Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 94 of 261|Showing 4651-4700 of 13036
gsa.gov favicon

U.S. General Services Administration

gsa.gov

65
GovernmentUnited StatesenterpriseMEDIUM

The U.S. General Services Administration (GSA) operates as a federal government agency providing comprehensive services in real estate management, acquisition, technology solutions, and travel services to government entities and the American public. The agency holds a strong market position as the primary federal provider of these services, targeting government agencies, contractors, and businesses. The website reflects a professional and authoritative presence consistent with its government mandate. Technically, the website is built on the Drupal CMS platform, leveraging the U.S. Web Design System (USWDS) for accessibility and responsive design. It integrates modern analytics and marketing tools such as Google Tag Manager and Oracle Eloqua, ensuring effective user engagement tracking while maintaining privacy compliance. The site demonstrates good performance and excellent mobile optimization. From a security perspective, the site enforces HTTPS, implements robust security headers, and follows best practices for secure forms and data handling. The presence of cybersecurity policies aligned with NIST frameworks and certifications like FedRAMP further strengthen its security posture. No significant vulnerabilities were detected, and incident response contacts are clearly provided. Overall, the GSA website presents a low-risk profile with high trustworthiness, excellent content quality, and strong compliance with privacy and security standards. Strategic recommendations include maintaining up-to-date third-party libraries, enhancing GDPR-specific disclosures, and continuing proactive security monitoring.

50
53
59
83
-
85
100
governmentprocurementrealestatetechnologytravel+3 more
Google Tag ManagerGoogle AnalyticsDrupal CMSJavaScript+2
2025-10-08T04:00:26.489Z
nord-fanqiang.com favicon

NordVPN

nord-fanqiang.com

71
TechnologyFinlandlargeMEDIUM

Nord-fanqiang.com is a regional or alternative domain representing the NordVPN brand, a leading global VPN service provider focused on online privacy and security. The website promotes fast, secure, and risk-free VPN services that encrypt user traffic and enable unrestricted internet access. The business model is subscription-based, targeting general internet users seeking privacy and security online. The domain is registered with NameCheap and uses Cloudflare DNS, indicating a professional and legitimate setup. The website content is well-structured with multi-language support and consistent branding aligned with NordVPN's global presence. Technically, the website employs modern web technologies including JavaScript for tracking and analytics, Cloudflare for DNS and likely CDN services, and enforces HTTPS with strong SSL configuration. The site includes cookie consent mechanisms and uses custom tracking scripts to monitor user interactions and experiments. Performance and mobile optimization are good, though accessibility features are basic. SEO is adequately addressed with proper meta tags and canonical links. From a security perspective, the site demonstrates good practices such as HTTPS enforcement, security headers, and domain transfer protection. However, it lacks visible privacy policy, terms of service, incident response contacts, and vulnerability disclosure mechanisms, which are important for compliance and user trust. No vulnerabilities or suspicious domains were detected. The overall security posture is strong but could be improved with enhanced transparency and compliance documentation. Overall, the website is trustworthy and professional, serving as a legitimate front for NordVPN services. Strategic recommendations include publishing comprehensive privacy and terms documents, adding clear contact and incident response information, and implementing a security.txt file for vulnerability disclosures. These improvements would enhance privacy compliance and user confidence while maintaining strong technical and security foundations.

35
100
47
60
75
70
100
vpnprivacysecurityonlineprivacyinternetfreedom+1 more
JavaScriptCloudflare DNSHTML5CSS3+2

Partner Domains:

nordcheckout.com
partner
nordaccount.com
partner

+3 more partners

2025-10-08T03:58:50.351Z
cn-nord.info favicon

NordVPN

cn-nord.info

70
TechnologyN/aenterpriseMEDIUM

The website cn-nord.info presents itself as a branded landing page for NordVPN, a well-known VPN service provider focused on online privacy and security. The site promotes fast, secure, and risk-free VPN services that encrypt user traffic and allow unrestricted internet browsing. The content is professionally designed with consistent branding and multiple language support, targeting a global audience seeking privacy solutions. However, the WHOIS data for the domain is unavailable due to unsupported TLD WHOIS queries, limiting transparency about domain ownership and registration details. The website ecosystem includes numerous related domains, indicating a broad service and product portfolio under the Nord brand. Technically, the site uses modern web technologies including JavaScript and CSS, with embedded cookie consent mechanisms and analytics scripts. Performance and mobile optimization are moderate to good, but accessibility and SEO features are basic. Security posture is limited by the absence of visible security headers and lack of explicit HTTPS/SSL configuration details in the provided data. No contact information, privacy policy, or terms of service pages were detected, which impacts privacy compliance and user trust. Overall, the site appears legitimate and aligned with a reputable VPN brand, but the lack of WHOIS transparency and missing legal pages reduce trustworthiness. Security best practices should be enhanced by adding security headers, visible privacy policies, and contact channels for incident response. The cookie consent mechanism is a positive indicator of privacy awareness. The site content is safe for general audiences with no adult or explicit material detected.

