Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 86 of 101|Showing 4251-4300 of 5032
centra.dev favicon

Centra

centra.dev

60
E-commerceN/amediumMEDIUM

Centra is a technology company specializing in providing developer-centric e-commerce solutions through APIs and headless commerce platforms. Their website offers comprehensive documentation, guides, and sandbox access aimed at developers and e-commerce businesses seeking to build custom commerce stacks. The company positions itself as a flexible and modern alternative in the e-commerce technology market, focusing on Direct-to-Consumer and Wholesale business models. Technically, the website leverages modern frameworks such as Next.js and React, with GraphQL APIs and integrations with HubSpot for forms and Leadfeeder for tracking. The site demonstrates good performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. SEO practices are well implemented with appropriate meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and uses asynchronous script loading to optimize performance and security. However, it lacks published security policies, incident response information, and vulnerability disclosure mechanisms, which are important for transparency and trust. Privacy and cookie policies are also missing, indicating compliance gaps with GDPR and related regulations. Overall, Centra's website is professional and trustworthy, with strong business credibility and technical maturity. The main risks relate to privacy compliance and security transparency, which should be addressed to enhance user trust and regulatory adherence.

30
35
47
40
72
75
100
e-commercedeveloperapigraphqlheadlesscommerce+2 more
ReactNext.jsGraphQLHubSpot Forms+1
2025-06-26T22:23:56.869Z
pdfgeneratorapi.com favicon

PDF Generator API

pdfgeneratorapi.com

74
TechnologyN/asmallMEDIUM

PDF Generator API is a technology company specializing in providing an API service that automates PDF document creation from templates and JSON data. Their platform targets developers and businesses seeking to integrate PDF generation capabilities into their applications, offering a browser-based drag-and-drop editor for template management. The company appears to be a small-sized entity founded around 2017, with a focused niche in document automation technology. Technically, the website leverages modern web technologies including Next.js and React, supported by analytics and monitoring tools such as Mixpanel, Google Analytics 4, RudderStack, and Bugsnag. Hosting is likely on Amazon AWS infrastructure, indicated by the DNS servers. The site demonstrates moderate performance and good mobile optimization, with basic accessibility and SEO practices in place. From a security perspective, the site enforces HTTPS and includes a cookie consent mechanism with granular user options, reflecting some privacy compliance efforts. However, the absence of DNSSEC, security headers, explicit privacy policy, terms of service, and contact information for security or incident response reduces the overall security posture. No WAF or blocking mechanisms were detected, and the domain registration is consistent and legitimate. Overall, the website presents a professional and functional service with room for improvement in privacy transparency, security hardening, and contact availability. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing comprehensive privacy and security policies, and providing clear contact channels for incident response.

30
100
55
70
77
85
100
pdfgenerationapidocumentautomationtechnologydevelopertools
Next.jsReactMixpanelGoogle Analytics 4+4
2025-06-26T21:09:31.765Z
gramedia.com favicon

PT Gramedia Asri Media

gramedia.com

67
RetailIndonesialargeMEDIUM

Gramedia.com is the largest and most trusted online bookstore in Indonesia, operated by PT Gramedia Asri Media. The website offers a comprehensive catalog of books and related products, targeting Indonesian consumers interested in literature and educational materials. The business model is e-commerce retail with a strong emphasis on official stores and promotional campaigns. The company maintains a significant market position as a leading book retailer in the region. Technically, the website is built on modern frameworks such as React and Next.js, incorporating various analytics and marketing tools including Google Analytics, Hotjar, TikTok Pixel, and Facebook Pixel. The site demonstrates good mobile optimization and SEO practices, although accessibility features could be improved. Performance is moderate, with a well-structured and professional design. From a security perspective, the site enforces HTTPS and employs standard security headers, reflecting a solid security posture. However, the absence of a visible cookie consent mechanism and explicit security or incident response policies indicates room for improvement in privacy compliance and transparency. The WHOIS data is unavailable, which slightly reduces trust but is mitigated by the company's established market presence and consistent branding. Overall, Gramedia.com is a credible and professionally managed e-commerce platform with a strong business foundation and good technical implementation. Strategic enhancements in privacy compliance and security transparency would further strengthen its trustworthiness and regulatory adherence.

