Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 7 of 166|Showing 301-350 of 8294
telemundo.com favicon

NBC News

telemundo.com

64
MediaUnited StatesenterpriseMEDIUM

Telemundo is a leading Spanish-language media website operated under the NBC News umbrella, providing comprehensive news coverage, entertainment, and lifestyle content targeted at the Hispanic community in the United States. The site features full episodes of series and shows, along with up-to-date news and multimedia content. Its market position is strong as a major player in Spanish-language broadcasting and digital media. Technically, the website leverages modern web technologies including React and Next.js, with robust video streaming via JWPlayer and integrated advertising and tracking tools such as Taboola and Criteo. The site is well-optimized for mobile and desktop platforms, ensuring a fast and accessible user experience. Security-wise, the site employs HTTPS with strong SSL configurations and security headers, along with cookie consent mechanisms compliant with GDPR. However, explicit security policies and incident response details are not publicly available, representing an area for improvement. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though WHOIS data is unavailable, likely due to privacy protection. Strategic recommendations include publishing detailed security policies, enhancing incident response transparency, and adding a vulnerability disclosure mechanism.

20
100
17
60
52
80
100
newsentertainmentspanishmediatelevision+2 more
ReactNext.jsJWPlayerAdobe Launch+4

Partner Domains:

nbcnews.com
parent
nbcselect.nbcnews.com
subsidiary
2025-11-01T13:14:08.586Z
vocal.media favicon

Vocal

vocal.media

60
MediaN/amediumMEDIUM

Vocal is a digital media platform designed to support, discover, and reward content creators by providing tools for story creation, audience building, and monetization through reads, tips, and challenges. The platform targets creative individuals and readers interested in storytelling and community engagement. It holds a niche position in the media industry focusing on creator empowerment and safe content moderation without intrusive advertising. Technically, Vocal employs a modern web stack including React and Next.js frameworks, supported by a variety of third-party analytics and advertising services such as Google Analytics, Heap Analytics, Facebook Pixel, and TikTok Pixel. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices, though some accessibility features could be enhanced. From a security perspective, the website enforces HTTPS with strong SSL configuration and implements multiple security headers, reflecting a mature security posture. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for further strengthening trust and compliance. Overall, Vocal presents a professional and trustworthy platform with extensive content and community features. The absence of direct contact information and privacy-protected WHOIS data is typical for media platforms and does not detract significantly from its credibility. Strategic improvements in transparency and security communication would enhance its risk profile and user trust.

15
53
17
75
57
80
100
mediacontentcreationstorytellingcreativewritingcommunity+3 more
ReactNext.jsGoogle AnalyticsHeap Analytics+7
2025-11-01T12:28:52.577Z
rovalcomponents.com favicon

Specialized Bicycle Components

rovalcomponents.com

71
TransportationUnited StateslargeMEDIUM

Specialized Bicycle Components operates a comprehensive e-commerce platform focused on bicycles, bike wheels, components, and cycling gear. The company targets a broad audience ranging from professional cyclists to casual riders and commuters. Their market position is strong, supported by a professional website that showcases a wide product range and emphasizes quality and innovation. The website is well-designed, mobile-optimized, and provides clear navigation and rich content, enhancing user experience. Technically, the website leverages modern web technologies including React and Next.js, and integrates third-party marketing and analytics tools such as Klaviyo, Monetate, Affirm, and Klarna. The site employs HTTPS with strong security headers, indicating a good security posture. However, the absence of WHOIS data limits the ability to fully verify domain registration legitimacy. Privacy and cookie policies are present and indicate GDPR compliance, though explicit contact details and security policies are limited. Overall, the website demonstrates a mature digital infrastructure and a solid security foundation, with room for improvement in transparency of domain registration and explicit security incident response information. The risk profile is low given the professional nature of the business and the absence of vulnerabilities or suspicious content.

