Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150477
Websites
130
Industries
113
Countries
52
Avg Score
Page 800 of 1029|Showing 39951-40000 of 51436
valloniabelgioturismo.it favicon

VISITWallonia

valloniabelgioturismo.it

57
HospitalityBelgiummediumMEDIUM

VISITWallonia is the official Belgian Tourism Office website dedicated to promoting tourism in the Wallonia region. It provides visitors with holiday ideas, travel information, and free brochures to enhance their travel experience. The website targets tourists and travelers interested in exploring Wallonia, positioning itself as a trusted government tourism authority. The business model is focused on regional tourism promotion and visitor engagement. Technically, the website is built on Drupal 7 CMS, leveraging modern web technologies including jQuery, Matomo Analytics, Google Tag Manager, and Cookiebot for cookie consent management. The site is hosted likely via the wbtourisme.be CDN infrastructure, delivering moderate performance with good mobile optimization and basic accessibility features. SEO practices are adequately implemented with proper meta tags and structured data. From a security perspective, the site uses HTTPS with good SSL configuration and implements cookie consent with blocking mode to comply with privacy regulations. However, some security best practices such as enabling DNSSEC, publishing privacy policies, terms of service, and security.txt files are missing. No critical vulnerabilities or exposed sensitive data were detected. The domain registration details are consistent with the official nature of the site, enhancing trustworthiness. Overall, VISITWallonia presents a professional, secure, and privacy-conscious tourism website with room for improvement in transparency and security documentation. Strategic recommendations include publishing comprehensive privacy and terms policies, enabling DNSSEC, and enhancing security headers to further strengthen the security posture.

70
83
17
40
67
60
40
tourismbelgiumwalloniatravelvacation+3 more
Drupal 7jQueryMatomo AnalyticsGoogle Tag Manager+1

Partner Domains:

campagne.valloniabelgioturismo.it
partner
play.visitwallonia.be
partner
2025-07-06T19:16:33.044Z
hbxgroup.com favicon

HBX Group

hbxgroup.com

74
TechnologyUnited KingdomenterpriseMEDIUM

HBX Group is a leading independent B2B travel technology marketplace operating globally with a portfolio of brands including Hotelbeds, Bedsonline, The Luxurist, Roiback, and Civitfun. The company provides cloud-based platforms and data-driven solutions to wholesalers, travel agents, hotels, and luxury travel providers, aiming to simplify and connect the fragmented travel industry. Their market position is strong with presence in over 170 countries and a workforce exceeding 3,600 employees. Technically, the website is built on modern frameworks such as Next.js and React, hosted on AWS infrastructure, and integrates advanced analytics and consent management tools. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses cookie consent mechanisms, and follows good security practices, though it lacks explicit published security policies and DNSSEC is not enabled. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website and business demonstrate high professionalism, trustworthiness, and compliance with privacy regulations. The domain registration is consistent with the business history and legitimacy. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and enhancing security headers to further strengthen the security posture.

80
83
55
60
82
45
100
b2btraveltechtechnologyhospitalityenterprise+3 more
React (Next.js)Google Tag ManagerCookiebotWeglot (translation)+3

Partner Domains:

hotelbeds.com
subsidiary
bedsonline.com
subsidiary

+3 more partners

2025-07-06T19:14:02.338Z
aheadworks.com favicon

Aheadworks

aheadworks.com

71
E-commerceN/amediumMEDIUM

Aheadworks is a well-established company specializing in Magento extensions and themes, serving e-commerce businesses and Magento store owners. Founded in 2004, it holds a strong market position as a leading provider of Magento-related products and services. The website reflects a professional e-commerce platform with a focus on Magento 2 extensions, Magento services, and Shopify migration services. The company targets Magento developers, store owners, and businesses seeking to enhance their online stores with reliable extensions and custom development services. Technically, the website is built on Magento 2 with modern JavaScript frameworks and integrates advanced search and analytics tools such as Algolia, Google Analytics, Hotjar, and Klaviyo, indicating a mature digital infrastructure. The site is mobile-optimized and SEO-friendly, providing a good user experience. Security-wise, the website enforces HTTPS, uses domain locking statuses, and implements cookie consent mechanisms. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for enhanced trust and compliance. Overall, the domain registration data aligns well with the business claims, showing a long-standing and legitimate online presence. Strategic recommendations include enabling DNSSEC, publishing security policies, and implementing a security.txt file to improve transparency and security posture.

