Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 136 of 579|Showing 6751-6800 of 28911
heymantle.com favicon

Mantle

heymantle.com

0
TechnologyN/asmallMEDIUM

Mantle is a SaaS platform focused on providing revenue operations and analytics tools tailored for Shopify app developers and businesses. The platform offers a comprehensive suite of services including revenue tracking, subscription management, customer management, AI-enhanced analytics, and marketing automation features. Positioned as a niche player in the Shopify ecosystem, Mantle aims to empower app developers to grow their businesses through data-driven insights and streamlined billing solutions. The website demonstrates a professional and modern design, with clear navigation and detailed product descriptions, targeting a specialized audience of Shopify app businesses. Technically, the website is built using modern frameworks such as Astro and leverages Cloudflare for DNS and likely CDN services. It integrates Google Tag Manager for analytics and uses Google Fonts for typography. The site is mobile-optimized, fast-loading, and SEO-friendly, reflecting a mature digital infrastructure for a startup launched in 2023. However, there is room for improvement in security practices, such as enabling DNSSEC and implementing security headers. From a security perspective, the site enforces HTTPS and has domain status protections to prevent unauthorized changes. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a cookie consent mechanism and security headers indicates partial compliance with privacy and security best practices. No explicit incident response or security policies are published, which could be enhanced to build greater trust. Overall, Mantle presents a credible and professional online presence with a strong focus on Shopify app business growth. The risk profile is low, with minor recommendations to improve privacy compliance and security posture. Strategic enhancements in these areas would further solidify Mantle's market position and customer trust.

15
53
17
70
65
65
100
shopifysaasrevenueanalyticsbillingaffiliateprogram+1 more
Astro v5.12.3Google FontsGoogle Tag ManagerCloudflare DNS

Partner Domains:

sasi.heymantle.com
partner
app.heymantle.com
service
2025-10-10T06:23:38.292Z
omnisnippet1.com favicon

Omnisend

omnisnippet1.com

0
E-commerceN/amediumLOW

Omnisend operates as a specialized ecommerce-focused email and SMS marketing automation platform designed to empower ecommerce brands to increase revenue efficiently. The company offers a comprehensive suite of marketing tools including email campaigns, SMS, web push notifications, AI-driven personalization, and seamless integrations with major ecommerce platforms such as Shopify, WooCommerce, and BigCommerce. The website reflects a mature digital presence with professional branding, clear messaging, and extensive content tailored to ecommerce marketers. Technically, the website is built on WordPress with modern front-end technologies including Swiper.js for sliders, Wistia for video hosting, and Cookiebot for GDPR-compliant cookie consent management. The site is well-optimized for SEO and mobile responsiveness, leveraging Google Tag Manager and Visual Website Optimizer for analytics and A/B testing. Security best practices such as HTTPS and cookie consent are implemented, though some security headers could be improved. From a security perspective, the site demonstrates a solid posture with no visible vulnerabilities or exposed sensitive data. However, the absence of a public security policy or incident response information and lack of a vulnerability disclosure program represent areas for enhancement. The WHOIS data is unavailable, likely due to privacy protection, which slightly reduces trustworthiness from a domain registration perspective but does not detract significantly given the professional web presence. Overall, Omnisend presents a credible and professional ecommerce marketing platform with strong technical and content quality. Strategic improvements in security transparency and WHOIS data availability could further enhance trust and compliance.

65
88
20
88
75
85
100
emailmarketingecommercemarketingautomationsmsmarketingwebpushnotifications+3 more
WordPressGoogle Tag ManagerWistia video embedsSwiper.js+3
2025-10-10T05:13:08.754Z
F

