Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 132 of 579|Showing 6551-6600 of 28928
mmatt.net favicon

Matt Morris

mmatt.net

0
TechnologyN/asmallMEDIUM

mmatt.net is the personal website and blog of Matt Morris, a technologist, student, and open source contributor. The site serves as a portfolio and content hub for his projects, thoughts on technology, gaming, and social media. It targets technology enthusiasts and community members interested in his work and insights. The website is built using modern web technologies including Next.js and React, hosted with Cloudflare DNS, and optimized for mobile and desktop users. The content is well structured and regularly updated, reflecting a good level of digital maturity for a personal brand site. From a security perspective, the site uses HTTPS with domain registration protections such as clientDeleteProhibited and clientTransferProhibited status. However, DNSSEC is not enabled, and no explicit security or incident response policies are published. Privacy and cookie policies are absent, which is a compliance gap. Analytics are implemented via Plausible with minimal tracking, indicating a privacy-conscious approach. The site does not use advertising networks or retargeting services, focusing on content and community engagement. Overall, the website presents a trustworthy and professional personal brand with good technical implementation and content quality. The main areas for improvement include publishing privacy and cookie policies, enabling DNSSEC, and adding security and vulnerability disclosure information to enhance trust and compliance.

30
35
17
35
72
80
100
personalblogtechnologygamingopensourcenextjs+4 more
Next.jsReactDocker (mentioned in blog content)Cloudflare DNS
2025-10-11T00:51:57.836Z
doi.org favicon

DOI Foundation

doi.org

0
TechnologyN/amediumMEDIUM

The DOI Foundation is a reputable non-profit organization responsible for governing the Digital Object Identifier (DOI) system globally. It acts as the registration authority for the ISO 26324 standard and supports a broad community including scholarly publishing, entertainment, and research data sectors. The website reflects a professional and authoritative presence with clear information about its mission, community, and services. The target audience includes agencies managing DOI registries and users of DOI infrastructure worldwide. Technically, the website employs modern technologies such as Bootstrap 5, jQuery, and Google Charts, built on the Hugo static site generator. The site is mobile-optimized, fast-loading, and accessible, with good SEO practices. The use of HTTPS is confirmed, ensuring secure communications. However, explicit security headers are not visible, and no cookie consent mechanism is present, indicating areas for improvement in security and privacy compliance. From a security perspective, the site demonstrates good practices with secure form submissions and no visible vulnerabilities or exposed sensitive data. The absence of a published vulnerability disclosure or incident response contacts suggests room for enhancing transparency and readiness. The WHOIS data is unavailable due to privacy protection, which is justified for this type of non-profit organization. Overall, the domain and website are trustworthy and consistent with the DOI Foundation's recognized role. The overall risk assessment is low, with recommendations focusing on improving security headers, privacy notices, and incident response visibility to further strengthen trust and compliance.

15
53
2
70
90
80
100
doidigitalobjectidentifierscholarlypublishingnon-profitiso26324+1 more
Bootstrap 5.0.2jQuery 3.6.1Google ChartsHugo 0.151.0
2025-10-11T00:51:17.734Z
dataintensive.net favicon