65
73
17
75
82
75
100
bikescyclinge-commercesportsoutdoor
ReactNext.jsJavaScriptCSS+6

Partner Domains:

affirm.com
partner
klarna.com
partner

+1 more partners

2025-11-01T12:08:16.953Z
L

Lavva Digital Agency

lavva.pt

63
TechnologyPortugalsmallMEDIUM

Lavva Digital Agency is a Portugal-based creative digital agency specializing in branding, website design, and digital activation services. Established in 2015, the agency has built a strong market position with a portfolio of award-winning projects and a focus on delivering innovative digital experiences to ambitious companies. Their services include brand identity, UX design, web development, marketing consultancy, and SEO, targeting a diverse range of industries including technology, energy, hospitality, and healthcare. Technically, the website is built on a modern stack using Next.js and React, optimized for performance and mobile responsiveness. The site employs Google reCAPTCHA v3 for form security and includes a cookie consent mechanism, reflecting good privacy compliance practices. SEO and accessibility features are well implemented, contributing to a professional user experience. From a security perspective, the site uses HTTPS with a strong SSL configuration and implements best practices such as secure forms and consent management. However, explicit security headers and a public security policy or incident response contacts are absent, representing areas for improvement. No vulnerabilities or suspicious activities were detected. Overall, Lavva Digital Agency presents a trustworthy and professional online presence with strong business credibility and technical maturity. Strategic enhancements in security policy transparency and additional security headers would further strengthen their security posture.

95
68
17
70
72
60
40
agencydigitalwebsitebrandingmarketing
ReactNext.jsJavaScriptCSS+1
2025-11-01T12:01:53.536Z
fedigroups.social favicon

FediGroups

fedigroups.social

61
TechnologyN/asmallMEDIUM

FediGroups operates a closed Mastodon server under the domain fedigroups.social, providing decentralized social media services within the fediverse ecosystem. The website serves as an informational about page, highlighting the server's administration and user base. The service targets users interested in federated social networking, leveraging the open-source Mastodon platform. The business model is focused on community-driven social media hosting rather than commercial advertising or broad public registration. Technically, the website is built on Mastodon version 4.4.4, utilizing modern web technologies including React and ES modules. The site is mobile-optimized and presents a clean, professional design with good navigation. However, some technical improvements could enhance accessibility and SEO. The hosting provider and domain registration details are not disclosed, and the WHOIS data is unavailable due to TLD restrictions. From a security perspective, the site enforces HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks important security headers and cookie consent mechanisms, which are recommended for improved security posture and privacy compliance. No incident response or security policy information is published, which could be enhanced to build user trust. The privacy policy is present but basic, and no terms of service or vulnerability disclosure policies are found. Overall, the website is safe, professional, and trustworthy for its intended audience, with moderate technical and security maturity. Strategic recommendations include implementing security headers, publishing terms of service and security policies, adding cookie consent for GDPR compliance, and improving accessibility features to strengthen the platform's credibility and user confidence.

90
58
17
70
72
60
40
mastodonfediversedecentralizedsocialmediafederationsocialnetwork
Mastodon 4.4.4ReactJavaScript ES ModulesSVG+2
2025-11-01T12:00:06.501Z
kotlinlang.org favicon

JetBrains

kotlinlang.org

72
TechnologyN/alargeMEDIUM

Kotlinlang.org is the official website for the Kotlin programming language, developed and maintained by JetBrains. The site serves as a comprehensive resource for developers interested in Kotlin, offering documentation, code examples, API references, and community engagement. It positions Kotlin as a concise, multiplatform language suitable for server-side, mobile, web, and desktop applications, reflecting JetBrains' strong market presence in developer tools and programming languages. The website is professionally designed with excellent content quality and clear navigation, targeting developers and enterprises leveraging JVM and multiplatform technologies. Technically, the site employs modern web frameworks such as Next.js and React, hosted on AWS infrastructure. It integrates analytics and marketing tools like Google Tag Manager and Optimizely, alongside a cookie consent mechanism compliant with GDPR. The site demonstrates good performance, mobile optimization, and accessibility standards, reflecting a mature digital infrastructure. From a security perspective, the website enforces HTTPS with strong domain registration protections, including clientDeleteProhibited and clientTransferProhibited statuses. While DNSSEC is not enabled, the overall SSL configuration and security headers indicate a solid security posture. However, explicit security policies and incident response contacts are not publicly available, suggesting room for improvement in transparency and vulnerability management. Overall, kotlinlang.org is a trustworthy, professional, and well-maintained platform that effectively supports the Kotlin developer community. Strategic recommendations include enabling DNSSEC, publishing a dedicated security policy, and providing clear incident response contacts to enhance security transparency and compliance.

