Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 317 of 579|Showing 15801-15850 of 28911
accredible.com favicon

Accredible Ltd

accredible.com

0
TechnologyN/amediumMEDIUM

Accredible Ltd operates a leading digital credential platform that enables organizations in higher education, professional training, and workforce development to create, issue, and manage digital badges and certificates. The platform emphasizes brand control, learner engagement, and real-world outcomes through features like pathways, spotlight directories, and analytics. The company positions itself as a trusted partner for credentialing programs, offering integrations and professional services to maximize program growth. Technically, the website is built on Webflow CMS and integrates a broad array of modern marketing, analytics, and tracking tools including Google Tag Manager, HubSpot, Hotjar, and ProfitWell. The site is well-optimized for mobile and accessibility, with a professional design and clear navigation. Security posture is good with HTTPS enforced and no visible sensitive data exposure, though security headers and vulnerability disclosure policies could be improved. The WHOIS data is unavailable or privacy-protected, which is common for SaaS companies but introduces moderate uncertainty about domain registration details. The website demonstrates strong business credibility and privacy compliance, including GDPR adherence and cookie consent mechanisms. No direct contact emails or phone numbers were found in the provided content, but social media presence on LinkedIn and Twitter is confirmed. Overall, Accredible presents a mature, professional digital presence with a strong market position in the digital credentialing space. Security and privacy practices are solid but could benefit from enhanced transparency around incident response and vulnerability disclosures.

30
88
2
85
75
90
100
digitalcredentialseducationtechnologydigitalbadgescertificatessaas+2 more
Webflow CMSGoogle Tag ManagerHotjarHubSpot+6
2025-07-14T23:19:01.417Z
lunadio.com favicon

Lunadio

lunadio.com

0
TechnologyN/asmallMEDIUM

Lunadio is a small technology-focused community platform aimed at early-stage founders and indie makers who want to turn side projects into viable businesses. The website offers a friendly Discord community, weekly mastermind calls, online meetups, a knowledge base, goal tracking, and special deals to support members in their entrepreneurial journey. The business model is based on community membership with a paid yearly subscription and a free trial period. The site is well-branded and professionally designed, targeting a niche market of indie makers and startup founders. Technically, the website is built using the Hugo static site generator, hosted on Netlify, and leverages modern web technologies including Alpine.js and Tailwind CSS. It integrates multiple analytics tools such as Google Analytics, Google Tag Manager, and Plausible Analytics. The site is mobile-optimized, fast-loading, and accessible with good SEO practices. Security-wise, the site uses HTTPS and Netlify Identity for authentication but lacks explicit security headers and published privacy or cookie policies. The security posture is generally good with no visible vulnerabilities or exposed sensitive data. However, the absence of privacy and cookie policies and the lack of WHOIS registration data raise concerns about compliance and domain legitimacy. No incident response or vulnerability disclosure information is provided, which could be improved to enhance trust. Overall, Lunadio presents a professional and trustworthy platform for its target audience but should address privacy compliance and domain registration transparency to strengthen its security and business credibility. Strategic recommendations include publishing privacy and cookie policies, adding security headers, implementing a vulnerability disclosure policy, and verifying domain registration details.

30
35
2
70
75
70
100
communityindiemakerssideprojectsstartupfounders+5 more
Hugo static site generatorNetlify Identity WidgetGoogle AnalyticsGoogle Tag Manager+1
2025-07-14T23:17:56.056Z
G

