Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 62 of 101|Showing 3051-3100 of 5032
28stone.com favicon

28Stone Consulting

28stone.com

54
FinanceUnited StatesmediumMEDIUM

28Stone Consulting is a specialized software consulting company focused on delivering cutting-edge custom software solutions for the financial services industry, including sell-side, buy-side, market venues, and brokers. Founded in 2011 and headquartered in New York, the company has established itself as a trusted partner to leading financial institutions, demonstrated by its extensive client portfolio and industry awards. Their key services include software development for capital markets, legacy system modernization, and electronic trading platform development. The company leverages modern technologies such as React, Next.js, OpenFin, and Cloud9 to deliver scalable and innovative solutions. Technically, the website reflects a mature digital infrastructure with a modern tech stack, good performance, and mobile optimization. The use of asynchronous scripts and integration with analytics and marketing tools like Google Analytics and HubSpot indicates a data-driven approach to user engagement. However, some security headers are missing, and DNSSEC is not enabled, suggesting areas for improvement in security hardening. From a security perspective, the site enforces HTTPS and employs domain transfer protection, but lacks published security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy compliance is weak, with no visible privacy or cookie policies, which could expose the company to regulatory risks. Overall, the security posture is solid but could benefit from enhanced transparency and technical controls. The overall risk assessment is moderate to low, with no critical vulnerabilities detected. Strategic recommendations include implementing comprehensive privacy and cookie policies, enabling DNSSEC, adding security headers, and publishing security and incident response information to enhance trust and compliance. These steps will strengthen the company's security culture and regulatory posture while maintaining its strong market position.

65
35
2
70
100
80
-
financetechnologysoftwareconsultingcapitalmarketscustomsoftware+2 more
ReactNext.jsOpenFinCloud9+3

Partner Domains:

28stone.bamboohr.com
partner
2025-07-30T15:59:52.235Z
sushi1.lv favicon

Sushi #1

sushi1.lv

65
HospitalityLatviasmallMEDIUM

Sushi #1 is a small hospitality business operating in Ādaži, Latvia, specializing in sushi and wok food delivery and takeaway services. The website presents a well-structured online menu, contact information, and social media presence, positioning the company as a local restaurant with a focus on quality and customer engagement. The business model revolves around online ordering and delivery, supported by a modern web platform. Technically, the website is built using modern frameworks such as Next.js and React, leveraging CDN services for media delivery and Google Fonts for typography. The site is mobile-optimized and provides a good user experience with clear navigation and rich media content. Performance is moderate, with room for improvement in accessibility features. From a security perspective, the website enforces HTTPS and includes several important security headers, indicating a good baseline security posture. However, there is no publicly available security policy or incident response information, which could be improved to enhance trust and compliance. No vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, trustworthy, and compliant with privacy regulations, including GDPR. The lack of WHOIS data due to query limits limits domain registration analysis, but the website content and contact details support legitimacy. Strategic recommendations include publishing a security policy, incident response contacts, and vulnerability disclosure information to strengthen security culture and transparency.

50
68
17
60
72
75
100
restaurantsushifooddeliverytakeawaylatvia+1 more
ReactNext.jsGoogle FontsSwiper.js
2025-07-30T15:59:52.134Z
11.lv favicon

11.lv Online Kazino Latvijā | Virs 3000 Kazino spēlēm

11.lv

66
OtherLatvialargeMEDIUM

11.lv is a prominent Latvian online gambling platform offering a wide range of casino games and sports betting services. The website targets adult users interested in online casino entertainment and live sports betting, positioning itself as a leading player in the Latvian market. The platform features over 3000 casino games, live betting options, and promotional bonuses, catering to a mature audience with a professional and engaging user experience. Technically, the site is built using modern web technologies including React and Next.js, ensuring fast performance and excellent mobile optimization. The use of Google Tag Manager indicates moderate user tracking for analytics purposes. Security posture is generally strong with HTTPS enforced and no visible vulnerabilities in the HTML content; however, the absence of explicit security headers and visible privacy or cookie policies suggests room for improvement in compliance and security transparency. The lack of WHOIS data due to query limits restricts full domain legitimacy verification, but the professional presentation and linked partner domains support the site's credibility. Strategic recommendations include publishing comprehensive privacy and cookie policies, enhancing security headers, and providing clear contact and incident response information to bolster trust and compliance.

