Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157030
Websites
130
Industries
113
Countries
52
Avg Score
Page 868 of 3141|Showing 43351-43400 of 157030
resilientwebdesign.com favicon

Jeremy Keith

resilientwebdesign.com

50
TechnologyN/asmallMEDIUM

Resilient Web Design is a specialized educational website authored by Jeremy Keith, offering a free web book on resilient web design principles. The site targets web designers and front-end developers seeking to deepen their understanding of web design philosophy. It provides multiple downloadable formats and podcast versions, enhancing accessibility and user engagement. The website enjoys a strong reputation within the web development community, supported by numerous positive testimonials from recognized professionals. Technically, the website employs a clean and modern tech stack based on HTML5, CSS3, and JavaScript, with hosting infrastructure leveraging Amazon S3 for content delivery. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, contributing to a fast and user-friendly experience. However, it lacks advanced security headers and DNSSEC, which could be improved to enhance security posture. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks published privacy, cookie, or security policies, which are important for compliance and user trust. No forms or contact information are provided, limiting direct communication channels. No vulnerabilities or malicious content were detected, and no WAF or blocking mechanisms interfere with content access. Overall, the website presents a low-risk profile with strong content quality and business credibility but would benefit from enhanced privacy compliance and security best practices to further solidify trust and regulatory adherence.

30
35
17
60
-
75
100
webdesigneducationtechnologypodcastfreebook+1 more
HTML5CSS3JavaScript
2025-10-18T14:43:01.099Z
K

Kay Belardinelli

kangabell.com

44
OtherN/asmallHIGH

The website kangabell.com represents a personal and professional online presence for Kay Belardinelli, an artist and web accessibility specialist. The site is simple and minimalistic, focusing on presenting the individual's name, pronouns, and professional description. There is no evidence of commercial activity, contact forms, or extensive business information, indicating a small-scale personal portfolio or professional showcase. From a technical perspective, the site is built with basic HTML and CSS, using custom fonts loaded locally. There is no detected CMS or advanced frameworks, and the hosting is provided by DreamHost, LLC. The site appears to be moderately optimized for mobile devices and accessibility, though it lacks advanced SEO and performance optimizations. No third-party analytics or advertising technologies are present. Security posture is minimal; the domain uses HTTPS (implied by the URL), but no security headers or advanced configurations are detected. The WHOIS data is transparent and consistent with the website content, showing a long-standing domain registration without privacy protection, which is appropriate for this type of site. However, the absence of privacy and cookie policies, as well as contact information, limits compliance and trust. Overall, the site is low risk, safe for general audiences, and serves as a basic professional portfolio. Strategic recommendations include adding privacy and cookie policies, implementing security headers, and providing contact information to improve trust and compliance.

15
50
2
60
72
75
20
artistwebaccessibilitypersonalwebsiteprofessionalportfolio
HTML5CSS3WOFF2 fontsWOFF fonts+1
2025-10-18T14:42:41.060Z
thesaltandpeppershakermuseum.com favicon

The Salt And Pepper Shaker Museum

thesaltandpeppershakermuseum.com

51
HospitalityUnited StatessmallMEDIUM

The Salt and Pepper Shaker Museum is a niche hospitality business located in Gatlinburg, Tennessee, offering a unique museum experience focused on salt and pepper shakers and pepper mills. It targets tourists and collectors, leveraging its unique collection and location near the Great Smoky Mountain National Park. The business operates a physical museum with admission fees and a gift shop, complemented by an online presence including a virtual museum and online store. The website reflects a small but established business with consistent branding and trust indicators such as TripAdvisor recognition and active social media channels. Technically, the website is built on an older ASP.NET WebForms platform with DNN CMS, using common libraries like jQuery and Bootstrap. While the site is functional and moderately optimized for mobile, it lacks advanced modern features and some security best practices. Security posture is adequate with HTTPS and domain protections but could be improved by enabling DNSSEC and adding security headers. Privacy compliance is basic with a privacy policy and cookie consent banner but no explicit GDPR compliance statements. Overall, the website is trustworthy and professional but would benefit from technical and security enhancements to improve resilience and compliance.

