Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 87 of 248|Showing 4301-4350 of 12372
ecashconference.com favicon

Electronic Cash Conference 2025 | Barcelona

ecashconference.com

56
TechnologySpainsmallMEDIUM

The Electronic Cash Conference 2025 website serves as an informational and ticketing platform for a specialized event focused on digital cash and decentralized finance, scheduled in Barcelona. The site targets developers, researchers, and advocates in the blockchain and digital currency space, offering talks, panels, and workshops. The business model revolves around event organization and community engagement within a niche technology sector. The domain is newly registered in 2025, consistent with the event timeline, and hosted with reputable infrastructure. Technically, the website is built using modern frameworks such as Next.js and React, ensuring good performance, mobile optimization, and accessibility. The site is well-structured with clear navigation and professional design, enhancing user experience. However, it lacks some standard compliance elements such as privacy and cookie policies, and no contact information is provided, which limits user trust and regulatory compliance. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks DNSSEC and security headers, which are recommended to enhance security posture. No vulnerability disclosures or incident response contacts are published, which could be improved to increase transparency and readiness. No tracking or analytics scripts were detected, indicating minimal user data collection. Overall, the website is professional and trustworthy for its purpose but would benefit from adding privacy and cookie policies, contact information, and enhanced security headers to improve compliance and user trust. The domain registration is appropriate and consistent with the event's nature, supporting legitimacy.

40
50
2
70
52
55
100
conferencedigitalcashblockchaindecentralizedfinanceevent+2 more
ReactNext.jsJavaScriptCSS

Partner Domains:

tixtown.com
partner
nh-hotels.com
partner
2025-09-07T14:12:47.790Z
cashtab.com favicon

Cashtab — The official web wallet for eCash (XEC)

cashtab.com

53
TechnologyN/asmallMEDIUM

Cashtab is an open source, non-custodial web wallet designed for the eCash (XEC) cryptocurrency ecosystem. It offers users a fast and secure way to manage their eCash and eTokens via a web interface and browser extensions for Chrome and Brave. The website positions itself as the official wallet for eCash, targeting cryptocurrency users seeking a reliable and open source wallet solution. The business model centers around providing free, open source wallet software without custodial control, appealing to privacy-conscious users and developers. Technically, the website is built using modern web technologies including React and JavaScript, with a focus on web and browser extension platforms. The site is hosted under a reputable registrar and uses HTTPS for secure communications. However, the site lacks advanced security headers and DNSSEC is not enabled, which are areas for improvement. Performance and mobile optimization are basic but functional, with moderate SEO and accessibility features. From a security perspective, the site demonstrates basic good practices such as HTTPS usage and domain registration protections. However, the absence of privacy and cookie policies, lack of contact information, and missing security headers reduce its compliance and trustworthiness. Google Analytics and Tag Manager are used for user tracking, but no explicit privacy compliance mechanisms are evident. No forms or sensitive data inputs are present on the main page, reducing immediate risk exposure. Overall, Cashtab presents a legitimate and functional cryptocurrency wallet service with a solid domain history and open source transparency. To enhance trust and compliance, the site should implement privacy and cookie policies, improve security headers, and provide clear contact and incident response information. These steps will strengthen its security posture and user confidence.

90
35
2
40
72
75
40
ecashxeccryptocurrencywalletopensource+1 more
ReactJavaScriptCSS
2025-09-07T14:12:42.527Z
medicines.org.uk favicon

Datapharm

medicines.org.uk

66
HealthcareUnited KingdommediumMEDIUM

The website www.medicines.org.uk/emc serves as the Electronic Medicines Compendium (emc), a trusted and regulated source of medicines information in the UK. Operated by Datapharm, a leading UK medicines information provider, the platform offers comprehensive, up-to-date prescribing and patient information targeted primarily at healthcare professionals and patients. The business model focuses on providing technology-enabled solutions to support life sciences and healthcare sectors, with a strong market position as a key information provider in the UK healthcare ecosystem. Technically, the website employs modern web technologies including JavaScript frameworks, Google Tag Manager, Microsoft Clarity for analytics, and FingerprintJS for visitor identification. The site is hosted behind Cloudflare, ensuring good performance and security. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data for the subdomain is unavailable due to UK domain naming rules, but the parent domain medicines.org.uk is reputable and consistent with the website's healthcare focus. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing security headers, publishing a formal security policy and incident response contacts, and establishing a vulnerability disclosure program to further strengthen trust and compliance.