35
100
47
60
75
75
100
vpnprivacysecuritynordvpnonlineprivacy+1 more
JavaScriptHTML5CSS3Web Analytics+1

Partner Domains:

nordcheckout.com
partner
nordaccount.com
partner

+3 more partners

2025-10-08T03:56:20.654Z
enable-javascript.com favicon

Enable JavaScript

enable-javascript.com

52
TechnologyN/asmallMEDIUM

Enable-JavaScript.com is a specialized educational website dedicated to providing clear, step-by-step instructions on how to enable JavaScript in the most popular web browsers. The site targets general internet users who may have JavaScript disabled and aims to improve their browsing experience by enabling this essential web technology. The website is small in scale, with a focused content offering and multi-language support to reach a global audience. The business model is informational and free access, with some partner links and supporters listed. Technically, the website employs a traditional web stack including jQuery 1.11.2, Lightbox for image display, and analytics tools such as Matomo and Google Analytics. The site uses HTTPS and asynchronous script loading, contributing to a moderate performance and basic mobile optimization. SEO practices are good with proper meta tags and hreflang for internationalization. However, some technical debt is present due to the use of an outdated jQuery version and lack of modern security headers. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security policies, vulnerability disclosure mechanisms, and security headers that are considered best practices. Privacy compliance is basic, with a cookie banner present but no formal privacy or terms of service pages. The contact information is limited to an email address, with no phone or physical address provided. Overall, the security posture is adequate but could be improved with additional policies and technical controls. The overall risk assessment is low given the site's informational nature and lack of sensitive data handling. Strategic recommendations include implementing security headers, updating JavaScript libraries, publishing privacy and security policies, and adding a security.txt file for vulnerability reporting. These improvements would enhance trust, compliance, and security culture, supporting the site's continued reliability and user confidence.

30
35
2
40
52
75
100
javascriptbrowserenablejavascriptwebdevelopmenttutorial+1 more
jQuery 1.11.2Lightbox.jsMatomo AnalyticsGoogle Tag Manager+2
2025-10-08T03:53:52.312Z
communityovercode.org favicon

Community Over Code

communityovercode.org

57
TechnologyUnited StatessmallMEDIUM

Community Over Code is a specialized conference event organized under the Apache Software Foundation umbrella, targeting ASF members, committers, and open source developers globally. The conference focuses on a variety of technology topics including Search, Big Data, IoT, and Financial Tech, offering both formal sessions and informal Birds of a Feather discussions. The event is scheduled for September 2025 in Minneapolis, Minnesota, indicating an active and ongoing community engagement effort. Technically, the website is built on WordPress, leveraging Jetpack and Gutenberg block editor technologies, hosted on WordPress.com infrastructure. The site demonstrates moderate performance and good mobile optimization, with a clean and professional design. SEO and accessibility are adequately addressed, though accessibility could be improved further. From a security perspective, the site uses HTTPS with good SSL configuration but lacks advanced security headers and DNSSEC. No visible vulnerabilities or exposed sensitive data were found. Privacy compliance is supported by a comprehensive privacy policy linked to the Apache Foundation's official policy, though no cookie consent mechanism is present. Contact information is limited to email and Slack links, with no phone numbers or detailed security policies. Overall, the website presents a trustworthy and professional front for the Community Over Code conference, with a solid business credibility score and a good security posture. Recommendations include enhancing DNS security, adding security headers, implementing cookie consent, and publishing explicit security and incident response policies to further strengthen trust and compliance.

30
53
17
70
42
65
100
opensourceconferenceapachecommunitytechnology+1 more
WordPressJetpackGutenbergHTML5+2

Partner Domains:

apachecon.com
partner
apache.org
partner
2025-10-08T03:52:37.138Z
stefanie-wingenfeld.de favicon