55
73
17
80
75
85
100
magentoe-commerceextensionsthemesmagento2+2 more
Magento 2RequireJSjQueryKnockout.js+5

Partner Domains:

ravedigital.agency
partner
2025-07-06T19:13:26.255Z
formassembly.com favicon

FormAssembly Inc.

formassembly.com

74
TechnologyUnited StatesmediumMEDIUM

FormAssembly Inc. is a well-established SaaS company founded in 2006, specializing in secure online form building and data collection solutions. The company targets a broad audience including businesses, educational institutions, nonprofits, healthcare organizations, government agencies, and financial services. Their market position is strong, supported by compliance certifications such as HIPAA and FedRAMP, and trusted by notable clients like Southwest Airlines, Amazon, and Harvard University. The business model focuses on subscription-based cloud services with advanced integration capabilities, particularly with Salesforce and other enterprise platforms. Technically, the website is built on WordPress with a modern tech stack including jQuery, Select2, and various marketing and analytics tools such as Google Tag Manager, Marketo, and CrazyEgg. Hosting is likely on AWS, inferred from AWS Marketplace presence. The site demonstrates excellent performance, mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure. Security posture is robust with HTTPS enforced, compliance with industry standards, and no visible vulnerabilities. However, explicit security headers and a public vulnerability disclosure policy are not evident, representing areas for improvement. Privacy compliance is well addressed with comprehensive privacy and cookie policies and GDPR considerations. Business credibility is high, supported by clear contact information, professional content, and trust signals. Overall, the website and business present a low-risk profile with strong security and compliance focus. The main concern is the absence of WHOIS registration data, which slightly reduces trustworthiness but is mitigated by the company's established presence and transparency on the site.

90
65
47
75
57
75
100
formbuilderdatacollectioncompliancehipaafedramp+4 more
WordPressjQuerySelect2Google Tag Manager+7

Partner Domains:

salesforce.com
partner
stripe.com
partner

+1 more partners

2025-07-06T19:11:15.021Z
eastwoodsport.com favicon

Eastwood

eastwoodsport.com

59
OtherN/asmallMEDIUM

Eastwood is a specialized design and digital product studio focused on the sport and fitness sector. They provide brand strategy, interface design, app development, and digital product services aimed at enhancing the experience for players, coaches, fans, and administrators. The company positions itself as a niche provider with a strong portfolio of reputable sports clients, leveraging modern web technologies and a proprietary platform called LEAP to support professional sports organizations. Technically, the website is built on the Webflow platform, utilizing modern JavaScript libraries, Google Tag Manager, and LinkedIn Insight Tag for analytics and marketing. The site is well-optimized for performance, mobile responsiveness, and accessibility, with a professional design and clear navigation. However, there is a lack of explicit privacy, cookie, and terms of service policies, which impacts compliance and user trust. From a security perspective, the site uses HTTPS and avoids exposing sensitive data, but lacks security headers and formal security policies or incident response contacts. The absence of WHOIS data for the domain raises concerns about domain legitimacy and ownership transparency, which should be addressed to improve trustworthiness. Overall, Eastwood presents as a professional and credible business with a strong digital presence but should enhance privacy compliance and domain registration transparency to strengthen security posture and user confidence.

