Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157083
Websites
130
Industries
113
Countries
52
Avg Score
Page 786 of 3142|Showing 39251-39300 of 157083
webkit.org favicon

Apple Inc.

webkit.org

71
TechnologyUnited StatesenterpriseMEDIUM

WebKit.org is the official website for the WebKit open source web browser engine, primarily developed and maintained by Apple Inc. The site serves as a hub for developers and users interested in WebKit technology, providing downloads, documentation, blog posts, and policies. It holds a strong market position as the engine behind Safari and other Apple applications, targeting web developers and technology professionals. The business model revolves around open source development supported by Apple, emphasizing transparency and community contribution. Technically, the website is built on WordPress CMS with a custom theme, hosted on AWS infrastructure. It employs modern web technologies including SVG graphics, JavaScript, and CSS3, and is optimized for mobile devices with good accessibility and SEO practices. The site uses HTTPS with a valid SSL configuration and DNS hosted on AWS nameservers, though DNSSEC is not enabled. Analytics are performed via Shynet, a privacy-focused tracking service, but no cookie consent mechanism is present. From a security perspective, the site demonstrates good practices such as domain status locks and published security policies. However, it lacks some advanced security headers and explicit incident response contact details. No vulnerabilities or suspicious content were detected. Privacy compliance is partial, with a comprehensive privacy policy but no cookie consent banner. Overall, the site is professional, trustworthy, and secure, with room for improvement in privacy and security transparency. The overall risk assessment is low, with recommendations to enable DNSSEC, implement cookie consent, add security headers, and publish a security.txt file to enhance vulnerability disclosure and incident response. These steps would further strengthen the site's security posture and compliance, reinforcing trust among its developer and user community.

65
53
47
87
67
60
100
webkitappleopensourcebrowserenginesafari+1 more
WordPress 6.8.2AWS DNSSVG graphicsJavaScript+1
2025-10-20T23:06:03.944Z
igalia.com favicon

Igalia, S.L.

igalia.com

10
TechnologySpainmediumCRITICAL

Igalia, S.L. is a Spain-based open source consultancy specializing in innovative software development projects across multiple technology domains including browsers, multimedia, embedded Linux, and compilers. The company holds a strong market position with recognized expertise in WebKit, Chromium/Blink, Firefox, and GNU/Linux solutions, serving a global clientele. Their business model focuses on consultancy and software development services with a medium-sized organizational footprint. Technically, the website employs modern AMP HTML technology, ensuring fast performance and excellent mobile optimization. The site integrates analytics tools such as Piwik and Ahrefs, and demonstrates good SEO and accessibility practices. However, there is room for improvement in security headers and cookie consent mechanisms. From a security perspective, the site uses HTTPS and avoids exposing sensitive data or vulnerable libraries. The absence of WHOIS data is a concern for domain legitimacy but is mitigated by the professional and consistent website content and active community engagement. No forms collecting sensitive data were found, reducing privacy risks. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic improvements in security policies, cookie consent, and domain registration transparency would enhance trust and compliance.

-
-
-
-
-
-
-
opensourceconsultancytechnologywebdevelopmentembeddedsystems+5 more
AMP HTMLJavaScriptCSSPiwik Analytics+2
2025-10-20T23:05:58.936Z
B

Brian Kardell

bkardell.com

53
TechnologyN/asmallMEDIUM

Brian Kardell's website serves as a personal professional platform highlighting his role as a Developer Advocate at Igalia and his contributions to web standards and extensibility. The site features his writings, talks, and art, targeting web developers and technology enthusiasts interested in web standards and innovation. The business model is centered on personal branding, thought leadership, and community engagement rather than commercial transactions. Technically, the website employs modern web technologies including custom web components and CSS, hosted with DNS services via Cloudflare and domain registration through Squarespace. The site is moderately performant, mobile-optimized, and accessible, though it lacks some advanced SEO and security headers. There are no forms or data collection mechanisms, minimizing privacy risks. From a security perspective, the site uses HTTPS (implied by Cloudflare usage), but lacks DNSSEC and security headers, which are recommended for enhanced protection. No privacy or cookie policies are present, which limits GDPR compliance. No contact information or incident response channels are provided, which could hinder security communication. The domain registration is consistent and stable, supporting the site's legitimacy. Overall, the website is a well-maintained personal professional site with good content quality and business credibility but has room for improvement in privacy compliance and security hardening. Strategic recommendations include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and providing contact information for security incidents.

