Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 67 of 241|Showing 3301-3350 of 12050
M

Meta Platforms, Inc.

opengraphprotocol.org

60
TechnologyUnited StatesenterpriseMEDIUM

The website ogp.me serves as the official specification and resource hub for the Open Graph protocol, a technology originally created by Facebook and now maintained by Meta Platforms, Inc. It provides detailed technical documentation and metadata guidelines enabling web developers to integrate their web pages into social graphs effectively. The site targets developers and technical audiences interested in web standards and social media integration. The business model is centered around providing an open standard and community resources rather than direct commercial services. The domain is well-established since 2010 and is owned by Meta Platforms, Inc., reflecting strong legitimacy and market position. Technically, the website is built with standard web technologies including HTML5, CSS, and JavaScript, hosted behind Cloudflare DNS services. The site demonstrates good performance and basic mobile optimization, with clear and structured content. SEO practices are well implemented through comprehensive Open Graph metadata. However, accessibility features are basic, and no advanced frameworks or CMS are detected. From a security perspective, the site uses HTTPS with a good SSL configuration and domain registration protections such as clientDeleteProhibited status. However, DNSSEC is not enabled, and no explicit security headers or policies are published. There is no evidence of privacy, cookie, or terms of service policies, which impacts privacy compliance scores. No contact or incident response information is provided, limiting transparency in security governance. Overall, the website is trustworthy, professional, and focused on its technical mission. The lack of privacy and cookie policies and DNSSEC are minor gaps. Strategic recommendations include enabling DNSSEC, publishing privacy and security policies, and adding security headers to enhance protection and compliance.

15
35
17
70
85
75
100
opengraphmetadatasocialgraphfacebookwebstandards+2 more
HTML5CSSJavaScript
2025-10-10T23:48:23.425Z
ecosia.org favicon

Ecosia GmbH

ecosia.org

72
TechnologyGermanymediumMEDIUM

Ecosia GmbH operates a green search engine that dedicates 100% of its profits to climate action, primarily through tree planting projects worldwide. The company positions itself as a transparent and environmentally responsible alternative to mainstream search engines, with a strong community of over 20 million users. Their business model leverages advertising revenue to fund sustainability initiatives, supported by monthly financial reports and certifications such as B-Corporation. The website is professionally designed, mobile-optimized, and provides clear navigation and calls to action to engage users in their mission. Technically, Ecosia employs modern web technologies including JavaScript frameworks (likely Vue.js), Google Tag Manager for analytics, and Didomi for consent management, ensuring compliance with privacy regulations such as GDPR. The site is served over HTTPS with strong security headers, reflecting a mature security posture. No critical vulnerabilities or exposed sensitive data were detected, and the site includes mechanisms for cookie consent and privacy transparency. Security-wise, Ecosia demonstrates good practices with HTTPS enforcement, consent management, and transparent data processing disclosures. However, no explicit incident response or security policy pages were found, suggesting an opportunity to enhance security communication. The lack of publicly listed contact emails or phone numbers may limit direct user support but aligns with privacy considerations. Overall, Ecosia presents a trustworthy and credible online presence with a clear environmental mission, solid technical infrastructure, and good security hygiene. The absence of WHOIS data limits domain registration insights but does not detract from the evident legitimacy and professionalism of the site. Strategic recommendations include enhancing incident response visibility, maintaining up-to-date technology stacks, and possibly providing more direct contact channels for security or support inquiries.

