Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 336 of 579|Showing 16751-16800 of 28911
sinkit.org favicon

Sinkit

sinkit.org

0
EnergyN/asmallMEDIUM

Sinkit is a specialized organization focused on restoring the carbon cycle and stabilizing the climate by removing CO2 from the atmosphere. They operate a carbon offsetting platform and develop natural and technological carbon removal projects, targeting companies and individuals committed to achieving net zero emissions. The website demonstrates a professional and consistent brand presence with a clear mission and a strong partner network, positioning Sinkit as a credible player in the carbon removal ecosystem. Technically, the website is built on Webflow with modern JavaScript libraries such as jQuery and Splide Slider, and integrates Google Tag Manager and Weglot for analytics and multilingual support. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and security headers. The use of HTTPS is confirmed, ensuring secure communications. From a security perspective, the site lacks some best practices such as security headers and cookie consent mechanisms, which could be enhanced to improve privacy compliance and user trust. No critical vulnerabilities or exposed sensitive data were detected. WHOIS data is unavailable due to privacy protection, which is reasonable for this business type but limits full domain trust analysis. Overall, Sinkit presents a trustworthy and professional online presence with a clear environmental mission. Strategic improvements in security policies, privacy compliance, and transparency would further strengthen their digital maturity and stakeholder confidence.

30
68
2
65
72
80
100
carbonremovalclimateenvironmentsustainabilityoffset+2 more
WebflowjQuerySplide SliderGoogle Tag Manager+1

Partner Domains:

puro.earth
partner
darel.nl
partner

+3 more partners

2025-07-07T03:18:57.622Z
R

Access Denied

rjf.com

0
OtherN/aMEDIUM

The website rjf.com is currently inaccessible due to a Web Application Firewall (WAF) or security mechanism blocking access, as evidenced by the 'Access Denied' error page served with minimal HTML content and references to Akamai EdgeSuite error URLs. This prevents any direct analysis of the website's content, metadata, or business information. The domain itself is well-established, having been registered since 1994 with MarkMonitor Inc., a reputable registrar, indicating a legitimate and longstanding business presence. However, no direct business, security, or compliance information is available from the site due to the access restrictions. From a technical perspective, the domain uses Akamai's CDN infrastructure as inferred from the nameservers, which suggests a robust hosting and content delivery setup. The lack of DNSSEC is a minor security gap but not uncommon. The absence of accessible content means no evaluation of the website's design, SEO, or user experience can be performed. Security posture evaluation is limited by the lack of accessible content and headers; however, the presence of a WAF indicates some level of security enforcement. No privacy policies, cookie consent mechanisms, or incident response information are detectable, which may be present on the actual site if accessible. Overall, the risk assessment is constrained by the blocked content, but the domain registration data supports legitimacy. Strategic recommendations include verifying access permissions to enable full content analysis, ensuring DNSSEC is enabled for enhanced DNS security, and confirming the presence of comprehensive privacy and security policies once the site is accessible.

15
50
17
85
62
85
100
accessdeniedwafblockedsecurityakamai
2025-07-07T03:17:52.355Z
betapage.co favicon

PitchWall

betapage.co

0
TechnologyN/asmallMEDIUM

PitchWall is an online community platform launched in 2023 that caters to technology enthusiasts and early adopters by providing a curated space to browse, search, and submit innovative tech products and startups. The platform positions itself as a niche community hub, offering key services such as product listings, startup submissions, and a newsletter to keep its audience engaged. Its market presence is supported by partnerships with notable service providers like Intercom and Maildroppa, enhancing its value proposition for startups and users alike. Technically, the website leverages modern web technologies including Vue.js, Google Fonts, and Cloudflare DNS services, ensuring a responsive and moderately performant user experience optimized for mobile devices. The integration of Google Analytics and Intercom indicates a focus on user engagement and marketing automation. From a security perspective, the site benefits from HTTPS encryption and domain transfer protection but lacks advanced security headers and DNSSEC, which are recommended for enhanced protection. Privacy compliance is addressed through a visible privacy policy and cookie consent banner, though GDPR compliance indicators are basic and could be improved. Overall, the platform demonstrates a moderate security posture with room for enhancements in incident response and explicit security policies. The domain registration is privacy protected, consistent with a startup's need for confidentiality, and the domain age aligns with the company's founding year. No suspicious or malicious indicators were found, and the content is safe for general audiences. Strategic recommendations include enabling DNSSEC, implementing comprehensive security headers, and publishing detailed security and incident response policies to bolster trust and compliance.

