordable, easy-to-use live streaming technology with strong integration to popular platforms such as Twitch, YouTube, and Facebook. The website reflects a professional and consistent brand image with excellent content quality and user experience. Technically, the website is built on modern web technologies including React and Next.js, hosted on AWS infrastructure. It demonstrates good performance, mobile optimization, and accessibility features. The site integrates third-party services for analytics and marketing, such as Tealium and Mailchimp, while maintaining GDPR compliance through comprehensive privacy and cookie policies linked to the parent company Logitech. From a security perspective, the site enforces HTTPS and domain registration protections but lacks DNSSEC and explicit security headers. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms a long-standing domain registration consistent with the business history, enhancing trustworthiness. Overall, Mevo.com presents a secure, professional, and user-friendly digital presence aligned with its business goals. Strategic improvements in DNS security and publishing a formal security policy could further enhance its security posture.

30
68
2
65
62
85
100
livestreamingmulti-camerawirelesscameravideoproductionstreamingapps+3 more
ReactNext.jsAWS DNSYouTube iframe API+1

Partner Domains:

logitech.com
parent
2025-07-28T20:35:29.152Z
museumprijs.nl favicon

Museumprijs

museumprijs.nl

69
Non-profitNetherlandssmallMEDIUM

The Museumprijs website serves as a dedicated platform for promoting the VriendenLoterij Museumprijs, a prestigious public award for museums in the Netherlands. Supported by the Prins Bernhard Cultuurfonds, VriendenLoterij, and Museumvereniging, the site provides comprehensive information about nominees, previous winners, and news related to the award. It targets museum professionals, cultural stakeholders, and the general public interested in Dutch cultural heritage. The business model is non-profit, focusing on cultural promotion and public engagement through awards and events. Technically, the website is built on modern frameworks including Next.js and React, leveraging the Storyblok CMS for content management. It integrates third-party services such as Google Tag Manager for analytics and Usercentrics for consent management, ensuring compliance with privacy regulations. The site demonstrates good mobile optimization and SEO practices, although accessibility could be further enhanced. From a security perspective, the website enforces HTTPS, employs standard security headers, and uses a consent management platform to handle cookies and tracking. However, it lacks explicit security policies or incident response information, and no vulnerability disclosure mechanism is present. Overall, the security posture is solid but could benefit from additional transparency and formal policies. The overall risk assessment is low, with no signs of malicious activity or content safety concerns. Strategic recommendations include publishing a dedicated security policy, establishing an incident response contact, enhancing accessibility, and considering a vulnerability disclosure policy to further strengthen trust and compliance.

70
68
17
70
77
70
100
museumcultureawardnon-profitnetherlands+2 more
Next.jsReactStoryblok CMSVimeo+3

Partner Domains:

cultuurfonds.nl
partner
vriendenloterij.nl
partner

+1 more partners

2025-07-28T19:24:52.610Z
hoornzingthollands.nl favicon

Hoorn Zingt Hollands

hoornzingthollands.nl

57
HospitalityNetherlandssmallMEDIUM

Hoorn Zingt Hollands is a Dutch music festival event organizer promoting a regional festival scheduled for August 31, 2025, in Julianapark Hoorn. The website serves as a promotional platform featuring artist lineups, ticket sales via a third-party platform, and social media engagement. The target audience is general public interested in Dutch music and festivals. The business model revolves around event organization and ticket sales, positioning itself as a popular regional festival with a strong local cultural focus. Technically, the website is built using modern web technologies including Next.js and React, with integrations for YouTube embeds, Swiper.js for carousels, and tracking via TikTok Pixel and Google Tag Manager. The site is mobile optimized and has good SEO practices, though accessibility features are basic. Performance is moderate with room for improvement. From a security perspective, the site uses HTTPS with good SSL configuration but lacks visible security headers and explicit privacy or security policies. No contact information for security incidents or data protection officers is provided. Cookie consent is implemented, indicating some privacy compliance efforts. The WHOIS data is consistent with the business claims, supporting legitimacy. Overall, the website is professional and functional but would benefit from enhanced privacy and security disclosures, improved contact transparency, and additional security hardening to increase trust and compliance.

35
43
2
70
62
65
100
musicfestivaldutchmusiceventhoornticketsales+1 more
Next.jsReactLite YouTube EmbedSwiper.js+3

Partner Domains:

shop.simpleticket.eu
partner
www.sitevoordezaak.nl
partner
2025-07-28T17:22:35.011Z
outdoorstereo.nl favicon

Outdoor Stereo Festival

outdoorstereo.nl

55
HospitalityNetherlandssmallMEDIUM

Outdoor Stereo Festival is a small-scale event organizer focused on hosting an outdoor music festival in the Netherlands, scheduled for August 30, 2025. The website serves primarily as a promotional platform to showcase the event, artists, and facilitate ticket sales through a third-party vendor. The target audience is music enthusiasts, particularly those interested in outdoor festivals within the Dutch region. The business model revolves around event organization and ticketing. Technically, the website is built using modern web technologies including Next.js and React, ensuring a responsive and visually appealing user experience. Performance is moderate with good mobile optimization and basic accessibility features. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and uses asynchronous loading for scripts, but lacks explicit security headers and does not provide visible security or incident response policies. Privacy compliance is limited due to the absence of a privacy policy and terms of service, though a cookie consent mechanism is present. Overall, the website is professional and trustworthy for its purpose but would benefit from enhanced privacy and security disclosures to improve compliance and user trust.