40
83
17
80
82
90
100
programmingkotlinjetbrainsdevelopermultiplatform+2 more
Next.jsReactGoogle Tag ManagerOptimizely+2
2025-11-01T11:31:45.203Z
forcepoint.com favicon

Forcepoint

forcepoint.com

75
TechnologyUnited StatesenterpriseMEDIUM

Forcepoint is a leading enterprise cybersecurity company specializing in data security and cloud security solutions. The company serves over 10,000 customers globally, including government agencies and large enterprises, providing advanced protection for data across cloud and network environments. Their market position is strong, supported by recognized certifications such as ISO 27001, SOC 2, and FedRAMP, reflecting a commitment to security and compliance. The website clearly communicates their value proposition and key services, targeting security professionals and enterprise clients. Technically, the website is built on modern frameworks including Next.js and React, hosted on Pantheon with robust performance and mobile optimization. The site integrates advanced analytics and marketing tools such as Visual Website Optimizer and Google Analytics, enabling detailed user behavior tracking and optimization. Privacy and cookie policies are comprehensive and GDPR compliant, with active consent mechanisms implemented. From a security perspective, Forcepoint demonstrates strong security posture with HTTPS enforcement, security headers, and published security policies. The presence of incident response contacts and vulnerability disclosure programs further enhance trust. No critical vulnerabilities or suspicious content were detected. However, the WHOIS data is unavailable or protected, which slightly reduces transparency but does not detract significantly from overall legitimacy. Overall, Forcepoint's website reflects a mature, professional cybersecurity provider with strong technical and security foundations. Recommendations include maintaining up-to-date third-party libraries, enhancing transparency on data retention, and continuing rigorous security audits to sustain trust and compliance.

45
73
47
80
82
90
100
cybersecuritycloudsecuritydataprotectionenterprisesecurityprivacy+3 more
Next.jsReactJavaScriptVisual Website Optimizer (VWO)+3
2025-11-01T10:46:06.347Z
bisons.dev favicon

Flying Bisons Sp. z o. o.

bisons.dev

64
TechnologyPolandmediumMEDIUM

Flying Bisons Sp. z o. o. is a Warsaw-based technology company specializing in web and mobile development services. With over six years of market presence and more than 200 successfully delivered products, the company serves a broad range of clients including major international brands. Their business model focuses on custom software development, emphasizing collaboration with UX designers to ensure high-quality, secure, and user-friendly digital solutions. The company maintains a strong market position supported by positive client rankings and a commitment to agile methodologies. Technically, the website reflects a mature digital infrastructure utilizing modern technologies such as PHP, React, React Native, and various backend tools like Redis and Rabbit MQ. The site is well-optimized for performance, mobile responsiveness, and accessibility, indicating a high level of digital maturity. The use of Google Tag Manager and Iubenda for cookie consent demonstrates awareness of privacy and analytics best practices. From a security perspective, the website enforces HTTPS and implements a cookie consent mechanism, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. The domain registration details align well with the business claims, supporting legitimacy and trustworthiness. Overall, Flying Bisons presents a professional and credible online presence with strong technical and business foundations. Strategic improvements in security policy transparency and enhanced security headers would further strengthen their security posture and compliance standing.

