Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 334 of 579|Showing 16651-16700 of 28928
S

Access Denied

spectrum.com

0
OtherN/aMEDIUM

The website www.spectrum.com is currently inaccessible due to an access denial page served by a security mechanism, likely a Web Application Firewall (WAF). This prevents any meaningful extraction of business, technical, or security information from the site content. The WHOIS query for the domain returned no match, indicating either privacy protection, domain non-existence under the queried name, or a registry-level block. Consequently, no registrar, creation date, or registrant details could be extracted, limiting trust and legitimacy assessments. The lack of accessible content also means no metadata, forms, or contact information is available for analysis. From a technical perspective, the site shows no detectable technologies, frameworks, or hosting details due to the blocked content. Security posture cannot be evaluated beyond the presence of a blocking mechanism, which itself indicates some level of security enforcement but also restricts transparency. Privacy compliance indicators such as privacy or cookie policies are absent in the accessible content. Overall, the site’s current state severely limits any comprehensive security, compliance, or business analysis. The blocking mechanism reduces the AI scoring to a low level, reflecting the inability to verify or assess the domain and website effectively. Strategic recommendations focus on resolving access issues to enable proper evaluation and ensuring transparency in domain registration data.

35
50
17
80
80
70
100
2025-07-07T12:27:21.284Z
D

district46berea.com | 526: Invalid SSL certificate

district46berea.com

0
OtherN/asmallHIGH

The website district46berea.com is currently inaccessible due to an invalid SSL certificate on the origin server, as indicated by the Cloudflare Error 526 page. This prevents access to any substantive content or business information, severely limiting the ability to assess the company's market position, services, or technical maturity. The domain is very recently registered (December 2024) with Cloudflare, Inc. as the registrar, which is a reputable provider, but the lack of accessible content and security misconfiguration significantly impacts trust and credibility. From a technical perspective, the site relies on Cloudflare for DNS and CDN services but fails to present a valid SSL certificate, resulting in a complete block of user access. No CMS, frameworks, or analytics tools are detectable due to the blocked content. The absence of privacy, cookie, or terms of service policies further indicates an immature or incomplete web presence. Security posture is weak, with no SSL certificate properly configured and no security headers detected. This exposes the site to trust issues and potential interception risks. The WHOIS data shows no privacy protection but a very new domain age, which may not align with any established business history. Overall, the site currently presents a high risk due to inaccessibility and lack of compliance indicators. Strategic recommendations include immediate installation of a valid SSL certificate, enabling DNSSEC, implementing standard security headers, and publishing essential compliance documents such as privacy and cookie policies. These steps will improve user trust, security posture, and regulatory compliance.

-
35
2
65
75
80
100
errorsslcloudflareblockedsecurity
Cloudflare
2025-07-07T12:27:11.264Z
magiclick.net favicon

MagiClick Digital

magiclick.net

0
TechnologyN/amediumMEDIUM

MagiClick Digital is a well-established technology and design agency specializing in digital transformation, omni-channel banking, and e-commerce platforms. The company serves visionary businesses and large financial institutions, boasting a portfolio of high-profile clients such as HSBC, IKEA, and Domino's Pizza Eurasia. Their business model focuses on B2B technology and digital services, positioning them as a leading player in the technology sector since 1996. The website reflects a professional and consistent brand image with good content quality and clear navigation. Technically, the website is built on ASP.NET Web Forms and leverages modern technologies including Microsoft Azure for hosting and telemetry, Google Tag Manager for analytics, and various JavaScript libraries for UI enhancements. The site is mobile-optimized and performs moderately well, though accessibility features are basic. The CMS appears to be Sitefinity, supported by partner badges displayed on the site. From a security perspective, the site enforces HTTPS and uses anti-forgery tokens in forms, indicating attention to secure data handling. However, it lacks visible security headers and explicit privacy or cookie policies, which are critical for compliance and user trust. The absence of WHOIS registration data is a notable concern, potentially indicating privacy protection or registration issues, which slightly reduces the overall trustworthiness. No vulnerabilities or exposed sensitive data were detected in the provided content. Overall, MagiClick Digital presents a credible and professional online presence with strong business credibility and technical maturity. To enhance security posture and compliance, the company should implement comprehensive privacy and cookie policies, publish security incident contacts, and improve security header configurations. Further verification of domain registration details is recommended to address WHOIS data gaps.