35
43
2
60
62
65
100
musicfestivaleventoutdoornetherlandstickets+2 more
Next.jsReactJavaScriptCSS+1

Partner Domains:

shop.simpleticket.eu
partner
festivalweekendhoorn.nl
partner

+1 more partners

2025-07-28T17:22:29.976Z
ubi.com favicon

Ubisoft

ubi.com

66
MediaN/aenterpriseMEDIUM

Ubisoft is a globally recognized video game developer and publisher, known for iconic franchises such as Assassin's Creed, Rainbow Six, and Far Cry. Their official website serves as a comprehensive platform for game promotion, news updates, and digital services including Ubisoft+ subscription and Ubisoft Connect. The site targets a broad audience of gamers and enthusiasts worldwide, offering rich multimedia content and seamless navigation. Technically, the website employs modern web technologies including React and Next.js, ensuring fast performance, mobile optimization, and accessibility. The integration of consent management tools like OneTrust and marketing platforms such as Google Tag Manager and Abtasty reflects a mature digital infrastructure focused on privacy and user experience. From a security perspective, the site enforces HTTPS, utilizes robust security headers, and manages cookie consent effectively. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of publicly visible incident response contacts or vulnerability disclosure programs suggests areas for improvement. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. The missing WHOIS data is likely due to privacy or registrar policies and does not detract from the site's legitimacy. Strategic recommendations include enhancing transparency around security incident response and vulnerability reporting to further strengthen trust.

35
35
2
87
100
80
100
gamingvideogamesentertainmentubisoftassassinscreed+4 more
ReactNext.jsJavaScriptCSS+3
2025-07-28T16:22:27.182Z
datafyhq.com favicon

Datafy

datafyhq.com

65
TechnologyUnited StatessmallMEDIUM

Datafy is a specialized technology company offering an integrated analytics and advertising platform designed to empower businesses with data-driven marketing solutions. Their platform combines comprehensive data analytics, strategic advertising via an owned demand-side platform (DSP), and campaign measurement with attribution, targeting industries such as attractions, retail, and travel & tourism. The company emphasizes customization, transparency, and direct client engagement, supported by in-house software development and data science expertise. Technically, the website is built on modern frameworks including Next.js and React, with a strong focus on performance, mobile optimization, and user experience. The presence of a consent management platform (Osano) and Google Tag Manager indicates mature digital marketing and privacy compliance practices. However, the absence of visible security headers and explicit security policies suggests areas for improvement in security posture. Security-wise, Datafy demonstrates good practices such as HTTPS enforcement and SOC 2 certification, which are positive trust signals. Nonetheless, the lack of WHOIS data raises questions about domain registration legitimacy, which should be addressed to enhance trust. The site does not expose vulnerabilities or sensitive data visibly, but could benefit from publishing incident response contacts and vulnerability disclosure policies. Overall, Datafy presents a professional and trustworthy digital presence with strong business credibility and technical maturity. Addressing the WHOIS data gap and enhancing security transparency would further strengthen their risk profile and stakeholder confidence.

30
53
17
85
65
85
100
dataanalyticsadvertisingattributionmarketingdsp+3 more
ReactNext.jsJavaScriptCSS+2
2025-07-28T15:13:28.662Z
publicartarchive.org favicon

WESTAF

publicartarchive.org

64
Non-profitUnited StatesmediumMEDIUM

Public Art Archive, operated by WESTAF, is a well-established non-profit platform dedicated to making public artworks more accessible and discoverable worldwide. The website serves as an authoritative source curated by public and private arts organizations, offering search, exploration, and educational resources about public art. It targets arts organizations, researchers, and the general public interested in cultural heritage and public art. The platform's business model focuses on providing collection management services and fostering community contributions to enrich the archive. Technically, the website is built on modern frameworks such as Next.js and React, leveraging Amazon AWS CloudFront for hosting and Google Maps API for location services. It integrates Google Tag Manager for analytics and Usercentrics for cookie consent management, reflecting a mature digital infrastructure. The site demonstrates good performance, mobile optimization, and accessibility compliance. From a security perspective, the site enforces HTTPS, employs domain transfer protection, and uses a consent management platform to comply with privacy regulations. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response contact, which are areas for improvement. No vulnerabilities or suspicious activities were detected. Overall, the website presents a high level of professionalism, trustworthiness, and compliance with privacy standards. The domain registration aligns well with the organization's identity and history, supporting its legitimacy. Strategic recommendations include enabling DNSSEC, publishing a security policy, and establishing a vulnerability disclosure process to enhance security posture and stakeholder trust.