30
35
17
85
57
70
100
sportfitnessbranddesigndigitalproductwebflow+1 more
Webflow CMSJavaScriptjQuery 3.5.1Google Tag Manager+2
2025-07-06T19:10:04.798Z
found.ee favicon

Found.ee, LLC

found.ee

58
TechnologyUnited StatesmediumMEDIUM

Found.ee, LLC operates a marketing platform designed to empower creators and businesses to grow their audience and engagement through advanced advertising tools, landing pages, and audience tracking. The company positions itself as a trusted partner for over 25,000 creators and is featured in reputable media outlets such as Billboard and Forbes. Their business model centers on SaaS offerings with free and paid tiers, targeting creators and marketers seeking scalable digital marketing solutions. Technically, the website leverages modern frameworks like React and Material-UI, integrates with popular marketing and analytics tools such as Google Analytics, Google Tag Manager, Intercom, and Tapfiliate, and employs tracking pixels and affiliate programs to enhance marketing effectiveness. The site demonstrates good mobile optimization and a professional design, though accessibility and SEO could be further improved. Security-wise, the site enforces HTTPS and uses reCaptcha on forms, but lacks explicit security headers and detailed security policies or incident response information. Privacy compliance is partially addressed with a privacy policy and terms of service, but cookie consent mechanisms are absent. Overall, the domain registration aligns well with the business identity, supporting legitimacy and trustworthiness.

15
45
2
65
82
70
100
marketingcreatorsadvertisinganalyticstechnology+1 more
ReactMaterial-UIGoogle Tag ManagerGoogle Analytics (gtag)+3
2025-07-06T18:09:36.045Z
touchstoneam.com favicon

Touchstone Asset Management

touchstoneam.com

54
FinanceAustraliamediumMEDIUM

Touchstone Asset Management is a boutique Australian equities manager operating under the Bennelong Fund Management group. The company focuses on an index unaware investment approach targeting quality companies at reasonable prices. The website is professionally designed using Drupal 10, integrating modern analytics and marketing tools such as Google Analytics, Marketo, and Crazy Egg. It targets financial advisers, personal investors, and institutional investors primarily in Australia and New Zealand. The business model centers on asset management services with a clear market position as a Bennelong boutique. Technically, the website demonstrates a mature digital infrastructure with good mobile optimization, accessibility, and SEO practices. The use of multiple third-party marketing and analytics scripts indicates a moderate level of user tracking, though no explicit cookie consent mechanism was detected, which may impact privacy compliance. Security posture is generally good with HTTPS enforced and no visible vulnerabilities, but the absence of security headers and incident response policies suggests room for improvement. The WHOIS data is notably missing, which is unusual for a financial services domain and reduces trust slightly. However, the professional branding, clear contact information, and affiliation with Bennelong Fund Management support the legitimacy of the business. Overall, the website presents a trustworthy and professional front but should address privacy compliance and security header implementation to enhance its security posture.

40
53
2
85
52
85
40
financeassetmanagementinvestmentaustralianequitiesfinancialservices
Drupal 10jQuery 3.7.1Google AnalyticsGoogle Tag Manager+3

Partner Domains:

www.bennelongfunds.com
parent
2025-07-06T18:09:31.032Z
canopyinvestors.com favicon

Canopy Investors

canopyinvestors.com

62
FinanceAustraliasmallMEDIUM

Canopy Investors is a boutique investment management firm operating under the Bennelong Fund Management umbrella, focusing on actively managed global small and mid-cap equity funds. The website targets financial advisers, personal investors, and institutional investors primarily in Australia and the APAC region. The firm positions itself as a specialized boutique within a larger financial group, emphasizing professional fund management services. Technically, the website is built on Drupal 10 with modern JavaScript libraries and integrates multiple marketing and analytics tools such as Google Analytics, Marketo, and Outbrain. The site is mobile-optimized and demonstrates good accessibility and SEO practices. However, some security best practices like security headers and explicit cookie consent mechanisms are missing. From a security perspective, the site uses HTTPS and avoids exposing sensitive data in the HTML. The absence of WHOIS registration data reduces domain trustworthiness, although the professional presentation and association with Bennelong Fund Management mitigate some concerns. No critical vulnerabilities or malware indicators were found. Overall, the website is professional and functional with moderate security posture and privacy compliance. Strategic improvements in transparency, security headers, and cookie consent would enhance trust and compliance.