403 Forbidden

gdata.es

0
OtherN/asmallMEDIUM

The website www.gdata.es is currently inaccessible, returning a 403 Forbidden error with minimal HTML content served by nginx. This indicates that access is restricted, possibly by IP-based access control or server configuration. Due to this, no business information, metadata, or contact details are available for analysis. The WHOIS data is also unavailable because Red.es restricts WHOIS queries to authorized IP addresses only, preventing extraction of registrar, registrant, and domain status information. This lack of transparency and accessibility significantly limits the ability to assess the company's market position, services, or security posture. From a technical perspective, the site lacks any detectable technologies, scripts, or frameworks due to the blocked content. No security headers or HTTPS enforcement details are available, suggesting a basic or misconfigured hosting environment. The absence of privacy, cookie, or security policies further indicates a low level of digital maturity and compliance readiness. Security-wise, the site’s inaccessibility and lack of visible content or metadata prevent a thorough evaluation. However, the 403 Forbidden response and WHOIS access restrictions raise concerns about transparency and user accessibility. No explicit vulnerabilities or malicious indicators are detected, but the overall security posture is weak due to missing standard protections and policies. Overall, the website’s current state poses a high risk for trust and credibility. Strategic recommendations include resolving access restrictions to allow public viewing, enabling HTTPS with proper SSL certificates, publishing comprehensive privacy and security policies, and improving WHOIS transparency. These steps will enhance user trust, compliance, and security posture.

30
15
17
70
82
85
100
403forbiddenblockednginxaccessdenied
2025-07-14T19:50:29.135Z
bsaonline.com favicon

BS&A Software, Inc.

bsaonline.com

0
GovernmentN/amediumMEDIUM

BS&A Online is a municipal software platform operated by BS&A Software, Inc., providing online access to municipal data and services such as public records search, community development, financial services, and employee self-service. The platform targets municipalities and their constituents, offering convenience and efficiency in accessing government-held information. The website is professionally designed with clear navigation and consistent branding, reflecting a medium-sized business with a long operational history since 2003. Technically, the website employs legacy JavaScript libraries including jQuery 1.6.2 and Telerik UI components, indicating potential technical debt and security risks. Hosting and DNS services are managed via Cloudflare, but DNSSEC is not enabled. The site uses Google Tag Manager for analytics, but lacks explicit privacy and cookie policies, which impacts privacy compliance. Mobile optimization and accessibility are basic but functional. From a security perspective, the site enforces HTTPS and uses clientTransferProhibited domain status, but lacks modern security headers and uses outdated libraries with known vulnerabilities. No incident response or security policy information is provided. The WHOIS data is consistent with the business claims, showing a long-established domain without privacy protection, enhancing trustworthiness. Overall, the website is functional and credible for its niche government sector but requires improvements in security practices, privacy compliance, and modernization of its technical stack to reduce risks and enhance user trust.

30
35
2
85
82
80
100
municipalgovernmentsoftwarepublicrecordsonlineservices
jQuery 1.6.2Telerik UI componentsKnockout.js 3.0.0Amplify.js

Partner Domains:

bsasoftware.com
partner
2025-07-14T18:46:56.877Z
monocle-search.com favicon

DoNoHarm

monocle-search.com

0
TechnologyN/asmallMEDIUM

Monocle Search is a specialized SaaS provider offering a fast, typo-tolerant search plugin designed specifically for Squarespace websites. The company, branded under DoNoHarm, targets Squarespace site owners and developers who require enhanced search capabilities beyond the native Squarespace functionality. Their market position is niche but well-supported by endorsements from recognized Squarespace experts and a clear subscription-based business model with tiered plans. Technically, the website leverages modern web technologies including the Astro framework, integrates payment processing via Paddle, and uses multiple analytics tools such as ProfitWell, Tolt, and Ackee. The site is well-optimized for performance, mobile responsiveness, and SEO, providing an excellent user experience. Security posture is good with HTTPS enforced and no exposed sensitive data, though improvements are recommended such as enabling DNSSEC and adding security headers. Privacy compliance is adequate with clear privacy and cookie policies linked, but lacks a cookie consent mechanism. Business credibility is strong with clear contact emails, testimonials, and transparent pricing. Overall, the website and business present a professional and trustworthy front with room for minor security and compliance enhancements.