15
83
17
75
90
65
100
healthcaremedicinespharmaceuticalregulatoryuk+2 more
JavaScriptCSSHTML5Google Tag Manager+3

Partner Domains:

www.datapharm.com
partner
yellowcard.mhra.gov.uk
partner

+2 more partners

2025-09-07T12:58:29.489Z
erinstead.com favicon

Erin Stead

erinstead.com

58
RetailUnited StatessmallMEDIUM

Erin Stead's website serves as a professional portfolio and e-commerce platform showcasing the artist's works, primarily children's books and related artwork. The site is hosted on Squarespace, leveraging its platform for content management and online sales. The design is clean, visually appealing, and optimized for mobile devices, providing a good user experience for visitors interested in the artist's offerings. However, the site lacks critical business and privacy information such as contact details, privacy policies, and terms of service, which are important for trust and compliance. Technically, the website uses modern web technologies and benefits from Squarespace's secure hosting environment, including HTTPS with HSTS enabled, ensuring encrypted communication and protection against certain attacks. The absence of additional security headers and explicit privacy compliance measures indicates room for improvement in security posture and regulatory adherence. From a security perspective, the site shows no signs of vulnerabilities or malicious content, but the missing WHOIS registration data raises concerns about domain legitimacy and transparency. This discrepancy suggests either privacy protection or an unregistered domain, which could impact trustworthiness. The lack of contact information and security policies further limits the site's credibility from a security and compliance standpoint. Overall, while the website effectively presents the artist's work and facilitates e-commerce, it should address privacy, contact, and security transparency to enhance trust and compliance. Strategic improvements in these areas will strengthen the site's security posture and business credibility, benefiting both the owner and visitors.

35
35
17
65
62
80
100
portfolioartistauthore-commercechildrensbooks+1 more
SquarespaceJavaScriptCSSHTML5
2025-09-07T11:54:09.152Z
e.cash favicon

Bitcoin ABC

e.cash

64
FinanceN/amediumMEDIUM

eCash is a cryptocurrency platform focused on providing fast, secure, and scalable digital cash solutions for the internet. The platform offers key services such as staking, non-custodial wallets, token and NFT creation, and blockchain development tools. Positioned as a future-forward decentralized digital cash solution, eCash targets cryptocurrency users, developers, and investors seeking financial freedom and blockchain innovation. The website is professionally designed, mobile-optimized, and integrates with multiple major cryptocurrency exchanges, enhancing its market presence and accessibility. Technically, the site leverages modern web technologies including React and Next.js, ensuring fast performance and good accessibility. Security best practices are observed with HTTPS enforcement and comprehensive security headers, although explicit privacy and cookie policies are absent. The site integrates analytics and marketing tools such as Google Tag Manager and Facebook Pixel, indicating moderate user tracking. From a security perspective, the platform demonstrates a strong posture with no visible vulnerabilities or exposed sensitive data. However, the lack of published incident response contacts, vulnerability disclosure policies, and data protection officer information suggests areas for improvement in transparency and compliance. The WHOIS data is privacy protected, which is common in the cryptocurrency sector, but limits public verification of registrant details. Overall, eCash presents a credible and professional cryptocurrency platform with strong technical and security foundations. Strategic enhancements in privacy compliance, transparency, and formal security policies would further strengthen trust and regulatory alignment.

85
35
2
55
75
80
100
cryptocurrencyblockchaindigitalcashstakingnft+4 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

cashtab.com
partner
ecashconference.com
partner

+2 more partners

2025-09-07T10:45:05.949Z
perf.report favicon

Web Performance Leaderboard - perf.report

perf.report

55
TechnologyN/asmallMEDIUM

perf.report is a niche technology platform focused on ranking and analyzing website performance globally, emphasizing Core Web Vitals metrics. The site targets web developers, SEO professionals, and digital marketers seeking insights into website speed and user experience. It positions itself as a leaderboard for the fastest websites, providing valuable benchmarking data. The platform is powered in partnership with speedvitals.com, indicating a collaborative ecosystem for performance analytics. Technically, the site is built using modern web technologies including SvelteKit and integrates Microsoft Clarity for user behavior analytics. The website demonstrates fast loading times, good mobile optimization, and a professional design, contributing to a positive user experience. However, the absence of privacy and cookie policies, as well as lack of explicit contact information, limits its compliance posture and business transparency. Security-wise, the site uses HTTPS but lacks visible security headers, which could be improved to enhance protection against common web threats. Overall, the domain appears legitimate but lacks WHOIS transparency due to unsupported TLD WHOIS data. Strategic improvements in privacy compliance and security best practices would strengthen trust and regulatory adherence.

