Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 126 of 579|Showing 6251-6300 of 28911
scalahosting.com favicon

ScalaHosting

scalahosting.com

0
TechnologyN/alargeMEDIUM

ScalaHosting is a well-established hosting provider offering a broad range of managed and unmanaged cloud hosting services, specialized WordPress hosting, cluster hosting, and business email hosting. The company positions itself as a trusted provider with over 800,000 websites served globally, emphasizing speed, security, and user-friendly management tools such as their proprietary SPanel and SShield security guard. Their market presence is strong in the technology sector, targeting businesses and website owners seeking reliable hosting solutions. Technically, the website demonstrates a mature digital infrastructure with modern technologies including Google Tag Manager, HubSpot, Facebook Pixel, and other marketing and analytics tools. The site is fast, mobile-optimized, and well-structured, providing an excellent user experience. However, some technical improvements could be made in security headers and explicit privacy documentation. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms, but lacks visible security headers and explicit privacy and terms of service pages. No vulnerabilities or suspicious content were detected. The WHOIS data is privacy-protected, which is common for hosting providers, but limits transparency on domain registration details. Overall, ScalaHosting presents a professional and trustworthy online presence with a strong business model and technical foundation. Strategic recommendations include enhancing transparency with privacy and security policies, improving security headers, and publishing incident response and vulnerability disclosure information to further strengthen trust and compliance.

65
68
43
80
75
80
100
hostingcloudhostingmanagedhostingwordpresshostingwebhosting+3 more
Google Tag ManagerjQuery 3.7.1Cookie Consent (68publishers-cookie-consent)HubSpot scripts+6

Partner Domains:

aff.scalahost.com
partner
my.scalahosting.com
service
2025-10-11T19:55:22.049Z
joy.so favicon

Joy

joy.so

0
E-commerceN/asmallMEDIUM

Joy is a specialized SaaS platform offering loyalty programs and rewards tailored for Shopify businesses. It focuses on customer retention and growth by providing flexible reward systems, membership, and referral programs integrated seamlessly with Shopify and other marketing tools. The website demonstrates a strong market position within the e-commerce loyalty niche, targeting Shopify merchants seeking to enhance customer engagement and retention. Technically, the website is built on modern frameworks such as Next.js and React, hosted with Cloudflare DNS, and employs performance and tracking tools like Google Tag Manager and Hotjar. The site is well-optimized for mobile and desktop, with excellent design quality and user experience. However, it lacks some privacy and security best practices such as DNSSEC, security headers, and explicit privacy and cookie policies. From a security perspective, the site uses HTTPS and has domain transfer protections in place, indicating a good baseline security posture. The absence of privacy policies and contact information for security incidents, however, represents compliance and trust gaps. No vulnerabilities or suspicious patterns were detected in the WHOIS data or website content. Overall, Joy presents a professional and trustworthy e-commerce SaaS platform with room for improvement in privacy compliance and security transparency. Strategic enhancements in these areas would strengthen user trust and regulatory adherence.

80
65
17
60
-
70
100
loyaltyshopifyecommercerewardsretention+1 more
ReactNext.jsCloudflare DNSGoogle Tag Manager+1
2025-10-11T19:54:56.929Z
adb.org favicon

Asian Development Bank

adb.org

0
GovernmentN/aenterpriseLOW

The Asian Development Bank (ADB) is a leading multilateral development bank focused on fostering sustainable, inclusive, and resilient growth across Asia and the Pacific. Founded in 1966, it serves 69 members and provides loans, grants, technical assistance, and equity investments to promote social and economic development. The website reflects a mature, enterprise-level organization with a clear mission and extensive service offerings targeting governments, investors, and development partners. Technically, the website is built on Drupal 10 with modern frameworks like Bootstrap and integrates advanced analytics and tracking tools such as Google Tag Manager, Facebook Pixel, and Microsoft Clarity. The site is mobile-optimized, accessible, and SEO-friendly, demonstrating a high level of digital maturity. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, though explicit security headers could be more visible. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable, likely due to privacy protection, which is justified for an international organization of this nature. Overall, the website is professional, trustworthy, and compliant with privacy regulations, making it a reliable source of information and services related to development banking in the Asia-Pacific region.