15
68
17
65
72
85
40
squarespacesearchpluginreal-timesearchsaastechnology+2 more
JavaScriptAstro frameworkPaddle payment integrationProfitWell analytics+3

Partner Domains:

central.monocle-search.com
service
cdn.paddle.com
service

+3 more partners

2025-07-14T15:17:03.407Z
aareon.com favicon

Aareon

aareon.com

0
Real EstateN/alargeMEDIUM

Aareon is a leading European SaaS provider specializing in property management systems designed to streamline operations for property owners and managers. Their platform integrates multiple facets of property management including payments, sustainability planning, and customer engagement, targeting a broad audience across residential and commercial real estate sectors. The website reflects a mature digital presence with professional design, clear navigation, and multimedia content that supports their market positioning. Technically, the site is built on the HubSpot CMS platform, leveraging modern JavaScript libraries and responsive design techniques to ensure good performance and accessibility. Security best practices such as HTTPS enforcement and security headers are implemented, though explicit security policies and incident response information are not publicly detailed. The absence of WHOIS data for the domain introduces some uncertainty regarding domain registration transparency, but the professional quality of the website and the presence of privacy and cookie policies indicate a legitimate business operation. No signs of WAF or content blocking were detected, and the site does not contain any adult or questionable content. Overall, Aareon demonstrates a strong business and technical foundation with room for improvement in transparency and security communication.

45
83
2
75
75
65
100
saaspropertymanagementrealestateeuropetechnology+2 more
HubSpot CMSSplide.js (carousel)htmxJavaScript+2

Partner Domains:

www.aareon.fr
partner
www.aareon.de
partner

+3 more partners

2025-07-14T15:15:38.226Z
visiteurope.com favicon

European Travel Commission

visiteurope.com

0
HospitalityN/amediumMEDIUM

Visiteurope.com is the official travel portal of Europe, operated under the auspices of the European Travel Commission. It provides comprehensive travel inspiration, destination guides, experiences, events, and essential travel information to tourists interested in exploring Europe. The website targets a broad audience of travelers and tourists, offering multilingual support and rich content to facilitate trip planning. The business model appears to be informational and promotional, supported by EU co-funding and partnerships with tourism bodies. The site holds a strong market position as an authoritative source for European travel information. Technically, the website is built on WordPress with modern technologies including React, jQuery, and various SEO and multilingual plugins. It leverages Cloudflare for DNS and uses Google Fonts and Google Maps APIs. The site is well-optimized for SEO, mobile-friendly, and accessible, with good performance metrics. Structured data and Open Graph tags are properly implemented to enhance search engine visibility and social media sharing. From a security perspective, the site enforces HTTPS, uses clientTransferProhibited domain status, and implements cookie consent via Cookiebot. However, DNSSEC is not enabled, and there is no visible security policy or incident response information published. The site uses multiple third-party marketing and tracking tools, but with consent mechanisms in place. No critical vulnerabilities or exposed sensitive data were detected. Overall, visiteurope.com is a professional, trustworthy, and well-maintained website with strong content quality and business credibility. Minor improvements in DNS security and transparency around security policies could further enhance its security posture and user trust.

15
85
2
75
65
75
100
traveleuropetourismofficialmultilingual+4 more
WordPressYoast SEO PremiumjQueryReact+3
2025-07-14T14:07:24.299Z
google.dev favicon

Google

google.dev

0
TechnologyN/aenterpriseMEDIUM

The Google Developer Program website is a professionally designed and well-structured platform aimed at developers and technology professionals. It provides comprehensive documentation, training resources, and visibility for developer achievements. The site is part of the Google Developers ecosystem, leveraging Google's strong brand and technological infrastructure. The website uses modern web technologies, including progressive web app features, Google Fonts, Material Icons, and Google Analytics for tracking. Hosting and content delivery are managed via Google Cloud Platform, ensuring fast performance and high availability. From a security perspective, the site enforces HTTPS and employs best practices such as secure forms and no exposed sensitive data. While explicit security headers like Content-Security-Policy are not visible in the HTML, the overall SSL configuration and security posture are strong. Privacy compliance is well addressed with accessible privacy and cookie policies, including consent mechanisms and GDPR compliance indicators. However, no direct contact or incident response information is found on the profile page. The domain is a subdomain of google.com, which is a highly trusted and established domain. WHOIS data for the subdomain is not available, which is typical for large organizations managing subdomains internally. The website content is safe for general audiences, with no adult or explicit content detected. Overall, the site demonstrates a high level of professionalism, trustworthiness, and technical maturity.

