Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 65 of 155|Showing 3201-3250 of 7749
orion-alliance.com favicon

Orion Alliance

orion-alliance.com

68
TechnologyNetherlandsmediumMEDIUM

Orion Alliance is a European-based software development company established in 2007, providing a broad spectrum of IT services including application support, cloud computing, DevOps, data analytics, and enterprise application development. With over 100 industry experts and multiple development centers in the Netherlands, Latvia, and Poland, the company targets ambitious businesses seeking to leverage technology for growth and operational efficiency. Their business model focuses on both onsite and offshore delivery, emphasizing 24/7 customer support and personalized solutions. Technically, the website is built on a modern React and Next.js framework, leveraging Google Fonts and Google Analytics for performance and tracking. Hosting and DNS services are managed via Cloudflare, ensuring good SSL configuration and moderate performance. The site is mobile-optimized with good SEO and basic accessibility features. Cookie consent is implemented with an opt-in mechanism, reflecting GDPR compliance awareness. From a security perspective, the website enforces HTTPS and has domain transfer protections in place. However, DNSSEC is not enabled, and no advanced security headers or published security policies were found. There is no visible incident response or vulnerability disclosure information, which could be improved to enhance trust and compliance. Overall, the security posture is solid but could benefit from additional best practices. The overall risk assessment is low, with no signs of malicious activity or suspicious domain registration patterns. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and implementing security headers to strengthen defenses. These steps will improve compliance, trust, and resilience against cyber threats.

60
65
17
70
75
75
100
softwaredevelopmentitservicescloudcomputingdevopsdataanalytics+4 more
React (Next.js)Google FontsGoogle AnalyticsCloudflare DNS+1
2025-07-30T15:59:51.896Z
lottespapery.com favicon

Lotte's Papery

lottespapery.com

52
RetailLatviasmallMEDIUM

Lotte's Papery is a small Latvian-based artisanal retailer specializing in handcrafted paper and leather goods, including personalized stationery and wedding accessories. The company operates both physical stores in Riga and an e-commerce website, targeting Latvian-speaking customers who value craftsmanship and unique products. The website is well-designed, professionally maintained, and optimized for both desktop and mobile users, reflecting a mature digital presence. Technically, the website is built on WordPress with WooCommerce, leveraging popular plugins such as Yoast SEO and PixelYourSite for marketing and analytics. It uses Cloudflare DNS and NameCheap as the domain registrar. The site employs HTTPS with a good SSL configuration and includes cookie consent mechanisms compliant with GDPR, indicating a strong commitment to privacy and regulatory compliance. From a security perspective, the site demonstrates good practices including clientTransferProhibited domain status and no visible vulnerabilities or exposed sensitive data. However, DNSSEC is not enabled, and some security headers like Content-Security-Policy are missing, which could be improved. The website uses tracking pixels from Facebook and Google Analytics, with moderate user tracking balanced by clear cookie consent. Overall, Lotte's Papery presents a trustworthy and professional online presence with a solid security posture and compliance framework. The business is legitimate, with consistent WHOIS data and clear contact information. Strategic recommendations include enabling DNSSEC, adding additional security headers, and ongoing monitoring of third-party scripts to maintain security and compliance.

30
65
17
40
-
75
100
e-commercehandcraftedpapergoodsleatherproductslatvia+3 more
WordPressWooCommerceYoast SEOGoogle Tag Manager+3
2025-07-30T15:59:51.759Z
neverstopexploring.cz favicon