Martin Kleppmann

dataintensive.net

0
TechnologyN/asmallMEDIUM

The website dataintensive.net is dedicated to promoting the technical book 'Designing Data-Intensive Applications' by Martin Kleppmann. It serves a niche audience of software engineers and technical professionals interested in distributed systems, data scalability, and reliability. The site provides detailed information about the book, author background, testimonials from industry leaders, and purchasing options. The business model centers on book sales and educational content dissemination, positioning itself as a trusted resource in the technology education sector. Technically, the website is built using standard web technologies including HTML5, Bootstrap 3.2.0, and jQuery 1.11.1, hosted via Cloudflare. The site is mobile responsive and well-structured, though it lacks advanced SEO and accessibility features. No CMS or analytics frameworks are detected, indicating a lightweight and straightforward implementation. The site uses HTTPS but lacks DNSSEC and security headers, which could be improved to enhance security posture. From a security perspective, the site demonstrates basic good practices such as HTTPS usage and stable domain registration without privacy protection. However, it lacks formal privacy, cookie, or security policies, and no incident response or vulnerability disclosure mechanisms are present. No forms or data collection points are found, reducing exposure to input-based vulnerabilities. The overall security score is moderate, with recommendations to implement security headers, privacy policies, and DNSSEC. Overall, the website is professional, trustworthy, and content-rich for its target audience. The absence of privacy and cookie policies and limited security headers are notable gaps. The risk level is low given the nature of the site and lack of sensitive data processing, but improvements in compliance and security best practices are advised to maintain trust and regulatory alignment.

15
35
17
70
65
75
100
technologydata-intensivesoftwareengineeringdistributedsystemsbook+4 more
HTML5Bootstrap 3.2.0jQuery 1.11.1
2025-10-11T00:51:12.724Z
F

Just a moment...

fantasywelt.de

0
OtherN/asmallMEDIUM

The website fantasywelt.de is currently inaccessible due to a Cloudflare Turnstile CAPTCHA security challenge, which blocks direct access to the site's content. As a result, no business information, contact details, or policies are available for analysis. The site appears to be protected by Cloudflare's security infrastructure, indicating an intent to mitigate automated access or attacks. However, this also limits the ability to assess the site's business operations, technical maturity, or security posture beyond the presence of the WAF. From a technical perspective, the site uses Cloudflare services including Turnstile CAPTCHA, indicating modern security practices to prevent abuse. The lack of accessible content and metadata prevents evaluation of SEO, accessibility, or user experience. No forms or data collection mechanisms are visible beyond the CAPTCHA widget. Security-wise, the presence of Cloudflare WAF is a positive indicator, but the absence of visible security headers or policies limits the assessment. No vulnerabilities or compliance information can be confirmed. The domain WHOIS data is minimal, with Cloudflare name servers and an unusual domain status, which reduces trustworthiness and transparency. Overall, the site is currently in a blocked state preventing meaningful analysis. The risk assessment is moderate due to lack of transparency and business information. Strategic recommendations include enabling public access to key business pages, publishing privacy and cookie policies, and providing clear contact information to improve trust and compliance.

55
10
2
70
75
70
100
Cloudflare TurnstileJavaScriptHTML5CSS3
2025-10-10T23:49:28.963Z
skylight.social favicon

Skylight Social

skylight.social

0
TechnologyN/asmallMEDIUM

Skylight Social is a decentralized short-form video platform built on the AT Protocol, designed to provide users with unbannable social media experience and full ownership of their content and social connections. The platform positions itself as an alternative to traditional social media giants by leveraging open protocol technology and operating as a Public Benefit Corporation committed to social impact. The website presents a modern, professional design with clear messaging about user control and decentralization, targeting users interested in next-generation social networking. Technically, the website is built using React and Expo Router frameworks, with embedded YouTube content to showcase platform features. The site is accessible and mobile-optimized, though some SEO and accessibility features are basic. No advanced CMS or hosting details are evident from the HTML content. The absence of visible security headers and cookie consent mechanisms suggests room for improvement in security and privacy compliance. From a security perspective, the site uses HTTPS (implied by the URL) but lacks explicit security headers and incident response contact information. WHOIS data is privacy protected, which is common for startups but limits transparency. No vulnerabilities or malicious content were detected in the provided content. Overall, the security posture is moderate but could be enhanced with better header implementation and privacy disclosures. The overall risk assessment is moderate with a recommendation to improve security headers, privacy compliance, and transparency around contact information. The business model and technical infrastructure indicate a forward-looking approach to decentralized social media, but maturity in security and compliance practices will be critical for trust and growth.

