Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 691 of 776|Showing 34501-34550 of 38792
shopline.com favicon

SHOPLINE

shopline.com

66
E-commerceN/alargeMEDIUM

SHOPLINE is a well-established SaaS ecommerce platform founded in 2013, serving over 600,000 merchants globally. It offers a comprehensive suite of ecommerce solutions including online store building, social commerce, POS, payment processing, B2B ecommerce, and marketing automation. The platform targets entrepreneurs to enterprises seeking integrated commerce solutions. Technically, the website is built on Webflow CMS with a modern tech stack including JavaScript, jQuery, and multiple marketing and analytics tools such as HubSpot, Hotjar, and Facebook Pixel. The site is fast, mobile-optimized, and professionally designed with clear navigation and rich content. Security posture is strong with HTTPS enforced and no visible vulnerabilities, though explicit security policies and incident response contacts are not published. Privacy and cookie policies are present and GDPR compliant. WHOIS data is missing or unavailable, which raises some concerns about domain registration transparency but does not detract from the overall legitimacy of the business. Strategic recommendations include publishing detailed security and incident response policies, enhancing transparency on data protection roles, and confirming security header implementations.

60
68
2
75
57
80
100
ecommercesaasonlinestoresocialcommercepos+4 more
WebflowJavaScriptjQueryGoogle Tag Manager+6

Partner Domains:

apps.shopline.com
partner
help.shopline.com
partner

+3 more partners

2025-06-27T10:57:51.434Z
worldrowing.com favicon

World Rowing

worldrowing.com

69
OtherSwitzerlandmediumMEDIUM

World Rowing is an established international sports federation responsible for organizing rowing events worldwide, including the upcoming 2025 World Rowing Cup in Lucerne, Switzerland. The website serves as an official platform to provide event information and promote the sport to athletes, fans, and the rowing community. The domain is long-standing, registered since 1999, and hosted on a reliable infrastructure with AWS DNS and CDN services, reflecting a mature digital presence. Technically, the website employs modern JavaScript frameworks such as Vue.js, uses Google Tag Manager for analytics and marketing, and implements HTTPS with appropriate security headers. The site is mobile-optimized and offers a good user experience with clear navigation and professional design. However, some standard compliance elements like a dedicated privacy policy and terms of service pages are not detected on the event page, though a cookie consent mechanism is present. From a security perspective, the site demonstrates good practices including HTTPS enforcement and clientTransferProhibited domain status, but lacks DNSSEC and a published security.txt file for vulnerability disclosure. No critical vulnerabilities or exposed sensitive data were found. The WHOIS data aligns well with the website's claims, supporting legitimacy and trustworthiness. Overall, the website is professional, secure, and credible, serving its purpose effectively. Enhancements in privacy compliance documentation and security disclosures would further strengthen its posture.

65
100
17
55
62
75
100
sportsrowingeventworldrowingswitzerland+1 more
JavaScriptVue.jsGoogle Tag ManagerAWS DNS
2025-06-27T10:57:11.301Z
tpilet.ee favicon

Piletid sinu teekonnale

tpilet.ee

60
TransportationEstoniamediumMEDIUM

Tpilet.ee is an Estonian online platform specializing in the sale of bus tickets and providing bus timetable information. It serves primarily bus travelers within Estonia, offering services such as one-way and return ticket purchases, ticket returns, and corporate client agreements. The website is positioned as a key player in the Estonian transportation ticketing market, leveraging e-commerce to facilitate travel planning and ticketing. Technically, the website is built using modern web technologies including React and JavaScript, with integration of analytics tools such as Amplitude and Google Analytics. The site demonstrates moderate performance and good mobile optimization, although accessibility features are basic. The use of HTTPS ensures secure communications, and cookie consent mechanisms are in place to comply with basic privacy requirements. From a security perspective, the site enforces HTTPS and employs cookie consent banners, but lacks explicit security headers and published privacy or security policies. No vulnerabilities or exposed sensitive data were detected in the provided content. The WHOIS data aligns well with the business, indicating a legitimate and consistent domain registration. Overall, the website presents a professional and functional platform with room for improvement in privacy compliance, security best practices, and accessibility. Strategic enhancements in these areas would strengthen trust and regulatory adherence.

