Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 327 of 579|Showing 16301-16350 of 28911
Y

Yahoo

yahooapis.com

0
TechnologyN/aenterpriseMEDIUM

Yahoo is a major global internet brand operating a portfolio of websites and applications including Yahoo, AOL, Engadget, Rivals, In The Know, and Makers. The analyzed page is a Finnish language consent management interface for GDPR compliance, allowing users to accept or reject cookies and manage privacy settings. The business model centers on advertising and content delivery, targeting general internet users with a broad range of digital services. The website demonstrates consistent branding and good content quality aligned with Yahoo's corporate identity. Technically, the site uses standard web technologies including JavaScript and CSS, with some proprietary Yahoo libraries such as YAHOO.i13n.Rapid for analytics. The page is moderately optimized for performance and mobile devices, though accessibility and SEO could be improved. Security measures include CSRF tokens in forms, but no explicit security headers were detected in the provided data. The SSL configuration could not be assessed from the data but is expected to be standard for Yahoo domains. From a security and compliance perspective, the site shows good GDPR compliance with clear privacy and cookie policies linked, and a consent mechanism implemented. No contact or incident response information was found on this page, which is typical for a consent layer. The domain WHOIS data for the subdomain is not separately registered, which is normal for subdomains under a large corporate domain. Overall, the site is trustworthy and safe, with no adult or malicious content detected. Strategically, Yahoo should enhance security headers and accessibility features, improve SEO metadata, and consider publishing clear security and incident response policies linked from consent pages to strengthen trust and compliance posture.

75
68
2
83
77
90
100
consentprivacycookiegdpryahoo+1 more
JavaScriptCSSHTML5

Partner Domains:

aol.com
subsidiary
engadget.com
subsidiary

+3 more partners

2025-07-10T08:08:05.712Z
allsideseducationfund.org favicon

AllSides Education Fund

allsideseducationfund.org

0
EducationN/asmallMEDIUM

AllSides Education Fund is a nonprofit organization dedicated to strengthening democratic society by enhancing media literacy, providing balanced news access, and fostering constructive conversations across political divides. Founded in 2015 as a joint initiative of AllSides, Living Room Conversations, and the Mediators Foundation, it offers educational resources, scholarships, and grants primarily targeting educators and community leaders. The website serves as a platform to promote these services and facilitate donations and grant applications. Technically, the website is built on WordPress using modern plugins such as Yoast SEO and GiveWP for donations, with a responsive design optimized for accessibility and SEO. Hosting is supported by Amazon AWS infrastructure, and the site employs Google Tag Manager for analytics and tracking. While the site uses HTTPS and has domain transfer protections, it lacks DNSSEC and some security headers, indicating room for security improvements. From a security perspective, the site demonstrates a moderate security posture with no visible vulnerabilities or exposed sensitive data. However, the absence of explicit security policies and incident response information, along with missing DNSSEC, suggests potential compliance and security gaps. Privacy policies and cookie policies are present but do not include explicit consent mechanisms, which may affect GDPR compliance. Overall, the website is professional, trustworthy, and well-aligned with its nonprofit educational mission. Strategic recommendations include enhancing DNS security, implementing security headers, and improving privacy compliance mechanisms to strengthen trust and security posture.

25
73
17
60
85
70
100
nonprofiteducationmedialiteracycivicengagementbalancednews+2 more
WordPressYoast SEO pluginGoogle Tag ManagerGiveWP donation plugin+3

Partner Domains:

allsides.com
partner
livingroomconversations.org
partner

+1 more partners

2025-07-10T08:07:10.609Z
O

Organizzazione Internazionale Protezione Animali

oipa.org

0
Non-profitN/asmallMEDIUM

The website www.oipa.org represents the Organizzazione Internazionale Protezione Animali (OIPA), an international non-profit organization dedicated to animal protection and environmental advocacy. The organization is affiliated with several United Nations bodies and the European Commission, indicating a credible international presence. The website content is focused on promoting animal welfare, opposing vivisection, and encouraging vegetarian and vegan lifestyles. The site is simple and functional but lacks advanced technical features or modern CMS frameworks. No forms or contact details are provided, limiting direct engagement opportunities. From a technical perspective, the website shows basic implementation with no detected modern technologies or CMS. The performance and mobile optimization are moderate to basic, with no evidence of security headers or HTTPS enforcement in the provided data. The absence of privacy and cookie policies indicates a gap in compliance with data protection regulations such as GDPR. Security posture is minimal with no visible security best practices or incident response information. The WHOIS data is unavailable due to a malformed request, which reduces transparency and trustworthiness, although the website's UN affiliations and content suggest legitimacy. No advertising or analytics scripts were detected, indicating minimal user tracking. Overall, the website is safe for general audiences and serves as an informational platform for the NGO. However, improvements in security, privacy compliance, and technical modernization are recommended to enhance trust and user engagement.

