Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 63 of 101|Showing 3101-3150 of 5032
hoornzingthollands.nl favicon

Hoorn Zingt Hollands

hoornzingthollands.nl

57
HospitalityNetherlandssmallMEDIUM

Hoorn Zingt Hollands is a Dutch music festival event organizer promoting a regional festival scheduled for August 31, 2025, in Julianapark Hoorn. The website serves as a promotional platform featuring artist lineups, ticket sales via a third-party platform, and social media engagement. The target audience is general public interested in Dutch music and festivals. The business model revolves around event organization and ticket sales, positioning itself as a popular regional festival with a strong local cultural focus. Technically, the website is built using modern web technologies including Next.js and React, with integrations for YouTube embeds, Swiper.js for carousels, and tracking via TikTok Pixel and Google Tag Manager. The site is mobile optimized and has good SEO practices, though accessibility features are basic. Performance is moderate with room for improvement. From a security perspective, the site uses HTTPS with good SSL configuration but lacks visible security headers and explicit privacy or security policies. No contact information for security incidents or data protection officers is provided. Cookie consent is implemented, indicating some privacy compliance efforts. The WHOIS data is consistent with the business claims, supporting legitimacy. Overall, the website is professional and functional but would benefit from enhanced privacy and security disclosures, improved contact transparency, and additional security hardening to increase trust and compliance.

35
43
2
70
62
65
100
musicfestivaldutchmusiceventhoornticketsales+1 more
Next.jsReactLite YouTube EmbedSwiper.js+3

Partner Domains:

shop.simpleticket.eu
partner
www.sitevoordezaak.nl
partner
2025-07-28T17:22:35.011Z
outdoorstereo.nl favicon

Outdoor Stereo Festival

outdoorstereo.nl

55
HospitalityNetherlandssmallMEDIUM

Outdoor Stereo Festival is a small-scale event organizer focused on hosting an outdoor music festival in the Netherlands, scheduled for August 30, 2025. The website serves primarily as a promotional platform to showcase the event, artists, and facilitate ticket sales through a third-party vendor. The target audience is music enthusiasts, particularly those interested in outdoor festivals within the Dutch region. The business model revolves around event organization and ticketing. Technically, the website is built using modern web technologies including Next.js and React, ensuring a responsive and visually appealing user experience. Performance is moderate with good mobile optimization and basic accessibility features. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and uses asynchronous loading for scripts, but lacks explicit security headers and does not provide visible security or incident response policies. Privacy compliance is limited due to the absence of a privacy policy and terms of service, though a cookie consent mechanism is present. Overall, the website is professional and trustworthy for its purpose but would benefit from enhanced privacy and security disclosures to improve compliance and user trust.

35
43
2
60
62
65
100
musicfestivaleventoutdoornetherlandstickets+2 more
Next.jsReactJavaScriptCSS+1

Partner Domains:

shop.simpleticket.eu
partner
festivalweekendhoorn.nl
partner

+1 more partners

2025-07-28T17:22:29.976Z
ubi.com favicon

Ubisoft

ubi.com

66
MediaN/aenterpriseMEDIUM

Ubisoft is a globally recognized video game developer and publisher, known for iconic franchises such as Assassin's Creed, Rainbow Six, and Far Cry. Their official website serves as a comprehensive platform for game promotion, news updates, and digital services including Ubisoft+ subscription and Ubisoft Connect. The site targets a broad audience of gamers and enthusiasts worldwide, offering rich multimedia content and seamless navigation. Technically, the website employs modern web technologies including React and Next.js, ensuring fast performance, mobile optimization, and accessibility. The integration of consent management tools like OneTrust and marketing platforms such as Google Tag Manager and Abtasty reflects a mature digital infrastructure focused on privacy and user experience. From a security perspective, the site enforces HTTPS, utilizes robust security headers, and manages cookie consent effectively. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of publicly visible incident response contacts or vulnerability disclosure programs suggests areas for improvement. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. The missing WHOIS data is likely due to privacy or registrar policies and does not detract from the site's legitimacy. Strategic recommendations include enhancing transparency around security incident response and vulnerability reporting to further strengthen trust.