20
53
17
80
77
80
100
publicartarchivenon-profitartsculturalheritage+2 more
ReactNext.jsGoogle Maps APIGoogle Tag Manager+1

Partner Domains:

wearecreativewest.org
partner
paypal.com
service
2025-07-28T15:13:03.604Z
boardeffect.com favicon

Diligent Corporation

boardeffect.com

70
TechnologyN/alargeMEDIUM

BoardEffect, operated by Diligent Corporation, offers a sophisticated AI-powered board portal software designed to streamline board management and governance for mission-driven organizations. The platform provides tools such as AI-generated agendas, secure virtual workspaces, real-time collaboration, and seamless workflows to enhance board efficiency and decision-making. With over 5000 customers and 260,000 users, BoardEffect holds a strong market position in the governance software sector. Technically, the website leverages modern frameworks like React and Next.js, ensuring fast performance, mobile optimization, and good SEO practices. Integration with Google Tag Manager and Insent AI chat widget indicates a mature digital marketing and user engagement strategy. The website is well-designed, accessible, and professionally maintained. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, but lacks explicit security headers and published security policies or incident response information. The absence of public WHOIS registrant data reduces transparency but is common in commercial SaaS domains. Overall, the security posture is solid but could be improved with additional disclosures and technical headers. The overall risk assessment is low, with the primary recommendation to enhance security transparency and contact availability. Strategic improvements in security policy publication and vulnerability disclosure would further strengthen trust and compliance.

45
73
17
80
75
90
100
boardportalgovernancesoftwareaiagendasboardmanagementsecurecollaboration+2 more
ReactNext.jsGoogle Tag ManagerInsent AI Chat Widget

Partner Domains:

www.diligent.com
parent
2025-07-28T12:58:15.263Z
flatlogic.com favicon

Flatlogic LLC

flatlogic.com

76
TechnologyN/amediumLOW

Flatlogic LLC is a technology company specializing in AI-powered software development for startups and businesses. Their platform enables rapid generation and deployment of full-stack web applications including SaaS, CRM, and ERP solutions. The company emphasizes ownership of the generated code, allowing clients full customization and control. The website demonstrates a strong market position with notable clients and positive reviews, positioning Flatlogic as an innovative player in AI-driven software development. Technically, the website is built on a modern stack including Next.js, React, Node.js, and PostgreSQL, hosted on Cloudflare infrastructure. The site is well-optimized for performance, mobile responsiveness, and SEO. It integrates multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, and Facebook Pixel, with appropriate cookie consent mechanisms in place. From a security perspective, the site enforces HTTPS, uses CSRF tokens, and benefits from Cloudflare DNS protection. However, DNSSEC is not enabled, and some security headers are not explicitly visible in the HTML. No critical vulnerabilities or exposed sensitive data were detected. Privacy policies and terms of service are comprehensive and GDPR compliant. Overall, Flatlogic's website reflects a mature, professional, and trustworthy business with a solid technical foundation and good security posture. Minor improvements in DNS security and explicit security policy publication are recommended to further enhance trust and compliance.

55
100
17
85
75
85
100
aisoftwaredevelopmentbusinesssoftwarecustomsaascustomcrmcustomerp+3 more
Next.jsReactNode.jsPostgreSQL+2
2025-07-28T12:57:34.915Z
chromatic.com favicon

Chromatic

chromatic.com

75
TechnologyN/amediumMEDIUM

Chromatic is a SaaS company specializing in visual testing and UI review tools designed to help software development teams catch visual and functional bugs across browsers before release. Their platform integrates with popular developer tools like Storybook, Playwright, and Cypress, offering automated visual, accessibility, and interaction testing. The company targets developers, designers, product managers, and stakeholders seeking streamlined UI testing and review workflows. Chromatic is positioned as a trusted solution, evidenced by its adoption by major brands such as BBC, Dior, and Adobe. Technically, the website is built using modern frameworks including React and Next.js, hosted on Amazon CloudFront CDN, and employs multiple analytics and marketing tools such as Segment, Google Analytics 4, Facebook Pixel, and Intercom. The site is well-optimized for performance, mobile responsiveness, and accessibility, with appropriate security headers and HTTPS enforced. From a security perspective, Chromatic demonstrates strong practices including the use of security headers and consent management for GDPR compliance. However, the absence of explicit privacy policy and terms of service pages, as well as missing WHOIS domain registration data, slightly detracts from its overall trustworthiness. No critical vulnerabilities or exposed sensitive data were detected. Overall, Chromatic presents a professional, secure, and mature digital presence with minor gaps in privacy transparency and domain registration visibility. Strategic recommendations include publishing comprehensive privacy and terms documents, adding vulnerability disclosure information, and verifying domain registration details to enhance trust and compliance.

65
80
17
98
77
80
100
visualtestinguitestingaccessibilitytestingcomponentlibrarysoftwaredevelopment+2 more
ReactNext.jsSegment analyticsGoogle Tag Manager+5
2025-07-28T12:57:29.906Z