Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 8 of 155|Showing 351-400 of 7749
infozagreb.hr favicon

Turistička Zajednica Grada Zagreba

infozagreb.hr

52
HospitalityCroatiamediumMEDIUM

The website www.infozagreb.hr serves as the official tourism portal for the city of Zagreb, Croatia, managed by the Turistička Zajednica Grada Zagreba. It provides comprehensive information about the city's cultural heritage, attractions, events, accommodation, and lifestyle, targeting tourists and visitors. The site is well-positioned as a trusted source for Zagreb tourism, offering detailed guides and multimedia content to enhance visitor experience. Technically, the website employs modern web technologies including React and Cloudflare services for DNS and CDN, ensuring moderate performance and good mobile optimization. The site structure and navigation are clear, with SEO-friendly metadata and structured data enhancing search visibility. However, accessibility features could be improved. From a security perspective, the site uses HTTPS and benefits from Cloudflare's infrastructure, but lacks explicit security headers and formal security policies. There is no visible privacy or cookie policy, nor incident response or vulnerability disclosure information, which are areas for improvement to enhance compliance and trust. Overall, the website is professional and trustworthy with a strong business credibility score. The absence of privacy and cookie policies and limited security headers slightly reduce the security and privacy posture. Strategic enhancements in these areas would improve compliance and user trust.

60
10
17
85
62
85
20
zagrebtourismcroatiatravelguideculture+1 more
ReactCloudflare DNSCSSJavaScript
2025-10-31T14:27:58.138Z
C

CMS Legal Services EEIG

cms-hs.com

69
OtherGermanylargeMEDIUM

CMS Legal Services EEIG operates an international law firm website focused on Germany, providing a wide range of legal and tax advisory services. The firm targets business clients requiring expertise in areas such as corporate law, banking, compliance, dispute resolution, and various industry sectors including automotive, energy, and healthcare. The website reflects a mature and professional market position with multiple offices in Germany and abroad, supporting a large enterprise scale. Technically, the website employs modern web technologies including Bootstrap for responsive design, Piwik PRO for analytics, and is hosted behind Cloudflare DNS services. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some security headers and DNSSEC are not enabled, indicating room for improvement in security hardening. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks visible security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or blocking mechanisms were detected, and the domain WHOIS data aligns well with the business identity, supporting legitimacy. Overall, the website presents a trustworthy and professional digital presence for CMS Legal Services EEIG, with recommendations to enhance privacy compliance, security policies, and DNS security to further strengthen its posture.

85
70
95
100
2
75
47
lawlegaltaxgermanyinternational+2 more
JavaScriptYouTube iframe APIPiwik PRO analyticsBootstrap (offcanvas components)+1
2025-10-31T14:23:53.966Z
A

Ably

ably.com

74
TechnologyN/amediumMEDIUM

Ably is a mature and well-established realtime platform founded in 2002, specializing in streaming data instantly between services and end-user devices. It offers a suite of developer-focused products such as Ably Pub/Sub, Chat, LiveObjects, and LiveSync, targeting businesses that require scalable, reliable, and low-latency realtime messaging infrastructure. The company positions itself as a leader in the realtime messaging market, supporting over 2 billion connected devices monthly with a strong uptime record. Technically, the website is built on modern frameworks like Gatsby and React, hosted with Cloudflare DNS and Amazon Registrar, and integrates various marketing and analytics tools including Google Tag Manager, Intercom, and HubSpot. The site is fast, mobile-optimized, and accessible with a professional design and clear navigation. Security-wise, the site enforces HTTPS, implements security headers, and uses domain status locks to prevent unauthorized changes. However, DNSSEC is not enabled, and no explicit privacy policy or terms of service pages were found, which are areas for improvement. Contact information is limited to a contact form without direct emails or phone numbers. Overall, Ably demonstrates a strong security posture and business credibility, but could enhance privacy compliance and transparency to further build trust.

60
88
47
75
57
80
100
realtimemessagingchatpubsubtechnology+4 more
ReactGatsbyCloudflare DNSOneTrust (cookie consent)+4
2025-10-31T14:21:21.518Z
signal.me favicon

