Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 16 of 579|Showing 751-800 of 28909
golangweekly.com favicon

Cooperpress

golangweekly.com

0
TechnologyN/asmallCRITICAL

Golang Weekly is a niche technology newsletter focused on the Go programming language, published by Cooperpress. It targets developers and enthusiasts interested in Go, providing weekly curated content and an RSS feed. The business model centers on subscription-based newsletter distribution, with a long-standing presence since 2012, indicating stable market positioning within its niche. The website branding is consistent and professional, supporting trust and engagement within its target audience. Technically, the website employs modern web technologies including Google Analytics, Google Tag Manager, and Cloudflare Turnstile CAPTCHA for form security. DNS hosting is managed via DNSimple, and the site uses standard HTML5, CSS, and JavaScript. Mobile optimization and SEO practices are good, though accessibility is basic. Performance is moderate, with no major technical debt or CMS detected. From a security perspective, the site uses HTTPS (implied by Google Analytics and Turnstile usage), includes CSRF protection on forms, and employs CAPTCHA to mitigate spam. However, DNSSEC is not enabled, and no explicit security headers or incident response policies are published. Privacy compliance is partially addressed with clear privacy and GDPR policies, but no cookie consent mechanism is present despite tracking scripts. No vulnerabilities or suspicious content were detected. Overall, the website presents a low-risk profile with good business credibility and technical implementation. Strategic improvements in security headers, cookie consent, and incident response transparency would enhance its security posture and compliance maturity.

-
-
-
-
-
-
-
newslettergolangprogrammingtechnologysubscription
Google AnalyticsGoogle Tag ManagerCloudflare Turnstile CAPTCHADNSimple DNS hosting+3
2025-10-31T07:22:48.928Z
gewexevents.org favicon

Global Energy and Water cycle Exchanges (GEWEX)

gewexevents.org

0
EnergyN/asmallHIGH

The Global Energy and Water cycle Exchanges (GEWEX) website serves as an informational and event platform for a core project under the World Climate Research Programme (WCRP). It focuses on scientific research related to Earth's water and energy cycles, providing resources, reports, and organizing meetings and webinars for the scientific community. The site targets researchers and professionals in climate science and related fields, positioning itself as a reputable non-profit scientific network. Technically, the website is built on WordPress 6.7.4, utilizing jQuery and Google Tag Manager for analytics. The site is moderately optimized for performance and mobile use, with basic accessibility and SEO features. Security is enforced through HTTPS, but lacks advanced security headers and cookie consent mechanisms, which could be improved for better compliance and protection. From a security perspective, the site shows no signs of vulnerabilities or malicious content. However, the absence of WHOIS data due to privacy or registry restrictions limits full domain trust verification. Contact information is clearly provided, and the site maintains a professional appearance with consistent branding and affiliation to recognized organizations. Overall, the website is trustworthy and serves its purpose well, but could benefit from enhanced privacy compliance and security best practices to strengthen its posture and user trust.

15
53
2
60
62
80
20
climateenergywatercyclescientificresearchevents+2 more
jQueryGoogle Tag ManagerWordPress 6.7.4

Partner Domains:

www.gewex.org
partner
www.wcrp-climate.org
partner
2025-10-31T07:21:43.733Z
clesto.com favicon

Codalex AB

clesto.com

0
OtherN/asmallHIGH

Clesto.com is a niche website dedicated to promoting and providing access to the Clesto board game, a simplified and engaging chess variant themed around jungle animals. The site offers educational content including rules, videos, notation, and an online play option, targeting children, teens, and adults interested in strategy games. The business behind the site is Codalex AB, a small entity with a domain registration dating back to 2006, indicating a stable online presence. Technically, the website is built on a simple HTML/CSS/JavaScript stack with Google Fonts and hosted behind Cloudflare DNS services. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. However, it lacks advanced technical frameworks or CMS beyond the N.nu generator. Performance is moderate, and accessibility is basic. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which are recommended for enhanced protection. No privacy or cookie policies are present, representing a compliance gap with GDPR and other privacy regulations. No contact or incident response information is provided, limiting transparency. The presence of a third-party tracking script (Redistats) indicates moderate user tracking without clear privacy disclosures. Overall, the website is functional and trustworthy with a good business credibility score but requires improvements in privacy compliance and security best practices to enhance user trust and regulatory adherence.

