Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 84 of 143|Showing 4151-4200 of 7129
novyjicin.cz favicon

Nový Jičín - Město Klobouků

novyjicin.cz

46
GovernmentCzech RepublicmediumHIGH

Nový Jičín's official municipal website serves as a comprehensive digital portal for residents and visitors, offering city news, public service information, event calendars, and administrative contacts. The site is well-branded and positioned as the authoritative source for city-related information in the Czech Republic. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Analytics, and various plugins enhancing user experience and content management. The site is mobile-optimized and accessible, with good SEO practices and structured data implemented. Security posture is strong with HTTPS enforced and appropriate security headers, although there is room for improvement in publishing explicit security policies and incident response information. Privacy compliance is well addressed with GDPR-compliant privacy and cookie policies, including user consent mechanisms. Overall, the website presents a trustworthy and professional digital presence for the city government, though the absence of WHOIS data slightly reduces domain trustworthiness. Strategic recommendations include enhancing transparency around security policies and incident response, and considering a vulnerability disclosure program to further strengthen security culture.

30
25
2
70
62
75
20
municipalgovernmentcitypublicservicesczechrepublic+4 more
WordPress 6.8.2jQueryGoogle AnalyticsFontAwesome+4

Partner Domains:

www.psnj.cz
partner
www.icnj.cz
partner

+3 more partners

2025-07-29T06:49:43.991Z
ohkhodonin.cz favicon

Okresní hospodářská komora Hodonín

ohkhodonin.cz

52
OtherCzech RepublicsmallMEDIUM

Okresní hospodářská komora Hodonín is a regional chamber of commerce in the Czech Republic focused on supporting local entrepreneurs and businesses. The organization offers a variety of services including seminars, workshops, rental of classrooms and event spaces, assistance with grants, and networking opportunities. It positions itself as a strong partner for business growth in the Hodonín region and ranks among the top 10 district chambers by membership size. The website reflects a professional and consistent brand image targeting local business owners and entrepreneurs. Technically, the website is built on WordPress and leverages modern web technologies such as Google Fonts, FontAwesome, and Google reCAPTCHA v3 for form protection. The site is mobile optimized with good navigation and content structure, although some accessibility features could be improved. Performance is moderate, and SEO practices are adequately implemented. From a security perspective, the site uses HTTPS and integrates reCAPTCHA to mitigate spam. However, it lacks important security headers and does not publish privacy or security policies, which are areas for improvement. The absence of WHOIS data reduces domain registration trustworthiness, but the website content and contact information suggest a legitimate and professional entity. Overall, the site is safe, business-focused, and trustworthy for its intended audience, but it would benefit from enhanced security practices and compliance documentation to strengthen its risk posture.

85
25
2
55
72
80
20
businesschamberofcommerceseminarsmembershipeducation+2 more
WordPressGoogle FontsFontAwesomeContact Form 7+2
2025-07-29T06:49:18.890Z
masceskysever.cz favicon

MAS Český sever – Varnsdorf

masceskysever.cz

49
Non-profitCzech RepublicsmallHIGH

MAS Český sever is a regional organization focused on community and regional development in the Český sever area of the Czech Republic. The website presents information about local initiatives, regional products, and community support activities, targeting local residents, stakeholders, and possibly tourists. The business model appears to be non-profit or community-oriented, with a focus on regional promotion and development. Technically, the website is built on WordPress, utilizing common plugins such as Contact Form 7 and RevSlider, and integrates Google Analytics for visitor tracking. The site shows moderate performance and good mobile optimization but lacks advanced SEO and accessibility features. The absence of detailed WHOIS data and registrant information is a notable gap. From a security perspective, the site uses HTTPS but lacks visible security headers and explicit security policies. No vulnerability disclosures or incident response contacts are provided. Cookie consent mechanisms are implemented, indicating some level of privacy compliance, though no privacy policy page was found. Overall, the website is functional and professional but has gaps in transparency and security best practices. The missing WHOIS data and lack of privacy and security policies reduce trustworthiness. Strategic improvements in these areas would enhance the site's credibility and security posture.