55
68
2
35
75
80
100
techstartupsstartupcommunityearlyadoptersproductlistingsnewsletter
Vue.jsGoogle FontsGoogle AnalyticsCloudflare DNS+2

Partner Domains:

intercom.com
partner
maildroppa.com
partner
2025-07-07T03:17:27.296Z
zapiet.com favicon

Zapiet

zapiet.com

0
E-commerceN/amediumMEDIUM

Zapiet is a specialized SaaS company providing a suite of Shopify apps focused on delivery, pickup, shipping rates, and product customization. With over 10,000 merchants globally, including notable brands such as Costa Coffee and Nestle, Zapiet holds a strong market position in the e-commerce ecosystem. Their apps cater to a wide range of online sellers from SMBs to large enterprises, emphasizing ease of use and operational efficiency. Technically, the website is built on Webflow CMS, leveraging modern JavaScript libraries like jQuery and integrating third-party services such as Intercom for customer support and Fathom Analytics for privacy-focused tracking. The site is well optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and employs secure forms but lacks visible security headers and a cookie consent mechanism, which are recommended for enhanced security and compliance. The absence of public WHOIS data suggests privacy protection, which is reasonable for this business type but slightly reduces transparency. Overall, Zapiet presents a professional, trustworthy online presence with a solid business model and technical foundation. Strategic improvements in privacy compliance and security policy transparency would further strengthen their security posture and user trust.

30
53
2
70
72
65
100
shopifye-commercedeliverypickupshipping+2 more
Webflow CMSjQuery 3.5.1Intercom chat widgetFathom Analytics

Partner Domains:

partners.zapiet.com
partner
www.hotinretail.com
partner
2025-07-07T03:16:57.243Z
F

First Place Internet, Inc.

sba.org

0
OtherN/asmallHIGH

The website sba.org is an informational and search platform focused on Small Business Administration (SBA) related topics, operated by First Place Internet, Inc. It provides users with search capabilities for SBA business loans, grants, business plans, and related services. The site appears to be monetized primarily through advertising, leveraging Google Ads and tracking technologies. The content is basic and targeted towards small business owners and entrepreneurs seeking SBA-related information. Technically, the site uses a modest technology stack including jQuery, Google Analytics, Google Tag Manager, and Google Ads Domains CAF scripts. The site is moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. There is no detected CMS or hosting provider information. Security measures are minimal, with no explicit security headers or HTTPS enforcement details visible, though CSRF tokens are present in meta tags. From a security perspective, the site lacks comprehensive security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy compliance is basic with a privacy policy and cookie consent banner present, but GDPR compliance is not clearly demonstrated. WHOIS data is unavailable or privacy-protected, which reduces trustworthiness but is somewhat justified given the site's informational nature. Overall, the site is functional but basic, with moderate trustworthiness and security posture. Strategic improvements in security headers, HTTPS enforcement, contact transparency, and privacy compliance would enhance its credibility and user trust.

55
53
2
80
-
70
40
smallbusinesssbabusinessloanssearchdirectory+1 more
jQuery 3.3.1Google AnalyticsGoogle Tag ManagerGoogle Ads Domains CAF+1
2025-07-07T03:13:01.687Z
T

TAMUS.org on WPMU Dev Network

tamus.org

0
OtherN/asmallHIGH

The website www.tamus.org serves as a primary multi-site WordPress development network for TAMUS-related sites, hosting multiple live and test sites. It functions primarily as a platform for managing and cloning WordPress sites within the TAMUS ecosystem. The business model centers on multi-site WordPress hosting and development, targeting internal users or affiliated entities rather than the general public. The site has been active since at least 2015, indicating a stable presence in its niche. Technically, the site leverages a modern WordPress stack including Elementor, Yoast SEO, and the Kadence theme, hosted on the WPMU Dev network with CDN support. The infrastructure supports responsive design and basic SEO optimization, though accessibility and advanced SEO features are limited. Performance is moderate, with external dependencies on common libraries and services such as AddThis for sharing. From a security perspective, the site enforces HTTPS with a valid SSL certificate but lacks visible security headers and public security policies. No contact or incident response information is provided, and WHOIS data is unavailable, which reduces trustworthiness. There are no indications of vulnerabilities or exposed sensitive data in the HTML content. Privacy and cookie policies are absent, indicating compliance gaps. Overall, the site is functional and serves its intended purpose within the TAMUS network but requires improvements in privacy compliance, security best practices, and transparency to enhance trust and regulatory adherence.

15
35
2
60
85
70
40
wordpressmulti-sitetamusdevelopmentwpmudev+2 more
WordPress 6.8.1Elementor 3.30.0Elementor Pro 3.29.2Yoast SEO 25.4+5

Partner Domains:

reynagas.com
partner
glennlea.com
partner
2025-07-07T03:10:56.390Z
C

403 - Forbidden

cdstaging.com

0
OtherN/asmallHIGH

The website at cdstaging.com currently serves a 403 Forbidden error page, indicating that access to the content is blocked or restricted. No business-related content, contact information, or policies are available on the site, which severely limits the ability to assess the company's operations or market position. The domain is newly registered in early 2025 and uses SiteGround name servers, but no further technical or business details are accessible. The lack of accessible content and policies suggests the site is either under development, restricted, or misconfigured. From a technical perspective, the site does not expose any scripts, analytics, or forms, and no security headers or SSL configuration details are observable. DNSSEC is not enabled, which is a potential area for improvement. The domain registration status flags clientTransferProhibited and clientUpdateProhibited are positive security indicators. However, the newness of the domain and lack of content reduce trustworthiness. Security posture is limited to domain registration protections; no incident response or security policies are found. Privacy compliance is absent, with no privacy or cookie policies detected. The site does not collect user data or provide contact channels, further limiting compliance and business credibility. Overall, the site is inaccessible for meaningful analysis due to the 403 error. It is recommended to resolve access issues, publish relevant business and compliance information, and implement security best practices to improve trust and transparency.