Signal

signal.me

61
TechnologyUnited StateslargeMEDIUM

Signal is a well-established nonprofit organization providing a secure, privacy-focused messaging platform widely recognized for its strong encryption and open-source approach. The website signal.me serves as a contact and redirect landing page, linking users to the main signal.org domain and app download resources. The business is positioned as a leader in secure communications, targeting privacy-conscious users globally. The domain and website content align with the organization's mission and market presence. Technically, the site uses modern CSS frameworks like Bulma and JavaScript, hosted behind Cloudflare DNS services. The site is mobile optimized with responsive navigation and basic accessibility features. However, some security best practices such as DNSSEC and security headers are not implemented on this domain. The site uses HTTPS with good SSL configuration, ensuring secure connections. From a security perspective, the website shows good domain registration protections and no visible vulnerabilities or exposed sensitive data. Privacy compliance is strong on the main domain, though this subdomain lacks explicit cookie consent mechanisms. No forms or tracking scripts are present, minimizing data collection risks. Contact information is limited to a media inquiry email, with no phone or physical address listed. Overall, the website is trustworthy, professional, and safe for general audiences. Recommendations include enabling DNSSEC, adding security headers, and publishing a vulnerability disclosure policy to enhance security posture and transparency.

30
53
2
80
57
85
100
securemessagingprivacynonprofitcontactsignal
Bulma CSSJavaScriptCloudflare DNS
2025-10-31T14:21:06.480Z
adscale.de favicon

Ströer SSP GmbH

adscale.de

10
MediaGermanylargeCRITICAL

Ströer SSP GmbH operates a sophisticated supply-side platform (SSP) that enables publishers to optimize their digital advertising inventory across display, video, and mobile channels. The platform supports private deals, private auctions, and real-time advertising, providing advertisers access to premium inventory with strong brand safety and anti-fraud measures. The company is positioned as a leading player in the German digital advertising market, supported by its parent company Ströer Digital Group. The website reflects a professional and business-focused approach, targeting publishers and advertisers seeking programmatic advertising solutions. Technically, the website is built on TYPO3 CMS and integrates privacy-conscious tools such as Cookiebot for consent management and Matomo for analytics with DoNotTrack enabled. Hosting and DNS services are provided via Cloudflare, enhancing performance and security. The site demonstrates good mobile optimization and SEO practices, though accessibility could be improved. Security headers are partially implemented, and HTTPS is enforced, indicating a solid security posture. From a security perspective, the site employs best practices including cookie consent with blocking mode, privacy-focused analytics, and brand safety commitments. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security headers like Content-Security-Policy and X-Frame-Options could be added to strengthen defenses. Incident response and security policy information are not publicly disclosed on the analyzed page. Overall, the website presents a trustworthy and professional digital advertising platform with good privacy compliance and security awareness. Strategic recommendations include enhancing security headers, improving accessibility, and publishing incident response contacts to further build trust and compliance.

-
-
-
-
-
-
-
digitaladvertisingsspprogrammaticadvertisingcookieconsentprivacy+2 more
TYPO3 CMSMatomo AnalyticsCookiebot Consent ManagementCloudflare DNS+2
2025-10-31T12:20:14.391Z
praguemorning.cz favicon

Prague Morning - Czech Republic's biggest media outlet in English

praguemorning.cz

56
MediaCzech RepublicmediumMEDIUM

Prague Morning is a prominent English-language media outlet based in the Czech Republic, established in 2016. It serves as the largest English news source in the country, targeting English-speaking residents and visitors interested in local news and events. The website offers news publishing services with monetization primarily through advertising and subscription-based premium content. The business maintains a consistent brand presence and leverages social media platforms to engage its audience. Technically, the website is built on WordPress CMS using Elementor for page building and Yoast SEO for search engine optimization. It integrates modern web technologies including jQuery and Google Analytics for tracking. Hosting utilizes Cloudflare DNS services, and the site employs HTTPS with good SSL configuration. Advertising is managed through Google Adsense and Vidverto, with multiple tracking and marketing tools embedded. From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA for form protection. However, it lacks published privacy, cookie, and terms of service policies, which are critical for GDPR compliance and user trust. No explicit incident response or vulnerability disclosure policies are available. Security headers are assumed but not explicitly confirmed in the HTML content. Overall, the security posture is moderate but could be improved with clearer policies and enhanced security controls. The website content is safe for general audiences, with no adult or questionable material detected. WHOIS data confirms the domain's legitimacy and consistent registration since 2016, aligning with the business's operational history. Strategic recommendations include publishing comprehensive privacy and cookie policies, adding terms of service, implementing a vulnerability disclosure program, and enhancing accessibility and security headers to improve compliance and trust.

