Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 51 of 579|Showing 2501-2550 of 28928
globalsign.com favicon

GlobalSign, GMO Internet Group, Inc.

globalsign.com

0
TechnologyN/aenterpriseMEDIUM

GlobalSign, a subsidiary of GMO Internet Group, Inc., is a leading provider of digital certificate and identity management solutions globally. Their website showcases expertise in automated, scalable digital certificates including SSL/TLS, managed PKI, IoT security, authentication, and email security services. The company targets enterprise and business customers requiring robust digital identity and security solutions. The site is professionally designed, mobile-optimized, and rich in relevant content, reflecting a mature digital presence. Technically, the website leverages Concrete CMS, jQuery, Bootstrap, and integrates advanced analytics and marketing tools such as Google Analytics, Piwik Pro, Microsoft Clarity, and Cookiebot for consent management. The site uses HTTPS with strong SSL configuration and implements cookie consent mechanisms compliant with GDPR. However, explicit security headers like X-Frame-Options and X-Content-Type-Options are not clearly visible in the HTML source and could be improved. From a security perspective, the site demonstrates good practices including encrypted connections, cookie consent, and ISO 27001 certification. The absence of a security.txt file and clear incident response contacts are gaps that could be addressed to enhance transparency and readiness. The WHOIS data is unavailable or protected, which is common for security companies but slightly reduces domain registration transparency. Overall, the website is trustworthy, professional, and compliant with privacy regulations. It effectively communicates its business offerings and maintains a strong security posture with room for minor improvements. The risk level is low, and the site is suitable for enterprise clients seeking digital security solutions.

30
83
25
82
100
85
100
digitalcertificatespkissltlsmanagedpkiiotsecurity+5 more
jQueryBootstrapConcrete CMSGoogle Tag Manager+3

Partner Domains:

downloads.globalsign.com
partner
engagement.globalsign.com
partner
2025-10-24T23:41:26.933Z
N

Run test - Nettest

nettest.org

0
TechnologyN/asmallMEDIUM

The website nettest.com provides an internet speed testing tool aimed at general users seeking to measure their internet connection quality. The service emphasizes transparency by using an open source measurement methodology available on Github. The site is built with modern web technologies including Angular and Material Design components, and leverages Mapbox for mapping features. Hosting is provided via Cloudflare, ensuring reliable delivery and some security benefits. From a security perspective, the site lacks explicit security headers and published security policies, which could be improved to enhance trust and protection. No privacy or cookie policies were found, indicating potential compliance gaps with GDPR and other privacy regulations. Contact information and incident response channels are also absent, limiting user support and security communication. Overall, the site is functional and professionally designed with good user experience and mobile optimization. The domain is well-established since 1996, registered through a reputable registrar, and shows no suspicious patterns. However, the absence of privacy and security documentation and headers reduces the overall security posture and privacy compliance score. Strategic recommendations include implementing comprehensive privacy and cookie policies with consent mechanisms, adding security headers, publishing security and incident response policies, and providing clear contact information to improve user trust and regulatory compliance.

15
50
2
60
75
85
100
speedtestinternetbandwidthnetworktechnology
AngularMaterial Design ComponentsMapbox GL JSRoboto font
2025-10-24T22:49:13.723Z
zipchat.ai favicon

Zipchat Inc

zipchat.ai

0
E-commerceN/asmallMEDIUM

Zipchat Inc operates the website zipchat.ai, offering an advanced AI chatbot platform tailored for e-commerce businesses. Their solution integrates sales, support, WhatsApp marketing, and data analytics into a single autonomous AI agent designed to enhance customer engagement and increase sales conversion rates. The company targets online retailers using platforms such as Shopify, WooCommerce, and Magento, positioning itself as a top-rated AI chatbot provider with strong client testimonials and measurable performance metrics. The business model is subscription-based SaaS, founded recently in 2023, focusing on small to medium-sized e-commerce enterprises. Technically, the website is built on Webflow CMS and leverages modern JavaScript libraries such as GSAP for animations and multiple analytics and tracking tools including Crazy Egg, Microsoft Clarity, Amplitude, Facebook Pixel, and Google Tag Manager. The site is mobile-optimized, SEO-friendly, and implements a cookie consent mechanism via Cookiefirst, indicating a moderate level of digital maturity and compliance awareness. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in the HTML content. However, explicit security headers and formal security policies are not present, and no incident response or vulnerability disclosure mechanisms are found. The WHOIS data is privacy-protected, which is typical for SaaS businesses, but limits direct verification of registrant details. Overall, the security posture is good but could be improved with additional headers and transparency. The overall risk assessment is low, with the website demonstrating professionalism, trustworthiness, and compliance with basic privacy standards. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and implementing vulnerability disclosure to further strengthen trust and compliance.