40
25
2
77
62
85
40
regionalcommunitynon-profitdevelopmentczechrepublic+1 more
WordPressPHPGoogle AnalyticsFontAwesome+2
2025-07-29T06:49:03.856Z
C

Compdata Surveys & Consulting

mycompdatasurveys.com

62
OtherN/amediumMEDIUM

Compdata Surveys & Consulting operates as a specialized provider of compensation data surveys and consulting services, targeting HR professionals and business managers seeking salary and compensation insights. The company appears to be a division or brand under Dolan Technologies Corporation, with a well-established domain since 2008. The website is professionally designed with a focus on usability and business-oriented content, though it lacks some modern privacy and security features such as cookie consent mechanisms and explicit security headers. Technically, the site leverages AngularJS and several modern JavaScript libraries including D3.js and Quill for rich UI and data visualization. The presence of Intercom indicates active user engagement and support capabilities. However, the site could improve in mobile optimization and accessibility to enhance user experience further. From a security perspective, the website uses HTTPS and has domain registration protections in place, but lacks DNSSEC and visible security headers, which are recommended for enhanced protection. No direct contact emails or phone numbers are provided, limiting transparency. The privacy policy is present but basic, and no cookie policy or vulnerability disclosure mechanisms are evident. Overall, the website presents a moderate risk profile with good business credibility but room for improvement in security and privacy compliance. Strategic enhancements in these areas would strengthen trust and regulatory adherence.

55
53
2
70
67
75
100
compdatasurveysconsultingcompensationsalary+2 more
AngularJSD3.jsQuillBootstrap+3
2025-07-29T05:44:06.223Z
osmre.gov favicon

Office of Surface Mining Reclamation and Enforcement

osmre.gov

74
GovernmentUnited StateslargeMEDIUM

The Office of Surface Mining Reclamation and Enforcement (OSMRE) operates as a federal government agency under the U.S. Department of the Interior, focusing on the regulation and reclamation of surface coal mining activities. The website serves as an authoritative resource for stakeholders including government officials, industry participants, and the public, providing comprehensive information on programs, laws, regulations, and news related to mining and environmental protection. The agency's market position is that of a regulatory and environmental stewardship body with a long-standing history dating back to 1997. Technically, the website is built on Drupal 10, leveraging modern web technologies such as jQuery, FlexSlider, and the U.S. Web Design System (USWDS) for accessibility and responsive design. Hosting and DNS services are provided via Cloudflare, ensuring reliable performance and security. The site integrates Google Analytics and the Digital Analytics Program for user tracking and government analytics compliance. Mobile optimization and accessibility features are well implemented, contributing to a positive user experience. From a security perspective, the site enforces HTTPS with valid certificates and employs domain transfer protection. However, DNSSEC is not enabled, and security headers are not explicitly detected in the HTML content, indicating room for improvement. No vulnerabilities or exposed sensitive data were found. Privacy compliance is partially addressed with a comprehensive privacy policy, but cookie consent mechanisms are absent. The domain WHOIS data is privacy protected, consistent with government domain practices, and the domain age aligns with the agency's history. Overall, the website presents a trustworthy, professional, and secure platform for disseminating government information related to surface mining. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent mechanisms, and publishing a security.txt file to enhance security posture and compliance.

55
53
35
85
100
80
100
governmentminingenvironmentregulationreclamation+2 more
Drupal 10jQueryFlexSliderGoogle Analytics+3
2025-07-29T04:35:54.516Z
growthzone.com favicon

GrowthZone

growthzone.com

61
TechnologyN/amediumMEDIUM

GrowthZone is a technology company specializing in association management software, providing a comprehensive SaaS platform for membership organizations. The company holds a strong market position as a leading provider in the association industry, offering key services such as membership management, event management, payment processing, and community platforms. Their website reflects a professional and well-branded presence with extensive resources, case studies, and customer testimonials, targeting associations and membership organizations. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, jQuery, Google Tag Manager, HubSpot, and Matomo Analytics. The site is mobile-optimized, SEO-friendly, and integrates multiple marketing and tracking tools. Performance is moderate with good accessibility and excellent design quality. From a security perspective, the site enforces HTTPS and includes basic security headers like X-Frame-Options. Cookie consent mechanisms and privacy policies are present and GDPR compliant. No critical vulnerabilities or exposed sensitive data were detected. However, additional security headers and a formal security policy or vulnerability disclosure page could enhance the security posture. Overall, the website is trustworthy and professional, though the absence of WHOIS data limits domain registration transparency. The site is not blocked by WAF or security challenges, allowing full content access and analysis.