30
35
2
40
75
75
100
webperformancecorewebvitalswebsiterankinganalyticstechnology
SvelteKitJavaScriptCSSGoogle Fonts+1

Partner Domains:

speedvitals.com
partner
2025-09-07T08:07:11.368Z
foxnet.fi favicon

Fox Holding Oy

foxnet.fi

33
TechnologyFinlandsmallHIGH

Foxnet, operated by Fox Holding Oy, is a Finnish small business specializing in accessible and user-friendly WordPress website development. The company is led by Sami Keijonen, who brings decades of experience and a strong focus on accessibility, UX, and project management. The website clearly communicates the services offered, including coding, auditing, training, and mentoring, targeting clients who value quality and accessibility in web development. The business model is service-based with hourly rates and project estimates, positioning Foxnet as a niche expert in the Finnish market. Technically, the website is built on WordPress with a modern tech stack including HTML, CSS, JavaScript, PHP, and React for block development. Hosting is provided by Shellit.org, a Finnish registrar and hosting provider. The site is well-structured, mobile-optimized, and accessible, reflecting the business's core values. However, there is room for improvement in security headers and privacy compliance. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. The absence of security headers and privacy/cookie policies represents compliance and security gaps that should be addressed. No incident response or vulnerability disclosure information is provided, which could be improved to enhance trust and readiness. Overall, Foxnet presents a professional, trustworthy, and technically competent web presence with strong business credibility. Strategic improvements in privacy compliance and security hardening would elevate the site's security posture and regulatory adherence.

15
10
2
60
-
75
20
wordpressaccessibilitywebdevelopmentfrontendmentoring
HTMLCSSJavaScriptPHP+1

Partner Domains:

meom.fi
partner
2025-09-07T08:03:59.883Z
zelcore.io favicon

InFlux Technologies Limited

zelcore.io

67
TechnologyCzech RepublicmediumMEDIUM

Zelcore is a well-established multi-platform cryptocurrency wallet developed by InFlux Technologies Limited, founded in 2018. It offers a secure, non-custodial solution empowering users to manage over 100,000 crypto assets across more than 80 blockchains. The wallet supports desktop, mobile, and browser extension platforms, integrating advanced security features such as decentralized two-factor authentication and biometric login. Zelcore's partnerships with leading crypto service providers and hardware wallet manufacturers position it strongly in the competitive crypto wallet market. Technically, the website is built on modern web technologies including React and Next.js, hosted via Cloudflare, ensuring fast performance and excellent mobile optimization. The site is SEO-friendly and accessible, with comprehensive content and clear navigation. Analytics usage is moderate, primarily via Google Analytics and an AI-powered widget, with basic privacy compliance. From a security perspective, Zelcore demonstrates strong practices including HTTPS enforcement, self-custody architecture, and a security audit by Cure53. However, there is room for improvement in publishing explicit security headers, a security policy, and vulnerability disclosure mechanisms. Privacy compliance is generally good but lacks a visible cookie consent mechanism. Overall, Zelcore presents a trustworthy and professional digital asset management platform with a solid security posture and mature technical infrastructure. Strategic enhancements in transparency and privacy compliance would further strengthen its market position and user trust.

40
53
10
87
75
85
100
cryptowalletnon-custodialmulti-chainblockchainsecurity+5 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

moonpay.com
partner
topper.finance
partner

+3 more partners

2025-09-07T06:58:58.154Z
vadikom.com favicon

Vadikom Web Ltd.

