Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150709
Websites
130
Industries
113
Countries
52
Avg Score
Page 761 of 1031|Showing 38001-38050 of 51504
wellcomecollection.org favicon

Wellcome Collection

wellcomecollection.org

70
Non-profitUnited KingdommediumMEDIUM

Wellcome Collection is a well-established non-profit cultural institution based in London, offering a free museum and library focused on health, science, medicine, and human experience. The website provides rich content including exhibitions, events, stories, and publications, targeting a broad audience interested in these themes. The organization maintains a strong market position as a reputable educational and cultural resource. Technically, the website is built on modern frameworks such as Next.js and Prismic CMS, hosted on AWS infrastructure, and incorporates advanced analytics and cookie consent mechanisms, reflecting a mature digital presence. Security posture is strong with HTTPS enforced and privacy-conscious analytics, though DNSSEC is not enabled and no explicit security or incident response policies are published. Overall, the site is professional, accessible, and trustworthy, with clear contact information and compliance with privacy regulations. Strategic recommendations include enhancing DNS security, publishing security policies, and maintaining vigilance on third-party scripts. The domain registration is privacy protected but consistent with legitimate use for a non-profit entity, with a domain age appropriate for the organization's history.

45
68
17
85
72
85
100
museumlibraryhealthscienceeducation+5 more
React (Next.js)Google Tag ManagerGoogle AnalyticsSegment Analytics+2
2025-07-10T04:41:00.856Z
vr.fi favicon

VR-Yhtymä Oyj

vr.fi

67
TransportationFinlandlargeMEDIUM

VR.fi is the official digital platform for VR-Yhtymä Oyj, Finland's primary railway operator. The website offers comprehensive services for domestic train travel including ticket sales, travel information, and customer support. It targets Finnish residents and visitors seeking sustainable and comfortable rail travel options. The company holds a strong market position as the national rail service provider with a large operational scale and a focus on environmental responsibility. Technically, the website is built on modern web technologies including React and Next.js, integrated with Contentful CMS for content management. It demonstrates excellent performance, mobile optimization, and accessibility. The site employs Google Tag Manager and Convertexperiments for analytics and A/B testing, with appropriate cookie consent mechanisms in place. From a security perspective, the site enforces HTTPS and includes standard security headers, ensuring a secure browsing experience. However, it lacks a dedicated security policy or incident response page and does not publish a vulnerability disclosure or security.txt file, which could enhance transparency and trust. Overall, VR.fi presents a professional, trustworthy, and user-friendly platform aligned with its business goals. Strategic improvements in security transparency and incident response communication are recommended to further strengthen its security posture and compliance.

70
25
17
75
82
80
100
transportationrailwaytravelfinlandtickets+4 more
ReactNext.jsContentful CMSGoogle Tag Manager+2

Partner Domains:

www.vrgroup.fi
parent
2025-07-10T04:40:05.515Z
demenz.lu favicon

Info-Zenter Demenz

demenz.lu

37
HealthcareLuxembourgsmallHIGH

Info-Zenter Demenz is a national information and consultation center in Luxembourg specializing in memory disorders and dementia. The organization provides free services and resources to affected individuals, their families, healthcare professionals, and the general public. The website is professionally designed, well-structured, and offers comprehensive content in French, with multilingual support. It maintains a strong presence through social media and government support, positioning itself as a trusted resource in the healthcare non-profit sector. Technically, the website is built on WordPress with modern technologies including Google Tag Manager, reCAPTCHA, and accessibility tools. It demonstrates good mobile optimization, SEO practices, and performance. The hosting and domain registration appear professional and consistent with the organization's profile. From a security perspective, the site uses HTTPS, has implemented cookie consent mechanisms, and employs reCAPTCHA to protect forms. While explicit security policies and incident response contacts are not found, no vulnerabilities or suspicious activities are detected. Privacy compliance is well addressed with clear policies and consent management. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing security headers, publishing a formal security policy, and maintaining regular audits of third-party scripts to further strengthen security posture.