30
68
2
75
42
85
100
associationmanagementmembershipsoftwaresaastechnologybusinesssoftware+1 more
WordPressYoast SEO pluginjQueryGoogle Tag Manager+5

Partner Domains:

membersuite.com
partner
chambermaster.com
partner
2025-07-29T04:32:28.162Z
midmid.nl favicon

Midmid

midmid.nl

69
TechnologyNetherlandssmallMEDIUM

Midmid is a Netherlands-based technology company providing an all-in-one platform tailored for retail businesses. Their platform integrates website management, webshop functionality, order processing, narrowcasting (Nextcast), labeling, recipe production, analytics, and API integrations. The company targets retail store owners seeking streamlined digital solutions to optimize operations and customer engagement. The website reflects a professional and consistent brand image with a clear focus on retail technology services. Technically, the website employs modern web technologies including Bootstrap, jQuery, FontAwesome, and Google Fonts, hosted on Microsoft Azure. The platform is mobile-optimized and uses Google Analytics for user tracking. However, there is room for improvement in accessibility and SEO best practices. The site lacks explicit privacy and cookie policies, which impacts privacy compliance scores. From a security perspective, the site uses HTTPS with good SSL configuration and practices data encryption and backups. However, no security headers were detected, and there is no published incident response or vulnerability disclosure policy. The absence of cookie consent mechanisms and privacy policies are notable compliance gaps. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk assessment indicates a legitimate and professional business with minor compliance and security gaps. Strategic recommendations include implementing privacy and cookie policies with consent mechanisms, publishing security policies, adding security headers, and enhancing transparency around data protection. These steps will improve trust, compliance, and security maturity.

50
73
30
80
72
70
100
retailecommerceplatformwebshopnarrowcasting+2 more
Bootstrap 4.6.2jQueryFontAwesomeAnimate.css+3
2025-07-29T03:29:10.956Z
govcert.cz favicon

Národní úřad pro kybernetickou a informační bezpečnost

govcert.cz

56
GovernmentCzech RepublicmediumMEDIUM

Národní úřad pro kybernetickou a informační bezpečnost (NÚKIB) is the Czech Republic's national authority responsible for cybersecurity and information security. It operates key national cybersecurity functions including the Government CERT (GovCERT.CZ), prevention and response to cyber threats against critical infrastructure and public administration, education, research, and international cooperation. The website reflects a government agency with a clear mission to protect national cyber assets and provide guidance and coordination in cybersecurity matters. Technically, the website is built on Joomla CMS with common web technologies such as jQuery, Bootstrap, and FontAwesome. The site is mobile optimized and accessible, with good navigation and professional design. However, no explicit privacy or cookie policies were found, and no advanced security headers were detected in the provided data, indicating room for improvement in privacy compliance and security hardening. The security posture appears solid with no visible vulnerabilities or exposed sensitive data. Incident response contact information is clearly provided, supporting readiness for cybersecurity incidents. The domain is a gov.cz domain, which strongly supports legitimacy despite the absence of WHOIS data due to CZ.NIC policies. Overall, the site is trustworthy and authoritative but could enhance privacy and security transparency. Strategic recommendations include implementing comprehensive privacy and cookie policies with consent mechanisms, publishing a vulnerability disclosure policy or security.txt file, enhancing security headers, and ensuring all third-party libraries are up to date to maintain a strong security posture.

90
10
17
70
100
60
20
governmentcybersecurityczechrepublicnkibcert+1 more
jQueryBootstrapFontAwesomeJoomla CMS+1
2025-07-29T03:27:00.246Z
state.gov favicon

United States Department of State

state.gov

75
GovernmentUnited StatesenterpriseMEDIUM

The U.S. Department of State website serves as the official digital presence of the United States government’s foreign policy and diplomatic efforts. It provides comprehensive information and services related to U.S. foreign affairs, travel, visas, and government initiatives. The site targets a broad audience including the general public, government employees, travelers, students, and businesses. It holds a strong market position as the authoritative source for U.S. diplomatic information and services. Technically, the website is built on a mature WordPress platform with integration of modern analytics and marketing tools such as Google Analytics, Google Tag Manager, and Siteimprove Analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, reflecting a high level of digital maturity. The use of official government domains (.gov) and secure HTTPS connections further enhance its credibility. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, indicating compliance with privacy regulations including GDPR. While explicit security headers are not fully visible in the provided data, the overall posture is strong with no evident vulnerabilities or exposed sensitive data. The absence of a security.txt or vulnerability disclosure page suggests an area for improvement in transparency and incident response readiness. Overall, the website is professional, trustworthy, and well-maintained, reflecting the stature of a major government entity. Strategic recommendations include enhancing security header implementation, publishing vulnerability disclosure information, and improving visibility of incident response contacts to further strengthen security and trust.