vadikom.com

55
TechnologyBulgariasmallMEDIUM

Vadikom.com is a well-established personal and professional blog operated by Vadikom Web Ltd., a small technology-focused company based in Plovdiv, Bulgaria. The website offers web design tutorials, development tools, and user scripts primarily targeting web developers and technology enthusiasts. The business model centers on content publishing and sharing open-source tools, with a niche market position supported by a long domain history since 2004. The site maintains consistent branding and a good quality of technical content, supported by active social media channels including Twitter and GitHub. Technically, the website is built on WordPress and hosted on DigitalOcean, utilizing modern JavaScript libraries such as jQuery 3.3.1 and Google Analytics for visitor tracking. The site is served over HTTPS with a valid SSL certificate, ensuring secure communications. However, some security best practices such as DNSSEC and security headers are not implemented, representing areas for improvement. The site is mobile-optimized with good navigation and accessibility features, though SEO and privacy compliance could be enhanced. From a security perspective, the website shows a moderate posture with HTTPS enabled and domain transfer protections in place. The absence of DNSSEC and security headers, along with missing privacy and cookie policies, reduce the overall security and privacy compliance score. No vulnerability disclosure or incident response information is provided, which could be a risk factor for security incident handling. Overall, Vadikom.com is a trustworthy and professional technical blog with a solid business foundation and good technical infrastructure. Strategic improvements in privacy compliance, security headers, and vulnerability disclosure would enhance its security posture and user trust, supporting long-term sustainability and compliance with evolving regulations.

65
35
25
85
42
70
40
webdevelopmentblogtutorialsjavascriptopensource+3 more
jQuery 3.3.1Google AnalyticsSVG iconsJavaScript+1
2025-09-07T06:53:31.963Z
webofscience.com favicon

Clarivate

webofscience.com

60
TechnologyN/aenterpriseMEDIUM

Clarivate is a global enterprise specializing in research analytics and intellectual property services, providing access to the Web of Science platform among other offerings. The website analyzed is a login portal for accessing these services, targeting researchers, academic institutions, and enterprises. The business model is subscription-based, focusing on delivering high-value research data and analytics. The site branding is consistent with Clarivate's corporate identity, reflecting a professional and enterprise-grade service. Technically, the site employs modern web technologies including Angular and Material Design components, ensuring a responsive and user-friendly interface. Performance is moderate with good mobile optimization, though SEO and accessibility could be improved. The site uses JavaScript-based analytics and consent management tools, indicating a moderate level of user tracking with basic privacy compliance. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in the HTML. However, no explicit security headers were detected in the provided data, and there is a lack of publicly accessible privacy, cookie, or terms of service documents on the login page. No WAF or blocking mechanisms were detected, and the site appears safe and trustworthy for its intended audience. Overall, the risk profile is low with recommendations to enhance privacy disclosures, security headers, and accessibility to strengthen compliance and user trust. The domain WHOIS data for the subdomain is not available, which is typical for subdomains, and the main domain is well-established and legitimate.

35
68
2
75
47
80
100
researchloginclarivatewebofscienceacademic+1 more
Angular (implied by ngbracket/ngx-layout mention)Material Design Components (mat- prefix classes)JavaScriptCSS+1
2025-09-07T05:40:08.902Z
D

Distributed AI Research Institute

dair-institute.org

60
TechnologyN/asmallMEDIUM

The Distributed AI Research Institute (DAIR) is a globally distributed non-profit organization focused on community-rooted AI research. The website presents a professional and well-structured platform highlighting their mission to ground AI research in lived experience and community needs. Their market position is that of an independent research institute combining academic, activist, and engineering expertise to challenge AI hype and imagine alternative futures. Technically, the website is built on modern frameworks including Next.js and React, with content managed via Sanity.io CMS. The site is performant, mobile-optimized, and accessible, with no visible errors or broken elements. External integrations include a fundraising widget from FundraiseUp, indicating active community support mechanisms. Security posture is good with HTTPS enforced and no visible sensitive data exposure. However, the absence of security headers and formal privacy or cookie policies indicates room for improvement in compliance and security best practices. No WHOIS data was retrievable, likely due to privacy protection, which is common and justified for non-profit entities. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance, explicit contact information, and improved security headers to strengthen its security posture and user trust.

30
35
22
75
62
75
100
airesearchcommunitynon-profittechnology+2 more
Next.jsReactJavaScriptCSS+2
2025-09-07T04:29:45.792Z
D