40
53
2
85
52
85
100
financeinvestmentfundmanagementboutiquebennelong+3 more
Drupal 10jQuery 3.7.1Google AnalyticsGoogle Tag Manager+3

Partner Domains:

www.bennelongfunds.com
parent
2025-07-06T18:09:15.943Z
blsem.com.au favicon

Bennelong Long Short Equity Management

blsem.com.au

53
FinanceAustraliasmallMEDIUM

Bennelong Long Short Equity Management is a boutique Australian asset manager specializing in market neutral investment strategies, serving fund-of-funds and private investors. The company operates as a Bennelong boutique under the BFM Group umbrella, positioning itself as a specialized player in the financial services sector. The website reflects a professional and consistent brand image with clear business and contact information, targeting financial advisers, institutional, and personal investors. Technically, the website is built on Drupal 10 with modern JavaScript libraries and integrates marketing and analytics tools such as Google Tag Manager and Marketo Munchkin. The site is mobile optimized, accessible, and SEO friendly, though performance is moderate. Security posture is good with HTTPS enforced, but lacks some security headers and explicit cookie consent mechanisms, which are recommended for enhanced compliance and protection. Overall, the security posture is solid with no visible vulnerabilities or exposed sensitive data. However, the absence of a published security policy, incident response contacts, and vulnerability disclosure reduces transparency. The WHOIS data is privacy protected, which is typical for financial services, but limits direct verification of domain registration details. The domain and website content are consistent with a legitimate financial services business. Strategically, the company should enhance privacy compliance by implementing cookie consent and publishing security policies. Improving security headers and establishing a vulnerability disclosure process would strengthen trust and resilience. The website quality and business credibility are high, supporting a positive risk assessment with recommendations focused on compliance and transparency improvements.

40
53
2
85
52
70
40
financeassetmanagementinvestmentboutiquemarketneutral+2 more
Drupal 10jQuery 3.7.1Google Tag ManagerMarketo Munchkin

Partner Domains:

www.bennelongfunds.com
parent
2025-07-06T18:09:10.933Z
flinders.edu.au favicon

Flinders University

flinders.edu.au

72
EducationAustralialargeMEDIUM

Flinders University is a prominent higher education institution based in Australia, offering a wide range of undergraduate and postgraduate programs, research opportunities, and community engagement initiatives. The website reflects a well-established university with a strong international presence and comprehensive academic offerings. The target audience includes domestic and international students, researchers, staff, and alumni. The business model focuses on education, research, and community partnerships, positioning Flinders as a leading university in the Australian education sector. Technically, the website employs modern web technologies including jQuery, Bootstrap, Google Tag Manager, and Adobe Experience Manager as its CMS. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some performance optimizations could be considered. The presence of a GDPR-compliant cookie consent mechanism indicates attention to privacy regulations. From a security perspective, the site uses HTTPS and implements cookie consent but lacks visible security headers and explicit security policies or incident response contacts. The WHOIS data is privacy protected, which is typical for large institutions, but limits direct verification of registrant details. No critical vulnerabilities or blocking mechanisms were detected, suggesting a stable security posture. Overall, the website is professional, trustworthy, and well-maintained, with room for improvement in transparency around privacy policies and security disclosures. Strategic recommendations include publishing clear privacy and security policies, enhancing security headers, and providing explicit incident response contacts to strengthen trust and compliance.

