Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 50 of 579|Showing 2451-2500 of 28910
arcsupplies.com favicon

ARC Imaging Resources

arcsupplies.com

0
RetailN/asmallHIGH

ARC Imaging Resources operates a customer supply and service portal accessible via arcsupplies.com. The website serves as a login gateway for existing customers to manage their supply orders and service requests. The business appears to be a niche supplier in the imaging resources retail sector, with a domain age consistent with its founding year of 2012, indicating a stable market presence. The portal is designed with basic but functional user experience and mobile optimization, targeting primarily existing customers requiring supply and service support. Technically, the website uses standard HTML5, CSS3, and JavaScript with a theme framework from Coderthemes. The site is hosted under a domain registered with Network Solutions, LLC, with no DNSSEC enabled and no advanced CMS detected. Performance and accessibility are moderate to good, but SEO and privacy compliance are minimal. No analytics or tracking scripts were detected, indicating minimal user tracking. From a security perspective, the site uses HTTPS (implied by URL), but lacks visible security headers such as Content-Security-Policy or HSTS. The login form does not show anti-CSRF tokens, and no incident response or security contact information is provided. The domain WHOIS data is consistent and trustworthy, with clientTransferProhibited status and no privacy protection, supporting legitimacy. However, the absence of privacy and cookie policies and security best practices reduces the overall security posture. Overall, the website is functional and moderately professional but lacks comprehensive privacy and security measures. Strategic improvements in security headers, privacy compliance, and incident response visibility are recommended to enhance trust and compliance.

60
50
2
40
77
75
20
customerportalloginsupplyservicearcimagingresources
HTML5CSS3JavaScript
2025-10-25T02:09:20.466Z
training-fit.ie favicon

Training-Fit : Fitness and bodybuilding equipment

training-fit.ie

0
E-commerceN/amediumHIGH

Training-Fit.ie is an e-commerce website specializing in fitness and bodybuilding equipment, offering a wide range of products including cardio devices, professional fitness machines, bodybuilding accessories, crossfit gear, yoga apparel, fighting sports equipment, clothing, shoes, and related accessories. The site targets fitness enthusiasts, athletes, and consumers seeking quality fitness products from well-known brands. The business model is retail-focused, leveraging online sales with fast delivery and secure payment options. The domain is newly registered in December 2023, indicating a recent market entry or brand launch. Technically, the website is built on Magento (OpenMage), utilizing modern web technologies such as Google Analytics, Google Tag Manager, Google Ads, and reCAPTCHA for security and marketing. The site is hosted with Gandi, with HTTPS enabled and a clientTransferProhibited domain status, indicating basic domain security. Mobile optimization and navigation are good, though accessibility features are basic. SEO practices are adequately implemented with proper meta tags. From a security perspective, the site uses HTTPS and reCAPTCHA, and implements a consent management platform to comply with privacy regulations. However, no DNSSEC is enabled, and security headers are missing, which are areas for improvement. No privacy policy or terms of service were found, which is a compliance gap. No contact information for security incidents or data protection officers is provided, limiting incident response readiness. Overall, the website presents a professional and trustworthy e-commerce platform with moderate security posture and technical maturity. Strategic improvements in privacy documentation, security headers, and contact transparency would enhance compliance and trustworthiness.

-
-
-
70
72
70
100
fitnessbodybuildinge-commercesportsequipmenthealth+3 more
Google AnalyticsGoogle Tag ManagerGoogle AdsreCAPTCHA+3

Partner Domains:

