Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2 of 579|Showing 51-100 of 28937
M

Midasbuy Top-Up Center

midasbuy.com

0
OtherN/asmallMEDIUM

The website 'Midasbuy Top-Up Center' appears to be a digital platform focused on providing top-up services, likely for gaming or digital content. The site uses modern web technologies such as React and JavaScript, with resources served from a dedicated CDN. However, the content is minimal and primarily a JavaScript application shell, with no visible textual content or detailed business information on the analyzed page. The absence of privacy, cookie, and terms of service policies, as well as contact information, limits the transparency and trustworthiness of the site. From a technical perspective, the site demonstrates moderate digital maturity with a modern tech stack and mobile optimization. However, there is no evidence of security headers or SSL configuration details in the provided data, which are critical for secure operations. The WHOIS data is notably missing or unavailable, which raises concerns about the domain's legitimacy and registration status. Security posture is weak due to the lack of visible security best practices and policies. No forms or data collection mechanisms were detected, reducing immediate risk but also limiting user engagement features. Overall, the site is accessible without WAF or security challenges but lacks critical compliance and trust indicators. The overall risk assessment suggests caution due to the missing WHOIS data and lack of compliance documentation. Strategic recommendations include implementing comprehensive privacy and cookie policies, publishing contact and incident response information, enhancing security headers and SSL configuration, and improving transparency around domain registration and business identity.

30
50
2
70
62
55
100
top-upgamingpaymentreactjavascript
JavaScriptReact
2026-02-02T10:59:42.326Z
T

Textideo

textideo.com

0
TechnologyN/asmallMEDIUM

Textideo is a technology company specializing in AI-powered video generation tools tailored for content creators and influencers. The platform offers a wide range of AI models and creative tools to transform text, images, and videos into professional-quality content suitable for social media platforms like YouTube, TikTok, and Instagram. The company appears to be a new entrant in the AI content creation space, founded in 2025, with a modern and professional web presence. Technically, the website is built using modern frameworks such as Next.js and leverages Cloudflare for DNS and likely CDN services. It integrates analytics and tracking tools like Google Tag Manager and Microsoft Clarity, indicating a mature digital marketing approach. The site is well-optimized for performance and mobile devices, with rich multimedia content and clear navigation. From a security perspective, the site uses HTTPS and has domain transfer protections enabled. However, it lacks DNSSEC and does not publish security headers or explicit security policies. Privacy compliance is weak, with no visible privacy or cookie policies or consent mechanisms, which could pose regulatory risks. Overall, Textideo presents a credible and professional AI technology business with strong technical infrastructure but needs to improve privacy compliance and security transparency to enhance trust and regulatory adherence.

65
53
17
70
54
70
100
aivideogeneratorcontentcreationinfluencerstechnology+3 more
React (Next.js)Cloudflare DNSGoogle Tag ManagerMicrosoft Clarity+2
2026-01-12T07:44:34.594Z
K

Kaspars Kusiņš

kaskus.me

0
TechnologyN/asmallMEDIUM

The website is a personal cybersecurity portfolio belonging to Kaspars Kusiņš, focusing on showcasing the latest cybersecurity vulnerabilities (CVEs) and security insights. It targets cybersecurity professionals and enthusiasts by providing real-time CVE data and research content. The site is built with modern web technologies and emphasizes secure data transmission via HTTPS and a valid SSL certificate. The business model is informational and portfolio-based, with no commercial transactions or services offered directly on the site. Technically, the site uses standard HTML5, CSS3, and JavaScript with external resources such as Google Fonts and Font Awesome icons. It does not rely on a CMS or major frameworks, indicating a lightweight and custom-built platform. Performance is moderate with good mobile optimization and basic accessibility features. SEO optimization is basic but present through meta tags and structured content. From a security perspective, the site benefits from HTTPS and SSL but lacks advanced security headers and formal security policies such as privacy, cookie, or incident response policies. No contact information or vulnerability disclosure mechanisms are provided, which limits transparency and user trust. The WHOIS data shows privacy protection but contains a suspicious future domain creation date, which reduces domain trustworthiness. Overall, the website is a well-designed personal portfolio with good content quality and security basics but lacks formal compliance and business credibility elements. Strategic improvements in privacy compliance, contact transparency, and domain registration legitimacy would enhance trust and security posture.