15
25
17
70
-
80
-
healthcaredementiamemorydisordersnon-profitinformationcenter+1 more
WordPress 6.8.1jQuery 3.6.0Google Tag ManagerGoogle reCAPTCHA+4

Partner Domains:

inside-communication.lu
partner
ala.lu
partner

+1 more partners

2025-07-10T04:38:04.633Z
hromadske.radio favicon

Hromadske Radio

hromadske.radio

58
MediaUkrainemediumMEDIUM

Hromadske Radio is an independent Ukrainian radio station providing unbiased news, podcasts, and multimedia content focused on Ukraine and global events. The website serves as a digital platform for live broadcasts, podcasts, news articles, and videos, targeting a general audience interested in current affairs and cultural topics. The business operates in the media sector with a medium-sized footprint and was founded in 2017. The domain registration aligns well with the organization's identity and location in Ukraine. Technically, the website uses modern web technologies including Next.js and React, hosted with Cloudflare DNS services. It integrates multiple analytics and tracking tools such as Gemius, Microsoft Clarity, and Google Tag Manager, indicating a mature digital infrastructure. The site is mobile-optimized and offers good user experience and navigation clarity. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks DNSSEC and explicit security headers. There are no visible security or incident response policies published, and privacy compliance is weak due to the absence of privacy and cookie policies or consent mechanisms. Contact information is limited to phone numbers, with no email or contact forms detected. Overall, the website is professional and trustworthy with high business credibility but has room for improvement in privacy compliance and security policy transparency. Strategic recommendations include implementing privacy and cookie policies with consent, enhancing security headers, and publishing incident response contacts to strengthen user trust and regulatory compliance.

15
35
17
85
75
60
100
mediaradionewspodcastsukraine+2 more
ReactNext.jsCloudflare DNSGoogle Tag Manager+2
2025-07-10T04:36:59.272Z
thegivingblock.com favicon

The Giving Block

thegivingblock.com

70
Non-profitN/amediumMEDIUM

The Giving Block is a specialized platform empowering nonprofits to accept cryptocurrency, stocks, and donor-advised fund (DAF) donations. Founded in 2018, it has established itself as a leading service provider in the nonprofit crypto donation space, offering secure and compliant donation forms tailored to the needs of nonprofits and their donors. The website reflects a professional and consistent brand image, targeting nonprofits and crypto donors with clear messaging and structured data to enhance search visibility. Technically, the website is built on WordPress using the Divi theme, supplemented by a variety of marketing and analytics tools including HubSpot, Google Analytics, Microsoft Clarity, and Hotjar. The domain is registered with GoDaddy and uses Cloudflare for DNS, indicating a robust hosting and domain management setup. Mobile optimization and SEO practices are good, though accessibility features are basic. From a security perspective, HTTPS is enabled and domain status flags protect against unauthorized changes. However, the site lacks explicit security headers, published security policies, and vulnerability disclosure mechanisms. Privacy compliance is limited due to the absence of visible privacy and cookie policies or consent mechanisms. The extensive use of tracking and marketing scripts suggests a moderate to extensive user tracking level, which should be balanced with stronger privacy disclosures. Overall, the site is credible and professionally managed but would benefit from enhanced privacy and security transparency to improve compliance and user trust. Strategic recommendations include enabling DNSSEC, publishing comprehensive privacy and cookie policies, implementing security headers, and establishing a vulnerability disclosure program.