55
80
17
85
90
80
100
governmentforeignpolicydiplomacytravelsecurity+1 more
WordPress 6.8.1Google Tag ManagerGoogle AnalyticsGravity Forms+6
2025-07-29T03:22:52.307Z
johnsoncreativetn.com favicon

Johnson Creative Tennessee

johnsoncreativetn.com

46
Real EstateUnited StatessmallHIGH

Johnson Creative Tennessee is a specialized real estate media provider offering a comprehensive suite of services including photography, video production, drone imagery, floor plans, 3D tours, and property websites. The company targets real estate professionals and agencies, positioning itself as a trusted partner with next-day delivery of media content. The website reflects a professional and consistent brand image, supported by client logos from reputable real estate firms, indicating a solid market presence in the United States. Technically, the site is built on WordPress and hosted by SiteGround, utilizing modern web technologies such as Google Tag Manager, Google Analytics, and Slider Revolution. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and SEO. Security posture is adequate with HTTPS enforced and no visible sensitive data exposure; however, the absence of security headers and vulnerability disclosure policies suggests areas for enhancement. Privacy compliance is lacking due to missing privacy and cookie policies, which could pose regulatory risks. Overall, the site is trustworthy and professional but would benefit from improved privacy and security practices.

15
53
2
70
72
80
-
realestatemediaphotographyvideodrone+3 more
WordPressSiteGround OptimizerGoogle Tag ManagerGoogle Analytics (MonsterInsights plugin)+3

Partner Domains:

portal.johnsoncreativeteam.com
partner
book.johnsoncreativeteam.com
partner
2025-07-29T03:22:17.022Z
K

King Features Syndicate

kingfeatures.com

74
MediaUnited StateslargeMEDIUM

King Features Syndicate is a well-established media company specializing in the production and distribution of iconic intellectual properties, including classic comic strips and franchise development. As a unit of Hearst, it holds a strong market position with a portfolio of over 110 brands such as Popeye, Flash Gordon, and The Phantom. The company targets publishers, licensees, and entertainment professionals globally, leveraging content distribution, entertainment deals, and consumer product licensing as its core business model. The website reflects this with professional design, clear navigation, and comprehensive content about their services and brands. Technically, the website is built on WordPress with modern plugins and technologies such as WPBakery Page Builder and Smart Slider 3. Hosting is via Azure DNS, and the site is mobile-optimized with good SEO practices. Performance is moderate, with room for improvement in accessibility and security headers. The site uses HTTPS with a valid SSL configuration, but DNSSEC is not enabled, and security policies or incident response contacts are not published. From a security perspective, the site demonstrates good practices including HTTPS enforcement and domain transfer protection. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear privacy and cookie policies and GDPR indicators. However, the absence of a security.txt or vulnerability disclosure page is noted. Overall, King Features Syndicate's website is trustworthy, professional, and aligned with its business claims. Recommendations include enabling DNSSEC, adding security headers, and publishing security policies to further enhance security posture and trust.

70
83
17
85
72
80
100
medialicensingcomicsentertainmentfranchise+1 more
WordPress 6.8.2WPBakery Page BuilderSmart Slider 3jQuery+2

Partner Domains:

hearst.com
parent
comicskingdom.com
partner
2025-07-29T02:19:55.479Z
employers.org favicon

California Employers Association

employers.org

61
GovernmentUnited StatesmediumMEDIUM

The California Employers Association website serves as a membership-based organization providing HR assistance, workplace investigations, and employment law resources to employers primarily in California. The business model focuses on offering tiered membership plans and HR support services to organizations seeking expert guidance in employment matters. The website reflects a medium-sized, established association with a domain age dating back to 1995, indicating a long-standing presence in the market. Technically, the site is built on WordPress with the Yoast SEO plugin, leveraging Cloudflare DNS and Azure CDN for asset delivery. The infrastructure is modern and supports mobile responsiveness with good SEO optimization. However, some technical improvements such as enabling DNSSEC and adding security headers could enhance security posture. From a security perspective, the site uses HTTPS and has domain status protections but lacks visible security headers, privacy policies, cookie consent mechanisms, and incident response information. No vulnerabilities or exposed sensitive data were detected in the provided content. The absence of privacy and cookie policies impacts compliance with GDPR and related regulations. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance and security best practices. Strategic recommendations include implementing comprehensive privacy and cookie policies with consent mechanisms, adding security headers, and publishing vulnerability disclosure and incident response contacts to improve trust and compliance.

