Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149561
Websites
130
Industries
113
Countries
52
Avg Score
Page 93 of 1024|Showing 4601-4650 of 51162
shopkilpi.cz favicon

PONATURE s.r.o.

shopkilpi.cz

58
RetailCzech RepublicmediumMEDIUM

Kilpi.cz is the official e-commerce website of the Kilpi brand, specializing in outdoor and sports apparel. The company operates both online and through physical stores in the Czech Republic, offering a wide range of products including jackets, pants, footwear, and accessories. The website targets outdoor enthusiasts and general consumers seeking quality sportswear. The business model is direct-to-consumer retail with a focus on customer loyalty and fast delivery. The brand is well-established with consistent branding and trust signals such as customer testimonials and physical store presence. Technically, the website employs a modern tech stack including JavaScript frameworks, Google Tag Manager, Microsoft Clarity, and other marketing and analytics tools. It uses AWS Cloudfront CDN for hosting and demonstrates good mobile optimization and SEO practices. The site is moderately performant with basic accessibility features. From a security perspective, the site enforces HTTPS and uses several third-party scripts for analytics and marketing. While some security headers are not explicitly detected, no critical vulnerabilities or exposed sensitive data were found. Privacy and cookie policies are present with consent mechanisms, indicating basic GDPR compliance. However, no explicit security or incident response policies were found. Overall, the website presents a low-risk profile with a legitimate business presence. The lack of WHOIS data is likely due to privacy protection, which is justified for this business type. Recommendations include enhancing security headers and publishing explicit security policies to improve trust and compliance.

50
25
2
75
52
80
100
e-commerceoutdoorsportswearretailclothing+1 more
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics+6
2025-10-28T12:06:02.706Z
A

AT&T

att.com

71
TelecommunicationsUnited StatesenterpriseMEDIUM

AT&T is a leading telecommunications company in the United States, offering wireless, internet, and bundled services to consumers and businesses. The website reflects a mature digital presence with a focus on customer support, product offerings like the latest iPhone models, and account management. The company maintains a strong market position as a large enterprise with consistent branding and comprehensive service information. Technically, the site uses modern web technologies including React, Adobe Target for marketing, and Dynatrace for performance monitoring, ensuring a fast and mobile-optimized user experience. Security posture is strong with HTTPS enforcement and multiple security headers, though explicit security policies and incident response contacts are not publicly detailed. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, the site is professional, trustworthy, and well-maintained, though WHOIS data is unavailable likely due to privacy protections. Strategic recommendations include publishing explicit security and incident response policies and adding vulnerability disclosure information to enhance transparency and trust.

55
70
2
85
82
85
100
telecommunicationswirelessinternetmobilecustomersupport+2 more
React (hydrated class)Adobe TargetGoogle Tag ManagerDynatrace RUM+1

Partner Domains:

linkedin.com
partner
youtube.com
partner

+2 more partners

2025-10-28T12:05:32.629Z
veratio.de favicon

CURACON GmbH Wirtschaftsprüfungsgesellschaft

veratio.de

53
FinanceGermanymediumMEDIUM

CURACON GmbH Wirtschaftsprüfungsgesellschaft operates the veratio website, specializing in financial bookkeeping services tailored for churches, religious institutions, orders, associations, and foundations. The company positions itself as a niche service provider with a strong focus on the non-profit and religious sectors in Germany. Their key offerings include financial accounting, payment processing, VAT pre-registrations, cost accounting, and cooperation on annual financial statements. The website is professionally designed, well-structured, and provides clear contact points including a named senior consultant. The presence of multiple office locations and partner organizations further strengthens their market position. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies and integrating marketing and analytics tools such as HubSpot, Google Tag Manager, and Microsoft Clarity. The site includes a comprehensive consent management system ensuring GDPR compliance. Performance and mobile optimization are good, with accessibility features implemented. However, explicit security headers are not detected, and no dedicated security or incident response policies are published. From a security perspective, the site uses HTTPS with no visible vulnerabilities or exposed sensitive data. The privacy and cookie policies are comprehensive and clearly linked. No vulnerability disclosure or security.txt files are present, which could be considered for future improvement. The domain WHOIS data aligns well with the business identity, supporting legitimacy and trustworthiness. Overall, the website demonstrates a mature digital presence with strong business credibility and good privacy compliance. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure mechanisms to further strengthen trust and security posture.