Digital Daisy Bates

bates.org.au

44
Non-profitAustraliasmallHIGH

Digital Daisy Bates is a specialized academic and cultural heritage project that digitizes and provides access to Daisy Bates' extensive collection of Aboriginal Australian language and cultural records. The website serves researchers, Aboriginal communities, and academics interested in Indigenous languages and culture, offering a searchable archive of over 23,000 pages of historical linguistic data. The project is supported by reputable Australian institutions including the National Library of Australia and the University of Melbourne, enhancing its credibility and trustworthiness. Technically, the website employs standard web technologies such as HTML, CSS, and JavaScript, with Google Analytics and Tag Manager for visitor tracking. The site is hosted under an Australian registrar with DNS hosted on CrazyDomains. While the site is functional and content-rich, it lacks advanced technical features such as DNSSEC and security headers, and has only basic mobile optimization and accessibility features. SEO and metadata are minimal but adequate for the niche audience. From a security perspective, the site uses HTTPS but does not implement common security headers or a vulnerability disclosure policy. No privacy or cookie policies are present, and no consent mechanisms for tracking are implemented, which may pose compliance risks under GDPR or similar regulations. No contact information or incident response channels are provided, limiting user support and transparency. Overall, the website is a valuable and trustworthy academic resource with good content quality and business credibility. However, it would benefit from enhanced security practices, privacy compliance improvements, and clearer contact information to strengthen its security posture and user trust.

15
35
2
60
62
60
40
aboriginallanguagesdigitalarchiveculturalheritageacademicresearchaustralianindigenous+1 more
HTML5CSSJavaScriptGoogle Analytics+1
2025-09-07T03:18:26.279Z
C

colophon

colophon.info

62
OtherNetherlandssmallMEDIUM

Colophon is a small Amsterdam-based graphic design studio and type-design research initiative specializing in commissioned design work, research projects, free font distribution, and educational activities. The website serves as a detailed portfolio showcasing collaborations with cultural institutions, exhibitions, publications, and teaching engagements. The business targets design professionals, researchers, and cultural organizations with a niche focus on typography and graphic design research. Technically, the website is built with basic HTML and CSS, including a custom font-face. It lacks modern frameworks, CMS, or advanced hosting details. The site is moderately optimized for performance and mobile use but has basic accessibility and SEO features. No analytics or tracking scripts are detected, indicating minimal user tracking. From a security perspective, the site lacks visible HTTPS confirmation and security headers, and no privacy or cookie policies are present, which lowers its compliance posture. The WHOIS data is privacy protected, common for small creative businesses, but limits transparency. No forms or input fields reduce attack surface, but incident response and security policies are absent. Overall, the site is professional and trustworthy in content and business credibility but would benefit from improved security practices, privacy compliance, and technical modernization to enhance trust and resilience.

65
35
2
85
62
75
100
graphicdesigntypographytypedesignresearchamsterdam+4 more
HTMLCSSCustom font-face (LincolnMITRE-LM5x7)
2025-09-07T02:11:55.861Z
S

SUVA Type Foundry

suvatypefoundry.ee

9
EducationEstoniasmallCRITICAL

SUVA Type Foundry is an educational and creative platform affiliated with the Estonian Academy of Arts, showcasing fonts designed by students and faculty. The website serves as a repository and display for various font projects, targeting graphic designers, educators, and typography enthusiasts. The business model is primarily educational and creative, with a niche market position focused on academic and artistic font design. Technically, the website is built on WordPress 6.3.5, utilizing standard web technologies including JavaScript and CSS. Fonts are served as WOFF files hosted on the same domain. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. No advanced frameworks or third-party analytics/tracking tools are detected. From a security perspective, the site lacks visible security headers and privacy or cookie policies, indicating room for improvement in compliance and security posture. No forms or data collection mechanisms are present, reducing immediate risk exposure. The domain registration data aligns well with the website's academic affiliation, supporting legitimacy. Overall, the website is safe, professional, and trustworthy for its intended audience but would benefit from enhanced privacy compliance and security best practices to strengthen its posture and user trust.

-
-
-
-
-
-
-
typographyfontseducationdesignwordpress
WordPress 6.3.5JavaScriptCSSwoff font files
2025-09-07T02:10:08.653Z
S

Square Gear Productions

squaregear.net

56
OtherN/asmallMEDIUM

Square Gear Productions is a personal website operated by Matthew Welch, showcasing a variety of creative projects including college football ratings, free fonts under the 'I Shot the Serif' brand, music, and software tools. The site targets a general audience interested in these niche topics and serves primarily as a portfolio and hobbyist platform rather than a commercial business. The website has been active since 2001, indicating a long-standing presence in its niche. Technically, the site is built with basic HTML, CSS, and JavaScript, with hosting likely on Amazon AWS infrastructure as inferred from DNS records. It employs Cloudflare Web Analytics for minimal user tracking but lacks advanced security headers and DNSSEC. The site is mobile responsive with basic accessibility and SEO features, but performance is moderate and could be improved. From a security perspective, the site uses HTTPS (implied by Cloudflare analytics script source), but no advanced security headers or policies are present. The domain is secured with standard registrar locks but lacks DNSSEC. No privacy, cookie, or terms of service policies are published, and no contact or incident response information is provided, indicating limited compliance with modern privacy and security best practices. Overall, the website is a small-scale personal project with moderate technical maturity and basic security posture. It poses low risk but would benefit from improved privacy compliance and security hardening to enhance trust and user protection.

