Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 78 of 99|Showing 3851-3900 of 4914
cricket-betting.com favicon

Cricket Betting | Match Predictions, Tips & Live Odds

cricket-betting.com

66
MediaN/asmallMEDIUM

Cricket-Betting.com is a specialized media platform focused on providing cricket match predictions, betting tips, live scores, and odds from leading sportsbooks. The website operates primarily as an affiliate marketing business, promoting various sportsbook partners such as Dafabet, 10CRIC, Parimatch, and Rajabets. It targets cricket betting enthusiasts and aims to be a leading source of cricket betting information. Technically, the site is built on modern web technologies including React and Next.js, hosted behind Cloudflare for performance and security. The site demonstrates good SEO and mobile optimization, providing a professional user experience. Security posture is solid with HTTPS enforced and domain locking in place, though DNSSEC is not enabled. However, the site lacks publicly accessible privacy and cookie policies, and no direct contact information or security incident response details are provided, which are areas for improvement. Overall, the domain is long-established and trustworthy, consistent with the business model and content. Strategic recommendations include publishing comprehensive privacy and cookie policies, enabling DNSSEC, and adding security and incident response information to enhance trust and compliance.

55
53
17
70
75
80
100
cricketbettingsportsbettingmatchpredictionsliveodds+2 more
ReactNext.jsCloudflare (DNS and CDN)Google Tag Manager+2

Partner Domains:

10cric.com
partner
dafabet.com
partner

+2 more partners

2025-07-05T22:34:17.218Z
fanduel.com favicon

Betfair Interactive US LLC

fanduel.com

74
FinanceUnited StatesenterpriseMEDIUM

FanDuel, operated by Betfair Interactive US LLC and a subsidiary of Flutter Entertainment plc, is a leading US-based online platform offering daily fantasy sports, sports betting, and online casino gaming. The website targets adult users in multiple US states where gambling is legal, providing a comprehensive suite of gaming products including sportsbook, casino, fantasy sports, horse racing betting, and streaming content via FanDuel TV. The platform is well-positioned in the market with extensive state coverage and a strong brand presence supported by partnerships with major payment providers and responsible gaming initiatives. Technically, the website leverages modern web technologies such as React and Next.js, integrates multiple analytics and marketing tools including Amplitude, Google Tag Manager, and various social media pixels, and employs a responsive design optimized for mobile devices. The site demonstrates good SEO practices and accessibility at a basic level, with fast to moderate performance. From a security perspective, FanDuel enforces HTTPS, implements key security headers, and shows no signs of exposed sensitive data or vulnerabilities. However, the absence of a visible cookie consent mechanism and explicit incident response contacts indicates areas for improvement in privacy compliance and security transparency. Overall, FanDuel presents a professional, trustworthy, and legally compliant online gambling platform with a mature digital presence. Strategic enhancements in privacy consent and incident response disclosures would further strengthen its security posture and regulatory compliance.

90
70
2
87
77
80
100
sportsbettingfantasysportsonlinecasinogamblingsportsbook+4 more
ReactNext.jsAmplitude AnalyticsGoogle Tag Manager+5

Partner Domains:

flutter.com
parent
tvg.com
partner
2025-07-05T20:20:18.537Z
T

TCS Velocorner

velocorner.ch

75
RetailSwitzerlandmediumMEDIUM

Velocorner.ch is a leading Swiss online marketplace specializing in bicycles, e-bikes, and related accessories. It operates under the reputable Touring Club Schweiz (TCS) brand, offering a trusted platform for both private sellers and dealers. The website provides a comprehensive catalog of over 37,000 bikes and accessories, supported by personal customer service via chat, email, and phone. Its market position as the #1 bike marketplace in Switzerland is reinforced by buyer and seller protection mechanisms and secure transaction processes. Technically, the website is built on modern web technologies including Next.js and React, ensuring fast performance and excellent mobile optimization. It integrates popular analytics and marketing tools such as Google Analytics, Google Tag Manager, and Facebook Pixel, while maintaining GDPR compliance through clear privacy and cookie policies. The site employs HTTPS with strong security headers, reflecting a mature security posture. Security-wise, Velocorner demonstrates good practices with no detected vulnerabilities or exposed sensitive data. However, it lacks a dedicated security policy or incident response page, which could enhance transparency and preparedness. The WHOIS data confirms the legitimacy of the domain, with consistent registrant information matching the business claims. Overall, Velocorner.ch presents a professional, secure, and user-friendly platform with strong business credibility. Strategic improvements could include publishing explicit security policies and incident response contacts to further strengthen trust and compliance.