70
58
2
97
75
90
100
searchengineenvironmenttreeplantingsustainabilitygreentechnology+2 more
JavaScriptCSSHTML5Google Tag Manager+1
2025-10-10T23:45:49.271Z
ionos.com favicon

IONOS Inc.

ionos.com

11
TechnologyUnited StatesenterpriseCRITICAL

IONOS Inc. is a well-established enterprise-level technology company specializing in web hosting, domain registration, cloud solutions, and related digital services. The company targets businesses and individuals seeking reliable and scalable hosting and cloud infrastructure. Their market position is strong, supported by a comprehensive portfolio of services including websites, domains, servers, email, office productivity, and eCommerce platforms. The website reflects a professional and consistent brand image with excellent content quality and navigation clarity. Technically, the website is built on modern frameworks such as Next.js and React, leveraging various third-party analytics and marketing tools including Google Tag Manager, TikTok Pixel, LinkedIn Insight Tag, and others. The site is mobile-optimized and performs moderately well, with good SEO and accessibility features. Security-wise, HTTPS is enforced with no visible exposed sensitive data, and monitoring tools like Sentry are in use. However, explicit security headers and published security policies are absent. The security posture is solid but could be improved by adding explicit security headers, publishing a security policy, and establishing a vulnerability disclosure program. Privacy compliance is basic, lacking visible privacy and cookie policies or consent mechanisms. Contact information is clearly provided, enhancing business credibility. Overall, the website is trustworthy and professional, with no signs of content blocking or WAF interference. Strategically, IONOS should focus on enhancing transparency around privacy and security policies, improving compliance with GDPR and cookie consent requirements, and publishing incident response contacts to strengthen user trust and regulatory adherence.

-
-
-
-
-
-
-
hostingdomainscloudserversemail+3 more
React (Next.js)JavaScriptCSSwoff2 fonts+7
2025-10-10T23:44:53.811Z
graze.social favicon

Graze.social

graze.social

58
TechnologyN/asmallMEDIUM

Graze.social is a technology company specializing in providing a SaaS platform for building custom social feeds on the Bluesky network using the ATProto protocol. The platform targets feed curators, brands, publishers, developers, and advertisers, enabling them to create personalized feeds, monetize content, and engage audiences without coding. The website demonstrates a strong market position with a growing user base and a clear value proposition centered on user control over social algorithms. Technically, the website is built on modern web technologies including React, JavaScript, and integrates third-party services such as Crisp chat, Beehiiv newsletter, and Plausible analytics. The site is mobile-optimized, fast-loading, and well-structured with good SEO and accessibility features. However, some security best practices like explicit security headers and cookie consent mechanisms are not visibly implemented. From a security perspective, the site uses HTTPS and does not expose sensitive data. The lack of public WHOIS data suggests privacy protection, which is common and justified for startups. No critical vulnerabilities or suspicious patterns were detected. The site lacks publicly disclosed incident response or security policies, which could be improved to enhance trust. Overall, Graze.social presents a professional, trustworthy, and technically mature platform with minor areas for security and privacy compliance improvements. Strategic recommendations include implementing security headers, publishing security policies, and adding cookie consent to align with best practices and regulatory requirements.

30
53
2
40
72
80
100
technologysocialmediacustomfeedsblueskyatproto+2 more
ReactJavaScriptCSSHTML5+5
2025-10-10T23:43:32.669Z
moa-batissez-en-prevention.fr favicon

OPPBTP (Organisme Professionnel de Prévention du Bâtiment et des Travaux Publics)

moa-batissez-en-prevention.fr

50
GovernmentFrancemediumMEDIUM

The website moa-batissez-en-prevention.fr is a professional French-language resource dedicated to construction project owners (maîtres d’ouvrage) to help optimize construction operations by integrating risk prevention measures. It is affiliated with OPPBTP, a recognized professional prevention organization in the French construction sector. The site offers advice, tools, solutions, and resources focused on health and safety in construction projects. Technically, the site uses modern web technologies including Google Tag Manager, Matomo analytics, and a cookie consent solution from axept.io. The CMS appears to be Ibexa, supporting structured content and rich media. Security posture is good with HTTPS and no exposed sensitive data, though security headers and explicit security policies are not evident. Privacy compliance is basic with a cookie consent mechanism and a privacy policy linked on a partner domain. The domain registration is consistent and legitimate, registered with GANDI in 2022, appropriate for the business purpose. Overall, the website is professional, trustworthy, and well-targeted to its audience, with moderate technical performance and good content quality.