15
35
47
70
57
70
100
cybersecuritycveportfoliosecurityresearchvulnerability
HTML5CSS3JavaScriptGoogle Fonts (Space Grotesk, Fira Code)+2
2025-12-07T22:16:11.799Z
nauda.money favicon

Nauda

nauda.money

0
FinanceN/asmallMEDIUM

Nauda is a fintech company focused on providing streamlined financial services tailored for freelancers and small to medium enterprises (SMEs). Their platform offers multi-currency business accounts, efficient international payment solutions, and business loans up to £500,000, positioning themselves as a cost-effective alternative to traditional banks. The website reflects a professional and consistent brand image with clear service descriptions and pricing plans, targeting startups and SMEs globally. Technically, the website is built on the Webflow platform, utilizing modern frontend technologies including jQuery. It is mobile-optimized and provides a good user experience with clear navigation and responsive design. However, the site lacks visible advanced security headers and explicit incident response or security policies, which are important for fintech platforms handling sensitive financial data. From a security perspective, the site uses HTTPS (implied by Webflow hosting), has a cookie consent mechanism, and no exposed sensitive data was found in the HTML. The absence of WHOIS registrant data suggests privacy protection, which is common and justified for fintech businesses. No signs of WAF blocking or malicious content were detected. Overall, the security posture is moderate but could be improved by implementing stronger HTTP security headers and publishing security policies. The overall risk assessment is moderate with no critical issues detected. Strategic recommendations include enhancing security headers, publishing incident response and vulnerability disclosure policies, and improving accessibility compliance. These steps will strengthen trust and compliance, critical for fintech customer confidence and regulatory adherence.

15
68
2
85
47
75
100
fintechbusinessaccountmulti-currencypaymentsbusinessloans+2 more
WebflowjQuery 3.5.1
2025-12-03T16:27:12.495Z
6

6E

6epeople.com

0
TechnologyN/asmallMEDIUM

6E operates as an invite-only referral network focused on trust-first hiring, targeting employers and senior professionals who act as referrers. The business model emphasizes paying only for successful hires and rewarding credible referrers, positioning itself as a niche player aiming to disrupt traditional and algorithmic hiring methods. The website content is professional, well-structured, and mobile responsive, with clear navigation and a modern design aesthetic. Technically, the site is built with standard HTML5 and CSS3, uses Google Fonts for typography, and is hosted on Amazon AWS infrastructure. The site lacks advanced frameworks or CMS indications and does not include analytics or tracking scripts, reflecting a minimalistic technical footprint. Performance is moderate with good mobile optimization but basic accessibility features. From a security perspective, the site uses HTTPS (implied by domain registrar and hosting), but lacks DNSSEC and security headers, which are recommended for enhanced protection. No forms or sensitive data collection points were detected, reducing immediate risk exposure. Privacy compliance is partial, with a privacy policy and terms of service present but no cookie consent mechanism or GDPR compliance indicators. WHOIS data shows inconsistencies, notably a future domain creation date, which raises questions about domain legitimacy. Overall, the website presents a moderate risk profile with good business credibility but technical and compliance improvements needed. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent, and clarifying domain registration details to enhance trust and security posture.

70
53
2
60
52
60
40
hiringreferralnetworktrustrecruitmenttechnology
HTML5CSS3Google Fonts (Inter)AWS DNS
2025-12-03T16:24:54.922Z
canarylabs.eu favicon