25
83
2
80
82
70
-
financenon-profitchurchaccountingconsulting+3 more
TYPO3 CMSHubSpot scriptsComply consent managerGoogle Tag Manager+1

Partner Domains:

www.dkm.de
partner
www.pax-bank.de
partner
2025-10-28T11:04:40.965Z
U

Universal Music Group

taylorswift.com

63
MediaUnited StateslargeMEDIUM

The official website of Taylor Swift serves as a comprehensive digital platform for fans and consumers to access music releases, tour information, news updates, and official merchandise. Backed by Universal Music Group, the site reflects a strong market position in the entertainment and media sector, targeting a global audience of music enthusiasts and Taylor Swift fans. The business model focuses on content promotion, fan engagement, and e-commerce through merchandise sales. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Tag Manager, and various plugins for social sign-in and user interaction. The site demonstrates good performance, mobile optimization, and SEO practices, although some accessibility features could be enhanced. Privacy compliance is robust, with clear cookie consent mechanisms and a comprehensive privacy policy hosted by Universal Music Group. From a security perspective, the site enforces HTTPS, uses CAPTCHA for forms, and integrates cookie consent tools, reflecting a mature security posture. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not evident and should be implemented to strengthen defenses. No vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, trustworthy, and well-aligned with the brand's global reputation. The absence of WHOIS registration data is a notable anomaly but likely due to privacy protection or domain registration nuances. Strategic recommendations include enhancing security headers, continuous plugin updates, and further accessibility improvements to maintain high standards.

20
88
17
40
72
80
100
musicentertainmentartistmerchandisetour+2 more
WordPress 6.6.2jQuery 3.7.1Google Tag ManagerYouTube iframe API+7

Partner Domains:

privacypolicy.umusic.com
partner
www.universalmusic.com
parent
2025-10-28T10:56:26.365Z
socialimpactaward.net favicon

Social Impact Award

socialimpactaward.net

58
Non-profitAustriamediumMEDIUM

Social Impact Award (SIA) is a well-established non-profit organization founded in 2009 and headquartered in Vienna, Austria. It focuses on empowering youth across Europe, Central Asia, and Africa to create social ventures and innovative solutions addressing pressing global issues. The organization operates through a licensing model that enables local hosts in 29 countries to run the program, engaging over 30,000 social innovators since inception. The website reflects a mature international presence with strong partnerships including the European Union, SAP, and Erste Stiftung. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Tag Manager, and Mailchimp for marketing. It uses SEO best practices via Rank Math and integrates multiple analytics and tracking tools such as Google Analytics and Facebook Pixel. The site is mobile-optimized, accessible, and performs moderately well. Hosting and DNS are managed through EPAG Domainservices GmbH and Cloudflare respectively. From a security perspective, the site enforces HTTPS and employs clientTransferProhibited status on the domain to prevent unauthorized transfers. However, DNSSEC is not enabled, and some security headers like Content-Security-Policy are missing, which could be improved. Privacy compliance is strong with a clear privacy policy, cookie consent mechanism, and GDPR adherence. No incident response or vulnerability disclosure policies are publicly available. Overall, the website is professional, trustworthy, and aligns well with the organization's mission and business model. It presents a low risk profile but could benefit from enhanced security headers and formalized security policies to further strengthen its posture.

15
83
2
100
62
80
40
non-profitsocialimpactyouthempowermentsocialentrepreneurshipeducation+3 more
WordPressjQueryGoogle Tag ManagerGoogle Analytics+4