15
35
2
55
-
80
-
error403forbiddenaccessdenied
2025-07-07T02:03:40.859Z
scienna.com favicon

Scienna LLC

scienna.com

0
FinanceN/asmallHIGH

Scienna LLC is a specialized software provider offering custom loan review solutions primarily targeting mortgage due diligence firms, third-party review companies, and financial institutions. Their flagship product, the Andor platform, streamlines loan review processes with customizable workflows, reporting, and integration with industry partners such as ComplianceEase and mTrade. The company has a long-standing presence since 2000, positioning itself as a trusted provider in the mortgage finance sector. Technically, the website is built on WordPress with a modern tech stack including jQuery, Yoast SEO, and Contact Form 7. The site is mobile-optimized and demonstrates good SEO practices. Hosting appears to be via Register.com with no DNSSEC enabled, and the domain is secured with HTTPS. However, there is room for improvement in security headers and privacy compliance disclosures. Security posture is moderate with HTTPS enforced and domain transfer protection enabled. The absence of explicit privacy, cookie, and security policies reduces compliance confidence. No vulnerabilities or suspicious content were detected. Contact information is clearly presented, enhancing business credibility. Overall, the website and business present a professional and trustworthy front with solid technical foundations but would benefit from enhanced privacy and security policy transparency to improve compliance and user trust.

15
35
17
70
72
65
20
loanreviewmortgageduediligencefinancesoftwarecustomsoftware+1 more
WordPressPHPjQueryYoast SEO+5

Partner Domains:

strategicvantage.com
partner
2025-07-07T02:03:20.821Z
E

embuild.com

embuild.com

0
OtherN/asmallMEDIUM

The website embuild.com is currently a parked domain with no active business content or services. It displays a banner indicating the domain is for sale and monetizes traffic through Google Adsense advertising. The site lacks any meaningful business description, contact information, or security and privacy policies, indicating it is not currently used as an operational business website. The domain is registered since 2005 with GoDaddy Online Services Cayman Islands Ltd., a reputable registrar, but the registrant is the registrar itself, typical for parked domains. Technically, the site uses basic HTML5 and CSS3 with Google advertising scripts. There is no evidence of a CMS or advanced frameworks. The site is moderately optimized for mobile but lacks accessibility and SEO best practices. Security posture is minimal with no DNSSEC, no security headers, and no visible HTTPS enforcement details. Privacy compliance is poor with no cookie consent or GDPR indicators. Overall, the security posture is weak due to lack of security headers and DNSSEC, and the business credibility is low due to absence of contact or company information. The site is safe in terms of content, containing no adult or explicit material. The domain is legitimate but currently unused for active business purposes. Strategic recommendations include enabling DNSSEC, adding security headers, implementing privacy and cookie policies with consent mechanisms, and providing clear business contact information to improve trust and compliance.

25
53
2
65
95
85
100
domainparkingdomainforsaleadvertisinggoogleadsense
Google AdsenseGoogle Ad ServicesHTML5CSS3
2025-07-07T01:01:40.584Z
membershipworks.com favicon

MembershipWorks

membershipworks.com

0
Non-profitN/asmallMEDIUM

MembershipWorks is a specialized SaaS provider offering comprehensive membership management software tailored for chambers of commerce, associations, non-profits, and similar groups. Established in 2011 and operating under the parent company SourceFound, it serves over 10,000 customers with a suite of services including member directories, event management, billing, donations, and website integration plugins for popular platforms like WordPress, Squarespace, and Weebly. The website reflects a mature business with consistent branding, good content quality, and clear navigation aimed at its target audience. Technically, the website is built on WordPress with custom themes and uses modern web standards including HTML5 and CSS3. It is mobile-optimized and SEO-friendly, though some accessibility features could be improved. The site is served over HTTPS with no visible security vulnerabilities or exposed sensitive data. However, security headers are not explicitly detected, and no dedicated security or incident response policies are published on the site. From a security and compliance perspective, the site enforces HTTPS and provides privacy and cookie policies, indicating GDPR compliance. Contact information is clearly provided, including phone and email. No forms or tracking scripts were detected on the homepage, suggesting minimal user data collection at this entry point. The domain registration data is consistent with the business claims, supporting legitimacy and trustworthiness. Overall, MembershipWorks presents a professional, trustworthy, and functional online presence with a strong focus on its niche market. Strategic improvements in security headers, incident response transparency, and accessibility would further enhance its security posture and compliance standing.

45
68
17
80
67
85
100
membershipsoftwarenon-profitassociationschambersofcommerceeventmanagement+5 more
WordPressHTML5CSS3JavaScript
2025-07-07T00:57:59.859Z