90
35
17
80
77
85
100
technologydigitaltransformationbankinge-commercedesign+1 more
JavaScriptAzure Application InsightsGoogle Tag ManagerjQuery+1
2025-07-07T12:24:45.926Z
visitingmedia.com favicon

Visiting Media

visitingmedia.com

0
HospitalityN/amediumMEDIUM

Visiting Media is a specialized technology company providing immersive sales enablement software and virtual media production services tailored for the hospitality industry. Their platforms, including SalesHub and TrueTour, empower hospitality sales teams to leverage immersive content such as 3D models, virtual tours, and CGI to enhance sales presentations and marketing efforts. The company is positioned as a market leader in hospitality sales enablement, supported by industry recognitions and a strong customer base. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, Google Tag Manager, and multiple analytics and marketing tools. Hosting is via Amazon AWS infrastructure. The site demonstrates good performance, mobile optimization, and SEO practices, though accessibility could be improved. Security posture is solid with HTTPS enforced and domain locks in place, but DNSSEC is not enabled and some security headers are missing. From a security and compliance perspective, the site includes comprehensive privacy and cookie policies with active consent mechanisms, indicating GDPR compliance. No explicit security policies or incident response contacts were found. The domain WHOIS data is consistent with the business profile, showing a long-standing registration without privacy protection, enhancing trustworthiness. Overall, Visiting Media presents a professional, trustworthy, and technically competent online presence with strong business credibility in the hospitality technology sector.

55
68
17
98
67
85
100
hospitalitysalesenablementimmersivetechnologyvirtualtours3dmedia+2 more
WordPressYoast SEOjQueryGoogle Tag Manager+8
2025-07-07T11:22:07.650Z
Y

YesWeHack

zerodisclo.com

0
TechnologyN/asmallMEDIUM

ZeroDisclo.com is a non-profit platform dedicated to facilitating coordinated vulnerability disclosure by providing a secure and confidential environment for security researchers and organizations. The platform addresses key barriers such as legal uncertainty, lack of proper disclosure channels, and communication inefficiencies by partnering with CERTs and leveraging the expertise of YesWeHack. The website presents a clear focus on security research community needs and coordinated disclosure processes. Technically, the website is built using modern JavaScript frameworks including Vue.js and Quasar, hosted via Gandi SAS. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. No major technical issues or vulnerabilities were detected in the provided content, and HTTPS is enforced with a stable domain registration. From a security perspective, the site benefits from HTTPS and domain transfer protections but lacks advanced security headers and explicit incident response contact details. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism detected. The absence of contact information and security policy details limits transparency. Overall, the security posture is solid but could be improved with additional controls and disclosures. The overall risk is moderate with no critical issues detected. Strategic improvements in privacy compliance, security headers, and contact transparency would enhance trust and security culture. The platform is well-positioned as a trusted facilitator in the vulnerability disclosure ecosystem.

80
53
20
70
62
75
100
vulnerabilitydisclosuresecuritycoordinateddisclosurenon-profitsecurityresearch
JavaScriptVue.jsQuasar Framework
2025-07-07T11:21:27.417Z
firebounty.com favicon