40
80
47
75
90
65
100
educationuniversityhighereducationresearchaustralia+1 more
jQueryGoogle Tag ManagerAdobe Target (disabled by default)Select2 (for enhanced dropdowns)+2

Partner Domains:

china.flinders.edu.au
partner
vietnam.flinders.edu.au
partner

+3 more partners

2025-07-06T18:08:55.884Z
gehealthcare.com.au favicon

GE HealthCare

gehealthcare.com.au

67
HealthcareAustraliaenterpriseMEDIUM

GE HealthCare Australia & New Zealand operates as a leading provider of healthcare technologies, including medical imaging, ultrasound, patient monitoring, and healthcare IT solutions. The website reflects a mature enterprise-level digital presence with comprehensive product and service information tailored to healthcare professionals and institutions in the region. The company is positioned as a major player in the healthcare technology sector, supported by its parent company General Electric. The site demonstrates strong branding consistency and professional content quality. Technically, the website leverages modern web technologies such as React, Google Tag Manager, and various marketing and analytics tools including Facebook Pixel, Marketo, and Hotjar. The site is mobile optimized, accessible, and SEO-friendly, providing a good user experience. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and includes security-related pages, but lacks explicit security headers and published incident response or vulnerability disclosure policies. WHOIS data is privacy protected, which is justified for an enterprise brand, and no suspicious patterns were detected. The overall security posture is good but could be improved with additional transparency and technical controls. Overall, the website is a trustworthy, professional platform representing a reputable healthcare technology company. Strategic recommendations include enhancing security headers, publishing incident response policies, and implementing DNSSEC to further strengthen trust and security.

55
68
47
40
75
60
100
healthcaremedicaltechnologyimagingultrasoundpatientmonitoring+3 more
ReactGoogle Tag ManagerFacebook PixelMarketo+4

Partner Domains:

careers.gehealthcare.com
partner
services.gehealthcare.com.au
partner
2025-07-06T18:07:55.496Z
dnatatravel.com favicon

dnata Travel

dnatatravel.com

61
HospitalityN/alargeMEDIUM

dnata Travel operates as a large-scale online travel agency offering a wide range of services including hotel bookings, flights, flight & hotel packages, and transfers. The website targets travelers seeking convenient and comprehensive travel solutions, leveraging partnerships with over 275,000 hotels and 100 airlines. The platform is branded consistently with dnata, a recognized name in the travel industry, suggesting a strong market position within the hospitality and transportation sectors. Technically, the website is built using modern frameworks such as Next.js and React, with integrations for Google Tag Manager, DataDome for bot protection, and OneTrust for cookie consent management. The site demonstrates good mobile optimization, SEO practices, and moderate performance. Security measures include HTTPS enforcement and standard security headers, though explicit security policies and incident response details are not published. The security posture is solid with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms, aligning with GDPR requirements. However, the absence of WHOIS registration data raises concerns about domain legitimacy and ownership transparency, which impacts overall trust. Overall, dnata Travel presents a professional and trustworthy online travel booking platform with strong technical and security foundations. Strategic recommendations include publishing detailed security and incident response policies, establishing a vulnerability disclosure program, and improving domain registration transparency to enhance trust and compliance.

15
53
17
75
67
80
100
travelbookingflightshotelsholiday+1 more
ReactNext.jsGoogle Tag ManagerDataDome (bot protection)+1
2025-07-06T18:07:45.427Z
rugbyaustralia.com.au favicon

