Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 15 of 579|Showing 701-750 of 28909
pixel-shot.com favicon

Pixel-Shot Studio (Africa Studio)

pixel-shot.com

0
MediaN/amediumMEDIUM

Pixel-Shot Studio operates as a stock photography agency providing a wide range of high-quality stock images and related services such as custom shooting and photo retouching. The website positions itself as one of the largest creators of stock content, targeting photographers, creative professionals, and buyers of stock photos. The business model is direct sales of digital content with user account management features including login, registration, and password recovery. Technically, the website uses a traditional web stack with jQuery and jQuery UI for UI components, and integrates Google Analytics and Google Tag Manager for user tracking and analytics. The site is hosted under a domain registered with Internet Invest, Ltd. dba Imena.ua, with a domain age consistent with the business history. The website shows moderate performance and basic mobile optimization. From a security perspective, the site uses HTTPS (implied by external Google Analytics scripts loaded over HTTPS), but lacks DNSSEC and explicit HTTP security headers. The domain is protected against unauthorized transfer. No privacy or cookie policies are present, which is a compliance gap. Forms have client-side validation but no visible advanced security measures. No incident response or vulnerability disclosure information is provided. Overall, the website is functional and professional with moderate trustworthiness. Key risks include lack of privacy and cookie policies, absence of security headers, and missing DNSSEC. Strategic improvements in these areas would enhance compliance and security posture.

15
35
2
55
77
75
100
stockphotographyphotosimagescreativemedia+2 more
jQuery 3.4.1jQuery UIGoogle AnalyticsGoogle Tag Manager
2025-10-31T10:02:45.927Z
eso.org favicon

European Southern Observatory

eso.org

0
GovernmentN/alargeMEDIUM

The European Southern Observatory (ESO) is a leading intergovernmental organization dedicated to astronomical research and the operation of world-class ground-based observatories in the Southern Hemisphere. The website serves as a comprehensive portal for scientific discoveries, public outreach, educational resources, and detailed information about ESO's telescopes and instruments. It targets a broad audience including researchers, educators, students, and astronomy enthusiasts worldwide. The business model is non-profit and government-oriented, focusing on advancing astronomy and related technologies. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, jQuery, and integrates Matomo analytics for privacy-conscious visitor tracking. It is hosted on CDN77, ensuring fast content delivery and good performance. The site is mobile-optimized, accessible, and SEO-friendly, with clear navigation and multilingual support. From a security perspective, the site enforces HTTPS, uses CSRF tokens, and implements cookie consent mechanisms aligned with GDPR. While explicit security headers like Content-Security-Policy are not confirmed, best practices are largely followed. No vulnerabilities or exposed sensitive data were detected. However, the absence of a public security policy or vulnerability disclosure program is noted. Overall, the website presents a low-risk profile with strong trust indicators and professional content. The lack of WHOIS data limits domain registration insights but does not detract from the site's legitimacy. Strategic recommendations include enhancing security header implementation, publishing a security policy, and establishing a vulnerability disclosure channel to further strengthen trust and compliance.

25
73
17
75
67
75
100
astronomyscienceresearcheducationobservatory+3 more
HTML5CSS3JavaScriptjQuery+4
2025-10-31T10:00:50.060Z
F

An Error Occurred: Not Found

fh-guestrow.de

0
OtherN/asmallMEDIUM

The website fh-guestrow.de currently serves only a 404 Not Found error page with minimal HTML content and no business or security-related information. The domain is registered and active with netcup name servers, but the website itself is inaccessible and lacks any meaningful content or metadata. There are no privacy, cookie, or terms of service policies, no contact information, and no visible security measures such as HTTPS or security headers. This indicates either a misconfigured or inactive website. From a technical perspective, the site does not utilize any detectable frameworks, CMS, or analytics tools. The hosting provider is netcup, but no further infrastructure details are available. The lack of content and metadata results in poor SEO, accessibility, and user experience. Security posture is minimal with no evidence of HTTPS or security best practices. The WHOIS data shows a consistent domain registration with no privacy protection, but the lack of website content reduces the domain's trustworthiness. No suspicious patterns were detected in the WHOIS data. Overall, the site presents a high risk due to its inaccessibility and lack of transparency. Strategic recommendations include fixing the 404 error to restore website accessibility, implementing HTTPS with proper SSL certificates, adding privacy and cookie policies to comply with GDPR, providing clear contact and business information, and adopting security best practices such as security headers and incident response contacts.

60
70
25
100
17
75
77
error404notfoundinactiveplaceholder
2025-10-31T09:32:19.596Z
thedutchselection.com favicon

The Dutch Selection B.V.

thedutchselection.com

0
TechnologyN/asmallMEDIUM

The Dutch Selection B.V. is a technology-focused company specializing in helping businesses transform into data-driven organizations. Their website presents a professional image with clear messaging about their services and a focus on data consultancy and business transformation. The company targets businesses seeking to leverage data for growth and operational improvement. The website is built on a modern technology stack including Ruby on Rails, Bootstrap, and Hotwired Turbo, indicating a mature digital infrastructure. Analytics and marketing tools such as Google Analytics, Hotjar, and Mixpanel are integrated to monitor user engagement and improve service delivery. Security posture is moderate with HTTPS enabled and a cookie consent mechanism in place, but lacks explicit security headers and publicly available security policies. The absence of WHOIS data for the domain raises concerns about domain registration legitimacy, which impacts overall trustworthiness. Contact information is limited to a contact form without direct emails or phone numbers, which may affect business credibility. Overall, the website is functional, professional, and privacy-conscious but would benefit from enhanced transparency and security disclosures.

