Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 61 of 99|Showing 3001-3050 of 4917
effectivealtruism.org favicon

Effective Altruism

effectivealtruism.org

70
Non-profitN/amediumMEDIUM

Effective Altruism is a globally recognized non-profit movement and philosophy focused on using reason and evidence to maximize positive impact through philanthropy and effective giving. The website serves as a comprehensive educational and community platform offering resources such as articles, online courses, newsletters, and an opportunities board to engage individuals interested in doing the most good. The organization holds a strong market position within the philanthropic and ethical giving sectors, targeting individuals and organizations seeking to apply effective altruism principles. Technically, the website is built on a modern React and Next.js stack, leveraging Cloudflare for hosting and streaming, and integrates advanced analytics tools including Segment, Heap, Google Analytics, and Facebook Pixel. The site demonstrates excellent performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. However, explicit privacy and cookie policies are not prominently linked, indicating room for improvement in privacy compliance. From a security perspective, the site uses HTTPS with strong SSL configuration and employs security best practices such as secure form handling and no exposed sensitive data. Nonetheless, the absence of publicly available security policies, incident response information, and vulnerability disclosure mechanisms suggests potential gaps in transparency and readiness. The WHOIS data is unavailable or malformed, limiting domain registration trust verification, but the website content and external references support legitimacy. Overall, the website presents a professional, trustworthy, and content-rich platform with a solid technical foundation. Strategic recommendations include publishing clear privacy and cookie policies, enhancing security transparency, and improving domain registration information visibility to strengthen trust and compliance.

30
83
22
85
72
85
100
effectivealtruismphilosophynon-profitcharityglobalhealth+3 more
ReactNext.jsCloudflare StreamSegment Analytics+4

Partner Domains:

forum.effectivealtruism.org
partner
www.againstmalaria.com
partner

+3 more partners

2025-07-28T09:33:32.752Z
free.law favicon

Free Law Project

free.law

68
Non-profitUnited StatesmediumMEDIUM

Free Law Project is a leading nonprofit organization dedicated to making the legal ecosystem more equitable and competitive through technology, data, and advocacy. They provide a suite of open-source tools and datasets including CourtListener, RECAP, and Bots.law, serving journalists, researchers, legal professionals, and the public. Their market position is strong as a pioneer in legal data transparency and open access, supported by donations and organizational sponsorships. Technically, the website is built on modern frameworks such as Next.js and React, hosted on Netlify, and optimized for performance and mobile responsiveness. The site demonstrates good SEO and accessibility practices, with a clean, professional design and clear navigation. Analytics are implemented via plausible.io, indicating a privacy-conscious approach to user tracking. From a security perspective, the site enforces HTTPS and employs domain status protections but lacks DNSSEC and security headers like CSP or HSTS. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a basic privacy policy present but no cookie consent mechanism or detailed GDPR compliance statements. Contact information is limited to a contact form, with no direct emails or phone numbers publicly listed. Overall, the website presents a low-risk profile with a high degree of professionalism and trustworthiness. Strategic recommendations include enhancing security headers, implementing DNSSEC, adding cookie consent, and publishing a security.txt file to improve incident response transparency.

75
35
43
70
52
85
100
legalnonprofitopendatalegaltechnologypacer+5 more
ReactNext.jsTailwind CSSAWS DNS (Amazon Route 53)+1
2025-07-28T09:32:47.577Z
vital.io favicon

Vital Software Inc.

vital.io

64
HealthcareUnited StatesmediumMEDIUM

Vital Software Inc. operates a sophisticated patient experience technology platform that leverages AI and live EHR data integration to enhance healthcare delivery across emergency, inpatient, and urgent care settings. The company is well-positioned in the healthcare technology market, trusted by over 100 hospitals, and recognized for significantly improving patient satisfaction and operational outcomes. Their platform offers seamless integration with major EHR systems and emphasizes enterprise-grade security and compliance, including HITRUST and SOC2 certifications. Technically, the website is built on modern frameworks such as Next.js and React, hosted on AWS infrastructure, and employs advanced analytics and marketing tools like Google Tag Manager and LinkedIn Insight. The site demonstrates excellent performance, mobile optimization, and accessibility, reflecting a mature digital presence. Security practices are robust, with HTTPS enforcement and strong security headers, although DNSSEC is not enabled. The security posture is strong, with no evident vulnerabilities or exposed sensitive data. However, the absence of a cookie consent mechanism and explicit incident response contacts are areas for improvement. Privacy compliance is supported by a comprehensive privacy policy and GDPR adherence, but cookie consent implementation would enhance compliance further. Overall, Vital presents a credible, professional, and secure online presence aligned with its healthcare technology business. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing a vulnerability disclosure policy, and providing clear incident response contacts to further strengthen trust and compliance.