30
83
2
60
62
75
20
museumsaltandpeppergatlinburgtourismcollectibles+1 more
ASP.NET WebFormsjQueryBootstrapFacebook SDK

Partner Domains:

MuseodeSalerosyPimenteros.com
sister
ludden.com
related

+1 more partners

2025-10-18T14:42:31.043Z
burnsnotice.com favicon

Burns Notice

burnsnotice.com

58
MediaN/asmallMEDIUM

Burns Notice is an independent journalism website run by Katelyn Burns, focusing on trans rights, politics, internet culture, gaming, and occasional sports commentary. The site operates primarily as a newsletter subscription platform with additional podcast content, targeting a general audience interested in progressive political commentary. The website is built on the Ghost CMS platform, leveraging modern web technologies including JavaScript, CSS, and integrations with Stripe for payment processing and Art19 for podcast delivery. The site demonstrates good design quality, mobile optimization, and SEO practices, though accessibility features are basic. From a security perspective, the website enforces HTTPS and uses secure form inputs but lacks explicit security headers such as Content-Security-Policy and X-Frame-Options. No privacy or cookie policies are published, which impacts compliance with GDPR and other privacy regulations. The absence of WHOIS registration data raises concerns about domain legitimacy and transparency, although the website content and branding appear professional and consistent. Overall, the site presents a moderate security posture with room for improvement in privacy compliance and security best practices. The lack of direct contact information and incident response details limits trust signals. Strategic recommendations include publishing privacy and cookie policies, adding security headers, and clarifying domain registration status to enhance credibility and compliance.

15
35
2
70
95
75
100
independentjournalismnewslettertransrightspoliticsmedia
Ghost CMSJavaScriptCSSStripe (payment processing)+3
2025-10-18T14:42:11.005Z
thisiscolossal.com favicon

Colossal Projects Inc.

thisiscolossal.com

69
MediaUnited StatessmallMEDIUM

Colossal Projects Inc. operates 'Colossal', an independent online art magazine based in Chicago, focusing on contemporary art, craft, photography, and visual culture since 2010. The website serves a niche audience of art enthusiasts and creatives, offering rich editorial content, a membership program, and an e-commerce shop. The business model is primarily media publishing with monetization through memberships and merchandise sales. The company maintains a consistent and professional brand image with excellent content quality and user experience. Technically, the website is built on WordPress with modern plugins such as Yoast SEO Premium and Memberful for membership management. It integrates Google Analytics and Google Tag Manager for analytics and uses Google Ad Manager for advertising. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and uses nonce tokens for AJAX requests, indicating good security hygiene. However, security headers are not explicitly detected, and no incident response or vulnerability disclosure policies are found. The absence of WHOIS data for the domain is a notable concern, potentially indicating domain registration issues or privacy protection, which slightly impacts trustworthiness. Overall, Colossal presents a low-risk profile with strong content and technical maturity but should verify domain registration details and enhance security headers and policies to improve trust and compliance.

70
70
17
75
65
75
100
artculturephotographydesigncraft+2 more
WordPress 6.8.3Yoast SEO PremiumGoogle Tag ManagerGoogle Analytics+3

Partner Domains:

colossal.memberful.com
partner
colossal.shop
partner
2025-10-18T14:42:00.985Z
futurehybrid.tech favicon

