Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 1 of 2|Showing 1-50 of 50
synthesia.io favicon

Synthesia

synthesia.io

73
TechnologyN/alargeMEDIUM

Synthesia is a leading AI video generation platform founded in 2017, offering businesses a powerful SaaS solution to create professional-quality videos with AI avatars, voiceovers in over 160 languages, and customizable templates. Positioned as the #1 rated AI video platform for business, Synthesia targets enterprises seeking to streamline video production for training, marketing, and communication. The platform supports team collaboration, brand customization, and multilingual video capabilities, making it a comprehensive tool for modern digital content creation. Technically, the website leverages modern web technologies including Webflow CMS, Google Tag Manager, HubSpot, Optimizely, and dash.js for streaming video playback. The site is well-optimized for performance, mobile responsiveness, and accessibility, with strong SEO practices and a professional design. Analytics and marketing tools are integrated thoughtfully, balancing user tracking with privacy compliance. From a security perspective, Synthesia demonstrates a mature posture with HTTPS enforcement, SOC 2 Type II and ISO 42001 certifications, GDPR compliance, and a dedicated security policy site. The presence of cookie consent mechanisms and ethical AI usage policies further reinforce their commitment to responsible data handling. No critical vulnerabilities or suspicious indicators were found in the analysis. Overall, Synthesia presents a trustworthy, professional, and technically sound platform with strong business credibility and security practices. The lack of publicly available WHOIS data is consistent with privacy protection norms for technology companies and does not detract from the legitimacy of the business. Strategic recommendations include publishing a vulnerability disclosure policy and incident response contacts to enhance transparency and trust.

40
80
57
82
54
80
100
aivideogeneratoraiavatarsbusinessvideoplatformmultilingualvideosaas+5 more
Webflow CMSGoogle Tag ManagerHubSpotOptimizely+5
2026-03-24T17:00:14.469Z
hunkemoller.be favicon

Hunkemöller

hunkemoller.be

10
RetailBelgiumlargeCRITICAL

Hunkemöller is a prominent European lingerie and swimwear retailer with a strong online presence in Belgium and other European markets. The website offers a comprehensive e-commerce platform featuring a wide range of lingerie, swimwear, and nightwear products targeted at a mature audience. The brand is well-established with consistent branding and a professional digital storefront. Technically, the site leverages a modern tech stack including Salesforce Commerce Cloud (Demandware), various analytics and marketing tools such as Google Analytics, Facebook Pixel, Hotjar, and Bloomreach, and is hosted on Microsoft Azure infrastructure. The website is mobile-optimized and implements privacy and cookie consent mechanisms in compliance with GDPR regulations. Security-wise, the site enforces HTTPS, uses security headers, and registers service workers, but lacks publicly available security policies or incident response information. WHOIS data for the domain is restricted, typical for .be domains, which slightly impacts trust but is mitigated by the brand's reputation and professional site quality. Overall, the site demonstrates a mature e-commerce operation with good security and privacy practices but could improve transparency around security policies and incident response.

-
-
-
-
-
-
-
lingeriee-commercefashionretailprivacy+3 more
Google Tag ManagerGoogle AnalyticsFacebook PixelBing Ads+6

Partner Domains:

www.hunkemoller.nl
sister
www.hunkemoller.co.uk
sister
2025-11-01T09:45:29.184Z
companywebcast.com favicon

Euronext Corporate Solutions

companywebcast.com

76
FinanceN/aenterpriseLOW

Euronext Corporate Solutions operates as a comprehensive platform offering corporate services, compliance solutions, and investor relations tools tailored for listed companies and capital market participants. The website positions itself as a trusted partner in governance, regulatory compliance, and market communications, leveraging its affiliation with the reputable Euronext group. The platform provides a broad suite of products including IR.Manager, Shareholder Analysis, ESG advisory, and governance tools, targeting corporate clients seeking to optimize their capital market readiness and compliance frameworks. Technically, the website is built on HubSpot CMS, integrating advanced marketing and analytics tools such as Google Analytics, Microsoft Clarity, and Segment, reflecting a mature digital infrastructure with good performance and mobile optimization. Security posture is strong with HTTPS enforced, use of Google reCAPTCHA Enterprise, and cookie consent mechanisms, although explicit security headers and a public security policy are not evident. The absence of WHOIS data for the subdomain is expected and does not detract from the legitimacy of the site, which aligns with the main euronext.com domain. Overall, the site demonstrates high professionalism, trustworthiness, and compliance with privacy regulations.