20
70
17
85
77
85
100
e-commercebooksretailindonesiaonlinestore+1 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+6

Partner Domains:

help.gramedia.com
service
ebooks.gramedia.com
service

+2 more partners

2025-06-26T17:50:44.221Z
wittl.co favicon

Wittl

wittl.co

62
TechnologyN/asmallMEDIUM

Wittl is a SaaS company providing a modern applicant tracking system tailored for small and medium-sized teams. Their platform enables users to create job postings, customize career sites, manage applicant reviews, and collaborate efficiently during the hiring process. Positioned as an affordable and user-friendly alternative to legacy ATS solutions, Wittl targets SMBs seeking streamlined recruitment workflows. The website demonstrates a professional and consistent brand presence with clear service offerings and customer testimonials, reinforcing trust and market relevance. Technically, the site is built on a modern React and Next.js stack, delivering fast performance and excellent mobile optimization. The use of privacy-focused analytics (Plausible) aligns with contemporary data protection expectations. However, the absence of certain security headers and cookie consent mechanisms indicates room for improvement in security and privacy compliance. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data, reflecting good baseline security hygiene. The lack of published security policies or incident response contacts suggests an opportunity to enhance transparency and preparedness. The WHOIS data is privacy protected, which is typical for SaaS businesses but limits external verification of registrant details. Overall, Wittl presents a credible and well-executed online presence with minor gaps in privacy compliance and security best practices. Strategic enhancements in these areas would further strengthen user trust and regulatory alignment.

30
58
2
70
72
80
100
applicanttrackinghiringrecruitmentsaassmallbusiness+3 more
ReactNext.jsJavaScriptSVG+1
2025-06-26T16:39:31.215Z
videogen.io favicon

VideoGen, Inc.

videogen.io

59
TechnologyIcelandsmallMEDIUM

VideoGen, Inc. operates a cutting-edge AI-powered video generation platform designed to simplify and accelerate video creation for content creators, marketers, educators, and businesses. The platform offers a wide range of AI-driven features including script writing, voiceover generation, avatar integration, and multi-format video outputs tailored for social media and professional use. Backed by Y Combinator and trusted by millions, VideoGen positions itself as a leading SaaS solution in the AI video generation market. Technically, the website is built on modern web technologies including React and Next.js, hosted and secured via Cloudflare. It demonstrates excellent performance, mobile optimization, and SEO practices. The security posture is strong with HTTPS enforcement and appropriate security headers, although privacy compliance could be enhanced by implementing explicit cookie consent mechanisms. From a security perspective, no critical vulnerabilities or exposed sensitive data were detected. The domain uses privacy protection for WHOIS data, which is justified for a startup. The business credibility is high, supported by professional branding, testimonials, and a comprehensive affiliate program. Overall, VideoGen presents a mature digital presence with room for minor improvements in privacy transparency and security policy disclosures.

15
53
17
72
65
65
100
aivideogeneratorsaascontentcreationmarketing+2 more
ReactNext.jsCloudflare DNSGoogle Fonts+3

Partner Domains:

webforms.pipedrive.com
partner
app.dover.com
partner
2025-06-26T15:29:21.187Z
cekura.ai favicon

Tatva Labs Inc.