find-searcher.com

find-searcher.com

0
TechnologyN/asmallMEDIUM

Find-searcher.com is a newly established web search interface launched in 2025, providing users with a simple search bar featuring autocomplete suggestions. The site redirects search queries internally to a search results page. The business model appears to be centered around offering search services, targeting a general audience. The website employs third-party consent management tools to comply with GDPR regulations and uses analytics services such as Microsoft Clarity for user behavior tracking. However, the domain is very new, limiting historical trust indicators. Technically, the website uses legacy jQuery 1.11.3 and integrates consent management scripts from consentmanager.net. The site is hosted under a domain registered with PublicDomainRegistry.com and uses DNS servers from ztomy.com. Performance is moderate with basic mobile optimization and accessibility features. No CMS or major frameworks are detected, indicating a custom-built or lightweight platform. From a security perspective, the site lacks DNSSEC and does not show evidence of security headers like CSP or HSTS. The use of an outdated jQuery version may expose the site to known vulnerabilities. The domain registration is minimal with no registrant details, which reduces trustworthiness. The site does implement a cookie consent mechanism and privacy policy, which supports basic privacy compliance. Overall, the website is functional but basic in design and security posture. It is suitable for general audiences and does not contain adult or explicit content. Strategic improvements in security hardening, domain trust signals, and richer business information would enhance credibility and compliance.

25
70
2
65
85
80
100
searchengineautocompleteprivacygdprconsentmanagement+1 more
jQuery 1.11.3Consentmanager.net CMPCustom JavaScript for autocomplete and tracking
2025-10-10T05:12:33.670Z
T

Tableau

tableau.com

0
TechnologyN/aenterpriseMEDIUM

Tableau is a leading business intelligence and analytics software company, offering a comprehensive platform that enables users to connect to diverse data sources, create visualizations, and share insights easily. As part of Salesforce, Tableau holds a strong market position in the enterprise analytics space, targeting business users, analysts, IT leaders, and developers. The website reflects a mature digital presence with professional design, clear navigation, and extensive content tailored to various audience segments. Technically, the site leverages modern JavaScript frameworks, Salesforce Experience Cloud infrastructure, and integrates advanced marketing and analytics tools such as Google Tag Manager, Optimizely, and OneTrust for privacy compliance. The site is well-optimized for performance, mobile responsiveness, and accessibility, indicating a high level of digital maturity. From a security perspective, the website enforces HTTPS, employs multiple security headers, and integrates cookie consent mechanisms, demonstrating adherence to best practices. However, explicit security policies, incident response contacts, and vulnerability disclosure information are not publicly available, representing areas for improvement. Overall, the website is trustworthy, professional, and compliant with privacy regulations, though WHOIS data is not publicly available, likely due to privacy protection. This is typical for enterprise domains and does not detract from the site's legitimacy. Strategic recommendations include publishing detailed security policies and enhancing transparency around incident response and vulnerability reporting.

30
88
35
80
67
75
100
businessintelligenceanalyticsdatavisualizationsaasenterprisesoftware+2 more
JavaScriptGoogle Tag ManagerOneTrust (cookie consent)Vidyard (video player)+3

Partner Domains:

salesforce.com
parent
2025-10-10T04:09:10.248Z
dstillery.com favicon

Dstillery

dstillery.com

0
TechnologyN/aenterpriseMEDIUM

Dstillery is an established enterprise-level AI-driven ad targeting company specializing in custom audience solutions for brands and marketers. Founded in 2013, it holds a strong market position supported by multiple industry awards and patents. The company offers a suite of AI-powered products including custom AI audiences, ID-free behavioral targeting, and CTV solutions, targeting programmatic advertising channels. The website reflects a mature digital presence with professional design, clear navigation, and comprehensive content tailored to its B2B audience. Technically, the site is built on WordPress with modern SEO and performance optimizations including Yoast SEO, WP Rocket, and Google Tag Manager integration. Hosting and DNS are managed via Cloudflare, ensuring robust infrastructure. The site is mobile-optimized and accessible, with cookie consent implemented through OneTrust, reflecting attention to privacy compliance. Security posture is solid with HTTPS enforced and some security best practices observed, though explicit security headers and incident response policies are not publicly documented. No vulnerabilities or exposed sensitive data were detected. The domain WHOIS data is consistent with the business claims, showing a legitimate and stable registration without privacy protection. Overall, Dstillery presents a trustworthy and professional online presence with strong business credibility and technical maturity. Privacy compliance could be improved by publishing explicit privacy and terms of service documents. Security transparency would benefit from adding a security policy and vulnerability disclosure information.

