Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 527 of 579|Showing 26301-26350 of 28910
startupworldcup.io favicon

Startup World Cup

startupworldcup.io

0
TechnologyN/amediumMEDIUM

Startup World Cup operates as a global conference and competition platform that connects top startups, venture capitalists, entrepreneurs, and leading tech CEOs worldwide. The website presents a professional and consistent brand image, targeting the startup ecosystem and investment community. The business model centers on event hosting and competitive showcasing of startups, positioning itself as a key player in the global startup event market. Technically, the website is built on the Wix platform, leveraging Wix's hosting and content management capabilities. It integrates common analytics tools such as Google Analytics, Google Tag Manager, and Yandex Metrika for user tracking and marketing insights. The site is mobile-optimized and demonstrates moderate performance, though accessibility and SEO optimizations are basic. From a security perspective, the site uses HTTPS effectively, ensuring encrypted communications. However, the absence of security headers and lack of visible privacy or cookie policies indicate room for improvement in security best practices and compliance. The WHOIS data is unavailable or privacy-protected, which is common for event websites but slightly reduces transparency. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, clearer contact information, and improved security headers to strengthen trust and regulatory adherence.

35
58
25
60
72
80
100
startupconferencecompetitiontechnologyentrepreneurs+1 more
Wix.com Website BuilderGoogle AnalyticsGoogle Tag ManagerYandex Metrika
2025-06-26T21:11:17.178Z
pdfgeneratorapi.com favicon

PDF Generator API

pdfgeneratorapi.com

0
TechnologyN/asmallMEDIUM

PDF Generator API is a technology company specializing in providing an API service that automates PDF document creation from templates and JSON data. Their platform targets developers and businesses seeking to integrate PDF generation capabilities into their applications, offering a browser-based drag-and-drop editor for template management. The company appears to be a small-sized entity founded around 2017, with a focused niche in document automation technology. Technically, the website leverages modern web technologies including Next.js and React, supported by analytics and monitoring tools such as Mixpanel, Google Analytics 4, RudderStack, and Bugsnag. Hosting is likely on Amazon AWS infrastructure, indicated by the DNS servers. The site demonstrates moderate performance and good mobile optimization, with basic accessibility and SEO practices in place. From a security perspective, the site enforces HTTPS and includes a cookie consent mechanism with granular user options, reflecting some privacy compliance efforts. However, the absence of DNSSEC, security headers, explicit privacy policy, terms of service, and contact information for security or incident response reduces the overall security posture. No WAF or blocking mechanisms were detected, and the domain registration is consistent and legitimate. Overall, the website presents a professional and functional service with room for improvement in privacy transparency, security hardening, and contact availability. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing comprehensive privacy and security policies, and providing clear contact channels for incident response.

30
100
55
70
77
85
100
pdfgenerationapidocumentautomationtechnologydevelopertools
Next.jsReactMixpanelGoogle Analytics 4+4
2025-06-26T21:09:31.765Z
thehackettgroup.com favicon

The Hackett Group®

thehackettgroup.com

0
TechnologyN/aenterpriseMEDIUM

The Hackett Group® is an enterprise-level consulting firm specializing in generative AI (Gen AI) solutions and digital transformation services. The company positions itself as a market leader with proprietary platforms such as AI XPLR™ and strategic acquisitions including LeewayHertz, Spend Matters™, and ZBrain™. Their services span business benchmarking, executive advisory, market intelligence, and technology implementation, targeting businesses aiming to leverage AI for breakthrough performance. The website reflects a mature digital presence with rich content, multimedia integration, and comprehensive navigation, indicating a high level of digital maturity. Technically, the website is built on WordPress with modern SEO and analytics tools including Yoast SEO, Google Tag Manager, Hotjar, Microsoft Clarity, and Zoominfo. The site is mobile-optimized and performs moderately well, with good accessibility and SEO practices. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers and policies are not fully documented. Privacy compliance is basic, with cookie consent but no visible privacy policy or terms of service in the provided content. Overall, the security posture is good but could be improved by adding explicit security policies, incident response information, and vulnerability disclosure mechanisms. The absence of WHOIS data for the domain is a notable concern, suggesting either privacy protection or data unavailability, which impacts domain legitimacy assessment. Despite this, the professional website content and business information support a credible business presence. Strategic recommendations include enhancing transparency on privacy and security policies, implementing additional security headers, publishing incident response and vulnerability disclosure information, and verifying domain registration details to improve trust and compliance.