40
10
47
75
65
65
100
busticketstransportationestoniae-commercetravel
ReactJavaScriptAmplitude AnalyticsGoogle Analytics+1
2025-06-27T10:53:10.174Z
S

SODECA

sodeca.no

65
ManufacturingNorwaymediumMEDIUM

SODECA is a Norwegian-based manufacturer specializing in industrial ventilation, smoke extraction, tunnel ventilation, and pressurization systems for evacuation routes. The company operates internationally with multiple country-specific websites, indicating a strong global presence. Their business model focuses on manufacturing high-quality ventilation products and providing consulting services to industrial clients and engineers. The website is professionally designed, mobile-optimized, and provides clear navigation and relevant content in Norwegian with English alternatives. Technically, the website uses modern frameworks such as Bootstrap and Font Awesome, with a cookie consent mechanism ensuring privacy compliance. The site is served over HTTPS with no visible security vulnerabilities or exposed sensitive data. However, security headers are not explicitly detected, and no public security or incident response policies are published on the site. Overall, the security posture is good with room for improvement in security header implementation and transparency around incident response. The absence of WHOIS data is typical for .no domains and does not detract from the site's legitimacy. Contact information is clearly provided, enhancing business credibility. The site demonstrates a mature digital presence suitable for its industry and market position.

25
68
17
70
77
80
100
industrialventilationsmokeextractionpressurizationsystemsventilationproductsnorway+1 more
Bootstrap 5.2.3Font Awesome 6.5.1CookieConsent v2.8.9JavaScript

Partner Domains:

www.sodeca.com
sister
www.sodeca.es
sister

+3 more partners

2025-06-27T10:52:24.986Z
S

SODECA

sodeca.pt

62
ManufacturingPortugalmediumMEDIUM

SODECA is a Portuguese manufacturer specializing in industrial ventilation and exhaust solutions, including smoke control, tunnel ventilation, stair pressurization, and indoor air quality improvement. The company maintains a strong international presence with multiple country-specific websites, targeting industrial clients and technical professionals. Their business model combines manufacturing with direct sales, supported by online tools and technical consultancy services. The website reflects a professional and consistent brand image with clear navigation and relevant content. Technically, the website employs modern web technologies such as Bootstrap, Font Awesome, and integrates analytics and advertising tools like Google Analytics, Google Tag Manager, and Bing Ads. The site is mobile-optimized and performs moderately well, with good SEO practices and accessibility at a basic level. Security-wise, the site uses HTTPS and a cookie consent mechanism but lacks explicit security headers and published security policies or incident response contacts. Overall, the security posture is solid but could be improved by implementing additional security headers, publishing a security policy, and establishing a vulnerability disclosure process. The domain WHOIS data aligns well with the business claims, supporting legitimacy. The website provides comprehensive contact information and privacy compliance features, enhancing trustworthiness. Strategic recommendations include enhancing security headers, publishing incident response and security policies, improving accessibility, and maintaining regular audits of third-party scripts to ensure ongoing security and compliance.

25
48
17
70
77
75
100
industrialventilationmanufacturingventilationsolutionssmokecontrolairquality+2 more
Bootstrap 5.2.3Font Awesome 6.5.1Google Tag ManagerGoogle Analytics (gtag.js)+5

Partner Domains:

www.sodeca.com
subsidiary
www.sodeca.es
subsidiary

+3 more partners

2025-06-27T10:51:54.837Z
gwpo-gwp.org favicon

Global Water Partnership Organisation Gwpo

gwpo-gwp.org

61
Non-profitSwedenmediumMEDIUM

The Global Water Partnership Organisation (GWPO) operates as a global action network focused on advancing water governance and climate-resilient investments to promote sustainability and equity. The website presents basic information about the organization's mission and target audience, primarily stakeholders interested in water governance and climate resilience. The business model is that of a non-profit global network with a medium organizational size and a founding year indicated as 2025, which appears inconsistent with the organization's global positioning. Technically, the website is built using the Weblium platform, employing standard web technologies such as HTML5, CSS, and JavaScript. Hosting is provided by Loopia, with no advanced frameworks or analytics tools detected. The site demonstrates moderate performance and good mobile optimization but lacks advanced SEO and accessibility features. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which are important for enhancing domain and web security. There is no visible security policy, incident response information, or vulnerability disclosure mechanisms. The WHOIS data raises concerns due to a domain creation date set in the future (2025), which is unusual and undermines trust in the domain's legitimacy. Overall, the website provides basic content and functionality but lacks critical privacy, security, and compliance features. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing privacy and cookie policies, and clarifying domain registration details to improve trustworthiness and compliance.

