Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 7 of 43|Showing 301-350 of 2124
tangible-festival.org favicon

Tangible design festival

tangible-festival.org

44
OtherFrancesmallHIGH

The Tangible design festival website represents a cultural event based in Marseille, France, dedicated to various forms of design expression. The festival is scheduled for October 2025 and features exhibitions, workshops, and meetings across multiple local venues. The business model centers on event organization and cultural promotion within the local design community, targeting a general audience interested in contemporary design and art. Technically, the website is built with modern web standards including HTML, CSS, and JavaScript, and uses HTTPS with hosting provided by OVH sas. The site includes minimal external dependencies, notably the Umami analytics platform for visitor tracking. The site is mobile optimized and accessible with good SEO practices, but lacks advanced frameworks or CMS platforms. From a security perspective, the site benefits from HTTPS and domain status protections but lacks DNSSEC and security headers, which are recommended for enhanced security. No privacy or cookie policies are present, and no contact or incident response information is provided, indicating gaps in compliance and user trust features. The WHOIS data shows a suspicious future domain creation date, which undermines domain legitimacy and trustworthiness. Overall, the website is functional and professionally designed for its purpose but requires improvements in privacy compliance, security hardening, and transparency to enhance trust and regulatory adherence.

15
50
17
70
52
75
-
designfestivalmarseillecultureart+2 more
JavaScriptCSSHTMLWebManifest
2025-10-19T23:26:14.006Z
midnightcarnival.com favicon

Midnight Carnival, LLC

midnightcarnival.com

54
OtherN/asmallMEDIUM

Midnight Carnival, LLC operates a niche adult affiliate program specializing in fetish and erotica content. The website serves as a platform to recruit and support affiliate webmasters with a 50/50 payout model, focusing on high-quality adult promotional content. The business has been established since 2004, with a consistent domain registration and a clear market position within adult affiliate marketing. The website content is primarily static with some outdated technologies such as Flash, and it lacks modern web features like mobile optimization and advanced SEO. Technically, the site uses basic HTML, CSS, and JavaScript with no detected CMS or modern frameworks. Hosting is provided by MojoHost, as indicated by the nameservers. The site lacks HTTPS enforcement and security headers, which are critical for protecting user data and ensuring trust. There is no visible cookie consent mechanism or GDPR compliance indicators, which may expose the business to regulatory risks. From a security perspective, the site shows minimal security best practices, with no DNSSEC enabled and use of deprecated Flash content. The login form uses POST but no further security controls are evident. The WHOIS data is consistent and supports the legitimacy of the business, with no privacy protection masking registrant details. Overall, the security posture is weak and requires significant improvements. The website is clearly adult-oriented with explicit keywords and content targeting adults-only audiences. No social media or modern analytics tools are detected, indicating a low level of digital maturity. Strategic recommendations include enabling HTTPS, implementing security headers, removing Flash content, adding privacy and cookie policies, and improving mobile and accessibility features to enhance user experience and compliance.

20
53
2
60
62
75
100
adultaffiliatefetishbdsmerotica+1 more
HTMLCSSJavaScriptFlash (deprecated)
2025-10-19T21:08:45.847Z
T

TeamIn

teamin.cz

48
TechnologyCzech RepublicsmallHIGH

TeamIn is a Czech Republic-based software solution focused on providing a team information system tailored for small businesses. The platform facilitates project management, workflow control, and performance tracking, aiming to simplify communication and task management within small firms. The website presents a clear business focus with professional content and consistent branding, targeting small companies needing efficient project and workflow management tools. Technically, the website is built using standard web technologies including HTML, CSS, and JavaScript, with Google Analytics integrated for visitor tracking. The site shows moderate performance and basic mobile optimization but lacks advanced frameworks or CMS detection. Security measures appear minimal, with no visible HTTPS enforcement or security headers, and no privacy or cookie policies published, indicating gaps in compliance and security best practices. From a security perspective, the absence of WHOIS registration data raises concerns about domain legitimacy and ownership transparency. The lack of privacy and cookie policies further impacts GDPR compliance. While the site content is safe and business-appropriate, the security posture is weak, and improvements are needed to enhance trust and protect user data. Overall, the site is functional and informative but requires significant enhancements in security, privacy compliance, and domain legitimacy to improve its risk profile and business credibility.