15
35
2
40
57
70
100
boardgamestrategygamechessvariantfamilygameonlineplay+3 more
HTML5CSS3Google Fonts (Merienda)JavaScript
2025-10-31T06:48:26.949Z
hostedpiwik.de favicon

Sign in - Matomo

hostedpiwik.de

0
TechnologyN/asmallMEDIUM

The website hostedpiwik.de serves as a login portal for the Matomo hosted analytics platform, a free/libre web analytics service. It primarily targets website owners and administrators who use Matomo for tracking and analyzing web traffic. The business model is SaaS-based, providing hosted analytics services leveraging the Matomo platform. The site is technically built using AngularJS and jQuery, hosted on German infrastructure, and employs HTTPS for secure communications. However, the site content is minimal, focusing solely on user authentication without public-facing business or legal information. From a security perspective, the site enforces HTTPS and includes basic anti-framing measures to prevent clickjacking. The login form uses POST method and includes nonce tokens, indicating some protection against CSRF. However, the absence of security headers and visible privacy or cookie policies indicates room for improvement in security posture and compliance. No WAF or blocking mechanisms were detected, and no vulnerabilities were apparent from the content. Overall, the site demonstrates a moderate level of technical maturity but lacks comprehensive privacy, security, and business transparency information. This limits trust and compliance confidence. Strategic improvements in security headers, privacy disclosures, and contact information would enhance the site's credibility and compliance stance.

35
25
25
70
72
60
100
analyticsmatomologinwebanalyticsprivacy
AngularJS (ng-app)jQuery (jquery.placeholder.js)Matomo analytics platformJavaScript+1
2025-10-31T06:34:00.002Z
esep-support.eu favicon

European School Education Platform Support

esep-support.eu

0
EducationN/amediumMEDIUM

The European School Education Platform Support website serves as an official support portal for the European School Education Platform, targeting school teachers and education professionals across Europe. It offers a comprehensive set of guides, knowledgebase articles, and release announcements to assist users in navigating and utilizing the platform effectively. The site is multilingual, supporting a wide range of European languages, enhancing accessibility for its diverse audience. The business model focuses on providing informational and support services rather than direct commercial transactions. Technically, the website is built on the DeskPRO helpdesk platform, leveraging modern web technologies including FontAwesome, Google Fonts, and polyfills for broad browser compatibility. The hosting provider is OVH SAS, a reputable European hosting company. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate. The technical infrastructure is solid but could benefit from additional security headers and enhanced privacy compliance features. From a security perspective, the site enforces HTTPS and uses secure login forms, indicating a baseline security posture. However, it lacks explicit security headers such as Content Security Policy and HSTS, and does not provide publicly accessible security policies or vulnerability disclosure mechanisms. No direct contact emails or phone numbers are provided, limiting direct communication channels. There are no signs of tracking or advertising scripts, which supports user privacy but also indicates limited analytics usage. Overall, the website is trustworthy and professional, serving its educational support purpose well. The main risks relate to the absence of privacy and cookie policies, lack of explicit security headers, and missing incident response information. Addressing these gaps would enhance compliance and security posture, further strengthening user trust and regulatory alignment.

60
10
17
60
52
80
100
educationsupporthelpdeskknowledgebaseguides+1 more
DeskPRO HelpcenterFontAwesomeGoogle FontsCSS Vars Ponyfill+3
2025-10-31T06:17:08.263Z
hoversignal.com favicon

hoversignal

hoversignal.com

0
TechnologyN/asmallHIGH

Hoversignal is a technology-focused SaaS provider specializing in HTML widgets and marketing apps designed to boost website conversion rates without requiring coding expertise. The platform targets website owners, marketers, and e-commerce businesses, offering gamified pop-ups, quizzes, social proof notifications, and chat integrations. With over 10,000 companies using their solutions, Hoversignal positions itself as a practical tool for lead generation and visitor engagement. Technically, the website employs a modern tech stack including Google Analytics, Facebook Pixel, Quora Pixel, and Yandex Metrika for analytics and tracking. It uses Cloudflare for DNS and likely CDN services, ensuring good SSL configuration and domain security. The site is mobile-optimized and features lazy loading for performance, though accessibility and SEO optimizations are basic. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks visible security headers and DNSSEC. There is no published privacy or cookie policy, nor clear contact information for security incidents, which are gaps in compliance and transparency. The extensive use of tracking pixels without a consent mechanism indicates potential privacy compliance issues. Overall, the website is professionally designed and functional with moderate trustworthiness. Key recommendations include publishing privacy and cookie policies, implementing security headers, enabling DNSSEC, and providing clear contact channels for incident response to enhance security posture and compliance.