65
95
17
80
82
85
100
genaidigitaltransformationconsultingaixplrbusinessbenchmarking+2 more
WordPressYoast SEOFont Awesome 6 ProjQuery+7

Partner Domains:

leewayhertz.com
subsidiary
spendmatters.com
subsidiary

+3 more partners

2025-06-26T20:07:33.207Z
14.no favicon

14.no - Domain for sale

14.no

0
OtherN/asmallMEDIUM

The website 14.no is a minimalistic domain-for-sale landing page created in 2022. It offers the domain 14.no for purchase and targets potential domain buyers or investors. The business model is straightforward domain resale with no additional services or content. The site uses a Vue.js framework with Google Fonts and includes basic meta tags and Open Graph data for social media sharing. However, it lacks comprehensive business information, privacy policies, or terms of service, limiting its professional presence. Technically, the site is built with modern JavaScript frameworks but lacks advanced security headers and does not provide evidence of HTTPS enforcement. Performance and mobile optimization are basic but functional. No analytics or tracking scripts are present, indicating minimal user data collection. The site includes a single contact email but no phone numbers or physical addresses. From a security perspective, the site shows limited security posture with no detected security policies, incident response contacts, or vulnerability disclosures. The absence of privacy and cookie policies indicates non-compliance with GDPR and related regulations. The WHOIS data shows the domain was registered in 2022, consistent with its current use as a domain sale page, with no suspicious registration patterns. Overall, the website scores low on content quality, privacy compliance, and security posture due to minimal content and lack of policies. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, enhancing security headers, and providing clearer business and contact information to improve trust and compliance.

15
35
2
70
75
75
100
domainsaleshortdomainforsalewebsecuredio
JavaScriptCSSGoogle Fonts
2025-06-26T20:02:02.581Z
contractpharma.com favicon

Contract Pharma

contractpharma.com

0
HealthcareN/amediumMEDIUM

Contract Pharma operates as a specialized media outlet focused on connecting contract service providers with pharmaceutical and biopharmaceutical sponsors. The website offers a comprehensive range of services including industry news, digital and print magazine editions, directories, event information, and sponsored content. It targets professionals and companies within the pharma and biopharma sectors, positioning itself as a premier information and networking platform in this niche. Technically, the site is built on WordPress with a modern tech stack including Bootstrap, jQuery, and various analytics and marketing tools such as Google Analytics, HubSpot, and AdRoll. The site demonstrates good SEO practices with structured data and meta tags, and it is mobile optimized with responsive design elements. Performance is moderate, with standard ad integrations and tracking scripts. From a security perspective, the site uses HTTPS and integrates Google reCAPTCHA for form protection. Cookie consent mechanisms are in place, and privacy policies are comprehensive and GDPR compliant. However, explicit security policies and incident response information are not publicly available. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the site presents a professional and trustworthy front for its business model, but the lack of WHOIS transparency and absence of direct contact information on the homepage slightly reduce its trustworthiness. Strategic improvements in security transparency and contact availability would enhance credibility and compliance.

15
68
17
55
72
80
100
pharmaceuticalbiopharmacontractmanufacturingmedianews+3 more
WordPress 6.6.1jQuery 3.7.1Bootstrap CSSFont Awesome 6.5.1+7

Partner Domains:

contractpharma.texterity.com
partner
conference.contractpharma.com
partner

+1 more partners

2025-06-26T20:01:32.522Z
W

World Travel Awards

worldtravelawards.com

0
HospitalityN/amediumMEDIUM

World Travel Awards is a globally recognized awards program that celebrates excellence in the travel, tourism, airline, hotel, and hospitality sectors. Established in 1993, it holds a strong market position as a leading authority in travel industry awards, hosting multiple gala ceremonies worldwide and publishing a dedicated Best in Travel magazine. The website targets travel industry professionals and consumers interested in the highest standards of travel and tourism services. Technically, the website employs a moderate technology stack including jQuery, Masonry, Google Tag Manager, and OneTrust for cookie consent, ensuring a functional and moderately optimized user experience. The site is secured with HTTPS and a Content Security Policy, though it could benefit from additional security headers and enhanced mobile optimization. From a security perspective, the site demonstrates good practices with encrypted connections and privacy compliance, including GDPR-aligned policies and cookie consent mechanisms. However, the absence of WHOIS registrant data introduces some uncertainty regarding domain registration transparency. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a professional and trustworthy front for its business, with recommendations to improve security headers, mobile responsiveness, and to clarify domain registration details to enhance trust and compliance further.