15
10
2
70
72
55
100
constructionpreventionsafetymatredouvragebtp+3 more
Google Tag ManagerMatomo Analyticsaxept.io (cookie consent)JavaScript+2

Partner Domains:

www.preventionbtp.fr
partner
www.oppbtp.com
partner

+1 more partners

2025-10-10T22:36:55.534Z
D

dogado GmbH

cloudpit.io

59
TechnologyGermanymediumMEDIUM

CloudPit is a cloud platform service operated under dogado GmbH, a German company established in 2015. The website analyzed is primarily a login portal for users to access cloud infrastructure management services. The business targets IT professionals and organizations requiring cloud hosting and management solutions. The platform appears to be a niche player in the cloud technology sector with a medium-sized company profile. Technically, the website employs standard web technologies including JavaScript and CSS, with scripts loaded from its own domain. The site uses HTTPS with a valid CSRF token for form security, but lacks advanced security headers and visible privacy or cookie policies. The site is moderately optimized for performance and mobile use but could improve accessibility and SEO features. From a security perspective, the site demonstrates basic good practices such as HTTPS and CSRF protection but lacks DNSSEC and security headers that would enhance protection. No vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms a consistent and legitimate domain registration with no privacy protection, matching the business location and entity. Overall, the website is functional and trustworthy but would benefit from enhanced privacy compliance, security hardening, and more comprehensive business transparency. Strategic improvements in these areas would strengthen user trust and regulatory compliance.

65
50
2
70
52
60
100
cloudlogincloudplatformtechnologysecurity
JavaScriptCSS
2025-10-10T20:20:21.352Z
pretix.cloud favicon

pretix

pretix.cloud

72
TechnologyGermanymediumMEDIUM

pretix is a technology company specializing in event ticketing software, offering a comprehensive platform that includes online ticket shops, box office solutions, and various event management tools. The company targets event organizers across multiple sectors such as conferences, festivals, concerts, and exhibitions. With over 1000 customers and ISO 27001 certification, pretix holds a strong market position as a secure and privacy-focused ticketing solution provider. The website reflects a professional and consistent brand image with clear navigation and extensive product offerings. Technically, pretix employs modern web technologies including Matomo analytics for privacy-conscious tracking, SVG graphics for UI, and a REST API for extensibility. The site is well-optimized for performance and mobile devices, providing a good user experience. Security-wise, pretix demonstrates strong practices with HTTPS enforcement and ISO certification, though it lacks some security headers and a public vulnerability disclosure policy. Contact information is clearly presented, supporting business credibility. Overall, pretix presents a trustworthy and mature digital presence with minor areas for compliance and security enhancement.

70
28
17
98
85
90
100
ticketingeventmanagementsoftwareiso27001privacy+3 more
Matomo AnalyticsSVG graphicsREST APIJavaScript+1

Partner Domains:

venueless.org
partner
marketplace.pretix.eu
related

+2 more partners

2025-10-10T20:18:34.366Z
alpenverein.at favicon

Österreichischer Alpenverein

alpenverein.at

72
Non-profitAustrialargeMEDIUM

The Österreichischer Alpenverein is a well-established non-profit organization dedicated to alpine sports, nature conservation, and community engagement in Austria. The website serves as a comprehensive portal for members and the public, offering information on membership benefits, mountain huts, environmental initiatives, and educational programs. It maintains a strong market position as Austria's leading alpine association with a large member base and extensive regional presence. Technically, the website employs standard web technologies including JavaScript, jQuery, and Matomo analytics, with a focus on accessibility and mobile optimization. The site is well-structured, professionally designed, and provides clear navigation and relevant content. Privacy compliance is robust, featuring a detailed privacy policy and cookie consent mechanism aligned with GDPR requirements. From a security perspective, the site uses HTTPS and implements cookie consent but lacks some advanced security headers and explicit vulnerability disclosure mechanisms. No critical vulnerabilities or suspicious content were detected. The WHOIS data is unavailable, likely due to privacy protection, which is justified for this type of organization. Overall, the website demonstrates a strong security posture, high content quality, and good privacy compliance, making it a trustworthy and professional digital presence for the Österreichischer Alpenverein.

