Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 109 of 579|Showing 5401-5450 of 28911
aliveplatform.com favicon

Alive Platform

aliveplatform.com

0
TechnologyN/amediumMEDIUM

Alive Platform is a technology company offering a suite of integrated business applications focused on card management, insurance, marketing, and portal services. The platform targets organizations requiring specialized management tools and provides access to multiple applications via a centralized portal. The company appears to have been established around 2010, indicating a mature presence in its niche market. Technically, the website is built with standard HTML and CSS, utilizing Google Fonts for typography. Hosting is likely on Amazon AWS infrastructure, inferred from DNS nameservers. The site is functional but basic, with minimal content on the landing page primarily serving as a navigation hub to subdomains hosting individual applications. Mobile optimization and accessibility are basic, and no advanced frameworks or CMS are detected. From a security perspective, the site uses HTTPS and has a domain status of OK, but lacks DNSSEC and security headers, which are recommended for enhanced protection. No privacy or cookie policies are published, and no contact or incident response information is provided, which limits transparency and compliance with privacy regulations. No analytics or advertising scripts are detected, indicating minimal user tracking. Overall, the website is moderately trustworthy and functional but would benefit from improved privacy compliance, security hardening, and richer content to enhance user trust and regulatory adherence.

90
35
17
85
77
85
100
businessplatformcardmanagementinsuranceportal+1 more
HTML5CSS3Google Fonts (Roboto)
2025-10-13T19:01:18.172Z
reveal.sport favicon

EQS Group GmbH

reveal.sport

0
GovernmentN/amediumMEDIUM

The website ita.whistleblowernetwork.net serves as a secure and anonymous whistleblower platform named REVEAL, focused on supporting investigations into anti-doping rule violations and criminal behavior in sports. It is branded and operated under EQS Group GmbH, a recognized compliance service provider. The platform targets individuals who wish to report sensitive information confidentially to help maintain integrity in sports. Technically, the site is built using Angular framework with Material Design components, delivering a modern and responsive user experience. However, SEO and accessibility features are basic, and no advanced analytics or tracking scripts are detected. Security posture is moderate with HTTPS implied but no explicit security headers visible in the HTML content. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or terms of service found. Contact information and incident response details are not provided on the main page, which could be improved for transparency and trust. Overall, the domain is a subdomain with no direct WHOIS registration data, which is typical and not suspicious given the parent domain and branding alignment. The website is safe, professional, and serves a niche compliance function with moderate trustworthiness.

90
53
2
65
77
55
100
whistlebloweranti-dopingsecurereportinganonymoussportsintegrity+1 more
Angular 19.2.14Material Design ComponentsJavaScriptCSS
2025-10-13T19:00:53.124Z
D

ISMF Intranet

dataskimo.org

0
OtherN/asmallMEDIUM

The website dataskimo.org serves as an informational portal for the International Ski Mountaineering Federation (ISMF), providing competition results, rankings, event calendars, and championship details primarily targeting athletes, coaches, officials, and fans within the ski mountaineering community. The site is relatively new, with the domain registered in October 2023, aligning with the fresh content and niche sports focus. The business model centers on disseminating sports competition data rather than commercial transactions. From a technical perspective, the website employs basic HTML and CSS without advanced frameworks or CMS platforms. Hosting is provided by OVH sas, a reputable provider, but the site lacks modern optimizations such as mobile responsiveness and accessibility features. No analytics or tracking technologies are detected, indicating minimal user data collection. Security posture is limited; no HTTPS enforcement or security headers are evident, and no privacy or cookie policies are present, which may expose the site to trust and compliance issues. The absence of contact information and incident response channels further reduces the site's security maturity. However, no signs of malicious activity or vulnerabilities are detected. Overall, the site is functional for its informational purpose but requires significant improvements in security, privacy compliance, and technical modernization to enhance trustworthiness and user experience.