65
68
2
70
-
85
100
aiadtechcustomaudiencesprogrammaticadvertisingdataprivacy+3 more
WordPressYoast SEOjQueryGoogle Tag Manager+3
2025-10-10T04:08:50.132Z
G

ERROR: The request could not be satisfied

gobankingrates.com

0
OtherN/aMEDIUM

The website www.gobankingrates.com is currently inaccessible due to an Amazon CloudFront Web Application Firewall (WAF) configuration that blocks access from the querying country, resulting in a 403 error page. This prevents any meaningful content, metadata, or technical details from being retrieved or analyzed. The WHOIS lookup for the domain failed to return any registration data, indicating either the domain is unregistered, expired, or protected by privacy mechanisms that obscure registrar and registrant information. Consequently, no business, contact, or security policy information is available. From a technical perspective, the site is hosted behind Amazon CloudFront, but no further details on CMS, frameworks, or technologies can be determined due to the lack of accessible content. Security posture cannot be assessed as no security headers or SSL configuration details are available. Privacy compliance and business credibility cannot be evaluated without access to policies or contact information. Overall, the site presents a high risk due to inaccessibility and lack of verifiable registration data. This severely limits trust and raises questions about legitimacy. Strategic recommendations include resolving WAF blocking issues to enable access, publishing clear WHOIS and business information, implementing security best practices, and providing transparent privacy and contact policies.

15
50
2
82
82
85
100
2025-10-10T04:08:45.123Z
admedia.com favicon

AdMedia

admedia.com

0
TechnologyN/amediumMEDIUM

AdMedia is a well-established advertising network founded in 1995, specializing in performance marketing solutions across search, native, contextual, mobile, video, and shopping feed channels. The company targets advertisers, publishers, agencies, and affiliate marketers, positioning itself as a leading marketplace outside major engines like Google and Facebook. The website reflects a professional and consistent brand image with clear navigation and good content quality. Technically, the site uses modern frameworks such as Bootstrap and jQuery, hosted on AWS infrastructure, and integrates multiple analytics and tracking tools including Google Analytics and Hotjar. Security posture is solid with HTTPS enabled and domain status protections, though DNSSEC is not enabled and security headers are not explicitly detected. Privacy compliance is partial with a clear privacy policy but lacking a cookie consent mechanism. Business credibility is high, supported by trust indicators like Verisign Secured, AdChoices, and IAB membership. Overall, the site scores well on content, technical implementation, and business credibility, with room for improvement in privacy compliance and security best practices.

15
53
2
85
67
85
100
advertisingadnetworkperformancemarketingsearchadvertisingnativeadvertising+4 more
jQueryBootstrapGoogle AnalyticsHotjar+3

Partner Domains:

advertisers.admedia.com
service
members.admedia.com
service

+2 more partners

2025-10-10T04:08:14.903Z
B

Bidtellect

bttrack.com

0
TechnologyN/asmallMEDIUM

The website bttrack.com serves as a technical status page for Bidtellect's Tracking API, providing real-time readiness information about various caching components essential for digital advertising campaign management. The business operates in the technology sector, specifically ad tech, offering API-based tracking and campaign data services. The domain is mature, registered since 2014, and shows stable WHOIS data without privacy protection, indicating transparency in registration. Technically, the site is minimalistic with basic HTML and CSS, no detected CMS or advanced frameworks, and no visible analytics or marketing tools. The performance appears fast given the lightweight content, but SEO and accessibility are minimal. Security posture is weak with no security headers or DNSSEC enabled, and no HTTPS enforcement details available. Privacy compliance is poor due to the absence of privacy or cookie policies and no contact information. Overall, the security posture is low to moderate, with no critical vulnerabilities detected but lacking best practices and transparency in privacy and security policies. The site is safe with no adult or questionable content. Strategic improvements in security headers, privacy disclosures, and contact availability would enhance trust and compliance. The overall AI score reflects the minimal content and technical implementation, with penalties for missing privacy and security features, resulting in an average rating.