35
68
2
75
77
80
40
data-drivenbusinesstransformationtechnologyprivacycookies+1 more
Ruby on RailsBootstrap 5Hotwired TurboStimulusJS+7

Partner Domains:

anybigdata.com
partner
2025-10-31T09:31:58.960Z
warpcast.com favicon

Merkle Manufactory

warpcast.com

0
TechnologyN/asmallMEDIUM

Farcaster.xyz operates as a decentralized social network and crypto wallet platform, targeting crypto enthusiasts and digital asset traders. The business is positioned as a niche social network that facilitates discovery, trading, and creation within the crypto ecosystem. The company behind the site is Merkle Manufactory, founded in 2021, with a small-sized operation focused on technology innovation in blockchain social networking. The website promotes app downloads for iOS and Android, indicating a multi-platform presence. Technically, the website employs modern web technologies including React, Google Fonts, and Fathom Analytics for lightweight user tracking. Hosting and DNS services are provided via Cloudflare, ensuring good performance and security at the infrastructure level. The site is mobile-optimized with good design quality and user experience, although accessibility features are basic. SEO optimization is present but minimal. From a security perspective, the site uses HTTPS and has domain transfer protections enabled. However, it lacks DNSSEC, explicit security headers, and a cookie consent mechanism, which are areas for improvement. No contact or incident response information is provided, limiting transparency in security governance. The privacy policy exists but is basic and does not explicitly confirm GDPR compliance. No vulnerability disclosure or security.txt files were found. Overall, the website is professional, trustworthy, and safe for general audiences with no adult or questionable content. The domain registration is consistent with the business timeline and shows no suspicious patterns. Strategic recommendations include enhancing security headers, enabling DNSSEC, implementing cookie consent, and providing clearer security and contact information to improve compliance and trust.

35
53
2
70
47
80
100
cryptosocialnetworkdecentralizedwalletblockchain+2 more
JavaScriptReact (implied by JSX and module scripts)Cloudflare DNSGoogle Fonts+1
2025-10-31T09:30:10.371Z
microformats.org favicon

Microformats – building blocks for data-rich web pages

microformats.org

0
TechnologyN/asmallHIGH

Microformats.org is a niche community-driven website focused on the promotion and education of microformats, a set of open data formats for marking up structured data on web pages. The site serves web developers and the IndieWeb community by providing specifications, blog posts, and resources related to microformats. It operates on a WordPress CMS hosted by Linode and has been active since 2005, indicating a mature presence in its domain. The content is technical and educational, targeting a specialized audience interested in semantic web technologies. From a technical perspective, the website uses a standard WordPress setup with JavaScript and CSS for frontend functionality. While the site is accessible and functional, it shows signs of moderate performance and basic mobile optimization. SEO and accessibility features are present but could be improved. The site uses Google Analytics for tracking but lacks visible privacy and cookie policies, which may impact compliance with data protection regulations. Security-wise, the site enforces HTTPS but lacks important security headers such as Content-Security-Policy and HSTS. DNSSEC is not enabled for the domain. No contact or incident response information is provided, which limits transparency and readiness for security issues. The absence of privacy and cookie policies also indicates compliance gaps. Overall, the security posture is moderate but could benefit from enhancements. The overall risk assessment suggests the site is legitimate and trustworthy within its niche but should improve privacy compliance and security best practices to enhance user trust and regulatory adherence. Strategic recommendations include implementing security headers, enabling DNSSEC, publishing privacy and cookie policies, and providing clear contact and incident response information.

15
35
2
65
62
50
40
microformatsindiewebstructureddatasemanticwebtechnology+1 more
WordPress 5.4.18PHPJavaScriptHTML5+2
2025-10-31T09:10:31.517Z
dalkiasolutions.com favicon

Dalkia

dalkiasolutions.com

0
EnergyN/alargeMEDIUM

Dalkia Solutions is a large energy efficiency solutions provider offering a comprehensive range of services including chiller services, combined heat and power, digital services, intelligent load management, LED lighting and controls, operations and maintenance, refrigeration, retail energy, smart infrastructure solutions, solar plus storage, and strategic energy management. The company targets commercial and industrial clients nationwide and is part of the EDF Group, a well-known energy conglomerate. The website demonstrates a professional and consistent brand presence with detailed service descriptions and active social media engagement. Technically, the website is built on WordPress with modern JavaScript libraries such as jQuery and OwlCarousel, and integrates Google Tag Manager for analytics. The site is mobile optimized with good SEO practices, though accessibility features are basic. Performance is moderate, with no critical errors detected. From a security perspective, the site uses HTTPS with CSRF tokens in forms, but lacks important security headers and a cookie consent mechanism. No explicit incident response or vulnerability disclosure policies are published, which could be improved to enhance trust and compliance. The absence of WHOIS data is a concern but the website content and branding align with a legitimate business. Overall, the site is professional and trustworthy but would benefit from enhanced security headers, explicit contact information, and improved privacy compliance mechanisms to strengthen its security posture and user trust.