cekura.ai

63
TechnologyUnited StatessmallMEDIUM

Cekura, operated by Tatva Labs Inc., is a technology company specializing in AI voice agent testing and observability solutions. The company offers a SaaS platform that enables enterprises and conversational AI companies to efficiently test, monitor, and improve their AI voice agents. Positioned as a trusted partner with backing from Y Combinator and strategic partnerships with Cisco, Cekura serves over 50 conversational AI companies globally. Their platform supports scenario simulation, persona emulation, and real-time alerting to ensure AI agents perform reliably in complex conversational workflows. Technically, the website is built on modern frameworks such as Next.js and React, with integrated analytics via PostHog and scheduling via Cal.com, demonstrating a mature digital infrastructure with fast performance and excellent mobile optimization. Security-wise, the company holds SOC2 Type2 and HIPAA compliance certifications, indicating a strong commitment to data protection and regulatory adherence. However, the site lacks explicit security headers and a public vulnerability disclosure, which are recommended for enhanced security posture. Overall, Cekura presents a professional, trustworthy, and technically sound presence in the AI voice technology market.

30
53
55
35
72
75
100
aivoiceevaluationaivoiceobservabilityaivoiceqaautomatedvoiceaitestingvoiceaitesting+4 more
ReactNext.jsPostHog analyticsVideo embedding+1

Partner Domains:

cisco.com
partner
retell.ai
partner
2025-06-26T15:28:56.130Z
getnowadays.com favicon

Nowadays AI, Corp.

getnowadays.com

62
TechnologyN/asmallMEDIUM

Nowadays AI, Corp. operates a technology-driven platform that leverages artificial intelligence to streamline corporate event planning. The company positions itself as an in-house event planner for businesses, offering services such as venue search, negotiation with venues globally, and travel agency capabilities certified by IATA. The platform targets corporate clients seeking efficient and hassle-free event organization, supported by notable trust signals including Y Combinator backing and press coverage. Technically, the website is built using modern frameworks such as Next.js and React, with integrations like Intercom for customer engagement and embedded YouTube videos for marketing. The site demonstrates good mobile optimization and SEO practices, though some accessibility features could be enhanced. Performance is moderate, with room for improvement in loading speed and security headers. From a security perspective, the site uses HTTPS (implied by the URL), but no explicit security headers were detected in the HTML content. Privacy and terms of service pages are present, indicating some compliance with data protection regulations such as GDPR. However, no cookie consent mechanism or detailed security policies were found, suggesting areas for compliance improvement. Overall, the risk profile is moderate with no critical security issues detected. The lack of public WHOIS data is typical for startups and does not detract from legitimacy given the professional branding and external validations. Strategic recommendations include enhancing security headers, implementing cookie consent, and publishing more detailed security and incident response policies to strengthen trust and compliance.

35
53
17
75
72
65
100
aieventplanningcorporatesaasycombinator+1 more
ReactNext.jsJavaScriptIntercom+1
2025-06-26T15:28:41.100Z
lmc.eu favicon

Alma Career

lmc.eu

67
OtherCzech RepubliclargeMEDIUM

Alma Career is a prominent HR and recruitment services provider operating primarily in Czechia and across Europe. The company offers a comprehensive suite of services including job portals, online education platforms, recruitment management tools, employee engagement surveys, and salary benchmarking. Their market position is strong, supported by multiple well-known brands such as Jobs.cz and Platy.cz, serving a broad audience of HR professionals, employers, and job seekers. The website reflects a mature digital presence with modern technologies and a professional design. Technically, the website is built using Next.js and React frameworks, leveraging modern web standards and optimized for performance and mobile responsiveness. The use of Google Tag Manager and Analytics indicates a moderate level of user tracking balanced with privacy compliance. The site employs security best practices including HTTPS, security headers, and cookie consent mechanisms, though explicit security policies and incident response contacts are not published. From a security perspective, the site demonstrates a good posture with no visible vulnerabilities or exposed sensitive data. However, the absence of WHOIS data for the domain introduces some uncertainty regarding domain legitimacy, although the strong brand presence and consistent business information mitigate this concern. Overall, the risk is moderate with recommendations to enhance transparency around security policies and incident response. Strategically, Alma Career should focus on publishing detailed security and incident response policies, consider a vulnerability disclosure program, and continue to monitor domain registration details to maintain trust. Enhancing accessibility and expanding data retention disclosures would further improve compliance and user trust.