60
68
2
70
57
70
100
technologywebdevelopmentmobiledevelopmentsoftwaredevelopmentagile+3 more
PHPSQLMongoDBRedis+9
2025-11-01T10:37:37.784Z
manpowergroup.com favicon

ManpowerGroup

manpowergroup.com

69
OtherUnited StatesenterpriseMEDIUM

ManpowerGroup is a globally recognized leader in workforce solutions, founded in 1948 and headquartered in Milwaukee, USA. The company operates through multiple brands including Manpower, Experis, and Talent Solutions, offering a comprehensive range of staffing, recruitment, assessment, and workforce consulting services. Their market position is strong, serving over 400,000 clients worldwide and connecting more than 600,000 associates daily. The website reflects a mature digital presence with professional design, clear navigation, and mobile optimization, supporting their enterprise-level operations. Technically, the site leverages modern technologies such as React, HubSpot forms, and Google Tag Manager, indicating a contemporary and scalable infrastructure. Privacy and cookie consent mechanisms are well implemented, aligning with GDPR requirements. Security posture is solid with HTTPS enforced and secure form handling, though explicit security headers and incident response policies are not prominently disclosed. Overall, the website and business presence demonstrate high professionalism and trustworthiness. The lack of publicly available WHOIS data is likely due to privacy protection, common for large enterprises, and does not detract significantly from legitimacy. Strategic recommendations include enhancing transparency around security policies and incident response, and confirming security header implementations to further strengthen security posture.

55
88
2
88
57
80
100
workforcesolutionsstaffingrecruitmenttalentmanagementconsulting+2 more
ReactHubSpot FormsGoogle Tag ManagerGoogle Analytics+2

Partner Domains:

manpower.com
subsidiary
experis.com
subsidiary

+1 more partners

2025-11-01T10:27:52.658Z
firexgo.com favicon

fireTMS.com Sp. z o.o.

firexgo.com

70
TransportationPolandmediumMEDIUM

fireXgo is a freight exchange platform integrated into the fireTMS transport management system, designed to serve transport and forwarding companies by providing a unified tool for posting freights, finding transport orders, and managing transport operations comprehensively. The platform leverages the established fireTMS user base and infrastructure, offering real-time load monitoring and GPS telematics integration to enhance operational transparency and efficiency. The business targets freight forwarders and carriers, positioning itself as a secure and reliable marketplace with verified users and a large volume of daily orders. Technically, the website is built on a modern React and Next.js stack, hosted by OVH sas, and integrates Google services such as reCAPTCHA and Tag Manager for security and analytics. The site is mobile-optimized and provides a professional user experience with clear navigation and comprehensive content. However, some GDPR compliance aspects, such as cookie consent mechanisms, are missing. From a security perspective, fireXgo enforces HTTPS, uses user verification to reduce fraud risk, and integrates GPS telematics for real-time tracking. The absence of DNSSEC and explicit security headers suggests room for improvement in hardening the platform. No critical vulnerabilities or exposed sensitive data were detected. Overall, fireXgo presents a credible and professional service with strong business credibility and technical maturity. Strategic improvements in privacy compliance and security policies would further enhance trust and regulatory adherence.

30
85
47
70
69
75
100
freightexchangetransportmanagementfiretmslogisticssaas+2 more
ReactNext.jsGoogle reCAPTCHAGoogle Tag Manager

Partner Domains:

firetms.com
partner
2025-11-01T10:27:37.622Z
hnb.hr favicon

Hrvatska narodna banka

hnb.hr

63
FinanceCroatialargeMEDIUM

Hrvatska narodna banka (HNB) is the central bank of the Republic of Croatia, responsible for monetary policy, financial stability, banking supervision, and currency issuance. The website serves as an official portal providing comprehensive information about the bank's functions, regulatory framework, statistics, publications, and consumer protection. It targets a broad audience including the general public, financial institutions, and government entities. The site is well-structured and professionally maintained, reflecting the bank's authoritative position in the Croatian financial sector. Technically, the website is built on the Liferay CMS platform, utilizing modern JavaScript frameworks such as React and Alloy UI. It employs Google Tag Manager for analytics and tracking, and the site is optimized for both desktop and mobile devices with a moderate performance profile. Accessibility and SEO practices are basic but adequate for the target audience. From a security perspective, the site enforces HTTPS, includes standard security headers, and avoids exposing sensitive data. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly documented, representing areas for improvement. Privacy and cookie policies are present and indicate GDPR compliance, with consent mechanisms implemented. Overall, the website demonstrates a strong business credibility and security posture appropriate for a national central bank. Strategic recommendations include publishing detailed security and incident response policies, enhancing accessibility features, and maintaining regular audits of third-party scripts to ensure ongoing security and compliance.