15
45
2
70
57
80
100
newsmediaenglishczechrepublicprague+3 more
WordPressElementorjQueryGoogle Analytics+3
2025-10-31T12:01:28.856Z
studo.co favicon

Studo GmbH

studo.co

75
EducationAustriamediumMEDIUM

Studo GmbH is a medium-sized technology company specializing in digital solutions for students and higher education institutions, primarily in Austria and neighboring countries. Their flagship product, the Studo Campus App, supports over 500,000 daily users and offers a suite of services including digital campus cards, workload measurement, and administrative tools. The company positions itself as a trusted partner for universities, emphasizing quality, sustainability, and personal collaboration since its founding in 2016. Technically, the website demonstrates a mature and modern infrastructure leveraging Cloudflare DNS and CDN services, Piwik PRO for analytics, and optimized assets such as WebP images. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a high level of digital maturity. Security practices include HTTPS enforcement, TÜV SÜD certification covering data protection and software quality, and annual accessibility audits, though some improvements like DNSSEC and security.txt publication are recommended. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and GDPR consent on forms, although a visible cookie consent banner is missing. Business credibility is reinforced by multiple trust indicators including certifications, testimonials from university officials, and awards. Overall, the website and business present a low-risk profile with strong professionalism and trustworthiness. Strategic recommendations include enhancing DNS security, publishing vulnerability disclosure information, and implementing explicit cookie consent mechanisms to further improve compliance and security posture.

55
65
35
98
72
85
100
educationtechnologystudentappdigitalcampusuniversitysolutions+3 more
JavaScriptCloudflare DNSPiwik PRO analyticsWebP images+2
2025-10-31T11:44:37.352Z
A

Ably

ably-realtime.com

74
TechnologyN/amediumMEDIUM

Ably is a mature and established realtime platform company founded in 2002, specializing in scalable, reliable, and low-latency realtime data streaming and messaging services. Their platform supports a broad range of realtime applications including live messaging, chat, dashboards, notifications, and collaborative apps. The company positions itself as a leader in the realtime pub/sub market, serving over 2 billion connected devices monthly with a strong uptime record. Their business model is SaaS-based with usage-based pricing tiers including Free, Standard, Pro, and Enterprise plans, targeting developers and businesses requiring realtime infrastructure. Technically, the website is built on modern frameworks such as Gatsby and React, hosted with Cloudflare DNS and Amazon Registrar, and integrates marketing and analytics tools like HubSpot, Intercom, and Google Tag Manager. The site is fast, mobile-optimized, and accessible with good SEO practices. Security posture is strong with HTTPS, security headers, and enterprise-grade compliance such as SOC 2 and HIPAA BAA, although DNSSEC is not enabled and explicit security policies or incident response contacts are not published. Privacy compliance is partially addressed with a cookie consent mechanism but lacks a clearly linked privacy policy or terms of service on the homepage. Overall, Ably demonstrates a high level of professionalism, technical maturity, and business credibility with minor gaps in explicit privacy and security disclosures.

60
88
47
75
57
80
100
realtimemessagingpubsubchatcollaboration+3 more
ReactGatsbyCloudflare DNSGoogle Tag Manager+3
2025-10-31T10:04:36.485Z
warpcast.com favicon

Merkle Manufactory

warpcast.com

58
TechnologyN/asmallMEDIUM

Farcaster.xyz operates as a decentralized social network and crypto wallet platform, targeting crypto enthusiasts and digital asset traders. The business is positioned as a niche social network that facilitates discovery, trading, and creation within the crypto ecosystem. The company behind the site is Merkle Manufactory, founded in 2021, with a small-sized operation focused on technology innovation in blockchain social networking. The website promotes app downloads for iOS and Android, indicating a multi-platform presence. Technically, the website employs modern web technologies including React, Google Fonts, and Fathom Analytics for lightweight user tracking. Hosting and DNS services are provided via Cloudflare, ensuring good performance and security at the infrastructure level. The site is mobile-optimized with good design quality and user experience, although accessibility features are basic. SEO optimization is present but minimal. From a security perspective, the site uses HTTPS and has domain transfer protections enabled. However, it lacks DNSSEC, explicit security headers, and a cookie consent mechanism, which are areas for improvement. No contact or incident response information is provided, limiting transparency in security governance. The privacy policy exists but is basic and does not explicitly confirm GDPR compliance. No vulnerability disclosure or security.txt files were found. Overall, the website is professional, trustworthy, and safe for general audiences with no adult or questionable content. The domain registration is consistent with the business timeline and shows no suspicious patterns. Strategic recommendations include enhancing security headers, enabling DNSSEC, implementing cookie consent, and providing clearer security and contact information to improve compliance and trust.