65
50
55
85
100
80
100
developmentbankasiapacificloansgrantstechnicalassistance+5 more
Drupal 10jQueryBootstrapGoogle Tag Manager+2
2025-10-11T18:48:47.097Z
U

United Nations Development Programme

undp.org

0
GovernmentN/aenterpriseMEDIUM

The United Nations Development Programme (UNDP) website serves as the official digital presence of the UN's lead agency on international development. It provides extensive information about UNDP's mission to eradicate poverty, reduce inequalities, and promote sustainable development across more than 170 countries and territories. The site is well-structured, professionally designed, and targets a broad audience including governments, development partners, and the general public. It offers key services such as policy advice, capacity building, and partnership facilitation, positioning itself as a global leader in development efforts. Technically, the website is built on the Drupal CMS platform and leverages modern web technologies including Google Tag Manager, Google Analytics, Facebook Pixel, and Akamai CDN for performance and analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, ensuring a positive user experience across devices. Performance is moderate, with asynchronous loading of scripts and use of content delivery networks. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes essential security headers such as Content-Security-Policy and Strict-Transport-Security. No exposed sensitive data or vulnerable libraries were detected. Privacy compliance is robust, with clear privacy and cookie policies and GDPR adherence. However, the absence of a public vulnerability disclosure policy and incident response contact details suggests room for improvement. Overall, the website reflects a mature and trustworthy digital asset consistent with the UNDP's global stature. The lack of WHOIS data is likely due to privacy protection and does not detract from the site's legitimacy. Strategic recommendations include enhancing transparency around security incident response, tightening CSP policies, and continuous monitoring of third-party scripts to maintain security posture.

25
35
25
85
-
85
100
undpunitednationsdevelopmentsustainabledevelopmentgoalspovertyeradication+3 more
Drupal CMSGoogle Tag ManagerGoogle AnalyticsLinkedIn Insight Tag+3

Partner Domains:

shop.undp.org
partner
hdr.undp.org
partner

+1 more partners

2025-10-11T18:48:42.089Z
eib.org favicon

European Investment Bank

eib.org

0
FinanceN/aenterpriseMEDIUM

The European Investment Bank (EIB) is a major multilateral financial institution serving as the lending arm of the European Union. It holds a leading market position as the world's largest multilateral lender and a top provider of climate finance. The website clearly communicates its mission, services, and strategic priorities, targeting a broad audience including citizens, businesses, public sector entities, and partners. The business model revolves around providing loans, equity investments, guarantees, advisory services, and managing mandates and partnerships to support sustainable development and innovation across Europe and globally. Technically, the website employs a modern and robust technology stack including Bootstrap, FontAwesome Pro, jQuery, Swiper.js, GSAP, and Piwik PRO analytics with privacy-focused configurations. It is well-optimized for mobile devices, accessibility, and SEO, delivering a fast and professional user experience. The site uses HTTPS exclusively and integrates Google reCAPTCHA v3 to protect forms from abuse. From a security perspective, the site demonstrates strong posture with enforced HTTPS, secure forms, and privacy-compliant analytics. No vulnerabilities or exposed sensitive data were detected. However, explicit security headers like Content-Security-Policy and X-Frame-Options should be verified or enhanced. Incident response contact information is not prominently published, and a security.txt file is absent, which could be improved. Overall, the website is highly trustworthy, professional, and compliant with privacy regulations including GDPR. The lack of WHOIS data is mitigated by the strong branding and external references confirming legitimacy. Strategic recommendations include enhancing security header transparency, publishing incident response contacts, and considering a vulnerability disclosure policy to further strengthen security culture and trust.

95
68
2
70
42
80
100
financeinvestmenteumultilateralclimatefinance+5 more
BootstrapFontAwesome ProjQuery 3.5.1Swiper.js+4

Partner Domains:

www.eif.org
subsidiary
2025-10-11T18:48:37.081Z
F

Further

joinfurther.com

0
FinanceN/asmallMEDIUM

Further operates as a provider of modern EIS fund administration software, targeting venture capital funds and investors interested in startups. The company positions itself as a market leader in fund operations software, offering SaaS solutions to streamline fund management. The website content is professional but basic, focusing on describing the business and its services without extensive detail or visible trust signals such as certifications or client testimonials. Technically, the website employs modern frontend technologies including React, Bootstrap, and jQuery, with resources loaded from reputable CDNs. The site is moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. No CMS or hosting provider information is discernible from the provided data. From a security perspective, the website lacks visible security headers and explicit privacy or security policies. HTTPS status and SSL configuration could not be confirmed from the data, and no contact information for incident response or data protection officers is present. The absence of WHOIS data for the domain is a significant concern, reducing trustworthiness and raising questions about domain legitimacy. Cookie consent is implemented via CookieYes, indicating some level of privacy compliance. Overall, the website presents a functional but minimal online presence with moderate technical maturity and limited security posture. Strategic improvements in transparency, security policies, and contact information would enhance trust and compliance.

