Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 267 of 579|Showing 13301-13350 of 28911
masteringnuxt.com favicon

Mastering Nuxt | The official courses for learning Nuxt

masteringnuxt.com

0
EducationN/asmallMEDIUM

Mastering Nuxt is an educational platform offering comprehensive, hands-on courses focused on Nuxt.js development, targeting developers and front-end teams. The website positions itself as the official and most in-depth course provider for Nuxt, featuring the latest technologies including Nuxt 4 and AI-powered projects. The business model centers on online course sales with premium content access. Technically, the site is built on Nuxt.js and Vue.js frameworks, styled with Tailwind CSS, and leverages modern analytics and marketing tools such as Google Analytics, Facebook Pixel, Drip, and Plerdy. Hosting and DNS are managed via Cloudflare and likely a modern CDN or hosting provider, ensuring good performance and mobile optimization. Security posture is solid with HTTPS enabled and domain transfer protection, though improvements are recommended in DNSSEC and security headers. Privacy compliance is weak due to missing privacy and cookie policies and lack of explicit consent mechanisms. Contact information is limited to a course preview form without direct emails or phone numbers. Overall, the site is professional and trustworthy but would benefit from enhanced privacy and security disclosures.

30
58
2
85
52
80
100
educationnuxtjavascriptwebdevelopmentonlinecourse+1 more
Nuxt.jsTailwind CSSGoogle AnalyticsFacebook Pixel+1

Partner Domains:

vueschool.io
partner
thrivecart.com
service
2025-07-28T08:25:08.453Z
revery.is favicon

Revery

revery.is

0
MediaN/asmallMEDIUM

Revery is a creative storytelling studio specializing in narrative storytelling, brand development and design, and creative production. The company targets brands and organizations seeking to connect authentically with their audiences through compelling stories. Their market position is supported by a portfolio of notable clients including Nike, Google, Amazon, Adidas, and others, indicating a strong presence in the media and creative agency sector. The website reflects a professional and polished brand image with rich multimedia content and clear communication channels. Technically, the website is built on the Webflow platform, leveraging modern JavaScript libraries such as jQuery, GSAP, and Swiper.js for interactive and animated content. It uses Vimeo for video hosting and Usercentrics for cookie consent management, indicating a moderate level of digital maturity. The site is mobile-optimized and demonstrates good SEO and accessibility practices, though some accessibility features could be enhanced. From a security perspective, the site uses HTTPS and includes a consent management platform, but lacks explicit security headers and published privacy or terms of service documents. No vulnerabilities or exposed sensitive data were detected in the analysis. The absence of WHOIS data for the domain reduces trustworthiness slightly, but the professional presentation and client portfolio support legitimacy. Overall, the website is well-designed and functional, with room for improvement in privacy transparency and security best practices. Strategic recommendations include publishing comprehensive privacy and terms policies, implementing security headers, and establishing a vulnerability disclosure policy to enhance trust and compliance.

30
35
2
85
72
85
100
creativestorytellingbranddevelopmentdesignproduction+2 more
WebflowjQueryGSAPSwiper.js+3
2025-07-28T08:22:43.147Z
shadecoffee.org favicon

Shade Catalog

shadecoffee.org

0
OtherN/asmallMEDIUM

Shade Catalog is an informational website dedicated to providing resources about shade tree species in coffee landscapes, targeting coffee farmers and agricultural professionals. It is a collaborative effort by Conservation International, Smithsonian Migratory Bird Center, and World Coffee Research, positioning itself as a niche resource in environmental conservation and sustainable coffee farming. The website offers catalogs for Colombia, Indonesia, and Peru, including browsing, downloads, and distribution information. Technically, the site is well-implemented with modern JavaScript, responsive design, and fast performance via AWS Cloudfront CDN. However, it lacks some security headers and privacy compliance documentation. The security posture is generally good with HTTPS enforced but could be improved by adding security headers and publishing privacy and cookie policies. No contact information or incident response details are provided, which limits transparency. Overall, the site is trustworthy, professional, and safe for general audiences, with minimal user tracking and no advertising. Strategic recommendations include enhancing privacy compliance, adding security headers, and providing clear contact and incident response information.