35
35
2
87
100
80
100
gamingvideogamesentertainmentubisoftassassinscreed+4 more
ReactNext.jsJavaScriptCSS+3
2025-07-28T16:22:27.182Z
datafyhq.com favicon

Datafy

datafyhq.com

65
TechnologyUnited StatessmallMEDIUM

Datafy is a specialized technology company offering an integrated analytics and advertising platform designed to empower businesses with data-driven marketing solutions. Their platform combines comprehensive data analytics, strategic advertising via an owned demand-side platform (DSP), and campaign measurement with attribution, targeting industries such as attractions, retail, and travel & tourism. The company emphasizes customization, transparency, and direct client engagement, supported by in-house software development and data science expertise. Technically, the website is built on modern frameworks including Next.js and React, with a strong focus on performance, mobile optimization, and user experience. The presence of a consent management platform (Osano) and Google Tag Manager indicates mature digital marketing and privacy compliance practices. However, the absence of visible security headers and explicit security policies suggests areas for improvement in security posture. Security-wise, Datafy demonstrates good practices such as HTTPS enforcement and SOC 2 certification, which are positive trust signals. Nonetheless, the lack of WHOIS data raises questions about domain registration legitimacy, which should be addressed to enhance trust. The site does not expose vulnerabilities or sensitive data visibly, but could benefit from publishing incident response contacts and vulnerability disclosure policies. Overall, Datafy presents a professional and trustworthy digital presence with strong business credibility and technical maturity. Addressing the WHOIS data gap and enhancing security transparency would further strengthen their risk profile and stakeholder confidence.

30
53
17
85
65
85
100
dataanalyticsadvertisingattributionmarketingdsp+3 more
ReactNext.jsJavaScriptCSS+2
2025-07-28T15:13:28.662Z
publicartarchive.org favicon

WESTAF

publicartarchive.org

64
Non-profitUnited StatesmediumMEDIUM

Public Art Archive, operated by WESTAF, is a well-established non-profit platform dedicated to making public artworks more accessible and discoverable worldwide. The website serves as an authoritative source curated by public and private arts organizations, offering search, exploration, and educational resources about public art. It targets arts organizations, researchers, and the general public interested in cultural heritage and public art. The platform's business model focuses on providing collection management services and fostering community contributions to enrich the archive. Technically, the website is built on modern frameworks such as Next.js and React, leveraging Amazon AWS CloudFront for hosting and Google Maps API for location services. It integrates Google Tag Manager for analytics and Usercentrics for cookie consent management, reflecting a mature digital infrastructure. The site demonstrates good performance, mobile optimization, and accessibility compliance. From a security perspective, the site enforces HTTPS, employs domain transfer protection, and uses a consent management platform to comply with privacy regulations. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response contact, which are areas for improvement. No vulnerabilities or suspicious activities were detected. Overall, the website presents a high level of professionalism, trustworthiness, and compliance with privacy standards. The domain registration aligns well with the organization's identity and history, supporting its legitimacy. Strategic recommendations include enabling DNSSEC, publishing a security policy, and establishing a vulnerability disclosure process to enhance security posture and stakeholder trust.

20
53
17
80
77
80
100
publicartarchivenon-profitartsculturalheritage+2 more
ReactNext.jsGoogle Maps APIGoogle Tag Manager+1

Partner Domains:

wearecreativewest.org
partner
paypal.com
service
2025-07-28T15:13:03.604Z
boardeffect.com favicon

Diligent Corporation

boardeffect.com

70
TechnologyN/alargeMEDIUM

BoardEffect, operated by Diligent Corporation, offers a sophisticated AI-powered board portal software designed to streamline board management and governance for mission-driven organizations. The platform provides tools such as AI-generated agendas, secure virtual workspaces, real-time collaboration, and seamless workflows to enhance board efficiency and decision-making. With over 5000 customers and 260,000 users, BoardEffect holds a strong market position in the governance software sector. Technically, the website leverages modern frameworks like React and Next.js, ensuring fast performance, mobile optimization, and good SEO practices. Integration with Google Tag Manager and Insent AI chat widget indicates a mature digital marketing and user engagement strategy. The website is well-designed, accessible, and professionally maintained. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, but lacks explicit security headers and published security policies or incident response information. The absence of public WHOIS registrant data reduces transparency but is common in commercial SaaS domains. Overall, the security posture is solid but could be improved with additional disclosures and technical headers. The overall risk assessment is low, with the primary recommendation to enhance security transparency and contact availability. Strategic improvements in security policy publication and vulnerability disclosure would further strengthen trust and compliance.