Future PLC

futurehybrid.tech

65
MediaUnited KingdomenterpriseMEDIUM

Future PLC is a leading global specialist media company with a portfolio of over 200 brands spanning technology, gaming, fashion, lifestyle, sports, finance, and B2B sectors. Founded in 1985, it has grown through acquisitions and organic expansion to become a top publisher in key categories, with a strong presence in the UK and US markets. The company offers multiplatform media content and innovative advertising solutions, connecting passionate audiences worldwide. Technically, the website is built on WordPress, leveraging modern web technologies including jQuery, Google Tag Manager, and privacy management SDKs. Hosting is provided via Amazon AWS infrastructure, ensuring reliable performance and scalability. The site is mobile-optimized, accessible, and SEO-friendly, with structured data enhancing search visibility. From a security perspective, the site enforces HTTPS and employs domain registration protections. Privacy and cookie policies are comprehensive and GDPR compliant, with consent mechanisms in place. However, DNSSEC is not enabled and no explicit security policy or incident response contacts are published, representing areas for improvement. Overall, the website demonstrates a mature digital presence with strong business credibility and privacy compliance. Strategic enhancements in security transparency and DNS security would further strengthen its posture.

15
85
17
75
57
80
100
mediapublishingspecialistmediatechnologygaming+3 more
jQueryGoogle Tag ManagerPrivacy Management SDK (privacy-mgmt.com)WordPress CMS

Partner Domains:

gocompare.com
subsidiary
ti-media.co.uk
subsidiary

+3 more partners

2025-10-18T14:41:40.935Z
mollywhite.net favicon

Molly White

mollywhite.net

60
TechnologyN/asmallMEDIUM

Molly White's website serves as a platform for independent research, critical writing, and commentary focused on the cryptocurrency industry, blockchain technology, and web3. The site highlights her work as a researcher, software engineer, and public speaker with a strong presence in media and academia. The business model centers on content publishing, freelance writing, and advocacy, targeting technology professionals, researchers, and policymakers. The website is well-branded, professionally designed, and content-rich, reflecting a high level of expertise and trustworthiness. Technically, the site uses modern web standards including HTML5, CSS3, and JavaScript, with evidence of Tailwind CSS usage and webmention support. It is mobile-optimized and accessible, with good SEO practices. However, no CMS or hosting provider information is evident. Performance is moderate, with no major technical issues detected. Security posture is generally good with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the absence of security headers and formal privacy or cookie policies indicates room for improvement. The WHOIS data is missing or indicates the domain may not be registered, which is unusual given the active content and subdomains. This discrepancy warrants further investigation to confirm domain legitimacy. Overall, the website is a credible and professional resource in its niche but would benefit from enhanced privacy compliance, security policy publication, and domain registration transparency to strengthen trust and compliance.

30
35
17
65
72
80
100
cryptocurrencytechnologyresearchweb3blockchain+1 more
HTML5CSS3JavaScriptTailwind CSS (inferred from heroicons usage)+1
2025-10-18T14:41:30.914Z
ravelry.com favicon

Ravelry

ravelry.com

63
OtherN/amediumMEDIUM

Ravelry is a community-driven platform focused on knitters, crocheters, and fiber artists, providing a comprehensive organizational tool and a yarn and pattern database. The website presents a professional and consistent brand image with a clear focus on its niche audience. The login page includes standard security features such as CSRF tokens and password reveal toggles, indicating attention to user security during authentication. However, the absence of WHOIS data limits the ability to fully verify domain legitimacy and ownership details. Technically, the site uses modern web technologies including HTML5, CSS, JavaScript, and video formats (WebM and MP4) for dynamic splash content. The site is mobile-optimized and includes privacy-focused analytics via plausible.io, reflecting a moderate level of digital maturity. SEO and accessibility are basic to good, but there is room for improvement in security headers and explicit privacy compliance disclosures. From a security perspective, the site enforces HTTPS (implied by canonical URL), uses authenticity tokens in forms, and avoids exposing sensitive data in the HTML. However, no explicit security headers were detected, and privacy and cookie policies are missing from the analyzed content, which could impact compliance with GDPR and other regulations. No contact or incident response information is provided, limiting transparency. Overall, the website is safe, professional, and functional for its intended audience but lacks comprehensive privacy and security disclosures. The domain's WHOIS data absence is a concern for trust but may be due to privacy protection or recent registration. Strategic improvements in privacy policy visibility, security headers, and contact transparency would enhance trust and compliance.