15
10
2
55
67
80
100
projectmanagementworkflowsmallbusinessteamcollaborationczechrepublic
JavaScriptCSSHTML
2025-10-19T07:47:49.634Z
C

capline.org

capline.org

57
TransportationFrancesmallMEDIUM

The website capline.org is a French digital platform dedicated to the registration of nautical races. It centralizes race registrations and allows participants to upload and reuse necessary documents for their participation. The platform targets participants and organizers of nautical races, positioning itself as a niche service within the transportation sector. The domain was registered in April 2023, consistent with the business's recent establishment. Technically, the website uses modern web technologies including JavaScript and Bootstrap for responsive design. It is hosted by Gandi SAS and served over HTTPS, ensuring basic security. However, the site lacks advanced security headers and DNSSEC, which could be improved to enhance security posture. The website is moderately optimized for mobile devices and performance is average. From a security perspective, the site has a basic security posture with HTTPS enabled but missing important security headers and no DNSSEC. There are no privacy or cookie policies present, which is a compliance gap especially under GDPR. No contact information or incident response details are provided, limiting transparency and user trust. No analytics or tracking scripts were detected, indicating minimal user tracking. Overall, the website is functional and serves its business purpose but requires improvements in privacy compliance, security best practices, and contact transparency to increase trustworthiness and regulatory compliance. Strategic recommendations include adding privacy and cookie policies, implementing security headers, enabling DNSSEC, and providing clear contact and incident response information.

30
50
2
60
75
70
100
nauticalregistrationsportsdigitalplatformfrance
JavaScriptCSSHTML
2025-10-18T20:47:02.465Z
vop-db.cz favicon

Výrobní a opravárenský podnik Dolní Bousov, spol. s.r.o.

vop-db.cz

53
ManufacturingCzech RepublicsmallMEDIUM

Výrobní a opravárenský podnik Dolní Bousov, spol. s.r.o. is a small Czech manufacturing company specializing in the production of mobile flood barriers, barricade spikes, locksmith services, metalworking, machining, and repair and servicing of power generators. The website presents basic business information primarily in Czech, targeting local or regional customers in need of manufacturing and repair services. The site content is relevant but basic and somewhat outdated, with the last update noted in 2012. The company appears to have a stable domain registration dating back to 2004, consistent with its business history. Technically, the website is built with simple HTML, CSS, and minimal JavaScript, using Google Fonts for typography. There is no evidence of modern CMS platforms or frameworks, and no analytics or tracking tools are detected. The site lacks mobile optimization and accessibility features, and SEO practices are basic. Hosting is managed via the registrar REG-INTERNET-CZ with name servers at forpsi.net and forpsi.it. From a security perspective, the website lacks HTTPS enforcement and security headers, which are critical for protecting user data and ensuring secure communications. No privacy, cookie, or terms of service policies are published, indicating poor privacy compliance. There is no visible incident response or vulnerability disclosure information, and no contact details such as emails or phone numbers are explicitly provided on the analyzed page. These factors reduce the overall security posture and trustworthiness of the site. Overall, the website scores moderately due to its basic content and business credibility but is penalized for lacking essential security and privacy features. Strategic improvements in HTTPS implementation, security headers, privacy policies, and contact information publication are recommended to enhance trust and compliance.