canarylabs.eu

canarylabs.eu

0
TechnologyN/asmallMEDIUM

The website mstdn.canarylabs.eu is an independent Mastodon social networking instance branded as Canary Labs Mastodon, focusing on technology and tech policy discussions primarily in Europe. It operates as a small community-driven platform with a niche audience interested in tech and policy topics. The site uses Mastodon version 4.5.2, indicating a modern and actively maintained platform. The content is minimal currently, with no trending posts visible, reflecting a small user base. The site is accessible without any WAF or blocking mechanisms, and it uses HTTPS as implied by the URL scheme. From a technical perspective, the site employs modern web technologies including React-based JavaScript modules and SVG icons. The platform is mobile-optimized with basic accessibility and SEO features. However, there is room for improvement in security headers and privacy compliance mechanisms. The privacy policy is present but basic, with no cookie consent or terms of service pages detected. No contact emails or phone numbers are publicly available, limiting direct communication channels. Security posture is moderate; HTTPS is used but no explicit security headers were detected in the provided data. The absence of exposed sensitive data or vulnerable libraries is positive, but the site would benefit from implementing additional security best practices such as CSP and HSTS headers. The WHOIS data is not publicly available, likely due to privacy protection, which is common for small independent servers. This does not raise immediate concerns given the site's nature and branding consistency. Overall, the site presents a trustworthy but small-scale community platform with basic technical and security implementations. Strategic recommendations include enhancing security headers, publishing comprehensive privacy and terms policies, adding cookie consent mechanisms, and improving accessibility and SEO to increase professionalism and user trust.

75
33
17
70
72
75
40
mastodonfediversetechnologysocialnetworkprivacy+1 more
Mastodon 4.5.2Ruby on Rails (implied)React (implied by JS modules)SVG icons+1
2025-12-02T17:17:53.198Z
I

Visitor anti-robot validation

izaugsmeskvartals.lv

0
OtherN/asmallHIGH

The website izaugsmeskvartals.lv currently serves as a security checkpoint page implemented by BitNinja, requiring visitors to complete a CAPTCHA challenge before accessing the actual content. This indicates the site is protected by a Web Application Firewall (WAF) or security service to mitigate automated bot traffic and potential cyber threats. The visible content is minimal and focused solely on bot validation, with no business or contact information presented. The site uses outdated CMS technologies (Joomla 1.5 and WordPress 2.5) which may pose security risks if the actual site behind the CAPTCHA uses these versions. The technical infrastructure includes Google Analytics and Google Tag Manager for tracking, and reCAPTCHA for bot mitigation. Hosting appears to be managed via areait.lv nameservers. Security headers are not evident in the HTML content, and no privacy or cookie policies are found, indicating compliance gaps. Overall, the site’s security posture is moderate due to the CAPTCHA protection but weakened by outdated CMS references and lack of visible security best practices. Business credibility and privacy compliance are low due to absence of business data and policies. The domain WHOIS data shows active status with consistent nameservers but lacks registrant details, limiting trust assessment. Strategic recommendations include updating CMS platforms, implementing security headers, publishing privacy and cookie policies, and providing clear contact and incident response information.

20
10
17
85
57
60
100
captchasecuritybotprotectionbitninjaanti-robot+1 more
JavaScriptGoogle AnalyticsreCAPTCHA
2025-12-01T21:40:10.070Z
bilic.io favicon

bilic

bilic.io

0
FinanceN/asmallMEDIUM

Bilic is a technology company specializing in AI-driven agents designed to enhance finance security and compliance processes. Their platform leverages advanced AI, including Large Language Models, to automate and improve transaction monitoring, customer due diligence, risk assessment, anti-money laundering compliance, fraud detection, and regulatory checks. The company positions itself as an innovative player in the finance compliance sector, supported by notable partners such as AWS and Barclay. The website presents a professional and consistent brand image with clear messaging targeted at financial institutions and compliance professionals. Technically, the website is built using modern web technologies including React, Bootstrap, and integrates third-party services like Calendly for demos, Hotjar for analytics, and Google Tag Manager. The site is mobile optimized and performs moderately well, with good SEO and accessibility basics. Security posture is solid with HTTPS enforced and secure form handling, though some security headers are missing and no explicit security policy or incident response information is provided. Overall, the security posture is good with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with comprehensive privacy, cookie, and terms policies, including a cookie consent mechanism. The lack of WHOIS registrant data is mitigated by the professional site presentation and active social presence, indicating a legitimate and privacy-conscious startup. Strategic recommendations include enhancing security headers, publishing explicit security and incident response policies, and adding a vulnerability disclosure mechanism to further strengthen trust and compliance.