95
68
17
75
75
80
100
bicyclee-bikemarketplaceswitzerlandretail+2 more
Next.jsReactApollo GraphQLChatra live chat+3

Partner Domains:

tcs.ch
partner
2025-07-05T20:17:12.710Z
C

City and County of San Francisco

sf.gov

57
GovernmentUnited StateslargeMEDIUM

The City and County of San Francisco operates SF.gov as its official government portal, providing residents, businesses, and visitors with access to a wide range of public services and information. The website features comprehensive content including services like job search, marriage licensing, birth certificate requests, and contact information for city staff. It also prominently displays profiles of elected officials, reinforcing its authoritative position as a government resource. The site targets a broad audience including local citizens, government employees, and businesses operating within San Francisco. Technically, SF.gov is built on modern web technologies including React and Next.js, with a CMS likely based on Wagtail. The site demonstrates excellent mobile optimization, accessibility, and SEO practices. It integrates Google Tag Manager and Google Analytics for user tracking and performance monitoring. The website is served over HTTPS with strong security headers, indicating a robust security posture. However, it lacks a visible cookie consent mechanism and explicit security or incident response policies, which are areas for improvement. From a security perspective, the site follows best practices such as enforcing HTTPS, implementing security headers, and avoiding exposure of sensitive data. No vulnerabilities or suspicious domains were detected. The WHOIS data is limited, showing no registrar or creation date, but this is typical for government domains using privacy protection. The domain's legitimacy is supported by consistent branding and official content. Overall, SF.gov presents a secure, professional, and trustworthy online presence for the San Francisco government. Strategically, the site should enhance privacy compliance by implementing a cookie consent banner and publishing clear security policies and incident response contacts. Adding a vulnerability disclosure or security.txt file would further improve transparency and trust. Regular audits of third-party scripts and tracking tools are recommended to maintain security and privacy standards. These steps will strengthen the site's compliance posture and user trust while maintaining its role as a critical public service platform.

20
53
17
85
67
30
100
governmentpublicservicescityportalsanfranciscoofficial+1 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics

Partner Domains:

careers.sf.gov
partner
www.sfbos.org
partner

+1 more partners

2025-07-05T19:05:13.276Z
mattel.com favicon

Mattel

mattel.com

70
RetailN/aenterpriseMEDIUM

Mattel is a globally recognized enterprise specializing in the manufacturing and retail of toys and entertainment products, including iconic brands such as Barbie, Hot Wheels, and Fisher Price. The website analyzed is the corporate 'About' page, providing an overview of the company's mission to empower childhood wonder and potential. The site targets parents, children, and toy consumers, positioning Mattel as a leader in the retail toy industry. The business model focuses on product manufacturing, brand licensing, and entertainment content creation. Technically, the website employs modern web technologies including React and Next.js frameworks, with content management facilitated by Builder.io and e-commerce elements linked to Shopify. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some performance optimizations could be enhanced. Google Tag Manager and UsableNet are used for analytics and accessibility enhancements respectively. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in the HTML content. However, no explicit security headers were detected in the provided content, and no privacy or cookie policies were found, indicating areas for compliance improvement. No forms or direct contact information were identified, limiting data collection risks but also reducing transparency. Overall, the website reflects a professional and trustworthy corporate presence consistent with Mattel's brand reputation. The absence of WHOIS data for the subdomain is typical and does not detract from legitimacy. Strategic recommendations include implementing comprehensive privacy and cookie policies, adding security headers, and publishing a vulnerability disclosure policy to enhance security posture and regulatory compliance.

