Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 715 of 800|Showing 35701-35750 of 39983
W

World Karate Federation

wkf.net

65
OtherSpainlargeMEDIUM

The World Karate Federation (WKF) is a globally recognized international sports federation dedicated to promoting karate as a sport. It is the only karate organization recognized by the International Olympic Committee and boasts 198 member countries and over a hundred million members worldwide. The organization operates primarily as a non-profit entity focused on organizing karate events, managing rankings, accrediting approved brands, and running educational programs. The website reflects a professional and authoritative presence consistent with a large international sports federation headquartered in Spain. Technically, the WKF website employs modern web technologies including Blazor, Bootstrap 5, and various JavaScript libraries for enhanced user experience and performance. The site is mobile-optimized, accessible, and SEO-friendly, with structured data and comprehensive metadata supporting discoverability and rich search results. Privacy and cookie policies are clearly presented with consent mechanisms, indicating good compliance with GDPR and related regulations. From a security perspective, the site uses HTTPS with strong SSL configuration and implements cookie consent. While explicit security headers are not fully confirmed, no vulnerabilities or exposed sensitive data were detected. The absence of a published security policy or incident response information is noted as an area for improvement. The WHOIS data for the domain is missing or unavailable, which raises concerns about domain registration legitimacy; however, the website content and social media presence strongly support the authenticity of the organization. Overall, the WKF website demonstrates a high level of professionalism, technical maturity, and compliance with privacy standards. The main risk factor is the lack of WHOIS transparency, which should be investigated further to ensure domain legitimacy and trustworthiness.

-
83
2
70
100
80
100
karatesportsworldfederationkarateeventsranking+2 more
BlazorBootstrap 5JavaScriptSwiper.js+4
2025-06-27T12:01:19.255Z
goodlift.info favicon

Internet Invest, Ltd. dba Imena.ua

goodlift.info

43
OtherUkrainesmallHIGH

GOODLIFT.INFO is a specialized website dedicated to providing official and verified information about powerlifting competitions, events, and athletes affiliated with the International Powerlifting Federation (IPF). The site supports competition management through the GOODLIFT software, which is the official competition management tool for IPF. The target audience includes powerlifting athletes, teams, federations, and enthusiasts seeking authoritative competition data and rankings. The business operates primarily as an information and software support service within the niche sports sector, maintaining a consistent and professional online presence since 2008. Technically, the website employs a straightforward HTML, CSS, and JavaScript stack without reliance on modern CMS or frameworks. Hosting and domain registration are managed by Internet Invest, Ltd. dba Imena.ua, a Ukrainian registrar, consistent with the site's author and content origin. The site demonstrates moderate performance and basic mobile optimization, with good SEO practices evident in meta tags and structured navigation. However, there is room for improvement in accessibility and modern technical enhancements. From a security perspective, the site lacks advanced security headers and DNSSEC, which are recommended to enhance protection against common web threats. The domain is secured with clientTransferProhibited status, and WHOIS data is transparent and consistent, supporting legitimacy. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or GDPR compliance indicators. No incident response or security policy information is published, which could be improved to strengthen trust. Overall, GOODLIFT.INFO is a credible and authoritative resource within its niche, with a solid business foundation and consistent branding. Security and privacy practices require enhancement to meet modern standards and regulatory requirements. Strategic improvements in security headers, DNSSEC, cookie consent, and published policies would elevate the site's trustworthiness and compliance posture.

20
53
2
70
72
70
-
powerliftingsportscompetitionipfgoodlift+2 more
HTMLCSSJavaScript
2025-06-27T12:01:09.192Z
esn.com favicon

ESN

esn.com

73
E-commerceGermanymediumMEDIUM

ESN operates a professional e-commerce platform specializing in nutritional supplements for bodybuilding, fitness, and health-conscious consumers primarily in Germany and other European markets. The website is built on Shopify, leveraging modern web technologies and marketing tools such as Klaviyo and Google Tag Manager to support a robust digital presence. The company actively engages in influencer marketing and offers multiple discount campaigns, indicating a mature marketing strategy and customer engagement approach. Technically, the site is well-optimized for performance, mobile responsiveness, and accessibility, with strong SEO practices and comprehensive privacy and cookie policies aligned with GDPR requirements. Security posture is strong with HTTPS enforcement and appropriate security headers, although explicit security policies and incident response contacts are not publicly disclosed. The absence of WHOIS registration data reduces domain trustworthiness from a registration perspective, but the operational website and business indicators suggest legitimacy. Strategic recommendations include enhancing transparency around security policies and incident response, and publishing vulnerability disclosure information to further strengthen trust and compliance.