55
68
2
75
75
85
100
aichatbote-commercecustomersupportmultilingualwhatsappmarketing+1 more
Webflow CMSGSAP animation libraryCrazy Egg trackingMicrosoft Clarity+5
2025-10-24T22:45:27.881Z
gstcouncil.org favicon

GSTC - Global Sustainable Tourism Council

gstcouncil.org

0
HospitalityN/amediumMEDIUM

The Global Sustainable Tourism Council (GSTC) operates as an international non-profit organization focused on managing global standards for sustainable travel and tourism. It serves as the accreditation body for sustainable tourism certification, providing standards, certification accreditation, training programs, and membership services. The website targets a broad audience including hotels, tour operators, destinations, business travelers, certification bodies, consultants, and travelers. The organization is positioned as a key authority in sustainable tourism with a professional and comprehensive digital presence. Technically, the website is built on WordPress using the Avada theme framework, enhanced with multilingual support via WPML, and optimized for SEO with Yoast SEO Premium. It employs modern technologies including Google Tag Manager, LinkedIn Insight, and CookieYes for cookie consent management. The site is fast, mobile-optimized, and accessible, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses security headers, and integrates bot management services from Akamai and Cloudflare. The cookie consent mechanism is robust, offering detailed categories and user customization. However, the absence of a publicly accessible privacy policy, explicit contact information, and a vulnerability disclosure policy are notable gaps. WHOIS data is unavailable or privacy protected, which is common for non-profit organizations but limits domain trust analysis. Overall, the website presents a low-risk profile with strong professionalism and security posture but would benefit from enhanced transparency in privacy and contact disclosures to improve compliance and trustworthiness.

15
65
17
75
72
85
20
sustainabletourismcertificationstandardstrainingnon-profit+3 more
WordPressYoast SEO PremiumWPML (Multilingual CMS)jQuery+5
2025-10-24T22:26:26.105Z
discoverlexus.com favicon

Lexus

discoverlexus.com

0
TransportationN/alargeMEDIUM

DiscoverLexus.com serves as a global lifestyle and brand marketing platform for Lexus, a premium automotive brand. The website focuses on delivering luxury and lifestyle content that aligns with Lexus's market positioning as a leader in the transportation sector. The site targets luxury vehicle enthusiasts and Lexus customers worldwide, providing brand storytelling and vehicle-related information. The business model centers on brand engagement and lifestyle marketing rather than direct sales. The domain age and WHOIS data support the legitimacy and maturity of the brand presence online. Technically, the website employs modern frontend technologies including Vue.js and Nuxt.js, with a CMS likely based on Statamic. Hosting is supported by Microsoft Azure DNS infrastructure. The site demonstrates good mobile optimization and SEO practices, with cookie consent managed by Cookiebot. Performance is moderate, with room for improvement in accessibility and security headers. From a security perspective, the site uses HTTPS and enforces domain transfer protection. However, DNSSEC is not enabled, and security headers are not detected in the provided data. There is no visible privacy policy or terms of service, which are critical for compliance and user trust. No incident response or vulnerability disclosure mechanisms are found. The site integrates Google Tag Manager for analytics and tracking, balanced with a cookie consent mechanism. Overall, the website is professionally designed and trustworthy, with a strong brand presence. To enhance security posture and compliance, it is recommended to publish privacy and terms policies, enable DNSSEC, implement security headers, and provide clear contact information for incident response. These steps will improve user trust, regulatory compliance, and resilience against threats.