training-fit.com
partner
2025-10-25T01:02:08.443Z
Z

zweier-prellball.de - Kategorien

zweier-prellball.de

0
OtherN/asmallMEDIUM

The website zweier-prellball.de is a domain parking page offering the domain for sale. It provides categorized links to various shopping and informational categories, likely monetized through affiliate or lead generation mechanisms. The site targets a general audience interested in purchasing the domain or browsing categorized content. The business model is primarily domain resale with minimal direct services or products. The market position is that of a domain marketplace listing without a clear operational business entity. Technically, the site uses standard HTML5, CSS3, and JavaScript with a custom captcha system to prevent automated bot access. The site is moderately optimized for mobile devices and has a clean, modern design. However, there is no evidence of a CMS or advanced frameworks. Performance is moderate with basic SEO and accessibility features. No hosting provider or SSL certificate information is available from the data provided. From a security perspective, the site employs a simple captcha and honeypot links to deter bots, but lacks visible HTTPS enforcement and security headers. There is no exposed sensitive data or vulnerable libraries detected, but the absence of HTTPS and security headers lowers the security posture. Privacy compliance is minimal with only a basic privacy policy page and no cookie consent mechanism. No contact or incident response information is provided, limiting trust and transparency. Overall, the site presents a low-risk profile but also low trustworthiness due to missing WHOIS data, lack of business information, and minimal security controls. Strategic recommendations include implementing HTTPS, adding security headers, improving privacy compliance, and providing clear contact and business information to enhance credibility and user trust.

55
53
2
60
75
85
100
domainparkingdomainsaleaffiliatelinkscaptchabotprotection
HTML5CSS3JavaScript
2025-10-25T00:32:12.147Z
globalsign.com favicon

GlobalSign, GMO Internet Group, Inc.

globalsign.com

0
TechnologyN/aenterpriseMEDIUM

GlobalSign, a subsidiary of GMO Internet Group, Inc., is a leading provider of digital certificate and identity management solutions globally. Their website showcases expertise in automated, scalable digital certificates including SSL/TLS, managed PKI, IoT security, authentication, and email security services. The company targets enterprise and business customers requiring robust digital identity and security solutions. The site is professionally designed, mobile-optimized, and rich in relevant content, reflecting a mature digital presence. Technically, the website leverages Concrete CMS, jQuery, Bootstrap, and integrates advanced analytics and marketing tools such as Google Analytics, Piwik Pro, Microsoft Clarity, and Cookiebot for consent management. The site uses HTTPS with strong SSL configuration and implements cookie consent mechanisms compliant with GDPR. However, explicit security headers like X-Frame-Options and X-Content-Type-Options are not clearly visible in the HTML source and could be improved. From a security perspective, the site demonstrates good practices including encrypted connections, cookie consent, and ISO 27001 certification. The absence of a security.txt file and clear incident response contacts are gaps that could be addressed to enhance transparency and readiness. The WHOIS data is unavailable or protected, which is common for security companies but slightly reduces domain registration transparency. Overall, the website is trustworthy, professional, and compliant with privacy regulations. It effectively communicates its business offerings and maintains a strong security posture with room for minor improvements. The risk level is low, and the site is suitable for enterprise clients seeking digital security solutions.

30
83
25
82
100
85
100
digitalcertificatespkissltlsmanagedpkiiotsecurity+5 more
jQueryBootstrapConcrete CMSGoogle Tag Manager+3

Partner Domains:

downloads.globalsign.com
partner
engagement.globalsign.com
partner
2025-10-24T23:41:26.933Z
N

Run test - Nettest

nettest.org

0
TechnologyN/asmallMEDIUM

The website nettest.com provides an internet speed testing tool aimed at general users seeking to measure their internet connection quality. The service emphasizes transparency by using an open source measurement methodology available on Github. The site is built with modern web technologies including Angular and Material Design components, and leverages Mapbox for mapping features. Hosting is provided via Cloudflare, ensuring reliable delivery and some security benefits. From a security perspective, the site lacks explicit security headers and published security policies, which could be improved to enhance trust and protection. No privacy or cookie policies were found, indicating potential compliance gaps with GDPR and other privacy regulations. Contact information and incident response channels are also absent, limiting user support and security communication. Overall, the site is functional and professionally designed with good user experience and mobile optimization. The domain is well-established since 1996, registered through a reputable registrar, and shows no suspicious patterns. However, the absence of privacy and security documentation and headers reduces the overall security posture and privacy compliance score. Strategic recommendations include implementing comprehensive privacy and cookie policies with consent mechanisms, adding security headers, publishing security and incident response policies, and providing clear contact information to improve user trust and regulatory compliance.