45
73
17
80
75
90
100
boardportalgovernancesoftwareaiagendasboardmanagementsecurecollaboration+2 more
ReactNext.jsGoogle Tag ManagerInsent AI Chat Widget

Partner Domains:

www.diligent.com
parent
2025-07-28T12:58:15.263Z
flatlogic.com favicon

Flatlogic LLC

flatlogic.com

76
TechnologyN/amediumLOW

Flatlogic LLC is a technology company specializing in AI-powered software development for startups and businesses. Their platform enables rapid generation and deployment of full-stack web applications including SaaS, CRM, and ERP solutions. The company emphasizes ownership of the generated code, allowing clients full customization and control. The website demonstrates a strong market position with notable clients and positive reviews, positioning Flatlogic as an innovative player in AI-driven software development. Technically, the website is built on a modern stack including Next.js, React, Node.js, and PostgreSQL, hosted on Cloudflare infrastructure. The site is well-optimized for performance, mobile responsiveness, and SEO. It integrates multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, and Facebook Pixel, with appropriate cookie consent mechanisms in place. From a security perspective, the site enforces HTTPS, uses CSRF tokens, and benefits from Cloudflare DNS protection. However, DNSSEC is not enabled, and some security headers are not explicitly visible in the HTML. No critical vulnerabilities or exposed sensitive data were detected. Privacy policies and terms of service are comprehensive and GDPR compliant. Overall, Flatlogic's website reflects a mature, professional, and trustworthy business with a solid technical foundation and good security posture. Minor improvements in DNS security and explicit security policy publication are recommended to further enhance trust and compliance.

55
100
17
85
75
85
100
aisoftwaredevelopmentbusinesssoftwarecustomsaascustomcrmcustomerp+3 more
Next.jsReactNode.jsPostgreSQL+2
2025-07-28T12:57:34.915Z
chromatic.com favicon

Chromatic

chromatic.com

75
TechnologyN/amediumMEDIUM

Chromatic is a SaaS company specializing in visual testing and UI review tools designed to help software development teams catch visual and functional bugs across browsers before release. Their platform integrates with popular developer tools like Storybook, Playwright, and Cypress, offering automated visual, accessibility, and interaction testing. The company targets developers, designers, product managers, and stakeholders seeking streamlined UI testing and review workflows. Chromatic is positioned as a trusted solution, evidenced by its adoption by major brands such as BBC, Dior, and Adobe. Technically, the website is built using modern frameworks including React and Next.js, hosted on Amazon CloudFront CDN, and employs multiple analytics and marketing tools such as Segment, Google Analytics 4, Facebook Pixel, and Intercom. The site is well-optimized for performance, mobile responsiveness, and accessibility, with appropriate security headers and HTTPS enforced. From a security perspective, Chromatic demonstrates strong practices including the use of security headers and consent management for GDPR compliance. However, the absence of explicit privacy policy and terms of service pages, as well as missing WHOIS domain registration data, slightly detracts from its overall trustworthiness. No critical vulnerabilities or exposed sensitive data were detected. Overall, Chromatic presents a professional, secure, and mature digital presence with minor gaps in privacy transparency and domain registration visibility. Strategic recommendations include publishing comprehensive privacy and terms documents, adding vulnerability disclosure information, and verifying domain registration details to enhance trust and compliance.