30
50
2
95
67
85
100
apitrackingadtechbidtellect
C#KafkaWurfl Device Detection
2025-10-10T04:07:49.767Z
S

sibforms.com

sibforms.com

0
OtherN/asmallMEDIUM

The website sibforms.com currently serves as a redirect gateway to a login page hosted on account-app.brevo.com, indicating that the primary user interaction occurs on a separate domain. The business appears to be related to forms or account management services, but no direct content or descriptive information is available on the landing page. The domain is registered since 2018 with OVH sas and uses Cloudflare for DNS and likely security, suggesting a legitimate and moderately mature business infrastructure. However, the lack of publicly accessible content, policies, or contact information limits transparency and user trust. From a technical perspective, the site employs Cloudflare DNS and likely benefits from Cloudflare's security features, but the landing page itself is minimal, containing only a JSON redirect. No metadata, scripts, or SEO elements are present, indicating a low digital maturity on the public-facing side. The absence of privacy, cookie, or terms of service policies is a compliance gap, especially for GDPR-relevant users. Security posture is partially supported by Cloudflare protection, but no explicit security headers or incident response information is visible. The domain registration data is consistent and shows no suspicious patterns, supporting legitimacy. However, the minimal public content and lack of transparency reduce the overall trustworthiness and user confidence. Overall, the site scores low on content quality, privacy compliance, and business credibility due to the lack of accessible information and policies. The presence of Cloudflare protection and a legitimate domain registration provide some security assurance, but improvements in transparency, policy publication, and contact availability are recommended to enhance trust and compliance.

-
40
17
70
75
75
100
redirectlogincloudflareminimal-contentsecurity
2025-10-10T04:07:19.662Z
widgetlogic.org favicon

Widget Logic Wordpress plugin for widget control

widgetlogic.org

0
TechnologyN/asmallMEDIUM

Widget Logic is a recently launched WordPress plugin website focused on providing users with granular control over widget and Gutenberg block visibility using WordPress conditional tags and PHP code. The site targets WordPress administrators and developers seeking flexible widget management solutions. The business model is currently free distribution with potential for future monetization. The website is professionally designed with good navigation and mobile optimization, leveraging modern technologies such as Bootstrap and Google Tag Manager for analytics. Hosting and DNS are managed via Cloudflare, ensuring reliable performance and security at the infrastructure level. From a security perspective, the site enforces HTTPS and uses clientTransferProhibited domain status, but lacks important security headers and published security policies. The plugin itself uses eval() on user input, which is a significant security risk if widget editors are not trusted. No privacy or cookie policies are present, indicating compliance gaps with GDPR and other privacy regulations. Analytics tracking is implemented via Google Tag Manager, but no explicit user consent mechanisms are detected. Overall, the website is functional and credible for its niche but requires improvements in privacy compliance, security best practices, and user guidance on plugin risks. The domain registration is consistent with a new product launch and shows no suspicious patterns. Strategic recommendations include adding privacy and cookie policies, implementing security headers, enabling DNSSEC, and providing clear security and incident response information.

50
35
2
40
75
70
100
wordpresspluginwidgetcontrolgutenbergphp+1 more
BootstrapAnimate.cssLineiconsGoogle Tag Manager+1
2025-10-10T02:58:44.528Z
olympicchannel.com favicon