55
95
47
83
57
85
100
corporatesolutionscapitalmarketsinvestorrelationscompliancegovernance+3 more
HubSpot CMSGoogle Tag ManagerGoogle AnalyticsBing Ads+4

Partner Domains:

www.ibabs.com
partner
2025-11-01T09:43:23.146Z
applepie.nl favicon

Applepie

applepie.nl

62
TechnologyNetherlandsmediumMEDIUM

Applepie is a well-established full-service digital agency based in the Netherlands, specializing in branding, digital marketing, campaign content, and web development services primarily for small and medium-sized enterprises (SMEs). The company positions itself as a growth partner with over 20 years of experience and a strong client portfolio exceeding 200 organizations. Their service offerings are comprehensive, covering branding and positioning, digital marketing and data analytics, campaign and content creation, and web development technologies. The website reflects a professional and consistent brand image with excellent content quality and user experience. Technically, the website employs modern web technologies including jQuery, Google Tag Manager, Bing Ads, LinkedIn Insight Tag, and Leadinfo for analytics and marketing purposes. The site is built on a proprietary CMS (ApplepieCMS) and demonstrates good mobile optimization and SEO practices. Performance is moderate, with asynchronous loading of scripts to enhance speed. However, explicit security headers are not visibly implemented, though HTTPS is enforced, indicating a good SSL configuration. From a security standpoint, the website follows best practices such as HTTPS enforcement and cookie consent mechanisms compliant with GDPR. Certifications like Google Partner and Meta Certified, along with industry awards, enhance trustworthiness. However, the absence of a published security policy, incident response contacts, or a vulnerability disclosure mechanism suggests room for improvement in security transparency and readiness. Overall, Applepie presents a low-risk profile with a strong business credibility and digital maturity. Strategic recommendations include implementing explicit security headers, publishing a security policy and incident response information, and adding a security.txt file to facilitate vulnerability reporting. These steps would further strengthen their security posture and compliance stance.

95
73
17
65
72
65
20
digitalagencybrandingdigitalmarketingwebdevelopmentsme+1 more
jQuery 3.6.0Google Tag ManagerBing AdsLinkedIn Insight Tag+3

Partner Domains:

www.nextrevolutiongroup.nl
partner
2025-11-01T06:09:33.072Z
sysco.com favicon

Sysco Corporation

sysco.com

67
RetailUnited StatesenterpriseMEDIUM

Sysco Corporation operates as the global leader in foodservice distribution, providing a comprehensive portfolio of food and related products to customers preparing meals away from home, including restaurants, healthcare, education, lodging, and entertainment sectors. The company maintains a strong market position as the largest food-away-from-home distributor, supported by an extensive network of distribution centers and a large workforce. Their business model focuses on B2B wholesale distribution with value-added services such as culinary consulting and supply chain solutions. The website reflects a mature digital presence with modern technologies and integrated marketing and analytics tools, supporting a seamless user experience and effective customer engagement. Security posture is robust with HTTPS, security headers, and cookie consent mechanisms, though explicit security policies and incident response details are not publicly disclosed. The absence of WHOIS data is a notable anomaly but does not detract from the overall legitimacy given the company's established brand and digital footprint. Strategic recommendations include enhancing transparency on security policies, vulnerability disclosures, and data protection officer contacts to further strengthen trust and compliance.

30
88
17
85
52
80
100
foodservicedistributionrestaurantsupplieswholesaleculinarysolutions+1 more
JavaScriptReactNext.jsGoogle Tag Manager+4

Partner Domains:

shop.sysco.com
partner
foodie.sysco.com
partner

+2 more partners

2025-11-01T05:29:06.131Z
polskabezgotowkowa.pl favicon

Fundacja Polska Bezgotówkowa

polskabezgotowkowa.pl

52
FinancePolandmediumMEDIUM

Fundacja Polska Bezgotówkowa is a Polish non-profit foundation dedicated to promoting cashless payments across Poland by providing payment terminals and educational initiatives. The foundation targets Polish businesses and merchants aiming to adopt modern payment technologies. The website reflects a professional and consistent brand image with a clear focus on its mission. Technically, the site is built on a modern Next.js and React stack, integrating multiple marketing and analytics tools such as Google Tag Manager, Facebook Pixel, and Cookiebot for consent management. The site is mobile-optimized and performs moderately well, though accessibility could be improved. Security posture is strong with HTTPS enforced and standard security headers likely in place. However, the absence of explicit privacy policy and terms of service pages, as well as lack of direct contact information, slightly reduce privacy compliance and business credibility scores. Overall, the domain registration data aligns well with the website's claims, indicating legitimacy and transparency. Strategic recommendations include publishing comprehensive privacy and terms pages, enhancing accessibility, and providing clear contact channels for security and general inquiries.

