Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 713 of 775|Showing 35601-35650 of 38748
E

Equitable Holdings, Inc.

equitable.com

50
FinanceUnited StatesenterpriseMEDIUM

Equitable Holdings, Inc. operates a comprehensive financial services website targeting individuals, financial professionals, and employers. The company offers a broad range of services including retirement planning, life insurance, annuities, employee benefits, and investment management. The website reflects a mature enterprise with a legacy dating back to 1859, positioning itself as a trusted financial partner with strong brand consistency and clear market positioning. Technically, the website employs modern web technologies such as Bootstrap 4, jQuery, and integrates third-party services like Vimeo for video content and Tealium for tag management and analytics. The site is mobile optimized and demonstrates good SEO and accessibility practices, though there is room for improvement in accessibility compliance. From a security perspective, the site enforces HTTPS, uses domain locking statuses, and implements secure form validation. However, DNSSEC is not enabled, and there is no explicit Content-Security-Policy header detected. No critical vulnerabilities or exposed sensitive data were found. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enabling DNSSEC, enhancing security headers, and publishing explicit security and incident response policies to further strengthen trust and compliance.

45
53
17
60
-
45
100
financialservicesretirementplanninglifeinsuranceannuitiesemployeebenefits+1 more
JavaScriptjQueryBootstrap 4Vimeo Player API+1

Partner Domains:

equitableholdings.com
parent
equitable.qualtrics.com
service

+1 more partners

2025-06-24T09:23:34.252Z
newyorklife.com favicon

New York Life Insurance Company

newyorklife.com

70
FinanceUnited StatesenterpriseMEDIUM

New York Life Insurance Company operates a comprehensive and professionally designed website offering life insurance, investment, retirement, and advisory services. The company positions itself as a trusted, established financial services provider with a large agent network and a history spanning over 180 years. The website targets individuals and families seeking personalized financial protection and growth solutions. Technically, the site leverages Adobe Experience Manager CMS, modern JavaScript frameworks, and integrates advanced monitoring and analytics tools such as New Relic and Adobe Analytics. The site is mobile-optimized, accessible, and SEO-friendly, providing a positive user experience. Security posture is strong with HTTPS enforcement, security headers, and secure login forms, though explicit security policies and incident response contacts are not published. WHOIS data is unavailable, which is unusual for a major enterprise but the website content and branding strongly support legitimacy. Overall, the site demonstrates a mature digital presence with good security and privacy compliance, suitable for an enterprise financial services company.

65
53
17
87
72
80
100
insurancefinancialserviceslifeinsuranceinvestmentsretirement+2 more
Adobe Experience Manager (AEM)JavaScriptNew Relic Browser monitoringAdobe Launch (Tag Manager)+2

Partner Domains:

investor.wealthscape.com
partner
secureaccountview.com
partner

+1 more partners

2025-06-24T09:23:09.136Z
usaa.com favicon

USAA

usaa.com

70
FinanceUnited StatesenterpriseMEDIUM

USAA is a well-established financial services organization specializing in insurance, banking, retirement, and investment products tailored specifically for the military community, veterans, and their families. The website reflects a strong market position with a comprehensive suite of services including auto, home, life, health insurance, banking products such as checking, savings, credit cards, loans, and retirement planning solutions. The company emphasizes its military focus and community support, reinforcing its brand identity and trustworthiness. Technically, the website employs modern web technologies including React, Tealium for tag management, and Optimizely for A/B testing, indicating a mature digital infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, providing a positive user experience. Performance is moderate with room for optimization. From a security perspective, the site enforces HTTPS, provides a cookie consent mechanism, and links to a dedicated security center. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security headers and a public vulnerability disclosure policy are not evident and could enhance security posture. Overall, the website demonstrates a high level of professionalism, trust, and compliance with privacy regulations including GDPR. The lack of public WHOIS data is consistent with privacy protection practices common among large financial institutions. The site is not blocked by WAF or security challenges, allowing full content access and analysis.

