Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 154 of 579|Showing 7651-7700 of 28911
onlineoffline.org favicon

Online | Offline

onlineoffline.org

0
OtherN/asmallMEDIUM

Online | Offline is a niche informational platform focused on social activism and civic engagement experiments, primarily targeting Latin American audiences and social change actors. The website shares case studies, experiment replications, and inspirational content to support community organizing and social awareness. The platform operates on WordPress CMS with a custom theme and uses common web technologies such as jQuery and Modernizr. Hosting details are not explicit, but DNS is managed via Cloudflare and the domain is registered with GoDaddy since 2016, indicating a stable presence. From a security perspective, the site uses HTTPS with a valid SSL certificate, but lacks advanced security headers and DNSSEC, which could be improved. No privacy or cookie policies are present, indicating limited compliance with GDPR or similar regulations. Contact information is minimal, limited to an email address and social media links, with no phone or physical address provided. No vulnerability disclosure or incident response information is available. Overall, the website is accessible, safe, and professionally presented with good content relevance and user experience. However, it lacks formal privacy and security policies, which reduces its compliance posture. The site does not use analytics or advertising technologies, minimizing user tracking. The domain registration is consistent with the website's history and content, supporting legitimacy. Strategic recommendations include implementing privacy and cookie policies, adding security headers, enabling DNSSEC, and publishing a security.txt file to improve transparency and security posture.

15
35
2
85
65
75
100
socialactivismcivicengagementexperimentseducationlatinamerica+1 more
WordPressjQueryModernizrFontAwesome+2
2025-10-08T10:20:07.316Z
wsrv.nl favicon

wsrv.nl contributors

wsrv.nl

0
TechnologyN/asmallMEDIUM

wsrv.nl is an open source image caching and resizing service that enables on-the-fly image manipulation with a worldwide CDN cache. The service is widely used, processing millions of images per hour and delivering high volumes of outbound traffic. The website targets developers and businesses requiring efficient image processing solutions. The business model is community-driven and open source, with no direct monetization evident. The domain has been active since 2011, indicating maturity and stability in the market. Technically, the website employs modern technologies including nginx, libvips for image processing, Cloudflare CDN for global delivery, and VitePress for documentation. The site is fast, mobile-optimized, and accessible with good SEO practices. However, explicit security headers are not detected, and no cookie or terms of service policies are present, which could be improved. Security posture is solid with HTTPS and DNSSEC enabled, but the absence of a published security policy or incident response contacts limits transparency. No vulnerabilities or exposed sensitive data were found. Privacy compliance is partial, with a privacy policy linked externally but no cookie consent mechanism. Overall, wsrv.nl presents a trustworthy and technically competent service with room for improvement in privacy and security transparency. Strategic recommendations include adding cookie policies, security headers, and contact information for incident response to enhance trust and compliance.

40
28
2
55
75
65
100
imagecachingimageresizingopensourcetechnologycdn+2 more
nginxlibvipsCloudflare CDNVitePress
2025-10-08T10:12:44.649Z
gdpr.eu favicon

Proton AG

gdpr.eu

0
OtherN/amediumMEDIUM

GDPR.eu is an authoritative online resource dedicated to providing comprehensive guidance on the European Union's General Data Protection Regulation (GDPR). Operated by Proton AG and co-funded by the EU Horizon 2020 Framework Programme, the website offers a rich library of compliance checklists, templates, news updates, and educational content aimed at organizations and individuals seeking to understand and comply with GDPR requirements. The site positions itself as a trusted intermediary between regulatory frameworks and practical business implementation. Technically, the website is built on the WordPress CMS platform, leveraging modern web technologies such as jQuery, Bootstrap, and Font Awesome for responsive design and user experience. SEO is enhanced through the Yoast SEO plugin, and the site demonstrates good mobile optimization and accessibility standards. Performance is moderate, with no significant technical debt or vulnerabilities detected in the front-end code. From a security perspective, the site enforces HTTPS and employs secure form handling but lacks explicit security headers and a published incident response or vulnerability disclosure policy. No critical vulnerabilities or exposed sensitive data were found. Privacy compliance is strong in terms of content and policy availability, though the absence of a cookie consent mechanism is a notable gap given GDPR focus. Overall, GDPR.eu presents a low-risk profile with high business credibility and trustworthiness. Strategic improvements in security headers, cookie consent implementation, and incident response transparency would further enhance its security posture and compliance maturity.