40
55
17
85
65
90
100
onlinecasinosportsbettinglatviagamblinglivebetting+1 more
ReactNext.jsTypekit fontsPaymentIQ Apple Pay script

Partner Domains:

support.11.lv
service
vista.kreditz.com
partner

+1 more partners

2025-07-30T15:59:51.511Z
vairaksaules.lv favicon

SIA “Vēl Vairāk Saules”

vairaksaules.lv

49
HospitalityLatviasmallHIGH

The website www.vairaksaules.lv represents a Latvian hospitality business named SIA “Vēl Vairāk Saules” specializing in Italian cuisine, pizzas, sushi, and eastern dishes with delivery services. The business targets general consumers interested in food delivery and restaurant dining, promoting a mobile app for convenient ordering. The site is professionally designed with good navigation and mobile optimization, built on a modern React/Next.js framework with integrated Google Analytics and Tag Manager for user tracking. From a security perspective, the website uses HTTPS (implied by external Google scripts and modern framework usage), but no explicit security headers were detected in the HTML content. Privacy and cookie policies are present and accessible, indicating basic GDPR compliance. However, no incident response or vulnerability disclosure information is available, and no security.txt file was found. The absence of WHOIS data due to query limits restricts domain registration analysis, but the site appears legitimate with consistent branding and contact information. Overall, the website demonstrates a moderate security posture with room for improvement in security headers and incident response transparency. The technical infrastructure is modern and supports good user experience, but enhanced accessibility and explicit security policies would strengthen trust. The business credibility is supported by clear contact phone information and privacy practices, though additional contact methods like email or physical address would improve transparency. The risk assessment is moderate with no critical vulnerabilities detected from the HTML content. Strategic recommendations include implementing security headers, publishing incident response and vulnerability disclosure policies, and improving accessibility features to enhance compliance and user trust.

60
10
2
70
52
80
40
fooddeliveryrestaurantitaliancuisinepizzasushi+5 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics
2025-07-30T15:59:49.296Z
lions.cz favicon

Prague Lions

lions.cz

54
OtherCzech RepublicsmallMEDIUM

The Prague Lions website serves as the official online presence for the Prague Lions American football team, highlighting their participation in the European League of Football (ELF) and the Czech American Football Association (ČAAF). The site is designed primarily for sports fans and local community members interested in the team and league activities. The content is minimal but focused on branding and navigation to key sections related to the team and league. Technically, the website is built using modern web technologies including React and Next.js, with Mantine UI for styling and components. The site demonstrates good mobile optimization and a clean, professional design, though content depth is basic. No CMS or hosting provider information is discernible from the provided data. From a security perspective, the site lacks visible security headers and privacy-related policies, which lowers its compliance posture. The WHOIS data for the domain is unavailable, which raises concerns about domain registration transparency but does not necessarily indicate malicious intent. No forms or contact information are present, limiting user engagement and trust signals. Overall, the security posture is moderate but could be improved with standard best practices and transparency enhancements. The overall risk is moderate with no critical vulnerabilities detected in the provided data. Strategic improvements in privacy compliance, contact transparency, and security headers would enhance trust and user confidence.

30
25
2
55
72
80
100
sportsamericanfootballpragueteameuropeanleagueoffootball+1 more
ReactNext.jsMantine UIJavaScript+1
2025-07-30T15:04:30.311Z
regiontrnava.sk favicon

Trnava Tourism

regiontrnava.sk

59
HospitalitySlovakiasmallMEDIUM

Región Trnava operates as a regional tourism organization focused on promoting the cultural, natural, and event-based attractions of the Trnava region in Slovakia. The website serves as a comprehensive portal offering event calendars, guided tours, brochures, maps, and an e-commerce platform for tourism-related products. It targets tourists and visitors seeking detailed information and services to enhance their travel experience in the region. The organization maintains a professional online presence supported by official contact details and social media channels, positioning itself as a trusted regional tourism authority. Technically, the website is built on modern web technologies including React and Next.js, with integration of Google Tag Manager and Plausible Analytics for tracking and marketing purposes. The site uses a custom CMS platform provided by Grandus and For Best Clients, s.r.o. Performance and mobile optimization are good, with basic accessibility features and solid SEO practices. Security is well managed with HTTPS, security headers, and cookie consent mechanisms, although there is room for improvement in publishing explicit security policies and incident response information. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is evident through GDPR-aligned policies and cookie management. The WHOIS data confirms domain legitimacy and consistency with the business claims. Overall, the website demonstrates a mature digital infrastructure suitable for its business purpose. Strategically, the organization should consider enhancing transparency around security policies and incident response, improving accessibility compliance, and maintaining vigilance on third-party scripts to sustain trust and security. These steps will further solidify its position as a reliable regional tourism resource.