Gauselmann Group

neverstopexploring.cz

55
OtherCzech RepublicmediumMEDIUM

MerkurXtip is an online gambling platform operating in the Czech Republic, offering a combination of online casino slot games and sports betting services. It is part of the established German Gauselmann Group and holds a valid Czech gambling license issued in 2022. The platform targets Czech-speaking adult users interested in regulated online gambling with a focus on slots and sports betting, including live betting and e-sports. The website provides detailed information on games, bonuses, payment methods, and customer support, reflecting a mature business model with a medium market presence. Technically, the website is built with standard web technologies (HTML5, CSS, JavaScript) and uses Cloudflare DNS services. It is mobile-optimized with responsive design but lacks explicit CMS or advanced frameworks. Performance is moderate with good SEO and accessibility features. Security practices include Bank ID verification for user identity and secure payment verification, but the site lacks visible security headers and published security policies. Security posture is adequate but could be improved by adding privacy and cookie policies, security headers, and incident response disclosures. The domain WHOIS data shows a suspicious future creation date inconsistent with the business founding date, which slightly reduces trust but does not negate legitimacy given the detailed content and licensing. Overall, the site is professional and trustworthy for its intended audience but needs improvements in privacy compliance and security transparency. Strategic recommendations include implementing comprehensive privacy and cookie policies with consent mechanisms, enhancing security headers, publishing incident response and vulnerability disclosure information, and clarifying data protection officer contacts to improve compliance and user trust.

30
10
17
60
75
75
100
gamblingcasinosportsbettingonlinecasinoczechrepublic+3 more
HTML5CSSJavaScriptCloudflare DNS
2025-07-30T12:09:51.492Z
N

New York YIMBY

newyorkyimby.com

64
Real EstateUnited StatessmallMEDIUM

New York YIMBY is a specialized media outlet focused on real estate development and construction news in New York City. Established in 2012, it provides detailed coverage of projects, neighborhoods, and industry trends from a pro-growth perspective. The website targets real estate professionals, developers, urban planners, and interested residents, offering news articles, research, advertising opportunities, and community forums. Its market position is that of a niche, trusted source within the NYC real estate media landscape. Technically, the website is built on WordPress and leverages a modern technology stack including jQuery, Yoast SEO, and various advertising and analytics tools such as Google Analytics, Facebook Pixel, and Quantcast. It uses Cloudflare for DNS and likely CDN services, ensuring good performance and security. The site is mobile-optimized with good SEO and accessibility features, although some accessibility aspects could be improved. From a security standpoint, the site employs HTTPS with excellent SSL configuration but lacks some security headers and explicit security policies. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic; while a privacy policy is present, there is no cookie consent mechanism or GDPR-specific compliance information. Incident response and vulnerability disclosure policies are absent. Overall, the website is professional, content-rich, and trustworthy with moderate tracking and advertising practices. Recommendations include enhancing privacy compliance with cookie consent, publishing security and incident response policies, enabling DNSSEC, and adding security headers to improve security posture and regulatory compliance.

50
35
17
85
75
70
100
realestatenycdevelopmentconstructionnews+1 more
WordPressjQueryYoast SEO PremiumWP PRO Advertising System+9
2025-07-29T14:54:26.842Z
sharpify.io favicon

SIA 'NJ Media'

sharpify.io

65
TechnologyLatviasmallMEDIUM

Sharpify is a Latvia-based SaaS company offering an all-in-one CRM platform tailored for small businesses and sales teams. Their product consolidates CRM, inbox management, lead databases, automation, and training into a single subscription model priced affordably at €1 per day. The company positions itself as a practical and user-friendly alternative to traditional CRM tools, emphasizing unlimited users per subscription and ease of setup without technical expertise. Their market focus is on SMBs seeking efficient sales and marketing acceleration with integrated training and automation features. Technically, the website is built on Webflow CMS, leveraging modern web technologies including Cloudflare DNS, Intercom for customer engagement, Facebook Pixel and Google Tag Manager for analytics and marketing, and Wistia for video content. The site demonstrates good performance, mobile optimization, and accessibility standards. Integration with over 8,000 tools via Zapier and direct Gmail and Meta lead integrations highlight a mature technical ecosystem. From a security perspective, the site enforces HTTPS with a good SSL configuration and domain status clientTransferProhibited, indicating domain transfer protection. However, DNSSEC is not enabled, and some security headers like Content-Security-Policy are missing. No explicit security or incident response policies are published, and cookie consent mechanisms are absent despite GDPR compliance claims. No vulnerabilities or exposed sensitive data were detected. Overall, Sharpify presents a credible and professional online presence with a solid business model and technical foundation. To enhance trust and compliance, the company should implement cookie consent, publish security policies, enable DNSSEC, and add vulnerability disclosure information. These improvements will strengthen their security posture and regulatory adherence, supporting their growth in the competitive CRM market.