30
80
2
65
62
85
20
gdprdataprotectioncomplianceeulawprivacy
jQueryBootstrapFont AwesomeYoast SEO plugin+1

Partner Domains:

proton.me
partner
research-and-innovation.ec.europa.eu
partner
2025-10-08T09:45:17.952Z
T

The Engine Room

theengineroom.org

0
Non-profitN/amediumMEDIUM

The Engine Room is a non-profit organization dedicated to supporting civil society in leveraging technology and data strategically, effectively, and responsibly. Their market position is that of an established entity providing consulting, research, and support services focused on social justice and digital resilience. The website reflects a medium-sized organization with a clear mission and active engagement through reports, events, and a resource library. Technically, the website is built on WordPress with modern frameworks such as Bootstrap 5 and uses popular libraries like jQuery and FontAwesome. SEO is well implemented with Yoast SEO plugin, and the site is mobile optimized with good performance. Analytics are conducted via Piwik (Matomo), indicating a moderate level of user tracking balanced with privacy considerations. From a security perspective, the site enforces HTTPS and shows no signs of exposed sensitive data or vulnerabilities. However, security headers are not explicitly detected, and there is no visible dedicated security policy or incident response contact, which could be improved. Privacy and cookie policies are present and include consent mechanisms, supporting GDPR compliance. Overall, the website is professional, trustworthy, and safe for general audiences. The lack of WHOIS data is likely due to privacy protection, which is reasonable for this type of organization. Strategic recommendations include enhancing security headers, publishing a formal security policy, and establishing clear incident response contacts to further strengthen trust and compliance.

15
35
25
85
72
75
100
non-profitsocialjusticetechnologydatacivilsociety+2 more
WordPressBootstrap 5jQueryFontAwesome+3
2025-10-08T09:44:00.872Z
kimonix.com favicon

Kimonix LTD

kimonix.com

0
E-commerceN/asmallMEDIUM

Kimonix LTD operates a specialized SaaS platform focused on profit-driven merchandising for eCommerce stores, particularly those using Shopify Plus. Their platform leverages AI to optimize product collections, personalized recommendations, cross-selling, and marketing integrations to boost conversion rates and average order values. The website demonstrates a strong market position with multiple case studies, partner integrations, and customer testimonials, indicating a mature business model targeting Shopify merchants seeking advanced merchandising solutions. Technically, the site is built on Webflow with integrations to Google Analytics, Facebook Pixel, HubSpot, and live chat services, reflecting a modern and well-maintained digital infrastructure. Security posture is generally good with HTTPS and reCAPTCHA usage, though some improvements in security headers and explicit incident response policies are recommended. Privacy compliance is partially addressed with a comprehensive privacy policy but lacks a cookie consent mechanism. The absence of WHOIS data is a notable anomaly that slightly reduces trust but does not negate the professional appearance and operational maturity of the business. Overall, Kimonix presents as a credible and technically competent eCommerce SaaS provider with room for enhanced security and privacy transparency.