30
58
17
65
62
80
100
employerscaliforniahrmembershipassociation+2 more
WordPressYoast SEOFontAwesomejQuery+1
2025-07-29T02:16:16.085Z
paygwa.com favicon

Guam Waterworks Authority

paygwa.com

62
EnergyGuammediumMEDIUM

The Guam Waterworks Authority website serves as the official online portal for water utility services in Guam, providing customers with account management, billing, and payment functionalities. The site targets residents and businesses in Guam, positioning itself as the primary water utility provider in the region. Key services include online bill payment, water consumption tracking, and customer support messaging. The business model is a government utility service with a focus on secure and convenient digital access. Technically, the website is built using modern JavaScript libraries including React, with additional libraries for canvas manipulation and iconography. The site is moderately performant and optimized for mobile devices, though accessibility and SEO optimizations are basic. Hosting and domain registration are managed through GoDaddy, with no DNSSEC enabled and no visible advanced security headers. From a security perspective, the site uses HTTPS and secure login forms but lacks DNSSEC and security headers that could enhance protection. No privacy or cookie policies are present, indicating compliance gaps with GDPR and similar regulations. Contact information is clearly provided, but no incident response or vulnerability disclosure information is available. No advertising or tracking technologies are detected, contributing to minimal user tracking. Overall, the website is professional, trustworthy, and safe for general audiences. However, improvements in privacy compliance, security hardening, and transparency around data protection policies are recommended to enhance user trust and regulatory adherence.

65
35
2
70
72
75
100
governmentutilitywaterpaymentguam+2 more
React (implied by chunk.js and SPA structure)FontAwesomehtml2canvascanvg+2
2025-07-29T02:13:34.122Z
merckformothers.com favicon

Merck & Co., Inc.

merckformothers.com

64
HealthcareUnited StatesenterpriseMEDIUM

MSD for Mothers is a global initiative by Merck & Co., Inc. dedicated to improving maternal health worldwide by reducing preventable pregnancy-related deaths. The website serves as a platform to showcase their programs, strategic investments, and partnerships with organizations such as UNICEF. The initiative targets global health stakeholders, healthcare providers, and the general public, positioning itself as a significant corporate social responsibility effort within the healthcare sector. The content is professionally curated, with consistent branding and clear messaging aligned with Merck's corporate identity. Technically, the website employs a modern technology stack including jQuery, Bootstrap, FontAwesome, and Google Tag Manager, complemented by a OneTrust cookie consent mechanism ensuring GDPR compliance. The site is mobile-optimized with good SEO practices and moderate performance. However, no explicit CMS or hosting provider information is discernible. Security headers are not evident from the provided data, and SSL configuration details are unknown but presumed present given HTTPS usage. From a security perspective, the site demonstrates good practices such as consent-based analytics and cookie management but lacks visible advanced security headers and explicit incident response or security policy disclosures. The absence of WHOIS data for the domain is a notable gap, raising questions about domain registration transparency, though the website content and corporate association mitigate concerns. Overall, the site presents a low-risk profile with room for security enhancements. Strategically, the website effectively communicates its mission and impact, leveraging partnerships and social media to extend reach. The lack of direct contact emails or phone numbers suggests a preference for controlled communication channels, possibly to manage inquiries efficiently. The site is safe for general audiences with no adult or questionable content detected.

50
68
2
70
57
85
100
maternalhealthhealthcarenon-profitglobalhealthmerck
jQuery 3.5.1FontAwesomeBootstrapGoogle Tag Manager+1
2025-07-29T01:11:17.483Z
zencoder.com favicon

Brightcove, Inc.

zencoder.com

65
TechnologyUnited StatesmediumMEDIUM

Brightcove, Inc. is a well-established American software company specializing in online video platform services, including the robust video encoding platform Zencoder. The company targets businesses and developers seeking reliable, scalable video encoding and streaming solutions. Brightcove holds a strong market position as a trusted provider of intelligent video engagement technologies, offering a suite of products such as Marketing Studio, Communications Studio, and Media Studio. Their business model is SaaS-based, focusing on enterprise and mid-sized customers globally. Technically, the website is built on WordPress with Elementor, enhanced by performance optimizations like NitroPack and multilingual support via Weglot. The infrastructure leverages modern web technologies and integrates major analytics and advertising platforms, ensuring a fast, mobile-optimized, and accessible user experience. Security posture is solid with HTTPS enforcement and secure script usage, though explicit security headers and dedicated security policies are not prominently published. Privacy compliance is well addressed with visible privacy and cookie policies and consent mechanisms. Overall, the site reflects a professional and credible business presence with strong branding and user engagement features.