35
88
14
80
75
90
100
cryptodonationsnonprofitblockchaincryptocurrencydonations+3 more
WordPressDivi ThemejQueryHubSpot scripts+2
2025-07-10T04:36:01.673Z
zonercloud.com favicon

ZONER, s.r.o.

zonercloud.com

73
TechnologySlovakiamediumMEDIUM

ZonerCloud, operated by ZONER, s.r.o., is a Slovakia-based cloud services provider specializing in high-performance virtual private servers (VPS), managed hosting, email hosting, cloud storage, and AI/GPU server rentals. The company positions itself as a market leader in VPS performance within its region, leveraging partnerships with VMware and Microsoft to deliver reliable and scalable cloud infrastructure solutions. Their offerings target businesses and developers seeking affordable, powerful, and flexible cloud computing resources with rapid deployment times and strong uptime guarantees. Technically, the website demonstrates a mature digital infrastructure using modern web technologies such as Bootstrap, jQuery, and various UI/UX libraries. It integrates analytics and marketing tools including Google Analytics, Google Tag Manager, and Facebook Pixel, alongside a live chat support system. The site is well-optimized for mobile devices, features comprehensive cookie consent mechanisms, and employs HTTPS with a DigiCert SSL certificate, indicating a strong commitment to security and privacy. From a security perspective, while the site enforces HTTPS and uses secure forms with CSRF tokens, it lacks publicly available formal security policies or incident response disclosures. No critical vulnerabilities or exposed sensitive data were detected in the content. The absence of WHOIS registrant data slightly reduces trust but is mitigated by the professional presentation and trust signals such as certifications and partner logos. Overall, ZonerCloud presents a trustworthy and professional cloud service platform with strong business credibility and technical maturity. Strategic improvements in transparency around security policies and incident response, as well as WHOIS data availability, would further enhance trust and compliance posture.

95
73
25
40
90
75
100
cloudvpsvirtualservermanagedhostingemailhosting+3 more
BootstrapjQueryFontAwesomeIon RangeSlider+7
2025-07-10T04:35:01.222Z
wellcome.org favicon

Wellcome

wellcome.org

64
HealthcareUnited KingdomlargeMEDIUM

Wellcome is a globally recognized charitable foundation dedicated to advancing discovery research in life sciences, health, and wellbeing. The organization focuses on critical global health challenges including mental health, infectious diseases, and climate-related health issues. Their website reflects a mature digital presence with comprehensive content aimed at researchers, policymakers, and the public, supported by a professional design and clear navigation. The foundation operates with a transparent and user-friendly approach to privacy and cookie management, demonstrating compliance with GDPR and related regulations. Technically, the website leverages modern frameworks such as Next.js and React, hosted on AWS infrastructure, and integrates Google Tag Manager for analytics and marketing. The site is optimized for performance and mobile responsiveness, with good accessibility features. Security posture is strong with HTTPS enforcement and domain protections, though DNSSEC is not enabled and explicit security policies are not published. Overall, the security posture is solid with no evident vulnerabilities or exposed sensitive data. The WHOIS data confirms a long-standing domain registration consistent with the organization's history, using privacy protection appropriately. The site maintains a high level of trustworthiness and professionalism, supported by active social media channels and clear business information.

15
68
2
85
67
85
100
healthresearchcharityglobalhealthscience+4 more
ReactNext.jsGoogle Tag ManagerWeb Vitals

Partner Domains:

funding.wellcome.org
service
wellcomecollection.org
partner
2025-07-10T03:34:24.596Z
autoklub-servisni.cz favicon

Autoklub servisní s.r.o.

autoklub-servisni.cz

60
HospitalityCzech RepublicsmallMEDIUM

Autoklub servisní s.r.o. operates a historic event venue located in central Prague, offering rental spaces and catering services primarily targeting event organizers and corporate clients. The business leverages the unique appeal of a protected first republic style building, positioning itself as a niche hospitality provider with a focus on quality and tradition. The website reflects a professional and consistent brand image with clear service offerings and customer testimonials enhancing trust. Technically, the website is built on WordPress 5.7.2 with common modern web technologies including jQuery, Google Tag Manager, Google Analytics, and Smartlook for user behavior tracking. The site is mobile optimized and SEO friendly, though performance is moderate. Security posture is adequate with HTTPS enforced and cookie consent implemented, but lacks advanced security headers and explicit privacy or security policies. The absence of WHOIS data is a notable concern, reducing domain trustworthiness and raising questions about registration transparency. No contact emails or phone numbers are explicitly provided, limiting direct communication channels. Overall, the site is functional and professional but would benefit from enhanced privacy compliance and security practices. Strategically, the company should focus on improving transparency through WHOIS data, publishing comprehensive privacy and security policies, and implementing stronger security headers to bolster trust and compliance.