15
50
2
65
77
70
100
personalcreativefontsfootballmusic+4 more
HTML5CSSJavaScriptCloudflare Web Analytics
2025-09-07T02:09:38.088Z
B

Bye Bye Binary

genderfluid.space

46
OtherFrancesmallHIGH

Bye Bye Binary is a small Franco-Belgian collective established in 2018 that focuses on creating inclusive, non-binary, and post-binary typographic resources for the French language. Their offerings include open-source fonts, educational materials, podcasts, and community engagement centered on feminist, queer, and anti-capitalist values. The website serves as a hub for their typothèque and related projects, targeting French-speaking activists and designers interested in inclusive language. Technically, the website is a simple static HTML/CSS site hosted under the domain genderfluid.space registered with Gandi SAS. The site lacks advanced frameworks or CMS and shows basic mobile optimization and accessibility. No analytics or tracking scripts are detected, reflecting a privacy-conscious approach. However, the site does not implement DNSSEC or security headers, and no HTTPS enforcement details are provided. From a security perspective, the site has a low security posture due to missing security headers and lack of published security or privacy policies. The domain registration is consistent and appropriate for the collective's age and mission, with no suspicious indicators. Contact information is minimal, limited to a single email address and social media links. No privacy or cookie policies are present, indicating compliance gaps with GDPR and related regulations. Overall, the website is a niche cultural and activist platform with good content quality and moderate technical implementation but requires improvements in security and privacy compliance to enhance trust and protection for its users.

25
50
17
70
62
60
20
inclusivetypographynon-binaryqueerfeministfrenchlanguage+3 more
HTML5CSS
2025-09-07T02:09:17.986Z
kamino.finance favicon

Kamino Finance

kamino.finance

76
FinanceN/amediumLOW

Kamino Finance operates as a decentralized finance (DeFi) platform on the Solana blockchain, offering integrated services such as borrowing, lending, market making, and leverage. The platform targets cryptocurrency investors and DeFi users seeking yield opportunities on Solana assets including SOL, USDC, and others. Kamino positions itself as a niche player with a comprehensive product suite and transparent analytics, supported by a professional web presence and active social media channels. Technically, the website is built using modern web technologies including React and integrates with Solana wallets like Phantom. It employs standard analytics tools such as Google Analytics, Hotjar, and Mixpanel, and uses Enzuzo for cookie consent management. The site is mobile-optimized with good SEO and accessibility basics, though some security headers could be enhanced. Security posture is solid with HTTPS enforced and a Content Security Policy in place, but additional headers and tighter CSP rules are recommended. Privacy compliance is well addressed with clear privacy and cookie policies and user consent mechanisms. However, the absence of public WHOIS data due to privacy protection is typical in crypto domains but limits full trust verification. Overall, Kamino Finance presents a professional, secure, and privacy-conscious DeFi platform with moderate risk primarily due to limited WHOIS transparency. Strategic improvements in security headers and enhanced public business contact information would further strengthen trust and compliance.

70
68
17
85
100
85
100
defisolanacryptocurrencylendingborrowing+4 more
ReactJavaScriptCSSEnzuzo cookie consent+4

Partner Domains:

kamino.com
partner
risk.kamino.finance
partner

+1 more partners

2025-09-07T02:08:52.824Z
compound.finance favicon

Compound Labs, Inc.