35
80
2
87
77
90
100
financeinsurancebankingretirementmilitary+4 more
React 17.0.2Tealium (tag management)Optimizely (A/B testing)TMS (Tealium Tag Management System)+2

Partner Domains:

www.usaaperks.com
partner
2025-06-24T09:22:49.058Z
fincantieri.com favicon

Fincantieri S.p.A.

fincantieri.com

68
TransportationItalyenterpriseMEDIUM

Fincantieri S.p.A. is a leading global shipbuilding group headquartered in Italy, specializing in the design, construction, and repair of a wide range of vessels including cruise ships, naval vessels, ferries, mega yachts, and offshore platforms. The company holds a strong market position as one of the largest diversified shipbuilders worldwide, supported by numerous subsidiaries and a comprehensive investor relations program. The website reflects a mature enterprise with extensive content targeting investors, partners, suppliers, and customers in the maritime and defense sectors. Technically, the website employs modern web technologies including JavaScript, Google Maps API, and Akamai CDN for content delivery, ensuring moderate performance and good mobile optimization. The site is well-structured with clear navigation and professional design, although accessibility features could be enhanced. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and includes some security headers, but lacks explicit Content-Security-Policy and other advanced headers. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partially met with a comprehensive privacy policy and GDPR adherence, but the absence of a cookie consent mechanism and visible contact information for security or incident response are notable gaps. Overall, the website presents a trustworthy and professional digital presence for a large enterprise, though improvements in privacy compliance and security header implementation are recommended. The missing WHOIS data reduces transparency but does not detract significantly from the site's credibility given the extensive corporate disclosures and investor information available.

50
95
17
70
72
60
100
shipbuildingnavalinvestorssustainabilitycorporategovernance+4 more
JavaScriptjQuery (implied by slick carousel usage)Google Maps APIAkamai CDN

Partner Domains:

it.linkedin.com
partner
www.youtube.com
partner

+2 more partners

2025-06-24T06:22:48.822Z
dnv.com favicon

DNV

dnv.com

60
EnergyN/aenterpriseMEDIUM

DNV is a global enterprise focused on safeguarding life, property, and the environment by providing assurance, certification, and advisory services across multiple sectors including maritime, energy, automotive, aerospace, food and beverage, and healthcare. The company positions itself as a trusted partner enabling organizations to advance safety and sustainability in their operations. The website reflects a mature digital presence with comprehensive sector-specific content and clear navigation tailored to diverse industries. Technically, the website employs modern web technologies including React components, Google Tag Manager, Microsoft Application Insights for telemetry, and OneTrust for cookie consent management, indicating a well-maintained and monitored infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, supporting a positive user experience. From a security perspective, the site enforces HTTPS, uses security headers, and integrates monitoring tools, demonstrating a strong security posture. However, the absence of explicit vulnerability disclosure and incident response contact details suggests areas for improvement in transparency and readiness. The WHOIS data is unavailable, likely due to privacy or registry restrictions, but the overall professionalism and trust indicators mitigate concerns about legitimacy. Overall, DNV's website presents a secure, professional, and comprehensive digital front that aligns with its enterprise stature and business objectives, though enhancements in security transparency and WHOIS data availability could further strengthen trust.

80
88
47
-
-
85
100
safetysustainabilitycertificationmaritimeenergy+4 more
JavaScriptReact (implied by react component references)Google Tag ManagerMicrosoft Application Insights+1
2025-06-23T21:01:02.343Z
odibets.com favicon

Kareco Holdings Limited

odibets.com

60
OtherKenyamediumMEDIUM

Odibets is a Kenyan online sports betting and casino platform operated by Kareco Holdings Limited. Established in 2018, it offers a variety of betting services including sports betting, live betting, casino games, jackpots, and fantasy sports under the OdiLeague brand. The platform targets sports bettors primarily in Kenya but also covers international soccer and other sports. The website promotes a lightweight 2MB mobile app and provides multiple betting options with a focus on soccer and basketball. The business is licensed and regulated by the Betting Control and Licensing Board of Kenya, indicating compliance with local gambling regulations. Technically, the website uses modern JavaScript frameworks such as Vue.js and integrates multiple third-party services including Google Analytics, Microsoft Clarity, Sportradar widgets, and OneSignal for push notifications. The site is mobile optimized and has good SEO practices with comprehensive meta tags and Open Graph data. Hosting details are not explicit but DNS is managed via Cloudflare, and the domain is registered with GoDaddy with a long-term expiry. From a security perspective, the site enforces HTTPS and has domain status protections to prevent unauthorized changes. However, it lacks DNSSEC, explicit security headers, and published security or incident response policies. There is no visible cookie consent mechanism, which may impact privacy compliance. The site uses extensive tracking and advertising scripts, indicating a moderate to extensive user tracking level. Overall, Odibets presents as a legitimate, professional online betting platform with a solid business foundation and good technical implementation. Security posture is adequate but could be improved by adding DNSSEC, security headers, and formal security policies. Privacy compliance should be enhanced by implementing cookie consent and clearer data protection disclosures.