15
50
2
60
75
85
100
speedtestinternetbandwidthnetworktechnology
AngularMaterial Design ComponentsMapbox GL JSRoboto font
2025-10-24T22:49:13.723Z
zipchat.ai favicon

Zipchat Inc

zipchat.ai

0
E-commerceN/asmallMEDIUM

Zipchat Inc operates the website zipchat.ai, offering an advanced AI chatbot platform tailored for e-commerce businesses. Their solution integrates sales, support, WhatsApp marketing, and data analytics into a single autonomous AI agent designed to enhance customer engagement and increase sales conversion rates. The company targets online retailers using platforms such as Shopify, WooCommerce, and Magento, positioning itself as a top-rated AI chatbot provider with strong client testimonials and measurable performance metrics. The business model is subscription-based SaaS, founded recently in 2023, focusing on small to medium-sized e-commerce enterprises. Technically, the website is built on Webflow CMS and leverages modern JavaScript libraries such as GSAP for animations and multiple analytics and tracking tools including Crazy Egg, Microsoft Clarity, Amplitude, Facebook Pixel, and Google Tag Manager. The site is mobile-optimized, SEO-friendly, and implements a cookie consent mechanism via Cookiefirst, indicating a moderate level of digital maturity and compliance awareness. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in the HTML content. However, explicit security headers and formal security policies are not present, and no incident response or vulnerability disclosure mechanisms are found. The WHOIS data is privacy-protected, which is typical for SaaS businesses, but limits direct verification of registrant details. Overall, the security posture is good but could be improved with additional headers and transparency. The overall risk assessment is low, with the website demonstrating professionalism, trustworthiness, and compliance with basic privacy standards. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and implementing vulnerability disclosure to further strengthen trust and compliance.

55
68
2
75
75
85
100
aichatbote-commercecustomersupportmultilingualwhatsappmarketing+1 more
Webflow CMSGSAP animation libraryCrazy Egg trackingMicrosoft Clarity+5
2025-10-24T22:45:27.881Z
gstcouncil.org favicon

GSTC - Global Sustainable Tourism Council

gstcouncil.org

0
HospitalityN/amediumMEDIUM

The Global Sustainable Tourism Council (GSTC) operates as an international non-profit organization focused on managing global standards for sustainable travel and tourism. It serves as the accreditation body for sustainable tourism certification, providing standards, certification accreditation, training programs, and membership services. The website targets a broad audience including hotels, tour operators, destinations, business travelers, certification bodies, consultants, and travelers. The organization is positioned as a key authority in sustainable tourism with a professional and comprehensive digital presence. Technically, the website is built on WordPress using the Avada theme framework, enhanced with multilingual support via WPML, and optimized for SEO with Yoast SEO Premium. It employs modern technologies including Google Tag Manager, LinkedIn Insight, and CookieYes for cookie consent management. The site is fast, mobile-optimized, and accessible, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses security headers, and integrates bot management services from Akamai and Cloudflare. The cookie consent mechanism is robust, offering detailed categories and user customization. However, the absence of a publicly accessible privacy policy, explicit contact information, and a vulnerability disclosure policy are notable gaps. WHOIS data is unavailable or privacy protected, which is common for non-profit organizations but limits domain trust analysis. Overall, the website presents a low-risk profile with strong professionalism and security posture but would benefit from enhanced transparency in privacy and contact disclosures to improve compliance and trustworthiness.

15
65
17
75
72
85
20
sustainabletourismcertificationstandardstrainingnon-profit+3 more
WordPressYoast SEO PremiumWPML (Multilingual CMS)jQuery+5
2025-10-24T22:26:26.105Z
discoverlexus.com favicon