15
35
17
40
65
75
100
personalprofessionalwebstandardsdeveloperadvocateblog+2 more
Custom Web ComponentsCSSJavaScriptCloudflare DNS+1
2025-10-20T23:05:53.926Z
merci.ca favicon

Storck Canada

merci.ca

35
RetailCanadalargeHIGH

The merci.ca website represents the Canadian presence of the merci brand, a well-known European chocolate confectionery owned by Storck. The site offers product information, personalization options, crafting ideas, and links to social media and partner brands. The business model focuses on retail sales of chocolates as gifts, targeting a general consumer audience in Canada. The website is professionally designed with consistent branding and good content quality, supporting a positive user experience. Technically, the site is built on TYPO3 CMS with modern JavaScript frameworks and uses Piwik PRO for analytics with user consent mechanisms, indicating a mature digital infrastructure. The site is mobile optimized and accessible, with good SEO practices. However, some performance optimizations could be considered to improve loading speed. From a security perspective, the site enforces HTTPS and includes cookie consent banners, but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. The absence of WHOIS data for the domain reduces trust assessment confidence, though the website content aligns with a legitimate brand. Overall, the website presents a low-risk profile with good privacy compliance and business credibility. Strategic improvements in security transparency and WHOIS data availability would enhance trust and security posture.

-
-
-
40
-
60
100
mercichocolategiftretailconfectionery+3 more
TYPO3 CMSJavaScriptRequireJSPiwik PRO Tag Manager

Partner Domains:

www.toffifee.ca
partner
www.werthers-original.ca
partner

+1 more partners

2025-10-20T23:05:33.889Z
timac-agro.nl favicon

Timac Agro Nederland BV

timac-agro.nl

59
ManufacturingNetherlandsmediumMEDIUM

Timac Agro Nederland BV is a specialized company operating in the agricultural sector, focusing on plant nutrition and animal hygiene and nutrition products. The company is positioned as a specialist within the Dutch agricultural market and is a subsidiary of Groupe Roullier. Their website reflects a professional and consistent brand presence, targeting agricultural professionals and businesses in the Netherlands. The business model is primarily B2B, offering specialized products and expert advice to the agricultural industry. Technically, the website is built on WordPress CMS with modern plugins such as Yoast SEO, WPBakery Page Builder, and Slider Revolution. It integrates marketing automation tools like SharpSpring and uses Google Analytics for visitor tracking. The site is moderately performant, mobile-optimized, and SEO-friendly, with basic accessibility features. From a security perspective, the website enforces HTTPS and implements GDPR-compliant cookie consent mechanisms. While some security headers are not explicitly detected, no critical vulnerabilities or exposed sensitive data were found. The domain registration data is consistent with the business claims, showing a domain age appropriate for the company's history and no use of privacy protection, which supports legitimacy. Overall, the website demonstrates a good security posture, solid privacy compliance, and credible business information. Recommendations include enhancing security headers, enabling DNSSEC, and publishing a formal security policy to further strengthen trust and compliance.

15
55
2
70
85
65
100
agricultureplantnutritionanimalnutritiongdprwordpress+1 more
WordPressPHPJavaScriptYoast SEO plugin+5