compound.finance

63
FinanceN/alargeMEDIUM

Compound Labs, Inc. operates Compound.finance, a leading decentralized finance (DeFi) protocol that provides an algorithmic, autonomous interest rate market for lending and borrowing digital assets. The platform targets developers, crypto investors, and institutional users by offering open financial applications and governance via the COMP token. The website reflects a mature and professional business with strong partnerships and integrations with major crypto custodians and wallets, positioning Compound as a key player in the DeFi ecosystem. Technically, the website is built using modern web technologies including React and JavaScript, optimized for mobile devices with good performance and SEO practices. The platform integrates RESTful APIs and Web3 capabilities, supporting seamless interaction with blockchain networks. While the hosting provider and CMS are not explicitly identified, the site demonstrates a solid technical foundation with room for improvement in accessibility and security headers. Security posture is robust, featuring multiple third-party security audits, formal verification of smart contracts, and a substantial bug bounty program with a $1,000,000 reward. HTTPS is enforced, and no vulnerabilities or exposed sensitive data were detected in the analyzed content. However, the site lacks explicit security headers and a cookie consent mechanism, which are recommended for enhanced protection and compliance. Overall, the risk assessment is low with high trustworthiness indicators. The absence of public WHOIS data is mitigated by the strong security and business signals present. Strategic recommendations include adding cookie consent, publishing clear contact and incident response information, and improving accessibility and security headers to further strengthen the platform's security and compliance posture.

25
35
20
85
75
85
100
defifinanceblockchaincryptocurrencylending+3 more
React (implied by chunked JS and SPA structure)JavaScriptCSSRESTful APIs (via partner Ankr)+1

Partner Domains:

custody.coinbase.com
partner
anchorage.com
partner

+3 more partners

2025-09-07T02:08:37.729Z
S

StakeWise

stakewise.io

69
FinanceN/amediumMEDIUM

StakeWise is a specialized Ethereum staking platform offering both pooled and solo staking services with a focus on liquid staking via their proprietary token osETH. The platform targets Ethereum holders and DeFi users, providing seamless staking experiences integrated with decentralized finance opportunities such as borrowing, farming, and trading. With over 5,000 users and a broad network of staking Vault partners, StakeWise positions itself as a trusted and innovative player in the crypto staking ecosystem. Technically, the website is built on modern web technologies including React and Next.js, delivering a fast, mobile-optimized, and accessible user experience. The site employs HTTPS and demonstrates good SEO practices, although explicit security headers and privacy compliance disclosures are lacking. The platform emphasizes security through multiple third-party audits and a decentralized network of node operators, enhancing trust and decentralization. From a security perspective, StakeWise shows a mature posture with encrypted communications and no visible vulnerabilities or exposed sensitive data. However, the absence of explicit privacy policies, cookie consent mechanisms, and incident response contacts represents compliance gaps that should be addressed to meet regulatory standards such as GDPR. The domain WHOIS data is privacy protected, which is typical for crypto services, and the website content and partnerships support its legitimacy. Overall, StakeWise presents a professional, secure, and user-friendly staking platform with strong business credibility. Strategic improvements in privacy compliance and security transparency would further enhance trust and regulatory alignment.

85
50
2
85
72
80
100
ethereumstakingdeficryptoliquidstaking+2 more
ReactNext.jsJavaScriptCSS+1
2025-09-07T01:04:14.573Z
S

SNZ Holding

snzholding.com

48
TechnologyN/amediumHIGH

SNZ Holding operates as a crypto-native and community-oriented incubator and venture capital firm, focusing on early-stage investments in blockchain and Web3 technologies. The company positions itself as a bridge between Web 2.0 and Web 3.0 ecosystems, targeting visionary founders and disruptive technologies. Their market presence is significant in Asia with global outreach, supported by a well-experienced team and a portfolio of over 200 projects. The business model revolves around venture capital investments and ecosystem building, emphasizing long-term value creation and network effects. Technically, the website is built on a modern React and Next.js stack, optimized for mobile and desktop with fast performance and good SEO practices. The infrastructure appears robust, though hosting specifics beyond domain registration are not explicit. The site lacks some common security headers but uses HTTPS, indicating a baseline secure configuration. From a security perspective, the site demonstrates a moderate security posture with HTTPS enabled but lacks visible security policies, incident response contacts, and vulnerability disclosure mechanisms. No forms or sensitive data collection points were detected, reducing immediate risk exposure. Privacy compliance is weak due to the absence of privacy and cookie policies, which could be improved to meet GDPR and other regulations. Overall, SNZ Holding's website reflects a professional and credible business with strong content quality and technical implementation. However, enhancements in privacy compliance, security policy transparency, and contact information visibility are recommended to strengthen trust and regulatory adherence.