Stefanie Wingenfeld

stefanie-wingenfeld.de

62
OtherGermanysmallMEDIUM

visual-arts.studio is a professional portfolio website for Stefanie Wingenfeld, a visual artist and illustrator specializing in key visual creation for companies and products, with a focus on fashion, editorial, and portrait illustrations. The website targets businesses seeking creative visual content and operates as a small-scale creative service provider based in Germany. The site is well-designed, mobile-optimized, and presents a consistent brand image supported by active social media profiles on Behance, LinkedIn, and Instagram. Technically, the website is built on the MyPortfolio platform, utilizing modern web standards including HTML5, CSS3, and JavaScript, with Adobe Typekit fonts for typography. Performance is moderate with good SEO and mobile responsiveness, although accessibility features are basic. No major technical issues or broken elements were detected. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks explicit security headers and a cookie consent mechanism, which are recommended for enhanced security and GDPR compliance. No incident response or security policy information is provided. WHOIS data is limited due to TLD support and privacy protection but shows recent updates consistent with an active site. Overall, the website presents a low-risk profile with good professionalism and trustworthiness. Strategic improvements in security headers, privacy consent, and contact transparency would further strengthen its security posture and compliance.

35
65
2
70
72
75
100
visualartistillustrationdigitalartfashionillustrationeditorialillustration+4 more
HTML5CSS3JavaScriptAdobe Typekit Fonts+1
2025-10-08T02:46:36.856Z
addevent.com favicon

AddEvent

addevent.com

62
TechnologyN/amediumMEDIUM

AddEvent is a technology company specializing in calendar event sharing and marketing tools designed to increase attendance and engagement for businesses and organizations. Their platform offers a variety of solutions including Add to Calendar buttons, online RSVP forms, subscription calendars, embeddable calendars, and automated event management. Trusted by over 350,000 companies, AddEvent positions itself as a market leader in the Add to Calendar service space. The website is professionally designed, mobile-optimized, and integrates with major calendar platforms and payment processors such as Stripe. The technical infrastructure includes modern JavaScript libraries and analytics tools like Amplitude, indicating a mature digital presence. Security posture is generally good with HTTPS enforced and no exposed sensitive data, though some security headers could be improved. Privacy and cookie policies are comprehensive and GDPR compliant, but direct contact information and explicit security policies are not readily found on the site. WHOIS data for the domain is unavailable, which is unusual and warrants further investigation to confirm domain legitimacy. Overall, the website is trustworthy and professional, with moderate risk due to missing WHOIS transparency.

30
35
2
85
77
85
100
calendareventsaddtocalendarrsvpsubscriptioncalendar+4 more
JavaScriptCSS3HTML5Google Fonts+5

Partner Domains:

stripe.com
partner
firstpromoter.com
partner
2025-10-08T02:43:29.769Z
K

KOLLEGTIV Chemnitz GmbH

chemnitz-zieht-an.de

54
OtherGermanysmallMEDIUM

The website www.chemnitz-zieht-an.de serves as a regional job portal focused on the Chemnitz area in Germany, providing job listings from over 120 leading local companies. It offers services such as job search with filters, Jobalarm notifications, company listings, and information about living and working in Chemnitz. The business operates as a small entity under the legal name KOLLEGTIV Chemnitz GmbH, positioning itself as a key regional employment resource. The site targets job seekers and employers within the Chemnitz region, emphasizing local employment opportunities and community integration. Technically, the website employs standard web technologies including HTML5, CSS3, and JavaScript, with asynchronous loading of scripts and the use of Matomo analytics for user tracking. Hosting is provided by netcup GmbH, a reputable German hosting provider. The site demonstrates moderate performance and good mobile optimization, with basic accessibility features and solid SEO practices. However, no CMS or advanced frameworks were detected, indicating a possibly custom or lightweight platform. From a security perspective, the site uses HTTPS with a good SSL configuration, but lacks visible security headers such as Content-Security-Policy or X-Frame-Options. There is no cookie consent mechanism or explicit privacy compliance banner, though a privacy policy page is present and appears GDPR compliant. No incident response or security policy pages were found, and no vulnerability disclosure or security.txt files are published. The site does not expose sensitive data and uses secure form submissions, but could improve its security posture by implementing recommended headers and consent mechanisms. Overall, the website is professional, trustworthy, and safe for general audiences, with no adult or questionable content. The domain registration data aligns with the hosting provider and business claims, supporting legitimacy. Strategic improvements in privacy compliance and security best practices would enhance trust and regulatory adherence.