30
65
17
80
57
85
100
videoencodingvideoplatformmediastreamingsaastechnology+1 more
Google Tag ManagerBing AdsElementorNitroPack+4

Partner Domains:

marketplace.brightcove.com
partner
2025-07-29T01:09:11.267Z
eckeroline.com favicon

Eckerö Line Ab Oy

eckeroline.com

71
TransportationFinlandmediumMEDIUM

Eckerö Line Ab Oy operates a professional and well-established ferry service between Helsinki, Finland, and Tallinn, Estonia. The company offers a range of services including passenger ferry trips, hotel packages, daycruises, onboard shopping, and cargo transport. Their market position is solid within the Baltic Sea transportation sector, targeting tourists, business travelers, families, and car travelers. The website reflects a mature digital presence with e-commerce capabilities and multilingual support. Technically, the website is built on Magento, leveraging modern JavaScript frameworks and libraries such as RequireJS and jQuery. It integrates Google Analytics 4 and Google Tag Manager for analytics and marketing, and uses Cookiebot for cookie consent management. The site is mobile optimized and performs moderately well, with good SEO and accessibility features, though some accessibility improvements are recommended. From a security perspective, the site enforces HTTPS and implements key security headers, demonstrating a good security posture. However, there is no explicit security policy or incident response information publicly available, and no vulnerability disclosure program is evident. The absence of WHOIS data for the domain is a concern, as it reduces trust and raises questions about domain registration transparency. Overall, the website is professional, trustworthy, and compliant with privacy regulations, but could improve transparency around security policies and domain registration details. Strategic recommendations include publishing a security policy, enhancing accessibility, and clarifying domain registration information to strengthen trust and compliance.

65
65
17
70
90
80
100
ferrytraveltransportatione-commercealcohol+4 more
Magento (e-commerce platform)RequireJSjQueryGoogle Tag Manager+3

Partner Domains:

www.eckeroline.fi
sister
www.eckeroline.ee
sister
2025-07-29T01:08:31.064Z
hiltifoundation.org favicon

The Hilti Foundation

hiltifoundation.org

62
Non-profitLiechtensteinmediumMEDIUM

The Hilti Foundation is a philanthropic nonprofit organization dedicated to building a better, sustainable future and empowering people to lead independent lives. The website presents a professional and consistent brand image, targeting a general audience including donors, partners, and beneficiaries. The organization operates in the nonprofit sector with a medium-sized presence based in Liechtenstein. Technically, the website is built on the Squarespace platform, leveraging modern web technologies such as jQuery, Google Tag Manager, and Didomi for consent management. The site is mobile-optimized and performs moderately well, with good SEO and basic accessibility features. Security posture is strong with HTTPS and HSTS enabled, although additional security headers and explicit security policies are absent. Privacy compliance is partially addressed through a cookie consent mechanism, but no explicit privacy policy or terms of service pages were found. The WHOIS data is malformed and incomplete, which reduces domain trustworthiness, but the website content and technical setup suggest a legitimate and professional organization. Overall, the site scores well in business credibility and security but should improve transparency in privacy and contact information to enhance trust and compliance.

50
53
17
60
65
75
100
non-profitphilanthropysustainabilityfoundationsquarespace+2 more
Squarespace CMSjQuery 3.5.0Google Tag ManagerDidomi Consent Management+2
2025-07-29T01:08:21.045Z
guamvisitorsbureau.com favicon

Guam Visitors Bureau

guamvisitorsbureau.com

50
HospitalityUnited StatesmediumMEDIUM

The Guam Visitors Bureau operates as the official tourism authority for Guam, providing comprehensive data, marketing, and visitor safety resources to promote tourism and support industry stakeholders. The website serves as a central hub for tourism statistics, industry updates, procurement opportunities, and membership information, targeting both local businesses and visitors. Technically, the site is built on Drupal CMS with modern JavaScript libraries and integrates Google Analytics and Google Translate for analytics and multilingual support. The site is hosted behind Cloudflare DNS and uses HTTPS with domain locking for security. While DNSSEC is not enabled and no explicit security or incident response policies are published, the overall security posture is solid with no critical vulnerabilities detected. The website demonstrates good content quality, accessibility, and SEO practices, with clear navigation and professional branding consistent with a government entity. Contact information and social media presence further enhance trust. Recommendations include enabling DNSSEC, publishing security policies, and adding vulnerability disclosure mechanisms to improve security transparency and compliance.