30
85
17
80
75
90
100
matteltoysbarbiehotwheelsfisherprice+2 more
ReactNext.jsGoogle Tag ManagerUsableNet
2025-07-05T17:55:06.096Z
tirebuyer.com favicon

Tirebuyer

tirebuyer.com

65
RetailUnited StateslargeMEDIUM

Tirebuyer operates as a large-scale e-commerce platform specializing in the sale of tires and wheels, targeting vehicle owners seeking convenient online shopping solutions. The company boasts a vast network of over 18,000 installers, positioning itself as a leading retailer in the automotive aftermarket sector. Their business model focuses on providing a wide selection of tire brands and wheels, coupled with financing options and local installer delivery services, enhancing customer convenience and market reach. Technically, the website leverages modern web technologies including React and Next.js frameworks, supported by robust CDN services from Akamai. The site demonstrates excellent performance, mobile responsiveness, and SEO optimization, reflecting a mature digital infrastructure. Integration of analytics and marketing tools such as Google Tag Manager, Microsoft Clarity, and Listrak indicates a data-driven approach to user engagement and marketing. From a security perspective, the site enforces HTTPS with strong SSL configurations and employs security headers like Content-Security-Policy and X-Frame-Options, indicating adherence to best practices. However, the absence of a publicly available security policy, vulnerability disclosure, or incident response contact points to areas for improvement in transparency and security communication. Overall, Tirebuyer presents a professional and trustworthy online presence with strong business credibility and technical maturity. The lack of WHOIS data is a notable anomaly but does not detract significantly from the site's legitimacy based on content and operational indicators. Strategic enhancements in security policy disclosure and incident response readiness would further strengthen their security posture and customer trust.

50
58
2
85
67
80
100
e-commercetireswheelsautomotiveretail+1 more
ReactNext.jsGoogle Tag ManagerListrak+1
2025-07-05T16:52:56.215Z
cosmicjs.com favicon

Cosmic

cosmicjs.com

62
TechnologyN/amediumMEDIUM

Cosmic is a technology company specializing in a headless, API-first content management platform designed to empower developers and content teams to build and manage content-rich applications efficiently. Positioned as a leading SaaS provider in the headless CMS market, Cosmic offers a robust set of developer tools, AI-assisted content generation, and seamless integrations with popular frameworks. The website demonstrates a high level of professionalism, excellent design quality, and clear navigation, targeting developers and businesses seeking flexible content management solutions. Technically, the site leverages modern web technologies including React and Next.js, hosted on Vercel, ensuring fast performance and mobile optimization. The presence of Vercel Analytics indicates minimal user tracking with a focus on privacy compliance. Security best practices such as HTTPS enforcement and security headers are implemented, though the absence of a dedicated security policy and incident response information suggests room for improvement in transparency. The security posture is strong with no detected vulnerabilities or exposed sensitive data. However, the lack of WHOIS data for the domain cosmicjs.com raises concerns about domain registration legitimacy, which slightly impacts the overall trust score. Privacy and cookie policies are present and comprehensive, indicating good compliance with GDPR and related regulations. Overall, Cosmic presents a trustworthy and technically mature platform with a strong market position. Strategic recommendations include publishing detailed security and incident response policies, improving domain registration transparency, and enhancing business credibility through explicit contact information and certifications.

30
68
10
65
62
80
100
headlesscmsapi-firstcontentmanagementdevelopertoolssaas+2 more
ReactNext.jsJavaScriptGoogle Fonts+1
2025-07-05T16:47:34.044Z
cpr.org favicon

Colorado Public Radio

cpr.org

67
MediaUnited StatesmediumMEDIUM

Colorado Public Radio (CPR) is a well-established non-profit media organization providing news, classical music, indie music, and local radio programming primarily serving the Colorado region. The website demonstrates a strong market position as a trusted source for Colorado news and culture, offering multiple content streams including live radio, podcasts, and newsletters. CPR targets residents and listeners interested in regional news and cultural content, operating under a non-profit business model with a focus on public service broadcasting. Technically, the website is built using modern web technologies including React and Next.js, with integrations for various analytics and advertising platforms such as Google Analytics, Facebook Pixel, Chartbeat, and Pardot. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. The presence of cookie consent mechanisms and a comprehensive privacy policy indicates good privacy compliance. From a security perspective, CPR employs HTTPS with strong SSL configuration and multiple security headers, demonstrating adherence to best practices. However, there is no explicit security policy or incident response information publicly available, and WHOIS data is unavailable due to privacy protection, which is justified for this type of organization. No vulnerabilities or suspicious patterns were detected in the content or technical setup. Overall, CPR's website is professional, trustworthy, and well-maintained, with a high level of content quality and user experience. The main risks relate to the lack of publicly available security policies and incident response contacts, which could be improved to enhance transparency and trust. Strategic recommendations include publishing security policies, incident response contacts, and vulnerability disclosure information to strengthen security posture and stakeholder confidence.