15
40
2
95
72
85
100
eventvenuecateringpraguehistoricbuildingconference+1 more
WordPress 5.7.2jQuery 3.4.1Google Tag ManagerGoogle Analytics+1
2025-07-10T03:31:26.480Z
tgbwidget.com favicon

The Giving Block

tgbwidget.com

58
Non-profitN/asmallMEDIUM

The Giving Block website serves as a platform enabling charitable donations via cryptocurrency and card payments. The business operates in the non-profit sector, targeting donors interested in leveraging modern payment methods for philanthropy. The platform is powered by The Giving Block brand and integrates third-party services such as Shift4 for card payments and Plaid for financial data connectivity. The website's content is minimal but consistent with its purpose, focusing on donation facilitation with clear branding and loading indicators. Technically, the site employs modern web technologies including React and Material-UI, with integrations for Google Tag Manager and Google reCAPTCHA enhancing analytics and security. Hosting is supported by Amazon AWS infrastructure as indicated by DNS records. Performance and mobile optimization are moderate to good, though accessibility and SEO optimizations are basic. The absence of explicit privacy, cookie, and terms of service policies is a notable gap. From a security perspective, the site uses HTTPS and includes anti-bot measures via reCAPTCHA. However, no explicit security headers such as CSP or HSTS were detected, and no vulnerability disclosure or security policy information is present. The WHOIS data is transparent and consistent with the business, showing no privacy protection or suspicious registration patterns. Overall, the security posture is moderate but could be improved with enhanced headers and policy disclosures. The overall risk assessment indicates a functional and legitimate platform with moderate security and compliance maturity. Strategic recommendations include implementing comprehensive privacy and cookie policies, adding security headers, publishing vulnerability disclosure information, and improving accessibility and SEO. These steps will enhance trust, compliance, and security posture, supporting the platform's mission in the charitable donation space.

40
35
2
60
100
60
100
charitycryptodonationnon-profitpayment+1 more
Google Tag ManagerShift4 payment integrationPlaid APIGoogle reCAPTCHA

Partner Domains:

thegivingblock.com
partner
shift4.com
partner

+1 more partners

2025-07-10T03:29:30.668Z
giftofthegivers.org favicon

Gift of the Givers Foundation

giftofthegivers.org

64
Non-profitSouth AfricalargeMEDIUM

Gift of the Givers Foundation is a well-established South African non-profit organization specializing in disaster response and humanitarian aid across Africa and beyond. With over 30 years of experience and operations in 45 countries, it holds a leading position as the largest African-origin disaster response NGO. The organization focuses on key services including disaster relief, hunger alleviation, water provision, healthcare, education, and human development, relying primarily on donations and partnerships to fund its activities. The website reflects a professional and consistent brand image, targeting donors, volunteers, and partners globally. Technically, the website is built on WordPress using modern plugins such as GiveWP for donations and WooCommerce components, supported by Google Analytics and Tag Manager for tracking. The site is mobile-optimized with good SEO practices and moderate performance. However, some accessibility features are basic, and there is room for improvement in security headers and DNSSEC implementation. From a security perspective, the site uses HTTPS with a valid SSL certificate and employs reCAPTCHA to protect forms. The domain is registered transparently with consistent WHOIS data matching the organization's identity and history. However, the absence of certain HTTP security headers and DNSSEC reduces the overall security posture. Privacy compliance is partial, with a privacy policy present but no visible cookie consent mechanism. Overall, the website is trustworthy, professionally maintained, and serves its mission effectively. Strategic improvements in security headers, DNSSEC, and privacy consent mechanisms would enhance its security and compliance standing.