60
73
2
83
75
90
100
technologydevelopergoogleprogramapi+3 more
HTML5CSS3JavaScriptGoogle Fonts+4
2025-07-14T14:04:43.348Z
nicolesy.com favicon

Nicole S. Young

nicolesy.com

0
MediaN/asmallMEDIUM

Nicolesy.com is the professional website of Nicole S. Young, a full-time photographer and author specializing in photography education and e-commerce. The site offers a variety of photography tutorials, books, presets, and overlays, targeting photography enthusiasts and learners. The business model combines content creation with digital and physical product sales, supported by a well-structured online store and community engagement. The website is well-established with a domain age of nearly 19 years, reflecting a mature and consistent online presence. Technically, the site is built on WordPress with WooCommerce and uses modern plugins and technologies such as Yoast SEO, Google Analytics, hCaptcha, and affiliate marketing tools. The site demonstrates good mobile optimization, SEO practices, and moderate performance. Hosting is inferred to be with GoDaddy.com, LLC, consistent with the domain registration data. From a security perspective, the site uses HTTPS and employs hCaptcha for form protection, but lacks DNSSEC and some advanced security headers. There is no visible security policy or incident response information, and privacy and cookie policies are absent, indicating compliance gaps. The WHOIS data is consistent and supports the legitimacy of the domain and business. Overall, nicolesy.com is a credible, professional photography education and e-commerce site with good technical and business maturity. Improvements in privacy compliance and security policy transparency are recommended to enhance trust and regulatory adherence.

15
58
2
55
72
80
40
photographyeducatione-commercetutorialspresets+2 more
WordPress 6.8.1WooCommerce 9.9.5Yoast SEOGoogle Analytics+6

Partner Domains:

amazon.com
partner
stocksy.com
partner

+1 more partners

2025-07-14T13:01:09.076Z
sendowl.com favicon

SendOwl

sendowl.com

0
E-commerceN/amediumMEDIUM

SendOwl is a mature and well-established digital commerce platform specializing in enabling businesses and individuals to sell digital products, subscriptions, memberships, and more. The platform offers a comprehensive suite of tools including payment links, storefronts, and checkout solutions, targeting a broad audience of digital sellers from solopreneurs to scale-ups. The website demonstrates strong market positioning with over $2 billion in transactions processed and a decade-long community focus. Technically, the website is built on modern frameworks such as Next.js and React, leveraging popular analytics and marketing tools like Google Analytics, Segment, and Facebook Pixel. The site is performant, mobile-optimized, and accessible, reflecting a high level of digital maturity. Hosting and CDN services appear to be provided by Cloudflare, ensuring reliability and security. From a security perspective, the site enforces HTTPS, employs multiple security headers, and integrates secure payment gateways. However, there is room for improvement in cookie consent mechanisms and publishing explicit security policies or incident response contacts. The absence of WHOIS data introduces some uncertainty regarding domain registration transparency, but the overall trustworthiness is supported by the professional website and business signals. Overall, SendOwl presents a low-risk profile with strong business credibility and technical robustness. Strategic recommendations include enhancing privacy compliance with explicit cookie consent, publishing vulnerability disclosure information, and improving transparency around incident response and data retention policies.

35
68
17
77
57
65
100
digitalcommercee-commercedigitalproductssubscriptionsonlineselling+4 more
Next.jsReactSegment analyticsGoogle Analytics+5

Partner Domains:

stripe.com
partner
shopify.com
partner

+1 more partners

2025-07-14T12:55:48.852Z