Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 78 of 101|Showing 3851-3900 of 5032
goudenpiramide.nl favicon

Ministerie van Binnenlandse Zaken en Koninkrijksrelaties

goudenpiramide.nl

70
GovernmentNetherlandsmediumMEDIUM

Gouden Piramide is an official Dutch government website managed by the Ministry of the Interior and Kingdom Relations, dedicated to promoting and awarding excellence in public sector commissioning through the Gouden Piramide prize. The site targets government agencies, public sector organizations, architects, and contractors involved in public construction projects. It serves as an informational and news platform about the award and its nominees. Technically, the website is built using modern web technologies including React and Next.js, with a custom or proprietary CMS likely provided by the Dutch government. The site demonstrates good performance, mobile optimization, accessibility, and SEO practices. Security is robust with HTTPS enforced, multiple security headers, and no visible vulnerabilities. Privacy and cookie policies are comprehensive and GDPR compliant. The security posture is strong, with best practices observed in SSL configuration and script handling. However, explicit security policy and incident response information are not published, and a vulnerability disclosure policy is absent. Overall, the website is trustworthy, professional, and well-maintained, reflecting its government affiliation. Strategic recommendations include publishing a dedicated security policy, providing incident response contact channels, and implementing a vulnerability disclosure framework to enhance transparency and security readiness.

85
68
17
65
80
60
100
governmentawardpublicsectorarchitecturecommissioning
ReactNext.jsJavaScriptCSS
2025-07-07T20:29:18.053Z
beforeyoubuy.com.au favicon

Before You Buy Australia Pty Ltd

beforeyoubuy.com.au

64
Real EstateAustraliamediumMEDIUM

Before You Buy Australia Pty Ltd operates a professional online platform specializing in real estate compliance and due diligence services within Australia. The company offers key services including building and pest inspections, strata reports, contract reviews, and pool inspections, targeting property buyers, sellers, sales agents, and inspectors. The website is well-branded, consistent, and supported by customer testimonials and media presence, indicating a strong market position in the Australian real estate sector. Technically, the site leverages modern frameworks such as Next.js and React, integrates multiple analytics and marketing tools, and uses secure payment processing via Stripe. The site is performant, mobile-optimized, and accessible, reflecting a mature digital infrastructure. Security posture is good with HTTPS enforced and no visible vulnerabilities, though some security headers could be improved. Privacy and cookie policies are comprehensive and GDPR compliant, though direct contact emails and phone numbers are not publicly listed, relying on contact forms instead. WHOIS data is privacy protected but consistent with the business's Australian identity and legitimacy. Overall, the site presents a trustworthy and professional front with moderate to high security and privacy compliance.

60
53
2
75
72
65
100
realestatepropertyreportsbuildinginspectionstratareportcontractreview+4 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+4

Partner Domains:

realestate.com.au
partner
domain.com.au
partner

+3 more partners

2025-07-07T19:24:42.106Z
bullish.com favicon

Bullish Global

bullish.com

86
FinanceGibraltarlargeLOW

Bullish Global operates a regulated and audited cryptocurrency exchange platform offering institutional and advanced traders access to spot, derivatives, margin trading, and custody services. The company holds tier-1 licenses, is regulated by the Gibraltar Financial Services Commission, and is audited annually by Deloitte & Touche LLP. Bullish is recognized as a top-five global spot trading venue for Bitcoin, emphasizing its strong market position and liquidity. The platform targets institutional clients and professional investors, providing a unified trading account and API access for advanced trading features. Technically, Bullish employs a modern web infrastructure built on Next.js and React, hosted behind Cloudflare, with integrated analytics via Piwik PRO and Google Tag Manager. The website is fast, mobile-optimized, and accessible, reflecting a mature digital presence. Security practices include HTTPS enforcement, multi-layer custody safeguards, offline key management, and strict segregation of customer assets, supporting a high-security posture. The security posture is robust, with no detected vulnerabilities or exposed sensitive data. The company maintains full reserve backing of customer assets and enforces rigorous KYC/AML compliance. Privacy policies and cookie consent mechanisms are comprehensive and GDPR compliant. However, minor improvements such as enabling DNSSEC and publishing a security.txt file could enhance security transparency. Overall, Bullish presents a trustworthy, professional, and secure platform with strong regulatory compliance and a clear focus on institutional crypto trading. Strategic recommendations include enhancing DNS security, formalizing incident response contacts, and increasing transparency around data protection officer details to further strengthen trust and compliance.