30
83
2
40
52
75
100
aifinancecompliancesecurityaml+3 more
Bootstrap 5.1.3Font Awesome 6.1.1AOS (Animate On Scroll)Animate.css+3
2025-11-16T15:42:36.831Z
tria.ge favicon

Recorded Future

tria.ge

0
TechnologyN/amediumMEDIUM

Recorded Future Triage is a specialized cybersecurity service offering a malware analysis sandbox designed for security professionals to dissect malware samples, track malware trends, and classify threats. The platform supports high-volume sample submissions and provides public reports, positioning itself as a valuable tool in the cybersecurity threat intelligence market. The website reflects a mature business with a domain age consistent with its founding in 2014 and is part of the Recorded Future brand. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates Google reCAPTCHA for security on its login forms. Hosting and DNS services are provided via Cloudflare, ensuring good performance and security. The site is mobile optimized and SEO friendly, though accessibility features are basic. Security best practices such as HTTPS, CSRF tokens, and CAPTCHA are implemented, but additional security headers and explicit security policies could enhance the posture. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is evident with a cookie consent banner and privacy policy, though direct contact information and incident response details are not publicly available. The site maintains a professional appearance with consistent branding and trustworthy external links. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing security headers, publishing a security policy, and providing clearer contact channels for incident response to further improve trust and compliance.

85
68
2
70
32
55
100
malwareanalysissandboxcybersecurityrecordedfuture+2 more
HTML5CSS3JavaScriptGoogle reCAPTCHA+2

Partner Domains:

therecord.media
partner
www.recordedfuture.com
parent
2025-11-13T08:06:14.501Z
devlat.eu favicon

devlat.eu Webmail :: Welcome to devlat.eu Webmail

devlat.eu

0
TechnologyN/asmallMEDIUM

The website webmail.devlat.eu serves as a webmail login portal for the devlat.eu domain, providing users with access to their email accounts via a Roundcube webmail interface. The site is minimalistic, focusing solely on authentication functionality without additional business or marketing content. The target audience is primarily users of the devlat.eu email service. The business model is straightforward, offering webmail access as part of the domain's email hosting services. From a technical perspective, the site uses a standard open-source webmail platform (Roundcube) with common web technologies such as jQuery and Bootstrap. The site appears to be mobile-optimized and functional, though it lacks advanced SEO and accessibility features. Performance is moderate based on the technology stack and page complexity. Security posture shows some basic best practices such as CSRF token usage in forms and implied HTTPS usage. However, no explicit security headers (CSP, HSTS, etc.) were detected in the provided data, and no privacy or cookie policies are present. The absence of contact or incident response information limits transparency and user trust. No WAF or blocking mechanisms were detected, indicating open accessibility. Overall, the site is functional for its purpose but lacks comprehensive security and privacy compliance features. The domain WHOIS data is unavailable due to EURid privacy policies, which is common but reduces transparency. Strategic recommendations include implementing security headers, publishing privacy and cookie policies, and providing contact/security incident response information to improve trust and compliance.

45
25
2
60
67
80
100
webmailemailloginroundcubedevlateu
JavaScriptjQueryBootstrapRoundcube Webmail
2025-11-08T13:33:54.687Z
pentester.com favicon

Pentester LLC

pentester.com

0
TechnologyN/asmallMEDIUM

Pentester LLC operates a cybersecurity software platform specializing in penetration testing and web vulnerability scanning. The company offers a paid software product priced at $49.99 USD, targeting security professionals and IT teams seeking to secure their digital assets. The website is professionally designed using modern technologies such as Gatsby and React, ensuring fast performance and good mobile optimization. The presence of structured data and a comprehensive cookie consent mechanism demonstrates digital maturity and privacy awareness. From a security perspective, the website enforces HTTPS and employs security best practices including Google reCAPTCHA v3 and domain registrar locks. However, DNSSEC is not enabled, and there is no publicly visible security policy or incident response contact information, which could be improved. The site integrates multiple third-party marketing and analytics tools, resulting in extensive user tracking but with appropriate cookie consent controls. Overall, the website presents a trustworthy and professional image with a solid technical foundation. The domain registration history supports the legitimacy of the business. Strategic recommendations include enabling DNSSEC, publishing clear security and incident response policies, and adding terms of service to enhance legal clarity and user trust.