15
50
2
55
72
80
100
animalprotectionenvironmentngonon-profitvegetarian+3 more
2025-07-10T08:05:50.426Z
antifurcoalition.org favicon

International Anti-Fur Coalition

antifurcoalition.org

0
Non-profitN/asmallMEDIUM

The International Anti-Fur Coalition (IAFC) operates as a global non-profit animal rights advocacy group focused on ending the fur trade through activism, education, and legislative efforts. Founded in 2006, it unites over 50 organizations worldwide to organize campaigns and promote anti-fur legislation. The website serves as an informational and campaign platform, targeting animal rights supporters and the general public concerned with ethical fashion. Technically, the website is built on the Shopify platform, leveraging standard web technologies such as jQuery, Facebook SDK, and embedded YouTube content. The site is mobile-optimized with moderate performance and basic SEO and accessibility features. Analytics and tracking are implemented via Shopify Analytics and Facebook Pixel, indicating moderate user tracking. From a security perspective, the site enforces HTTPS and uses hCaptcha for form protection, but lacks explicit security headers and detailed privacy or cookie policies. WHOIS data is unavailable, likely due to privacy protection, which is common for non-profit organizations. No critical vulnerabilities or malicious content were detected. Overall, the website presents a moderate risk profile with good content quality and business credibility but requires improvements in privacy compliance and security best practices to enhance trust and regulatory adherence.

75
35
17
70
-
75
100
animalrightsanti-furnon-profitadvocacyshopify
ShopifyjQueryFacebook SDKYouTube embed+1
2025-07-10T08:05:45.418Z
eurogroupforanimals.org favicon

Eurogroup for Animals

eurogroupforanimals.org

0
Non-profitN/amediumHIGH

Eurogroup for Animals is a pan-European non-profit advocacy organization dedicated to improving animal welfare and defending animal interests across Europe. The website serves as a platform to communicate their mission, campaigns, and policy initiatives to a broad audience including NGOs, policymakers, and the general public interested in animal welfare. The organization positions itself as a key voice in European animal advocacy with a focus on policy influence and public awareness. Technically, the website is built on Drupal 10, leveraging modern web technologies including Font Awesome for icons, Google Tag Manager for analytics, and Cookiebot for cookie consent management. The site demonstrates good digital maturity with mobile optimization, accessibility features, and a cookie consent mechanism that complies with GDPR requirements. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS and implements cookie consent with granular user controls. However, explicit security headers like Content-Security-Policy and X-Frame-Options were not detected in the provided data, suggesting an area for improvement. No vulnerabilities or exposed sensitive data were found. The WHOIS data is unavailable or privacy protected, which is typical for non-profit organizations and does not raise immediate concerns. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though it would benefit from enhanced security header implementation and clearer contact information. The risk profile is low, with no critical issues detected.

40
83
17
55
-
80
40
animalwelfarenon-profitadvocacyeuropecookieconsent+1 more
Drupal 10Font Awesome 6 ProGoogle Tag ManagerCookiebot
2025-07-10T08:05:35.392Z
thevegcat.com favicon

The Vegan Catalog

thevegcat.com

0
RetailN/asmallMEDIUM

The Vegan Catalog is an online niche retail platform focused on providing a comprehensive catalog of vegan products across multiple categories including food, cosmetics, pets, and household items. Founded in 2019, it serves a specialized audience interested in vegan lifestyle products, offering multilingual support and a mobile app to enhance accessibility. The website positions itself as a leading resource in the vegan product catalog space, emphasizing breadth and ease of product discovery. Technically, the website employs a modern JavaScript-based frontend with Matomo analytics for privacy-conscious user tracking. It uses cookie consent mechanisms and standard SEO practices, with a responsive design optimized for mobile devices. The hosting and domain registration are consistent and reputable, though the CMS appears custom or proprietary without common CMS footprints. From a security perspective, the site enforces HTTPS and uses clientTransferProhibited domain status to prevent unauthorized transfers. However, it lacks DNSSEC and advanced security headers, and does not publish a formal security policy or incident response contacts. Privacy compliance is well addressed with clear privacy and cookie policies, but contact information is minimal, limiting direct user support channels. Overall, the website is professionally designed and functional with moderate security posture and good privacy practices. Strategic improvements in security headers, DNSSEC, and incident response transparency would enhance trust and resilience. The absence of direct contact details and security disclosures suggests room for maturity in business credibility and security culture.