20
85
17
85
37
45
100
tourismregionalslovakiaeventstravel+1 more
ReactNext.jsGoogle Tag ManagerCookieHub+2
2025-07-30T12:08:05.173Z
bocusedor.cz favicon

Český Gastronomický Institut servisní s. r. o.

bocusedor.cz

61
HospitalityCzech RepublicsmallMEDIUM

The website www.bocusedor.cz represents the Czech national qualifier for the prestigious international culinary competition Bocuse d’Or. It is managed by Český Gastronomický Institut servisní s. r. o. The site provides comprehensive information about the competition, contestants, event schedules, ticketing, workshops, and partner organizations. It targets culinary professionals, gastronomy enthusiasts, and event attendees, positioning itself as a key player in the Czech hospitality and gastronomy sector. Technically, the website is built using modern web technologies including React and Next.js, ensuring fast performance and excellent mobile optimization. It employs WebP images for efficient media delivery and integrates Google Tag Manager and Facebook Pixel for analytics and marketing purposes. The site includes a cookie consent mechanism, supporting GDPR compliance to some extent. From a security perspective, the site enforces HTTPS and uses cookie consent banners, but lacks visible security headers and a published security policy or incident response contacts. The absence of WHOIS data reduces transparency and trustworthiness, although the professional presentation and extensive partner network support legitimacy. No critical vulnerabilities or exposed sensitive data were detected. Overall, the site is well-designed, content-rich, and professionally maintained, but could improve privacy policy transparency, security header implementation, and WHOIS data availability to enhance trust and compliance.

30
40
17
70
72
80
100
bocusedorculinarycompetitiongastronomyeventczechrepublic+4 more
ReactNext.jsJavaScriptWebP images+2

Partner Domains:

bocusedor-tickets.bpr.cz
partner
www.makro.cz
partner

+1 more partners

2025-07-30T08:37:17.588Z
premiercs.com favicon

Premier Construction Software

premiercs.com

67
TechnologyCanadamediumMEDIUM

Premier Construction Software is a well-established provider of cloud-based ERP solutions tailored specifically for the construction industry. Founded in 2011 and headquartered in Canada, the company offers a comprehensive platform integrating financial management, accounting, job costing, project and field management, and AI-driven automation. Their market position is strong, supported by multiple industry awards and a broad target audience including contractors, owners, developers, and project managers globally. The business model is subscription-based SaaS with tiered pricing and implementation fees, designed to scale with company size and complexity. Technically, the website leverages modern frameworks such as Next.js and React, hosted on Microsoft Azure with Cloudflare DNS and CDN services. The site demonstrates excellent performance, mobile optimization, and SEO practices. Marketing and analytics tools like HubSpot, Google Tag Manager, Hotjar, and LinkedIn Insight are actively used for user engagement and tracking. From a security perspective, the site enforces HTTPS with strong security headers and uses reputable hosting and DNS providers. However, DNSSEC is not enabled, and explicit privacy and cookie policies are missing, which are areas for improvement. No critical vulnerabilities or exposed sensitive data were detected. Overall, Premier Construction Software presents a professional, trustworthy, and technically mature online presence with minor gaps in privacy compliance. Strategic recommendations include publishing comprehensive privacy and cookie policies, enabling DNSSEC, and adding a security policy or vulnerability disclosure to enhance trust and compliance.

30
73
17
80
72
80
100
constructionerpcloudsoftwareai+3 more
ReactNext.jsMicrosoft Azure (hosting)HubSpot (marketing and forms)+4
2025-07-29T17:09:45.470Z
ceskygastronomickyinstitut.cz favicon

Český Gastronomický Institut servisní s. r. o.