75
53
25
60
62
60
100
watergovernanceclimateresiliencenon-profitglobalnetworksustainability
Weblium website builderJavaScriptCSSHTML5
2025-06-27T09:49:34.179Z
F

Foundation of Lääne County

linnuriik.ee

43
OtherEstoniasmallHIGH

The website linnuriik.ee serves as an informational and promotional platform focused on birdwatching and nature tourism in Matsalu National Park, Estonia. It provides detailed descriptions of bird species, observation towers, hiking trails, and virtual tours, targeting nature enthusiasts and tourists interested in the region. The site is operated by the Foundation of Lääne County and funded by the European Regional Development Fund, indicating a regional public interest focus. Technically, the website is built on WordPress using a modern tech stack including popular plugins like Yoast SEO, WPBakery Page Builder, and Slider Revolution. The site is hosted under the registrar Zone Media OÜ, an Estonian entity, with HTTPS enabled and good SEO practices implemented. Mobile optimization and accessibility are adequate, though some improvements could be made. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks DNSSEC and important security headers, and does not publish explicit security or incident response policies. Privacy compliance is weak due to the absence of privacy and cookie policies or consent mechanisms, which is a notable gap given GDPR requirements. Overall, the website is a well-maintained regional informational resource with good business credibility but requires enhancements in privacy compliance and security best practices to improve trust and regulatory adherence.

15
10
17
70
72
60
20
birdwatchingnatureestoniamatsalunationalpark+2 more
WordPressPHPJavaScriptjQuery+6
2025-06-27T09:49:29.171Z
eusa.eu favicon

European University Sports Association

eusa.eu

47
EducationSloveniamediumHIGH

The European University Sports Association (EUSA) is a well-established non-profit organization dedicated to promoting and organizing university sports across Europe. The website reflects a professional and comprehensive platform showcasing their events, projects, partnerships, and media presence. Their market position is strong, supported by numerous official partnerships with European institutions and sports federations. The target audience includes European universities, student athletes, and sports organizations. The business model revolves around organizing championships, games, and educational projects, supported by sponsorships and partnerships. Technically, the website is built on the Lytee CMS platform, utilizing modern JavaScript libraries such as Slick Slider and lazy loading for performance optimization. The site is mobile-optimized, accessible, and SEO-friendly, with proper meta tags and structured data. The presence of Google and Microsoft site verification tags indicates attention to search engine indexing and webmaster tools. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms compliant with GDPR. However, there is a lack of explicit security policies, incident response information, and security headers which could enhance the security posture. No vulnerabilities or exposed sensitive data were detected in the content. The WHOIS data is privacy-protected as per EURid policies, which is justified for this type of organization. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. Strategic recommendations include publishing security and incident response policies, adding security headers, and providing a vulnerability disclosure channel to further strengthen trust and security maturity.

30
95
2
-
62
-
100
universitysportseuropeansportsassociationnon-profiteducationsportsevents+3 more
JavaScriptSlick SliderLazyLoadGoogle Site Verification+1

Partner Domains:

ec.europa.eu
partner
fisu.net
partner

+1 more partners

2025-06-27T09:47:58.805Z
forsafeworship.org favicon

United Nations Alliance of Civilizations (UNAOC)

forsafeworship.org

58
GovernmentUnited StatessmallMEDIUM

The website forsafeworship.org represents the United Nations Alliance of Civilizations (UNAOC) initiative titled '#forSafeWorship - UN Plan of Action to Safeguard Religious Sites'. It serves as a platform to advocate for the protection and respect of religious sites worldwide, emphasizing peace and harmony. The target audience includes global communities, religious groups, governments, and peace organizations. The site operates as a non-profit advocacy platform under the United Nations umbrella, with a small organizational size and a founding year of 2020. Technically, the website is built on WordPress using the Divi theme and Yoast SEO plugin, hosted on Quadranet servers. It employs modern web technologies such as JavaScript and jQuery, and the site is moderately optimized for performance and mobile responsiveness. SEO practices are good, with comprehensive metadata and structured data enhancing search visibility. From a security perspective, the site uses HTTPS with a good SSL configuration and domain status protections. However, it lacks several security headers and does not provide explicit security or incident response policies. No vulnerability disclosure or security.txt files are present, and privacy compliance is minimal due to the absence of privacy and cookie policies. The domain registration is privacy protected but consistent with the nature of a UN-affiliated non-profit. Overall, the website is trustworthy and professional in its presentation and content but would benefit from enhanced privacy compliance, security headers, and explicit contact information to improve user trust and regulatory adherence.