80
83
2
70
75
60
100
vegancatalogfoodcosmeticspets+3 more
JavaScriptMatomo AnalyticsCookieConsent.jsGoogle Fonts (Raleway)
2025-07-10T08:05:20.240Z
synology.com favicon

Synology Inc.

synology.com

0
TechnologyN/alargeLOW

Synology Inc. is a prominent technology company specializing in network-attached storage (NAS), data management, backup, surveillance, networking, and cloud solutions. The company positions itself as a leader in providing scalable and secure data management platforms for both business and individual users. Their website reflects a mature digital presence with comprehensive product offerings, customer resources, and a strong emphasis on data security and privacy. Technically, the site employs modern JavaScript frameworks such as Vue.js and jQuery, integrates Google Tag Manager for analytics, and uses LiveChat for customer engagement. The site is well-optimized for mobile devices and provides clear navigation and professional design. From a security perspective, Synology demonstrates good practices including HTTPS enforcement, detailed privacy and cookie policies with consent mechanisms, and public disclosure of security programs such as a bounty program. No critical vulnerabilities or exposed sensitive data were detected in the website content. WHOIS data for the domain is unavailable or restricted, which is common for privacy-conscious enterprises, but the website content and external trust signals strongly support the legitimacy of the domain. Overall, Synology's website reflects a robust security posture, strong privacy compliance, and a high level of business credibility. The company effectively communicates its value proposition and maintains transparency in security and data protection matters, making it a trustworthy technology provider in its market segment.

60
68
25
95
82
90
100
nasdatamanagementbackupsurveillancecloud+3 more
jQuery 3.7.1Vue.js (vue.global.prod.js)Google Tag ManagerLiveChat tracking+2
2025-07-10T07:00:14.871Z
Z

Жук Це-Це – Мой сайт о работе, хобби и прочем

zhuk.cc

0
TechnologyN/asmallHIGH

The website zhuk.cc is a personal blog primarily focused on technology topics, especially Joomla extensions, Oracle, Java, and various hobbies. It serves a niche audience of developers and technology enthusiasts interested in Joomla components and related software. The site offers technical articles, extension releases, and community forums, positioning itself as a resource hub for Joomla users. The business model revolves around content publishing and software extension distribution, with demonstration sites and forums supporting user engagement. Technically, the site is built on WordPress 6.8.1 using the Total theme and incorporates multiple JavaScript libraries such as jQuery, Owl Carousel, and Font Awesome. The platform is moderately optimized for performance and mobile use, with basic SEO and accessibility features. The site is fully accessible over HTTPS, indicating good SSL configuration, but lacks advanced security headers and privacy compliance mechanisms. From a security perspective, the site shows a moderate security posture with HTTPS enabled and no exposed sensitive data. However, it lacks explicit security headers, privacy and cookie policies, and incident response contacts, which are important for compliance and trust. No WAF or blocking mechanisms are detected, and the site content is safe for general audiences with no adult or questionable material. Overall, the site is a well-maintained personal technology blog with good content quality and business credibility but has room for improvement in privacy compliance and security best practices. Strategic recommendations include implementing privacy and cookie policies, adding security headers, and providing clear contact information for security incidents to enhance trust and compliance.

15
35
10
60
62
75
40
joomlawordpressoraclejavaextensions+4 more
WordPress 6.8.1jQueryjQuery MigrateFont Awesome 4.7.0 and 5.2.0+8
2025-07-10T05:46:40.618Z
K