75
68
17
75
77
80
100
alpenvereinalpinemembershipmountainhiking+3 more
JavaScriptjQueryMatomo AnalyticsCSS+1

Partner Domains:

mein.alpenverein.at
service
www.alpenverein-akademie.at
partner

+3 more partners

2025-10-10T19:06:15.785Z
P

Pascualet - Marc Diez-Prida

pascualet.com

48
MediaGermanysmallHIGH

Pascualet - Marc Diez-Prida is a small, specialized PR agency based in Radolfzell am Bodensee, Germany, with a focus on public relations, strategic marketing, photography, and design services. The company targets businesses and organizations seeking comprehensive communication and creative solutions, operating with a niche regional and international presence including Germany, Spain, and Mexico. The website reflects a professional and consistent brand image with clear contact points and partner affiliations. Technically, the website employs a modest but effective technology stack including Matomo for privacy-conscious analytics and Userlike for chat support. The site is moderately optimized for performance and mobile devices, with good SEO practices evident in meta tags and structured content. However, no CMS or advanced frameworks are detected, indicating a likely custom or lightweight implementation. From a security perspective, the domain is well-registered with a reputable registrar and shows no signs of privacy protection or suspicious patterns, supporting legitimacy. The site uses HTTPS and disables cookies in analytics, enhancing privacy. However, the absence of security headers and cookie consent mechanisms are notable gaps. No explicit security or incident response policies are published, which could be improved to enhance trust and compliance. Overall, the website presents a trustworthy and professional front for a small PR agency with good business credibility and privacy-conscious analytics. Strategic improvements in security headers, cookie consent, and published policies would strengthen the security posture and compliance standing, supporting long-term business growth and client trust.

30
53
2
70
72
55
20
prmarketingphotographycommunicationmedia+4 more
Matomo AnalyticsUserlike Chat WidgetCSSJavaScript

Partner Domains:

fotofundus.net
partner
bodensee.jobs
partner
2025-10-10T18:02:45.240Z
server-daten.de favicon

Jürgen Auer

server-daten.de

69
TechnologyGermanysmallMEDIUM

Server-Daten, operated by Jürgen Auer, is a small German technology business specializing in providing relational web database solutions for rent. The company offers services including database setup, encrypted file uploads, and a UserAgent LinkCheck tool. The website is primarily in German and targets businesses or individuals seeking secure web database hosting and related services. The business has been established since 2005, indicating a mature presence in its niche market. Technically, the website uses standard HTML, CSS, and JavaScript with no detected CMS or advanced frameworks. Hosting is provided via INWX nameservers, a reputable German domain registrar and hosting provider. The site performance is moderate with basic mobile optimization and accessibility features. SEO is basic but sufficient for the site's scope. No advanced analytics or tracking technologies are detected, reflecting a privacy-conscious approach. From a security perspective, the site uses HTTPS (implied by domain and standard practice though SSL details are not explicitly provided) and implements a cookie consent banner, indicating GDPR awareness. However, no explicit security headers or incident response policies are found. The WHOIS data is consistent with the business claims, showing no privacy protection and a domain age that aligns with the company's history. No vulnerabilities or suspicious patterns are detected in the content or technical setup. Overall, Server-Daten presents a trustworthy, niche-focused web service with a solid business foundation and basic but adequate technical and security measures. Strategic improvements in security headers, incident response documentation, and enhanced mobile optimization could further strengthen its posture.

95
83
2
83
42
75
100
webdatabasedataencryptionserverrentalgermantechnology
HTML5CSSJavaScript

Partner Domains:

www.sql-und-xml.de
partner
2025-10-10T15:39:34.760Z