40
53
17
65
72
80
100
healthcarepatientexperienceaiehrintegrationhealthcaretechnology+4 more
ReactNext.jsAWS DNSGoogle Tag Manager+2
2025-07-28T09:30:20.859Z
gethopscotch.com favicon

Hopscotch Technologies Inc.

gethopscotch.com

59
EducationN/amediumMEDIUM

Hopscotch Technologies Inc. operates an educational programming platform designed primarily for children aged 10 to 16. The website promotes a coding app that enables kids to create games, animations, and art, positioning itself as a niche player in the educational technology sector. The business model includes subscription services and lifetime family passes, targeting families and educators. The company maintains a consistent brand presence with accessible privacy and terms of service documentation, and active social media engagement on platforms such as Discord, TikTok, and YouTube. Technically, the website is built using modern web technologies including React and Next.js, with integration of FastSpring for payment processing. The site is mobile-optimized and demonstrates good performance and SEO practices. However, some accessibility features are basic, and there is room for improvement in security headers and cookie consent mechanisms. From a security perspective, the site enforces HTTPS and does not expose sensitive data in the HTML content. However, the absence of security headers and lack of published security policies or incident response information indicate areas for enhancement. The WHOIS data is missing or unavailable, which raises questions about domain registration transparency but does not necessarily imply malicious intent given the active and professional website presence. Overall, the website presents a trustworthy and professional front for an educational technology company, with moderate technical maturity and a solid security baseline. Strategic improvements in security policies, cookie consent, and WHOIS transparency would further strengthen trust and compliance.

35
53
2
60
69
75
100
educationprogrammingkidscodinggames+1 more
ReactNext.jsFastSpring (payment)JavaScript

Partner Domains:

hop.sc
partner
sbl.onfastspring.com
partner
2025-07-28T08:21:27.999Z
dennissevershouse.co.uk favicon

Dennis Severs’ House

dennissevershouse.co.uk

61
HospitalityUnited KingdomsmallMEDIUM

Dennis Severs’ House is a cultural heritage site and historic house museum located in the United Kingdom, managed by the Spitalfields Historic Buildings Trust, a registered charity. The website offers immersive tours, theatrical performances, private tours, venue hire, and ticket vouchers, targeting cultural tourists and history enthusiasts. The business model relies on ticket sales, private bookings, and supporter memberships. The site is professionally designed with a consistent brand and clear navigation, reflecting a niche market position in hospitality and non-profit sectors. Technically, the website is built using modern web technologies including React and Next.js, with content managed via Sanity CMS. It integrates multimedia elements such as Mux Player for video and uses Google Tag Manager for analytics. The site is mobile-optimized and accessible, with good SEO practices. Performance is moderate, with room for improvement in loading speed and security headers. Security posture is solid with HTTPS enforced and no visible sensitive data exposure. However, the absence of key security headers and a cookie consent mechanism indicates areas for enhancement. No incident response or vulnerability disclosure information is provided, which could be improved to strengthen trust. The WHOIS data is unavailable due to domain registration issues, which raises some concerns about domain legitimacy despite the professional website content. Overall, the website presents a trustworthy and professional front for a small cultural institution but should address domain registration clarity and enhance security and privacy compliance measures to improve its risk profile and user trust.

35
68
2
70
72
65
100
historichousemuseumculturalheritageimmersivetoursperformanceart+2 more
ReactNext.jsMux PlayerGoogle Tag Manager+1

Partner Domains:

www.thespitalfieldstrust.com
partner
shop.dennissevershouse.co.uk
subsidiary
2025-07-28T07:15:01.538Z
motiff.com favicon

Motiff

motiff.com

65
TechnologySingaporesmallMEDIUM

Motiff is a Singapore-based technology company specializing in AI-powered professional interface design tools. The company offers a comprehensive SaaS platform that integrates UI/UX design, prototyping, cloud collaboration, and developer handoff features. Positioned as a modern alternative to established design tools like Sketch and Figma, Motiff leverages AI to enhance design workflows and creativity. The website reflects a mature business with a long domain history and a clear focus on serving designers, developers, and product teams. Technically, Motiff employs a modern web stack including React and Next.js, hosted on AWS infrastructure. The site is well-optimized for performance, mobile responsiveness, and accessibility, with comprehensive SEO and metadata implementation. Security is robust with HTTPS, domain locking, and standard security headers, although DNSSEC is not enabled. Privacy compliance is addressed with clear policies and consent mechanisms. The security posture is strong, with no evident vulnerabilities or exposed sensitive data. However, the absence of a public vulnerability disclosure policy and incident response contacts suggests areas for improvement. Overall, Motiff demonstrates a high level of digital maturity and business credibility, supported by transparent WHOIS data and professional branding. Strategically, Motiff should consider enhancing DNS security, formalizing vulnerability disclosure, and expanding incident response transparency to further strengthen trust and compliance.