Rugby Australia Ltd

rugbyaustralia.com.au

61
OtherAustralialargeMEDIUM

Rugby Australia Ltd operates as the national governing body for rugby union in Australia, providing leadership, governance, and promotion of the sport across the country. The website serves as a comprehensive hub for rugby news, participation programs, ticketing, and community engagement, targeting players, coaches, referees, and fans. The organization holds a strong market position as the official body affiliated with World Rugby and SANZAAR, emphasizing inclusivity and development initiatives. Technically, the website is built on a modern React and Next.js framework, leveraging cloud-based CDN hosting via AWS Cloudfront for performance and scalability. It integrates multiple analytics and marketing tools such as Google Analytics, Hotjar, and Facebook Pixel, enabling moderate user tracking and marketing insights. The site is mobile-optimized with good SEO and accessibility basics, although some accessibility improvements could be made. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes essential security headers. It employs Google reCAPTCHA v3 to protect forms and uses reputable third-party services. However, the absence of explicit privacy and cookie policies, as well as lack of published security or incident response policies, indicates gaps in compliance and transparency. Overall, Rugby Australia presents a professional and trustworthy online presence with solid technical infrastructure and security posture. To enhance compliance and user trust, it is recommended to publish comprehensive privacy and cookie policies with consent mechanisms, establish a vulnerability disclosure process, and improve accessibility features. These steps will strengthen the organization's digital maturity and regulatory adherence.

45
53
17
70
62
60
100
sportsrugbyaustraliagoverningbodycommunity+3 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+4

Partner Domains:

myaccount.rugbyxplorer.com.au
partner
wallabyshop.com.au
partner

+2 more partners

2025-07-06T18:07:30.330Z
ampmode.ai favicon

Ampmode Inc.

ampmode.ai

57
TechnologyN/asmallMEDIUM

Ampmode Inc. is a technology company specializing in AI-powered tools and workflows designed to enhance productivity for ecommerce and marketing teams. Their platform offers AI agents that automate content creation tasks such as writing product descriptions, SEO content, and articles, targeting multi-audience strategies. Positioned as a SaaS provider, Ampmode offers tiered subscription plans with features scaling from standard AI agents to premium and custom agents, along with integrations and automation capabilities. The company maintains an active digital presence with social media channels on LinkedIn and YouTube, supporting their market positioning as a productivity enhancer in the ecommerce content space. Technically, the website is built on the Webflow platform, utilizing modern web technologies including Google Tag Manager and Apollo.io for tracking, and embeds YouTube videos for product demonstrations. The site is mobile-optimized with good SEO practices and a professional design, although accessibility features are basic. Performance is moderate, consistent with Webflow-hosted sites. From a security perspective, the site enforces HTTPS and includes Google site verification, but lacks explicit security headers and a cookie consent mechanism, which are recommended for enhanced compliance and protection. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data due to privacy protection slightly reduces trust but is common for technology startups. Privacy and Terms of Service pages are present, indicating basic compliance with legal requirements. Overall, Ampmode presents a professional and credible SaaS offering with a solid technical foundation and moderate security posture. Strategic improvements in security headers, cookie consent, and transparency in registrant information would further enhance trust and compliance.

30
53
2
60
57
70
100
aiecommercemarketingsaascontentcreation+2 more
Webflow CMSGoogle Tag ManagerApollo.io website trackerjQuery 3.5.1+2
2025-07-06T18:06:54.845Z
tamug.edu favicon

Texas A&M University at Galveston

tamug.edu

61
EducationUnited StateslargeMEDIUM

Texas A&M University at Galveston is a specialized higher education institution focusing on marine and maritime studies, operating under the Texas A&M University System. The website serves a diverse audience including prospective and current students, faculty, staff, and visitors, providing comprehensive academic, research, and campus life information. The institution's market position is that of a niche educational provider with strong ties to maritime industries and marine sciences. Technically, the website employs a modern technology stack including jQuery, Foundation, Bootstrap, and multiple analytics tools such as Google Analytics and Microsoft Clarity. The site is mobile-optimized, accessible, and well-structured, though performance is moderate. The use of asynchronous scripts and lazy loading indicates attention to performance and user experience. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks some security headers and explicit cookie consent mechanisms, which are recommended for enhanced protection and compliance. The absence of WHOIS data for the queried subdomain is noted but likely due to querying the 'www' prefix rather than the base domain. Overall, the security posture is good but could be improved with additional policies and disclosures. The overall risk assessment is low, with the website presenting a trustworthy and professional front for the university. Strategic recommendations include implementing security headers, adding cookie consent, publishing security policies, and clarifying WHOIS information by querying the correct domain. These steps will enhance compliance, security, and user trust.