Partner Domains:

impacthub.net
partner
wu.ac.at
partner

+1 more partners

2025-10-28T10:47:17.942Z
emerald-ventures.com favicon

Emerald Technology Ventures

emerald-ventures.com

68
EnergySwitzerlandmediumMEDIUM

Emerald Technology Ventures is a well-established venture capital firm specializing in sustainable industrial innovation. With over €1 billion in commitments and a global team of more than 50 professionals, Emerald connects innovative startups with corporate partners and institutional investors to accelerate solutions for global challenges. Their business model focuses on providing capital and strategic support to entrepreneurs in sectors such as energy, packaging, water, industrial IT, and food & agriculture. The website reflects a mature market position with strong trust indicators including blue-chip corporate limited partners and comprehensive SFDR disclosures. Technically, the website is built on WordPress and leverages modern web technologies including HubSpot for marketing and analytics, Google Tag Manager, and Lottie animations for enhanced user experience. The site is mobile-optimized, SEO-friendly, and integrates secure forms with reCAPTCHA to protect user data. Performance is moderate with good accessibility and navigation clarity. From a security perspective, the site enforces HTTPS, employs multiple security headers, and avoids exposing sensitive data. However, it lacks a dedicated security policy or incident response contact information, which are recommended for enhanced transparency and readiness. Privacy compliance is strong with clear privacy and cookie policies and opt-in consent mechanisms. Overall, Emerald Technology Ventures presents a professional, trustworthy, and secure online presence aligned with its business objectives. Strategic recommendations include publishing a security policy, adding incident response contacts, and implementing a vulnerability disclosure program to further strengthen security posture and stakeholder trust.

60
68
17
80
47
85
100
venturecapitalsustainabilityindustrialinnovationinvestmentcorporateventuring+2 more
WordPressjQueryGoogle FontsGoogle Maps API+5
2025-10-28T10:46:27.543Z
D

Ducati Motor Holding S.p.A

scramblerducati.pl

57
TransportationPolandlargeMEDIUM

The website scramblerducati.pl serves as the official Polish brand portal for Ducati Scrambler motorcycles, offering detailed product information, media content, and interactive tools such as a configurator and dealer locator. It targets motorcycle enthusiasts and potential buyers in Poland, positioning itself as a key regional presence for the Ducati brand. The site is professionally designed with consistent branding and provides essential services including test ride bookings and access to accessories. Technically, the site employs modern analytics and tracking technologies like Google Analytics, Facebook Pixel, and Google reCAPTCHA v3, ensuring user interaction data is collected responsibly. The site is mobile-optimized and performs moderately well, though some SEO and accessibility enhancements could be made. Security-wise, the site uses HTTPS and bot protection but lacks some advanced security headers and explicit incident response information. Privacy compliance is basic, with privacy and cookie policies present but no active cookie consent mechanism. Overall, the domain registration aligns well with the Ducati brand, confirming legitimacy and trustworthiness.

20
25
2
75
72
80
100
motorcyclesducatiscramblerpolandmotorcycleaccessories+3 more
Google AnalyticsGoogle Tag ManagerFacebook PixelGoogle reCAPTCHA v3+2

Partner Domains:

scramblerducati.com
partner
configurator.scramblerducati.com
service

+1 more partners

2025-10-28T10:44:57.104Z
fenster-koch.de favicon

Fenster Koch Gmbh & Co.KG

fenster-koch.de

43
ManufacturingGermanymediumHIGH

Fenster Koch Gmbh & Co.KG is a well-established German company specializing in manufacturing and servicing windows, doors, sliding doors, and related glass constructions. With over 70 years of experience, the company positions itself as a traditional yet innovative provider offering comprehensive project handling from consultation to implementation. Their market focus includes private homeowners and commercial clients seeking high-quality, secure, and design-oriented building products. The website reflects a professional and consistent brand image with detailed project references and certifications such as the ift logo, enhancing trustworthiness. Technically, the website employs modern JavaScript libraries including jQuery, Lottie animations, and ScrollMagic for enhanced user experience. It integrates Google Analytics and Tag Manager for visitor tracking and marketing insights. Hosting is managed via kasserver.com, and the site is mobile-optimized with good SEO practices. However, explicit CMS or framework usage is not detected. Performance is moderate with room for improvement in accessibility features. From a security perspective, the site uses HTTPS and includes secure contact forms with privacy consent checkboxes. No explicit security headers or incident response policies are published, which could be improved. No vulnerabilities or exposed sensitive data were detected in the HTML content. Cookie consent is implemented, supporting GDPR compliance. WHOIS data aligns well with the website's claims, indicating a trustworthy domain registration. Overall, Fenster Koch's website demonstrates a solid digital presence with good business credibility and privacy compliance. Strategic enhancements in security headers, incident response transparency, and accessibility would further strengthen their posture. The site is safe for general audiences and free from adult or questionable content.