60
50
2
85
57
85
100
communityknittingcrochetingfiberartslogin+3 more
JavaScriptHTML5CSSWebM video+1
2025-10-18T14:41:25.903Z
udel.edu favicon

University of Delaware

udel.edu

61
EducationUnited StateslargeMEDIUM

The University of Delaware website serves as the official digital presence of a nationally ranked public university offering undergraduate, graduate, and professional education. The site targets prospective and current students, faculty, staff, alumni, and the broader community. It highlights the university's academic programs, research initiatives, campus life, and community engagement, positioning itself as a leading educational institution with a strong reputation. Technically, the website leverages a modern tech stack including Adobe Experience Manager CMS, jQuery, Google Tag Manager, and multiple analytics and marketing tools. The site is mobile-optimized, accessible, and well-structured, providing a positive user experience. However, some improvements in explicit security header implementation and cookie consent mechanisms could enhance compliance and security posture. Security-wise, the site uses HTTPS and integrates standard tracking and marketing scripts responsibly. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data is unusual but likely due to edu domain registry policies. Overall, the site demonstrates a mature security posture with room for incremental improvements. The overall risk is low given the institutional nature of the site, but enhancing privacy compliance and publishing vulnerability disclosure information would strengthen trust and regulatory adherence.

40
35
17
75
67
65
100
educationuniversityhighereducationresearchstudentservices+1 more
jQueryGoogle Tag ManagerGoogle AnalyticsFacebook Pixel+4
2025-10-18T14:40:45.826Z
tinylytics.app favicon

Tinylytics

tinylytics.app

69
TechnologyN/asmallMEDIUM

Tinylytics is a privacy-focused analytics platform launched in 2023, targeting small websites, blogs, and personal projects. It offers GDPR-compliant, cookie-free tracking with features such as uptime monitoring, SSL and domain monitoring, automated insights, and customizable public stats pages. The business operates on a SaaS subscription model with a free tier and paid plans, emphasizing simplicity and privacy. The founder, Vincent Ritter, is prominently associated with the platform, providing personal support and transparency. Technically, the website is built on a modern Ruby on Rails stack with a rich JavaScript ecosystem including Turbo Rails, Stimulus, Tailwind CSS, and Chart.js. The site is performant, mobile-optimized, and accessible, with strong SEO and metadata implementation. Hosting is claimed to be in Europe, aligning with the privacy and GDPR compliance focus. Security posture is strong with HTTPS enforced, multiple security headers, and no use of cookies or PII collection. However, formal security policies and vulnerability disclosure mechanisms are not publicly documented, representing an area for improvement. The domain registration is consistent with the business claims, and no suspicious patterns were detected. Overall, Tinylytics presents a trustworthy, professional, and privacy-conscious analytics service with a clear market niche. Strategic recommendations include publishing formal security and incident response policies, adding vulnerability disclosure information, and considering certifications to enhance trust further.

65
65
17
60
75
80
100
privacyanalyticsgdprcookie-freeuptimemonitoring+2 more
JavaScriptTailwind CSSTurbo RailsStimulus+5

Partner Domains:

paddle.com
partner
2025-10-18T14:40:40.816Z
klim.co.nz favicon

Klim Type Foundry

klim.co.nz

61
MediaNew ZealandsmallMEDIUM

Klim Type Foundry is a well-established independent typeface design studio based in Wellington, New Zealand, founded in 2004. The company specializes in designing and selling a wide range of fonts online and providing custom typographic services to an international clientele. Their website reflects a strong market position within the niche of typography and font design, targeting graphic designers and creative professionals globally. The business model is primarily e-commerce combined with bespoke design services, supported by a professional and content-rich website that showcases their font collections and design philosophy. Technically, the website is built using modern web technologies including Gatsby and React, hosted on AWS infrastructure, and optimized for performance and mobile responsiveness. The site employs Google Analytics for visitor tracking and Imgix for image optimization, indicating a mature digital infrastructure. SEO and accessibility features are well implemented, contributing to a positive user experience. From a security perspective, the site uses HTTPS with a good SSL configuration, but lacks DNSSEC and security headers which are recommended for enhanced protection. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial; a comprehensive privacy policy is present, but cookie consent mechanisms and detailed data retention policies are absent. Contact information is limited to a contact form, with no direct emails or phone numbers published. Overall, Klim Type Foundry presents a low-risk profile with a professional online presence and solid business credibility. Strategic improvements in security headers, cookie consent, and incident response transparency would further strengthen their security posture and regulatory compliance.

70
53
17
85
-
85
100
typefacefontstypographydesignmedia+1 more
GatsbyReactGoogle AnalyticsImgix
2025-10-18T14:38:22.260Z
thestorygraph.com favicon

The StoryGraph Ltd.

thestorygraph.com

64
TechnologyN/asmallMEDIUM

The StoryGraph Ltd. operates a specialized digital platform focused on book tracking, personalized recommendations, and community engagement for readers. Positioned as an Amazon-free alternative to Goodreads, it leverages AI to tailor book suggestions based on user mood and preferences. The platform offers a freemium business model with a paid Plus plan for enhanced features, targeting avid readers and book enthusiasts globally. The website is professionally designed, mobile-optimized, and features comprehensive content that clearly communicates its value proposition and services. Technically, the website is built on a modern stack including Ruby on Rails and Tailwind CSS, hosted behind Cloudflare for DNS and CDN services. The site demonstrates good performance, accessibility, and SEO practices, with secure HTTPS connections and CSRF protections in place. However, some security headers are not evident in the provided data, and DNSSEC is not enabled, representing areas for improvement. From a security perspective, the site maintains a solid posture with encrypted communications and domain transfer protections. The absence of a published security policy or incident response contacts and lack of a cookie consent mechanism are notable gaps. No vulnerabilities or exposed sensitive data were detected. The WHOIS data aligns well with the business claims, showing a mature domain registration consistent with the company's operational history. Overall, The StoryGraph presents a trustworthy, well-maintained platform with strong business credibility and technical maturity. Strategic enhancements in security policy transparency, cookie consent, and DNS security would further strengthen its compliance and user trust.

55
53
2
70
75
75
100
booksreadingrecommendationsbooktrackingreadinghabits+3 more
Tailwind CSSCloudflare DNS and likely CDNGoogle FontsJavaScript (custom application.js)
2025-10-18T14:38:07.225Z
W

Webmention.io

webmention.io

49
TechnologyN/asmallHIGH

Webmention.io is a specialized hosted service designed to facilitate the reception of webmentions on any web page, primarily targeting web developers and the IndieWeb community. The service offers APIs to retrieve mention counts and detailed mentions, along with JavaScript widgets to display mention counters. The website is well-structured with clear technical documentation and open source code available on GitHub, indicating transparency and community engagement. The business model revolves around providing a niche webmention infrastructure service, positioning itself as a key player within the IndieWeb ecosystem since its founding in 2013. Technically, the website employs modern web standards including HTML5, CSS, JavaScript, and uses Linode as its hosting provider. The site is mobile optimized and performs well with fast loading times. The use of HTTPS is enforced, and domain security is enhanced by clientTransferProhibited status, although DNSSEC is not enabled. The technical implementation is solid but could benefit from additional security headers and enhanced accessibility features. From a security perspective, the site demonstrates good baseline practices such as HTTPS and domain transfer protection. However, it lacks published privacy, cookie, and security policies, as well as vulnerability disclosure information. No contact information or incident response channels are provided, which limits transparency and user trust. No advertising or tracking technologies are detected, indicating minimal user tracking. Overall, the security posture is adequate but could be improved with formal policies and headers. The overall risk assessment is moderate with no critical vulnerabilities detected. Strategic recommendations include enabling DNSSEC, publishing privacy and cookie policies, adding security headers, and providing clear contact and incident response information to enhance trust and compliance. The website is safe for general audiences and maintains a professional and functional presence within its niche.