30
53
17
80
62
55
100
ecommercemerchandisingshopifysaasai+3 more
WebflowGoogle FontsjQuerySlick Carousel+5

Partner Domains:

shopify.com
partner
klaviyo.com
partner

+1 more partners

2025-10-08T09:42:37.276Z
stikky.app favicon

Stikky

stikky.app

0
TechnologyN/asmallMEDIUM

Stikky is a specialized SaaS provider offering custom mobile app solutions tailored for Shopify stores. The company positions itself as a premium service enabling eCommerce businesses to convert their Shopify stores into branded mobile apps with full data ownership and seamless integration with marketing tools like Klaviyo. The website demonstrates a strong market focus on Shopify merchants seeking enhanced mobile engagement and conversion through native apps. Technically, the site is built on Webflow CMS with modern JavaScript libraries such as Splide.js for UI components and integrates privacy-conscious analytics tools like Plausible and Hotjar. The hosting leverages AWS Cloudfront CDN ensuring fast performance and global availability. Security posture is solid with HTTPS enforced and no visible sensitive data exposure, though the site lacks explicit security headers and published security policies. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR considerations. Business credibility is supported by client case studies and professional design, though direct contact details are not prominently displayed. Overall, the site is trustworthy, well-structured, and technically mature, suitable for its target audience.

60
53
17
85
52
70
100
shopifymobileappe-commercesaascrm+3 more
jQuery 3.5.1Webflow CMSSplide.js (carousel)Hotjar (user behavior analytics)+3

Partner Domains:

livefastdieyoung.com
partner
wearepari.com
partner
2025-10-08T09:42:27.254Z
eepurl.com favicon

Mailchimp

eepurl.com

0
TechnologyN/alargeMEDIUM

EepURL is a legacy URL shortening service developed as part of Mailchimp's marketing platform, specifically for Twitter integration. The service is no longer publicly available but remains functional within Mailchimp's app for existing URLs. The website content is minimal and informational, focusing on explaining the service's status and providing a link to an alternative URL shortener. The domain is well maintained with a reputable registrar and domain protection status, indicating legitimacy and operational continuity within Mailchimp's ecosystem. Technically, the website uses basic HTML and JavaScript with no advanced frameworks or CMS detected. Hosting is likely via Akamai CDN based on nameservers, supporting moderate performance and availability. The site lacks modern security headers and DNSSEC, which are recommended for enhanced security. No analytics or tracking scripts were detected, suggesting minimal user tracking. From a security perspective, the site is accessible without WAF or blocking mechanisms, but it lacks published privacy, cookie, or security policies, which reduces compliance posture. No contact or incident response information is provided, limiting transparency. The domain registration details are consistent with a legitimate business service, with strong registrar-level protections but missing DNSSEC. Overall, the website is safe and trustworthy but basic in content and security features. Strategic improvements include publishing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing contact or incident response information to enhance compliance and trust.

-
50
17
45
52
85
100
urlshorteningmailchimpmarketingtrackingtechnology
JavaScript
2025-10-08T09:41:36.915Z
intellistack.com favicon

Intellistack

intellistack.com

0
TechnologyN/alargeMEDIUM

Intellistack is a technology company specializing in digital workflow automation solutions, offering a suite of products including Intellistack Streamline, Formstack, Formsite, and Open Raven. Their platform focuses on no-code forms, document generation, eSignatures, and contract lifecycle management, targeting businesses seeking to optimize operational efficiency and reduce errors. The website presents a professional and consistent brand image, with clear navigation and relevant content aimed at business users. Technically, the website is built on the Webflow CMS platform, utilizing modern JavaScript libraries such as jQuery and GSAP, and integrates marketing and analytics tools like Google Tag Manager and Osano for cookie consent. The site is mobile-optimized and demonstrates good SEO and accessibility practices. However, explicit security headers are not detected, and no direct contact emails or phone numbers are provided, which could be improved. From a security perspective, the site enforces HTTPS and includes a dedicated security page and cookie consent mechanisms, indicating a mature approach to privacy and security. The absence of WHOIS data for the domain is a notable anomaly that slightly reduces trustworthiness but does not negate the professional presentation and security posture observed. Overall, Intellistack's website reflects a credible and established business with a solid technical foundation and good security hygiene, though improvements in transparency and security header implementation are recommended to enhance trust and compliance.