80
100
73
85
75
85
100
cryptocurrencycryptoexchangebitcoinethereumregulated+2 more
ReactNext.jsCloudflarePiwik PRO analytics+1
2025-07-07T18:14:38.390Z
healthequitymatters.org.au favicon

Health Equity Matters

healthequitymatters.org.au

60
HealthcareAustraliamediumMEDIUM

Health Equity Matters is a national federation in Australia focused on HIV and LGBTIQA+ health equity, providing leadership, policy expertise, health promotion, and coordination for community organizations. The organization is recognized both nationally and internationally, with programs spanning Australia and the Asia-Pacific region. The website reflects a professional and consistent brand presence, targeting communities affected by HIV and stakeholders in health equity. Technically, the website is built using modern web technologies including React and Next.js, with integration of Stripe.js for payments and Google Tag Manager for analytics. The site is mobile-optimized and performs moderately well, though accessibility features could be enhanced. Security posture is strong with HTTPS enabled and no visible vulnerabilities, but security headers and explicit privacy and cookie policies are missing. The absence of WHOIS data due to privacy restrictions is noted but justified given the non-profit nature of the organization. No contact emails or phone numbers are explicitly provided on the site, which may impact user trust and privacy compliance. Social media presence is active and supports community engagement. Overall, the website is credible and trustworthy, serving its mission effectively, but would benefit from improved privacy compliance and clearer contact information to enhance user trust and regulatory adherence.

30
53
17
75
62
65
100
hivhealthequitylgbtiqaaustralianon-profit+3 more
ReactNext.jsStripe.jsSwiper.js
2025-07-07T15:50:32.946Z
yeswehack.io favicon

YesWeHack

yeswehack.io

75
TechnologyN/amediumMEDIUM

YesWeHack operates as a global bug bounty and vulnerability management platform, connecting organizations with a large community of ethical hackers to identify and remediate security vulnerabilities. The company positions itself as a leader in crowdsourced security testing, offering a suite of services including bug bounty programs, vulnerability disclosure policies, pentest management, and attack surface management. Their business model emphasizes pay-for-results and scalable security testing tailored to diverse IT and security needs. The website content is professional, well-structured, and targets organizations seeking to enhance their cybersecurity posture through innovative and collaborative approaches. Technically, the website leverages modern web technologies such as Next.js and React, ensuring fast performance, mobile optimization, and good accessibility. The presence of multiple tracking and marketing scripts indicates a mature digital marketing strategy, balanced with privacy compliance evidenced by comprehensive privacy and cookie policies with consent mechanisms. Security best practices are observed with HTTPS enforcement, security headers, and secure form handling, although explicit incident response contacts and security.txt files are not found. The security posture is strong with no visible vulnerabilities or exposed sensitive data. However, the absence of WHOIS data limits the ability to fully verify domain registration legitimacy, slightly impacting trust. Overall, YesWeHack presents a credible, professional, and secure platform with a strong market position in the cybersecurity industry.

30
68
75
85
72
80
100
bugbountyvulnerabilitymanagementcybersecurityethicalhackingpentest+2 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

dojo-yeswehack.com
partner
firebounty.com
partner

+2 more partners

2025-07-07T13:31:41.943Z
gelderland.nl favicon

Provincie Gelderland

gelderland.nl

74
GovernmentNetherlandslargeMEDIUM

Provincie Gelderland operates as the official regional government authority for the Gelderland province in the Netherlands, providing governance, economic development, environmental stewardship, and public services. The website serves residents, businesses, and stakeholders with comprehensive information on themes such as economy, nature, sustainability, politics, and infrastructure. It maintains a strong market position as a trusted government entity with a clear focus on regional development and citizen engagement. Technically, the website leverages modern web technologies including React and Next.js, ensuring a responsive and accessible user experience. Integration with services like Cookiebot and ReadSpeaker demonstrates a commitment to privacy compliance and accessibility. The site is well-structured with good SEO practices and mobile optimization. From a security perspective, the site enforces HTTPS, employs standard security headers, and avoids exposing sensitive data. However, it lacks a publicly available vulnerability disclosure policy and explicit incident response contacts, which are recommended for enhanced security posture. Overall, the site exhibits a mature security stance appropriate for a government website. The overall risk assessment is low, with no critical vulnerabilities or suspicious indicators detected. Strategic recommendations include publishing a vulnerability disclosure policy, enhancing incident response transparency, and continuous monitoring of third-party scripts to maintain privacy and security compliance.