75
85
17
70
75
80
100
e-commercesupplementsfitnessbodybuildinghealth+3 more
ShopifyJavaScriptWix Madefor Text fontDIN Condensed VF font+6

Partner Domains:

klarna.com
partner
shop.app
partner
2025-06-27T12:00:54.153Z
shopline.com favicon

SHOPLINE

shopline.com

66
E-commerceN/alargeMEDIUM

SHOPLINE is a well-established SaaS ecommerce platform founded in 2013, serving over 600,000 merchants globally. It offers a comprehensive suite of ecommerce solutions including online store building, social commerce, POS, payment processing, B2B ecommerce, and marketing automation. The platform targets entrepreneurs to enterprises seeking integrated commerce solutions. Technically, the website is built on Webflow CMS with a modern tech stack including JavaScript, jQuery, and multiple marketing and analytics tools such as HubSpot, Hotjar, and Facebook Pixel. The site is fast, mobile-optimized, and professionally designed with clear navigation and rich content. Security posture is strong with HTTPS enforced and no visible vulnerabilities, though explicit security policies and incident response contacts are not published. Privacy and cookie policies are present and GDPR compliant. WHOIS data is missing or unavailable, which raises some concerns about domain registration transparency but does not detract from the overall legitimacy of the business. Strategic recommendations include publishing detailed security and incident response policies, enhancing transparency on data protection roles, and confirming security header implementations.

60
68
2
75
57
80
100
ecommercesaasonlinestoresocialcommercepos+4 more
WebflowJavaScriptjQueryGoogle Tag Manager+6

Partner Domains:

apps.shopline.com
partner
help.shopline.com
partner

+3 more partners

2025-06-27T10:57:51.434Z
worldrowing.com favicon

World Rowing

worldrowing.com

69
OtherSwitzerlandmediumMEDIUM

World Rowing is an established international sports federation responsible for organizing rowing events worldwide, including the upcoming 2025 World Rowing Cup in Lucerne, Switzerland. The website serves as an official platform to provide event information and promote the sport to athletes, fans, and the rowing community. The domain is long-standing, registered since 1999, and hosted on a reliable infrastructure with AWS DNS and CDN services, reflecting a mature digital presence. Technically, the website employs modern JavaScript frameworks such as Vue.js, uses Google Tag Manager for analytics and marketing, and implements HTTPS with appropriate security headers. The site is mobile-optimized and offers a good user experience with clear navigation and professional design. However, some standard compliance elements like a dedicated privacy policy and terms of service pages are not detected on the event page, though a cookie consent mechanism is present. From a security perspective, the site demonstrates good practices including HTTPS enforcement and clientTransferProhibited domain status, but lacks DNSSEC and a published security.txt file for vulnerability disclosure. No critical vulnerabilities or exposed sensitive data were found. The WHOIS data aligns well with the website's claims, supporting legitimacy and trustworthiness. Overall, the website is professional, secure, and credible, serving its purpose effectively. Enhancements in privacy compliance documentation and security disclosures would further strengthen its posture.