15
53
17
75
85
65
100
educationuniversitymarinestudiesmaritimetexasam+2 more
jQueryFoundation 5.5.0BootstrapGoogle Tag Manager+7
2025-07-06T18:05:34.127Z
zestapp.com.au favicon

JCJW Pty Ltd

zestapp.com.au

59
HospitalityAustraliasmallMEDIUM

Zest is a specialized Australian online marketplace that facilitates event bookings by connecting performers, venues, and event service providers with individuals and organizations. The platform offers a centralized hub of verified vendors, enabling users to plan and book events such as birthdays, weddings, corporate functions, and parties with ease. The company operates under JCJW Pty Ltd and targets a broad audience including individuals, organizations, and venues seeking event services. Technically, the website is built using modern web technologies including React and Next.js, with integrations for payment processing (Stripe), customer engagement (Intercom), and analytics (Google Tag Manager, Facebook Pixel). The site is mobile-optimized, fast-loading, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, employs standard security headers, and does not expose sensitive data. However, it lacks a public vulnerability disclosure policy and explicit incident response contacts, which are recommended for enhanced trust and compliance. Privacy policies and cookie consent mechanisms are present and appear GDPR compliant. Overall, Zest presents a low-risk profile with a professional online presence, consistent branding, and a clear business model. Strategic recommendations include formalizing security incident response processes, enhancing transparency around data protection, and maintaining regular audits of third-party integrations to mitigate emerging risks.

30
53
17
55
72
65
100
eventsmarketplaceperformersvenueseventservices+2 more
ReactNext.jsStripeCloudinary+3
2025-07-06T18:04:48.741Z
agtrader.com.au favicon

AgTrader

agtrader.com.au

64
RetailAustraliamediumMEDIUM

AgTrader operates as a specialized online marketplace focused on agricultural machinery, vehicles, equipment, and livestock supplies primarily targeting Australian farmers and agricultural businesses. The platform offers a broad range of services including buying, selling, bidding, and advertising options for both private sellers and dealers. It maintains a strong market position supported by partnerships with related agricultural sites and a consistent brand presence. The website content is well-structured and professionally presented, catering effectively to its target audience. From a technical perspective, AgTrader employs a modern React-based frontend with integrations of multiple analytics and marketing tools such as Google Analytics, HubSpot, Microsoft Clarity, Hotjar, and Facebook Pixel. The site uses HTTPS with good security headers and includes mechanisms like Google reCAPTCHA to protect forms. Performance is moderate with good mobile optimization, although accessibility features could be enhanced. Security posture is solid with no evident vulnerabilities or exposed sensitive data. However, the absence of explicit incident response contacts and vulnerability disclosure mechanisms suggests room for improvement in transparency and readiness. Privacy compliance is basic, with a comprehensive privacy policy present but lacking a dedicated cookie policy page. Business credibility is high, supported by consistent branding, partner links, and social media presence. Overall, AgTrader presents a trustworthy and professional online platform with a mature technical infrastructure and sound security practices. Strategic enhancements in privacy transparency, accessibility, and incident response communication would further strengthen its risk posture and user trust.

30
68
2
85
72
70
100
agriculturemarketplacefarmmachineryvehiclesaustralian+1 more
ReactHubSpot scriptsGoogle Tag ManagerGoogle Analytics+6