80
28
2
85
65
70
20
jobportalchemnitzemploymentregionaljobscareer+3 more
HTML5CSS3JavaScriptMatomo Analytics

Partner Domains:

chemnitz2025.de
partner
kollegtiv-chemnitz.de
partner
2025-10-08T01:41:44.594Z
M

Mark Otto

ghbtns.com

62
TechnologyN/asmallMEDIUM

The website ghbtns.com is an open source project created and maintained by Mark Otto, offering static GitHub buttons that dynamically display watch, fork, sponsor, and follow counts for GitHub repositories. The site targets developers and GitHub users who want to showcase repository metrics on their own sites. The project is licensed under Apache 2 and hosted on GitHub Pages with Cloudflare providing DNS and SSL services. The website is technically well implemented with modern HTML, CSS, and JavaScript, and uses Jekyll as a static site generator. It is mobile optimized and SEO friendly, though accessibility features are basic. From a security perspective, the site enforces HTTPS via Cloudflare Universal SSL and employs domain registration protections such as clientDeleteProhibited status. However, it lacks advanced security headers and does not provide privacy, cookie, or terms of service policies, nor does it offer contact information or incident response channels. No analytics or tracking beyond Twitter widgets are present, indicating minimal user tracking. The domain is well aged and consistent with the project’s founding date, enhancing trustworthiness. Overall, the site is safe, professional, and functional for its niche audience but would benefit from improved privacy compliance and security hardening. There are no indications of adult or questionable content. The risk level is low but could be further reduced by adding privacy policies, security headers, and contact details for incident response.

40
35
2
80
75
85
100
githubopensourcedevelopertoolsbuttonsstaticwidgets
HTML5CSS3JavaScriptJekyll+1
2025-10-08T01:41:34.578Z
M

Microsoft Corporation

outlook.com

74
TechnologyUnited StatesenterpriseMEDIUM

Microsoft Corporation operates the website www.microsoft.com, specifically the Microsoft 365 Outlook product page, offering personal and business email and calendar software integrated with productivity tools. The company is a global technology leader with a strong market position and a comprehensive suite of services targeting individual consumers, businesses, and enterprises. The website demonstrates a mature digital presence with modern technologies, excellent content quality, and strong branding consistency. Technically, the site uses Adobe Experience Manager as its CMS, integrates advanced analytics and media players, and is optimized for performance and accessibility. Security posture is robust, with HTTPS enforced, multiple security headers, and adherence to industry standards and certifications such as ISO 27001 and SOC reports. Privacy compliance is well addressed with clear policies and consent mechanisms, reflecting GDPR adherence. Overall, the site is trustworthy, professional, and secure, with no detected vulnerabilities or suspicious indicators. The WHOIS data is privacy protected but consistent with Microsoft's ownership and domain age. Strategic recommendations include maintaining security best practices, enhancing transparency, and continuing to leverage AI capabilities to improve user experience.

15
88
17
93
100
90
100
microsoftoutlookemailcalendarmicrosoft365+5 more
JavaScriptAdobe Helix RUMAEM (Adobe Experience Manager)Universal Media Player+2

Partner Domains:

azure.microsoft.com
partner
visualstudio.microsoft.com
partner

+1 more partners

2025-10-08T01:39:48.797Z
meetic.cz favicon

Meetic SAS

meetic.cz

67
OtherCzech RepubliclargeMEDIUM

Meetic.cz is a professional online dating platform operated by Meetic SAS, targeting serious singles in the Czech Republic. It offers matchmaking services through a well-designed website and mobile applications, positioning itself as a trusted brand in the local dating market. The website is part of the larger Match Group ecosystem, which enhances its market credibility and operational scale. Technically, the site uses modern web technologies including React and integrates Google Analytics and Tag Manager for marketing and analytics purposes. The site is well-optimized for mobile devices and provides a seamless user experience with clear navigation and professional content. Security-wise, the site enforces HTTPS, employs standard security headers, and follows best practices to protect user data. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature approach to data protection. However, WHOIS data is unavailable due to privacy protection, which is common for commercial domains but limits direct verification of domain registration details. Overall, Meetic.cz presents a low-risk profile with strong business credibility and technical maturity, suitable for its target adult audience seeking serious relationships.

40
73
17
70
72
80
100
datingonlinedatingmatchmakingczechrepublicmeetic+2 more
ReactGoogle AnalyticsGoogle Tag ManagerJSON-LD+2

Partner Domains:

match.com
parent
lovescout24.de
sister
2025-10-08T01:36:32.102Z
w3.org favicon

World Wide Web Consortium

w3.org

67
TechnologyN/alargeMEDIUM

The World Wide Web Consortium (W3C) is a globally recognized non-profit organization dedicated to developing web standards and guidelines that promote accessibility, internationalization, privacy, and security on the web. The website reflects its authoritative market position by providing comprehensive resources, membership information, and community engagement opportunities. The content is well-structured, professionally designed, and highly relevant to its target audience of web developers, technology companies, and researchers. Technically, the website employs modern web technologies including HTML5, CSS3, and JavaScript libraries such as FontFaceObserver to ensure excellent performance, mobile optimization, and accessibility. The site uses HTTPS with strong SSL configurations and likely implements security headers, contributing to a robust security posture. No forms on the homepage collect sensitive data, reducing exposure risks. Security-wise, the site demonstrates good practices with HTTPS enforcement and no visible vulnerabilities or exposed sensitive information. However, the absence of a visible cookie consent mechanism and vulnerability disclosure policy are areas for improvement. The WHOIS data is malformed and incomplete, limiting domain registration trust verification, but the website's global reputation and consistent branding strongly support its legitimacy. Overall, the W3C website is a high-quality, trustworthy resource with strong technical and security foundations. Strategic recommendations include enhancing privacy compliance with explicit cookie consent, publishing a vulnerability disclosure policy, and improving transparency around security headers and incident response contacts.

40
53
17
75
75
85
100
webstandardstechnologynon-profitaccessibilityprivacy+2 more
HTML5CSS3JavaScriptFontFaceObserver
2025-10-08T01:35:31.723Z
C

Connect Ventures

connect-ventures.com

47
HealthcareIndiamediumHIGH

Connect Ventures is a collaborative network of companies focused on advancing health, performance, and sustainability initiatives primarily in India. The organization operates as an integrated ecosystem with multiple subsidiaries specializing in holistic health, functional foods, performance labs, sustainability solutions, and design. Their market position is that of a niche integrator leveraging synergies across these domains to unlock human potential and environmental benefits. The website content is professionally presented with clear branding and consistent messaging, targeting businesses and individuals interested in these sectors. Technically, the website uses modern web fonts and JavaScript but lacks advanced frameworks or CMS indications. Performance is moderate with good mobile optimization and basic accessibility. SEO optimization is basic with minimal meta information. No analytics or tracking scripts were detected, indicating a privacy-conscious approach but also a lack of marketing insights. No forms are present, limiting direct user data collection. From a security perspective, the site lacks visible security headers, privacy policies, cookie consent mechanisms, and incident response information. The absence of these elements reduces the overall security posture and compliance with GDPR or similar regulations. The domain uses privacy protection in WHOIS, which is justified for this business type. No WAF or blocking mechanisms were detected, and the site content is fully accessible. Overall, the website is professional and trustworthy but would benefit from enhanced security practices, privacy compliance documentation, and improved technical SEO and accessibility to strengthen its digital maturity and risk posture.

15
35
17
70
72
75
20
healthperformancesustainabilitycollaborativenetworksubsidiaries+3 more
HTML5CSS3JavaScriptGoogle Web Fonts (Typekit)+2

Partner Domains:

phd-health.com
subsidiary
invictusperformancelab.com
subsidiary

+3 more partners

2025-10-08T00:32:44.344Z
cookieconsent.com favicon

TermsFeed

cookieconsent.com

70
TechnologyN/asmallMEDIUM

CookieConsent.com is a specialized website offering a free cookie consent banner builder designed to help website owners comply with GDPR and the ePrivacy Directive. The service is provided by TermsFeed, a recognized legal compliance provider, and includes extensive documentation, video tutorials, and integration guides for popular consent frameworks such as Google Consent Mode V2 and Microsoft UET. The website targets website owners and developers seeking an easy-to-implement cookie consent solution with customization options and compliance features. Technically, the site employs modern web technologies including Bootstrap, jQuery, and several analytics tools, hosted behind Cloudflare for performance and security. The site is well-optimized for mobile and accessibility, with a professional design and clear navigation. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though explicit security headers and incident response contacts are absent. WHOIS data is unavailable, which reduces transparency and slightly impacts trustworthiness, but the association with TermsFeed and the professional presentation support legitimacy. Overall, the site scores well on content quality, technical implementation, and privacy compliance, with room for improvement in business credibility and security disclosures.

55
95
2
65
75
85
100
cookieconsentgdprcomplianceeprivacydirectivecookiebannerprivacy+3 more
HTML5CSS3JavaScriptjQuery+5

Partner Domains:

termsfeed.com
partner
2025-10-08T00:31:08.353Z
wisepops.com favicon

Wisepops

wisepops.com

72
E-commerceN/amediumMEDIUM

Wisepops is a well-established ecommerce personalization platform founded in 2012, offering a suite of onsite marketing tools including popups, AI-powered product recommendations, notification feeds, and web push notifications. The company targets ecommerce brands aiming to increase conversions and sales through personalized onsite engagement. With over 1,500 brands trusting their platform and delivering 200 million messages monthly, Wisepops holds a strong market position in the ecommerce SaaS space. Technically, the website is built on modern web technologies including React and Storyblok CMS, with integrations to Segment Analytics and other marketing tools. The site is well-optimized for performance and mobile responsiveness, featuring comprehensive SEO and accessibility considerations. Hosting and DNS are managed via Cloudflare, ensuring reliable delivery and security. From a security perspective, Wisepops employs HTTPS with a solid SSL configuration and domain transfer protections. However, DNSSEC is not enabled, and explicit security policies or incident response contacts are not publicly available. No vulnerabilities or exposed sensitive data were detected in the website content. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting good privacy practices. Overall, Wisepops presents a professional, trustworthy, and technically mature online presence with minor areas for security enhancement. The absence of direct contact emails or phone numbers on the website is noted but does not significantly detract from credibility. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and providing clearer contact channels for security matters.