30
35
2
55
75
80
100
decentralizedsocialmediavideoplatformatprotocolpublicbenefitcorporation+3 more
ReactExpo RouterYouTube iframe embed
2025-10-10T23:43:42.695Z
graze.social favicon

Graze.social

graze.social

0
TechnologyN/asmallMEDIUM

Graze.social is a technology company specializing in providing a SaaS platform for building custom social feeds on the Bluesky network using the ATProto protocol. The platform targets feed curators, brands, publishers, developers, and advertisers, enabling them to create personalized feeds, monetize content, and engage audiences without coding. The website demonstrates a strong market position with a growing user base and a clear value proposition centered on user control over social algorithms. Technically, the website is built on modern web technologies including React, JavaScript, and integrates third-party services such as Crisp chat, Beehiiv newsletter, and Plausible analytics. The site is mobile-optimized, fast-loading, and well-structured with good SEO and accessibility features. However, some security best practices like explicit security headers and cookie consent mechanisms are not visibly implemented. From a security perspective, the site uses HTTPS and does not expose sensitive data. The lack of public WHOIS data suggests privacy protection, which is common and justified for startups. No critical vulnerabilities or suspicious patterns were detected. The site lacks publicly disclosed incident response or security policies, which could be improved to enhance trust. Overall, Graze.social presents a professional, trustworthy, and technically mature platform with minor areas for security and privacy compliance improvements. Strategic recommendations include implementing security headers, publishing security policies, and adding cookie consent to align with best practices and regulatory requirements.

30
53
2
40
72
80
100
technologysocialmediacustomfeedsblueskyatproto+2 more
ReactJavaScriptCSSHTML5+5
2025-10-10T23:43:32.669Z
ultimateguard.com favicon

Ultimate Guard®

ultimateguard.com

0
RetailN/amediumMEDIUM

Ultimate Guard® operates a professional e-commerce website specializing in premium accessories for trading card games such as Magic: The Gathering, Pokémon, and others. The company has an established market presence since 2006, offering a wide range of products including deck boxes, card sleeves, binders, play-mats, and collectibles. The website targets trading card game players and collectors, positioning itself as a niche market leader with a consistent brand and good content quality. Technically, the website is built on the Shopware 6 platform, leveraging modern web technologies including Google Tag Manager, reCAPTCHA v3, and Usercentrics for cookie consent management. The site is mobile optimized with good SEO and accessibility basics. Hosting and domain management are handled by EuroDNS S.A., with a secure HTTPS configuration and clientTransferProhibited domain status enhancing trust. From a security perspective, the site employs HTTPS and bot protection mechanisms but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or suspicious content were detected. Privacy compliance is well addressed with visible cookie consent and a comprehensive privacy policy, though direct contact emails and phone numbers are not publicly listed. Overall, the website demonstrates a solid business and technical foundation with a good security posture and privacy compliance. Strategic improvements include enabling DNSSEC, enhancing security headers, and publishing security and incident response policies to further strengthen trust and compliance.

60
83
2
75
72
75
100
e-commercetradingcardgamescollectiblecardaccessoriesretailshopware
Shopware 6Google reCAPTCHA v3Google Tag ManagerUsercentrics CMP+3
2025-10-10T23:42:52.024Z
oinkgames.com favicon

Oink Games

oinkgames.com

0
OtherN/asmallMEDIUM

Oink Games is a small, specialized company focused on creating board games and video games. Their website reflects a niche market position with a clean, professional design and multilingual support for English, Japanese, and German audiences. The business model centers on game design and sales, targeting enthusiasts of analog and digital games. The company was founded in 2020, consistent with the domain registration date. Technically, the website leverages modern JavaScript frameworks such as Vue.js and Nuxt.js, with hosting infrastructure likely on Amazon AWS. The site includes integrations for Google Analytics and Facebook SDK for tracking and marketing purposes. Performance and mobile optimization are good, though accessibility features are basic. From a security perspective, the site uses HTTPS and has domain status protections to prevent unauthorized transfers or deletions. However, DNSSEC is not enabled, and no security headers were detected, which are areas for improvement. Privacy compliance is weak, with no visible privacy or cookie policies or consent mechanisms. Contact information and incident response details are not provided, limiting transparency. Overall, the website is trustworthy and professional but would benefit from enhanced privacy disclosures, security headers, and contact transparency to improve compliance and user trust.