30
85
2
85
72
80
100
hrrecruitmentjobportalonlineeducationsalarydata+5 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+3

Partner Domains:

jobs.cz
subsidiary
platy.cz
subsidiary

+3 more partners

2025-06-26T13:11:18.921Z
pizzacoloseum.cz favicon

Wi s.r.o.

pizzacoloseum.cz

46
HospitalityCzech RepublicmediumHIGH

Pizza Coloseum is a Czech hospitality business specializing in Italian cuisine, operating multiple restaurant locations primarily in Prague, Ostrava, and Teplice. The company emphasizes tradition and authentic Italian flavors, targeting local customers and visitors seeking quality dining experiences. The business model is based on brick-and-mortar restaurants with an integrated online reservation system, positioning itself as a regional restaurant chain with a medium-sized footprint. Technically, the website is built using modern web technologies including React, Next.js, and Apollo GraphQL, hosted on a Czech provider (WEDOS). The site includes a comprehensive cookie consent mechanism powered by Cookiebot, reflecting a moderate level of digital maturity and privacy compliance. Performance and mobile optimization are good, though accessibility features are basic. From a security perspective, the site uses HTTPS and implements cookie consent but lacks visible security headers and explicit security policies or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. The domain is long-established (since 1999) and registration data is consistent with the business location, supporting legitimacy. Overall, the website presents a professional and trustworthy online presence with room for improvement in privacy policy publication, security header implementation, and contact information transparency. Strategic recommendations include enhancing security headers, publishing clear privacy and terms documents, and adding incident response contacts to strengthen compliance and trust.

-
83
2
70
62
75
-
restaurantpizzaitaliancuisinecookieconsenthospitality+2 more
ReactNext.jsCookiebotApollo GraphQL
2025-06-26T12:05:10.802Z
nf2091.org favicon

VAKOVAKO | Endowment fund

nf2091.org

62
Non-profitCzech RepublicsmallMEDIUM

VAKOVAKO is a Czech Republic-based non-profit endowment fund operating a global donation platform focused on environmental and humanitarian causes. The platform connects donors with carefully vetted nonprofits working in areas such as rainforests, oceans, biodiversity, endangered species, and humanity. The business model emphasizes transparency, with 100% of donations going directly to nonprofits and audited bank accounts. The platform supports donations via a mobile app available on iOS and Android, facilitating easy and fast contributions with no minimum or maximum limits. Technically, the website is built using modern web technologies including React and Next.js, with integrations for Stripe payments, Google Tag Manager, Facebook Pixel, and Cookiebot for consent management. The site is well-optimized for mobile devices, fast loading, and includes accessibility features. Security best practices are observed with HTTPS, security headers, and reCAPTCHA integration, though no explicit security policy or incident response information is published. The WHOIS data for the domain is unavailable or malformed, indicating privacy protection which is common and justified for non-profit organizations. Despite this, the website's transparency, presence of official policies, and contact information support its legitimacy. Overall, the site presents a professional, trustworthy, and user-friendly platform for charitable donations. Recommendations include publishing a dedicated security policy, incident response contacts, and vulnerability disclosure information to further enhance trust and security posture.

35
73
2
60
72
70
100
donationnonprofitcharityenvironmenthumanity+3 more
ReactNext.jsStripeGoogle Tag Manager+3
2025-06-26T10:56:51.918Z
klepierre.cz favicon

Klépierre Management Česká Republika s.r.o.