60
68
17
85
75
85
100
ecommercemarketingpersonalizationaipopups+3 more
ReactSegment AnalyticsCloudflare DNSStoryblok CMS+3
2025-10-08T00:30:08.170Z
K

Knight Frank Finance LLP

knightfrankfinance.co.uk

60
FinanceUnited KingdommediumMEDIUM

Knight Frank Finance LLP is a UK-based financial advisory and brokerage firm specializing in mortgages, insurance, specialist lending, and wealth management services. The company operates with a strong market position supported by FCA regulation and a broad network of over 180 financial providers. Their website reflects a professional and comprehensive service offering targeting both UK and international clients seeking tailored mortgage and insurance solutions. Technically, the website is built on a custom ASP.NET CMS platform, utilizing modern JavaScript libraries and includes features such as Google reCAPTCHA for form security. The site is mobile optimized and provides a good user experience with clear navigation and rich content. Security posture is solid with HTTPS enforced and input validation on forms, though it lacks some recommended security headers and a cookie consent mechanism. The WHOIS data for the domain is unavailable due to a Nominet UK naming rules error, which is unusual but the website content and FCA registration lend credibility to the business. Overall, the site scores well on content quality, technical implementation, security, privacy compliance, and business credibility, making it a trustworthy and professional financial services website.

55
53
17
60
77
35
100
financemortgageinsurancebrokeruk+1 more
HTML5CSS3JavaScriptjQuery 3.3.1+5

Partner Domains:

marketing.knightfrank.co.uk
partner
www.knightfrank.co.uk
partner
2025-10-07T23:22:57.738Z
rkdms.com favicon

Merkle Inc.

rkdms.com

52
TechnologyN/alargeMEDIUM

Merkle Inc. operates as a technology-driven marketing agency specializing in data-driven customer experience management and digital marketing solutions. The website analyzed is a restricted access page that blocks EU traffic to comply with GDPR regulations, reflecting a strong commitment to privacy compliance. The company is well-established, with a domain age dating back to 2003, indicating a mature market presence and stable business operations. The key services focus on marketing technology and data-driven solutions targeting business clients. Technically, the website uses a simple HTML and CSS structure hosted on AWS infrastructure, as indicated by the DNS servers. The page is minimalistic, with no visible scripts or advanced frameworks detected, and basic mobile optimization and accessibility features. Performance is moderate given the simplicity of the page. However, there is room for improvement in SEO and accessibility enhancements. From a security perspective, the domain is registered with a reputable registrar and has clientTransferProhibited status, which helps prevent unauthorized transfers. DNSSEC is not enabled, and no security headers were detected in the provided data, suggesting potential areas for security hardening. The site enforces GDPR compliance by blocking EU visitors, demonstrating awareness of regulatory requirements. No contact information or incident response channels are visible on this page, which could be improved to enhance trust and transparency. Overall, the website presents a moderate risk profile with good legitimacy but limited content and security features on this specific restricted page. Strategic recommendations include enabling DNSSEC, adding security headers, providing clear contact and incident response information, and improving technical SEO and accessibility to enhance user experience and trust.

15
95
20
60
-
60
100
gdprprivacyrestrictedaccessmerkledataprotection
HTML5CSS3AWS DNS
2025-10-07T22:09:24.673Z
youtu.be favicon

YouTube

youtu.be

77
TechnologyUnited StatesenterpriseLOW

YouTube is a globally recognized online video sharing and social media platform owned by Google LLC. It provides users with the ability to watch, upload, and share videos across a wide range of categories including entertainment, education, and music. As a market leader in video streaming, YouTube operates an advertising-based business model supplemented by premium subscription services. The platform targets a general audience worldwide and maintains a strong brand presence with consistent and professional content delivery. Technically, YouTube employs modern web technologies such as Polymer and Web Components, hosted on Google Cloud Platform, ensuring fast performance and excellent mobile optimization. The website demonstrates good SEO and accessibility practices, contributing to a high-quality user experience. Security measures are robust, including HTTPS enforcement and comprehensive security headers, alongside bot protection mechanisms. From a security and compliance perspective, YouTube maintains comprehensive privacy and cookie policies with GDPR compliance. However, explicit contact information and dedicated security policies or vulnerability disclosure pages are not publicly visible on the homepage. The domain is well-established and consistent with the business history, owned by a reputable parent company. Overall, YouTube exhibits a strong security posture and high business credibility. The overall risk assessment is low, with recommendations focusing on enhancing transparency around incident response and vulnerability disclosure to further strengthen trust and compliance. Continued maintenance of security best practices and regular audits are advised to sustain the platform's security and privacy standards.