35
53
2
70
47
80
100
cryptosocialnetworkdecentralizedwalletblockchain+2 more
JavaScriptReact (implied by JSX and module scripts)Cloudflare DNSGoogle Fonts+1
2025-10-31T09:30:10.371Z
321med.com favicon

321 MED GmbH

321med.com

50
HealthcareGermanymediumMEDIUM

321 MED GmbH operates a specialized healthcare software platform focused on digitizing and automating patient reception and administrative workflows for medical practices, clinics, and healthcare centers primarily in Germany. The company offers a comprehensive SaaS solution that includes appointment management, digital check-in, AI-powered telephone assistance, and workflow automation, targeting a broad range of medical specialties. The website demonstrates a mature market position with over 3,500 healthcare providers and 5 million patients served, supported by strong media presence and user testimonials. Technically, the website employs a modern technology stack including jQuery, Usercentrics for consent management, Google Tag Manager, and Facebook Pixel for analytics and marketing. Hosting and DNS services involve Cloudflare and Cronon GmbH, with HTTPS enforced and cookie consent mechanisms in place. The site is mobile-optimized with good SEO and accessibility basics, though some improvements in security headers and DNSSEC are recommended. From a security perspective, the site shows good practices such as GDPR compliance and encrypted connections but lacks published security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. The domain registration is consistent with the business claims, showing legitimacy and stability. Overall, 321 MED presents a professional, trustworthy, and well-structured digital presence aligned with its healthcare software business. Strategic enhancements in security transparency and DNS security would further strengthen its posture.

20
65
2
90
72
65
-
healthcaremedicalsoftwareonlinereceptionpatientmanagementdigitalhealthcare+2 more
jQueryjQuery UIUsercentrics CMPGoogle Tag Manager+4
2025-10-31T09:19:22.267Z
krav-maga.hr favicon

Response trening akademija d.o.o.

krav-maga.hr

61
EducationCroatiamediumMEDIUM

Krav-maga.hr is the official website of Response trening akademija d.o.o., a Croatian company specializing in Krav Maga self-defense training and related educational services. The company operates a network of over 30 training locations across Croatia, targeting a broad audience including adults, women, children, and teenagers. Their business model combines in-person training, online courses, and an e-commerce platform selling related apparel, equipment, and educational materials. The website reflects a well-established market position with a professional online presence and active social media engagement. Technically, the website employs modern web standards including HTTPS, Google reCAPTCHA for form security, and integrates with marketing and analytics tools such as Google Analytics, Facebook Pixel, and Mailchimp. Hosting is supported by Cloudflare DNS services, and the site uses custom CMS technology. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. From a security perspective, the site demonstrates good practices including encrypted connections, GDPR-compliant consent mechanisms, and secure form handling. However, some security headers are not explicitly detected and could be improved. No critical vulnerabilities or exposed sensitive data were found. The WHOIS data confirms the domain's legitimacy and consistency with the business claims. Overall, krav-maga.hr is a trustworthy, professionally managed website with a solid security posture and compliance with privacy regulations. Strategic improvements in security headers and incident response transparency could further enhance its security maturity.

50
25
2
85
57
85
100
kravmagaself-defensetrainingeducationcroatia+3 more
HTML5CSS3JavaScriptGoogle reCAPTCHA v2 invisible+3

Partner Domains:

marker.hr
partner
2025-10-31T09:10:46.550Z
321med14.com favicon

321 MED GmbH

321med14.com

50
HealthcareGermanymediumMEDIUM

321 MED GmbH is a German healthcare technology company specializing in digital reception and practice management software for medical facilities such as clinics, medical practices, and pharmacies. Their flagship product, the Online-Rezeption, offers a comprehensive suite of features including patient management, appointment scheduling, AI-powered telephone assistance, and workflow automation. The company has established a strong market presence with over 3,500 healthcare providers and 5 million patients served, emphasizing significant time savings and improved patient communication. The website reflects a mature, professional business with consistent branding and extensive media coverage. Technically, the website employs modern web technologies including jQuery, Usercentrics for GDPR-compliant consent management, Google Tag Manager, and Facebook Pixel for analytics and marketing. Hosting and DNS services leverage Cloudflare, although DNSSEC is not enabled. The site is mobile-optimized, accessible, and SEO-friendly, with fast loading times and rich multimedia content enhancing user engagement. From a security perspective, the site enforces HTTPS with a strong SSL configuration and integrates GDPR-compliant cookie consent. However, it lacks visible HTTP security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is consistent with the business claims, showing a domain age appropriate for the company's history and no privacy protection, which supports transparency. Overall, the website demonstrates a high level of professionalism, security, and compliance suitable for a healthcare software provider. Strategic improvements include enabling DNSSEC, publishing security policies, and adding incident response contacts to further enhance trust and security posture.

20
65
2
90
72
65
-
healthcaremedicalsoftwarepatientmanagementdigitalreceptiongdpr+2 more
jQueryjQuery UIUsercentrics CMPGoogle Tag Manager+2
2025-10-31T08:08:09.731Z