65
100
17
55
62
75
100
sportsrowingeventworldrowingswitzerland+1 more
JavaScriptVue.jsGoogle Tag ManagerAWS DNS
2025-06-27T10:57:11.301Z
tpilet.ee favicon

Piletid sinu teekonnale

tpilet.ee

60
TransportationEstoniamediumMEDIUM

Tpilet.ee is an Estonian online platform specializing in the sale of bus tickets and providing bus timetable information. It serves primarily bus travelers within Estonia, offering services such as one-way and return ticket purchases, ticket returns, and corporate client agreements. The website is positioned as a key player in the Estonian transportation ticketing market, leveraging e-commerce to facilitate travel planning and ticketing. Technically, the website is built using modern web technologies including React and JavaScript, with integration of analytics tools such as Amplitude and Google Analytics. The site demonstrates moderate performance and good mobile optimization, although accessibility features are basic. The use of HTTPS ensures secure communications, and cookie consent mechanisms are in place to comply with basic privacy requirements. From a security perspective, the site enforces HTTPS and employs cookie consent banners, but lacks explicit security headers and published privacy or security policies. No vulnerabilities or exposed sensitive data were detected in the provided content. The WHOIS data aligns well with the business, indicating a legitimate and consistent domain registration. Overall, the website presents a professional and functional platform with room for improvement in privacy compliance, security best practices, and accessibility. Strategic enhancements in these areas would strengthen trust and regulatory adherence.

40
10
47
75
65
65
100
busticketstransportationestoniae-commercetravel
ReactJavaScriptAmplitude AnalyticsGoogle Analytics+1
2025-06-27T10:53:10.174Z
S

SODECA

sodeca.no

65
ManufacturingNorwaymediumMEDIUM

SODECA is a Norwegian-based manufacturer specializing in industrial ventilation, smoke extraction, tunnel ventilation, and pressurization systems for evacuation routes. The company operates internationally with multiple country-specific websites, indicating a strong global presence. Their business model focuses on manufacturing high-quality ventilation products and providing consulting services to industrial clients and engineers. The website is professionally designed, mobile-optimized, and provides clear navigation and relevant content in Norwegian with English alternatives. Technically, the website uses modern frameworks such as Bootstrap and Font Awesome, with a cookie consent mechanism ensuring privacy compliance. The site is served over HTTPS with no visible security vulnerabilities or exposed sensitive data. However, security headers are not explicitly detected, and no public security or incident response policies are published on the site. Overall, the security posture is good with room for improvement in security header implementation and transparency around incident response. The absence of WHOIS data is typical for .no domains and does not detract from the site's legitimacy. Contact information is clearly provided, enhancing business credibility. The site demonstrates a mature digital presence suitable for its industry and market position.

25
68
17
70
77
80
100
industrialventilationsmokeextractionpressurizationsystemsventilationproductsnorway+1 more
Bootstrap 5.2.3Font Awesome 6.5.1CookieConsent v2.8.9JavaScript

Partner Domains:

www.sodeca.com
sister
www.sodeca.es
sister

+3 more partners

2025-06-27T10:52:24.986Z
S

SODECA

sodeca.pt

62
ManufacturingPortugalmediumMEDIUM

SODECA is a Portuguese manufacturer specializing in industrial ventilation and exhaust solutions, including smoke control, tunnel ventilation, stair pressurization, and indoor air quality improvement. The company maintains a strong international presence with multiple country-specific websites, targeting industrial clients and technical professionals. Their business model combines manufacturing with direct sales, supported by online tools and technical consultancy services. The website reflects a professional and consistent brand image with clear navigation and relevant content. Technically, the website employs modern web technologies such as Bootstrap, Font Awesome, and integrates analytics and advertising tools like Google Analytics, Google Tag Manager, and Bing Ads. The site is mobile-optimized and performs moderately well, with good SEO practices and accessibility at a basic level. Security-wise, the site uses HTTPS and a cookie consent mechanism but lacks explicit security headers and published security policies or incident response contacts. Overall, the security posture is solid but could be improved by implementing additional security headers, publishing a security policy, and establishing a vulnerability disclosure process. The domain WHOIS data aligns well with the business claims, supporting legitimacy. The website provides comprehensive contact information and privacy compliance features, enhancing trustworthiness. Strategic recommendations include enhancing security headers, publishing incident response and security policies, improving accessibility, and maintaining regular audits of third-party scripts to ensure ongoing security and compliance.