15
83
2
60
72
70
100
luxuryautomotivelexustransportationbrand+1 more
Vue.jsNuxt.jsCookiebotYouTube iframe API+1
2025-10-24T22:20:33.280Z
catchplugins.com favicon

Catch Plugins

catchplugins.com

0
TechnologyN/asmallMEDIUM

Catch Plugins is a small technology company specializing in the development and sale of WordPress plugins, offering both free and premium options. Their market position is that of a niche provider focusing on secure, regularly updated, and user-friendly plugins that enhance website functionality. The company also provides support services and WordPress hosting, targeting WordPress site owners and developers. The website is professionally designed with good content quality, clear navigation, and mobile optimization, reflecting a mature digital presence. The technical infrastructure is based on WordPress CMS with modern plugins such as Easy Digital Downloads for e-commerce, Yoast SEO for search optimization, and WP Rocket for performance enhancement. The site uses Cloudflare DNS and Stripe for payment processing, with Google reCAPTCHA v3 implemented for form security. Performance is moderate with good accessibility and SEO practices. Security posture is strong with HTTPS enforced, cookie consent compliant with GDPR and CCPA, and domain registration protections in place. However, DNSSEC is not enabled and no explicit security policy or incident response information is published. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is good with clear privacy and cookie policies and consent mechanisms. Overall, the website and business present a low-risk profile with a trustworthy domain registration and consistent business information. Strategic recommendations include enabling DNSSEC, publishing a security policy and incident response contacts, and adding a vulnerability disclosure mechanism to further enhance trust and security posture.

55
80
2
70
75
85
100
wordpresspluginstechnologye-commercesecurity+2 more
WordPress 6.8.3PHP (implied)Easy Digital Downloads v3.5.3Yoast SEO v26.2+5

Partner Domains:

catchthemes.com
partner
2025-10-24T22:05:28.613Z
expo-book.com favicon

EXPO-BOOK

expo-book.com

0
OtherN/alargeHIGH

EXPO-BOOK is an international exhibition portal and social network established in 2012, offering a comprehensive platform for exhibitions, companies, tenders, jobs, and communities related to the exhibition industry. The website targets exhibitors, visitors, and professionals seeking information and networking opportunities in the exhibition sector. It maintains a large database of exhibitions, companies, and members, positioning itself as a significant player in the international exhibition market. Technically, the website employs a custom CMS with a technology stack including jQuery, jQuery UI, Google Translate integration, and Yandex Metrika for analytics. The site demonstrates moderate performance and basic mobile optimization. SEO and accessibility features are present but could be improved. Hosting and domain registration are managed through RU-CENTER with privacy protection enabled. From a security perspective, the site uses HTTPS and has domain transfer protection but lacks DNSSEC and important security headers such as Content-Security-Policy and HSTS. No explicit security or incident response policies are published, and cookie consent mechanisms are absent, indicating partial compliance with privacy regulations. The site does not expose sensitive data or use vulnerable libraries visibly. Overall, the website is professionally designed and functional with a moderate security posture and basic privacy compliance. Strategic improvements in security headers, DNSSEC, and privacy mechanisms would enhance trust and compliance. The domain's long age and stable registration support the site's legitimacy, with no suspicious indicators detected.

62
20
75
70
35
2
20
exhibitionscompaniestendersjobscommunities+3 more
jQueryjQuery UIGoogle Translate widgetYandex Metrika
2025-10-24T22:03:24.157Z
actualitesvoyages.com favicon