45
50
2
70
85
85
100
workflowautomationdigitalformsesignaturescontractlifecyclemanagementno-code+2 more
WebflowGoogle Tag ManagerjQueryGSAP ScrollTrigger+2

Partner Domains:

formstack.com
partner
formsite.com
partner

+1 more partners

2025-10-08T09:40:51.815Z
openaire.eu favicon

OpenAIRE

openaire.eu

0
EducationN/alargeMEDIUM

OpenAIRE is a well-established non-profit initiative providing open science infrastructure and services primarily in Europe. It supports researchers, institutions, and funders with tools and platforms that enable open access, data sharing, and scholarly communication. The organization holds a strong market position as a key contributor to the European Open Science Cloud and offers a comprehensive suite of services that cover the full research lifecycle. Technically, the website is built on Joomla! CMS with modern frameworks like UIkit and integrates analytics tools such as Matomo and Google Analytics. The site is mobile-optimized, accessible, and performs moderately well. Security measures include HTTPS enforcement, reCAPTCHA on forms, and cookie consent management, though some security headers could be improved. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is strong, with clear policies and consent mechanisms. The WHOIS data is privacy protected under EURid policy, which is typical for EU domains and does not raise suspicion. Overall, the website demonstrates high professionalism, trustworthiness, and a strong commitment to open science principles. Strategic recommendations include enhancing security headers, publishing a security policy and incident response contacts, and maintaining regular audits of third-party components to sustain security and compliance.

55
83
17
70
62
80
100
openscienceresearchinfrastructureeuropeanopensciencecloudopenaccessopendata+3 more
Joomla! CMSjQueryUIkit frameworkMatomo Analytics+3

Partner Domains:

www.episciences.org
partner
www.zenodo.org
partner
2025-10-08T08:37:48.276Z
ror.org favicon

Research Organization Registry (ROR)

ror.org

0
OtherN/asmallMEDIUM

The Research Organization Registry (ROR) operates as a global, community-led open registry providing persistent identifiers and metadata for research organizations. It is positioned uniquely in the scholarly infrastructure ecosystem, supported by key organizations such as California Digital Library, Crossref, and DataCite. The website offers comprehensive services including a searchable registry, REST API, and data dumps under a CC0 license, targeting research institutions and data managers worldwide. The business model emphasizes open infrastructure and community governance, fostering transparency and collaboration. Technically, the website is built using the Hugo static site generator and leverages modern web technologies such as jQuery, Plyr.js, FontAwesome, and Matomo analytics. Hosting and DNS are managed via AWS infrastructure, ensuring reliable performance and scalability. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, contributing to a fast and user-friendly experience. From a security perspective, the site enforces HTTPS and employs domain status protections to prevent unauthorized changes. However, it lacks DNSSEC and explicit security headers, and does not provide published security or incident response policies. Tracking is minimal and conducted via Matomo, but no cookie consent mechanism is present, which could be improved for GDPR compliance. Overall, the security posture is solid but could benefit from enhanced transparency and technical controls. The overall risk assessment is low, with no indications of malicious activity or content safety concerns. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing security policies, and adding cookie consent mechanisms to strengthen compliance and trust. The website is professional, trustworthy, and well-aligned with its mission to support open research infrastructure.

15
53
2
50
67
80
100
researchopendatapersistentidentifierscommunityregistry+2 more
Hugo static site generatorjQueryPlyr.jsFontAwesome+5
2025-10-08T08:37:38.258Z
castbox.fm favicon

Guru Network

castbox.fm

0
MediaN/alargeMEDIUM

Castbox.fm is a well-established podcast platform founded in 2016, operated by Guru Network. It offers a free podcast app with a vast library of over 259 million audio content volumes, supporting multiple platforms including Android, iOS, Amazon Alexa, Google Home, Carplay, and PC. The website is professionally designed with excellent content quality, clear navigation, and strong branding consistency. It targets podcast listeners and podcasters globally, positioning itself as a leading free podcast app with comprehensive services and tools for both audiences and creators. Technically, the site leverages modern web technologies including React and AWS hosting infrastructure, with progressive web app capabilities and structured data for SEO. The site is mobile-optimized and performs well with good accessibility and SEO practices. Security posture is solid with HTTPS enforced and no visible vulnerabilities, although DNSSEC is not enabled and explicit security headers could be improved. Privacy and cookie policies are present and GDPR compliant, enhancing user trust. Overall, the security posture is good but could benefit from publishing a dedicated security policy and incident response contacts. The domain registration is consistent and trustworthy, with no suspicious patterns. The site maintains a high level of professionalism and trustworthiness, with no adult or explicit content detected, making it safe for general audiences.