20
50
17
40
65
75
100
sportsskimountaineeringcompetitionresultsrankingscalendar+1 more
HTMLCSS
2025-10-13T19:00:43.108Z
I

International Federation of Library Associations and Institutions

ifla.org

0
Non-profitN/amediumMEDIUM

The International Federation of Library Associations and Institutions (IFLA) operates as a globally recognized non-profit organization dedicated to supporting libraries and information professionals worldwide. Their website serves as a comprehensive platform for advocacy, professional development, events, and resources, positioning IFLA as a leading voice in the library sector. The organization targets library associations, institutions, and professionals, offering membership benefits and fostering global collaboration. Technically, the website is built on WordPress and leverages modern web technologies including jQuery, Slick Carousel, Google Tag Manager, and Hotjar for analytics and user experience enhancement. Hosting and CDN services appear to be provided by Cloudflare, ensuring reliable performance and security. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and employs best practices such as asynchronous loading of analytics scripts. However, there is room for improvement in implementing comprehensive security headers and publishing explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected, indicating a solid security posture. Overall, the website is professional, trustworthy, and safe for general audiences. The lack of WHOIS data due to privacy protection is typical for organizations of this nature and does not detract from the site's legitimacy. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and improving transparency around incident response.

35
35
2
78
75
80
100
librarynon-profitadvocacyprofessionaldevelopmentculture+2 more
jQuerySlick CarouselGoogle Tag ManagerHotjar+1

Partner Domains:

2026.ifla.org
partner
repository.ifla.org
partner

+3 more partners

2025-10-13T18:59:18.663Z
eurogas.org favicon

Eurogas

eurogas.org

0
EnergyN/amediumMEDIUM

Eurogas is a European industry association representing the gas wholesale, retail, and distribution sectors. The organization focuses on promoting gas as a sustainable energy source and advocates for its members' interests within the European energy market. The website reflects a professional and consistent brand presence, targeting industry stakeholders and policymakers. The business model centers on policy advocacy, market analysis, and industry representation. The site content is relevant and well-structured, supporting the organization's mission and services. Technically, the website is built on WordPress using the Divi theme, enhanced with plugins such as Gravity Forms and Cookiebot for consent management. It integrates Google Analytics for traffic analysis and employs modern web technologies including jQuery and slick carousel. The site demonstrates good mobile optimization and SEO practices, although accessibility features are basic. Performance is moderate, with room for improvement in loading speed and accessibility. From a security perspective, the site enforces HTTPS with excellent SSL configuration and implements a comprehensive cookie consent mechanism via Cookiebot. However, it lacks explicit HTTP security headers and does not publish security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The WHOIS data is privacy protected, which is typical for such organizations and does not raise immediate concerns. Overall, Eurogas's website presents a trustworthy and professional digital presence with solid privacy compliance and security posture. Strategic recommendations include enhancing security headers, publishing security and incident response policies, improving accessibility, and maintaining regular audits of third-party scripts to sustain security and compliance standards.

80
83
17
70
85
80
100
energyindustryassociationgaseuropepolicy+4 more
WordPressDivi ThemeGravity FormsCookiebot+4
2025-10-13T18:54:37.982Z
F

fastmui.com

fastmui.com

0
OtherN/asmallMEDIUM

The website at fastmui.com/lander is a newly registered domain with minimal accessible content, primarily serving as a placeholder or landing page. It uses modern web technologies such as React and JavaScript but lacks substantive business information, privacy policies, or contact details. The presence of Google Adsense scripts indicates an intent to monetize via advertising. The domain is registered with GoDaddy.com, LLC, with standard domain status protections but no DNSSEC enabled. Overall, the site appears to be in early development or a parked state without active business operations visible. From a technical perspective, the site uses a modern JavaScript framework and defers loading of assets, which is positive. However, the lack of SEO, accessibility features, and security headers limits its digital maturity. The SSL configuration is basic, and no advanced security practices are evident. Privacy compliance is absent, with no cookie or privacy policies detected. Security posture is minimal but not alarming; no WAF or blocking mechanisms are detected, and no vulnerabilities or exposed sensitive data are visible. The domain registration is consistent and legitimate, though very new, which may warrant caution for trust until more business information is available. Overall risk is moderate due to lack of content and transparency. Strategic recommendations include adding comprehensive privacy and cookie policies, improving security headers and SSL configuration, and providing clear business and contact information to enhance trust and compliance.