15
58
17
70
85
85
100
non-profitdisasterresponsehumanitarianaiddonationssouthafrica+1 more
WordPressPHPjQueryGoogle Tag Manager+4

Partner Domains:

payfast.co.za
partner
paygate.co.za
partner

+2 more partners

2025-07-10T03:29:04.860Z
demch.co favicon

demch.co

demch.co

51
TechnologyUkrainesmallMEDIUM

demch.co is a Ukrainian-based web development company specializing in creating websites and digital services for non-profit organizations and social change initiatives. With over 12 years of experience and more than 300 projects completed, the company positions itself as a trusted partner for NGOs, government agencies, and international organizations. Their key services include full-cycle website development, consulting, technical support, branding, design, and animation. The website is professionally designed, mobile-optimized, and provides clear contact information, enhancing user trust and engagement. Technically, the site employs modern web technologies such as HTML5, CSS3, JavaScript, and popular libraries like jQuery, TweenMax, and AOS for animations. Google Analytics and Google Tag Manager are used for tracking, indicating a moderate level of user data collection. Hosting appears to be managed via NameCheap with custom DNS servers. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, it lacks DNSSEC and visible security headers, which are recommended to enhance security posture. No privacy, cookie, or terms of service policies are present, representing compliance gaps especially under GDPR. No incident response or vulnerability disclosure information is provided. Overall, the website is safe, professional, and trustworthy with a strong focus on serving the non-profit sector. Strategic improvements in privacy compliance and security hardening would further strengthen its position and reduce risk.

-
35
47
60
-
85
100
webdevelopmentnon-profitsocialchangeukrainedigitalservices+3 more
HTML5CSS3JavaScriptjQuery+6
2025-07-10T03:28:04.537Z
istra.hr favicon

Istria Tourist Board

istra.hr

54
HospitalityCroatiamediumMEDIUM

The website www.istra.hr serves as the official tourist website for the Istria Tourist Board, promoting the Istria region in Croatia. It provides comprehensive tourism information including accommodation, events, heritage, and nature activities targeting tourists and visitors interested in the Mediterranean region. The business operates as a regional tourism board with a medium-sized presence and has been established since 2012, consistent with the domain registration data. The website demonstrates a good level of digital maturity with modern web technologies, accessibility features, and SEO optimization. It uses a Laravel-based CMS inferred from session cookies and integrates multiple third-party services such as Facebook SDK, Google Tag Manager, Cookiebot for cookie consent, and MailerLite for marketing automation. Security posture is solid with HTTPS enforced and a detailed cookie consent mechanism, although explicit security headers could be more visible. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed through Cookiebot's consent management and links to a comprehensive privacy policy. However, no explicit terms of service or security policy pages were found. Overall, the website is professional, trustworthy, and well-aligned with its business purpose.

15
88
17
85
72
75
-
tourismistriatravelhospitalitycookieconsent+2 more
HTML5CSS3JavaScriptFacebook SDK+3
2025-07-10T03:26:08.964Z
demence.lu favicon