15
88
17
60
52
85
20
financecashlesspaymentsnon-profitpolandpaymentterminals+3 more
Next.jsReactCookiebotGoogle Tag Manager+3

Partner Domains:

inpost.pl
partner
2025-11-01T02:46:05.610Z
icelandair.is favicon

Icelandair ehf.

icelandair.is

66
TransportationIcelandlargeMEDIUM

Icelandair ehf. operates a professional and comprehensive airline website targeting travelers primarily in Iceland, Europe, and North America. The company offers direct flights to over 25 European destinations and more than 20 in the United States and Canada, along with hotel and car rental bookings and package holidays. The website is well-branded, consistent, and provides a rich user experience with clear navigation and booking functionalities. The business is well-established, founded in 1937, and holds a significant market position in the transportation sector in Iceland. Technically, the website leverages modern web technologies including React and Next.js frameworks, and integrates major analytics and marketing tools such as Google Analytics, Google Tag Manager, and Bing Ads. The site is mobile-optimized, accessible, and SEO-friendly, ensuring good performance and user engagement. Security best practices are observed with HTTPS enforcement and appropriate security headers, although no explicit public security policy or incident response page was found. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is good, with clear privacy and cookie policies and consent mechanisms in place, indicating adherence to GDPR requirements. However, the absence of direct contact emails or phone numbers in the HTML and lack of a vulnerability disclosure program are areas for improvement. Overall, the website represents a trustworthy and professional airline business with a mature digital presence. The lack of WHOIS data is likely due to privacy protection, which is justified for a company of this size. Strategic recommendations include publishing a security policy, establishing a vulnerability disclosure channel, and enhancing transparency around data protection officer contacts to further strengthen trust and compliance.

35
53
17
75
82
80
100
airlinetravelbookingflightsiceland+1 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics+1
2025-11-01T02:16:48.880Z
chateauberne-vin.com favicon

Château de Berne

chateauberne-vin.com

62
E-commerceFrancemediumMEDIUM

Château de Berne operates a premium e-commerce platform specializing in the sale of wines from the Côtes de Provence region. The website targets mature wine consumers primarily in France and the European Union, offering a range of rosé, red, and white wines under AOP certification. The business model is focused on direct-to-consumer online sales, supported by loyalty programs and professional partnerships. The company appears to be medium-sized, founded around 2020, and maintains a consistent brand presence with professional design and clear navigation. Technically, the website is built on the Shopify platform, leveraging a modern tech stack including JavaScript, jQuery, and various third-party marketing and analytics tools such as Klaviyo, Smile.io, and Gorgias. The site is mobile-optimized, accessible, and performs moderately well. Security practices include HTTPS enforcement and domain transfer protection, though DNSSEC is not enabled and some security headers could be improved. Privacy compliance is strong with visible cookie consent mechanisms and comprehensive privacy policies. The security posture is solid but could benefit from enhancements such as explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or blocking WAFs were detected. The site uses extensive tracking and marketing pixels, indicating a mature digital marketing strategy but requiring ongoing privacy vigilance. Overall, Château de Berne presents a trustworthy and professional online presence with good business credibility and technical implementation. Strategic improvements in security transparency and DNS security would further strengthen its posture.

75
73
2
70
42
55
100
winee-commercepremiumfrenchwineshopify+2 more
ShopifyJavaScriptjQueryKlarna SDK+7

Partner Domains:

mdcvpro.fr
partner
2025-11-01T00:54:54.643Z
manucurist.com favicon

Manucurist

manucurist.com

70
RetailFrancemediumMEDIUM

Manucurist is a French e-commerce retailer specializing in natural, vegan, and bio-sourced nail polish products. The company positions itself as a responsible and green alternative in the beauty industry, targeting consumers who prioritize ethical and eco-friendly personal care. The website is professionally designed, multilingual, and hosted on the Shopify platform, leveraging modern e-commerce technologies and marketing tools to reach a broad audience. The business model focuses on direct online sales with a strong emphasis on product quality and sustainability. Technically, the website demonstrates a mature digital infrastructure with extensive use of third-party analytics, marketing, and customer engagement tools such as Google Tag Manager, Facebook Pixel, TikTok Pixel, Klaviyo, and Yotpo. The site is optimized for performance, mobile responsiveness, and accessibility, ensuring a positive user experience. Security best practices are observed, including HTTPS enforcement and security headers, although explicit security policies and incident response information are not publicly disclosed. From a security perspective, the site maintains a strong posture with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms aligned with GDPR requirements. However, the lack of WHOIS transparency due to privacy protection limits domain registration insights, though the overall legitimacy of the business is supported by professional presentation and operational maturity. Overall, Manucurist presents a trustworthy and well-managed online retail presence with opportunities to enhance transparency around security policies and incident response. Strategic recommendations include publishing explicit security and vulnerability disclosure policies, improving contact channels for security matters, and continuous monitoring of third-party integrations to mitigate risks.

75
58
22
85
57
80
100
e-commercebeautyvegannaturalproductsfrench+2 more
ShopifyGoogle Tag ManagerFacebook PixelTikTok Pixel+7

Partner Domains:

manucuristfr.superfiliate.com
partner
manucurist-fr.myshopify.com
service

+2 more partners

2025-11-01T00:53:04.688Z
discovercars.com favicon

DiscoverCars.com

discovercars.com

74
TransportationN/alargeMEDIUM

DiscoverCars.com is a global online car rental comparison and booking platform offering users the ability to save up to 70% by comparing deals from over 1000 suppliers across more than 10,000 locations worldwide. The website emphasizes free cancellation and 24/7 multilingual customer support, positioning itself as a trusted intermediary in the transportation sector. The platform targets travelers seeking convenient and cost-effective car rental options globally. Technically, the website employs a modern technology stack including Google Tag Manager, Google Analytics, Bing Ads, reCAPTCHA Enterprise, and CookiePro for consent management. The site is well-optimized for desktop and mobile, with good SEO and accessibility features. Performance is moderate, with a professional and consistent design that enhances user experience. From a security perspective, the site uses HTTPS with strong SSL configuration and implements security best practices such as reCAPTCHA and cookie consent banners. However, explicit security policies, incident response contacts, and vulnerability disclosure programs are not publicly available, representing areas for improvement. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a high level of professionalism and trustworthiness, though the absence of WHOIS data and domain registration details slightly reduces the confidence in domain legitimacy. Strategic recommendations include publishing detailed security policies, establishing incident response contacts, and enhancing transparency around vulnerability disclosures to further strengthen security posture and user trust.

80
88
17
70
77
80
100
carrentaltravelcomparisonbookingtransportation+1 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsBing Ads+2
2025-11-01T00:40:33.389Z
scormium.com favicon

Sense4code s.r.o.

scormium.com

65
EducationCzech RepublicmediumMEDIUM

Scormium is a Czech-based company operating under Sense4code s.r.o., providing a modern, scalable learning management system (LMS) and learning experience platform (LXP) designed for corporate training and customer education. The platform emphasizes personalized, multimedia-rich content delivery, actionable reporting, and seamless integration with enterprise systems. It holds recognized certifications such as ISO 27001, ISO 9001, and GxP validation, underscoring its commitment to security and compliance. The company is part of the OKsystem Group, enhancing its market credibility. Technically, the website is built on Webflow CMS and leverages modern web technologies including Google Tag Manager, Facebook Pixel, Bing Ads, and LinkedIn Insight Tag for analytics and marketing. The site is well-optimized for performance, mobile responsiveness, and accessibility, with a comprehensive cookie consent mechanism ensuring GDPR compliance. Hosting and security are supported by Cloudflare services, including bot management. Security posture is strong with HTTPS enforced, penetration testing mentioned, and adherence to international standards. However, the absence of WHOIS registration data raises concerns about domain legitimacy and ownership transparency. No explicit incident response or vulnerability disclosure information is provided, which could be improved to enhance trust. Overall, Scormium presents as a professional, trustworthy educational technology provider with robust technical and security foundations. Strategic recommendations include improving domain registration transparency, publishing incident response contacts, and enhancing security header implementation to further strengthen its security posture.