90
58
25
85
75
90
100
videostreamingmediasocialentertainment+1 more
JavaScriptPolymerWeb ComponentsHTML5+2

Partner Domains:

google.com
parent
2025-10-07T22:08:09.477Z
gamstop.co.uk favicon

The National Online Self Exclusion Scheme Limited

gamstop.co.uk

70
GovernmentUnited KingdommediumMEDIUM

GAMSTOP operates as a national self-exclusion scheme in Great Britain, providing a free service that enables individuals to restrict their online gambling activities across licensed operators. The organization is identified as The National Online Self Exclusion Scheme Limited, a registered entity in the UK. The website serves as the primary portal for registration, account management, and information dissemination, targeting individuals seeking to control gambling behavior. The service is positioned as a trusted and socially responsible initiative within the gambling regulatory framework. Technically, the website employs modern web technologies including JavaScript, Google Fonts, and Google Analytics for user experience and analytics. The site is mobile-optimized, accessible, and uses HTTPS to secure communications. While no advanced frameworks or CMS were detected, the site demonstrates good technical implementation and SEO practices. Cookie consent mechanisms and privacy policies are clearly presented, supporting GDPR compliance. From a security perspective, the site enforces HTTPS and uses CSRF tokens in scripts, but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the provided content. The WHOIS query on the subdomain 'www.gamstop.co.uk' failed due to domain naming rules, but this does not impact the legitimacy of the main domain 'gamstop.co.uk', which is well-established. Overall, GAMSTOP's website presents a secure, professional, and trustworthy platform for its critical social service. Strategic improvements include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and compliance.

60
83
2
80
77
75
100
gamblingself-exclusiongamstoponlinegamblingcontrolukgambling
JavaScriptGoogle FontsGoogle AnalyticsHTML5+1

Partner Domains:

about.gamstop.co.uk
partner
info.gamstop.co.uk
partner
2025-10-07T21:03:54.771Z
U

univ-grenoble-alpes.fr

univ-grenoble-alpes.fr

29
OtherN/asmallHIGH

The analyzed content corresponds to a Chrome internal error page (chrome-error://chromewebdata/) which is displayed when the browser cannot load external website content. This page includes embedded JavaScript and CSS for the Chrome offline dinosaur game but contains no actual business or website content. Consequently, no privacy, cookie, or terms of service policies are present, nor is there any contact or business information. The page is purely technical and serves as an offline error indicator within the Chrome browser environment. From a technical perspective, the page uses standard HTML5, CSS3, and JavaScript technologies, specifically Chromium's internal scripts for the offline game. It is optimized for mobile and accessibility but lacks SEO metadata or external links. Security headers and SSL configurations are not applicable as this is not a publicly hosted website. The security posture is minimal due to the nature of the page; no sensitive data or vulnerabilities are present, but also no security policies or incident response information are available. The WHOIS data is not applicable since the domain is internal to the Chrome browser and not registered externally. Overall, this page cannot be considered a legitimate website but rather a browser error page. Therefore, the risk assessment is low for external threats but also indicates no business credibility or privacy compliance. For accurate website analysis, a valid accessible website URL is required.

-
25
-
60
-
25
100
chrome-errorofflineerror-pagechrome-dino-game
JavaScriptHTML5CSS3Canvas API
2025-10-07T21:02:23.048Z
webauthn.me favicon

Auth0 Inc.