Info-Zenter Demenz

demence.lu

37
HealthcareLuxembourgsmallHIGH

Info-Zenter Demenz is a national information and consultation center based in Luxembourg, specializing in dementia and memory disorders. It serves affected individuals, their families, healthcare professionals, and the general public by providing free consultation services, educational events, and resources. The organization positions itself as a trusted authority in dementia care and information within Luxembourg, supported by government and community partnerships. The website is professionally designed, multilingual, and accessible, reflecting a strong commitment to user experience and inclusivity. Technically, the website is built on WordPress with modern web technologies including jQuery, Google Tag Manager, and Consent Magic for privacy compliance. Hosting is managed via EuroDNS nameservers, and the site employs HTTPS with reCAPTCHA for security. Accessibility features such as an accessibility toolbar are implemented, and SEO best practices are evident through structured data and meta tags. Security posture is solid with HTTPS and privacy consent mechanisms, though explicit security headers and a formal security policy are absent. No vulnerabilities or suspicious activities were detected. Privacy compliance is robust, with clear cookie and privacy policies and user consent management. Contact information is comprehensive and clearly presented. Overall, the website demonstrates a high level of professionalism, security awareness, and compliance, making it a trustworthy resource for its target audience. Strategic improvements could include adding explicit security headers and publishing a security incident response policy to further enhance trust and resilience.

15
25
17
70
-
85
-
healthcaredementiainformationconsultationnon-profit+1 more
WordPressjQueryGoogle Tag ManagerGoogle reCAPTCHA+3

Partner Domains:

inside-communication.lu
partner
2025-07-10T02:25:42.210Z
itameri.fi favicon

Suomen Ympäristökeskus

itameri.fi

65
GovernmentFinlandmediumMEDIUM

The website itameri.fi is an official Finnish government environmental portal managed by Suomen Ympäristökeskus (Finnish Environment Institute). It provides educational and informational content about the Baltic Sea, targeting the general public interested in environmental data, nature, and maritime conditions. The site offers multilingual support in Finnish, Swedish, and English, enhancing accessibility for a broader audience. The business model is informational and service-oriented, focusing on environmental awareness and data dissemination. Technically, the website is built on WordPress and employs modern web technologies including Google Tag Manager for analytics and CookieHub for cookie consent management. The site is mobile-optimized, accessible, and performs moderately well. Security posture is solid with HTTPS enforced and no exposed sensitive data, though DNSSEC is not implemented and some security headers could be improved. From a security and compliance perspective, the site lacks explicit privacy and terms of service pages, which slightly reduces privacy compliance scores. No contact emails or phone numbers are directly visible, which may impact user trust and support accessibility. The WHOIS data confirms the domain is legitimately registered to the Finnish Environment Institute with consistent registration details and a long domain age, indicating high legitimacy. Overall, the website is trustworthy, professionally maintained, and serves an important governmental informational role. Strategic improvements include publishing clear privacy and terms policies, enhancing DNS security with DNSSEC, and adding explicit security headers to strengthen the security posture further.

80
10
17
60
95
75
100
environmentbalticseagovernmenteducationnature+1 more
WordPressGoogle Tag ManagerCookieHubMercatorSSO+1
2025-07-10T02:23:41.124Z
syke.fi favicon

Suomen ympäristökeskus

syke.fi

65
GovernmentFinlandlargeMEDIUM

Suomen ympäristökeskus (Syke) is a Finnish governmental environmental research and expert center providing comprehensive environmental data, research, and services. The website serves as a portal for information about their activities, projects, publications, and open job positions, targeting environmental professionals, authorities, researchers, and the general public interested in environmental issues. The organization has a strong market position as a key national environmental authority in Finland, with a large operational size and a 30-year history. Technically, the website is built on Drupal 10, uses modern web technologies including SVG graphics, Google Tag Manager for analytics, and CookieHub for cookie consent management. The site is mobile-optimized, accessible, and SEO-friendly, with good performance characteristics. Security posture is solid with HTTPS, security headers, and no visible vulnerabilities, though explicit security policies and incident response information are not published. Overall, the site demonstrates a mature digital presence with strong privacy compliance and business credibility. The WHOIS data confirms the domain's legitimacy and consistency with the organization's identity. No suspicious or malicious indicators were found. Strategic recommendations include publishing explicit security and incident response policies, adding vulnerability disclosure mechanisms, and enhancing direct contact options for security matters.

65
10
17
85
95
60
100
environmentgovernmentresearchfinlandsustainability+1 more
Drupal 10Google Tag ManagerCookieHubSVG graphics
2025-07-10T02:23:15.984Z