20
35
17
98
52
85
-
blockchainventurecapitalweb3cryptoinvestment+1 more
ReactNext.jsJavaScriptCSS+1
2025-09-07T00:59:47.125Z
uncut.wtf favicon

UNCUT.wtf

uncut.wtf

68
TechnologyN/asmallMEDIUM

UNCUT.wtf is a niche online platform offering a free catalogue of contemporary typefaces, currently featuring 163 fonts across categories such as Sans Serif, Serif, Monospace, and Display. The website primarily serves designers, typographers, and font enthusiasts by providing curated font information and direct download links to external sources like GitHub and personal foundry sites. The business model is centered on free distribution and cataloguing rather than direct sales, positioning UNCUT.wtf as a valuable resource in the typography community. Technically, the website is built with standard web technologies including HTML5, CSS, and JavaScript, and leverages Cloudflare for hosting and analytics. The site demonstrates good performance, mobile optimization, and basic accessibility features. However, it lacks advanced security headers and a cookie consent mechanism, which are areas for improvement. The absence of WHOIS data due to unsupported TLD WHOIS limits domain trust verification but is common for such domains. From a security perspective, the site enforces HTTPS and does not expose sensitive data or contain forms collecting personal information, reducing risk. The presence of a privacy and terms page adds to compliance, though GDPR indicators and cookie consent are minimal. No incident response or vulnerability disclosure information is provided, which could be enhanced to improve security posture. Overall, UNCUT.wtf is a professionally presented, safe, and useful resource with moderate trustworthiness. Strategic improvements in privacy compliance, security headers, and transparency would elevate its security and compliance standing.

95
53
2
60
65
85
100
fontstypefacesfreefontstypographydesign+2 more
HTML5CSSJavaScriptCloudflare Insights
2025-09-06T23:54:55.063Z
O

OpenLedger

openledger.xyz

57
TechnologyN/asmallMEDIUM

OpenLedger is a technology company operating a next-generation AI blockchain platform designed to enable decentralized trust infrastructure and monetize AI data, models, and agents. The website positions the company as a key player in the AI and blockchain intersection, targeting developers, researchers, and enterprises interested in AI monetization and decentralized applications. The business model revolves around providing blockchain infrastructure and tools such as an AI studio and testnet environment to facilitate AI-related blockchain services. Technically, the website is built on modern web technologies including React and Next.js, with integrations for analytics and advertising via Google Tag Manager and AdRoll. The site is mobile optimized and demonstrates good SEO and accessibility basics, though some accessibility features could be improved. Performance is moderate, with deferred loading of scripts and prefetching of key pages. From a security perspective, the site enforces HTTPS and includes a cookie consent mechanism compliant with GDPR. However, it lacks explicit published security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. The use of privacy protection in WHOIS is typical for blockchain startups and does not raise immediate concerns. Overall, the website presents a professional and trustworthy front for a small technology company in the AI blockchain space. Strategic recommendations include publishing formal security and incident response policies, enhancing accessibility, and providing direct company contact information to improve business credibility and compliance posture.

15
53
17
40
75
75
100
blockchainaitechnologydecentralizedcryptocurrency+3 more
ReactNext.jsJavaScriptCSS+3
2025-09-06T23:48:50.105Z
science.io favicon

ScienceIO

science.io

64
HealthcareN/amediumMEDIUM

ScienceIO is a healthcare technology company specializing in AI-powered data solutions that transform unstructured medical text into enriched, actionable data. Their platform offers products to identify, redact, and structure Protected Health Information (PHI) to improve patient care and operational efficiency. Recently acquired by Veradigm LLC, ScienceIO is positioned as a trusted player in the healthcare AI market, targeting healthcare providers, payors, and digital health companies. The website is built on modern web technologies including Next.js and React, with a professional and responsive design optimized for mobile and desktop. The technical infrastructure supports fast loading times and good SEO practices, although some security headers are not explicitly detected. The site uses Google Tag Manager for analytics and marketing tracking, but lacks a visible cookie consent mechanism. Security posture is strong with HTTPS enforced and secure form handling, but could be improved by adding security headers and publishing explicit security policies. WHOIS data is privacy protected, which is justified given the healthcare focus, but limits transparency. Overall, the site demonstrates high professionalism, trustworthiness, and compliance with privacy regulations. Recommendations include implementing a cookie consent banner, enhancing security headers, publishing a security policy and incident response contacts, and considering a vulnerability disclosure program to further strengthen trust and compliance.

30
53
17
70
72
85
100
healthcareaidatatechnologyprivacy+1 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

investor.veradigm.com
partner
2025-09-06T22:41:54.607Z