FireBounty

firebounty.com

0
TechnologyN/asmallMEDIUM

FireBounty is a specialized platform aggregating vulnerability disclosure policies and bug bounty programs, serving security researchers and organizations interested in coordinated vulnerability disclosure. The website provides a searchable database of programs, with filtering options by reward type, scope, and program type. It leverages modern web technologies including jQuery, Bootstrap, and Matomo analytics, hosted under a domain registered since 2015 with a reputable registrar. The platform integrates partner services such as YesWeHack and Zerodisclo, enhancing its ecosystem relevance. Technically, the site is moderately optimized with mobile responsiveness and basic SEO features. Security posture is adequate with HTTPS enforced and domain transfer protection, but lacks advanced security headers and DNSSEC. Privacy compliance is weak due to absence of privacy and cookie policies, and no explicit GDPR compliance indicators. Contact information is not provided, limiting direct communication channels. Overall, FireBounty demonstrates a focused business model with moderate technical maturity and security awareness. The lack of privacy policies and contact details are notable gaps. The platform is safe for general audiences, with no adult or questionable content detected. Strategic improvements in privacy compliance, security headers, and contact transparency would enhance trust and compliance.

80
65
20
70
72
70
100
vdpbugbountyrewardsresponsivedisclosureiotbugbounty+2 more
jQueryMatomo AnalyticsBootstrap (implied by navbar classes)JavaScript+1

Partner Domains:

yeswehack.com
partner
zerodisclo.com
partner
2025-07-07T11:21:22.408Z
applicantai.com favicon

Applicant AI

applicantai.com

0
TechnologyN/asmallMEDIUM

Applicant AI is a newly launched AI-powered applicant tracking system designed to streamline and accelerate the recruitment process by automatically pre-screening applicants based on their CVs and job descriptions. The platform targets companies and recruiters seeking to improve hiring efficiency and reduce time spent on manual applicant evaluation. With over 600 companies and more than 144,000 applicants processed, Applicant AI positions itself as a leading AI ATS solution in the market. The website demonstrates a professional and consistent brand presence with clear messaging focused on AI-driven recruitment automation. Technically, the site leverages modern web technologies including Ruby on Rails, Bootstrap 5, StimulusJS, and Cloudflare for hosting and DNS, ensuring a solid infrastructure foundation. Analytics integration includes Google Analytics and privacy-focused Simple Analytics, indicating a balanced approach to user tracking. Security posture is adequate with HTTPS enforced, CSRF protection in forms, and domain transfer protection, though there is room for improvement in security headers and published policies. Privacy compliance is currently weak due to the absence of privacy and cookie policies, which should be addressed to meet regulatory standards. Overall, Applicant AI presents a credible and promising SaaS business with a good technical base but requires enhancements in privacy and security transparency to strengthen trust and compliance.

50
35
17
70
75
60
100
aiapplicanttrackingsystemrecruitingsoftwaresaashrtech+3 more
Bootstrap 5StimulusJSTurbo RailsTrix Editor+2
2025-07-07T11:16:32.835Z
M

Bruteforce Prevention

meetingsmags.com

0
OtherN/asmallMEDIUM

The website meetingsmags.com currently presents a bot prevention gate page designed to block automated access by requiring user interaction and setting a cookie before allowing entry. This indicates the presence of a Web Application Firewall (WAF) or security challenge mechanism, which restricts access to the actual website content. Due to this, no business-specific content, contact information, or policies are accessible for analysis. The domain is registered with GoDaddy.com, LLC since 2009, indicating a mature domain age and reasonable legitimacy. However, the lack of visible business or compliance information limits trust and credibility assessment. From a technical perspective, the site uses basic HTML, CSS, and JavaScript to implement the bot prevention gate. There is no evidence of modern frameworks, analytics, or advertising technologies. Security best practices are minimal, with no HTTPS or security headers visible in the provided data. Privacy and cookie policies are absent, and no contact or incident response information is provided. The security posture is limited to bot detection via a cookie and user interaction, which is a basic but effective method to reduce automated abuse. However, the absence of HTTPS and security headers is a concern. Overall, the site is currently inaccessible for full content and security analysis due to the WAF challenge. Strategically, the site owners should consider improving transparency by providing privacy and cookie policies, contact information, and implementing HTTPS with proper security headers. This will enhance trust and compliance with data protection regulations.