25
50
2
65
77
85
100
landingpageplaceholderreactadsenseminimalcontent
JavaScript
2025-10-13T17:51:48.010Z
mirasvit.com favicon

Mirasvit

mirasvit.com

0
TechnologyN/amediumMEDIUM

Mirasvit is a well-established technology company specializing in developing Magento extensions and Shopify apps to enhance e-commerce store functionality. Founded in 2009, the company has built a strong market position with over 50,000 stores trusting their products. Their offerings include both free and paid modules, professional installation services, and a partnership program, targeting Magento store owners and e-commerce businesses globally. The website reflects a professional and consistent brand image with excellent content quality and user experience. Technically, the website is built on Magento with the modern Hyvä theme, leveraging Cloudflare for DNS and integrating multiple analytics and marketing tools such as Google Tag Manager, Mixpanel, Microsoft Clarity, and Facebook Pixel. The site is mobile-optimized, fast-loading, and accessible, demonstrating a mature digital infrastructure. Security best practices are observed with HTTPS enforcement, secure cookies, and anti-CSRF tokens, although some security headers could be explicitly implemented and DNSSEC enabled for enhanced protection. From a security perspective, the site shows a solid posture with no visible vulnerabilities or exposed sensitive data. However, there is no publicly available security policy or incident response contact, which could be improved to enhance transparency and readiness. Privacy compliance is good, with clear privacy and cookie policies and consent mechanisms in place, aligning with GDPR requirements. Overall, Mirasvit presents a low-risk profile with a trustworthy domain registration history, consistent business information, and no signs of malicious activity. Strategic recommendations include enabling DNSSEC, publishing a security policy, and adding a security.txt file to facilitate vulnerability disclosures. These steps would further strengthen their security posture and customer trust.

65
68
17
70
75
80
100
magentoe-commerceextensionssoftwaretechnology
MagentoHyvä ThemeCloudflare DNSGoogle Tag Manager+4
2025-10-13T17:49:42.494Z
earlywarningsforall.org favicon

World Meteorological Organization

earlywarningsforall.org

0
GovernmentN/alargeMEDIUM

The Early Warnings for All website represents a global initiative led by the World Meteorological Organization and partners to enhance multi-hazard early warning systems worldwide. The initiative focuses on disaster risk knowledge, hazard monitoring, communication, and preparedness to reduce the impact of climate-related hazards by 2027. The website serves as an informational and resource hub targeting governments, disaster management agencies, and the public. Technically, the site is built on Drupal 10, leveraging modern analytics and tracking tools such as Google Tag Manager, Hotjar, and Microsoft Clarity. The site is mobile-optimized, accessible, and well-structured with good SEO practices. Hosting and DNS are managed through reputable providers, ensuring stable and secure infrastructure. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks some security headers and a public security policy or incident response information. Privacy compliance is partial, with no visible cookie consent mechanism despite the use of tracking scripts, which may pose regulatory risks. Overall, the website is professional, trustworthy, and aligned with its mission. Strategic improvements in privacy compliance and security transparency would enhance its security posture and user trust.

55
53
10
60
85
75
100
climateweatherwaterearlywarningsystemsdisasterriskreduction+1 more
Drupal 10Google Tag ManagerMicrosoft ClarityHotjar+2

Partner Domains:

wmo.int
partner
undrr.org
partner

+2 more partners

2025-10-13T17:47:42.267Z
flagsapi.com favicon

FlagsAPI - Country Flags API

flagsapi.com

0
TechnologyN/asmallMEDIUM

FlagsAPI is a small technology service providing an API for country flag images in flat and shiny themes with multiple size options. The website is designed primarily for developers and web designers who need easy access to country flag images for integration into their projects. The business model is straightforward, offering a niche API service with a clear focus on flag image delivery. The domain is relatively new, registered in late 2021, which aligns with the business's apparent startup phase. Technically, the website uses standard web technologies including HTML5, CSS, JavaScript, and jQuery, with Google Fonts for typography. Hosting and DNS are managed via Cloudflare, providing some level of performance and security benefits, although DNSSEC is not enabled. The site is mobile-optimized and has a clear navigation structure, but lacks advanced frameworks or CMS platforms. Performance is moderate, and accessibility features are basic. From a security perspective, the site lacks important security headers and does not provide privacy or cookie policies, which are critical for GDPR compliance and user trust. No contact or incident response information is available, limiting transparency and responsiveness to security issues. The WHOIS data shows a legitimate domain registration with no privacy protection, consistent with the business profile. Overall, the security posture is basic and could be improved significantly. The overall risk is moderate given the lack of privacy and security policies, but no critical vulnerabilities or malicious indicators were found. Strategic improvements in security headers, policy disclosures, and contact transparency would enhance trust and compliance.

15
35
17
60
75
75
100
HTML5CSSJavaScriptjQuery+1
2025-10-13T17:47:07.097Z
D

D-EDGE

d-edgeconnect.media

0
HospitalityN/alargeHIGH

D-EDGE is a technology and marketing company focused on providing solutions to the hospitality industry, specifically targeting hoteliers. Their offerings include central reservation systems, booking engines, channel management, big data analytics, hotel website design, and digital marketing services. The company serves a large client base of approximately 17,000 hoteliers, positioning itself as an established player in the hotel technology market. The website content is minimal but clearly communicates the business purpose and directs users to the main corporate site for more information. Technically, the website employs Microsoft Application Insights for telemetry and monitoring, indicating some level of digital maturity in tracking performance and usage. The site is mobile responsive with basic design quality and SEO optimization. However, there is a lack of advanced security headers and no visible cookie consent mechanisms, which suggests room for improvement in security and privacy compliance. From a security perspective, the site is accessible without WAF or blocking mechanisms detected. The absence of WHOIS data due to unsupported TLD or privacy protection limits transparency but does not inherently indicate malicious intent. No contact information or security policies are provided, which could hinder incident response and user trust. Overall, the security posture is moderate but could be enhanced by implementing standard security headers, visible privacy controls, and contact channels for security incidents. The overall risk assessment indicates a legitimate business with a moderate security and privacy posture. Strategic recommendations include improving transparency by publishing contact and security policies, enhancing security headers and SSL configurations, and implementing cookie consent mechanisms to align with GDPR and other privacy regulations.

25
58
2
70
-
60
100
hoteltechnologyhotelmarketingcentralreservationsystembookingenginechannelmanager+2 more
Microsoft Application InsightsJavaScript
2025-10-13T16:39:57.758Z
R

Revobits

revobits.com

0
OtherN/asmallMEDIUM

Revobits.com is a minimally developed website with very limited content, primarily consisting of a single email contact link and Google Tag Manager integration. The domain is well-established, having been registered since 2009 with Cloudflare, Inc. as the registrar, indicating a legitimate registration history. However, the lack of substantive content, absence of privacy or cookie policies, and no visible business or branding information limit the website's credibility and user trust. Technically, the site uses HTTPS and is hosted behind Cloudflare, but it lacks DNSSEC and important security headers, which are recommended to enhance security posture. The use of Google Tag Manager suggests some level of analytics tracking, but no explicit privacy compliance mechanisms are present. The website does not employ any CMS or frameworks and shows poor mobile optimization and accessibility. From a security perspective, the site has a basic SSL configuration but misses critical security headers and DNS security enhancements. No incident response or security policy information is provided, and no vulnerability disclosure or security.txt files are found. The overall security posture is moderate but could be significantly improved with standard best practices. Overall, the website presents a low-risk profile due to minimal content and no suspicious elements but suffers from poor content quality, lack of transparency, and weak privacy compliance. Strategic recommendations include enhancing website content, implementing privacy and cookie policies, improving security headers and DNS security, and providing clear business and contact information to build trust and compliance.