65
83
17
85
85
70
100
governmentprovincialnetherlandspublicservicessustainability+4 more
ReactNext.jsJavaScriptCSS+4
2025-07-07T10:11:06.948Z
yeswehack.com favicon

YesWeHack

yeswehack.com

77
TechnologyN/amediumLOW

YesWeHack operates as a global bug bounty and vulnerability management platform, connecting organizations with a large community of vetted ethical hackers to identify and remediate security vulnerabilities. The company positions itself as a leader in crowdsourced security testing, offering a suite of services including bug bounty programs, vulnerability disclosure policies, pentest management, and attack surface management. Their business model emphasizes pay-for-results and scalable security testing tailored to organizational needs. Technically, the website is built on modern web technologies including React and Next.js, with integrations for marketing and analytics tools such as HubSpot, Google Tag Manager, and LinkedIn Insight Tag. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. Privacy and cookie policies are comprehensive and include consent mechanisms, indicating attention to regulatory compliance. From a security perspective, the site enforces HTTPS, employs multiple security headers, and integrates secure forms via HubSpot. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a security.txt file and explicit incident response contact information are areas for improvement. The WHOIS data is unavailable in the provided raw output, which slightly impacts transparency but does not detract significantly from the site's legitimacy given the professional content and trust signals. Overall, YesWeHack demonstrates a strong security posture, a professional and user-friendly web presence, and a credible business model in the cybersecurity domain. Strategic recommendations include enhancing transparency with public security contact channels and maintaining vigilance on third-party script security.

30
83
75
85
72
80
100
bugbountyvulnerabilitymanagementcybersecurityethicalhackingpentest+2 more
ReactNext.jsJavaScriptCSS+6

Partner Domains:

firebounty.com
partner
zerodisclo.com
partner

+3 more partners

2025-07-07T10:06:40.871Z
palidziba.com favicon

IT Atbalsts

palidziba.com

54
TechnologyN/asmallMEDIUM

The website www.palidziba.com presents itself as an IT support service platform primarily offering remote assistance tools such as Rust desk, AnyDesk, and TeamViewer Quick Support for download. The site targets businesses or individuals seeking IT support, providing direct contact via email and phone. However, the website content is minimal and lacks comprehensive business information, privacy policies, or terms of service. The WHOIS data for the domain is unavailable, raising concerns about domain registration legitimacy. Technically, the website is built using modern web technologies including Next.js and React, indicating a contemporary development approach. The site is moderately optimized for mobile devices and has basic SEO and accessibility features. However, there is no evidence of advanced security headers or HTTPS verification from the provided data, which limits the security posture assessment. From a security perspective, the absence of privacy and cookie policies, lack of security headers, and missing WHOIS registration details are notable weaknesses. No forms or analytics scripts are present, reducing data collection risks but also limiting user engagement and tracking capabilities. Overall, the site appears functional but lacks critical compliance and security features, resulting in a moderate risk profile. Strategically, the website should prioritize establishing clear domain registration legitimacy, implementing HTTPS and security headers, and publishing privacy and cookie policies to enhance trust and compliance. Adding incident response and vulnerability disclosure information would further strengthen security posture and user confidence.