30
35
17
60
72
75
100
unreligioussitessafeworshipnon-profitadvocacy+2 more
JavaScriptjQueryYoast SEO pluginDivi Theme+1
2025-06-27T09:45:33.465Z
anoc.tv favicon

ANOC Association of National Olympic Committees

anoc.tv

55
GovernmentSwitzerlandmediumMEDIUM

The ANOC.tv website serves as the official digital platform for the Association of National Olympic Committees, a Swiss-based non-profit organization dedicated to supporting and promoting Olympic committees worldwide. The site offers comprehensive coverage of sporting events, news, and specialized programs such as sustainability workshops, targeting Olympic committees, sports professionals, and enthusiasts. The business model focuses on media dissemination and informational services within the Olympic sports ecosystem. Technically, the website leverages modern web technologies including React, Google Tag Manager, Stripe.js, and push notification SDKs, indicating a mature digital infrastructure. The site is mobile-optimized with good design quality and user experience, although some accessibility and SEO aspects could be enhanced. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks advanced security headers and explicit security policies or incident response contacts. WHOIS data is transparent and consistent with the organization's identity, supporting domain legitimacy. Overall, the website presents a professional and trustworthy front with moderate privacy compliance and security posture. Strategic improvements in privacy policy publication, security headers, and incident response transparency would enhance compliance and user trust.

15
53
2
60
72
60
100
sportsolympicsnon-profitmediaevents+2 more
JavaScriptGoogle Tag ManagerStripe.jsWonderPush SDK+2
2025-06-27T09:44:48.308Z
1220.ee favicon

AS Arstikeskus Confido

1220.ee

45
HealthcareEstoniamediumHIGH

The website 1220.ee serves as the official Estonian health advice line platform, providing telephone and web chat medical consultation services. It targets Estonian residents and callers abroad, offering guidance on medical issues, prescription renewals, and emergency care decisions. The service operates under the auspices of the Estonian Health Insurance Fund (Tervisekassa) and collaborates with healthcare providers and pharmacies. The site is professionally designed with consistent branding and clear navigation, supporting multiple languages (Estonian and Russian). Technical infrastructure includes modern JavaScript libraries, CDN-hosted resources, and integration with Facebook SDK and Google Tag Manager for analytics and marketing purposes. The site uses HTTPS and shows no signs of blocking or WAF interference, indicating good accessibility and security basics. However, it lacks visible privacy and cookie policies, which impacts GDPR compliance and privacy posture. Contact information is limited to phone numbers with no email or physical address disclosed. No forms collecting personal data are present on the main page, reducing immediate data protection concerns. Overall, the site demonstrates a solid business credibility and technical foundation but requires improvements in privacy compliance and security policy transparency.

55
10
2
70
62
60
20
healthcaremedicaladvicephoneconsultationestoniapublichealth
JavaScriptjQuery (implied by slick-carousel usage)Slick CarouselFacebook SDK+1
2025-06-27T09:43:48.170Z
andmik.ee favicon

Andmik

andmik.ee

45
GovernmentEstoniasmallHIGH

Andmik is a specialized platform focused on providing data visualization and budget tracking services for Estonian municipalities. The website presents detailed geographic and demographic data for various local governments, targeting municipal officials and stakeholders. The platform leverages modern web technologies including Vue.js and Leaflet for interactive maps, supported by Google Analytics and Tag Manager for user tracking. The domain is registered with a reputable Estonian registrar, Zone Media OÜ, and was created in 2021, aligning with the platform's apparent recent launch. Technically, the website employs a modern JavaScript framework and mapping libraries, ensuring a responsive and interactive user experience. However, there is room for improvement in accessibility and SEO optimization. Security-wise, the site lacks visible security headers and does not enable DNSSEC, which could be enhanced to improve overall security posture. Privacy compliance is weak, with no visible privacy or cookie policies, and no consent mechanisms, which is a significant gap given the use of tracking technologies. Overall, the website is functional and professionally designed but requires improvements in privacy compliance, security best practices, and contact transparency to enhance trust and regulatory adherence. Strategic recommendations include implementing comprehensive privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact and incident response information.