60
68
17
75
57
65
100
lmslearningmanagementsystemeducationcorporatetraininge-learning+4 more
Webflow CMSGoogle Tag ManagerFacebook PixelBing Ads+4

Partner Domains:

oksystem.com
parent
2025-11-01T00:36:02.279Z
worldheartobservatory.org favicon

World Heart Federation

worldheartobservatory.org

63
HealthcareN/amediumMEDIUM

The World Heart Federation operates the World Heart Observatory, a global platform dedicated to aggregating and disseminating cardiovascular health data and insights. The organization targets healthcare professionals, policymakers, researchers, and advocates to support global heart health initiatives. The website reflects a non-profit model focused on advocacy and data transparency, positioning itself as a global leader in cardiovascular health information. Technically, the website is built on WordPress with a custom child theme and leverages modern web technologies including Bootstrap, jQuery, and multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, and Hotjar. The site is hosted with Cloudflare DNS and uses HTTPS, ensuring secure communications. Mobile optimization and SEO practices are good, though accessibility is basic. From a security perspective, the site employs HTTPS and domain transfer protection but lacks DNSSEC and advanced security headers, which are recommended for enhanced protection. No privacy policy or terms of service were detected on the analyzed page, which is a compliance gap. The site uses cookie consent mechanisms, indicating some level of GDPR awareness. Overall, the website is professional, trustworthy, and serves its mission well, but could improve privacy compliance and security hardening. Strategic recommendations include enabling DNSSEC, publishing comprehensive privacy and terms policies, and enhancing security headers to strengthen the security posture.

25
65
17
85
57
80
100
healthcarecardiovasculardataglobalhealthnon-profit+2 more
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics+3
2025-10-31T19:16:59.888Z
generali.sk favicon

Generali

generali.sk

56
FinanceSlovakialargeMEDIUM

Generali is a well-established insurance company operating in Slovakia, offering a broad range of life and non-life insurance products including travel, vehicle, and property insurance. The website positions Generali as a strong partner in the Slovak insurance market, targeting local residents seeking insurance solutions. The business model focuses on direct online insurance services with an emphasis on ease of use and accessibility from home. The company enjoys a positive reputation as indicated by a high aggregate rating from customers. Technically, the website is built on WordPress with modern SEO and analytics tools integrated, including Yoast SEO, Google Tag Manager, Microsoft Clarity, and various tracking pixels for marketing and retargeting. The site is mobile optimized and uses HTTPS with strong security headers, reflecting a mature digital infrastructure. However, some accessibility features could be improved. From a security perspective, the site demonstrates good practices such as HTTPS enforcement, security headers, and cookie consent management. There is no evidence of exposed sensitive data or vulnerable libraries. However, the absence of a published security policy, incident response information, or vulnerability disclosure program suggests room for improvement in transparency and security maturity. Overall, the website is professional, trustworthy, and compliant with GDPR, with a strong business credibility score. The risk profile is low, but strategic enhancements in security communication and accessibility would further strengthen the company's digital trustworthiness.

40
88
2
80
82
70
-
insurancelifeinsurancetravelinsurancevehicleinsurancepropertyinsurance+2 more
WordPress 6.8.3Yoast SEO pluginjQueryGoogle Tag Manager+5
2025-10-31T18:54:16.410Z
escardio.org favicon

European Society of Cardiology

escardio.org

60
HealthcareN/alargeMEDIUM

The European Society of Cardiology (ESC) is a leading independent, nonprofit organization dedicated to reducing the burden of cardiovascular disease through education, research, and advocacy. The website serves as a comprehensive platform for cardiology professionals, offering access to guidelines, congresses, eLearning, and community engagement. The ESC maintains a strong market position as a trusted authority in cardiovascular health across Europe and globally. Technically, the website is built on a robust infrastructure using modern web technologies including Bootstrap for responsive design, and integrates multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, and Adobe DTM. The site is hosted with performance and security in mind, leveraging Akamai CDN and enforcing HTTPS with strong security headers. From a security perspective, the ESC website demonstrates good practices including HTTPS enforcement, cookie consent management via OneTrust, and no visible vulnerabilities or exposed sensitive data. However, there is an opportunity to enhance transparency by publishing a dedicated security policy and vulnerability disclosure information. Overall, the ESC website is a professional, secure, and user-friendly platform that effectively supports its mission. Strategic recommendations include improving security transparency, maintaining up-to-date third-party scripts, and enhancing accessibility features to further strengthen trust and compliance.

20
65
17
70
52
70
100
cardiologyhealthcarenon-profitmedicaleducationcardiovasculardisease
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics+6

Partner Domains:

esc365.escardio.org
partner
escelearning.escardio.org
partner
2025-10-31T05:37:16.838Z