55
58
2
78
72
80
20
energyenergyefficiencysustainabilitycommercialindustrial+2 more
jQueryOwlCarouselGoogle Tag ManagerGoogle Fonts

Partner Domains:

www.dalkia.com
parent
careers.hireology.com
partner
2025-10-31T07:56:40.020Z
signal.group favicon

Signal

signal.group

0
TechnologyN/alargeMEDIUM

Signal is a well-established nonprofit organization founded in 2013, providing secure messaging services through its Signal Messenger app and related group functionalities. The website signal.group serves as a gateway to join Signal groups and links users to official Signal resources, downloads, and support. The organization holds a strong market position as a leading privacy-focused messaging platform with a global user base. Technically, the website employs modern web technologies including Bulma CSS framework and JavaScript, with responsive design optimized for mobile devices. The site is served over HTTPS with no visible security vulnerabilities or exposed sensitive data. However, some security best practices such as security headers and cookie consent mechanisms are absent, which could be improved to enhance compliance and security posture. From a security perspective, the domain WHOIS data is limited due to registry restrictions, but the domain is actively maintained and consistent with the nonprofit's branding and operations. No WAF or blocking mechanisms are detected, and the site does not engage in advertising or tracking, aligning with privacy principles. Overall, the website demonstrates a strong security posture with room for improvement in transparency and compliance documentation. The overall risk assessment is low, with recommendations focusing on enhancing security headers, publishing security policies, and implementing cookie consent to meet GDPR requirements. These steps will further strengthen trust and compliance for the organization's global audience.

30
53
2
80
57
85
100
securemessagingnonprofitprivacysignaltechnology+1 more
Bulma CSSJavaScriptHTML5CSS3+2
2025-10-31T07:54:09.651Z
grizzlyads.com favicon

Grizzly Ads

grizzlyads.com

0
TechnologyN/asmallMEDIUM

Grizzly Ads is a technology startup offering an ad booking and management platform targeted at creative businesses and content creators. The platform is currently in beta, focusing on enabling creators to sell ad slots directly to sponsors with unlimited bookings and direct payments. The website reflects this early stage with clear but limited content and a focus on onboarding beta users. Technically, the site is built on the Bubble.io platform, leveraging modern JavaScript libraries and cloud hosting via AWS Cloudfront CDN. The site demonstrates moderate performance and good mobile optimization but lacks advanced SEO and accessibility features. The technical infrastructure is adequate for a startup but could benefit from enhanced security configurations. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks DNSSEC and important security headers. There are no visible incident response or security policies, and cookie consent mechanisms are absent. Analytics usage is minimal, relying on plausible.io, which is privacy-focused. Overall, the security posture is moderate but requires improvements to meet best practices. The overall risk is moderate given the startup nature and limited exposure. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent and privacy enhancements, and publishing incident response contacts to improve trust and compliance.

75
53
17
40
52
55
100
adbookingcreatorplatformbetatechnologybubbleio
Bubble.ioJavaScriptGoogle FontsSlim Select+2
2025-10-31T07:23:49.110Z
assemblag.es favicon

assemblag.es

assemblag.es

0
TechnologyN/asmallCRITICAL

assemblag.es operates as a niche Mastodon instance dedicated to individuals interested in creative and critical discussions about technology. The platform emphasizes a strong community code of conduct and privacy awareness, positioning itself as a thoughtful and moderated decentralized social media environment. The service is small-scale but maintains a clear focus on its target audience, leveraging the Mastodon and Hometown software stack to deliver its offerings. The website content is well-organized and professional, with clear administrative contact details and policies, although some standard compliance elements like cookie consent are missing. Technically, assemblag.es uses modern open-source technologies including Mastodon version 4.2.17 with the Hometown frontend, hosted via a CDN provider. The site is mobile-optimized and provides a good user experience, though accessibility and SEO optimizations are basic. Security posture is moderate with HTTPS implied but lacking explicit security headers and published security policies. The absence of WHOIS data due to registrar restrictions limits external verification of domain legitimacy, but the site content and operational transparency support trustworthiness. Security-wise, the platform enforces a strict code of conduct and privacy policy, but lacks formal incident response and vulnerability disclosure mechanisms. No tracking or advertising is present, enhancing privacy. The overall risk is moderate, with recommendations to improve security headers, cookie consent, and publish explicit security policies to strengthen compliance and user trust. Strategically, assemblag.es should focus on enhancing its security posture and privacy compliance to maintain and grow its user base in a competitive decentralized social media landscape.

-
-
-
-
-
-
-
mastodondecentralizedsocialmediatechnologyprivacy+1 more
Mastodon 4.2.17+hometown-1.1.2Hometown frontendJavaScriptCSS
2025-10-31T07:23:13.990Z