65
80
17
98
77
80
100
visualtestinguitestingaccessibilitytestingcomponentlibrarysoftwaredevelopment+2 more
ReactNext.jsSegment analyticsGoogle Tag Manager+5
2025-07-28T12:57:29.906Z
effectivealtruism.org favicon

Effective Altruism

effectivealtruism.org

70
Non-profitN/amediumMEDIUM

Effective Altruism is a globally recognized non-profit movement and philosophy focused on using reason and evidence to maximize positive impact through philanthropy and effective giving. The website serves as a comprehensive educational and community platform offering resources such as articles, online courses, newsletters, and an opportunities board to engage individuals interested in doing the most good. The organization holds a strong market position within the philanthropic and ethical giving sectors, targeting individuals and organizations seeking to apply effective altruism principles. Technically, the website is built on a modern React and Next.js stack, leveraging Cloudflare for hosting and streaming, and integrates advanced analytics tools including Segment, Heap, Google Analytics, and Facebook Pixel. The site demonstrates excellent performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. However, explicit privacy and cookie policies are not prominently linked, indicating room for improvement in privacy compliance. From a security perspective, the site uses HTTPS with strong SSL configuration and employs security best practices such as secure form handling and no exposed sensitive data. Nonetheless, the absence of publicly available security policies, incident response information, and vulnerability disclosure mechanisms suggests potential gaps in transparency and readiness. The WHOIS data is unavailable or malformed, limiting domain registration trust verification, but the website content and external references support legitimacy. Overall, the website presents a professional, trustworthy, and content-rich platform with a solid technical foundation. Strategic recommendations include publishing clear privacy and cookie policies, enhancing security transparency, and improving domain registration information visibility to strengthen trust and compliance.

30
83
22
85
72
85
100
effectivealtruismphilosophynon-profitcharityglobalhealth+3 more
ReactNext.jsCloudflare StreamSegment Analytics+4

Partner Domains:

forum.effectivealtruism.org
partner
www.againstmalaria.com
partner

+3 more partners

2025-07-28T09:33:32.752Z
free.law favicon

Free Law Project

free.law

68
Non-profitUnited StatesmediumMEDIUM

Free Law Project is a leading nonprofit organization dedicated to making the legal ecosystem more equitable and competitive through technology, data, and advocacy. They provide a suite of open-source tools and datasets including CourtListener, RECAP, and Bots.law, serving journalists, researchers, legal professionals, and the public. Their market position is strong as a pioneer in legal data transparency and open access, supported by donations and organizational sponsorships. Technically, the website is built on modern frameworks such as Next.js and React, hosted on Netlify, and optimized for performance and mobile responsiveness. The site demonstrates good SEO and accessibility practices, with a clean, professional design and clear navigation. Analytics are implemented via plausible.io, indicating a privacy-conscious approach to user tracking. From a security perspective, the site enforces HTTPS and employs domain status protections but lacks DNSSEC and security headers like CSP or HSTS. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a basic privacy policy present but no cookie consent mechanism or detailed GDPR compliance statements. Contact information is limited to a contact form, with no direct emails or phone numbers publicly listed. Overall, the website presents a low-risk profile with a high degree of professionalism and trustworthiness. Strategic recommendations include enhancing security headers, implementing DNSSEC, adding cookie consent, and publishing a security.txt file to improve incident response transparency.

75
35
43
70
52
85
100
legalnonprofitopendatalegaltechnologypacer+5 more
ReactNext.jsTailwind CSSAWS DNS (Amazon Route 53)+1
2025-07-28T09:32:47.577Z
vital.io favicon

Vital Software Inc.

vital.io

64
HealthcareUnited StatesmediumMEDIUM

Vital Software Inc. operates a sophisticated patient experience technology platform that leverages AI and live EHR data integration to enhance healthcare delivery across emergency, inpatient, and urgent care settings. The company is well-positioned in the healthcare technology market, trusted by over 100 hospitals, and recognized for significantly improving patient satisfaction and operational outcomes. Their platform offers seamless integration with major EHR systems and emphasizes enterprise-grade security and compliance, including HITRUST and SOC2 certifications. Technically, the website is built on modern frameworks such as Next.js and React, hosted on AWS infrastructure, and employs advanced analytics and marketing tools like Google Tag Manager and LinkedIn Insight. The site demonstrates excellent performance, mobile optimization, and accessibility, reflecting a mature digital presence. Security practices are robust, with HTTPS enforcement and strong security headers, although DNSSEC is not enabled. The security posture is strong, with no evident vulnerabilities or exposed sensitive data. However, the absence of a cookie consent mechanism and explicit incident response contacts are areas for improvement. Privacy compliance is supported by a comprehensive privacy policy and GDPR adherence, but cookie consent implementation would enhance compliance further. Overall, Vital presents a credible, professional, and secure online presence aligned with its healthcare technology business. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing a vulnerability disclosure policy, and providing clear incident response contacts to further strengthen trust and compliance.