ceskygastronomickyinstitut.cz

62
HospitalityCzech RepublicsmallMEDIUM

The website www.ceskygastronomickyinstitut.cz represents the Czech Gastronomic Institute's organization and promotion of the prestigious Bocuse d’Or Czech culinary competition. It serves as a platform to showcase top Czech chefs competing for a place in European and world finals, providing event information, ticket sales, media coverage, and partner details. The site targets culinary professionals, gastronomy enthusiasts, and event attendees, positioning itself as a key national player in the hospitality and gastronomy sector. Technically, the website is built using modern web technologies including React and Next.js, ensuring fast performance and excellent mobile optimization. The site employs HTTPS and includes cookie consent mechanisms, although it lacks some security headers and a comprehensive privacy policy. Tracking technologies such as Google Analytics and Facebook Pixel are present but consent is initially denied, reflecting a basic privacy compliance stance. From a security perspective, the site benefits from HTTPS and cookie consent but would improve by adding security headers and publishing clear privacy and incident response policies. The absence of WHOIS data reduces domain trustworthiness, though the professional content and reputable partnerships support legitimacy. Overall, the site is well-designed and functional, with moderate risk due to incomplete transparency and security best practices. Strategic recommendations include enhancing privacy disclosures, implementing security headers, publishing incident response contacts, and improving WHOIS transparency to bolster trust and compliance.

30
40
17
85
72
75
100
gastronomyculinarycompetitionbocusedoreventczechrepublic+5 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

bocusedor.cz
partner
makro.cz
partner
2025-07-29T17:08:34.998Z
energetickeuspory.cz favicon

Komerční banka

energetickeuspory.cz

61
EnergyCzech RepubliclargeMEDIUM

Energetické úspory is a collaborative project led by Komerční banka and partnered with major Czech companies such as ČEZ, Vekra, and Wienerberger. The website offers comprehensive energy-saving solutions for homeowners, including photovoltaic panels, heat pumps, insulation, window replacements, and tailored financing options. It also assists customers with subsidy applications, enhancing affordability and adoption of sustainable technologies. The site is well-branded, professionally designed, and targets Czech homeowners interested in reducing energy costs through reliable partners. Technically, the website is built on modern frameworks including Next.js and React, ensuring fast performance and excellent mobile optimization. It integrates Google Tag Manager and reCAPTCHA v3 for analytics and security. The site implements a robust cookie consent mechanism aligned with GDPR requirements, reflecting a mature approach to privacy compliance. Security posture is solid with HTTPS enforced and bot protection via reCAPTCHA. However, the absence of explicit security headers and incident response contact details suggests room for improvement. No vulnerabilities or suspicious content were detected. WHOIS data is unavailable due to privacy protection, but the strong business affiliations and professional presentation support the site's legitimacy. Overall, the website presents a trustworthy and professional front for energy-saving services with good technical and privacy practices. Strategic enhancements in security headers and incident response transparency would further strengthen its security posture.

85
10
2
60
75
75
100
energysavingshomeimprovementphotovoltaicsheatpumpsfinancing+3 more
Next.jsReactGoogle Tag ManagerGoogle reCAPTCHA v3+2

Partner Domains:

www.kb.cz
partner
www.cez.cz
partner

+2 more partners

2025-07-29T16:05:47.176Z
mcphub.com favicon

MCPHub

mcphub.com

58
TechnologyN/asmallMEDIUM

MCPHub is a technology platform launched in 2024 that serves as a comprehensive directory and discovery service for Model Context Protocol (MCP) servers, offering over 21,000 servers to enhance AI workflows. The platform targets developers and AI practitioners seeking to integrate and utilize AI tools and MCP servers efficiently. MCPHub positions itself as a niche leader in the AI tooling ecosystem by providing certified servers, online hosted options, and a searchable catalog. Technically, MCPHub is built on modern web technologies including Next.js and React, hosted likely on AWS infrastructure. The website demonstrates good performance, mobile optimization, and SEO practices, leveraging Google Tag Manager for analytics and tracking. However, some areas such as DNSSEC and security headers could be improved to enhance security posture. From a security perspective, the site uses HTTPS and domain registration protections but lacks visible privacy and cookie policies, which impacts compliance and user trust. No incident response or vulnerability disclosure information is present. The domain is very new, consistent with the business launch timeline, and registered through a reputable registrar. Overall, MCPHub presents a professional and functional platform with a solid technical foundation but would benefit from enhanced privacy compliance and security best practices to improve trust and regulatory adherence.