25
48
17
70
77
75
100
industrialventilationmanufacturingventilationsolutionssmokecontrolairquality+2 more
Bootstrap 5.2.3Font Awesome 6.5.1Google Tag ManagerGoogle Analytics (gtag.js)+5

Partner Domains:

www.sodeca.com
subsidiary
www.sodeca.es
subsidiary

+3 more partners

2025-06-27T10:51:54.837Z
gwpo-gwp.org favicon

Global Water Partnership Organisation Gwpo

gwpo-gwp.org

61
Non-profitSwedenmediumMEDIUM

The Global Water Partnership Organisation (GWPO) operates as a global action network focused on advancing water governance and climate-resilient investments to promote sustainability and equity. The website presents basic information about the organization's mission and target audience, primarily stakeholders interested in water governance and climate resilience. The business model is that of a non-profit global network with a medium organizational size and a founding year indicated as 2025, which appears inconsistent with the organization's global positioning. Technically, the website is built using the Weblium platform, employing standard web technologies such as HTML5, CSS, and JavaScript. Hosting is provided by Loopia, with no advanced frameworks or analytics tools detected. The site demonstrates moderate performance and good mobile optimization but lacks advanced SEO and accessibility features. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which are important for enhancing domain and web security. There is no visible security policy, incident response information, or vulnerability disclosure mechanisms. The WHOIS data raises concerns due to a domain creation date set in the future (2025), which is unusual and undermines trust in the domain's legitimacy. Overall, the website provides basic content and functionality but lacks critical privacy, security, and compliance features. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing privacy and cookie policies, and clarifying domain registration details to improve trustworthiness and compliance.

75
53
25
60
62
60
100
watergovernanceclimateresiliencenon-profitglobalnetworksustainability
Weblium website builderJavaScriptCSSHTML5
2025-06-27T09:49:34.179Z
F

Foundation of Lääne County

linnuriik.ee

43
OtherEstoniasmallHIGH

The website linnuriik.ee serves as an informational and promotional platform focused on birdwatching and nature tourism in Matsalu National Park, Estonia. It provides detailed descriptions of bird species, observation towers, hiking trails, and virtual tours, targeting nature enthusiasts and tourists interested in the region. The site is operated by the Foundation of Lääne County and funded by the European Regional Development Fund, indicating a regional public interest focus. Technically, the website is built on WordPress using a modern tech stack including popular plugins like Yoast SEO, WPBakery Page Builder, and Slider Revolution. The site is hosted under the registrar Zone Media OÜ, an Estonian entity, with HTTPS enabled and good SEO practices implemented. Mobile optimization and accessibility are adequate, though some improvements could be made. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks DNSSEC and important security headers, and does not publish explicit security or incident response policies. Privacy compliance is weak due to the absence of privacy and cookie policies or consent mechanisms, which is a notable gap given GDPR requirements. Overall, the website is a well-maintained regional informational resource with good business credibility but requires enhancements in privacy compliance and security best practices to improve trust and regulatory adherence.

15
10
17
70
72
60
20
birdwatchingnatureestoniamatsalunationalpark+2 more
WordPressPHPJavaScriptjQuery+6
2025-06-27T09:49:29.171Z
eusa.eu favicon

European University Sports Association

eusa.eu

47
EducationSloveniamediumHIGH

The European University Sports Association (EUSA) is a well-established non-profit organization dedicated to promoting and organizing university sports across Europe. The website reflects a professional and comprehensive platform showcasing their events, projects, partnerships, and media presence. Their market position is strong, supported by numerous official partnerships with European institutions and sports federations. The target audience includes European universities, student athletes, and sports organizations. The business model revolves around organizing championships, games, and educational projects, supported by sponsorships and partnerships. Technically, the website is built on the Lytee CMS platform, utilizing modern JavaScript libraries such as Slick Slider and lazy loading for performance optimization. The site is mobile-optimized, accessible, and SEO-friendly, with proper meta tags and structured data. The presence of Google and Microsoft site verification tags indicates attention to search engine indexing and webmaster tools. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms compliant with GDPR. However, there is a lack of explicit security policies, incident response information, and security headers which could enhance the security posture. No vulnerabilities or exposed sensitive data were detected in the content. The WHOIS data is privacy-protected as per EURid policies, which is justified for this type of organization. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. Strategic recommendations include publishing security and incident response policies, adding security headers, and providing a vulnerability disclosure channel to further strengthen trust and security maturity.