45
73
77
60
-
80
100
aiuidesignuxprototypingcollaboration+4 more
ReactNext.jsAWS DNSGoogle Tag Manager+1
2025-07-28T02:40:25.188Z
unacademy.com favicon

Unacademy

unacademy.com

63
EducationIndialargeMEDIUM

Unacademy is a leading Indian online education platform founded in 2015, offering interactive live classes, recorded lessons, and exam preparation resources to over 10 crore learners. Positioned as India's largest learning platform, it targets students preparing for a wide range of exams including UPSC, IIT JEE, NEET, SSC, and more. The platform leverages a subscription-based business model providing unlimited access to educational content and live doubt clearing sessions. Technically, the website is built using modern frameworks such as Next.js and Material-UI, hosted on Amazon AWS infrastructure, and optimized for performance and mobile responsiveness. It integrates analytics and marketing tools like Google Tag Manager and Facebook Pixel, indicating a mature digital marketing strategy. The presence of structured data and SEO best practices supports strong search engine visibility. From a security perspective, the site enforces HTTPS with good SSL configuration and domain registration protections. However, it lacks explicit security policies, vulnerability disclosure mechanisms, and DNSSEC. Privacy compliance is weak due to missing privacy and cookie policies, which could be a risk area for regulatory compliance. No critical vulnerabilities or exposed sensitive data were detected. Overall, Unacademy presents a professional, trustworthy, and technically sound online education platform with strong market presence in India. Strategic improvements in privacy compliance and security transparency would enhance its risk posture and user trust.

35
53
2
77
67
85
100
educationonlinelearningliveclassesexampreparationindia
ReactNext.jsMaterial-UIGoogle Tag Manager+1
2025-07-28T01:34:42.871Z
I

IconCraft

iconcraft.app

64
TechnologyN/asmallMEDIUM

IconCraft is a technology-focused SaaS platform specializing in AI-powered app icon generation. The website offers users the ability to create designer-grade app icons quickly without design skills, targeting app developers and designers. The platform provides features such as AI suggestions, custom logo uploads, and style references to generate production-ready icons for iOS and Android. The business model appears to be freemium with free credits on signup and paid plans for extended use. Technically, the website is built on modern frameworks including Next.js and React, hosted on Vercel, and integrates analytics tools such as Google Tag Manager and Ahrefs Analytics. The site demonstrates fast performance, excellent mobile optimization, and good SEO practices. However, some security best practices like security headers and cookie consent mechanisms are missing. From a security perspective, the site uses HTTPS with good SSL configuration and does not expose sensitive data or vulnerable libraries. There is no visible security policy, incident response contact, or vulnerability disclosure mechanism, which are areas for improvement. Privacy compliance is basic with a privacy policy present but no cookie consent banner or GDPR indicators. Overall, IconCraft presents a professional and trustworthy online presence with a strong technical foundation and clear business focus. Strategic improvements in privacy compliance and security transparency would enhance its risk posture and user trust.

55
53
2
70
72
80
100
appicongeneratoraiiconmakeriosappicongeneratorappiconmakerapplogocreator+1 more
Next.jsReactVercel AnalyticsVercel Speed Insights+2
2025-07-28T00:26:00.681Z
S

Squarespace Domains II LLC

calv.info

50
TechnologyUnited StatessmallMEDIUM

The website calv.info is a personal blog operated by Calvin French-Owen, featuring a rich archive of articles primarily focused on technology, software engineering, AI, startup management, and personal reflections. The site targets technology professionals, startup founders, and readers interested in deep technical and business insights. It operates as a content publishing platform for thought leadership and personal branding. The domain is well-established since 2012, indicating a mature presence in its niche. Technically, the site is built using modern web technologies including Next.js and React, hosted likely on Vercel, and integrates Segment Analytics for user tracking. The site demonstrates excellent design quality, mobile optimization, and SEO practices, resulting in a fast and accessible user experience. However, there are some gaps in privacy compliance, notably the absence of privacy and cookie policies and no consent mechanism. From a security perspective, the site uses HTTPS with good SSL configuration and domain status protections to prevent unauthorized changes. However, DNSSEC is not enabled, and security headers are not detected, which are areas for improvement. No vulnerability disclosure or incident response information is provided, which limits transparency in security practices. Overall, the website is trustworthy, professional, and content-rich, but would benefit from enhanced privacy compliance and security hardening to align with best practices and regulatory requirements.