15
53
2
55
77
80
100
mcpserversaitoolsaiintegrationsdevelopertoolsaiworkflow+2 more
Next.jsReactTailwind CSSGoogle Tag Manager+1
2025-07-29T16:05:22.087Z
flipp.com favicon

Flipp Corp

flipp.com

65
RetailCanadalargeMEDIUM

Flipp Corp operates a well-established digital platform focused on helping consumers save money by aggregating weekly flyers, coupons, and deals from over 2,000 retail stores. The company offers a comprehensive shopping list feature and a mobile app to enhance user convenience and savings on groceries, electronics, and other retail products. Flipp holds a strong market position in North America as a leading flyer and coupon aggregator with a large retail partner network. Technically, the website leverages modern web technologies including React and Next.js, hosted likely on AWS infrastructure, with integrations for Google Tag Manager, Criteo advertising, and CookieYes for cookie consent management. The site is well-optimized for mobile devices, offers good accessibility, and maintains solid SEO practices. Performance is fast and user experience is smooth. From a security perspective, the site enforces HTTPS and uses nonce attributes for scripts, indicating attention to security best practices. However, it lacks DNSSEC and explicit security headers, and does not publish a security.txt or detailed security policy. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear privacy and cookie policies and consent mechanisms. Overall, Flipp presents a low-risk profile with a mature digital presence, good business credibility, and solid technical and privacy practices. Strategic improvements could focus on enhancing security headers, publishing a vulnerability disclosure policy, and providing explicit incident response contacts to further strengthen trust and security posture.

40
53
2
80
77
85
100
retailcouponsflyersshoppingdeals+2 more
ReactNext.jsGoogle Tag ManagerCriteo+1
2025-07-29T15:59:19.215Z
kompan.com favicon

KOMPAN A/S

kompan.com

73
ManufacturingDenmarklargeMEDIUM

KOMPAN A/S is a well-established manufacturer specializing in commercial playground equipment, outdoor fitness, and outdoor furniture, boasting over 50 years of industry experience. The company targets commercial buyers such as municipalities, schools, and playground operators, positioning itself as a global leader in its niche. The website reflects a professional and consistent brand image, supported by comprehensive content and clear navigation. Technically, the website leverages modern frameworks such as Next.js and React, integrates Google reCAPTCHA v3 for bot protection, and employs a robust cookie consent mechanism compliant with GDPR. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, contributing to a fast and user-friendly experience. From a security perspective, the site enforces HTTPS, includes key security headers, and avoids exposing sensitive data. However, it lacks explicit security policies, incident response information, and vulnerability disclosure mechanisms, which are recommended for enhancing trust and compliance. The absence of WHOIS data slightly impacts the trust score but is mitigated by the company's strong online presence and branding. Overall, KOMPAN's digital presence is mature and secure, with room for improvement in transparency around security policies and domain registration details. Strategic enhancements in these areas will further solidify its market credibility and compliance posture.

65
88
25
75
65
80
100
playgroundequipmentoutdoorfitnesscommercialequipmentmanufacturingcookieconsent+2 more
Next.jsReactGoogle reCAPTCHA v3CookieInformation consent management+1
2025-07-29T14:48:28.696Z
F

Fleetcor Poland sp. z o. o.

fleetcor.pl

62
EnergyPolandmediumMEDIUM

Fleetcor Poland sp. z o. o. operates as an authorized distributor of fuel cards and telematics solutions, primarily serving businesses with vehicle fleets across Poland and Europe. Their offerings include Shell and MOL fuel cards, telematics via Carnet, and additional services like videotolling, providing clients with centralized and digital fleet expense management. The company leverages a broad network of over 26,000 fuel stations in Europe, positioning itself as a comprehensive mobility partner for various business sizes. Technically, the website is built on modern frameworks such as Next.js and React, integrating multiple marketing and analytics tools including Google Tag Manager, Microsoft Clarity, Hotjar, and Marketo. The site is mobile-optimized and employs cookie consent management via Cookiebot, reflecting a mature digital infrastructure. Hosting details are not explicit, but domain registration is managed by GoDaddy, a reputable registrar. From a security perspective, the site enforces HTTPS, uses security headers, and integrates Google reCAPTCHA v3 to protect forms. However, explicit security policies, incident response details, and vulnerability disclosure mechanisms are absent, representing areas for improvement. No vulnerabilities or suspicious content were detected, and privacy compliance is supported by clear privacy and cookie policies. Overall, the website presents a professional and trustworthy digital presence aligned with its business objectives. Strategic recommendations include publishing detailed security and incident response policies, implementing a vulnerability disclosure program, and enhancing accessibility features to further strengthen compliance and user trust.