Partner Domains:

roullier.com
parent
2025-10-20T23:05:18.714Z
x-trenink.cz favicon

Tréninkové pomůcky na hokej + testy a recenze | x-trenink.cz

x-trenink.cz

54
RetailCzech RepublicsmallMEDIUM

The website x-trenink.cz operates as a specialized Czech e-commerce platform focused on selling hockey training equipment and accessories. It offers a wide range of products including hockey goals, training boards, pucks, balls, player equipment, NHL merchandise, and clothing. The site targets hockey players and enthusiasts primarily in the Czech Republic, positioning itself as a niche retailer with tested and reviewed products. The business model is retail e-commerce with a focus on quality and customer trust through product testing and detailed descriptions. Technically, the website is built on the Shoptet e-commerce platform, utilizing common web technologies such as jQuery, Google Analytics, Google Tag Manager, and Facebook SDK. The site is moderately optimized for performance and mobile devices, with good SEO and basic accessibility features. Security is well implemented with HTTPS, CSRF protection on forms, and a cookie consent mechanism, though it lacks some advanced security headers and published privacy or terms of service pages. From a security perspective, the site shows a good baseline posture but could improve by adding security headers and formalizing privacy and incident response policies. The absence of WHOIS data for the domain is a concern for domain legitimacy verification, though the website content and operation appear professional and trustworthy. User tracking is moderate, with standard analytics and advertising pixels in use. Overall, the website presents a professional and trustworthy front for its niche market, but it should address privacy policy publication and domain registration transparency to enhance trust and compliance. Security improvements and formal policies would further strengthen its posture.

40
25
2
75
37
80
100
hockeytrainingequipmentsportsretaile-commerceczechrepublic
jQuery 1.11.3Google AnalyticsGoogle Tag ManagerFacebook SDK+2
2025-10-20T23:03:58.179Z
babalac.sk favicon

Babalác

babalac.sk

58
RetailSlovakiasmallMEDIUM

Babalác is a Slovak e-commerce retailer specializing in high-quality children's toys including Montessori, wooden toys, and magnetic building sets. The website targets parents and caregivers seeking educational and safe toys for young children. It maintains a niche market position with a focus on quality and customer satisfaction, supported by product reviews and bestseller indicators. The business model is primarily online retail with additional content such as a blog to engage customers. Technically, the website is built on the Shoptet e-commerce platform, leveraging modern JavaScript libraries and integrations with Google Analytics, Facebook Pixel, Hotjar, and other marketing tools. The site is mobile-optimized with good SEO and basic accessibility features. Performance is moderate with CDN usage and asynchronous script loading. Security posture is strong with HTTPS enforced, standard security headers, CSRF protection on forms, and no exposed sensitive data. Cookie consent mechanisms comply with GDPR, and privacy policies are comprehensive and accessible. However, the site lacks a dedicated security policy or incident response contact information, which could enhance trust and compliance. Overall, the website presents a low-risk profile with good business credibility and technical maturity. Strategic recommendations include publishing a security policy, establishing incident response contacts, enhancing accessibility, and maintaining up-to-date third-party libraries to mitigate potential vulnerabilities.

40
40
17
75
42
65
100
e-commercetoyschildrenslovakiagdpr+3 more
JavaScriptjQuery 1.11.3Google AnalyticsFacebook Pixel+4
2025-10-20T23:02:57.785Z
plenkylevne.cz favicon

PlenkyLevně.cz

plenkylevne.cz

58
RetailCzech RepublicsmallMEDIUM

PlenkyLevně.cz is a Czech Republic-based e-commerce retailer specializing in baby diapers, particularly the Dada brand, along with related baby care products such as wet wipes and monthly diaper packs. The website targets parents and caregivers seeking affordable and convenient baby care solutions. The business operates a niche online retail model with a clear focus on product variety by size and type, supported by a professional and user-friendly website. The site demonstrates compliance with GDPR and includes standard e-commerce features such as customer support contacts and cookie consent mechanisms. Technically, the website is built on the Shoptet e-commerce platform, leveraging modern JavaScript libraries, Google Analytics, Facebook SDK, and other marketing and tracking tools. The site is mobile-optimized with good navigation and SEO practices, although some accessibility features could be enhanced. Security posture is solid with HTTPS enforced and CSRF protections on forms, but could benefit from additional HTTP security headers. Overall, the website presents a trustworthy and professional online retail presence with no signs of blocking or WAF interference. The lack of WHOIS data due to privacy protection is common and does not detract from the site's legitimacy. Strategic recommendations include improving security headers and accessibility compliance to further strengthen the site's security and user experience.