15
35
2
80
77
80
100
coffeeshadetreescatalogconservationagriculture+1 more
JavaScript ES ModulesGoogle FontsResponsive Images

Partner Domains:

conservation.org
partner
nationalzoo.si.edu
partner

+1 more partners

2025-07-28T08:21:53.055Z
gethopscotch.com favicon

Hopscotch Technologies Inc.

gethopscotch.com

0
EducationN/amediumMEDIUM

Hopscotch Technologies Inc. operates an educational programming platform designed primarily for children aged 10 to 16. The website promotes a coding app that enables kids to create games, animations, and art, positioning itself as a niche player in the educational technology sector. The business model includes subscription services and lifetime family passes, targeting families and educators. The company maintains a consistent brand presence with accessible privacy and terms of service documentation, and active social media engagement on platforms such as Discord, TikTok, and YouTube. Technically, the website is built using modern web technologies including React and Next.js, with integration of FastSpring for payment processing. The site is mobile-optimized and demonstrates good performance and SEO practices. However, some accessibility features are basic, and there is room for improvement in security headers and cookie consent mechanisms. From a security perspective, the site enforces HTTPS and does not expose sensitive data in the HTML content. However, the absence of security headers and lack of published security policies or incident response information indicate areas for enhancement. The WHOIS data is missing or unavailable, which raises questions about domain registration transparency but does not necessarily imply malicious intent given the active and professional website presence. Overall, the website presents a trustworthy and professional front for an educational technology company, with moderate technical maturity and a solid security baseline. Strategic improvements in security policies, cookie consent, and WHOIS transparency would further strengthen trust and compliance.

35
53
2
60
69
75
100
educationprogrammingkidscodinggames+1 more
ReactNext.jsFastSpring (payment)JavaScript

Partner Domains:

hop.sc
partner
sbl.onfastspring.com
partner
2025-07-28T08:21:27.999Z
blacksmith.sh favicon

Blacksmith Software Inc

blacksmith.sh

0
TechnologyN/asmallMEDIUM

Blacksmith Software Inc operates a SaaS platform designed to accelerate GitHub Actions workflows by providing a drop-in replacement for GitHub runners that is faster and more cost-efficient. The company targets developer teams seeking to reduce CI/CD pipeline times and costs. Their platform leverages bare metal gaming CPUs, co-located caching, and persistent Docker layer caching to deliver significant performance improvements. The website is professionally designed, mobile-optimized, and rich in content including customer testimonials, case studies, and detailed product comparisons. The company is backed by reputable investors such as Y Combinator and Google Ventures and holds SOC2 certification, enhancing trustworthiness. Technically, the website uses modern web technologies including Webflow CMS, Google Fonts, YouTube IFrame API, jQuery, GSAP animations, and privacy-focused analytics tools like Plausible. The site implements cookie consent mechanisms and maintains comprehensive privacy and terms of service documentation. Security posture is strong with HTTPS enforced and SOC2 compliance, though some security headers could be improved and a security.txt file is absent. No direct contact emails or phone numbers are publicly listed, and WHOIS data is privacy protected, which is justified for this business type. Overall, Blacksmith demonstrates a mature digital presence with strong business credibility and security awareness. The lack of exposed sensitive data and the presence of trust signals suggest a low risk profile. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure information, and providing clearer incident response contacts to further improve security posture and transparency.

60
83
17
85
75
85
100
cicdgithubactionsdevopssaascloudcomputing+4 more
Webflow CMSGoogle FontsYouTube IFrame APIjQuery 3.5.1+4
2025-07-28T08:20:12.833Z
tigerbeetle.com favicon

TigerBeetle - 1000x Faster Financial Transactions (OLTP) Database

tigerbeetle.com

0
TechnologyN/asmallMEDIUM

TigerBeetle.com is a technology-focused website promoting a high-performance financial transactions database designed for online transaction processing (OLTP). The site positions itself as a next-generation solution capable of powering financial transactions at unprecedented speeds. The target audience appears to be developers and businesses requiring robust and scalable OLTP database solutions. The website is built using modern web technologies, specifically the Framer platform, and employs privacy-conscious analytics via Plausible Analytics. The design and user experience are professional and optimized for mobile devices, although accessibility features are basic. Security posture is adequate with HTTPS enabled and domain transfer protection in place; however, the absence of DNSSEC and security headers suggests room for improvement. No privacy, cookie, or terms of service policies are published, and contact information is not explicitly provided, which may impact user trust and compliance. The domain is long-established since 2011, registered through a reputable registrar, and shows no suspicious patterns, indicating legitimacy. Overall, the website is functional and professional but would benefit from enhanced privacy and security disclosures to improve compliance and user trust.

40
53
25
85
90
80
100
technologydatabasefinancialtransactionsoltpsoftware
Framer (website generator)JavaScriptPlausible Analytics
2025-07-28T08:20:07.822Z
P

publive.cloudflareaccess.com

publive.online

0
TechnologyN/asmallMEDIUM

The website publive.cloudflareaccess.com serves as an internal administrative login portal secured by Cloudflare Access. It provides authentication mechanisms including Google OAuth and email-based login code verification, targeting authorized administrators or users of the publive platform. The site does not present public-facing business information, privacy policies, or contact details, consistent with its role as a protected internal resource. Technically, the site leverages Cloudflare's infrastructure and modern authentication standards, ensuring a secure and performant user experience. The HTML content is basic but functional, optimized for mobile devices, and free from advertising or tracking scripts. However, it lacks explicit security headers and privacy compliance disclosures. From a security perspective, the portal demonstrates strong access control practices but would benefit from enhanced security headers and visible privacy and incident response policies. The absence of WHOIS data is expected due to the domain being a Cloudflare Access subdomain, which does not have traditional domain registration records. Overall, the site is secure and fit for purpose as an internal admin login portal but lacks public business credibility and privacy transparency. Strategic improvements in policy disclosures and security headers would enhance trust and compliance.