30
73
60
80
77
70
100
podcastmediastreamingaudiomobileapp+1 more
React (indicated by chunked CSS and JS files)AWS (name servers ns-101.awsdns-12.com etc.)PWA (manifest.json present)OpenSearch+1
2025-10-08T08:36:22.451Z
safeopt.com favicon

SafeOpt

safeopt.com

0
E-commerceN/amediumMEDIUM

SafeOpt operates as a digital platform providing verified deals and exclusive savings from popular brands to millions of shoppers. The business model centers on affiliate marketing and personalized offer delivery via email, targeting online consumers seeking discounts without the need for apps or browser extensions. The website demonstrates a strong market position with partnerships from well-known brands and a significant user base saving over $50 million. Technically, the website employs modern web technologies including React-based frameworks, Wistia for video content, and Sentry for error tracking. Hosting is managed via AWS infrastructure, ensuring reliable performance and fast loading times. The site is mobile-optimized and accessible, with good SEO practices and clear navigation. From a security perspective, the site enforces HTTPS and employs secure form handling, though it lacks DNSSEC and explicit security headers. Privacy policies are comprehensive and GDPR compliant, but cookie consent mechanisms are absent. No direct contact emails or phone numbers are publicly listed, relying instead on contact forms. The domain registration is consistent with the business age and shows no suspicious patterns. Overall, SafeOpt presents a professional, trustworthy, and secure online presence with minor areas for improvement in DNS security and cookie consent. The risk profile is low, and the platform is well-positioned for continued growth in the e-commerce savings market.

45
58
2
87
52
85
100
dealsdiscountssavingsshoppingcoupons+3 more
JavaScriptWistia video playerSentry error trackingAWS DNS hosting

Partner Domains:

addshoppers.com
partner
safeopt.org
partner
2025-10-08T08:33:51.332Z
joomla.org favicon

Open Source Matters, Inc.

joomla.org

0
TechnologyN/alargeMEDIUM

Joomla.org represents the official website for Joomla!, a widely recognized open source content management system (CMS) established in 2005 and maintained by Open Source Matters, Inc. The platform empowers website creators with a flexible, mobile-friendly, and extensible CMS solution supported by a large global community. Joomla offers downloads, free hosted sites, training, certification, and a rich ecosystem of extensions and templates. The website reflects a mature and professional presence with consistent branding and comprehensive content aimed at developers, site administrators, and community members. Technically, the site leverages modern web technologies including Joomla CMS, Bootstrap 5, FontAwesome, Google Fonts, and various JavaScript libraries. It is hosted by Rochen and integrates analytics tools such as Google Analytics and Pingdom RUM for performance monitoring. The site is mobile-optimized, accessible, and SEO-friendly, providing a fast and user-friendly experience. From a security perspective, Joomla.org enforces HTTPS and employs CSRF tokens in forms, with regular security announcements published. However, explicit HTTP security headers and a dedicated security policy or incident response contact are not evident, representing areas for improvement. The WHOIS data is unavailable or malformed, limiting domain registration trust verification, but the website's content and ecosystem strongly support its legitimacy. Overall, Joomla.org demonstrates a strong digital maturity and business credibility with minor gaps in security transparency and WHOIS data availability. Strategic enhancements in security policy publication and domain registration transparency would further strengthen trust and compliance.