15
50
2
55
72
80
100
securitybotpreventionaccesscontrol
HTML5CSS3JavaScript
2025-07-07T11:16:27.772Z
ieta.org favicon

IETA

ieta.org

0
EnergyN/amediumMEDIUM

IETA is a globally recognized non-profit business group dedicated to advancing high integrity carbon markets to achieve net-zero targets. The organization serves a diverse membership base across multiple sectors and continents, providing carbon market intelligence, policy advocacy, and networking opportunities. Their market position is strong within the energy and environmental sectors, supported by a professional and content-rich website that reflects their mission and values. Technically, the website is built on WordPress with modern plugins and technologies such as Gravity Forms, Google Analytics, and Yoast SEO, ensuring good performance, mobile optimization, and SEO compliance. Hosting via a CDN enhances speed and reliability. The site implements GDPR-compliant cookie consent mechanisms and uses security headers, indicating a mature digital infrastructure. Security posture is solid with HTTPS enforced and standard security headers present. However, the absence of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement in transparency and readiness. The WHOIS data is incomplete, which slightly impacts trustworthiness but does not detract significantly from the overall legitimacy given the professional site content. Overall, IETA's website demonstrates a high level of professionalism, technical maturity, and compliance with privacy standards, making it a trustworthy platform for stakeholders interested in carbon markets and climate action.

25
80
2
70
72
75
20
carbonmarketsnetzeroclimateactionnon-profitenvironment+1 more
WordPressGravity FormsGoogle AnalyticsMonsterInsights+4
2025-07-07T11:16:07.714Z
shopify1percent.com favicon

Shopify1Percent

shopify1percent.com

0
E-commerceN/asmallMEDIUM

Shopify1Percent is a niche podcast website dedicated to providing Shopify merchants with actionable tips, growth hacks, and expert interviews to help improve their e-commerce businesses. The site is hosted on the Podpage platform and integrates with major podcast distribution channels such as Apple Podcasts, Spotify, Amazon Music, Audible, YouTube, and iHeartRadio, indicating a well-established presence in the podcasting ecosystem. The content is professionally presented with a consistent brand identity and targets Shopify store owners seeking to grow their sales and business acumen. Technically, the website employs modern web technologies including Bootstrap, FontAwesome, Swiper.js, and Google Fonts, with lazy loading for images and embedded YouTube videos for enhanced user experience. Google Analytics and Google Tag Manager are used for visitor tracking and analytics. The site is mobile optimized and demonstrates good SEO practices with appropriate meta tags and Open Graph data. However, no explicit hosting provider or CMS beyond Podpage is identified. From a security perspective, the site uses HTTPS with a presumably strong SSL configuration, but lacks visible security headers such as Content-Security-Policy or X-Frame-Options. There is no evidence of privacy or cookie policies, nor consent mechanisms, which is a compliance gap especially for GDPR. The WHOIS data is unavailable, which raises questions about domain registration legitimacy, though the active and professional site presence suggests possible privacy protection or proxy registration. Overall, Shopify1Percent presents a credible and professionally maintained podcast site with good technical implementation and content quality. The main risks lie in the lack of visible privacy and cookie policies and the absence of WHOIS transparency. Addressing these gaps would improve compliance and trustworthiness.

55
50
2
70
52
55
100
shopifypodcaste-commerceshopifypodcastshopifygrowth+1 more
Bootstrap CSSFontAwesomeSwiper.jsGoogle Fonts (DM Sans, Teko, Asap)+5
2025-07-07T11:15:32.602Z
L

Lawyers.com

lawyers.com

0
OtherN/alargeMEDIUM

Lawyers.com is an established online legal directory and information platform that helps individuals find the right lawyer for their legal issues. The website offers free legal information, a lawyer directory, and an 'ask a lawyer' advice service, targeting individuals seeking legal assistance. The site is professionally designed with consistent branding and good content quality, serving a general audience interested in legal matters. Technically, the website uses standard web technologies including jQuery UI and custom JavaScript. It is mobile optimized with good SEO practices and basic accessibility features. The site enforces HTTPS and includes some security best practices such as CSRF tokens, but lacks several important security headers and formal security policies. From a security perspective, the site has a good SSL configuration but minimal security headers and no visible incident response or vulnerability disclosure mechanisms. The WHOIS data for the domain is missing or unavailable, which raises concerns about domain registration transparency and trustworthiness. However, the website content and social media presence support its legitimacy. Overall, Lawyers.com presents a professional and trustworthy front for legal services, but improvements in security headers, incident response transparency, and WHOIS data availability would enhance its security posture and trustworthiness.