Partner Domains:

farmbuy.com
partner
horsedeals.com.au
partner

+1 more partners

2025-07-06T18:04:38.689Z
beevo.com.au favicon

Beevo

beevo.com.au

62
EnergyAustraliamediumMEDIUM

Beevo is an Australian business service provider specializing in managing utility connections and services for small to medium businesses. Established since 2012, Beevo has built a strong market presence with over 50,000 business clients, offering personalized account management and a range of utility-related services including electricity, internet, waste management, and insurance. The business model is based on providing free services to clients funded by utility companies, positioning Beevo as a trusted intermediary that simplifies utility management for businesses. Technically, the website is built on the Webflow platform, leveraging modern web technologies and integrations such as Uploadcare for file handling, Google Tag Manager, Google Analytics, Facebook Pixel, Hotjar, and LinkedIn Insight Tag for marketing and analytics. The site is mobile-optimized with good design quality and clear navigation, although accessibility features are basic. Performance is moderate, consistent with a CMS-hosted site. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML content. However, it lacks several recommended security headers and does not publish explicit security or incident response policies. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism despite active tracking scripts. WHOIS data is unavailable due to privacy or query failure, which limits domain trust verification but the website content and business presence appear legitimate. Overall, Beevo presents a professional and trustworthy online presence with room for improvement in privacy compliance and security transparency. Strategic enhancements in these areas would strengthen trust and regulatory adherence.

30
53
17
85
57
70
100
utilitymanagementbusinessservicesenergyaccountmanagementaustralia
WebflowUploadcareGoogle Tag ManagerGoogle Analytics+4
2025-07-06T18:04:33.637Z
fia.org.au favicon

Home

fia.org.au

63
OtherAustraliamediumMEDIUM

The website www.fia.org.au is a professional online presence for an Australian organization likely involved in fundraising or non-profit activities. The site is built on the Salesforce Experience Cloud platform, leveraging Salesforce Lightning components and integrating multiple payment gateways such as Stripe, PayPal, and Adyen. It also uses popular analytics and marketing tools including Google Analytics, Facebook Pixel, and LinkedIn Insight Tag, indicating a mature digital marketing approach. The website content is accessible and well-structured, with good mobile optimization and a consistent branding approach. From a security perspective, the site enforces HTTPS with a strong SSL configuration and implements a restrictive Content-Security-Policy header. However, other common security headers are missing, and no explicit privacy or cookie policies were found in the provided content, which may impact privacy compliance. The WHOIS data is privacy protected, which is common for non-profit organizations, and no suspicious patterns were detected. No WAF or blocking mechanisms were identified, allowing full content access. Overall, the website demonstrates a solid technical foundation and a moderate to good security posture. The lack of visible contact information and privacy policies suggests areas for improvement in transparency and compliance. The site is safe for general audiences with no adult or questionable content detected.

70
35
17
70
65
70
100
non-profitfundraisingaustraliasalesforcepayment+2 more
Salesforce LightningGoogle Tag ManagerGoogle AnalyticsFacebook Pixel+6
2025-07-06T18:04:03.532Z
regionalaustraliabank.com.au favicon

Regional Australia Bank

regionalaustraliabank.com.au

71
FinanceAustraliamediumMEDIUM

Regional Australia Bank operates as a financial institution focused on serving regional Australian communities with personal and business banking services. The website presents a professional and consistent brand image, targeting regional customers seeking banking products such as loans, mortgages, and financial advice. The market position is that of a regional bank emphasizing community engagement and tailored financial solutions. Technically, the website employs modern web technologies including asynchronous loading of analytics and tracking scripts such as Google Analytics, Microsoft Clarity, and Facebook Pixel, alongside FontAwesome for iconography. The site is mobile optimized and demonstrates good performance and SEO practices, although accessibility features are basic. Security posture is adequate with HTTPS enabled and no visible vulnerabilities, but lacks important security headers and explicit privacy and cookie policies. The absence of clear contact information and incident response channels limits transparency. Overall, the domain appears legitimate and privacy protection on WHOIS is justified given the financial sector context. Strategic improvements in privacy compliance, security headers, and contact transparency would enhance trust and security maturity.

80
65
17
90
75
65
100
bankingfinanceregionalaustraliafinancialservicespersonalbanking+1 more
HTML5CSS3JavaScriptFontAwesome+5
2025-07-06T18:03:53.464Z