45
25
2
85
77
85
100
centralbankfinancegovernmentcroatiabanking+2 more
JavaScriptReactYUILiferay Portal+1
2025-11-01T08:56:39.221Z
allabolag.se favicon

UC Affärsinformation

allabolag.se

60
OtherSwedenlargeMEDIUM

Allabolag.se is a comprehensive Swedish business information platform operated by UC Affärsinformation, a subsidiary of Enento Group Plc. The website offers detailed financial data, official company roles, and business insights for all Swedish companies that file annual reports with the Swedish Companies Registration Office. It targets business professionals, researchers, and companies seeking reliable corporate data. The platform provides both free and premium services, including segmentation tools and network searches, positioning itself as a leading source for Swedish corporate information. Technically, the website is built on modern web technologies including React and Next.js, with Material-UI for design. It integrates multiple third-party advertising and analytics services, managed through a consent platform ensuring GDPR compliance. The site is well-optimized for mobile and accessibility, with good SEO practices and fast loading times. From a security perspective, the site enforces HTTPS, employs standard security headers, and uses a consent management platform for privacy compliance. No critical vulnerabilities or exposed sensitive data were detected. However, the site lacks explicit security policy or incident response information, which could be improved to enhance trust. Overall, Allabolag.se presents a professional, trustworthy, and well-maintained digital presence with strong business credibility. The missing WHOIS data for the www subdomain is not a concern given the known parent domain and business entity. Strategic recommendations include enhancing security transparency, maintaining third-party script audits, and publishing vulnerability disclosure policies.

50
10
17
70
82
65
100
businessinformationcompanydatafinancialreportsswedenucaffrsinformation+6 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+5

Partner Domains:

enento.com
parent
allabolag.ocast.com
partner
2025-11-01T08:39:56.745Z
skypicker.com favicon

Kiwi.com

skypicker.com

70
TransportationCzech RepubliclargeMEDIUM

Kiwi.com is a prominent online travel agency specializing in providing cheap flights, hotels, and car rental services globally. The platform offers a user-friendly interface with advanced search capabilities including flexible dates and map-based destination exploration. It is trusted by millions and provides additional services such as disruption protection and 24/7 customer support. The website demonstrates a mature digital presence with consistent branding and comprehensive content tailored for travelers seeking affordable travel options. Technically, Kiwi.com employs modern web technologies including React and Tailwind CSS, supported by Google Tag Manager and Forter for analytics and fraud prevention respectively. The site is optimized for performance and mobile responsiveness, ensuring a seamless user experience across devices. Security best practices are observed with HTTPS enforcement and presence of key security headers, although explicit incident response and vulnerability disclosure information are not publicly available. From a security and compliance perspective, Kiwi.com maintains a comprehensive privacy policy and cookie consent mechanism aligned with GDPR requirements. However, the WHOIS data for the domain is not publicly available, which slightly impacts trust but is common for commercial entities using privacy protection services. Overall, the site presents a strong security posture with room for improvement in transparency around incident response and vulnerability management. The overall risk assessment is moderate to low, with recommendations focusing on enhancing security transparency and providing clear contact channels for security incidents. Kiwi.com’s strategic position as a leading travel booking platform is supported by its technical infrastructure and user-centric design, making it a reliable choice for consumers worldwide.

60
68
17
87
57
85
100
travelflightsbookingairfarecheapflights+1 more
ReactTailwind CSSGoogle Tag ManagerForter (fraud prevention)+2

Partner Domains:

cars.kiwi.com
subsidiary
sp.booking.com
partner

+2 more partners

2025-11-01T08:17:38.200Z