15
35
2
70
75
80
100
minimalplaceholderanalyticsemailcontact
Google Tag Manager
2025-10-13T15:32:57.387Z
ifsc-climbing.org favicon

International Federation of Sport Climbing

ifsc-climbing.org

0
OtherN/amediumMEDIUM

The International Federation of Sport Climbing (IFSC) operates the official website for the global sport climbing community, providing comprehensive information on events, athlete rankings, multimedia content, and organizational details. The website targets athletes, fans, and stakeholders in the sport climbing ecosystem and positions itself as the authoritative source for climbing-related competitive information worldwide. The site demonstrates a professional and consistent brand presence with a modern, mobile-optimized design and clear navigation. Technically, the website leverages modern frameworks such as Next.js and React, with performance monitoring tools like Boomerang and analytics via Google Tag Manager. The infrastructure supports responsive design and multimedia content delivery, indicating a mature digital presence. However, some technical improvements are recommended, including the addition of explicit security headers and enhanced privacy compliance features. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data or vulnerable libraries. Nonetheless, the absence of visible security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement in security transparency and governance. The lack of WHOIS data limits domain trust verification, although the website content and social media presence support its legitimacy. Overall, the IFSC website is a well-designed, content-rich platform serving its community effectively but would benefit from enhanced privacy and security disclosures to strengthen trust and compliance.

30
73
17
70
95
80
100
sportsclimbingfederationeventsmultimedia+2 more
Next.jsReactWebpackGoogle Tag Manager+1
2025-10-13T15:31:52.240Z
theuiaa.org favicon

UIAA

theuiaa.org

0
Non-profitN/amediumHIGH

The UIAA website represents the International Climbing and Mountaineering Federation, a globally recognized non-profit organization dedicated to promoting safety, sustainability, and community in mountain sports. The site offers comprehensive resources including safety standards, training, event calendars, and member directories, positioning UIAA as a central authority in the mountaineering sector. The website is well-designed, mobile-optimized, and rich in relevant content, targeting climbers, mountaineers, and affiliated organizations worldwide. Technically, the site is built on WordPress with modern plugins and libraries such as WPBakery Page Builder, Ultimate VC Addons, and Google Analytics integration. It demonstrates good SEO practices, mobile responsiveness, and moderate performance. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers and incident response policies could be enhanced. No blocking or WAF challenges were detected, allowing full content access. WHOIS data is privacy protected, which is typical for non-profit organizations, and does not detract from the site's legitimacy given the professional presentation and consistent branding. The site maintains GDPR compliance with clear privacy and cookie policies. Overall, the UIAA website is a trustworthy, professional platform serving its community effectively, with recommendations to strengthen security headers and publish vulnerability disclosure information to further enhance trust and compliance.

15
80
2
70
65
80
-
mountaineeringclimbingsafetysustainabilitynon-profit+3 more
WordPressWPBakery Page BuilderUltimate VC AddonsGoogle Analytics+3

Partner Domains:

skyrunning.com
partner
iceclimbing.sport
partner
2025-10-13T15:31:47.230Z
xero.com favicon

Xero Limited

xero.com

0
FinanceN/alargeMEDIUM

Xero Limited operates a leading cloud-based accounting software platform tailored for small businesses, sole traders, accountants, and bookkeepers. The company offers a SaaS subscription model with key services including invoicing, payroll, expense management, and app integrations, enhanced by AI capabilities such as the JAX financial assistant. The website reflects a strong market position with over 4.4 million subscribers and multiple industry awards, emphasizing ease of use and connectivity with financial institutions and business apps. Technically, the site employs modern frameworks like Next.js and React, integrates performance and error monitoring via New Relic, and uses Stripe for payment processing. The site is well-optimized for mobile and SEO, providing a professional user experience. Security posture is strong with HTTPS enforcement and standard security headers, though explicit public security policies and incident response contacts are not prominently available. WHOIS data is unavailable likely due to registry restrictions, but the brand's global recognition and trust signals mitigate concerns. Overall, Xero's digital presence is mature, secure, and business-focused, supporting its leadership in the cloud accounting market.

15
68
2
82
62
85
100
accountingsmallbusinessfinancesaascloudsoftware+2 more
ReactNext.jsNew Relic monitoringStripe payments+1

Partner Domains:

apps.xero.com
partner
developer.xero.com
partner
2025-10-13T15:27:51.195Z