50
58
17
80
65
80
100
newssportsisraelpalestinemilitary
ReactNext.jsTypekit FontsGoogle Tag Manager+6

Partner Domains:

donate.cpr.org
service
shop.cpr.org
service

+1 more partners

2025-07-05T12:12:40.939Z
duffel.com favicon

Duffel Technology Ltd.

duffel.com

71
TechnologyUnited KingdommediumMEDIUM

Duffel Technology Ltd. operates a sophisticated travel API platform enabling businesses, from startups to large enterprises, to search, book, and manage flights, stays, and travel ancillaries. Positioned as a leading technology provider in the travel sector, Duffel offers comprehensive developer tools, including client libraries and prebuilt components, facilitating seamless integration and user experience. The company is UK-based with a domain age consistent with its business maturity, and it maintains a professional online presence with strong branding and customer trust signals. Technically, the website leverages modern frameworks such as Next.js and React, hosted on Google Cloud infrastructure with Storyblok CMS for content management. The site is fast, mobile-optimized, and accessible, with good SEO practices. Security posture is solid with HTTPS enforcement and domain protection statuses, though DNSSEC is not enabled and no public vulnerability disclosure policy is found. Security-wise, Duffel demonstrates good practices but could enhance transparency by publishing incident response contacts and security.txt files. Privacy compliance is well addressed with clear policies and cookie consent mechanisms. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website reflects a mature, trustworthy business with a strong technical foundation and compliance awareness. Strategically, Duffel should consider enabling DNSSEC, formalizing vulnerability disclosure, and expanding incident response visibility to further strengthen security and trust. These steps will support continued growth and reassure enterprise clients of their commitment to security and compliance.

65
68
2
85
72
90
100
travelapiflightsstaystechnology+2 more
Next.jsReactNode.jsJavaScript+1
2025-07-03T21:12:48.496Z
manyvids.com favicon

ManyVids.com

manyvids.com

64
E-commerceN/alargeMEDIUM

ManyVids.com operates as a large-scale social e-commerce platform focused on adult content creators, enabling them to monetize their passions in a judgment-free environment. The platform positions itself as a one-stop-shop for diverse content creation freedom, targeting an adults-only audience. The website is professionally designed with consistent branding and good content quality, supporting a mature market segment within the adult entertainment industry. Technically, the site leverages modern web technologies including React and Next.js frameworks, hosted on AWS infrastructure with integrated AWS WAF for security. It employs analytics and logging tools such as Google Analytics, Datadog, and PostHog, with default user consent settings denying tracking, indicating some privacy awareness. Performance and mobile optimization are good, though accessibility features are basic. From a security perspective, the site enforces HTTPS and uses AWS WAF, but lacks visible security headers and explicit security policies or incident response contacts. The absence of privacy and cookie policies, as well as no vulnerability disclosure or security.txt files, indicates gaps in compliance and transparency. WHOIS data is unavailable, which reduces domain registration trustworthiness but does not necessarily imply illegitimacy given the site's professional presentation. Overall, ManyVids.com presents a mature, well-structured adult content platform with solid technical infrastructure but requires improvements in privacy compliance, security transparency, and contact information to enhance trust and regulatory adherence.

45
50
2
70
82
85
100
adultcontentmonetizatione-commercesocialplatformadultentertainment
ReactNext.jsDatadog LogsGoogle Analytics (gtag)+1
2025-07-03T03:59:15.925Z
civitai.com favicon

Civitai: The Home of Open-Source Generative AI

civitai.com

67
TechnologyN/amediumMEDIUM

Civitai is a technology-focused platform specializing in open-source generative AI models, particularly Stable Diffusion and Flux models. It serves a community of AI creators and enthusiasts by providing a marketplace and content sharing environment for AI-generated art, images, videos, and related resources. The platform is relatively new, founded in 2022, and positions itself as a niche leader in the generative AI space with active community engagement and marketplace features. Technically, the website is built on modern web technologies including React, Next.js, and Mantine UI, hosted and secured via Cloudflare infrastructure. The site demonstrates good performance, mobile optimization, and SEO practices. However, explicit privacy and cookie policies are not found, which is a gap in compliance and user transparency. From a security perspective, the site uses HTTPS and Cloudflare protections, with domain registration status indicating transfer protection. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of DNSSEC and explicit security policies or incident response contacts suggests room for improvement. Overall, Civitai presents a solid digital presence with a good security baseline but would benefit from enhanced privacy compliance and clearer contact and security policy disclosures to improve trust and regulatory adherence.