50
25
2
75
82
80
100
fleetmanagementfuelcardstelematicsvideotollingfleetcor+3 more
ReactNext.jsGoogle Tag ManagerMicrosoft Clarity+4

Partner Domains:

online.fleetcor.pl
partner
sme.myfleetcor.com
partner
2025-07-29T10:13:49.297Z
procore.com favicon

Procore Technologies, Inc.

procore.com

70
TechnologyUnited StateslargeMEDIUM

Procore Technologies, Inc. is a leading provider of construction management software, offering an all-in-one SaaS platform designed to help construction professionals manage projects efficiently, safely, and within budget. The company targets construction firms and professionals globally, with a strong market presence and a comprehensive suite of services including project management, safety, quality control, and cost management. The website reflects a mature digital presence with professional branding and extensive content tailored to its audience. Technically, the website leverages modern web technologies such as Next.js and React, with integrations of multiple marketing and analytics tools including Google Tag Manager, Facebook Pixel, and LinkedIn Insight Tag. The site is well-optimized for performance, mobile responsiveness, and accessibility, indicating a high level of digital maturity. From a security perspective, the website enforces HTTPS, employs multiple security headers, and shows no signs of exposed sensitive data or vulnerabilities. However, the absence of publicly available WHOIS data for the domain introduces a minor trust concern, although the overall business credibility and professional presence mitigate this risk. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR adherence. Overall, Procore's website demonstrates a strong security posture, excellent content quality, and robust business credibility, making it a trustworthy platform for its users.

55
58
17
85
72
90
100
constructionmanagementsoftwareprojectmanagementtechnology+1 more
ReactNext.jsWistia video embedsGoogle Tag Manager+5
2025-07-29T06:53:34.459Z
unlayer.com favicon

Unlayer

unlayer.com

65
TechnologyN/aenterpriseMEDIUM

Unlayer is a well-established SaaS company founded in 2017, specializing in embeddable, white-label content creation tools including email, page, popup, and document builders. The company targets SaaS platforms and developers, offering powerful no-code design tools integrated via API. Positioned as an enterprise-grade platform, Unlayer serves over 1000 companies worldwide and emphasizes reliability, security, and ease of integration. The website reflects a mature digital presence with excellent design, clear navigation, and comprehensive content including case studies and testimonials. Technically, Unlayer employs a modern tech stack with TypeScript and popular JavaScript frameworks such as React, Vue, Angular, and Next.js. The platform is hosted with Cloudflare DNS and CDN services, ensuring fast performance and global availability. The site is mobile-optimized and accessible, with good SEO practices and developer-friendly APIs. From a security perspective, Unlayer demonstrates strong posture with HTTPS enforcement, SOC 2 compliance, encryption at rest, and enterprise SLAs. Security headers are properly implemented, and no vulnerabilities or exposed sensitive data were detected. However, DNSSEC is not enabled, and there is no explicit cookie consent mechanism or public incident response contact information. Overall, Unlayer presents a low-risk profile with a high level of professionalism and trustworthiness. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing a vulnerability disclosure policy, and providing incident response contacts to further enhance security and compliance.

30
53
29
70
72
80
100
embeddableeditorwhite-labelbuilderemaileditoremailbuilderpagebuilder+5 more
TypeScriptReactVueAngular+2
2025-07-29T04:32:18.091Z
keytruda.com favicon

Merck

keytruda.com

68
HealthcareUnited StatesenterpriseMEDIUM

The website www.keytruda.com serves as the official patient-facing platform for KEYTRUDA®, an immunotherapy drug developed by Merck & Co., Inc. It provides comprehensive information about the drug's indications, safety information, side effects, and patient resources. The site targets patients in the United States and its territories, offering educational content and support to help patients understand treatment options. The site is well-branded and professionally designed, reflecting Merck's position as a leading pharmaceutical company in oncology treatments. Technically, the site leverages modern web technologies including React and Next.js, with embedded video content via Brightcove and analytics through Google Tag Manager. The site is mobile-optimized and accessible, with good SEO practices implemented. Security posture is strong with HTTPS enforced and appropriate security headers present, though explicit security and incident response policies are not publicly detailed. WHOIS data is unavailable, likely due to privacy protection, but the site's content and branding strongly support its legitimacy. Overall, the site presents a trustworthy, professional resource for patients seeking information about KEYTRUDA treatment.