85
35
17
90
95
65
100
financetechnologyventurecapitalfundadministrationsaas
ReactBootstrapjQueryFont Awesome
2025-10-11T18:47:31.898Z
sbjs.rocks favicon

Sourcebuster

sbjs.rocks

0
TechnologyN/asmallMEDIUM

Sourcebuster is a small technology-focused project offering a JavaScript library designed to track the sources of website traffic. The website serves primarily developers and marketers seeking to analyze visitor origins and tailor content accordingly. The business model is based on open source software, with code and documentation hosted on GitHub, positioning it as a niche tool in the web analytics space. Technically, the website is built using React and JavaScript, with a moderate performance profile and good mobile optimization. The site structure is clear and content is relevant, though accessibility and SEO optimizations are basic. There is no detected CMS or hosting provider information. The site lacks advanced security headers and privacy compliance features, which limits its security posture. From a security perspective, the site does not present critical vulnerabilities but lacks HTTPS verification and security best practices such as security headers and privacy policies. The absence of contact information and incident response details further reduces its security maturity. WHOIS data is unavailable due to TLD restrictions, which impacts domain trust verification. Overall, the website is functional and professional for its purpose but would benefit from enhanced security measures, privacy compliance, and transparency to improve trust and compliance. Strategic improvements in these areas would strengthen its market position and user confidence.

15
50
2
40
72
75
100
sourcebusterutmanalyticsjavascripttracking
JavaScriptReact
2025-10-11T18:47:11.837Z
S

Sarka Insights Ltd.

justfeedback.com

0
TechnologyN/asmallMEDIUM

JustFeedback is a SaaS company specializing in feedback survey software designed to help businesses collect and analyze customer and employee feedback efficiently. Founded in 2014, it offers micro surveys such as NPS®, eNPS, CSAT, and CES to enable data-driven decisions and improve user experience. The company targets businesses seeking to enhance customer satisfaction and employee engagement through quick, focused surveys and real-time analytics. The website is professionally designed, mobile-optimized, and provides clear navigation and comprehensive content about its services. Technically, the website leverages modern web technologies including React and Next.js, hosted with Cloudflare DNS and integrated with Google Analytics and CookieYes for tracking and compliance. The site demonstrates good performance and SEO practices, with a responsive design and accessibility considerations. Privacy and cookie policies are present and include consent mechanisms, indicating a good level of GDPR compliance. From a security perspective, the site uses HTTPS with proper domain status protections but lacks DNSSEC and explicit security headers. No incident response or security policy pages were found, which could be improved. The domain registration is consistent and appropriate for the business age and type, with no suspicious patterns detected. Overall, the security posture is solid but could benefit from additional hardening and transparency. The overall risk assessment is low, with the site appearing trustworthy and professional. Strategic recommendations include enabling DNSSEC, publishing security policies, and adding security headers to enhance protection and trust. The company should also consider providing direct contact information for security incidents to improve incident response readiness.

20
80
17
75
67
80
40
feedbacksurveynpscsatenps+5 more
ReactNext.jsCloudflare DNSGoogle Tag Manager+2
2025-10-11T17:41:04.226Z
qodeinteractive.com favicon

Qode Interactive

qodeinteractive.com

0
TechnologyN/amediumMEDIUM

Qode Interactive is a well-established company specializing in premium WordPress themes and plugins, founded in 2011. Their website presents a professional portfolio of products targeting WordPress users, designers, and agencies seeking high-quality themes with extensive customization options. The company maintains a consistent brand presence across multiple social media platforms and uses modern web technologies including WordPress, WPBakery Page Builder, and Slider Revolution. The technical infrastructure is solid, leveraging HTTPS and Cloudflare DNS, with integration of Google Tag Manager and Facebook SDK for analytics and marketing. From a security perspective, the website enforces HTTPS and implements a cookie consent mechanism compliant with GDPR requirements. However, it lacks explicit privacy policies, terms of service, security policies, and incident response contacts, which are important for comprehensive compliance and trust. No security headers were detected, and DNSSEC is not enabled, representing areas for improvement. No vulnerabilities or suspicious patterns were found in the WHOIS data, which aligns well with the company's legitimacy and domain age. Overall, the website demonstrates good content quality, technical implementation, and business credibility, but could enhance its privacy compliance and security posture by publishing relevant policies and improving security headers. The risk level is moderate with no critical issues detected, making it a trustworthy site for its target audience.