30
10
2
40
67
45
100
estoniamunicipalitydatavisualizationgovernmentbudget+1 more
JavaScriptVue.jsLeafletGoogle Analytics+1
2025-06-27T08:41:40.132Z
S

SoftExpert OÜ

itx.ee

53
TechnologyEstoniasmallMEDIUM

SoftExpert OÜ is an Estonian IT company specializing in the development and maintenance of mission-critical and complex web-based systems. Established since 2000, it has contributed to several major Estonian web services such as CV-Online and various photo and video platforms. The company offers a broad range of IT services including consulting, system creation, and maintenance, targeting Estonian businesses requiring reliable IT partnerships. The website content is primarily in Estonian with an English option, reflecting a local market focus. Technically, the website uses legacy technologies such as PHP, Perl, and C, hosted on Unix/Linux platforms. The site lacks modern frameworks and shows basic SEO and accessibility features. Performance is moderate, but mobile optimization is poor. The site includes Google Analytics and Tag Manager scripts for user tracking but lacks visible privacy or cookie policies, which is a compliance gap. From a security perspective, no HTTPS confirmation or security headers were detected in the provided data, indicating potential vulnerabilities. No forms or input fields are present, reducing attack surface but also limiting user interaction. The WHOIS data is consistent and transparent, with a domain age appropriate for the business history. Overall, the security posture is moderate but requires improvements in SSL/TLS implementation and security headers. The overall risk is moderate with recommendations to implement HTTPS, add privacy and cookie policies, improve mobile responsiveness, and enhance security headers. These steps will improve compliance, user trust, and security resilience.

15
10
17
85
72
65
100
webdevelopmentitservicesestoniatechnologysoftware
PHPPerlJavaScriptUnix/Linux+2
2025-06-27T08:41:20.096Z
V

Valgamaa Arenguagentuur

arenguagentuur.ee

43
GovernmentEstoniasmallHIGH

Valgamaa Arenguagentuur is a regional development agency based in Estonia, focused on fostering cooperation among local development organizations and providing professional support services to businesses, non-profits, and local governments. The agency aims to enhance the economic and living environment of Valgamaa county, positioning itself as a key facilitator in regional development with a focus on entrepreneurship, education, and community welfare. The website reflects this mission with clear service offerings and active engagement channels. Technically, the website employs modern frontend technologies including Tailwind CSS, Swiper.js, and Plyr.js, managed through the Greativ CMS platform. It integrates analytics and social media tools such as Google Analytics and Facebook SDK, indicating a moderate level of digital maturity. The site is mobile-optimized and provides a good user experience with clear navigation and professional design. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks important security headers and does not provide visible privacy or cookie policies, which are critical for GDPR compliance. There is no incident response or vulnerability disclosure information, which could be improved to enhance trust and security posture. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices to reduce risk and improve user trust.

30
10
17
60
72
60
20
regionaldevelopmententrepreneursupportnon-profiteducationgovernment+1 more
JavaScriptTailwind CSSSwiper.jsPlyr.js+2
2025-06-27T08:36:19.180Z
A

Airwave OÜ

airwave.ee

44
EnergyEstoniamediumHIGH

Airwave OÜ is a well-established Estonian company specializing in the import and wholesale of heating, ventilation, and air conditioning (HVAC) equipment, serving primarily the Baltic region and Finland since 1999. The company positions itself as one of the largest HVAC importers and wholesalers in the Baltics, offering a broad range of products including heat pumps, ventilation systems, and climate control devices. Their business model focuses on wholesale distribution supported by professional sales and after-sales services, catering to both commercial and residential customers. Technically, the website is built on the Odoo CMS platform, leveraging modern web technologies such as Bootstrap and FontAwesome for UI components. The site demonstrates good mobile optimization and SEO practices, with a clear navigation structure and professional design. Performance is moderate, and accessibility is basic but functional. The absence of advanced analytics or tracking scripts suggests a minimal user tracking approach. From a security perspective, the website enforces HTTPS with a valid SSL configuration and includes CSRF tokens in its scripts, indicating awareness of basic web security practices. However, it lacks several security headers and does not publicly disclose security policies or incident response procedures. There is no visible cookie consent mechanism, which may impact GDPR compliance. The presence of a privacy policy and terms of service pages indicates some level of compliance and transparency. Overall, Airwave OÜ's website reflects a credible and professional business with a solid market presence in the HVAC sector. Security posture is adequate but could be improved with enhanced headers, explicit policies, and cookie consent. The site is trustworthy with consistent WHOIS data and clear contact information. Strategic improvements in privacy compliance and security transparency would further strengthen their digital maturity and customer trust.

85
10
2
-
72
-
100
hvacheatingventilationclimatecontrolenergy+2 more
OdooFontAwesomeBootstrapJavaScript

Partner Domains:

daikin.ee
partner
midea.ee
partner

+3 more partners

2025-06-27T08:34:38.941Z