45
68
17
50
90
85
100
pharmaceuticalcancerimmunotherapykeytrudamerck+2 more
ReactNext.jsBrightcove Video PlayerGoogle Tag Manager+1

Partner Domains:

www.keytrudahcp.com
partner
www.merck.com
parent
2025-07-29T03:23:27.446Z
vaccines.gov favicon

U.S. Centers for Disease Control and Prevention (CDC)

vaccines.gov

72
HealthcareUnited StatesenterpriseMEDIUM

Vaccines.gov is an official U.S. government website operated under the Centers for Disease Control and Prevention (CDC) and the Department of Health and Human Services (HHS). It provides a public service by helping users locate pharmacies offering vaccines across the United States. The site is positioned as a trusted source for vaccine information and pharmacy locations, targeting the general public seeking vaccination services. The business model is government-funded public health information dissemination, with no commercial intent. Technically, the website employs modern web technologies including React and Next.js frameworks, with integration of Google Analytics, Google Tag Manager, and Adobe Launch for analytics and tracking. The site is mobile-optimized, fast-loading, and accessible, reflecting a mature digital infrastructure. The use of official .gov domain and CDC/HHS branding enhances trust and authority. From a security perspective, the site enforces HTTPS and uses secure form inputs. However, explicit security headers such as Content Security Policy and HSTS are not evident in the provided HTML content. Privacy compliance is strong with a comprehensive privacy policy linked from the CDC domain and a vulnerability disclosure policy available. No contact emails or phone numbers are explicitly listed, which is typical for government sites but may limit direct user support. No suspicious or malicious content was detected, and the site is not blocked by any WAF or security challenge. Overall, the website demonstrates a high level of professionalism, trustworthiness, and technical maturity suitable for a government public health platform. Strategic improvements include adding cookie consent mechanisms, explicit security headers, and clearer contact information for incident response to further enhance security posture and user trust.

70
53
20
70
100
80
100
healthcaregovernmentvaccinepharmacylocatorpublichealth
ReactNext.jsFont AwesomeGoogle Tag Manager+2
2025-07-29T02:15:55.252Z
mat.org favicon

Pharmaceutical Research and Manufacturers of America (PhRMA)

mat.org

58
HealthcareUnited StateslargeMEDIUM

The Medicine Assistance Tool (MAT) website, operated by the Pharmaceutical Research and Manufacturers of America (PhRMA), serves as a comprehensive search engine to help patients, caregivers, and healthcare providers find financial assistance and resources related to prescription medications. The platform is well-established, with a domain dating back to 1999, and is positioned as a trusted healthcare resource supported by leading biopharmaceutical companies. The site offers extensive educational content on health insurance, medication coverage, and patient assistance programs, targeting a broad audience including patients and healthcare professionals. Technically, the website leverages modern web technologies such as React and Next.js, hosted on Vercel with AWS DNS infrastructure. It integrates multiple analytics and marketing tools including Google Tag Manager, Facebook Pixel, LinkedIn Insight Tag, and CrazyEgg, indicating a mature digital marketing and analytics strategy. The site is mobile-optimized, fast-loading, and SEO-friendly, with good accessibility features. From a security perspective, the site enforces HTTPS, employs standard security headers, and shows no signs of vulnerable libraries or exposed sensitive data. However, it lacks a visible cookie consent mechanism and does not publicly disclose a dedicated security policy or incident response plan, which are areas for improvement. The WHOIS data shows privacy protection via Domains By Proxy, which is justified given the healthcare nature of the site and does not raise legitimacy concerns. Overall, MAT.org is a professional, trustworthy, and technically sound healthcare assistance platform with strong business credibility. Strategic recommendations include implementing a cookie consent banner for GDPR compliance, publishing a security policy and incident response information, and adding a vulnerability disclosure policy to enhance transparency and trust.

