Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 687 of 776|Showing 34301-34350 of 38792
J

JEFF DEMETRIOU

jeffdemetriou.com

42
OtherN/asmallHIGH

The website jeffdemetriou.com serves as an online portfolio for Jeff Demetriou, an abstract artist specializing in highly conceptual and large-scale mixed media works. The site targets art enthusiasts, collectors, and galleries, focusing on showcasing artwork and promoting exhibitions. The business model is primarily artist-centric, relying on portfolio presentation and exhibition promotion without evident e-commerce or transactional capabilities. The market position is that of an independent artist with a niche audience. Technically, the website employs legacy JavaScript libraries such as Prototype.js and Scriptaculous, alongside Lightbox for image display, hosted on DreamHost. The site uses Google Analytics for visitor tracking but lacks modern CMS or frameworks. Performance is moderate with basic SEO and poor mobile optimization. Accessibility features are minimal, and the site structure is simple but functional. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which are critical for modern web security. The use of outdated JavaScript libraries may expose vulnerabilities. No privacy, cookie, or terms of service policies are present, and no explicit contact emails or phone numbers are provided, limiting transparency and compliance with privacy regulations such as GDPR. Google Analytics is implemented without visible consent mechanisms, indicating poor privacy compliance. Overall, the website presents a moderate risk profile with room for improvement in security posture, privacy compliance, and technical modernization. Strategic recommendations include implementing security headers, updating JavaScript libraries, adding privacy and cookie policies with consent mechanisms, and improving mobile responsiveness and accessibility to enhance user experience and trust.

15
35
17
70
62
60
20
abstractartartistportfoliomixedmediamodernartatlantaartist
JavaScriptPrototype.jsScriptaculousLightbox+1
2025-06-27T12:56:18.796Z
Q

QWE.lv

qwe.lv

47
OtherN/asmallHIGH

The website qwe.lv presents a minimal online presence with very limited content, primarily consisting of a single email contact link and basic HTML structure. There is no visible business description, no privacy or cookie policies, and no forms or interactive elements. The site uses Google Analytics and Google Tag Manager for tracking purposes but lacks transparency regarding data protection and user privacy. The absence of WHOIS data due to query limits further complicates trust assessment. Technically, the site is basic with no detected CMS or advanced frameworks, and no security headers or HTTPS status information is available, indicating potential security weaknesses. From a security perspective, the site shows a low maturity level. The lack of HTTPS, security headers, and privacy compliance mechanisms exposes visitors to risks. No incident response or vulnerability disclosure information is provided, and no certifications or trust indicators are present. The domain's legitimacy cannot be confidently established due to missing WHOIS data and minimal website content, resulting in a low trust score. Overall, qwe.lv appears to be a small-scale or placeholder website with insufficient business and security information. The risk assessment is elevated due to the lack of transparency and security best practices. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, improving content quality, and providing clear business and security contact information to enhance trust and compliance.

15
10
2
65
72
85
100
minimaltrackingemail-contactbasic-html
Google AnalyticsGoogle Tag ManagerJavaScript
2025-06-27T12:56:18.761Z
L

lukoil.lv

lukoil.lv

50
OtherN/asmallMEDIUM

The domain lukoil.lv currently hosts a parked domain page with minimal content indicating the domain may be for sale. There is no active business presence or services offered on the site. The website infrastructure relies on basic HTML and JavaScript with external ad and tracking scripts from Google Adsense and Youseasky. No security headers or HTTPS status could be confirmed, and no contact or business information is provided, limiting trustworthiness and user confidence. From a technical perspective, the site uses Amazon Cloudfront CDN for asset delivery and includes scripts for advertising and tracking. The site is mobile responsive at a basic level but lacks SEO optimization and accessibility features. Privacy compliance is minimal with a basic privacy policy page but no cookie consent mechanism. Security posture is weak due to lack of HTTPS confirmation, absence of security headers, and presence of multiple tracking scripts without user consent. WHOIS data could not be retrieved due to query limits, preventing verification of domain registration details and legitimacy. Overall, the domain appears to be a placeholder or domain parking service rather than an active business website. Strategically, this domain should not be trusted for business transactions or communications without further verification. It is recommended to implement HTTPS, add security headers, provide clear business and contact information, and ensure privacy compliance to improve trust and security posture.