30
70
2
85
72
80
100
crmsaassalesleadgenerationautomation+3 more
WebflowCloudflare DNSIntercomFacebook Pixel+4
2025-07-29T12:31:46.841Z
guamunity.com favicon

Guamunity

guamunity.com

56
OtherN/asmallMEDIUM

The website guamunity.com serves as a minimal informational landing page primarily announcing the availability of an app called GuamAlerts. The content is sparse, consisting mainly of images and a brief message about app store availability, with no detailed business or service information. The domain is registered since 2015 with GoDaddy and uses Cloudflare DNS, indicating a stable but basic technical setup. No privacy, cookie, or terms of service policies are present, and no contact information or forms are provided, limiting user engagement and trust signals. Technically, the site uses Bootstrap and Font Awesome for styling and icons, with Cloudflare DNS but lacks advanced security headers or DNSSEC. Mobile optimization is basic but functional. SEO and accessibility features are minimal, and no analytics or tracking technologies are detected. The security posture is weak due to missing HTTPS enforcement details and absence of security headers. Overall, the security posture is low with no evident vulnerabilities but also no advanced protections. The lack of privacy and cookie policies indicates non-compliance with common data protection regulations. The domain registration is consistent and appropriate for the business age, but the website itself lacks professionalism and completeness. Strategic recommendations include implementing HTTPS with strong SSL/TLS, adding privacy and cookie policies, providing clear contact information, enabling DNSSEC, and improving content quality and SEO to enhance trust and user experience.

30
40
2
85
75
75
100
appannouncementguamalertsmobileplaceholder
BootstrapFont AwesomeCloudflare DNS
2025-07-29T04:36:34.793Z
opaguam.org favicon

Guam Office of Public Accountability

opaguam.org

63
GovernmentUnited StatesmediumMEDIUM

The Guam Office of Public Accountability (OPA) is a government agency dedicated to ensuring public trust and good governance through independent audits and procurement appeals administration. The website serves as a comprehensive portal for audit reports, procurement appeals, announcements, and resources targeted at government officials, auditors, and the general public of Guam. It positions itself as the official auditing authority for the Government of Guam, providing transparency and accountability services. Technically, the website is built on Drupal 7 with a moderate performance profile and good mobile optimization. It uses common web technologies including jQuery, MediaElement.js, and Font Awesome, with hosting and DNS services linked to PublicDomainRegistry.com and Cloudflare. The site employs HTTPS and Google Analytics for tracking but lacks advanced security headers and DNSSEC. From a security perspective, the site demonstrates basic good practices such as HTTPS and domain transfer protection but lacks explicit security policies, incident response contacts, and privacy/cookie policies. No WAF or blocking mechanisms were detected, and the domain registration details align well with the website's government purpose, indicating legitimacy. However, improvements in security headers, privacy compliance, and incident response readiness are recommended. Overall, the site is a trustworthy government resource with good content quality and business credibility but could enhance its privacy and security posture to meet modern standards and regulatory compliance more fully.

50
35
17
85
65
70
100
governmentauditingpublicaccountabilityguamfinancialaudits+1 more
Drupal 7jQueryMediaElement.jsFont Awesome+2
2025-07-29T04:36:29.777Z
america250.org favicon

America250.org, Inc.

america250.org

68
GovernmentUnited StatesmediumMEDIUM

America250.org, Inc. is a nonprofit organization supporting the U.S. Semiquincentennial Commission, tasked with commemorating the 250th anniversary of the United States in 2026. The initiative engages Americans nationwide through educational programs, contests, events, and partnerships with major corporations and government entities. The website serves as the official platform for information, event calendars, news, and merchandise related to the celebration. Technically, the website is built on WordPress with modern technologies including Gravity Forms for data collection, Cloudflare DNS, and multiple analytics and marketing tools such as Google Analytics, Facebook Pixel, and LinkedIn Insight Tag. The site is well optimized for performance, mobile responsiveness, accessibility, and SEO, reflecting a mature digital infrastructure. From a security perspective, the site uses HTTPS with a strong SSL configuration, employs domain status protections, and integrates cookie consent mechanisms compliant with GDPR. However, DNSSEC is not enabled, and explicit security headers are not clearly visible in the HTML content. No vulnerabilities or exposed sensitive data were detected. The WHOIS data shows a long-standing domain with privacy protection appropriate for the nonprofit/governmental nature of the entity. Overall, America250.org presents a professional, trustworthy, and secure online presence suitable for its mission. Strategic recommendations include enabling DNSSEC, publishing a formal security policy and incident response contacts, and adding a vulnerability disclosure policy to enhance transparency and security posture.