Kevin Brown-Silva

kevin-brown.com

0
TechnologyN/asmallMEDIUM

Kevin Brown-Silva's website serves as a professional portfolio showcasing his software development expertise and contributions to open source projects. The site highlights his skills in technologies such as Python, Django, JavaScript, and jQuery, and provides links to his GitHub, Stack Overflow, LinkedIn, and Twitter profiles, establishing a credible online presence. The business model is personal branding and professional networking, targeting technology professionals and potential employers or collaborators. Technically, the website is built with standard web technologies including HTML, CSS, and JavaScript, with references to frameworks like Django REST framework and jQuery. Hosting and DNS are managed via Cloudflare, ensuring good SSL configuration and domain security. The site is moderately optimized for performance and mobile devices but lacks advanced SEO and accessibility features. From a security perspective, the website benefits from HTTPS and domain transfer protection but lacks critical security headers and formal privacy or cookie policies. No forms or data collection mechanisms are present, reducing attack surface but also limiting user engagement features. The absence of vulnerability disclosure or incident response information indicates room for improvement in security maturity. Overall, the website is a safe, professional, and trustworthy personal portfolio with good business credibility but limited privacy compliance and security best practices. Strategic enhancements in privacy policies, security headers, and incident response readiness would strengthen the site's security posture and compliance.

15
35
2
70
75
75
100
softwaredevelopmentportfoliotechnologyopensourceprofessional
HTMLCSSJavaScriptjQuery+1
2025-07-10T04:38:39.812Z
thegivingblock.com favicon

The Giving Block

thegivingblock.com

0
Non-profitN/amediumMEDIUM

The Giving Block is a specialized platform empowering nonprofits to accept cryptocurrency, stocks, and donor-advised fund (DAF) donations. Founded in 2018, it has established itself as a leading service provider in the nonprofit crypto donation space, offering secure and compliant donation forms tailored to the needs of nonprofits and their donors. The website reflects a professional and consistent brand image, targeting nonprofits and crypto donors with clear messaging and structured data to enhance search visibility. Technically, the website is built on WordPress using the Divi theme, supplemented by a variety of marketing and analytics tools including HubSpot, Google Analytics, Microsoft Clarity, and Hotjar. The domain is registered with GoDaddy and uses Cloudflare for DNS, indicating a robust hosting and domain management setup. Mobile optimization and SEO practices are good, though accessibility features are basic. From a security perspective, HTTPS is enabled and domain status flags protect against unauthorized changes. However, the site lacks explicit security headers, published security policies, and vulnerability disclosure mechanisms. Privacy compliance is limited due to the absence of visible privacy and cookie policies or consent mechanisms. The extensive use of tracking and marketing scripts suggests a moderate to extensive user tracking level, which should be balanced with stronger privacy disclosures. Overall, the site is credible and professionally managed but would benefit from enhanced privacy and security transparency to improve compliance and user trust. Strategic recommendations include enabling DNSSEC, publishing comprehensive privacy and cookie policies, implementing security headers, and establishing a vulnerability disclosure program.

35
88
14
80
75
90
100
cryptodonationsnonprofitblockchaincryptocurrencydonations+3 more
WordPressDivi ThemejQueryHubSpot scripts+2
2025-07-10T04:36:01.673Z
L

LingOA

lingoa.eu

0
EducationN/asmallHIGH

LingOA is a foundation dedicated to supporting Diamond Open Access journals in the field of linguistics, hosting 45 journals and publishing over 600 articles annually. The website is built on WordPress using the Enfold theme and employs modern web technologies such as jQuery and Google Fonts. The site is accessible, mobile-optimized, and presents a professional design tailored to an academic audience. However, it lacks explicit privacy, cookie, and terms of service policies, as well as detailed contact information, which impacts its compliance and trustworthiness scores. From a security perspective, the website uses HTTPS, ensuring encrypted communication, but does not implement common security headers, which could improve protection against certain web attacks. No vulnerability disclosure or incident response information is provided, which is a gap for transparency and security readiness. The absence of WHOIS registrant data is due to EURid's privacy policies for .eu domains, which is typical and justified for this type of non-profit academic entity. Overall, the website is safe, professional, and serves its niche academic community well but would benefit from enhanced privacy compliance and security best practices to improve trust and regulatory adherence.