40
40
2
70
52
80
100
e-commercebabyproductsdiapersczechrepublicretail+3 more
JavaScriptjQuery 1.11.3Google AnalyticsFacebook SDK+6
2025-10-20T23:02:52.735Z
2din.cz favicon

2din.cz s.r.o.

2din.cz

50
RetailCzech RepublicmediumMEDIUM

2din.cz s.r.o. is a Czech Republic-based company specializing in professional car audio upgrades and vehicle soundproofing services. The company operates an e-commerce platform offering a wide range of automotive audio products including speakers, subwoofers, amplifiers, and accessories, complemented by professional installation and diagnostic coding services. The website targets car owners and automotive enthusiasts primarily in the Czech market, positioning itself as a trusted local specialist with over a decade of experience and thousands of installations. Technically, the website is built on the Shoptet e-commerce platform and utilizes modern web technologies such as jQuery, Bootstrap Icons, Slick Carousel, and integrates multiple analytics and marketing tools including Google Analytics, Microsoft Clarity, Hotjar, and Facebook Pixel. The site is mobile-optimized with good SEO and accessibility features, although some accessibility aspects could be improved. The presence of cookie consent mechanisms and a comprehensive privacy policy indicates a good level of GDPR compliance. From a security perspective, the site enforces HTTPS and implements standard security best practices such as CSRF tokens in forms and cookie consent. However, it lacks a publicly available security policy or incident response information, and no vulnerability disclosure or security.txt file was found. The absence of WHOIS data for the domain is a notable gap, slightly reducing trustworthiness, although the website content and business information appear legitimate and professional. Overall, 2din.cz presents a solid business and technical profile with good security hygiene and privacy compliance. The main risk areas include the missing WHOIS data and lack of explicit security policies. Strategic recommendations include publishing security and incident response policies, implementing vulnerability disclosure mechanisms, enhancing accessibility, and maintaining regular audits of third-party scripts to ensure ongoing security and compliance.

40
25
17
60
-
80
100
e-commercecaraudiosoundproofingautomotiveaccessoriesprofessionalinstallation+1 more
jQueryBootstrap IconsSlick CarouselGoogle Tag Manager+7
2025-10-20T23:02:47.269Z
region-orlickehory.cz favicon

Orlické hory - ubytování | výlety | zážitky v Orlických horách

region-orlickehory.cz

58
HospitalityCzech RepublicsmallMEDIUM

The website www.region-orlickehory.cz serves as a regional tourism portal focused on the Orlické hory mountain area in the Czech Republic. It provides visitors with comprehensive tourist information, accommodation options, and tips for outdoor activities such as hiking, cycling, and skiing. The site facilitates online accommodation reservations, targeting tourists and visitors interested in this region. The business model centers on tourism promotion and accommodation booking services, positioning itself within the hospitality industry. The content is primarily in Czech and is well structured for its audience, though no explicit business registration or contact details are provided in the accessible content. Technically, the website is built on the Webnode CMS platform and employs a variety of third-party scripts including Google Analytics, Google Tag Manager, SumoMe, ShareThis, and Mailchimp for marketing and analytics purposes. The site uses Amazon CloudFront as a CDN for static assets. Performance is moderate with basic mobile optimization and accessibility features. SEO is adequately addressed with proper meta tags and keywords. From a security perspective, the site lacks visible security headers and does not present privacy or cookie policies, which are critical for GDPR compliance and user trust. The WHOIS lookup failed to retrieve domain registration details, which raises concerns about domain legitimacy and transparency. No WAF or blocking mechanisms were detected, and the site content is accessible without restrictions. The absence of contact information and security policies limits the site's trustworthiness from a security and compliance standpoint. Overall, the website is functional and relevant for its tourism purpose but requires improvements in security posture, privacy compliance, and transparency to enhance trust and meet regulatory standards.

35
25
2
70
85
85
100
orlickhorytourismaccommodationtravelczechrepublic+4 more
JavaScriptjQueryGoogle AnalyticsGoogle Tag Manager+4
2025-10-20T23:01:22.061Z