85
50
2
40
75
80
100
loginauthenticationcloudflareaccessadminportaloauth
Cloudflare AccessOAuth 2.0 (Google)HTML5JavaScript
2025-07-28T08:19:47.778Z
T

Just a moment...

thenonprofittimes.com

0
Non-profitN/amediumMEDIUM

The analyzed domain thenonprofittimes.com is a well-established non-profit news website with a domain age dating back to 2004, indicating a mature presence in its sector. However, the current website content is inaccessible due to a Cloudflare Turnstile human verification challenge, which prevents direct content analysis. The site is hosted on Nexcess infrastructure and uses Cloudflare for security and performance. Due to the access block, no direct business descriptions, contact information, or policies could be extracted. The domain registration data is consistent with a legitimate entity, with no privacy protection and a clientTransferProhibited status enhancing domain security. From a technical perspective, the site employs modern security mechanisms such as Cloudflare Turnstile but lacks visible SEO metadata, structured data, or analytics scripts in the provided content. The absence of visible privacy, cookie, or terms of service policies on the challenge page limits the assessment of compliance posture. No contact or incident response information is available, which is typical for a challenge page but limits security and compliance evaluation. Security posture is difficult to assess fully due to the blocked content, but the use of Cloudflare and domain registration protections are positive indicators. No vulnerabilities or exposed sensitive data were detected in the accessible content. The site appears safe with no adult or explicit content indications. Overall, the risk assessment is limited by the WAF challenge, and strategic recommendations focus on enabling better content access for analysis and ensuring visible compliance documentation. Strategic recommendations include improving transparency by making privacy and cookie policies accessible without challenge, providing clear contact and incident response channels, and enabling SEO and accessibility features to enhance user experience and compliance.

55
35
2
85
52
75
100
Cloudflare TurnstileJavaScriptHTML5CSS3
2025-07-28T07:16:46.823Z
rumo.rs favicon

Rumors

rumo.rs

0
TechnologyN/asmallMEDIUM

Rumors is a small, award-winning design and technology studio specializing in web applications, branding, and design strategy. The company serves an international clientele including notable organizations such as Unity Technologies, Microsoft, and NASA JPL, positioning itself as a reputable player in the technology and design services sector. The website content is professional and well-structured, reflecting the company's expertise and market position. Technically, the website uses a minimal tech stack with jQuery 3.3.1 and custom scripts, hosted under a domain registered with Webglobe d.o.o. The site is moderately optimized for mobile and performance but lacks advanced SEO and accessibility features. No CMS or complex frameworks are detected, indicating a lightweight, custom-built site. From a security perspective, the site lacks DNSSEC, security headers, and published security or privacy policies, which lowers its security posture. The contact form includes basic anti-bot measures but no advanced protections. The absence of privacy and cookie policies indicates potential compliance gaps with GDPR and other privacy regulations. Overall, the website is trustworthy and professional but would benefit from enhanced security measures, privacy compliance documentation, and improved technical SEO and accessibility to strengthen its digital maturity and risk posture.

30
35
2
85
65
60
100
designtechnologystudiowebapplicationsbranding+1 more
jQuery 3.3.1
2025-07-28T07:11:24.043Z
vuejobs.com favicon

VueJobs

vuejobs.com

0
TechnologyN/asmallMEDIUM

VueJobs operates as the leading specialized job board for the Vue.js ecosystem, connecting Vue.js developers with companies seeking to hire them globally. Founded in 2016, it has established a strong market position with a focused business model centered on job postings and developer recruitment services. The platform offers a range of services including job listings, job alerts, consultant connections, and code audit services, targeting both developers and hiring companies within the Vue.js community. Technically, the website is built on modern web technologies including Vue.js and Nuxt.js frameworks, styled with Tailwind CSS, and hosted with Cloudflare DNS services. The site demonstrates excellent performance, mobile optimization, and SEO practices, providing a professional and user-friendly experience. Analytics are handled via Fathom Analytics, emphasizing privacy-conscious tracking. From a security perspective, the site enforces HTTPS with a good SSL configuration and secure form inputs. However, it lacks some advanced security headers and does not implement a cookie consent mechanism, which could be improved to enhance GDPR compliance. No vulnerabilities or exposed sensitive data were detected. The domain registration is transparent and consistent with the business history, enhancing trustworthiness. Overall, VueJobs presents a secure, professional, and well-maintained platform with minor areas for improvement in privacy compliance and security policy transparency. It is a trustworthy resource for Vue.js developers and companies alike.