30
10
17
65
67
85
100
manufacturingrepairmetalworkingfloodprotectionczechrepublic
HTMLCSSJavaScriptGoogle Fonts (Bitter)
2025-10-18T19:39:28.608Z
halfdanj.dk favicon

Jonas Jongejan

halfdanj.dk

54
TechnologyDenmarksmallMEDIUM

The website halfdanj.dk is a personal professional portfolio for Jonas Jongejan, a Creative Technologist and Fullstack Software Engineer with a history of working at Google Creative Lab and Danish Broadcasting Corporation. The site showcases a broad range of creative and technical projects, targeting technology enthusiasts and professionals in creative technology fields. The business model is primarily personal branding and portfolio presentation, with a niche market position focused on innovative technology and media projects. Technically, the website is built using modern web technologies including SvelteKit and JavaScript, with good mobile optimization and fast performance. It uses Google Analytics for visitor tracking but lacks cookie consent mechanisms and privacy policies, which impacts privacy compliance. The site is well-structured, visually professional, and provides clear navigation and relevant content. From a security perspective, the site uses HTTPS but lacks DNSSEC and important security headers, which are recommended for enhanced protection. No vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms a long-standing domain consistent with the professional history presented. However, the absence of privacy and cookie policies and security headers are notable compliance and security gaps. Overall, the website is trustworthy and professional but would benefit from improved privacy compliance and enhanced security configurations to align with best practices and regulatory requirements.

15
10
2
70
95
60
100
portfoliocreativetechnologysoftwareengineeringgooglecreativelabinteractiveinstallations
SvelteKitJavaScriptCSSHTML+1
2025-10-18T16:17:25.959Z
R

Robert Forster

robertforster.net

59
OtherN/asmallMEDIUM

The website robertforster.net serves as a straightforward promotional platform for the artist Robert Forster, featuring sections such as news, recordings, performances, writing, biography, videos, and links. The site highlights the album 'Strawberries' released in 2025, targeting fans and music enthusiasts. The business model is informational and promotional, with a niche market position focused on the artist's audience. The website is small in scale and has been online since 2006, consistent with the domain registration data. Technically, the site is built with basic HTML and CSS without advanced frameworks or CMS detected. Hosting is likely through the registrar 123-Reg Limited with DNS services from ui-dns providers. The site shows moderate performance and basic mobile optimization but lacks modern SEO and accessibility features. No analytics or marketing tools are present, indicating minimal digital maturity. From a security perspective, the site lacks HTTPS and security headers information is unavailable, suggesting potential gaps in security best practices. No privacy, cookie, or terms of service policies are present, and no contact or incident response information is provided. The domain registration is consistent and legitimate, with no suspicious patterns detected. Overall, the security posture is basic with room for improvement. The overall risk is low given the non-sensitive nature of the content, but the site would benefit from implementing HTTPS, security headers, privacy policies, and contact information to enhance trust and compliance. Strategic recommendations include enabling DNSSEC, adding privacy and cookie policies, improving security headers, and providing clear contact channels for incident response.

15
50
17
70
100
60
100
musicartistrobertforsterstrawberriespromotional
HTMLCSS
2025-10-18T14:44:11.694Z
supportscss.dev favicon

SupportsCSS / Stephanie Eckles

supportscss.dev

59
TechnologyN/asmallMEDIUM

SupportsCSS is a specialized open-source JavaScript library focused on detecting modern CSS feature support in browsers, enabling developers to apply progressive enhancement strategies effectively. The website serves as documentation, demo, and installation guide for the library, targeting front-end developers and web professionals. The site is authored by Stephanie Eckles, a recognized figure in the front-end development community, enhancing its credibility. Technically, the website is built using the Eleventy static site generator and employs modern web standards including asynchronous JavaScript loading and font preloading for performance. It integrates Plausible analytics for privacy-conscious user tracking. The site is well-structured, mobile-optimized, and accessible, with clear navigation and professional design. From a security perspective, the site does not expose forms or sensitive data, reducing attack surface. However, it lacks explicit security headers and formal privacy or cookie policies, which are recommended for compliance and trust. No WAF or blocking mechanisms are detected, and no suspicious content is present. Overall, the security posture is adequate but could be improved with standard best practices. The overall risk is low given the nature of the site as an informational and open-source project resource. Strategic recommendations include adding privacy and cookie policies, implementing security headers, and providing contact channels for security incidents to enhance trust and compliance.