webauthn.me

67
TechnologyN/asmallMEDIUM

The website webauthn.me is a technical demonstration and educational platform focused on Web Authentication (WebAuthn) standards, enabling users to register credentials and authenticate using biometrics and hardware authenticators. It is operated by Auth0 Inc., a reputable identity management company founded in 2013 and now a subsidiary of Okta, Inc. The site targets developers and security professionals interested in modern authentication technologies and provides interactive tutorials, debugging tools, and informational content. The business model centers on promoting Auth0's identity platform through educational resources and demos. From a technical perspective, the website employs modern web technologies including HTML5, CSS3, JavaScript, Google Fonts, and integrates third-party services such as OneTrust for cookie consent and Google Tag Manager for analytics. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO. Hosting appears to be managed by Auth0 or associated CDN providers, ensuring fast and reliable delivery. Security posture is strong with HTTPS enforced, no exposed sensitive data, and secure input forms. However, explicit security headers are not detected, and no dedicated security or incident response policies are published on the site. Cookie consent mechanisms are implemented in compliance with GDPR. No vulnerabilities or suspicious content were identified. Overall, the website is trustworthy, professionally maintained, and serves as a valuable resource for WebAuthn technology. Strategic recommendations include enhancing security headers, publishing a security policy and incident response contacts, and adding a vulnerability disclosure program to further strengthen security and trust.

70
68
2
60
72
75
100
webauthnwebauthenticationsecuritybiometricsauth0+3 more
HTML5CSS3JavaScriptGoogle Fonts (Roboto Mono)+2

Partner Domains:

auth0.com
parent
okta.com
parent
2025-10-07T21:01:37.936Z
lwc.dev favicon

Salesforce.com, Inc.

lwc.dev

62
TechnologyUnited StatesenterpriseMEDIUM

Lightning Web Components (LWC) is an open source web components framework developed and maintained by Salesforce.com, Inc., a leading enterprise cloud software company. The website serves as the official documentation and resource hub for developers to learn and implement LWC technology. It targets web developers and enterprise software engineers seeking a performant, standards-based framework for building web applications. The site is professionally designed with clear navigation, mobile optimization, and comprehensive content, reflecting Salesforce's strong market position and commitment to developer enablement. Technically, the site leverages modern web technologies including HTML5, CSS3, ES6+ JavaScript, and Web Components standards. It integrates third-party services such as Google Analytics, Google Tag Manager, Algolia DocSearch for search functionality, and OneTrust for cookie consent management, demonstrating a mature digital infrastructure. Hosting appears to be managed by Salesforce, ensuring reliability and performance. Accessibility and SEO best practices are well implemented. From a security perspective, the site enforces HTTPS, employs cookie consent mechanisms, and avoids exposing sensitive data. However, explicit security policies and incident response contacts are not published, representing an area for improvement. No vulnerabilities or suspicious activities were detected. Privacy compliance is strong, with a comprehensive privacy policy linked to Salesforce's main privacy statement and a robust cookie consent manager. Overall, the website is a trustworthy, high-quality resource aligned with Salesforce's enterprise reputation. It effectively supports its developer audience with clear, relevant content and a secure, performant platform. Strategic recommendations include publishing dedicated security and incident response policies, adding vulnerability disclosure information, and enhancing contact information availability to further strengthen trust and compliance.

15
83
2
70
62
75
100
webcomponentsjavascriptlightningwebcomponentssalesforceopensource+1 more
HTML5CSS3JavaScript ES6+Web Components+4
2025-10-07T20:57:49.898Z
A

AddToAny

addtoany.com

68
TechnologyN/amediumMEDIUM

AddToAny is a technology company specializing in providing universal share buttons and social sharing solutions for websites and applications. Their platform supports a wide range of social media services and integrates with popular content management systems such as WordPress, Drupal, and Joomla. The company also offers browser extensions for Chrome and Firefox, as well as bookmarklets for iOS devices. AddToAny positions itself as a user-friendly, no-account-needed sharing platform with strong customization options and Google Analytics integration. Technically, the website is well-structured with modern HTML5, CSS3, and JavaScript modules. It uses scalable vector graphics for icons, ensuring high-quality visuals on all devices. The site is mobile-optimized and provides a fast, responsive user experience. However, some security best practices such as explicit security headers and a visible cookie consent mechanism are not evident. The WHOIS data for the domain is missing, which raises some concerns about domain registration transparency. From a security perspective, the site uses HTTPS and does not expose sensitive data in its HTML content. There is no visible vulnerability disclosure or incident response contact information, which could be improved. Privacy compliance is supported by a comprehensive privacy policy and terms of service, but cookie consent mechanisms are lacking. Overall, the security posture is moderate but could benefit from enhancements in headers and transparency. The overall risk assessment is moderate with a good technical foundation and strong business credibility based on content and integrations. The missing WHOIS data and lack of explicit contact information are notable gaps. Strategic recommendations include improving security headers, adding vulnerability disclosure information, and enhancing privacy compliance with cookie consent. These steps will strengthen trust and security culture while supporting long-term business growth.

40
53
17
85
75
90
100
sharingsocialbuttonsuniversaltechnology+2 more
HTML5CSS3JavaScript ES6 modulesSVG icons+1
2025-10-07T19:52:51.949Z