30
58
2
75
72
65
100
vuejsjobsdevelopertechnologyrecruitment+1 more
Nuxt.jsVue.jsTailwind CSSCloudflare DNS
2025-07-28T06:09:23.848Z
accel.com favicon

Accel

accel.com

0
TechnologyN/alargeMEDIUM

Accel is a prominent venture capital firm specializing in technology investments, with a portfolio including major companies like Facebook, Slack, and Dropbox. The website reflects a strong market position and targets startups, entrepreneurs, and investors seeking venture funding. The business model centers on providing capital and strategic support to innovative technology companies. Technically, the website is built on the Webflow platform, leveraging modern web technologies such as Google Tag Manager, Hotjar, and various JavaScript libraries to enhance user experience and analytics. The site is well-optimized for performance, mobile responsiveness, and SEO, demonstrating digital maturity. From a security perspective, the site enforces HTTPS and uses consent management tools to comply with privacy regulations. However, it lacks visible security headers and explicit incident response information, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website presents a professional and trustworthy front for Accel, though the absence of WHOIS data and direct contact details slightly reduce the confidence in domain legitimacy. Strategic recommendations include enhancing security headers, publishing incident response contacts, and clarifying domain registration status to strengthen trust and compliance.

45
65
2
100
62
80
100
venturecapitalinvestmenttechnologystartupfinance+1 more
WebflowGoogle Tag ManagerHotjarjQuery+4
2025-07-28T06:09:03.758Z
typesense.org favicon

Typesense

typesense.org

0
TechnologyN/amediumMEDIUM

Typesense.org is the official website for Typesense, an open-source, fast, and typo-tolerant search engine designed for instant search-as-you-type experiences. Positioned as an easier-to-use alternative to Algolia, Pinecone, and Elasticsearch, Typesense targets developers and businesses seeking performant and developer-friendly search solutions. The website showcases strong branding, significant community engagement (e.g., GitHub stars, Docker pulls), and notable endorsements from recognized companies and events, indicating a solid market position. Technically, the website is built using modern web technologies including Nuxt.js, Tailwind CSS, and Docker for deployment. It is hosted on AWS infrastructure, ensuring scalability and reliability. The site is well-optimized for performance, mobile responsiveness, and accessibility, with comprehensive SEO metadata and structured content. From a security perspective, the site uses HTTPS and enforces domain transfer protections. However, it lacks DNSSEC and does not publicly disclose privacy, cookie, or security policies, which are important for compliance and user trust. No incident response or vulnerability disclosure information is provided, which could be improved to enhance security posture. Overall, Typesense.org presents a professional, trustworthy, and technically mature web presence. Strategic improvements in privacy compliance and security transparency would further strengthen its risk profile and user confidence.

15
35
17
75
72
75
100
searchengineopensourcedeveloperfriendlytypotoleranceinstantsearch+3 more
JavaScriptDockerREST APITailwind CSS+3
2025-07-28T06:08:58.733Z
voidzero.dev favicon

VoidZero Inc.

voidzero.dev

0
TechnologyN/asmallMEDIUM

VoidZero Inc. is a technology company focused on developing next-generation JavaScript tooling. Their portfolio includes widely adopted open-source projects such as Vite, Vitest, Rolldown, and Oxc, positioning them as key contributors in the JavaScript ecosystem. The company targets web developers and JavaScript professionals aiming to improve productivity with high-performance, unified tooling solutions. Supported by reputable investors and industry leaders, VoidZero maintains a strong market presence and trust within the developer community. Technically, the website is built using modern frameworks like VitePress and Three.js, delivering a fast, responsive, and well-structured user experience. The site demonstrates good SEO practices and minimal tracking through privacy-conscious analytics. However, there is room for improvement in accessibility and explicit security headers. From a security perspective, the site uses HTTPS and avoids exposing sensitive data or vulnerable libraries. Nonetheless, it lacks published security policies, vulnerability disclosure mechanisms, and privacy/cookie policies, which are important for compliance and user trust. Contact options are limited to a Google Forms link, with no direct email or phone contacts provided. Overall, VoidZero presents a professional and trustworthy digital presence with strong technical foundations and business credibility. To enhance security posture and compliance, the company should implement formal privacy and security policies, add security headers, and provide clearer contact and incident response information.

30
35
2
75
75
80
100
javascriptdevelopertoolsopensourcevitevitest+4 more
JavaScriptVitePressThree.js

Partner Domains:

vite.dev
partner
vitest.dev
partner

+3 more partners

2025-07-28T06:08:53.708Z