30
50
2
60
69
75
100
itsupportremoteassistancetechnologynextjscontact
Next.jsReactJavaScript
2025-07-07T09:29:54.762Z
A

Afonso Digitalbyrå & Webbyrå

afonso.se

56
TechnologySwedensmallMEDIUM

Afonso Digitalbyrå & Webbyrå is a Stockholm-based digital agency specializing in headless e-commerce, web design, and app development. Established since 2008, the company has served over 100 clients, delivering award-winning digital solutions that drive business value and brand growth. Their key services include UX/UI design, WooCommerce development, backend systems, and mobile app creation, targeting businesses seeking to enhance their online presence and sales capabilities. The agency leverages modern technologies such as WordPress, Next.js, Laravel, and React, demonstrating a mature technical infrastructure with fast performance and excellent mobile optimization. From a security perspective, the website employs HTTPS with a strong SSL configuration and uses Cookiebot for GDPR-compliant cookie consent management. However, it lacks visible security headers and published security policies or incident response contacts, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected. The domain registration is consistent with the business claims, showing a long-standing presence and trustworthy legitimacy. Overall, the website presents a professional, well-structured, and secure digital agency platform with strong business credibility. The absence of privacy and terms of service pages slightly impacts privacy compliance scores. Strategic enhancements in security policy transparency and DNS security would further strengthen their security posture and trustworthiness.

30
25
17
55
72
65
100
digitalagencywebdesignheadlessecommerceappdevelopmentsweden+4 more
WordPressWooCommercePHPNuxt+8
2025-07-07T08:58:02.969Z
autexglobal.com favicon

Autex

autexglobal.com

61
OtherNew ZealandlargeMEDIUM

Autex is a New Zealand-based company specializing in the design and supply of acoustic panels and insulation products. The company positions itself as a leader in the acoustic solutions market in New Zealand, emphasizing sustainability and carbon-neutral products. Their website showcases a modern, professional design with detailed product information and project case studies, targeting architects, builders, designers, and consumers seeking acoustic solutions. The technical infrastructure is built on modern web technologies including Next.js and React, with integrations for analytics and marketing tools such as Google Tag Manager, Hotjar, Facebook Pixel, and HubSpot. The website is well-optimized for SEO, mobile responsiveness, and accessibility, providing a fast and user-friendly experience. Security posture is good with HTTPS enforced and no obvious vulnerabilities, though explicit security headers and published security policies are absent. Privacy compliance is limited due to missing privacy and cookie policies and consent mechanisms. The absence of WHOIS data reduces domain trustworthiness, suggesting the domain may be new or privacy protected, which warrants further verification. Overall, the website reflects a credible and professional business presence with room for improvement in privacy and security transparency.

15
68
2
85
82
60
100
acousticpanelscarbonneutralsustainabilitynewzealandinsulation+2 more
ReactNext.jsGoogle Tag ManagerHotjar+4
2025-07-07T04:25:37.742Z
special.com.au favicon

SPECIAL GIFT CARDS (AUSTRALIA) PTY LTD

special.com.au

62
RetailAustraliasmallMEDIUM

Special Gift Cards is an Australian-based e-commerce platform specializing in the sale and distribution of gift cards usable across a wide range of retailers both online and in physical stores. Founded in 2022, the company targets Australian consumers and businesses seeking convenient gifting solutions. The website demonstrates a professional design and consistent branding, supporting a positive user experience and clear navigation. The business operates in the retail sector with a niche focus on gift cards, leveraging partnerships with retailers and digital marketing channels to reach its audience. Technically, the website is built using modern web technologies including React and Next.js, supported by Cloudflare DNS and CDN services. It integrates multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, Braze, RudderStack, and Smartlook, indicating a mature digital infrastructure. Mobile optimization is good, and SEO practices are adequately implemented, although accessibility features are basic. From a security perspective, the site enforces HTTPS and uses domain transfer protection, but lacks DNSSEC and security headers which could enhance its security posture. No explicit security or incident response policies are published, and cookie consent mechanisms are absent, representing potential compliance gaps with GDPR. The domain registration is privacy protected but consistent with a legitimate small business profile. Overall, the website is trustworthy and professionally managed with a solid business model and digital presence. Strategic improvements in security headers, DNSSEC, and privacy compliance would further strengthen its security posture and regulatory adherence.