25
83
47
85
42
85
100
penetrationtestingcybersecuritywebvulnerabilityscannersecuritysoftwarepenetrationtestingsoftware+3 more
Gatsby 5.12.9ReactGoogle reCAPTCHA v3Cloudflare DNS
2025-11-07T10:30:29.902Z
habitatlearn.com favicon

Habitat Learn Group

habitatlearn.com

0
EducationN/asmallMEDIUM

Habitat Learn Group operates a professional website focused on delivering accessible educational technology solutions. Their offerings include note taking, transcription, live captioning, and AI-enhanced learning tools designed under Universal Design for Learning principles. The company targets educational institutions and businesses seeking to remove learning barriers and enhance inclusivity. The website demonstrates a consistent brand identity and good content quality, emphasizing accessibility and compliance with standards such as AODA and ADA. The presence of ISO 27001 certification further supports their commitment to security and data protection. Technically, the website is built on the Webflow platform, utilizing modern web technologies including Google Fonts, Intercom for customer engagement, and Google Tag Manager for analytics. The site is mobile optimized and shows good SEO and accessibility practices. Security posture is strong with HTTPS enforced and no visible vulnerabilities, though security headers could be improved. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. The WHOIS data is unavailable, which introduces some uncertainty regarding domain registration legitimacy. However, the professional presentation, certifications, and external social media presence mitigate concerns. No direct contact emails or phone numbers are listed, with contact primarily via web forms. No adult or inappropriate content is present, making the site safe for general audiences. Overall, Habitat Learn presents as a credible, security-conscious educational technology provider with a solid digital presence. Continued improvements in security headers and incident response transparency are recommended to enhance trust and compliance.

30
68
17
70
69
60
100
educationaccessibilitytechnologylearninguniversaldesign+4 more
WebflowGoogle FontsIntercomGoogle Tag Manager+1
2025-11-03T19:48:16.511Z
artofbuilding.org favicon

The Chartered Institute of Building (CIOB)

artofbuilding.org

0
OtherN/asmallMEDIUM

The Art Of Building website is an international photography competition platform focused on showcasing the best digital photography of the built environment. It is operated under the auspices of The Chartered Institute of Building (CIOB), a reputable organization in the construction and building sector. The website targets photographers, architecture enthusiasts, and professionals interested in the built environment, positioning itself as a niche but internationally recognized competition platform. The business model revolves around hosting and promoting the competition and showcasing winning entries, supported by CIOB's brand and network. Technically, the website is built on WordPress using a Divi child theme, enhanced with SEO tools like Rank Math and social sharing via Monarch. It employs Google Tag Manager for analytics and Cloudflare for DNS services, indicating a modern and mature digital infrastructure. The site is moderately performant with good mobile optimization and basic accessibility features. SEO optimization is good, supported by structured data and meta tags. From a security perspective, the site uses HTTPS with a valid SSL certificate and has domain transfer protections enabled. However, it lacks DNSSEC and security headers, which are recommended for enhanced security. No explicit privacy, cookie, or security policies are found, which is a compliance gap. There is no visible incident response or vulnerability disclosure information, which could be improved to enhance trust and security posture. Overall, the website is professional and trustworthy with a solid business foundation and technical implementation. The main risks relate to privacy compliance and security best practices, which if addressed, would improve the site's security posture and user trust. Strategic recommendations include adding comprehensive privacy and cookie policies, enabling DNSSEC, implementing security headers, and publishing vulnerability disclosure information.

15
80
17
40
47
70
100
photographycompetitionbuiltenvironmentdigitalphotographyciob+1 more
Google Tag ManagerCloudflare DNSjQueryRank Math SEO+3
2025-11-01T16:44:48.948Z