30
53
17
40
82
60
100
healthcarepatientassistancepharmaceuticalfinancialassistanceinsuranceeducation+2 more
ReactNext.jsVercel AnalyticsCrazyEgg+5
2025-07-29T02:15:25.060Z
flightpath.fm favicon

Flightpath Software Inc.

flightpath.fm

65
MediaN/asmallMEDIUM

Flightpath Software Inc. operates a specialized SaaS platform focused on scaling podcast sponsorship businesses through predictive analytics and yield management. The platform integrates campaign, sales, and financial data to provide real-time insights and forecasting tools tailored for podcast publishers and networks. Their market position is strengthened by trusted partnerships with leading industry players and a focus on operational efficiency and revenue growth. Technically, the website is built on a modern Next.js framework with React, ensuring fast performance and mobile optimization. The site demonstrates good SEO practices and a professional design, although accessibility features are basic. Security posture is solid with HTTPS enforced and deferred script loading, but lacks some security headers and explicit incident response information. Overall, the website presents a trustworthy and professional front with a clear business focus. However, it could improve privacy compliance by implementing cookie consent mechanisms and providing more detailed security and incident response policies. Contact information is limited to a contact form, with no direct emails or phone numbers publicly listed. The risk profile is low with no detected vulnerabilities or suspicious content. Strategic recommendations include enhancing security headers, adding privacy and cookie policies, and improving transparency around incident response and data protection.

45
53
17
75
72
80
100
podcastanalyticsadvertisingsponsorshippredictiveanalytics+1 more
Next.jsReactJavaScriptWebpack

Partner Domains:

blog.flightpath.fm
partner
2025-07-28T20:35:39.277Z
mevo.com favicon

Mevo Inc.

mevo.com

62
TechnologyUnited StatessmallMEDIUM

Mevo Inc., a subsidiary of Logitech, specializes in wireless multi-camera live streaming solutions targeting content creators and professional streamers. Their product portfolio includes hardware like Mevo Core and Mevo Pro, complemented by multiple streaming and camera control applications. The company positions itself as a niche leader offering affordable, easy-to-use live streaming technology with strong integration to popular platforms such as Twitch, YouTube, and Facebook. The website reflects a professional and consistent brand image with excellent content quality and user experience. Technically, the website is built on modern web technologies including React and Next.js, hosted on AWS infrastructure. It demonstrates good performance, mobile optimization, and accessibility features. The site integrates third-party services for analytics and marketing, such as Tealium and Mailchimp, while maintaining GDPR compliance through comprehensive privacy and cookie policies linked to the parent company Logitech. From a security perspective, the site enforces HTTPS and domain registration protections but lacks DNSSEC and explicit security headers. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms a long-standing domain registration consistent with the business history, enhancing trustworthiness. Overall, Mevo.com presents a secure, professional, and user-friendly digital presence aligned with its business goals. Strategic improvements in DNS security and publishing a formal security policy could further enhance its security posture.

30
68
2
65
62
85
100
livestreamingmulti-camerawirelesscameravideoproductionstreamingapps+3 more
ReactNext.jsAWS DNSYouTube iframe API+1

Partner Domains:

logitech.com
parent
2025-07-28T20:35:29.152Z
museumprijs.nl favicon

Museumprijs

museumprijs.nl

69
Non-profitNetherlandssmallMEDIUM

The Museumprijs website serves as a dedicated platform for promoting the VriendenLoterij Museumprijs, a prestigious public award for museums in the Netherlands. Supported by the Prins Bernhard Cultuurfonds, VriendenLoterij, and Museumvereniging, the site provides comprehensive information about nominees, previous winners, and news related to the award. It targets museum professionals, cultural stakeholders, and the general public interested in Dutch cultural heritage. The business model is non-profit, focusing on cultural promotion and public engagement through awards and events. Technically, the website is built on modern frameworks including Next.js and React, leveraging the Storyblok CMS for content management. It integrates third-party services such as Google Tag Manager for analytics and Usercentrics for consent management, ensuring compliance with privacy regulations. The site demonstrates good mobile optimization and SEO practices, although accessibility could be further enhanced. From a security perspective, the website enforces HTTPS, employs standard security headers, and uses a consent management platform to handle cookies and tracking. However, it lacks explicit security policies or incident response information, and no vulnerability disclosure mechanism is present. Overall, the security posture is solid but could benefit from additional transparency and formal policies. The overall risk assessment is low, with no signs of malicious activity or content safety concerns. Strategic recommendations include publishing a dedicated security policy, establishing an incident response contact, enhancing accessibility, and considering a vulnerability disclosure policy to further strengthen trust and compliance.

70
68
17
70
77
70
100
museumcultureawardnon-profitnetherlands+2 more
Next.jsReactStoryblok CMSVimeo+3

Partner Domains:

cultuurfonds.nl
partner
vriendenloterij.nl
partner

+1 more partners

2025-07-28T19:24:52.610Z