35
35
2
70
72
70
20
marketingwidgetsconversionleadgenerationsaas+2 more
Google AnalyticsGoogle Tag ManagerFacebook PixelQuora Pixel+4
2025-10-31T05:55:34.840Z
Z

Edge IP Restricted | zolldatasystems.eu | Cloudflare

zolldatasystems.eu

0
OtherN/asmallHIGH

The website zolldatasystems.eu is currently inaccessible due to a Cloudflare Edge IP Restriction error (Error 1034), indicating that the IP address resolved by DNS is not authorized by the website owner. This results in a complete block of content, preventing any meaningful analysis of the website's business, services, or policies. The only visible content is a Cloudflare error page with no business or contact information, privacy policies, or terms of service. The domain is registered through CSC CORPORATE DOMAINS INC., a reputable registrar, but no registrant details are publicly available, limiting trust assessment. From a technical perspective, the site relies on Cloudflare for DNS and security, but the current misconfiguration or restriction severely impacts accessibility and user experience. No SEO, accessibility, or performance data can be derived from the blocked page. Security posture cannot be fully assessed due to lack of content and headers. Privacy compliance is absent as no policies or consent mechanisms are present. Overall, the site is currently non-functional for visitors and lacks publicly available business or security information. This poses a high risk for trust and credibility. Immediate remediation of DNS and IP configuration is recommended to restore access and enable full security and compliance evaluation.

35
10
2
70
57
70
100
cloudflarewafedgeiprestrictionerror1034
Cloudflare
2025-10-31T05:54:09.609Z
tomshardware.com favicon

Tom's Hardware

tomshardware.com

0
TechnologyN/alargeLOW

Tom's Hardware is a well-established technology media brand focused on providing in-depth reviews, news, and guides related to PC hardware and technology enthusiasts. The website targets hardcore PC enthusiasts, gamers, and technology consumers seeking expert advice on hardware purchases and PC builds. The business model primarily revolves around advertising and content publishing, supported by a strong digital presence and social media engagement. Technically, the website employs modern web technologies including JavaScript frameworks, Google Tag Manager, and a content delivery network (Future CDN). The site is mobile-optimized and demonstrates good SEO and accessibility practices. Performance is moderate with room for optimization. The CMS appears proprietary or custom, inferred from CDN URLs. From a security perspective, the site enforces HTTPS and uses common third-party scripts responsibly. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not clearly present, which could be improved. No direct incident response or security policy information is publicly available, which is a gap for transparency. WHOIS data is not publicly available, likely due to privacy protection, which slightly reduces trust but is common for media companies. Overall, Tom's Hardware presents a professional, trustworthy, and content-rich platform with a solid technical foundation. Strategic improvements in security header implementation and public security policy disclosure would enhance its security posture and trustworthiness.

65
85
47
85
72
85
100
technologypchardwarereviewsnewsgaming+1 more
JavaScriptGoogle Tag ManagerMarfeel SDKVanilla JS framework+2
2025-10-31T05:48:29.349Z
escardio.org favicon

European Society of Cardiology

escardio.org

0
HealthcareN/alargeMEDIUM

The European Society of Cardiology (ESC) is a leading independent, nonprofit organization dedicated to reducing the burden of cardiovascular disease through education, research, and advocacy. The website serves as a comprehensive platform for cardiology professionals, offering access to guidelines, congresses, eLearning, and community engagement. The ESC maintains a strong market position as a trusted authority in cardiovascular health across Europe and globally. Technically, the website is built on a robust infrastructure using modern web technologies including Bootstrap for responsive design, and integrates multiple analytics and marketing tools such as Google Analytics, Microsoft Clarity, and Adobe DTM. The site is hosted with performance and security in mind, leveraging Akamai CDN and enforcing HTTPS with strong security headers. From a security perspective, the ESC website demonstrates good practices including HTTPS enforcement, cookie consent management via OneTrust, and no visible vulnerabilities or exposed sensitive data. However, there is an opportunity to enhance transparency by publishing a dedicated security policy and vulnerability disclosure information. Overall, the ESC website is a professional, secure, and user-friendly platform that effectively supports its mission. Strategic recommendations include improving security transparency, maintaining up-to-date third-party scripts, and enhancing accessibility features to further strengthen trust and compliance.

20
65
17
70
52
70
100
cardiologyhealthcarenon-profitmedicaleducationcardiovasculardisease
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics+6

Partner Domains:

esc365.escardio.org
partner
escelearning.escardio.org
partner
2025-10-31T05:37:16.838Z