40
53
17
65
72
80
100
healthcarepatientexperienceaiehrintegrationhealthcaretechnology+4 more
ReactNext.jsAWS DNSGoogle Tag Manager+2
2025-07-28T09:30:20.859Z
gethopscotch.com favicon

Hopscotch Technologies Inc.

gethopscotch.com

59
EducationN/amediumMEDIUM

Hopscotch Technologies Inc. operates an educational programming platform designed primarily for children aged 10 to 16. The website promotes a coding app that enables kids to create games, animations, and art, positioning itself as a niche player in the educational technology sector. The business model includes subscription services and lifetime family passes, targeting families and educators. The company maintains a consistent brand presence with accessible privacy and terms of service documentation, and active social media engagement on platforms such as Discord, TikTok, and YouTube. Technically, the website is built using modern web technologies including React and Next.js, with integration of FastSpring for payment processing. The site is mobile-optimized and demonstrates good performance and SEO practices. However, some accessibility features are basic, and there is room for improvement in security headers and cookie consent mechanisms. From a security perspective, the site enforces HTTPS and does not expose sensitive data in the HTML content. However, the absence of security headers and lack of published security policies or incident response information indicate areas for enhancement. The WHOIS data is missing or unavailable, which raises questions about domain registration transparency but does not necessarily imply malicious intent given the active and professional website presence. Overall, the website presents a trustworthy and professional front for an educational technology company, with moderate technical maturity and a solid security baseline. Strategic improvements in security policies, cookie consent, and WHOIS transparency would further strengthen trust and compliance.

35
53
2
60
69
75
100
educationprogrammingkidscodinggames+1 more
ReactNext.jsFastSpring (payment)JavaScript

Partner Domains:

hop.sc
partner
sbl.onfastspring.com
partner
2025-07-28T08:21:27.999Z
dennissevershouse.co.uk favicon

Dennis Severs’ House

dennissevershouse.co.uk

61
HospitalityUnited KingdomsmallMEDIUM

Dennis Severs’ House is a cultural heritage site and historic house museum located in the United Kingdom, managed by the Spitalfields Historic Buildings Trust, a registered charity. The website offers immersive tours, theatrical performances, private tours, venue hire, and ticket vouchers, targeting cultural tourists and history enthusiasts. The business model relies on ticket sales, private bookings, and supporter memberships. The site is professionally designed with a consistent brand and clear navigation, reflecting a niche market position in hospitality and non-profit sectors. Technically, the website is built using modern web technologies including React and Next.js, with content managed via Sanity CMS. It integrates multimedia elements such as Mux Player for video and uses Google Tag Manager for analytics. The site is mobile-optimized and accessible, with good SEO practices. Performance is moderate, with room for improvement in loading speed and security headers. Security posture is solid with HTTPS enforced and no visible sensitive data exposure. However, the absence of key security headers and a cookie consent mechanism indicates areas for enhancement. No incident response or vulnerability disclosure information is provided, which could be improved to strengthen trust. The WHOIS data is unavailable due to domain registration issues, which raises some concerns about domain legitimacy despite the professional website content. Overall, the website presents a trustworthy and professional front for a small cultural institution but should address domain registration clarity and enhance security and privacy compliance measures to improve its risk profile and user trust.

35
68
2
70
72
65
100
historichousemuseumculturalheritageimmersivetoursperformanceart+2 more
ReactNext.jsMux PlayerGoogle Tag Manager+1

Partner Domains:

www.thespitalfieldstrust.com
partner
shop.dennissevershouse.co.uk
subsidiary
2025-07-28T07:15:01.538Z