35
35
2
60
72
70
40
webmentionapiindiewebwebmentionsopensource+1 more
HTML5CSSJavaScriptFetch API+3
2025-10-18T14:38:02.199Z
cardioncars-brno.cz favicon

Auto Cardion s.r.o.

cardioncars-brno.cz

57
TransportationCzech RepublicmediumMEDIUM

Cardion Cars Brno, operated by Auto Cardion s.r.o., is an authorized Volvo car dealership and service center located in Brno, Czech Republic. The company specializes in selling new, demo, and used Volvo vehicles, providing servicing, parts, and accessories. Their website reflects a professional and consistent brand presence aligned with Volvo's corporate identity, targeting customers interested in Volvo vehicles and related services in the region. The business model focuses on direct sales, leasing, financing, and after-sales support, positioning itself as a trusted regional partner for Volvo customers. Technically, the website employs modern web technologies including jQuery, Bootstrap, and cookie consent frameworks, with integration of Google Analytics and Google Tag Manager for analytics and marketing. The site is mobile-optimized with good navigation and SEO practices, although some accessibility features could be improved. Hosting and CMS details are not explicitly disclosed but the site appears stable and moderately performant. From a security perspective, the site uses HTTPS with a strong SSL configuration and implements cookie consent mechanisms compliant with GDPR. However, no explicit security headers were detected in the provided data, and no incident response or security policy information is publicly available. No vulnerabilities or exposed sensitive data were found. The absence of WHOIS data reduces transparency but does not detract significantly from the site's legitimacy given the strong brand alignment and contact information. Overall, the website presents a low-risk profile with good business credibility and privacy compliance. Strategic improvements include enhancing security headers, publishing incident response contacts, and improving accessibility. These steps would further strengthen trust and security posture.

20
40
2
65
62
85
100
volvocardealershipautomotiveauthorizedpartnerczechrepublic+2 more
jQuery 3.5.1Bootstrap 4 (bootstrap.bundle.min.js)CookieConsent (cookieconsent.umd.js)Google Analytics+2

Partner Domains:

www.volvocars.com
partner
www.volvista.cz
partner

+3 more partners

2025-10-18T13:35:03.822Z
recovera.cz favicon

Recovera Využití zdrojů a.s.

recovera.cz

59
EnergyCzech RepublicmediumMEDIUM

Recovera Využití zdrojů a.s. is a Czech company specializing in waste management, resource recovery, and related technical and facility services primarily targeting businesses and municipalities. The company positions itself as part of the Veolia group, emphasizing sustainability and environmental responsibility. Their website reflects a professional and consistent brand image with clear navigation and relevant content for their target audience. The business model focuses on providing comprehensive waste and facility management solutions, supported by certifications such as ISO and compliance frameworks. Technically, the website uses modern web technologies, including Matomo and Google Analytics for tracking, and is built on the Vizus CMS platform. The site is mobile-optimized and performs moderately well, with good SEO and accessibility basics. Security posture is strong with HTTPS enforced and a cookie consent mechanism in place, although some security headers are missing and no explicit incident response or vulnerability disclosure information is provided. The absence of WHOIS data limits domain trust analysis, but the website content and external references strongly indicate legitimacy. Overall, the site is professional, secure, and compliant with privacy regulations, suitable for its business context.

85
25
17
85
72
85
20
wastemanagementresourcerecoveryenvironmentsustainabilityveolia+3 more
Matomo AnalyticsGoogle Tag ManagerJavaScriptCSS3+1

Partner Domains:

www.veolia.cz
parent
www.centralnikompostarna.cz
partner

+1 more partners

2025-10-18T13:34:38.771Z