30
53
2
70
75
75
100
sportsbettingonlinebettingcasinokenyafootball+3 more
JavaScriptVue.jsGoogle AnalyticsGoogle Tag Manager+4
2025-06-23T20:59:33.096Z
bstadium.es favicon

Bstadium

bstadium.es

52
E-commerceSpainsmallMEDIUM

Bstadium.es operates as a specialized online marketplace offering sports and leisure experiences primarily linked to football clubs in Spain. The platform combines ticket sales for football matches, stadium tours, and other related activities such as tourism and gastronomy, targeting sports enthusiasts and tourists interested in unique football-related experiences. The website demonstrates a consistent brand presence with clear navigation and a professional design, supporting a small-sized business model focused on niche e-commerce within the sports sector. Technically, the website employs modern web standards including HTML5, CSS3, JavaScript, and uses libraries such as HTMX and FontAwesome. It is mobile-optimized and includes structured data for SEO enhancement. Performance is moderate with good mobile responsiveness and basic accessibility features. However, some improvements in accessibility and security headers could enhance the technical maturity. From a security perspective, the site enforces HTTPS and uses CSRF tokens in forms, indicating a baseline security posture. No explicit security headers were detected, and no vulnerability disclosures or incident response contacts are published. Privacy compliance is partially addressed through a cookie consent banner, but lacks a visible privacy policy or terms of service, which are critical for GDPR compliance and user trust. Overall, the website presents a moderate risk profile with no critical security issues detected but with room for improvement in privacy compliance and security best practices. Strategic recommendations include publishing comprehensive privacy and security policies, implementing security headers, and enhancing accessibility to improve trust and compliance.

40
40
2
85
52
85
40
sportsfootballe-commerceticketstours+2 more
HTML5CSS3JavaScriptHTMX+2
2025-06-23T20:50:51.091Z
transactpro.lv favicon

SIA Transact Pro

transactpro.lv

63
FinanceLatviamediumMEDIUM

SIA Transact Pro is a Latvia-based licensed electronic money institution established in 2004, providing comprehensive payment services including card issuing, payment processing, and gateway services. It holds principal memberships with Visa and Mastercard and operates under the supervision of the Bank of Latvia. The company targets corporate clients, e-commerce businesses, and financial institutions, offering tailored payment solutions and card products such as debit, credit, prepaid, gift, loyalty, and virtual cards. The business is affiliated with Transact Bank N.A., enhancing its banking and financial service capabilities. Technically, the website employs modern JavaScript libraries and integrates Google Tag Manager, Google Analytics, and Yandex Metrica for analytics and user tracking. The site is mobile-optimized with good navigation and professional design. Security measures include HTTPS enforcement, PCI level 1 compliance claims, and use of Google reCAPTCHA for form protection. However, explicit security policies and incident response information are not published, representing an area for improvement. The security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is moderate due to the presence of a cookie policy and consent mechanism but lacks a dedicated privacy policy page. Contact information is clearly provided with multiple channels including phone, email, and physical address. Overall, the website and business demonstrate high trustworthiness and professionalism. Strategically, the company should focus on publishing comprehensive privacy and security policies, enhancing accessibility, and formalizing incident response and vulnerability disclosure processes to strengthen compliance and customer trust.

50
68
2
70
67
60
100
paymentprocessingcardissuingfinanceelectronicmoneyinstitutionlicensed+5 more
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics+2

Partner Domains:

transactbank.com
parent
fktk.lv
partner
2025-06-23T20:09:17.702Z
uam.es favicon

Universidad Autónoma de Madrid

uam.es

59
EducationSpainlargeMEDIUM

The Universidad Autónoma de Madrid (UAM) is a prominent public university in Spain, offering a wide range of undergraduate, postgraduate, and research programs. It holds a strong market position as one of Spain's leading universities, ranked 206 worldwide in the QS World University Rankings 2026. The institution targets students, researchers, academic staff, and prospective students, providing education, research, innovation, and cultural services. The website reflects a mature digital presence with comprehensive content, clear navigation, and multilingual support. Technically, the website employs modern web technologies including Google Tag Manager and Google Analytics for tracking, with good mobile optimization and accessibility features. The site uses HTTPS with strong SSL configuration, though it lacks some advanced security headers. No CMS or hosting provider details were explicitly detected. Performance is moderate, with room for optimization. Security posture is solid with no visible vulnerabilities or exposed sensitive data. However, the absence of a published security policy, incident response contacts, or vulnerability disclosure mechanisms suggests areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms, aligned with GDPR requirements. Overall, the website is professional, trustworthy, and well-maintained, supporting the university's reputation. The WHOIS data is restricted by the Spanish registry policy, which is typical and does not detract from legitimacy. Strategic recommendations include enhancing security headers, publishing security policies, and implementing vulnerability disclosure practices to further strengthen trust and security.

40
25
2
75
67
80
100
educationuniversityresearchpublicinstitutionspain+1 more
Google Tag ManagerGoogle AnalyticsJavaScriptHTML5+1

Partner Domains:

fundacionuniversidadempresa.es
partner
fpcm.es
partner

+2 more partners

2025-06-23T20:08:31.884Z
denkvooruit.nl favicon

Ministerie van Justitie en Veiligheid

denkvooruit.nl

70
GovernmentNetherlandslargeMEDIUM

Denk vooruit is an official Dutch government website operated by the Ministry of Justice and Security (Ministerie van Justitie en Veiligheid). It serves as a public information platform to educate and prepare citizens for various emergency and risk situations. The site offers guidance on assembling emergency kits, understanding risks in the Netherlands, and how to receive warnings during crises. The target audience is the general public in the Netherlands, and the site is positioned as a trusted government resource for emergency preparedness. Technically, the website is built using modern web technologies including Next.js and React, ensuring good mobile optimization, accessibility, and SEO. The site uses HTTPS with strong security headers and minimal tracking scripts from government analytics services, reflecting a good digital maturity level. Performance is moderate, with a well-structured navigation and consistent branding. From a security perspective, the site demonstrates strong practices such as HTTPS enforcement and security headers. However, it lacks explicit published security policies, incident response information, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is good, with clear privacy and cookie policies and consent mechanisms in place. Overall, Denk vooruit presents a high trustworthiness profile as a government information portal. Strategic recommendations include publishing detailed security and incident response policies, adding vulnerability disclosure information, and enhancing direct contact options for security concerns to further improve transparency and trust.

85
68
17
65
80
60
100
governmentemergencypreparednesspublicsafetydutchofficial
Next.jsReactJavaScriptCSS
2025-06-23T20:08:16.638Z
veiligheidsregioaa.nl favicon

Veiligheidsregio Amsterdam-Amstelland

veiligheidsregioaa.nl

76
GovernmentNetherlandsmediumLOW

Veiligheidsregio Amsterdam-Amstelland is a regional government entity responsible for coordinating public safety, emergency services, and crisis management within the Amsterdam-Amstelland area. The organization collaborates with municipalities, fire departments, medical services, police, and other public and private safety partners to manage risks and prepare for emergencies. Their website serves as an information hub for residents and stakeholders, providing news, safety tips, and contact information. The website is built on the IPROX CMS platform, a specialized content management system for large-scale government web environments, hosted by Hostnet B.V. The technical infrastructure is modern and supports mobile responsiveness, accessibility, and SEO best practices. The site uses HTTPS with DNSSEC enabled, ensuring secure and trustworthy connections. Google Analytics is implemented with privacy-conscious settings such as IP anonymization and forced SSL. Security posture is solid with HTTPS and DNSSEC, but the site lacks explicit published security policies or incident response contacts. Cookie consent is implemented in compliance with Dutch and EU regulations. No critical vulnerabilities or suspicious content were detected. Overall, the site reflects a professional and credible government digital presence with room for improvement in security transparency and vulnerability disclosure.