15
28
2
85
72
60
-
fenstertrenschiebetrenfensterbauhaustren+5 more
jQuery 3.6.0Lottie animationsGoogle AnalyticsGoogle Tag Manager+3
2025-10-28T10:41:51.657Z
braendle-honen.de favicon

Brändle Präzisionsteile GmbH

braendle-honen.de

52
ManufacturingGermanysmallMEDIUM

Brändle Präzisionsteile GmbH is a specialized German manufacturing company focusing on precision machining techniques such as honing and deep hole drilling. The company targets industrial clients requiring high-quality precision parts and offers services including quality assurance and consulting. Their market position is that of a niche precision parts manufacturer with a clear B2B business model. The website reflects a professional and consistent brand image with good content quality and clear navigation. Technically, the website is built on WordPress with modern frameworks like Bootstrap and uses common analytics and marketing tools such as Google Tag Manager, eTracker, and Cookiebot for consent management. Hosting appears to be provided by 1&1 IONOS, inferred from nameservers. The site is moderately performant, mobile-optimized, and SEO-friendly, though accessibility is basic. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms compliant with GDPR. However, explicit security headers like CSP or X-Frame-Options are not evident in the provided data, suggesting room for improvement. No vulnerabilities or exposed sensitive data were detected. Incident response and security policies are not publicly documented. Overall, the website presents a low-risk profile with strong privacy compliance and business credibility. Strategic recommendations include enhancing security headers, publishing a security policy, and maintaining up-to-date software to mitigate potential vulnerabilities.

15
83
2
65
77
70
20
manufacturingprecisionpartshoningdeepholedrillingb2b+3 more
WordPressjQueryBootstrapGoogle Tag Manager+2
2025-10-28T10:40:36.320Z
C

Chatsimple Inc.

chatsimple.ai

62
TechnologyN/amediumMEDIUM

Expertise AI is a technology company specializing in AI-powered conversational agents designed to enhance B2B sales and marketing efforts. Their platform offers advanced chat and voice AI solutions that engage, qualify, and enrich prospects in real time, integrating seamlessly with major CRM systems like HubSpot and Salesforce. Positioned as a leading AI chatbot solution in the HubSpot Marketplace, Expertise AI targets sales and marketing teams seeking to improve lead conversion and pipeline generation through automation and personalization. Technically, the website leverages a modern stack including React and Next.js, supported by robust analytics and performance monitoring tools such as Google Analytics, Microsoft Clarity, and DebugBear. The site demonstrates excellent design quality, mobile optimization, and SEO practices, reflecting a mature digital infrastructure. Security is well addressed with HTTPS enforcement, SOC2 Type II and GDPR compliance, and enterprise-grade encryption, although some minor compliance gaps such as the absence of a cookie consent banner were noted. The security posture is strong with no detected vulnerabilities or exposed sensitive data. However, the lack of a public vulnerability disclosure or incident response contact information suggests room for improvement in transparency and readiness. Overall, the domain appears legitimate despite privacy-protected WHOIS data, which is common for SaaS providers. The company maintains trust through certifications, customer testimonials, and a partner ecosystem. Strategically, Expertise AI is well positioned in the AI SaaS market with a comprehensive product offering and strong compliance credentials. Continued focus on privacy compliance enhancements and security transparency will further strengthen their market trust and regulatory alignment.