30
50
2
60
75
75
100
cssfeaturedetectionjavascriptwebdevelopmentopensource
JavaScriptCSSHTML
2025-10-18T11:10:20.605Z
O

Obchodný register Slovenskej Republiky

orsr.sk

25
GovernmentSlovakialargeCRITICAL

The website www.orsr.sk serves as the official online business register for the Slovak Republic, operated under the Ministry of Justice. It provides authoritative access to company registration data, including search capabilities by company name, identification number, address, and other criteria. The site targets Slovak businesses, legal entities, and the general public seeking official business information. Its market position is that of a government-operated essential public service with no direct commercial competition. Technically, the website is built with basic HTML and CSS, lacking modern frameworks or CMS platforms. It shows moderate performance but poor mobile optimization and accessibility. There is no evidence of advanced analytics, tracking, or advertising technologies. The site lacks HTTPS confirmation in the provided data and does not display privacy or cookie policies, which are critical for compliance. From a security perspective, the site does not show security headers or incident response contacts, and no vulnerability disclosures or data protection officer information is present. The WHOIS data confirms the domain is legitimately registered to the Slovak Ministry of Justice, reinforcing trustworthiness. However, the absence of HTTPS and privacy policies are notable gaps. Overall, the site is a trustworthy government resource with basic technical implementation and limited security and privacy features. Strategic improvements in HTTPS deployment, privacy compliance, and mobile usability would enhance its security posture and user experience.

-
-
-
40
-
-
100
governmentbusinessregisterslovakiaofficialpublicservice
HTMLCSS
2025-10-18T03:54:49.259Z
A

Académie royale de langue et de littérature françaises de Belgique

arllfb.be

36
OtherBelgiumsmallHIGH

The Académie royale de langue et de littérature françaises de Belgique (ARLLFB) is a prestigious cultural and literary institution founded in 1920, dedicated to promoting French language and literature in Belgium. The website serves as an informational portal highlighting its history, members, literary prizes, publications, and events. It targets academics, writers, philologists, and the francophone literary community. The institution holds a respected position in the cultural sector with a small organizational size and a focus on non-commercial activities. Technically, the website is built using basic HTML, CSS, and JavaScript without modern CMS or frameworks. It lacks mobile optimization and uses an outdated character encoding (iso-8859-1). The site performance is moderate, with basic SEO and accessibility features. There is no evidence of advanced analytics or tracking services. From a security perspective, the site does not enforce HTTPS in the provided data, lacks security headers, and does not publish privacy or cookie policies, indicating compliance and security gaps. No incident response or vulnerability disclosure mechanisms are evident. The WHOIS data aligns well with the institution's identity, supporting legitimacy. Overall, the website is functional and informative but requires significant improvements in security, privacy compliance, and technical modernization to enhance trust and user experience.

15
10
2
60
62
60
20
acadmielittraturefranaisebelgiqueculture+2 more
HTMLCSSJavaScript
2025-10-17T13:01:17.048Z
K

Krajská knihovna Františka Bartoše a Muzeum jihovýchodní Moravy ve Zlíně

frantisekbartos.cz

40
OtherCzech RepublicsmallHIGH

The website frantisekbartos.cz serves as a cultural and educational platform dedicated to the historical figure František Bartoš, a Czech pedagogue, linguist, and ethnographer. It is affiliated with reputable Czech cultural institutions, providing biographical data, bibliographies, galleries, and related literature. The site targets researchers, historians, and the general public interested in Moravian heritage. The business model is non-commercial, focusing on heritage dissemination. Technically, the website is built with basic HTML and CSS, hosted on websupport.cz, and uses Google Analytics for visitor tracking. The site lacks modern CMS or frameworks and shows limited mobile optimization and accessibility features. SEO is basic but includes structured metadata using Dublin Core standards. From a security standpoint, the site uses HTTPS but lacks visible security headers and formal privacy or cookie policies, which impacts compliance with GDPR and other regulations. No forms or contact information are provided, limiting user interaction and incident response capabilities. The domain registration is consistent and legitimate, with a long history supporting trustworthiness. Overall, the website is a modest but legitimate cultural resource with room for improvement in privacy compliance, security hardening, and technical modernization to enhance user experience and trust.