50
53
17
40
62
75
20
tourismgovernmentguamvisitorinformationtravel+2 more
jQueryDrupal CMSGoogle AnalyticsGoogle Translate+3

Partner Domains:

visitguam.com
partner
cqa.guam.gov
partner

+3 more partners

2025-07-28T23:59:31.878Z
e-num.com favicon

E-NUM

e-num.com

9
TechnologyN/amediumCRITICAL

E-NUM is a technology company specializing in passwordless authentication services using a challenge-response mechanism facilitated by a mobile application. The website targets website owners and users seeking secure and convenient authentication solutions. With over 12 million active users, E-NUM holds a solid market position as an established authentication service provider since 2003. The business model focuses on providing authentication services to websites, enhancing security and user experience. Technically, the website employs a modern but standard technology stack including jQuery, Bootstrap, and popular UI libraries. The site is mobile optimized and presents a professional design with clear navigation. However, there is no evidence of advanced CMS usage or hosting details. Performance is moderate with room for improvement in SEO and accessibility. From a security perspective, the domain is registered with a reputable registrar and has a long history, supporting legitimacy. However, DNSSEC is not enabled, and no security headers are detected in the HTML content. The site lacks a cookie consent mechanism and detailed security or incident response policies. Contact information is limited to an email address and a registration form, with no phone or physical address provided. Overall, the website is functional, professional, and trustworthy but could improve its security posture and privacy compliance to meet modern standards. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent, and publishing comprehensive security and incident response policies.

-
-
-
-
-
-
-
authenticationsecuritypasswordlessmobileapptwo-factorauthentication
jQueryBootstrapFontAwesomeRevolution Slider+2
2025-07-28T23:59:01.389Z
digimarkkinointi.fi favicon

Suomen Digimarkkinointi Oy

digimarkkinointi.fi

73
TechnologyFinlandsmallMEDIUM

Suomen Digimarkkinointi Oy is a Finnish digital marketing agency established in 2009, specializing in SEO, Google Ads, social media marketing, and web development services. The company targets Finnish SMEs and corporate clients seeking to enhance their online presence and advertising effectiveness. The website reflects a professional and consistent brand image aligned with the company's business focus. Technically, the site employs modern JavaScript libraries such as Alpine.js, FontAwesome icons, and integrates Google Tag Manager, Microsoft Clarity, and Cookiebot for analytics and privacy compliance. Hosting and DNS services are provided by reputable providers including Gandi SAS and Seravo Oy. Security posture is solid with HTTPS enforced, standard security headers present, and use of reCAPTCHA to protect forms. However, DNSSEC is not implemented, and no explicit security policy or incident response contact is published. Privacy and cookie policies are comprehensive and GDPR compliant, with visible consent mechanisms. WHOIS data is transparent and consistent with the website's business claims, indicating high legitimacy and trustworthiness. Overall, the website scores well on content quality, technical implementation, security, privacy compliance, and business credibility, making it a reliable and professional digital marketing service provider online.

50
95
17
70
85
80
100
digitalmarketingseogoogleadssocialmediaanalytics+3 more
Google Tag ManagerCookiebotMicrosoft ClarityGoogle reCAPTCHA+4

Partner Domains:

digimarkkinointi.fi
partner
2025-07-28T22:53:59.449Z
wa.gov favicon

State of Washington

wa.gov

64
GovernmentUnited StatesenterpriseMEDIUM

WA.gov is the official website of the State of Washington, serving as a centralized portal for residents, businesses, families, seniors, and visitors to access government services, agencies, and helpful guides. The site is well-established with a domain age dating back to 1997, reflecting its long-standing role as a trusted government resource. It offers a broad range of services including contact directories, how-to guides, and a secure login portal for state services (SecureAccess Washington). The website targets a diverse audience with multilingual support and accessibility considerations. Technically, the site is built on Drupal 10 with modern front-end frameworks like Bootstrap 5.2, and integrates third-party tools such as Google Tag Manager, Yext Answers Search, and Qualtrics for analytics and user feedback. The site is mobile-optimized, accessible, and SEO-friendly, providing a professional and user-friendly experience. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, DNSSEC is not enabled, and there is a lack of explicit security policies or incident response information publicly available. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is moderate, with a clear privacy policy but no cookie consent mechanism. Overall, WA.gov demonstrates a strong business credibility and technical maturity appropriate for a government entity. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent mechanisms, and publishing security and incident response policies to enhance trust and compliance.