klepierre.cz

54
Real EstateCzech RepubliclargeMEDIUM

Klépierre Management Česká Republika s.r.o. operates prominent shopping centers in the Czech Republic, including Nový Smíchov in Prague and Plzen Plaza in Plzeň. The company is part of the larger Klépierre group based in France, specializing in retail real estate management. Their website provides information about their centers, compliance mechanisms including a whistleblowing system, and cookie consent management, reflecting a commitment to regulatory compliance and user privacy. Technically, the website is built using modern web technologies such as Next.js and React, hosted via Gandi registrar's infrastructure. The site includes a comprehensive cookie consent mechanism using tarteaucitron.js and integrates Google Tag Manager for analytics. The website is mobile-optimized and provides a good user experience with clear navigation and branding consistency. From a security perspective, the site enforces HTTPS and uses a high privacy cookie consent mode. It features a whistleblowing system for incident reporting, demonstrating a mature compliance posture. However, explicit security headers and a dedicated security policy page are absent, and no vulnerability disclosure or security.txt file was found. These gaps suggest room for improvement in formalizing security communication and transparency. Overall, the website is professional, trustworthy, and compliant with GDPR requirements. The domain age and WHOIS data align with the business claims, indicating legitimacy. Strategic recommendations include enhancing security headers, publishing a security policy, and adding a vulnerability disclosure mechanism to strengthen security posture and trust.

40
25
17
40
52
75
100
realestateshoppingcenterscompliancewhistleblowingcookieconsent+2 more
ReactNext.jsJavaScripttarteaucitron.js (cookie consent)+1

Partner Domains:

klepierre.ethicspoint.com
partner
novy-smichov.klepierre.cz
subsidiary

+1 more partners

2025-06-26T10:55:26.352Z
altex.ro favicon

Altex

altex.ro

48
E-commerceRomanialargeHIGH

Altex.ro is a well-established Romanian e-commerce platform specializing in the sale of electronics and household appliances. Founded in 2001, it holds a strong market position as a leading retailer in Romania, offering a wide range of products including phones, laptops, TVs, and home appliances. The website features a comprehensive product catalog and supports fast delivery and installment payment options, targeting Romanian consumers seeking competitive prices and convenience. Technically, the website is built using modern web technologies such as React and Next.js, hosted on Akamai's infrastructure, and integrates analytics and marketing tools like Google Tag Manager, Hotjar, and Cookiebot for consent management. The site is mobile-optimized and provides a good user experience with clear navigation and professional design. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks explicit security headers and published security policies. No critical vulnerabilities or blocking mechanisms were detected. However, the absence of a visible privacy policy, terms of service, and direct contact information for security incidents indicates areas for improvement in compliance and transparency. Overall, Altex.ro demonstrates a mature digital presence with strong business credibility and technical implementation. Strategic enhancements in privacy documentation, security policy publication, and contact transparency would further strengthen its security posture and regulatory compliance.

-
40
17
85
-
60
100
electronicse-commerceromaniaappliancesshopping
ReactNext.jsGoogle Tag ManagerHotjar+1
2025-06-25T17:07:52.135Z
rephop.com favicon

Rephop

rephop.com

74
FinanceDenmarksmallMEDIUM

Rephop is a specialized SaaS provider offering web-based group consolidation, reporting, and planning software tailored for CFOs and finance professionals. Established in 2013, it has positioned itself as a trusted solution for simplifying complex financial consolidation processes across multiple subsidiaries and currencies. The platform emphasizes ease of use, powerful features such as intergroup transaction reconciliation, non-controlling interest calculations, and compliance with IFRS and US GAAP standards. Its market presence is supported by customer testimonials and a clear pricing model targeting small to medium-sized businesses and enterprises. Technically, Rephop leverages modern web technologies including Next.js and React, hosted on Vercel with Cloudflare DNS services. The website is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. Analytics tools such as Vercel Analytics and Google Tag Manager are used for user behavior tracking, though privacy compliance could be enhanced with explicit cookie consent mechanisms. From a security perspective, the site enforces HTTPS and uses domain transfer protection, but lacks DNSSEC and explicit security or incident response policies. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms a consistent and legitimate domain registration history aligned with the company's operational timeline. Overall, Rephop demonstrates a strong business and technical foundation with room for improvement in privacy compliance and security transparency. Strategic recommendations include implementing cookie consent, publishing security policies, and enabling DNSSEC to bolster trust and regulatory adherence.