30
95
2
-
62
-
100
universitysportseuropeansportsassociationnon-profiteducationsportsevents+3 more
JavaScriptSlick SliderLazyLoadGoogle Site Verification+1

Partner Domains:

ec.europa.eu
partner
fisu.net
partner

+1 more partners

2025-06-27T09:47:58.805Z
forsafeworship.org favicon

United Nations Alliance of Civilizations (UNAOC)

forsafeworship.org

58
GovernmentUnited StatessmallMEDIUM

The website forsafeworship.org represents the United Nations Alliance of Civilizations (UNAOC) initiative titled '#forSafeWorship - UN Plan of Action to Safeguard Religious Sites'. It serves as a platform to advocate for the protection and respect of religious sites worldwide, emphasizing peace and harmony. The target audience includes global communities, religious groups, governments, and peace organizations. The site operates as a non-profit advocacy platform under the United Nations umbrella, with a small organizational size and a founding year of 2020. Technically, the website is built on WordPress using the Divi theme and Yoast SEO plugin, hosted on Quadranet servers. It employs modern web technologies such as JavaScript and jQuery, and the site is moderately optimized for performance and mobile responsiveness. SEO practices are good, with comprehensive metadata and structured data enhancing search visibility. From a security perspective, the site uses HTTPS with a good SSL configuration and domain status protections. However, it lacks several security headers and does not provide explicit security or incident response policies. No vulnerability disclosure or security.txt files are present, and privacy compliance is minimal due to the absence of privacy and cookie policies. The domain registration is privacy protected but consistent with the nature of a UN-affiliated non-profit. Overall, the website is trustworthy and professional in its presentation and content but would benefit from enhanced privacy compliance, security headers, and explicit contact information to improve user trust and regulatory adherence.

30
35
17
60
72
75
100
unreligioussitessafeworshipnon-profitadvocacy+2 more
JavaScriptjQueryYoast SEO pluginDivi Theme+1
2025-06-27T09:45:33.465Z
anoc.tv favicon

ANOC Association of National Olympic Committees

anoc.tv

55
GovernmentSwitzerlandmediumMEDIUM

The ANOC.tv website serves as the official digital platform for the Association of National Olympic Committees, a Swiss-based non-profit organization dedicated to supporting and promoting Olympic committees worldwide. The site offers comprehensive coverage of sporting events, news, and specialized programs such as sustainability workshops, targeting Olympic committees, sports professionals, and enthusiasts. The business model focuses on media dissemination and informational services within the Olympic sports ecosystem. Technically, the website leverages modern web technologies including React, Google Tag Manager, Stripe.js, and push notification SDKs, indicating a mature digital infrastructure. The site is mobile-optimized with good design quality and user experience, although some accessibility and SEO aspects could be enhanced. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks advanced security headers and explicit security policies or incident response contacts. WHOIS data is transparent and consistent with the organization's identity, supporting domain legitimacy. Overall, the website presents a professional and trustworthy front with moderate privacy compliance and security posture. Strategic improvements in privacy policy publication, security headers, and incident response transparency would enhance compliance and user trust.