Actualités Voyages

actualitesvoyages.com

0
MediaN/asmallCRITICAL

Actualités Voyages is a French-language travel news and information website founded in 2020. It provides up-to-date travel news, trends, guides, and tips targeting a general audience interested in global travel. The website operates on a WordPress platform using popular plugins such as Elementor for design and WP Rocket for performance optimization. The site is hosted with DNS managed by Cloudflare, ensuring reliable DNS resolution and some level of protection. The content is professionally presented with good navigation and mobile optimization, making it accessible and user-friendly. From a security perspective, the website enforces HTTPS and uses basic Content Security Policy headers to upgrade insecure requests. However, it lacks advanced security headers and does not enable DNSSEC, which could improve DNS security. There is no publicly available privacy policy, cookie policy, or terms of service, which represents a compliance gap, especially under GDPR. No contact information or incident response details are published, limiting transparency and user trust in security matters. Google Analytics and Tag Manager are used for user tracking, but no cookie consent mechanism is evident. Overall, the website is safe for general audiences and does not contain adult or questionable content. The domain registration is consistent and appropriate for the business type, with no suspicious patterns detected. The site demonstrates moderate technical maturity and business credibility but requires improvements in privacy compliance and security posture to enhance trust and regulatory adherence.

-
-
-
-
-
-
-
travelnewsmediafrancetourism+2 more
WordPressjQueryElementorWP Rocket+2
2025-10-24T21:31:12.754Z
axsmap.com favicon

Venues | AXS Map

axsmap.com

0
TechnologyN/asmallMEDIUM

AXS Map is an accessibility-focused online platform designed to help users find and map inclusive venues and community spaces. The website leverages modern web technologies including React and Google Maps API to deliver an interactive user experience. The platform supports community engagement through mapathons and team collaboration features, targeting individuals seeking accessibility information. The domain is well-established since 2010, indicating a mature presence in its niche. Technically, the website is built on a modern JavaScript framework with integration of Google services and is hosted with DNS managed by Cloudflare. Performance and mobile optimization are adequate, though accessibility features could be enhanced. Security posture is reasonable with HTTPS enforced and domain protections in place, but lacks DNSSEC and security headers which are recommended for improved security. From a compliance perspective, the site currently lacks visible privacy, cookie, and terms of service policies, which are important for GDPR and general privacy compliance. No contact or incident response information is provided, limiting transparency and user trust. Google Analytics is used for tracking without a visible consent mechanism, indicating potential privacy compliance gaps. Overall, AXS Map presents a focused and professional service with good technical foundations but would benefit from enhanced security practices and privacy compliance measures to strengthen trust and regulatory adherence.

75
75
60
100
15
17
35
accessibilitymappingcommunityvenuesinclusion
ReactGoogle Maps APICloudflare DNS
2025-10-24T21:30:05.230Z
lunaweb.org favicon

Domain Default page

lunaweb.org

0
TechnologyN/asmallHIGH

The website lunaweb.org currently serves as a default placeholder page generated by Plesk, indicating that the domain is registered but not actively used for a dedicated business or service. The page primarily promotes Plesk hosting control panel and related tools such as Sitejet Builder and WP Guardian, targeting web professionals and site owners interested in hosting management. The website content is minimal and basic, lacking any direct business information or contact details. From a technical perspective, the site uses standard HTML, CSS, and JavaScript with hosting infrastructure involving Cloudflare DNS and Plesk control panel. The site is mobile responsive with basic accessibility and moderate performance. However, there are no advanced frameworks or CMS detected, and no analytics or tracking technologies are in use. Security posture is limited; no security headers are present, DNSSEC is not enabled, and there is no visible HTTPS enforcement information. The absence of privacy, cookie, and terms of service policies indicates low compliance with privacy regulations. The WHOIS data shows a long-registered domain with a reputable registrar but no privacy protection, consistent with a domain held but not actively developed. Overall, the site scores low to moderate on content quality, technical implementation, security, privacy compliance, and business credibility. It is safe for general audiences but lacks substantive business or security features. Strategic improvements should focus on activating the domain with real content, implementing security best practices, and adding compliance documentation.