Lexus

discoverlexus.com

0
TransportationN/alargeMEDIUM

DiscoverLexus.com serves as a global lifestyle and brand marketing platform for Lexus, a premium automotive brand. The website focuses on delivering luxury and lifestyle content that aligns with Lexus's market positioning as a leader in the transportation sector. The site targets luxury vehicle enthusiasts and Lexus customers worldwide, providing brand storytelling and vehicle-related information. The business model centers on brand engagement and lifestyle marketing rather than direct sales. The domain age and WHOIS data support the legitimacy and maturity of the brand presence online. Technically, the website employs modern frontend technologies including Vue.js and Nuxt.js, with a CMS likely based on Statamic. Hosting is supported by Microsoft Azure DNS infrastructure. The site demonstrates good mobile optimization and SEO practices, with cookie consent managed by Cookiebot. Performance is moderate, with room for improvement in accessibility and security headers. From a security perspective, the site uses HTTPS and enforces domain transfer protection. However, DNSSEC is not enabled, and security headers are not detected in the provided data. There is no visible privacy policy or terms of service, which are critical for compliance and user trust. No incident response or vulnerability disclosure mechanisms are found. The site integrates Google Tag Manager for analytics and tracking, balanced with a cookie consent mechanism. Overall, the website is professionally designed and trustworthy, with a strong brand presence. To enhance security posture and compliance, it is recommended to publish privacy and terms policies, enable DNSSEC, implement security headers, and provide clear contact information for incident response. These steps will improve user trust, regulatory compliance, and resilience against threats.

15
83
2
60
72
70
100
luxuryautomotivelexustransportationbrand+1 more
Vue.jsNuxt.jsCookiebotYouTube iframe API+1
2025-10-24T22:20:33.280Z
catchplugins.com favicon

Catch Plugins

catchplugins.com

0
TechnologyN/asmallMEDIUM

Catch Plugins is a small technology company specializing in the development and sale of WordPress plugins, offering both free and premium options. Their market position is that of a niche provider focusing on secure, regularly updated, and user-friendly plugins that enhance website functionality. The company also provides support services and WordPress hosting, targeting WordPress site owners and developers. The website is professionally designed with good content quality, clear navigation, and mobile optimization, reflecting a mature digital presence. The technical infrastructure is based on WordPress CMS with modern plugins such as Easy Digital Downloads for e-commerce, Yoast SEO for search optimization, and WP Rocket for performance enhancement. The site uses Cloudflare DNS and Stripe for payment processing, with Google reCAPTCHA v3 implemented for form security. Performance is moderate with good accessibility and SEO practices. Security posture is strong with HTTPS enforced, cookie consent compliant with GDPR and CCPA, and domain registration protections in place. However, DNSSEC is not enabled and no explicit security policy or incident response information is published. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is good with clear privacy and cookie policies and consent mechanisms. Overall, the website and business present a low-risk profile with a trustworthy domain registration and consistent business information. Strategic recommendations include enabling DNSSEC, publishing a security policy and incident response contacts, and adding a vulnerability disclosure mechanism to further enhance trust and security posture.

55
80
2
70
75
85
100
wordpresspluginstechnologye-commercesecurity+2 more
WordPress 6.8.3PHP (implied)Easy Digital Downloads v3.5.3Yoast SEO v26.2+5

Partner Domains:

catchthemes.com
partner
2025-10-24T22:05:28.613Z
expo-book.com favicon

EXPO-BOOK

expo-book.com

0
OtherN/alargeHIGH

EXPO-BOOK is an international exhibition portal and social network established in 2012, offering a comprehensive platform for exhibitions, companies, tenders, jobs, and communities related to the exhibition industry. The website targets exhibitors, visitors, and professionals seeking information and networking opportunities in the exhibition sector. It maintains a large database of exhibitions, companies, and members, positioning itself as a significant player in the international exhibition market. Technically, the website employs a custom CMS with a technology stack including jQuery, jQuery UI, Google Translate integration, and Yandex Metrika for analytics. The site demonstrates moderate performance and basic mobile optimization. SEO and accessibility features are present but could be improved. Hosting and domain registration are managed through RU-CENTER with privacy protection enabled. From a security perspective, the site uses HTTPS and has domain transfer protection but lacks DNSSEC and important security headers such as Content-Security-Policy and HSTS. No explicit security or incident response policies are published, and cookie consent mechanisms are absent, indicating partial compliance with privacy regulations. The site does not expose sensitive data or use vulnerable libraries visibly. Overall, the website is professionally designed and functional with a moderate security posture and basic privacy compliance. Strategic improvements in security headers, DNSSEC, and privacy mechanisms would enhance trust and compliance. The domain's long age and stable registration support the site's legitimacy, with no suspicious indicators detected.

62
20
75
70
35
2
20
exhibitionscompaniestendersjobscommunities+3 more
jQueryjQuery UIGoogle Translate widgetYandex Metrika
2025-10-24T22:03:24.157Z