15
28
17
72
62
80
100
parked-domaindomain-for-saleadvertisingplaceholder
HTML5JavaScriptGoogle Adsense Domains CAFCloudfront CDN
2025-06-27T12:56:18.605Z
sca.coffee favicon

Specialty Coffee Association

sca.coffee

66
Non-profitUnited StateslargeMEDIUM

The Specialty Coffee Association is a well-established nonprofit organization founded in 2016, serving a global community of coffee professionals including producers, baristas, and industry stakeholders. The organization offers membership services, education, events, research, and sustainability initiatives, positioning itself as a key player in the specialty coffee industry. The website reflects a professional and consistent brand image, targeting coffee professionals worldwide. Technically, the site is built on the Squarespace platform, leveraging modern web technologies and standard tracking tools such as Google Tag Manager, Facebook Pixel, and LinkedIn Insights. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. Security-wise, the site enforces HTTPS and uses a cookie consent mechanism via OneTrust, but lacks advanced security headers and DNSSEC, which are recommended for improved security posture. No critical vulnerabilities or exposed sensitive data were detected. Overall, the domain registration is privacy-protected but justified for a nonprofit entity, with no suspicious patterns identified. Strategic recommendations include enhancing security headers, enabling DNSSEC, and publishing explicit privacy and security policies to improve trust and compliance.

35
88
2
80
62
85
100
nonprofitcoffeemembershipeducationevents+2 more
Squarespace CMSJavaScriptjQueryOneTrust Cookie Consent+4

Partner Domains:

specialtycoffee.my.site.com
service
education.sca.coffee
partner
2025-06-27T12:56:18.194Z
S

smallsquad

smallsquad.com

44
OtherN/asmallHIGH

Smallsquad is a small creative agency specializing in branding, UX/UI design, digital campaigns, packaging, and print services. The website presents a minimalistic design with basic content describing their capabilities but lacks detailed business information or contact details. The domain is registered since 2013, indicating a stable presence in the market, but the website itself does not provide extensive information about the company or its operations. Technically, the website uses standard web technologies including HTML, CSS, JavaScript, and jQuery, with Google Analytics for tracking. Hosting appears to be on Amazon AWS infrastructure based on DNS servers. The site shows basic performance and SEO optimization but lacks advanced accessibility features or modern frameworks. No CMS or platform is detected. From a security perspective, the website lacks critical security headers and does not have DNSSEC enabled. There is no visible HTTPS status in the provided data, and no privacy or cookie policies are present, indicating poor privacy compliance. The use of Google Analytics without a consent mechanism suggests moderate user tracking without clear privacy safeguards. The domain registration is consistent and legitimate, but the website's security posture is weak and could be improved significantly. Overall, the website scores moderately due to its minimal content and weak security and privacy practices. Strategic improvements in security headers, privacy policies, and contact transparency would enhance trust and compliance.

15
35
17
60
72
80
20
uxuidesignbrandingvisualidentitybrandbooksindustrialdesign
HTML5CSSJavaScriptjQuery+1
2025-06-27T12:56:18.175Z
gram.gs favicon

Gram Games

gram.gs

68
TechnologyN/amediumMEDIUM

Gram Games is a medium-sized mobile game development company founded in 2012, specializing in engaging social and puzzle games for mobile platforms. The company operates under the parent company Take-Two Interactive, with strong branding and a portfolio of popular games such as 1010!, Merge Dragons!, and Merge Magic!. Their website reflects a professional and consistent brand image, targeting mobile gamers globally. The business model focuses on game development and publishing with community engagement as a key aspect. Technically, the website uses modern web technologies including HTML5, CSS3, JavaScript, jQuery, and Modernizr, hosted on Amazon AWS infrastructure. It incorporates Google Analytics for user tracking and OneTrust for cookie consent management, indicating a mature digital presence. The site is mobile optimized with good SEO and accessibility basics, though some improvements in accessibility could be made. From a security perspective, the site uses HTTPS and has domain registration protections in place. However, no explicit security headers were detected, and there is no published security policy or incident response contact. The cookie consent mechanism is robust and GDPR compliant. No critical vulnerabilities or suspicious patterns were found, but enabling DNSSEC and security headers would strengthen the security posture. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. The risk level is low, but strategic improvements in security policies and technical controls are recommended to enhance resilience and trust further.

45
88
2
70
72
85
100
mobilegamespuzzlegamessocialgamesgamingentertainment
HTML5CSS3JavaScriptjQuery+2

Partner Domains:

www.zynga.com
parent
www.take2games.com
parent
2025-06-27T12:56:18.114Z
statelocalgov.net favicon

Johnsco LLC

statelocalgov.net

53
GovernmentUnited StatessmallMEDIUM

StateCity.ai is an online informational directory focused on providing comprehensive access to state and local government resources, business guides, and car insurance information across the United States. The platform aggregates links and topic pages to assist users in navigating government services and insurance options at both state and local levels. The business operates under Johnsco LLC, a US-based entity, and targets individuals and businesses seeking localized government and insurance information. The website content is basic but relevant, with a straightforward navigation structure and moderate mobile optimization. Technically, the website uses standard HTML, CSS, and JavaScript with Cloudflare DNS services. The site lacks advanced frameworks or CMS indications and shows basic performance and SEO optimization. Mobile responsiveness and accessibility are present but minimal. Security posture is moderate with HTTPS enabled but lacks DNSSEC, security headers, and published security or privacy policies. The domain WHOIS data presents a notable anomaly with a future creation date, which raises concerns about registration legitimacy. Overall, the website is functional and provides useful content but requires significant improvements in privacy compliance, security best practices, and domain legitimacy verification. The absence of contact information and security policies limits trustworthiness. Strategic enhancements in these areas will improve user confidence and regulatory compliance.