55
68
2
80
65
80
100
travelindustryawardshotelawardsairlineawardstourismawardshospitalityawards
jQuery 2.2.4Masonry.jsImagesLoaded.jsGoogle Tag Manager (gtag.js)+3

Partner Domains:

worldcruiseawards.com
partner
worldculinaryawards.com
partner

+3 more partners

2025-06-26T18:55:45.068Z
csv-loader.com favicon

CSV Loader

csv-loader.com

0
TechnologyN/asmallMEDIUM

CSV Loader is a technology-focused SaaS provider specializing in universal CSV import and export tools designed to integrate with over 100 business applications. Founded in 2022, the company targets businesses and professionals seeking efficient data management solutions. The website presents a professional and consistent brand image with clear service offerings such as CSV Import and Data Export, supported by customer testimonials and a 14-day free trial to encourage adoption. Technically, the website is built on the Tilda CMS platform, leveraging standard web technologies including HTML5, CSS3, JavaScript, and jQuery. It integrates Google Tag Manager for analytics and marketing purposes. The site is mobile-optimized and demonstrates good SEO practices, though accessibility features are basic. Hosting appears to be managed via GoDaddy, consistent with the domain registrar information. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks visible security headers and explicit security policies. There is no evidence of privacy or cookie policies, terms of service, or incident response information, which are critical for compliance and user trust. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, CSV Loader presents a moderate risk profile with strengths in business credibility and technical implementation but notable gaps in privacy compliance and security best practices. Strategic improvements in policy transparency, security headers, and contact information would enhance trust and compliance.

30
65
2
55
72
80
100
csvdataimportdataexportbusinesstoolssaas+1 more
HTML5CSS3JavaScriptjQuery 1.10.2+2
2025-06-26T18:53:49.856Z
G

ERROR: The request could not be satisfied

gridoto.com

0
OtherN/asmallMEDIUM

The website www.gridoto.com is currently inaccessible due to a 403 error generated by Amazon CloudFront, indicating that the request is blocked possibly due to traffic or configuration issues. The WHOIS lookup for the domain returned no registration data, suggesting the domain may be unregistered, expired, or otherwise inactive. Due to the lack of accessible content, no metadata, structured data, or business information could be extracted. This severely limits the ability to assess the business, technical infrastructure, or security posture of the entity behind the domain. From a technical perspective, the site is hosted behind Amazon CloudFront but is currently not serving any content, which prevents evaluation of technologies, frameworks, or performance. Security headers and HTTPS status cannot be verified, and no privacy or cookie policies are available. The absence of contact information and business details further reduces trust and credibility. The security posture is poor given the site is inaccessible and no security best practices can be confirmed. The lack of WHOIS data and domain registration information raises concerns about the legitimacy and operational status of the domain. Overall, the risk level is high due to the inability to verify any positive indicators of trust or security. Strategic recommendations include resolving the CloudFront configuration or traffic issues to restore website accessibility, ensuring proper domain registration and WHOIS data accuracy, implementing standard security headers and HTTPS, and publishing clear privacy and contact information to improve trust and compliance.

15
50
2
65
82
85
100
2025-06-26T17:50:39.212Z
cirkleinc.com favicon

Cirkle Studio Pvt. Ltd.

cirkleinc.com

0
E-commerceN/asmallMEDIUM

Cirkle Studio Pvt. Ltd. operates the website cirkleinc.com, offering premium Shopify apps, themes, and expert consulting services targeted at Shopify merchants and store owners. The company positions itself as a Shopify Expert and Partner with a presence on the Shopify App Store and Experts platform, indicating a focused niche in e-commerce solutions. Their business model revolves around SaaS app sales, digital product sales (themes), and consulting services, catering to a small-sized enterprise founded in 2017. Technically, the website employs modern frontend technologies such as Bootstrap, jQuery, and icon libraries, hosted behind Cloudflare DNS. The site is mobile optimized with good design and navigation, though SEO and accessibility features are basic. No CMS or backend platform is explicitly detected. Performance is moderate, with no evident blocking or WAF challenges. From a security perspective, the domain is well-managed with multiple EPP locks and a long registration period, but lacks DNSSEC and visible security headers. The absence of privacy and cookie policies, as well as incident response or vulnerability disclosure information, indicates compliance and security maturity gaps. No HTTPS enforcement details were provided, which is critical for e-commerce sites. Overall, the website is professional and credible within its niche but requires improvements in privacy compliance, security best practices, and transparency to enhance trust and reduce risk. Strategic recommendations include implementing privacy and cookie policies with consent mechanisms, enabling DNSSEC, adding security headers, and publishing incident response contacts.