55
68
17
85
42
80
100
lawyerlegalattorneylawfirmlegaladvice+1 more
jQuery UIJavaScriptHTML5CSS3
2025-07-07T11:15:02.536Z
avvo.com favicon

Avvo

avvo.com

0
OtherN/alargeMEDIUM

Avvo is a well-established online legal services platform founded in 2006, providing consumers with access to a large network of over 1.1 million lawyers, legal advice, and detailed legal content. The platform serves a broad audience seeking legal assistance and information, positioning itself as a trusted intermediary between consumers and legal professionals. The website demonstrates a high level of professionalism, content quality, and user experience, supported by extensive legal resources and community engagement features. Technically, Avvo employs modern web technologies including Google Tag Manager, OneTrust for cookie consent, and performance monitoring tools like Lux. The site is mobile-optimized and implements good SEO and accessibility practices, although some accessibility features could be enhanced. Security posture is strong with HTTPS enforcement and appropriate security headers, but explicit security policies and incident response information are not publicly available. The WHOIS data for the domain is unavailable, likely due to privacy protection or registry limitations, which slightly impacts trust assessment. However, the website's content, traffic, and market presence strongly indicate legitimacy. Privacy compliance is well addressed with comprehensive cookie and privacy policies and consent mechanisms. Overall, Avvo presents a mature digital presence with a solid security foundation and strong business credibility, though improvements in transparency around security policies and incident response would further enhance trust and compliance.

55
100
17
85
57
85
100
legallawyerlegaladvicelawfirmlawpractice+3 more
Google Tag ManagerOneTrust Cookie ConsentLux (performance monitoring)JavaScript ES6++2
2025-07-07T11:14:52.504Z
randallmckinneylaw.com favicon

Law Office Randall H. McKinney

randallmckinneylaw.com

0
OtherN/asmallMEDIUM

The Law Office Randall H. McKinney operates as a small legal services provider specializing in trial law and personal injury cases in the Pittsburgh area. The website presents a professional image with clear navigation and detailed practice areas, targeting individuals seeking legal representation in personal injury and criminal defense matters. The business model is focused on providing specialized legal counsel with a local market position. Technically, the website employs common web technologies including Google Analytics and Google Tag Manager for tracking, and uses modern JavaScript libraries for UI elements. The site is moderately optimized for performance and mobile devices, with good SEO practices evident. However, no CMS or hosting provider information is discernible from the data. From a security perspective, the site uses HTTPS and avoids exposing sensitive data, but lacks visible security headers and does not provide privacy or cookie policies, which are important for compliance and user trust. The absence of WHOIS registration data is a notable concern, potentially indicating privacy protection or data unavailability, which impacts domain legitimacy assessment. Overall, the security posture is moderate but could be improved with better policy disclosures and security headers. The overall risk is moderate with recommendations to enhance privacy compliance, implement security best practices, and clarify domain registration details to improve trustworthiness and regulatory adherence.

20
35
2
70
77
60
100
legallawyerpersonalinjurytriallawyerpittsburgh+1 more
Google AnalyticsGoogle Tag ManagerFontAwesome
2025-07-07T10:07:31.117Z
yeswehack.com favicon