20
10
2
60
62
80
20
linguisticsopenaccessacademicpublishingdiamondopenaccessfoundation+1 more
WordPress 6.8.1Enfold WordPress Theme 4.5.4jQuery 3.7.1Google Fonts (Open Sans)+2
2025-07-10T03:32:49.251Z
tgbwidget.com favicon

The Giving Block

tgbwidget.com

0
Non-profitN/asmallMEDIUM

The Giving Block website serves as a platform enabling charitable donations via cryptocurrency and card payments. The business operates in the non-profit sector, targeting donors interested in leveraging modern payment methods for philanthropy. The platform is powered by The Giving Block brand and integrates third-party services such as Shift4 for card payments and Plaid for financial data connectivity. The website's content is minimal but consistent with its purpose, focusing on donation facilitation with clear branding and loading indicators. Technically, the site employs modern web technologies including React and Material-UI, with integrations for Google Tag Manager and Google reCAPTCHA enhancing analytics and security. Hosting is supported by Amazon AWS infrastructure as indicated by DNS records. Performance and mobile optimization are moderate to good, though accessibility and SEO optimizations are basic. The absence of explicit privacy, cookie, and terms of service policies is a notable gap. From a security perspective, the site uses HTTPS and includes anti-bot measures via reCAPTCHA. However, no explicit security headers such as CSP or HSTS were detected, and no vulnerability disclosure or security policy information is present. The WHOIS data is transparent and consistent with the business, showing no privacy protection or suspicious registration patterns. Overall, the security posture is moderate but could be improved with enhanced headers and policy disclosures. The overall risk assessment indicates a functional and legitimate platform with moderate security and compliance maturity. Strategic recommendations include implementing comprehensive privacy and cookie policies, adding security headers, publishing vulnerability disclosure information, and improving accessibility and SEO. These steps will enhance trust, compliance, and security posture, supporting the platform's mission in the charitable donation space.

40
35
2
60
100
60
100
charitycryptodonationnon-profitpayment+1 more
Google Tag ManagerShift4 payment integrationPlaid APIGoogle reCAPTCHA

Partner Domains:

thegivingblock.com
partner
shift4.com
partner

+1 more partners

2025-07-10T03:29:30.668Z
coalition-s.org favicon

cOAlition S

coalition-s.org

0
EducationN/amediumMEDIUM

cOAlition S operates as an international consortium promoting Plan S, an initiative to accelerate full and immediate Open Access to scientific publications. The organization targets research funders, academic institutions, and publishers to ensure publicly funded research is openly accessible. The website reflects a professional and authoritative presence with clear information about their mission, principles, and tools supporting Open Access. Technically, the website is built on WordPress, leveraging modern web technologies such as jQuery, Font Awesome, Google Analytics, and reCAPTCHA for security and analytics. The site is well-structured, mobile-optimized, and uses HTTPS, indicating a mature digital infrastructure. However, some security headers are missing, which could be improved to enhance security posture. Security-wise, the site enforces HTTPS and uses reCAPTCHA to protect forms, but lacks explicit security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy and cookie policies are present and indicate GDPR compliance, supporting user privacy and regulatory adherence. Overall, the website presents a low-risk profile with a strong business credibility and good technical implementation. The main limitation is the absence of WHOIS data, which restricts domain registration trust analysis. Strategic improvements in security headers and explicit security policies would further strengthen the site's security posture.

40
68
17
70
62
70
20
openaccessscientificpublishingplanscoalitionsresearchfunding+1 more
WordPressjQueryFont AwesomeGoogle Analytics+1
2025-07-10T02:21:30.407Z
E

Elsevier

expertlookup.com

0
OtherN/aMEDIUM

Expert Lookup was a service provided by Elsevier, now officially sunset as indicated by the website's sole content: a sunset notice message. The website no longer offers active services or user engagement features. The domain is well-established, created in 2006, and hosted on Amazon AWS infrastructure, indicating a previously professional setup. However, the current website is minimalistic with no interactive elements, policies, or contact information, reflecting its discontinued status. Technically, the website is very basic with no detected scripts, frameworks, or CMS. The hosting is via AWS DNS servers, but no advanced security headers or DNSSEC are enabled. The site is accessible without WAF or security challenges but lacks modern SEO, accessibility, and privacy compliance features. The absence of privacy and cookie policies indicates non-compliance with GDPR and related regulations. From a security perspective, the site shows minimal security posture with no visible security headers or incident response contacts. The domain registration is transparent and consistent with a legitimate business domain, registered through SafeNames Ltd. The domain age supports the legitimacy of the business history, but the website content no longer reflects an active service. Overall, the website poses low risk but also low value due to its discontinued status. Strategic recommendations include improving security configurations if the domain is repurposed, adding privacy and cookie policies for compliance, and enhancing content quality and user engagement if relaunched.

15
50
2
60
72
75
100
elsevierexpertlookupsunsetnotice
2025-07-10T01:17:02.587Z