15
10
17
60
62
75
20
educationculturehistorylinguisticsethnography+1 more
HTMLCSSGoogle Analytics (gtag.js)
2025-10-17T03:45:11.788Z
S

SPORTOVNÍ ZPRÁVY - fotbal, hokej, tenis, auto-moto

sportovni-zpravy.cz

46
MediaCzech RepublicsmallHIGH

SPORTOVNÍ ZPRÁVY is a Czech sports news aggregation website focusing on football, hockey, tennis, and auto-moto news. It aggregates and links to external sports articles from various reputable Czech sports news sources. The website has been operational since 2007, indicating a stable presence in the Czech sports media niche. The business model appears to be content aggregation supported by advertising revenue through embedded iframes and tracking pixels. Technically, the website uses basic HTML and CSS with iframes for advertising and external content. The site lacks modern web technologies, mobile optimization, and accessibility features. Notably, the website does not use HTTPS, which is a significant security and trust concern. The absence of privacy, cookie, and terms of service policies further indicates limited compliance with modern web standards and regulations. From a security perspective, the site shows minimal security best practices. There are no security headers, no visible incident response or vulnerability disclosure policies, and no secure form handling. The use of HTTP for embedded content increases the risk of mixed content issues. The WHOIS data is consistent and supports the legitimacy of the domain, but the lack of HTTPS and privacy policies reduces overall trust. Overall, the website is functional for basic sports news aggregation but requires significant improvements in security, privacy compliance, and technical modernization to meet current standards and user expectations.

15
25
2
80
85
85
20
sportsnewsczechfootballhockey+2 more
HTMLCSSiframes
2025-10-16T19:40:12.271Z
N

Nameshield

perf1.com

66
TechnologyN/amediumMEDIUM

The website perf1.com is a parked domain page managed via Nameshield, a company specializing in brand protection, cybersecurity, and domain name management. The site itself contains minimal content, primarily linking to Nameshield's main services and offering a domain availability search form. There is no active business content or product offering on this domain. The WHOIS data query returned no match, indicating the domain may be unregistered, privacy protected, or in a transitional state, which limits the ability to verify registrant details or domain age. Technically, the site uses basic HTML, CSS, and JavaScript with no detected CMS or advanced frameworks. The page is simple and moderately optimized for mobile but lacks modern SEO and accessibility features. No HTTPS or security headers were detected, which is a significant security shortfall. No analytics or tracking scripts are present, indicating minimal data collection or user tracking. From a security perspective, the absence of HTTPS and security policies, combined with no contact or incident response information, suggests a low security posture. The domain's parked status and lack of WHOIS data reduce trust and legitimacy. No vulnerabilities or malicious indicators were found, but the site does not follow best practices for security or privacy compliance. Overall, the domain appears to be a placeholder with no active business operations. Strategic recommendations include securing the domain with HTTPS, adding privacy and cookie policies, providing contact and security incident response information, and improving technical SEO and accessibility to enhance trust and compliance.