95
53
17
87
72
85
100
rephopconsolidationreportingfinancialplanninggroupreporting+2 more
Next.jsReactVercel AnalyticsCloudflare DNS
2025-06-25T17:07:51.626Z
ryapolov.com favicon

Afternic (GoDaddy Operating Company, LLC)

ryapolov.com

70
TechnologyUnited StateslargeMEDIUM

The website ryapolov.com is a domain sales landing page hosted on the Afternic platform, a domain aftermarket service owned by GoDaddy Operating Company, LLC. It offers the domain ryapolov.com for sale with options to buy outright or lease to own. The site targets domain buyers including businesses and individuals seeking premium domain names. The business model is focused on domain brokerage and sales, leveraging GoDaddy's extensive infrastructure and brand recognition. The platform provides contact forms and phone support to facilitate domain price inquiries and transactions. Technically, the site is built using modern web technologies including React and Next.js, hosted on Amazon AWS infrastructure. It employs HTTPS with strong security headers and integrates third-party services such as Klarna for payments and Trustpilot for reputation. The site is optimized for performance and mobile responsiveness, with good SEO and basic accessibility features. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature digital presence. From a security perspective, the website demonstrates strong posture with enforced HTTPS, secure forms protected by reCAPTCHA, and no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security policy documentation and incident response contact information, which are recommended for enhanced trust and compliance. The absence of WHOIS data for the domain reduces transparency but is likely due to privacy protection or query limitations. Overall, the site is legitimate, professional, and secure, suitable for its domain sales purpose. The overall risk assessment is low, with recommendations to improve transparency by publishing security policies and incident response details, enhancing accessibility, and maintaining regular audits of third-party scripts. These steps will further strengthen trust and compliance in the competitive domain aftermarket space.

65
50
17
75
100
70
100
domainsalesdomainmarketplaceafternicgodaddydomainforsale+5 more
ReactNext.jsJavaScriptCSS+2

Partner Domains:

godaddy.com
partner
trustpilot.com
partner
2025-06-25T17:07:51.186Z
hub88.io favicon

HUB88 Limited

hub88.io

62
TechnologyMaltamediumMEDIUM

HUB88 Limited operates a technologically advanced casino games aggregation platform, offering a single API to integrate over 12,000 games from more than 100 suppliers. The company positions itself as the fastest aggregator in the iGaming industry, targeting operators and suppliers seeking efficient and scalable integration solutions. Their platform includes a powerful back office, personalized player content, and a payments platform, supported by 24/7 live customer support and transparent platform status monitoring. The company is licensed and regulated by the Malta Gaming Authority, enhancing its credibility in the regulated gaming market. Technically, the website is built using modern frameworks such as Next.js and React, hosted behind Cloudflare DNS and CDN services. It employs analytics tools including Google Tag Manager and LinkedIn Insight Tag, indicating a mature digital marketing and analytics setup. The website is well-optimized for mobile devices, has good accessibility features, and demonstrates strong SEO practices. From a security perspective, the site enforces HTTPS, uses standard security headers, and does not expose sensitive data. However, it lacks a visible cookie consent mechanism and formal security or incident response policies, which are areas for improvement to enhance compliance and trust. The domain registration is consistent and legitimate, with no privacy protection masking ownership, and a long registration period indicating business stability. Overall, HUB88 presents a professional, secure, and credible online presence with minor gaps in privacy compliance and formal security disclosures. Strategic improvements in these areas would further strengthen their market position and regulatory adherence.

-
58
17
75
77
80
100
casinogamingaggregationapiigaming+3 more
ReactNext.jsCloudflare DNSGoogle Tag Manager+1
2025-06-25T17:07:50.696Z