15
50
2
40
67
75
100
boardgamesvideogamesgamedevelopmentmultilingualvuejs+3 more
JavaScriptVue.jsGoogle Tag ManagerFacebook SDK+2
2025-10-10T23:41:22.278Z
D

Digistore24

digistore24.com

0
E-commerceN/alargeLOW

Digistore24 operates as a large-scale e-commerce platform specializing in digital product sales and affiliate marketing services. The website targets online sellers, affiliates, and digital marketers, providing a marketplace and payment processing solutions. The platform is positioned as an established player in the digital commerce and affiliate marketing space, offering key services such as a digital product marketplace, affiliate program, and payment processing. Technically, the website employs a modern technology stack including jQuery, Google Tag Manager, Cookiebot for cookie consent, and popular icon and font libraries such as Material Design Icons and FontAwesome. The site uses HTTPS with a privacy-enhanced YouTube embed for background videos, indicating attention to user privacy. Performance and mobile optimization are good, though accessibility features are basic. From a security perspective, HTTPS is enforced and cookie consent is implemented, but explicit security headers are missing. There is no visible privacy policy, terms of service, or contact information for security incidents or data protection officers. The absence of WHOIS data reduces domain trustworthiness, though the website content and technology usage suggest a legitimate business. No vulnerabilities or malware indicators were detected. Overall, the website is professional and trustworthy with moderate security posture and privacy compliance. Strategic improvements include publishing clear privacy and terms policies, adding security headers, providing contact information, and verifying domain registration details to enhance trust and compliance.

60
100
17
100
72
85
100
e-commerceaffiliatemarketingdigitalproductspaymentprocessingcookieconsent+1 more
jQueryGoogle Tag ManagerCookiebotMaterial Design Icons+3
2025-10-10T22:36:29.911Z
dev.to favicon

DEV Community

dev.to

0
TechnologyN/alargeMEDIUM

DEV Community is a large and well-established online platform dedicated to software developers and engineers worldwide. Founded in 2016, it serves as a vibrant community hub where coders share knowledge, stay updated on industry trends, and grow their careers. The platform offers a variety of services including forums, content publishing, podcasts, videos, and developer challenges, supported by official partnerships with major technology companies such as Google AI, Neon, and Algolia. Its business model includes community engagement and premium memberships (DEV++). Technically, DEV Community is built on a modern Ruby on Rails framework using the open source Forem platform. It leverages cloud hosting, Algolia for search, and integrates analytics tools like Google Analytics and Tag Manager. The website demonstrates excellent performance, mobile optimization, and accessibility, with a clean and professional design that enhances user experience. From a security perspective, the site enforces HTTPS, employs standard security headers, and uses CSRF tokens to protect forms. While no critical vulnerabilities or exposed sensitive data were detected, the site lacks a public security policy, incident response information, and explicit cookie consent mechanisms, which are areas for improvement to enhance compliance and trust. Overall, DEV Community presents a high level of business credibility and technical maturity with strong trust indicators. The platform is safe for general audiences, with no adult or questionable content. Strategic recommendations include implementing explicit cookie consent, publishing security policies, and providing clearer security contact channels to further strengthen its security posture and privacy compliance.

65
73
25
70
77
80
100
softwaredevelopmentcommunityprogrammingtechnologyeducation+1 more
Ruby on RailsJavaScriptAlgolia SearchAWS S3 (for images)+2

Partner Domains:

forem.com
partner
aistudio.google.com
partner

+2 more partners

2025-10-10T22:36:04.829Z