15
95
2
85
75
85
100
governmentnonprofitanniversaryeducationhistory+3 more
WordPressGravity FormsCloudflare DNSGoogle Tag Manager+4

Partner Domains:

store.america250.org
subsidiary
events.america250.org
subsidiary

+1 more partners

2025-07-29T04:35:19.010Z
comicskingdom.com favicon

Comics Kingdom

comicskingdom.com

67
MediaN/amediumMEDIUM

Comics Kingdom is a well-established digital media platform specializing in daily comic strips, political cartoons, and webcomics. Founded in 2004, it hosts popular titles such as Zits, The Phantom, Hagar, and Popeye, targeting a general audience interested in comics entertainment. The platform offers a subscription model alongside free content, positioning itself as a key player in the online comics market with a consistent brand presence and a broad catalog. Technically, the website leverages modern web technologies including React with Next.js, Cloudflare DNS and CDN services, and integrates multiple advertising and analytics tools such as Google Analytics, Rubicon Project, and Amazon Ads. The site demonstrates good mobile optimization and SEO practices, though performance is moderate and accessibility features are basic. From a security perspective, the site uses HTTPS with a valid SSL configuration and has domain transfer protections in place. However, it lacks DNSSEC, security headers, and publicly available privacy or cookie policies, which are critical for compliance and user trust. No vulnerability disclosure or incident response information is provided, and no explicit contact details are found, which limits transparency. Overall, Comics Kingdom presents a professional and trustworthy digital media presence with room for improvement in privacy compliance and security best practices. Strategic enhancements in these areas would strengthen user trust and regulatory adherence.

45
53
17
85
75
85
100
comicsdigitalmediaentertainmentwebcomicsdailycomics+1 more
React (Next.js)Google Tag ManagerGoogle AnalyticsCloudflare DNS+4
2025-07-29T04:34:43.864Z
charlotteregion.com favicon

Charlotte Regional Business Alliance

charlotteregion.com

61
OtherUnited StatesmediumMEDIUM

The Charlotte Regional Business Alliance is a well-established regional economic development organization founded in 1996, focused on fostering business growth, investment, and workforce development across a multi-county area in the Southeastern United States. The website serves as a comprehensive portal for investors, businesses, and community stakeholders, offering resources such as regional data, industry insights, and networking opportunities. The organization positions itself as a premier economic engine in the region, supporting a diverse range of industries including manufacturing, finance, life sciences, healthcare, technology, and logistics. Technically, the website is built on WordPress with modern SEO and accessibility tools such as Yoast SEO and ReciteMe. It leverages Cloudflare for DNS and likely CDN services, and integrates multiple marketing and analytics tools including Google Tag Manager and LinkedIn Insight. The site demonstrates good mobile optimization, clear navigation, and professional design, contributing to a positive user experience and strong digital maturity. From a security perspective, the site enforces HTTPS and uses domain transfer protection, but lacks DNSSEC and explicit security headers. There is no visible cookie consent mechanism or detailed security and incident response policies, which are areas for improvement. The WHOIS data is consistent with the business claims, showing a long domain age and no privacy protection, enhancing trustworthiness. Overall, the site is professional, content-rich, and credible with moderate security posture. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent for GDPR compliance, and publishing clear security policies to enhance trust and compliance.

15
58
2
70
75
80
100
businesseconomicdevelopmentregionalgrowthinvestmentworkforce+1 more
WordPressYoast SEOCloudflare DNSGoogle Tag Manager+3

Partner Domains:

investor.charlotteregion.com
partner
2025-07-29T02:16:23.045Z