15
50
17
55
65
65
100
governmentinsurancebusinessstateresourcescarinsurance+1 more
HTMLCSSJavaScriptCloudflare DNS
2025-06-27T12:56:18.004Z
bascon.dk favicon

COWI

bascon.dk

71
EnergyDenmarklargeMEDIUM

COWI is an international consultancy specializing in engineering, architecture, energy, and environmental services. The company positions itself as a leader in sustainable and liveable world solutions, targeting customers who seek expert consultancy to improve quality of life through innovative and sustainable projects. The website reflects a mature digital presence with professional design, clear messaging, and comprehensive privacy compliance mechanisms such as Cookiebot for GDPR adherence. Technically, the website employs modern JavaScript libraries and integrates Google Tag Manager and Cookiebot for analytics and consent management. The site is mobile-optimized and accessible, with good SEO practices evident in meta tags and Open Graph data. However, there is no detected CMS or hosting provider information, and performance is moderate, suggesting room for optimization. From a security perspective, the site uses HTTPS and cookie consent mechanisms, but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the provided content. The absence of WHOIS data for the domain is a notable anomaly, reducing trustworthiness despite the professional website. Overall, COWI's website demonstrates strong content quality and privacy compliance but would benefit from enhanced transparency in security policies and contact information. The WHOIS inconsistency warrants further investigation to confirm domain legitimacy.

40
95
17
93
65
80
100
engineeringconsultancysustainabilityarchitectureenergy+3 more
JavaScriptGoogle Tag ManagerCookiebotip-geolocation-api-jquery-sdk
2025-06-27T12:56:17.997Z
yodel.co.uk favicon

Yodel Delivery Network Limited

yodel.co.uk

70
TransportationUnited KingdomlargeMEDIUM

Yodel Delivery Network Limited operates as one of the UK's largest parcel courier and delivery service providers, catering to both business and consumer markets. The company offers a broad range of services including parcel sending, tracking, returns, click & collect, and home collections, positioning itself as a key player in the UK transportation and logistics sector. The website reflects a professional and user-friendly platform with clear navigation and mobile optimization, supporting its business model effectively. Technically, the site leverages modern JavaScript libraries, CDN hosting via Amazon CloudFront, and integrates multiple analytics and tracking tools such as Google Analytics and Microsoft Clarity, indicating a mature digital infrastructure. Security-wise, the site enforces HTTPS, uses CSRF tokens, and provides cookie consent mechanisms, though it lacks explicit published security policies or incident response contacts. The WHOIS data for the exact domain queried (www.yodel.co.uk) is unavailable due to domain naming rules, but the main domain yodel.co.uk is presumably registered and legitimate. Overall, the website demonstrates a solid security posture and compliance with privacy regulations, though improvements in transparency around security policies and incident response are recommended.

55
83
2
100
72
70
100
parceldeliverycourieruklogisticse-commerce+4 more
JavaScriptHTML5CSS3Google Analytics+4

Partner Domains:

yodeldriver.co.uk
partner
collectplus.co.uk
partner
2025-06-27T12:56:17.758Z
J

Visitor anti-robot validation

jensenmetal.eu

37
OtherDenmarksmallHIGH

The website jensenmetal.eu is currently inaccessible for normal browsing and business content review due to a security CAPTCHA challenge page implemented by BitNinja. This page is designed to block automated bots and requires human verification before access is granted. Consequently, no actual business content, privacy policies, or contact information are available for analysis. The domain is registered with a reputable Danish registrar, team.blue Denmark A/S, indicating legitimate ownership and hosting in Denmark. The presence of outdated CMS meta tags (Joomla 1.5 and WordPress 2.5) suggests legacy software usage, which poses security risks. Technically, the site uses Google reCAPTCHA for bot mitigation and Google Analytics for tracking, but lacks visible modern security headers and privacy compliance mechanisms. The site’s design and content quality are poor due to the blocking mechanism and lack of accessible content. Security posture is weak given the outdated CMS versions and absence of security headers, though the CAPTCHA challenge provides some bot protection. Overall, the site’s risk profile is elevated due to limited accessibility, outdated technology, and lack of compliance documentation. Strategic recommendations include upgrading CMS platforms, implementing comprehensive security headers, enforcing HTTPS, and publishing privacy and cookie policies to improve trust and compliance.

-
-
-
85
-
85
100
captchasecuritybotprotectionbitninjajoomla+2 more
JavaScriptGoogle AnalyticsGoogle reCAPTCHA
2025-06-27T12:56:17.755Z