95
68
2
70
75
85
100
cmsopensourcejoomlatechnologycommunity+1 more
Joomla CMSBootstrap 5.3.3FontAwesomeGoogle Fonts (Open Sans)+5

Partner Domains:

elasticemail.com
partner
scalahosting.com
partner

+3 more partners

2025-10-08T08:33:15.599Z
getsitecontrol.com favicon

Getsitecontrol

getsitecontrol.com

0
TechnologyN/amediumMEDIUM

Getsitecontrol is a mature SaaS company founded in 2013, specializing in smart widgets for email marketing, popups, and automation tailored primarily for ecommerce businesses and marketers. The company offers a comprehensive suite of tools including email campaigns, contact management, and automated workflows, positioning itself as a reliable and user-friendly solution in the digital marketing space. The website reflects a professional and polished brand with strong customer testimonials and industry awards, indicating a solid market position. Technically, the website employs modern JavaScript frameworks, integrates with popular platforms like Shopify, and uses advanced analytics and error tracking tools such as Google Tag Manager, Yandex Metrika, and Sentry. The site is well-optimized for mobile devices, fast loading, and SEO-friendly, demonstrating a high level of digital maturity. Hosting and DNS services are managed via Cloudflare, ensuring performance and security. From a security perspective, the site enforces HTTPS with strong domain registration protections but lacks DNSSEC and explicit security headers, which are recommended for enhanced security. No critical vulnerabilities or exposed sensitive data were found. Privacy compliance is partially addressed with a comprehensive privacy policy and terms of service, but the absence of a cookie consent mechanism is a notable gap. Contact information is clearly provided, and customer support is accessible via chat and email. Overall, Getsitecontrol presents a trustworthy and professional online presence with strong business credibility and technical implementation. Strategic improvements in privacy compliance and security headers would further enhance its security posture and regulatory adherence.

15
53
2
75
75
80
100
emailmarketingpopupsecommerceautomationwidgets+2 more
JavaScriptGoogle Tag ManagerYandex MetrikaSentry (error tracking)+1

Partner Domains:

getform.com
partner
themes.shopify.com
partner

+1 more partners

2025-10-08T07:26:46.733Z
githack.com favicon

Pavel Puchkin

githack.com

0
TechnologyN/asmallMEDIUM

raw.githack.com is a specialized content delivery network service designed to serve source code files from popular Git hosting platforms such as GitHub, Bitbucket, GitLab, Gitea, and Codeberg. The service is operated by Pavel Puchkin and leverages Cloudflare's CDN infrastructure to provide fast, reliable, and optimized delivery of source code assets. The website offers URLs tailored for production use with permanent caching and development use with near real-time updates, targeting developers and software teams who require efficient source code file hosting and delivery. Technically, the website is well-implemented with modern HTML5, CSS, and JavaScript technologies, including third-party libraries like clipboard.js and integration with Cloudflare Insights for analytics. The site is mobile-optimized and performs well, with a clean and consistent design. However, it lacks explicit privacy, cookie, and terms of service policies, which impacts compliance and user trust. No contact information or security incident response details are provided, limiting transparency. From a security perspective, the site benefits from HTTPS enforced by Cloudflare and uses Cloudflare's CDN for DDoS protection. There are no visible security vulnerabilities or exposed sensitive data. However, the absence of security headers and vulnerability disclosure mechanisms suggests room for improvement in security best practices. The WHOIS data for the domain raw.githack.com is unavailable, indicating the domain may be unregistered or a special subdomain, which slightly reduces trustworthiness but does not negate the legitimacy of the service based on website content. Overall, raw.githack.com presents a niche, developer-focused CDN service with solid technical infrastructure and good performance. To enhance trust and compliance, the operator should consider publishing privacy and cookie policies, providing contact and security incident information, and improving security headers. The domain WHOIS ambiguity warrants monitoring but does not currently indicate malicious intent.

15
50
2
70
65
80
100
cdnsourcecodegithubcloudflaredevelopertools+1 more
HTML5CSSJavaScriptCloudflare CDN+2
2025-10-08T07:26:41.715Z