30
35
2
75
-
80
100
technologyblogpersonalsoftwaremanagement+2 more
Next.jsReactSegment AnalyticsCloudflare DNS
2025-07-28T00:25:45.585Z
instantdb.com favicon

Instant

instantdb.com

62
TechnologyN/asmallMEDIUM

Instant is a technology company offering a modern, client-side real-time database platform designed to simplify backend development for frontend developers. Positioned as a modern alternative to Firebase, Instant provides features such as authentication, permissions, storage, transactions, and offline support through a simple SDK. The company is backed by Y Combinator and features testimonials from notable industry leaders, enhancing its market credibility. The website is professionally designed, mobile-optimized, and provides clear navigation and relevant content targeted at software engineers and app builders. Technically, the site leverages modern web technologies including React and Next.js, with integrations such as Mux Player for media and Google Analytics for tracking. The site loads quickly and is well-optimized for SEO and accessibility. However, explicit security headers are not detected, and there is no cookie consent mechanism, which are areas for improvement. The domain WHOIS data is missing or unavailable, which raises some concerns about domain legitimacy, although the business presence and backing mitigate this risk. From a security perspective, the site enforces HTTPS and does not expose sensitive data or vulnerable libraries. The absence of a published security policy, incident response information, and vulnerability disclosure program suggests room for maturity in security governance. Privacy compliance is basic, with a privacy policy present but no explicit GDPR compliance indicators or cookie consent. Overall, Instant presents a strong business and technical profile with some gaps in security and privacy compliance. The domain registration inconsistency warrants further verification. Strategic recommendations include enhancing security headers, implementing cookie consent, publishing security policies, and improving privacy compliance to strengthen trust and regulatory adherence.

30
58
17
60
72
80
100
real-timedatabasefrontendbackendfirebasealternativeclient-sidedatabasereactsdk+1 more
ReactNext.jsJavaScriptMux Player+2
2025-07-28T00:25:35.535Z
netdesigngroup.com favicon

NetDesign Group

netdesigngroup.com

45
TechnologyThailandsmallHIGH

NetDesign Group is a Thailand-based web development company established in 2003, offering comprehensive website design, development, and online marketing services. The company targets businesses seeking professional and SEO-optimized websites, providing custom solutions, website packages, and extended support including mobile app development and e-commerce platforms. Their market position is supported by over 20 years of experience and a professional team dedicated to client success. Technically, the website employs modern technologies such as React.js and Next.js, with backend support from PHP, Python, and other languages. Hosting and DNS services are managed via Cloudflare, ensuring reliable performance and security. The site is mobile-optimized and SEO-friendly, though accessibility features could be improved. Analytics and tracking tools like Google Analytics, Facebook Pixel, Hotjar, and Tune are extensively used for marketing and user behavior insights. From a security perspective, the site uses HTTPS and Google reCAPTCHA on forms, but lacks visible security headers and published privacy or cookie policies, indicating room for compliance improvement. The WHOIS data confirms domain legitimacy with consistent registration details and no privacy protection, aligning with the company's stated history. Overall, the website is professional and trustworthy, with good technical implementation and business credibility. However, privacy compliance and security posture could be enhanced to meet higher standards and regulatory requirements.

15
35
17
60
62
75
20
webdevelopmentwebsitedesignseoonlinemarketinge-commerce+1 more
PHPPythonRubyNode.js+8
2025-07-27T23:12:16.345Z
trustoo.nl favicon

Trustoo

trustoo.nl

69
OtherNetherlandsmediumMEDIUM

Trustoo is a well-established Dutch online platform founded in 2018 that specializes in connecting consumers and businesses with local service providers across a wide range of categories including legal, home improvement, personal services, and events. The platform positions itself as the leading service comparison site in the Netherlands, offering users the ability to compare companies based on reviews and pricing, facilitating informed decision-making. Trustoo operates subsidiaries in Belgium, Germany, and Spain, indicating a regional expansion strategy. Technically, the website is built on modern web technologies such as Next.js and React, ensuring fast performance and excellent mobile optimization. The use of Cookiebot for cookie consent and integration with Google Tag Manager and Bing Ads reflects a mature digital marketing and privacy compliance approach. The platform leverages structured data (JSON-LD) for SEO and maintains a professional, user-friendly design with clear navigation. From a security perspective, the site uses HTTPS and employs cookie consent mechanisms, but lacks DNSSEC and explicit security headers, which are recommended for enhanced protection. No direct contact emails or phone numbers are publicly listed, and no formal privacy policy or terms of service were found in the provided content, which could be improved to strengthen compliance and user trust. Overall, Trustoo presents a high-quality, trustworthy service platform with strong market presence in the Netherlands. Strategic improvements in security policies and transparency would further enhance its credibility and compliance posture.

60
88
2
80
72
70
100
localservicesservicecomparisonreviewsnetherlandstrustoo
Next.jsReactCookiebotGoogle Tag Manager+2

Partner Domains:

trustlocal.be
subsidiary
trustlocal.de
subsidiary

+1 more partners

2025-07-27T22:03:45.144Z