90
68
17
80
100
70
100
governmentsafetycrisismanagementregionalpublicservices+1 more
JavaScriptCSSHTML5
2025-06-23T20:07:33.461Z
dk-kampagner.dk favicon

Domain Default page

dk-kampagner.dk

35
TechnologyN/asmallHIGH

The website dk-kampagner.dk currently hosts a default placeholder page generated by Plesk, indicating no active business or service presence. The page primarily promotes Plesk hosting control panel and related services such as Sitejet Builder and WP Guardian, targeting web professionals and site owners. The website content is minimal and serves as an informational landing page rather than a commercial or operational site. From a technical perspective, the site uses standard HTML5, CSS3, and JavaScript with no detected CMS or advanced frameworks. It is hosted on a Plesk platform, likely self-managed or through a third-party provider. The site is mobile optimized with basic accessibility and SEO features but lacks advanced technical implementations or performance optimizations. Security posture is minimal with no detected security headers, no privacy or cookie policies, and no incident response or security contact information. The domain uses HTTPS (implied by the login link on port 8443) but lacks DNSSEC and other DNS security enhancements. No vulnerabilities or malicious content were detected, but the site lacks fundamental security best practices and compliance documentation. Overall, the site represents a low-risk placeholder domain with limited business credibility and minimal content. Strategic recommendations include enabling DNSSEC, adding privacy and cookie policies, implementing security headers, and providing contact and incident response information to improve trust and compliance.

15
10
2
60
72
60
20
placeholderpleskhostingdefaultpage
HTML5CSS3JavaScript
2025-06-23T19:56:38.333Z
boost.ai favicon

boost.ai

boost.ai

64
TechnologyNorwayenterpriseMEDIUM

boost.ai is a Norway-based enterprise specializing in AI-powered conversational platforms tailored for regulated industries such as finance, insurance, telecommunications, and the public sector. The company positions itself as a leader in delivering secure, compliant, and scalable AI customer experience solutions, emphasizing trust and control in AI implementations. Their offerings include chat automation, voice call automation, and generative AI capabilities, supported by a robust platform and integrations. Technically, the website is built on modern frameworks including HubSpot CMS and UIkit, with extensive use of marketing and analytics tools such as Google Analytics, Facebook Pixel, and LinkedIn Insight Tag. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, with fast performance and a professional design. Hosting is via Amazon AWS, and domain registration details align well with the company's Norwegian origin and business claims. From a security perspective, the site enforces HTTPS, employs clientTransferProhibited domain status, and provides comprehensive privacy and cookie policies with user consent mechanisms. However, DNSSEC is not enabled, and there is no published security.txt or explicit incident response contact information. No critical vulnerabilities or exposed sensitive data were detected. Overall, boost.ai presents a high level of business credibility, technical maturity, and privacy compliance, making it a trustworthy and professional enterprise AI solution provider. Minor improvements in DNS security and incident response transparency could further enhance their security posture.

50
83
2
70
95
85
40
conversationalaienterprisecustomerexperienceregulatedindustriesaiplatform+3 more
HubSpot FormsGoogle Tag ManagerGoogle AnalyticsLinkedIn Insight Tag+4

Partner Domains:

academy.boost.ai
partner
partnerhub.boost.ai
partner

+1 more partners

2025-06-23T19:56:08.013Z
omniconvert.com favicon

Omniconvert SRL

omniconvert.com

56
E-commerceRomaniamediumMEDIUM

Omniconvert SRL is a Romanian-based technology company specializing in customer intelligence and conversion optimization solutions for eCommerce and retail businesses. Their platform suite includes Omniconvert Explore, Reveal, and Pulse, targeting customer acquisition, retention, and experience enhancement. The company positions itself as a leader in Customer Value Optimization (CVO), supported by certifications such as ISO 27001 and GDPR compliance, and recognized by industry awards like G2 Summer 2024. Their clientele includes prominent retailers and brands, reflecting a strong market presence. Technically, the website leverages modern frameworks like Astro, integrates with HubSpot, Google Analytics, and uses advanced JavaScript libraries for UI and tracking. The site is well-optimized for performance, mobile responsiveness, and accessibility, with comprehensive metadata and structured data enhancing SEO and user experience. Security practices include HTTPS enforcement and cookie consent mechanisms, though explicit security headers could be more visible. The security posture is solid with no evident vulnerabilities or exposed sensitive data. However, the absence of WHOIS registration data raises concerns about domain transparency, which slightly impacts trustworthiness. Privacy compliance is well addressed with clear policies and consent management. Overall, Omniconvert demonstrates a mature digital presence with strong business credibility and technical sophistication.

40
50
17
85
75
-
100
ecommercecrocustomeranalyticscustomerexperiencedata-drivenmarketing+2 more
JavaScriptHubSpot scriptsGoogle Tag ManagerGoogle Analytics+2

Partner Domains:

g2.com
partner
cvoacademy.com
partner
2025-06-23T19:55:57.907Z