95
40
2
98
67
90
100
domainparkingbrandprotectionnameshieldcybersecuritydomainmanagement
HTMLCSSJavaScript
2025-10-16T18:39:15.209Z
bubileg.cz favicon

Michal Bubílek

bubileg.cz

8
TechnologyCzech RepublicsmallCRITICAL

The website www.bubileg.cz serves as a personal professional portfolio for Michal Bubílek, highlighting his curriculum vitae, work experience, projects, education, and favored technologies. It targets potential employers, collaborators, and professional contacts interested in his skills and services such as teaching, programming, graphic design, photography, and web development. The site is modest in scale, representing an individual professional rather than a corporate entity. Technically, the website employs a custom CMS and uses a technology stack including HTML, CSS (SASS), JavaScript, Python, PHP, and other web technologies. The site is moderately optimized for performance and mobile devices, with basic accessibility and SEO features. However, no modern frameworks or third-party CMS platforms are detected. From a security perspective, the site lacks visible security headers and there is no evidence of HTTPS status from the provided data. Privacy and cookie policies are absent, and no incident response or security contact information is provided. The WHOIS data is missing, which reduces trustworthiness and raises questions about domain registration transparency. Overall, the website is functional and professional as a personal portfolio but requires improvements in security posture, privacy compliance, and domain transparency to enhance trust and reduce risk.

-
-
-
-
-
-
-
personalportfoliotechnologyeducationprogrammingcurriculumvitae
HTMLCSS (SASS)JavaScriptPython+5
2025-10-16T16:09:23.811Z
E

EdiWeb

ediweb.eu

54
TechnologyN/asmallMEDIUM

The website ediweb.eu/edi/ serves as an Electronic Data Interchange (EDI) platform, primarily targeting business users who require secure document exchange services. The site features a login form for authenticated access and a news iframe for updates, indicating a B2B service model. The business appears to be small-scale with a focus on technology services related to EDI, though detailed company information and market positioning are not publicly disclosed. From a technical perspective, the site uses basic HTML, CSS, and JavaScript without modern frameworks or CMS platforms. The design and user experience are functional but basic, with limited mobile optimization and accessibility features. No analytics or advertising technologies are detected, suggesting a minimalistic approach to tracking and marketing. Security posture shows some basic best practices such as password input masking and hidden form fields, but lacks visible security headers and explicit HTTPS confirmation in the provided data. No privacy, cookie, or terms of service policies are found, indicating compliance gaps. No contact or incident response information is publicly available, which may impact trust and user support. Overall, the site is accessible without WAF or blocking mechanisms and contains safe, business-oriented content. However, improvements in security, privacy compliance, and transparency are recommended to enhance trust and operational security.

15
25
17
60
77
80
100
edibusinesslogintechnologyenterprise
JavaScriptHTMLCSS
2025-10-16T12:41:50.538Z
V

Virgin Media

virginmedia.com

59
TelecommunicationsUnited KingdomlargeMEDIUM

Virgin Media operates a dedicated abuse reporting portal at netreport.virginmedia.com, providing a structured form for reporting internet security issues related to their IP addresses and accounts. The site is clearly branded and targets users needing to report abuse, phishing, or security threats. The business is a major UK telecommunications provider with a large customer base. The portal supports reporting various abuse types and provides guidance on child abuse image reporting via the Internet Watch Foundation. The site content is professional but basic, focusing on functionality over design. Technically, the site uses standard HTML, CSS, and JavaScript with no advanced frameworks or CMS detected. The performance and mobile optimization are basic, with no visible analytics or tracking scripts. Security posture is moderate but could be improved; no HTTPS enforcement or security headers were detected in the provided content, and no privacy or cookie policies are linked. The form includes client-side validation and warnings about phishing and abuse reporting. Security-wise, the portal facilitates incident response by providing a contact email for phishing reports and options to report various abuse types. However, the absence of a published security policy or vulnerability disclosure document limits transparency. WHOIS data for the subdomain is unavailable, which is typical for subdomains, but the branding and content align with Virgin Media's official services, supporting legitimacy. Overall, the site is functional for its purpose but would benefit from enhanced security and privacy compliance measures.

20
50
12
70
67
90
100
internetabusesecurityvirginmediaphishingreporting+1 more
HTMLCSSJavaScript
2025-10-16T08:57:29.703Z