50
53
17
85
75
80
100
aigenerativeaistablediffusionfluxmodelscommunity+2 more
ReactNext.jsMantine UICloudflare DNS and hosting+1

Partner Domains:

buybuzz.io
partner
2025-07-01T22:10:53.640Z
mncsekuritas.id favicon

MNC Sekuritas

mncsekuritas.id

59
FinanceIndonesialargeMEDIUM

MNC Sekuritas is a well-established Indonesian financial services company specializing in securities brokerage and investment services. Founded in 2017 and operating under the MNC Group umbrella, it offers a range of services including equity trading, online trading platforms, fixed income products, investment banking, and market research. The company targets young investors and the general public interested in stock market investments, positioning itself as a trusted and active player in Indonesia's capital markets. The website reflects this with professional design, clear navigation, and comprehensive service information. Technically, the website is built using modern web technologies such as React and Next.js, hosted with Cloudflare DNS and CDN services, and integrates Google Analytics and Tag Manager for user tracking. The site is mobile-optimized and performs moderately well, though accessibility features could be improved. Security is robust with HTTPS enforced and DNSSEC enabled, but additional HTTP security headers and cookie consent mechanisms are recommended to enhance protection and compliance. From a security perspective, the site shows good maturity with no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms, which are important for transparency and trust in the financial sector. The WHOIS data confirms domain legitimacy with consistent registration details and appropriate domain age. Overall, MNC Sekuritas presents a professional and trustworthy online presence with solid technical infrastructure and security posture. Strategic improvements in privacy compliance, security policy transparency, and accessibility would further strengthen its position and user trust.

30
53
2
70
65
70
100
financeinvestmenttradingsecuritiesindonesia+1 more
ReactNext.jsGoogle AnalyticsCloudflare DNS+1

Partner Domains:

www.mncleasing.com
partner
www.mncasset.com
partner

+3 more partners

2025-07-01T22:09:28.103Z
gogobarauditions.com favicon

TEA MONEY MEDIA

gogobarauditions.com

57
MediaUnited StatessmallMEDIUM

GoGo Bar Auditions is an adult entertainment website specializing in Thai amateur pornographic content, featuring casting couch style videos and exclusive scenes. The business operates on a subscription model, offering full HD uncensored videos and mobile access to its members. The company behind the site is TEA MONEY MEDIA, based in the United States, with a domain registered since 2013, indicating a mature online presence. The site includes standard adult industry compliance badges such as RTA verification and 18 U.S.C. 2257 record-keeping statements, supporting its legitimacy within the adult content sector. Technically, the website is built using modern web technologies including Next.js and React, with external resources loaded from reputable CDNs and a hosting provider identified via nameservers as mojohost.com. The site is mobile-optimized and provides a good user experience with clear navigation and professional design. However, some technical improvements are recommended, such as implementing security headers and cookie consent mechanisms to enhance privacy compliance and security posture. From a security perspective, the site enforces HTTPS and has domain transfer protections in place, but lacks advanced HTTP security headers and explicit incident response contact information. No WAF or blocking mechanisms were detected, allowing full content access. Privacy policies and terms of service are hosted on a related support domain, but cookie policies and GDPR compliance indicators are minimal. The absence of direct company contact emails or phone numbers reduces business credibility slightly. Overall, GoGo Bar Auditions presents a legitimate adult content business with a stable technical foundation and moderate security posture. Strategic improvements in privacy compliance, security headers, and contact transparency would enhance trust and regulatory adherence. The site is clearly intended for adults only, with explicit content and age verification mechanisms in place.

20
53
17
60
62
75
100
adultpornthaicastingcouchsubscription+3 more
Next.jsReactFont AwesomeGoogle Fonts+1

Partner Domains:

support.teamoneymedia.com
partner
cdn.gcmembers.com
partner

+1 more partners

2025-07-01T19:51:29.176Z