15
53
2
70
100
75
100
giftcardsretaile-commerceaustraliadigitalmarketing+2 more
ReactNext.jsGoogle AnalyticsGoogle Tag Manager+5

Partner Domains:

special.freshdesk.com
service
2025-07-07T02:02:45.756Z
gokickflip.com favicon

Kickflip

gokickflip.com

65
TechnologyN/amediumMEDIUM

Kickflip is a technology company specializing in product configurator software designed to enhance ecommerce businesses by enabling customers to visually customize products. The company offers seamless integrations with major ecommerce platforms such as Shopify, WooCommerce, and Wix, positioning itself as a scalable and user-friendly solution in the visual product customization market. Founded in 2021, Kickflip targets ecommerce retailers seeking to increase customer engagement and sales through personalized shopping experiences. The website infrastructure leverages modern technologies including ReactJS, Next.js, and TypeScript, hosted on AWS with a headless CMS (Storyblok). It employs a comprehensive set of marketing and analytics tools such as Google Analytics, Microsoft Clarity, HubSpot, and Visual Website Optimizer, indicating a mature digital marketing strategy. The site is well-optimized for performance, mobile responsiveness, and SEO, providing an excellent user experience. From a security perspective, the site enforces HTTPS with strong security headers and domain registration protections. However, it lacks publicly available security policies, incident response plans, and vulnerability disclosure mechanisms, which are areas for improvement. No critical vulnerabilities or exposed sensitive data were detected, and the domain registration data aligns well with the business claims, supporting the site's legitimacy. Overall, Kickflip presents a professional and trustworthy online presence with strong technical foundations and business credibility. Strategic enhancements in security transparency and DNS security would further strengthen its security posture and compliance standing.

15
53
17
85
77
85
100
productconfiguratorecommercecustomizationsaasshopify+3 more
ReactJSTypeScriptNext.jsGoogle Tag Manager+10
2025-07-06T23:48:02.365Z
D

Dutton One

duttonone.com.au

58
TransportationAustralialargeMEDIUM

Dutton One is a well-established Australian used prestige car dealership operating under the larger Dutton Group umbrella. The company offers a wide range of luxury used cars across multiple locations in Australia, targeting middle-tier consumers seeking accessible prestige vehicles. Their business model includes vehicle sales, concierge services, and finance lending options, supported by a national network of 17 dealerships. The website reflects a professional and consistent brand image with good content quality and user experience. Technically, the website is built using modern frameworks such as Next.js and React, hosted on AWS infrastructure. It employs Google Tag Manager and other tracking scripts for analytics and marketing. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Performance is moderate, with room for improvement in loading speed and accessibility. From a security perspective, the site uses HTTPS and shows no exposed sensitive data. However, it lacks important security headers and published security policies or incident response information. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or GDPR compliance indicators. WHOIS data confirms domain legitimacy and consistent registration practices. Overall, the website is credible and professional but would benefit from enhanced security practices and privacy compliance measures to improve trust and regulatory adherence.

15
53
2
65
77
70
100
usedcarsluxurycarscardealershipprestigecarsaustralia
ReactNext.jsGoogle Tag Managertrkcall.com tracking script
2025-07-06T20:23:47.866Z
dnatatravel.com favicon

dnata Travel

dnatatravel.com

61
HospitalityN/alargeMEDIUM

dnata Travel operates as a large-scale online travel agency offering a wide range of services including hotel bookings, flights, flight & hotel packages, and transfers. The website targets travelers seeking convenient and comprehensive travel solutions, leveraging partnerships with over 275,000 hotels and 100 airlines. The platform is branded consistently with dnata, a recognized name in the travel industry, suggesting a strong market position within the hospitality and transportation sectors. Technically, the website is built using modern frameworks such as Next.js and React, with integrations for Google Tag Manager, DataDome for bot protection, and OneTrust for cookie consent management. The site demonstrates good mobile optimization, SEO practices, and moderate performance. Security measures include HTTPS enforcement and standard security headers, though explicit security policies and incident response details are not published. The security posture is solid with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms, aligning with GDPR requirements. However, the absence of WHOIS registration data raises concerns about domain legitimacy and ownership transparency, which impacts overall trust. Overall, dnata Travel presents a professional and trustworthy online travel booking platform with strong technical and security foundations. Strategic recommendations include publishing detailed security and incident response policies, establishing a vulnerability disclosure program, and improving domain registration transparency to enhance trust and compliance.

15
53
17
75
67
80
100
travelbookingflightshotelsholiday+1 more
ReactNext.jsGoogle Tag ManagerDataDome (bot protection)+1
2025-07-06T18:07:45.427Z