70
72
75
20
30
35
2
placeholderpleskhostingdefaultpagetechnology
HTML5CSS3JavaScript
2025-10-24T21:06:33.870Z
w3schools.com favicon

W3Schools

w3schools.com

0
EducationN/alargeLOW

W3Schools is a globally recognized online educational platform specializing in web development and programming tutorials. It offers a comprehensive range of free tutorials, references, exercises, and quizzes covering popular technologies such as HTML, CSS, JavaScript, Python, SQL, and more. The platform also provides paid certification programs and premium plans to enhance learning experiences. W3Schools targets a broad audience including students, educators, and professional developers, maintaining a strong market position as a leading resource for web development education. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with integration of Google Tag Manager and reCAPTCHA for analytics and security. The site is mobile-optimized, fast-loading, and accessible, with a consistent and professional design. Security best practices are observed, including HTTPS enforcement and security headers, though explicit security policies and incident response information are not publicly detailed. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is robust, featuring comprehensive privacy and cookie policies with GDPR adherence and user consent mechanisms. However, direct contact information for security incidents or general inquiries is not readily available, which could be improved to enhance trust and incident handling. Overall, W3Schools presents a low-risk profile with high trustworthiness, excellent content quality, and solid technical implementation. Strategic recommendations include publishing explicit security and incident response policies, adding vulnerability disclosure mechanisms, and providing clearer contact channels for security and support inquiries to further strengthen the platform's security culture and user trust.

100
80
85
95
47
80
30
htmlcssjavascriptpythonsql+5 more
HTML5CSS3JavaScriptGoogle Tag Manager+4
2025-10-24T21:06:22.713Z
S

Smith+Nephew

smith-nephew.com

0
HealthcareN/aenterpriseMEDIUM

Smith+Nephew is a globally recognized medical technology company specializing in medical devices and advanced wound care solutions. The company offers a broad portfolio including orthopaedics, sports medicine, ENT, trauma, and surgical products. Their website reflects a mature enterprise with a strong market position and a focus on healthcare professionals and institutions worldwide. The digital presence is professional, well-branded, and content-rich, supporting their global business model. Technically, the website employs modern technologies such as Google Tag Manager, Facebook SDK, and Cookiebot for consent management, alongside Sitecore CMS. The site demonstrates good performance, mobile optimization, and accessibility standards. Comprehensive privacy and cookie policies are implemented, indicating a strong commitment to GDPR compliance and user privacy. From a security perspective, the site enforces HTTPS, uses multiple security headers, and employs best practices such as CSRF protection and cookie consent mechanisms. However, explicit security policies and incident response information are not prominently published, representing an area for improvement. No vulnerabilities or suspicious activities were detected. Overall, the website presents a low risk profile with strong business credibility and privacy compliance. The lack of public WHOIS data is typical for corporate domains using privacy protection and does not detract from the legitimacy of the site. Strategic recommendations include publishing detailed security policies and vulnerability disclosure information to enhance transparency and trust.

80
70
83
100
2
-
82
medicaldeviceshealthcareadvancedwoundcareorthopaedicssportsmedicine+5 more
JavaScriptGoogle Tag ManagerFacebook SDKCookiebot+1

Partner Domains:

investisdigital.com
partner
dotdigital-pages.com
partner

+3 more partners

2025-10-24T21:03:59.746Z
0100conferences.com favicon

Intimate Private Equity Events in Europe

0100conferences.com

0
FinanceN/asmallMEDIUM

Zero One Hundred Conferences operates as a niche event organizer specializing in intimate private equity networking events across Europe. The website positions itself as a premier platform for private market professionals seeking exclusive conference experiences. The business model centers on event facilitation and networking services tailored to private equity stakeholders. Technically, the website employs modern web technologies including Vue.js/Nuxt.js frameworks, and integrates multiple third-party analytics and marketing tools such as Google Analytics, HubSpot, Facebook Pixel, and LinkedIn Insight Tag. Hosting is via Amazon CloudFront CDN, supporting moderate performance and good mobile optimization. Security posture is moderate with HTTPS likely enabled but lacking visible security headers and formal privacy or cookie policies, which are critical for compliance and trust. The absence of WHOIS registration data raises concerns about domain legitimacy and registration status, impacting overall trustworthiness. No contact emails or phone numbers are explicitly provided, limiting direct communication channels. Overall, the site is professional and content-rich but requires improvements in security, compliance, and transparency to enhance credibility and risk posture.

60
68
55
35
72
75
100
privateequityplatformprivateequityconferencespeplatformpeeventsintimatenetworking
Google AnalyticsHubSpotFacebook PixelLinkedIn Insight Tag+2
2025-10-24T20:42:19.417Z