International Olympic Committee

olympicchannel.com

0
MediaN/alargeMEDIUM

The website olympics.com serves as the official digital platform for the Olympic Games, operated under the International Olympic Committee (IOC). It provides comprehensive coverage of Olympic events, athlete profiles, sports news, and multimedia content including video highlights. The site targets a global audience of sports enthusiasts, athletes, media professionals, and the general public interested in Olympic content. It maintains a strong market position as the authoritative source for Olympic information and related services such as merchandise sales. Technically, the site leverages a modern web stack including React with Next.js framework, THEOplayer for video streaming, and multiple third-party services for analytics, user engagement, and consent management. Hosting and content delivery are supported by Akamai CDN, ensuring fast and reliable performance globally. The site is well optimized for mobile devices and accessibility, with good SEO practices and structured metadata. From a security perspective, the website enforces HTTPS with strong SSL configuration and implements key security headers such as Content-Security-Policy and Strict-Transport-Security. Privacy compliance is robust, featuring comprehensive privacy and cookie policies managed via OneTrust, and GDPR compliance indicators. However, there is no publicly visible security policy, incident response contact, or vulnerability disclosure page, which could enhance transparency and trust. Overall, olympics.com presents a professional, secure, and user-friendly experience with high content quality and strong business credibility. The absence of WHOIS data is noted but likely due to privacy or registry policies rather than malicious intent. Strategic recommendations include publishing explicit security and incident response policies, implementing a security.txt file, and enhancing contact information for security matters to further strengthen trust and compliance.

30
100
25
72
-
85
100
olympicssportsathletesnewsmedia+1 more
React (Next.js)THEOplayerGoogle APIsBranch.io+4

Partner Domains:

shop.olympics.com
subsidiary
2025-10-10T02:58:34.512Z
olympics.com favicon

International Olympic Committee

olympics.com

0
GovernmentN/alargeMEDIUM

The website olympics.com serves as the official digital platform for the Olympic Games, providing comprehensive information, news, athlete profiles, and multimedia content related to the Olympics. It is positioned as the authoritative global source for Olympic content, targeting sports enthusiasts, athletes, media, and the general public interested in Olympic events. The site is professionally designed with consistent branding and offers a rich user experience with clear navigation and mobile optimization. Technically, the site leverages modern web technologies including React and Next.js frameworks, THEOplayer for video playback, and integrates third-party services such as Google APIs, Branch.io for marketing, and Gigya for identity management. Hosting appears to be via a reputable CDN provider, likely Akamai, ensuring fast performance and global availability. The site implements strong security measures including HTTPS, multiple security headers, and cookie consent management via OneTrust. From a security perspective, the site demonstrates a mature posture with no visible vulnerabilities or exposed sensitive data. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. Privacy compliance is well addressed with comprehensive privacy and cookie policies and GDPR adherence. Overall, the site is a high-quality, trustworthy platform with strong content and technical foundations. The absence of WHOIS data is noted but likely due to privacy or registry policies rather than suspicious activity. Strategic recommendations include publishing explicit security and incident response policies, providing security contact channels, and establishing a vulnerability disclosure program to further strengthen security posture and stakeholder trust.

30
100
25
72
-
85
100
olympicssportsathletesolympicgamesnews+2 more
React (Next.js)THEOplayerGoogle APIsBranch.io+2

Partner Domains:

shop.olympics.com
partner
olympicchannel.com
partner

+1 more partners

2025-10-10T01:50:16.787Z
openshareweb.com favicon

Shareaholic

openshareweb.com

0
TechnologyN/amediumMEDIUM

Shareaholic is a well-established content marketing platform offering a comprehensive suite of tools designed to help businesses and content creators engage audiences, increase traffic, and monetize content. The website demonstrates a professional digital presence with strong branding, extensive marketing integrations, and a user-friendly interface. The platform is trusted by over 300,000 users and is featured in major media outlets, indicating a solid market position. Technically, the website employs modern web technologies including JavaScript frameworks, Google Analytics, HubSpot, Drift chat, and New Relic monitoring, supported by AWS Cloudfront CDN for performance. The site is mobile-optimized and SEO-friendly, with good loading speeds and accessibility features, though some accessibility improvements could be made. From a security perspective, the site uses HTTPS and includes monitoring scripts but lacks explicit public security policies or vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable, likely due to privacy protection, which is common for businesses but slightly reduces transparency. Overall, Shareaholic presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing security transparency, publishing incident response and vulnerability disclosure policies, and improving accessibility compliance to further strengthen trust and compliance.

30
58
2
70
77
80
100
contentmarketingsocialsharinganalyticsmarketingtoolssaas+1 more
JavaScriptGoogle AnalyticsGoogle Tag ManagerHubSpot Analytics+6

Partner Domains:

yarpp.com
partner
2025-10-10T01:44:59.883Z