30
95
2
55
75
80
100
wordpressthemespluginsdesigntechnology+1 more
WordPress 6.8.3PHPjQuery 3.7.1Google Tag Manager+5
2025-10-11T17:40:09.093Z
themeshaper.com favicon

ThemeShaper

themeshaper.com

0
TechnologyN/asmallMEDIUM

ThemeShaper is a specialized blog and resource platform focused on WordPress theme development, particularly emphasizing block themes and full site editing. It operates under the umbrella of Automattic, leveraging WordPress.com infrastructure and Jetpack services. The site targets WordPress developers and users interested in theme customization and development, providing tutorials, resources, and community engagement. The business model centers on content publishing and community support within the WordPress ecosystem. Technically, the website is built on WordPress with modern Gutenberg blocks and Jetpack integration, hosted on WordPress.com. It employs standard web technologies including JavaScript, CSS, and PHP, and uses external services such as Google Fonts and Typekit for typography. The site demonstrates good performance, mobile optimization, and accessibility features, reflecting a mature digital infrastructure. From a security perspective, the site benefits from WordPress.com's robust hosting environment, including HTTPS enforcement and likely standard security headers. However, it lacks explicit published privacy, cookie, security, or incident response policies, which are areas for improvement. No vulnerabilities or suspicious activities were detected in the content or scripts. The domain is long-established since 2007, registered with a reputable registrar, and consistent with the business history and affiliation with Automattic. Overall, ThemeShaper presents a trustworthy, professional, and content-rich platform with a strong technical foundation. To enhance its security posture and compliance, it should publish clear privacy and cookie policies, implement consent mechanisms, and provide explicit security and incident response information.

45
35
17
65
52
85
100
wordpressthemesdevelopmentblockthemesfullsiteediting+1 more
WordPressGutenberg BlocksJetpackPHP+3
2025-10-11T17:38:58.909Z
blablacar.com favicon

BlaBlaCar

blablacar.com

0
TransportationN/alargeMEDIUM

BlaBlaCar operates as a leading community-based travel network specializing in bus and carpool rides across multiple countries. The website serves as a multilingual gateway directing users to localized versions, reflecting a broad international market presence. The business model focuses on connecting travelers for shared rides, offering cost-effective transportation options. The company was founded in 2010, consistent with the domain registration date, and is positioned as a major player in the transportation sector. Technically, the website employs modern web technologies, including React-based front-end components and Google Cloud DNS for domain resolution. Content delivery is supported by a dedicated CDN, ensuring moderate performance and basic mobile optimization. However, the landing page content is minimal, primarily serving as a language selector, which limits the depth of technical and content analysis. From a security perspective, the site lacks visible security headers and explicit privacy or cookie policies in the provided HTML content. No contact information or incident response channels are present, which may impact user trust and compliance with privacy regulations such as GDPR. The domain registration is transparent and consistent with the company's history, enhancing legitimacy. Overall, the security posture is basic and could benefit from improvements in policy disclosures and technical safeguards. The overall risk assessment suggests a moderate risk profile primarily due to limited visible privacy and security disclosures. Strategic recommendations include publishing comprehensive privacy and cookie policies, implementing security headers, and providing clear contact and incident response information to enhance compliance and user trust.

15
50
2
87
72
90
100
travelcarpoolcommunitytransportationridesharing
Google Cloud DNS (ns-cloud-*.googledomains.com)CDN (cdn.blablacar.com)
2025-10-11T16:36:28.054Z
lafrenchtechlemans.com favicon

La French Tech Lemans

lafrenchtechlemans.com

0
OtherN/asmallHIGH

La French Tech Lemans operates a French-language website providing a comprehensive step-by-step guide on creating and optimizing a Google My Business profile to enhance local business visibility and SEO. The site targets local business owners and entrepreneurs seeking to improve their online presence through Google My Business. The business model is informational, focusing on content delivery rather than direct commercial services. The website uses Sitecore CMS and includes standard web technologies such as jQuery and FontAwesome, but some libraries are outdated. The site is moderately optimized for mobile and SEO but lacks advanced accessibility features. From a security perspective, the website lacks visible security headers and there is no explicit evidence of HTTPS enforcement in the provided data. The WHOIS lookup failed to return any registration data, which is a significant concern regarding domain legitimacy and trustworthiness. No contact information or social media links are provided, limiting business credibility and user trust. Privacy and cookie policies are minimal, with no consent mechanisms detected, indicating potential GDPR compliance gaps. Overall, the website presents useful content with good design and user experience but suffers from technical and security shortcomings, including missing WHOIS data, lack of security headers, and absence of privacy compliance features. These issues reduce the overall trust and security posture of the site. Strategic improvements in security, privacy compliance, and transparency are recommended to enhance credibility and user confidence.

15
50
17
40
72
75
40
googlemybusinessseolocalbusinessfrenchtechbusinessguide
jQuery 1.12.4jQuery Migrate 1.4.1FontAwesome
2025-10-11T16:28:02.302Z