50
53
2
75
72
75
100
governmentstateserviceswashingtonpublicservicesofficial
Drupal 10Bootstrap 5.2Google Tag ManagerYext Answers Search+3
2025-07-28T21:44:34.884Z
tmgoneview.com favicon

Travel Media Group

tmgoneview.com

53
MediaN/amediumMEDIUM

TMG OneView is a content management platform operated by Travel Media Group, targeting media professionals and content managers. The website serves primarily as a login portal for users to access the platform. The business model is B2B SaaS focused on media content management, with a moderate market position in its niche. The branding is consistent and professional, though the site lacks publicly visible privacy and cookie policies, which are important for compliance and user trust. Technically, the website uses modern web technologies including Google Tag Manager and Hotjar for analytics and user behavior tracking. The site is served over HTTPS with secure form practices such as CSRF tokens, but lacks security headers that could enhance protection. Performance and mobile optimization are adequate, though accessibility features are basic. From a security perspective, the site demonstrates good practices in secure form handling and HTTPS enforcement but would benefit from additional security headers and published privacy policies. The absence of WHOIS data for the domain raises concerns about domain legitimacy and age, suggesting the domain may be new or privacy-protected, which impacts trustworthiness. Overall, the website is functional and professional but should improve privacy compliance and security posture. Strategic recommendations include publishing privacy and cookie policies, implementing security headers, and clarifying domain registration details to enhance trust and compliance.

15
35
2
60
77
60
100
contentmanagementloginmediatravelanalytics+1 more
Google Tag ManagerHotjarFontAwesomeJavaScript ES6++2

Partner Domains:

travelmediagroup.com
partner
2025-07-28T20:33:22.415Z
pledgereg.com favicon

Outside Interactive, Inc.

pledgereg.com

69
OtherN/amediumMEDIUM

PledgeReg is a specialized online fundraising platform integrated with the athleteReg family of event registration sites, including BikeReg, RunReg, TriReg, and SkiReg. It offers personalized fundraising pages for participants and supports event-wide and team fundraising efforts. The platform targets event organizers and participants in athletic fundraising events, providing tools for monitoring, reporting, and incentivizing fundraising success. The business model is SaaS-based with revenue generated primarily through transaction fees upon successful fundraising. The website is professionally designed, consistent in branding, and supported by customer testimonials, indicating a strong market position within its niche. Technically, the website is built on ASP.NET WebForms with modern JavaScript libraries such as jQuery, FontAwesome, and Modernizr. It leverages cloud hosting via AWS Cloudfront CDN and integrates analytics tools like Google Analytics and RudderStack for user tracking and data collection. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and uses secure form handling with heartbeat mechanisms to maintain session integrity. However, it lacks visible security headers and does not publicly disclose a security policy or incident response procedures, which are areas for improvement. The absence of WHOIS registration data for the domain is a notable concern, although the association with the reputable parent company Outside Interactive, Inc. and integration with established platforms mitigates some risk. Overall, PledgeReg presents a trustworthy and functional fundraising platform with solid technical infrastructure and business credibility. Strategic enhancements in security transparency and domain registration clarity would further strengthen its risk profile and stakeholder confidence.

55
83
2
85
65
80
100
fundraisingsportseventmanagementathleteregonlinedonations
ASP.NET WebFormsjQuery 3.6.0jQuery UI 1.12.1FontAwesome+5

Partner Domains:

bikereg.com
sister
runreg.com
sister

+3 more partners

2025-07-28T19:26:33.086Z
loftliving.com favicon

RealPage

loftliving.com

72
Real EstateUnited StatesenterpriseMEDIUM

LOFTLiving.com is the official website for the LOFT resident app, a product of RealPage, Inc., a well-established enterprise in the real estate technology sector since 1996. The platform offers a comprehensive resident portal solution that streamlines the rental experience from leasing to living, including rent payments, moving assistance, rewards, maintenance, and community updates. The website targets renters and property managers, positioning itself as an integrated and seamless solution in the multifamily housing market. Technically, the website employs modern web technologies including JavaScript frameworks, Google Tag Manager, OneTrust for cookie compliance, and other marketing and analytics tools. The site is mobile-optimized with good SEO and accessibility basics, hosted likely on RealPage infrastructure with DNS managed via realpage.com nameservers. Performance is moderate, with room for improvement in accessibility features. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR. However, it lacks published security policies, incident response contacts, and vulnerability disclosure information. DNSSEC is not enabled, representing a minor security gap. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. The domain WHOIS data confirms a long-standing and consistent registration history, reinforcing the legitimacy of the business. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and enhancing accessibility and security headers to further strengthen the security posture.

65
85
22
82
62
80
100
residentportalrentalmanagementrealestatetechnologymultifamilyhousingresidentapp
JavaScriptGoogle Tag ManagerOneTrust Cookie ConsentHockeystack Pardot+4

Partner Domains:

realpage.com
parent
login.loftliving.com
service
2025-07-28T15:17:08.635Z