15
53
2
60
72
60
100
sportsolympicsnon-profitmediaevents+2 more
JavaScriptGoogle Tag ManagerStripe.jsWonderPush SDK+2
2025-06-27T09:44:48.308Z
1220.ee favicon

AS Arstikeskus Confido

1220.ee

45
HealthcareEstoniamediumHIGH

The website 1220.ee serves as the official Estonian health advice line platform, providing telephone and web chat medical consultation services. It targets Estonian residents and callers abroad, offering guidance on medical issues, prescription renewals, and emergency care decisions. The service operates under the auspices of the Estonian Health Insurance Fund (Tervisekassa) and collaborates with healthcare providers and pharmacies. The site is professionally designed with consistent branding and clear navigation, supporting multiple languages (Estonian and Russian). Technical infrastructure includes modern JavaScript libraries, CDN-hosted resources, and integration with Facebook SDK and Google Tag Manager for analytics and marketing purposes. The site uses HTTPS and shows no signs of blocking or WAF interference, indicating good accessibility and security basics. However, it lacks visible privacy and cookie policies, which impacts GDPR compliance and privacy posture. Contact information is limited to phone numbers with no email or physical address disclosed. No forms collecting personal data are present on the main page, reducing immediate data protection concerns. Overall, the site demonstrates a solid business credibility and technical foundation but requires improvements in privacy compliance and security policy transparency.

55
10
2
70
62
60
20
healthcaremedicaladvicephoneconsultationestoniapublichealth
JavaScriptjQuery (implied by slick-carousel usage)Slick CarouselFacebook SDK+1
2025-06-27T09:43:48.170Z
andmik.ee favicon

Andmik

andmik.ee

45
GovernmentEstoniasmallHIGH

Andmik is a specialized platform focused on providing data visualization and budget tracking services for Estonian municipalities. The website presents detailed geographic and demographic data for various local governments, targeting municipal officials and stakeholders. The platform leverages modern web technologies including Vue.js and Leaflet for interactive maps, supported by Google Analytics and Tag Manager for user tracking. The domain is registered with a reputable Estonian registrar, Zone Media OÜ, and was created in 2021, aligning with the platform's apparent recent launch. Technically, the website employs a modern JavaScript framework and mapping libraries, ensuring a responsive and interactive user experience. However, there is room for improvement in accessibility and SEO optimization. Security-wise, the site lacks visible security headers and does not enable DNSSEC, which could be enhanced to improve overall security posture. Privacy compliance is weak, with no visible privacy or cookie policies, and no consent mechanisms, which is a significant gap given the use of tracking technologies. Overall, the website is functional and professionally designed but requires improvements in privacy compliance, security best practices, and contact transparency to enhance trust and regulatory adherence. Strategic recommendations include implementing comprehensive privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact and incident response information.

30
10
2
40
67
45
100
estoniamunicipalitydatavisualizationgovernmentbudget+1 more
JavaScriptVue.jsLeafletGoogle Analytics+1
2025-06-27T08:41:40.132Z
S

SoftExpert OÜ

itx.ee

53
TechnologyEstoniasmallMEDIUM

SoftExpert OÜ is an Estonian IT company specializing in the development and maintenance of mission-critical and complex web-based systems. Established since 2000, it has contributed to several major Estonian web services such as CV-Online and various photo and video platforms. The company offers a broad range of IT services including consulting, system creation, and maintenance, targeting Estonian businesses requiring reliable IT partnerships. The website content is primarily in Estonian with an English option, reflecting a local market focus. Technically, the website uses legacy technologies such as PHP, Perl, and C, hosted on Unix/Linux platforms. The site lacks modern frameworks and shows basic SEO and accessibility features. Performance is moderate, but mobile optimization is poor. The site includes Google Analytics and Tag Manager scripts for user tracking but lacks visible privacy or cookie policies, which is a compliance gap. From a security perspective, no HTTPS confirmation or security headers were detected in the provided data, indicating potential vulnerabilities. No forms or input fields are present, reducing attack surface but also limiting user interaction. The WHOIS data is consistent and transparent, with a domain age appropriate for the business history. Overall, the security posture is moderate but requires improvements in SSL/TLS implementation and security headers. The overall risk is moderate with recommendations to implement HTTPS, add privacy and cookie policies, improve mobile responsiveness, and enhance security headers. These steps will improve compliance, user trust, and security resilience.

15
10
17
85
72
65
100
webdevelopmentitservicesestoniatechnologysoftware
PHPPerlJavaScriptUnix/Linux+2
2025-06-27T08:41:20.096Z