YesWeHack

yeswehack.com

0
TechnologyN/amediumLOW

YesWeHack operates as a global bug bounty and vulnerability management platform, connecting organizations with a large community of vetted ethical hackers to identify and remediate security vulnerabilities. The company positions itself as a leader in crowdsourced security testing, offering a suite of services including bug bounty programs, vulnerability disclosure policies, pentest management, and attack surface management. Their business model emphasizes pay-for-results and scalable security testing tailored to organizational needs. Technically, the website is built on modern web technologies including React and Next.js, with integrations for marketing and analytics tools such as HubSpot, Google Tag Manager, and LinkedIn Insight Tag. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. Privacy and cookie policies are comprehensive and include consent mechanisms, indicating attention to regulatory compliance. From a security perspective, the site enforces HTTPS, employs multiple security headers, and integrates secure forms via HubSpot. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a security.txt file and explicit incident response contact information are areas for improvement. The WHOIS data is unavailable in the provided raw output, which slightly impacts transparency but does not detract significantly from the site's legitimacy given the professional content and trust signals. Overall, YesWeHack demonstrates a strong security posture, a professional and user-friendly web presence, and a credible business model in the cybersecurity domain. Strategic recommendations include enhancing transparency with public security contact channels and maintaining vigilance on third-party script security.

30
83
75
85
72
80
100
bugbountyvulnerabilitymanagementcybersecurityethicalhackingpentest+2 more
ReactNext.jsJavaScriptCSS+6

Partner Domains:

firebounty.com
partner
zerodisclo.com
partner

+3 more partners

2025-07-07T10:06:40.871Z
axelar.dev favicon

Axelar

axelar.dev

0
TechnologyN/amediumMEDIUM

Axelar is a technology company focused on providing secure cross-chain communication infrastructure for Web3 applications. Their platform enables developers to build interchain decentralized applications that connect seamlessly across multiple blockchains. Positioned as a proof-of-stake based interoperability solution, Axelar targets developers, node operators, and validators with comprehensive documentation and tools. The website serves as a central hub for technical resources, community engagement, and operational guidance. Technically, the website is built using modern frameworks such as Astro, with integrations for syntax highlighting and search functionality. It employs best practices in web performance, mobile optimization, and accessibility. Security is well addressed with HTTPS, security headers, and script isolation techniques, although explicit incident response contacts and cookie consent mechanisms are absent. The security posture is strong, with no visible vulnerabilities or exposed sensitive data. Privacy compliance is partial, with a privacy policy present but lacking explicit GDPR compliance and cookie consent. The domain registration is consistent and trustworthy, aligning with the Axelar Foundation's identity. Overall, the website demonstrates a mature digital presence with professional design and content quality. Strategic improvements in privacy compliance and security transparency would further enhance trust and regulatory adherence.

30
35
20
80
72
85
100
blockchaincross-chaindeveloperdocumentationweb3interoperability+1 more
Astro frameworkJavaScriptPrism.js (syntax highlighting)Algolia InstantSearch+1
2025-07-07T10:06:35.850Z
palidziba.com favicon

IT Atbalsts

palidziba.com

0
TechnologyN/asmallMEDIUM

The website www.palidziba.com presents itself as an IT support service platform primarily offering remote assistance tools such as Rust desk, AnyDesk, and TeamViewer Quick Support for download. The site targets businesses or individuals seeking IT support, providing direct contact via email and phone. However, the website content is minimal and lacks comprehensive business information, privacy policies, or terms of service. The WHOIS data for the domain is unavailable, raising concerns about domain registration legitimacy. Technically, the website is built using modern web technologies including Next.js and React, indicating a contemporary development approach. The site is moderately optimized for mobile devices and has basic SEO and accessibility features. However, there is no evidence of advanced security headers or HTTPS verification from the provided data, which limits the security posture assessment. From a security perspective, the absence of privacy and cookie policies, lack of security headers, and missing WHOIS registration details are notable weaknesses. No forms or analytics scripts are present, reducing data collection risks but also limiting user engagement and tracking capabilities. Overall, the site appears functional but lacks critical compliance and security features, resulting in a moderate risk profile. Strategically, the website should prioritize establishing clear domain registration legitimacy, implementing HTTPS and security headers, and publishing privacy and cookie policies to enhance trust and compliance. Adding incident response and vulnerability disclosure information would further strengthen security posture and user confidence.

30
50
2
60
69
75
100
itsupportremoteassistancetechnologynextjscontact
Next.jsReactJavaScript
2025-07-07T09:29:54.762Z