35
35
17
70
72
80
100
aib2bchatbotvoiceaisalesautomation+5 more
ReactNext.jsGoogle Tag ManagerMicrosoft Clarity+3

Partner Domains:

chatsimple.getrewardful.com
partner
2025-10-28T10:40:11.219Z
teachcambridge.org favicon

Cambridge University Press & Assessment

teachcambridge.org

62
EducationUnited KingdommediumMEDIUM

Teach Cambridge is a specialized educational platform providing OCR teachers with access to a wide range of teaching resources, including assignments, examiner reports, exemplars, past papers, and training materials. The platform is positioned as a secure, personalized website under the reputable Cambridge University Press & Assessment brand, targeting educators involved in OCR qualifications. The business model focuses on supporting teachers with high-quality, official resources to enhance learner assessment preparation. Technically, the website is built using modern React technology, hosted with Cloudflare DNS services, and integrates analytics tools such as Google Tag Manager and Hotjar for user behavior insights. The site demonstrates good mobile optimization and a professional design, although accessibility and SEO optimizations are basic. Security-wise, the site enforces HTTPS and uses clientTransferProhibited domain status, but lacks DNSSEC and advanced security headers. No explicit security or incident response policies are published, indicating room for improvement in transparency and compliance. Overall, the website is trustworthy, safe, and well-aligned with its educational mission, but could benefit from enhanced security practices and clearer contact channels.

90
35
2
60
57
75
100
educationocrteachingresourcescambridgeassessment+1 more
ReactCloudflare DNSHotjarGoogle Tag Manager
2025-10-28T09:36:38.001Z
C

CITY CARD

citycard.de

57
HospitalityGermanysmallMEDIUM

CITY CARD is a regional cultural discount card service focused on providing residents and visitors of Frankfurt and the Rhein-Main area with exclusive 2for1 offers and discounts across events, leisure, gastronomy, and shopping. The website presents a professional and content-rich platform with a clear focus on cultural and lifestyle benefits, targeting a general audience interested in local cultural engagement. The business model revolves around membership and promotional partnerships with local vendors and event organizers, positioning CITY CARD as a key player in the regional cultural discount market. Technically, the website employs a moderate technology stack including jQuery, Google Tag Manager, and Usercentrics for consent management. The site is served over HTTPS with basic privacy compliance mechanisms in place, including a privacy policy and cookie consent banner. However, there is room for improvement in security headers and mobile optimization. The site features extensive image-based animations to promote offers, enhancing user engagement but potentially impacting performance. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and default denial of tracking until user consent. Google Analytics is integrated but disabled by default, respecting privacy regulations. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms suggests a moderate security maturity level. Overall, CITY CARD's website is trustworthy, professionally maintained, and compliant with GDPR requirements. Strategic enhancements in security headers, mobile responsiveness, and explicit policy disclosures would further strengthen its security posture and user trust.

30
43
2
70
72
60
100
culturediscounteventsfrankfurtrhein-main+5 more
jQueryGoogle Tag ManagerUsercentrics Consent Management
2025-10-28T09:36:07.931Z
morguefile.com favicon

MorgueFile

morguefile.com

59
MediaN/asmallMEDIUM

MorgueFile is a well-established online platform founded in 2001 that provides a large collection of over 410,000 free stock photos for commercial and creative use. The website targets creative professionals such as illustrators, designers, educators, and the general public seeking free image resources. Its business model primarily revolves around offering free content while monetizing through affiliate marketing partnerships, notably with Shutterstock. The site maintains a consistent brand presence and offers a user-friendly experience with good navigation and mobile optimization. Technically, MorgueFile employs modern web technologies including Vue.js for its frontend, integrates multiple analytics and tracking services such as Google Analytics, Google Tag Manager, and Hotjar, and uses Cloudflare for DNS and likely CDN services. The website performance is moderate with good SEO and accessibility basics, though there is room for improvement in security headers and DNS security. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks DNSSEC and security headers which are recommended best practices. Privacy compliance is basic; while a privacy policy and terms of service exist, there is no cookie consent mechanism or advanced GDPR compliance indicators. No direct contact information or incident response contacts are provided, which could be improved for transparency and trust. Overall, MorgueFile presents a trustworthy and professional platform with a strong market position in free stock photography. Strategic improvements in security practices and privacy compliance would enhance its risk posture and user trust.

15
68
2
70
57
75
100
stockphotosfreeimagescommercialuseaffiliatemarketingcreativeresources
JavaScriptGoogle AnalyticsGoogle Tag ManagerHotjar+1

Partner Domains:

shutterstock.com
partner
2025-10-28T09:35:32.840Z