15
50
2
60
65
75
100
shopifye-commerceappsthemesshopifyexperts+1 more
BootstrapjQueryMaterial Design IconsOwl Carousel+1

Partner Domains:

apps.shopify.com
partner
zarathemes.com
partner

+3 more partners

2025-06-26T17:48:48.987Z
E

email.com

email.com

0
OtherN/asmallMEDIUM

The website at email.com/lander is a minimal placeholder or parking page with very limited content. It primarily loads a React-based frontend with Google AdSense scripts for advertising. There is no visible business information, contact details, or compliance policies, which significantly limits the ability to assess the business or its market position. The domain itself is very old, registered since 1997 with Register.com, Inc., which suggests legitimacy in terms of domain ownership but contrasts with the lack of substantive website content. From a technical perspective, the site uses modern JavaScript frameworks (React) and integrates Google advertising scripts. However, there is no evidence of HTTPS enforcement or security headers, and DNSSEC is not enabled on the domain. The site’s performance and mobile optimization are basic, and SEO and accessibility features are minimal or absent. Security posture is weak due to the absence of HTTPS information, security headers, and privacy or cookie policies. No incident response or vulnerability disclosure information is present. The lack of contact information and business details further reduces trustworthiness. There are no signs of WAF or blocking mechanisms, so the site is accessible but offers minimal value or assurance to visitors. Overall, the website appears to be a parked domain or placeholder with advertising scripts but no real business presence or security/compliance maturity. Strategic recommendations include implementing HTTPS, adding comprehensive privacy and cookie policies, providing clear contact information, and improving security headers and DNSSEC to enhance trust and compliance.

25
50
2
70
77
85
100
placeholderparkingadsenseminimal-content
ReactGoogle AdSense
2025-06-26T17:44:21.925Z
L

LogoArchive's Logo Histories

logohistories.com

0
OtherN/asmallMEDIUM

LogoArchive is a niche content provider focused on delivering weekly newsletters about the histories of famous and lesser-known logos. The website itself is minimal, primarily serving as a redirect or container to a Substack-hosted newsletter platform. The business appears to be small and relatively new, founded in 2022, targeting audiences interested in branding and graphic design history. The market position is specialized with a focus on storytelling around logos. Technically, the website uses outdated HTML frameset technology and lacks modern web development best practices. It relies on the Substack platform for content delivery, which simplifies hosting but limits direct control over technical infrastructure. The site lacks SEO optimization, accessibility features, and modern responsive design elements, resulting in a basic user experience. From a security perspective, the site shows a basic posture with no DNSSEC enabled, no security headers detected, and no visible privacy or cookie policies. The domain registration is consistent and legitimate, with no privacy protection or suspicious patterns. However, the lack of security best practices and compliance documentation indicates room for improvement to meet modern standards. Overall, the website scores low to moderate in content quality, technical implementation, security posture, privacy compliance, and business credibility. Strategic improvements in web technology, security policies, and compliance documentation are recommended to enhance trust and professionalism.

15
40
17
40
100
75
100
logosbrandinghistorynewsletterdesign+1 more
HTML FramesetSubstack platform
2025-06-26T16:39:41.239Z
wittl.co favicon

Wittl

wittl.co

0
TechnologyN/asmallMEDIUM

Wittl is a SaaS company providing a modern applicant tracking system tailored for small and medium-sized teams. Their platform enables users to create job postings, customize career sites, manage applicant reviews, and collaborate efficiently during the hiring process. Positioned as an affordable and user-friendly alternative to legacy ATS solutions, Wittl targets SMBs seeking streamlined recruitment workflows. The website demonstrates a professional and consistent brand presence with clear service offerings and customer testimonials, reinforcing trust and market relevance. Technically, the site is built on a modern React and Next.js stack, delivering fast performance and excellent mobile optimization. The use of privacy-focused analytics (Plausible) aligns with contemporary data protection expectations. However, the absence of certain security headers and cookie consent mechanisms indicates room for improvement in security and privacy compliance. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data, reflecting good baseline security hygiene. The lack of published security policies or incident response contacts suggests an opportunity to enhance transparency and preparedness. The WHOIS data is privacy protected, which is typical for SaaS businesses but limits external verification of registrant details. Overall, Wittl presents a credible and well-executed online presence with minor gaps in privacy compliance and security best practices. Strategic enhancements in these areas would further strengthen user trust and regulatory alignment.

30
58
2
70
72
80
100
applicanttrackinghiringrecruitmentsaassmallbusiness+3 more
ReactNext.jsJavaScriptSVG+1
2025-06-26T16:39:31.215Z