Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 528 of 579|Showing 26351-26400 of 28928
L

LogoArchive's Logo Histories

logohistories.com

0
OtherN/asmallMEDIUM

LogoArchive is a niche content provider focused on delivering weekly newsletters about the histories of famous and lesser-known logos. The website itself is minimal, primarily serving as a redirect or container to a Substack-hosted newsletter platform. The business appears to be small and relatively new, founded in 2022, targeting audiences interested in branding and graphic design history. The market position is specialized with a focus on storytelling around logos. Technically, the website uses outdated HTML frameset technology and lacks modern web development best practices. It relies on the Substack platform for content delivery, which simplifies hosting but limits direct control over technical infrastructure. The site lacks SEO optimization, accessibility features, and modern responsive design elements, resulting in a basic user experience. From a security perspective, the site shows a basic posture with no DNSSEC enabled, no security headers detected, and no visible privacy or cookie policies. The domain registration is consistent and legitimate, with no privacy protection or suspicious patterns. However, the lack of security best practices and compliance documentation indicates room for improvement to meet modern standards. Overall, the website scores low to moderate in content quality, technical implementation, security posture, privacy compliance, and business credibility. Strategic improvements in web technology, security policies, and compliance documentation are recommended to enhance trust and professionalism.

15
40
17
40
100
75
100
logosbrandinghistorynewsletterdesign+1 more
HTML FramesetSubstack platform
2025-06-26T16:39:41.239Z
wittl.co favicon

Wittl

wittl.co

0
TechnologyN/asmallMEDIUM

Wittl is a SaaS company providing a modern applicant tracking system tailored for small and medium-sized teams. Their platform enables users to create job postings, customize career sites, manage applicant reviews, and collaborate efficiently during the hiring process. Positioned as an affordable and user-friendly alternative to legacy ATS solutions, Wittl targets SMBs seeking streamlined recruitment workflows. The website demonstrates a professional and consistent brand presence with clear service offerings and customer testimonials, reinforcing trust and market relevance. Technically, the site is built on a modern React and Next.js stack, delivering fast performance and excellent mobile optimization. The use of privacy-focused analytics (Plausible) aligns with contemporary data protection expectations. However, the absence of certain security headers and cookie consent mechanisms indicates room for improvement in security and privacy compliance. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data, reflecting good baseline security hygiene. The lack of published security policies or incident response contacts suggests an opportunity to enhance transparency and preparedness. The WHOIS data is privacy protected, which is typical for SaaS businesses but limits external verification of registrant details. Overall, Wittl presents a credible and well-executed online presence with minor gaps in privacy compliance and security best practices. Strategic enhancements in these areas would further strengthen user trust and regulatory alignment.

30
58
2
70
72
80
100
applicanttrackinghiringrecruitmentsaassmallbusiness+3 more
ReactNext.jsJavaScriptSVG+1
2025-06-26T16:39:31.215Z
T

theflywheel.app

theflywheel.app

0
OtherN/asmallMEDIUM

Theflywheel.app's landing page at /lander is currently a minimal placeholder or parking page with very limited content. The site primarily loads a JavaScript bundle and a CSS stylesheet from wsimg.com and includes a Google Adsense script, indicating monetization attempts but no substantive business content or user engagement features. There are no visible privacy, cookie, or terms of service policies, nor any contact information or social media links. The lack of content and metadata suggests the site is either under development or not actively maintained. From a technical perspective, the site uses basic JavaScript and CSS assets but lacks modern SEO, accessibility, and performance optimizations. No CMS or frameworks are detected beyond the static assets. The absence of HTTPS or security headers in the provided data raises concerns about security posture. No forms or data collection mechanisms are present, limiting privacy compliance considerations. Security evaluation indicates a poor posture due to missing HTTPS, lack of security headers, and no visible incident response or vulnerability disclosure information. The site does not provide any trust or compliance signals, which negatively impacts its credibility and user trust. Overall, theflywheel.app's landing page is not currently suitable for business or user engagement and requires significant improvements in content, security, compliance, and technical implementation to be considered a professional and trustworthy website.

25
50
2
75
77
80
100
placeholderparkingminimal-contentadsense
JavaScript
2025-06-26T16:34:49.906Z
F

formfiftyfive.com

formfiftyfive.com

0
OtherN/asmallMEDIUM

The website formfiftyfive.com/lander currently serves as a minimal landing or parking page with very limited content and no visible business information or user engagement features. The domain is well-established, registered since 2007, and uses standard registrar and DNS providers, indicating legitimacy. However, the site lacks essential elements such as privacy policies, contact information, and meaningful content, which significantly limits its business and security posture. Technically, the site uses modern JavaScript technologies including React and loads scripts from wsimg.com, a common hosting for parking pages. The presence of Google Adsense scripts suggests monetization attempts through advertising. Performance and mobile optimization appear basic, with no advanced SEO or accessibility features detected. From a security perspective, the site does not present any immediate red flags such as WAF blocks or exposed vulnerabilities but also lacks security headers and DNSSEC, which are recommended for improved security. The absence of privacy and cookie policies and contact information reduces compliance with GDPR and general trustworthiness. Overall, the website scores low on content quality, privacy compliance, and business credibility, reflecting its current status as a placeholder rather than an active business site. Strategic improvements should focus on developing meaningful content, implementing privacy and security policies, and enhancing user engagement to improve trust and compliance.

25
50
2
70
77
75
100
placeholderparkingadsenseminimal-contentreact
JavaScript
2025-06-26T15:33:47.431Z
aarki.com favicon

Aarki, Inc.

aarki.com

0
TechnologyN/amediumMEDIUM

Aarki, Inc. operates as an AI-enabled mobile marketing platform specializing in user acquisition and re-engagement services for mobile publishers and brands. The company leverages AI technology combined with privacy-first engagement and unified creative strategies to optimize mobile advertising campaigns and drive revenue growth. Positioned as a full-service marketing platform, Aarki emphasizes privacy compliance and advanced programmatic advertising techniques to deliver measurable ROI for clients. Technically, the website is built on WordPress with modern SEO and marketing integrations including Yoast SEO, HubSpot, Google Tag Manager, and Vimeo for multimedia content. The site is mobile-optimized, accessible, and employs cookie consent mechanisms aligned with GDPR requirements. The technical infrastructure reflects a mature digital presence with moderate performance and good SEO practices. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks explicit security headers and published security policies or incident response information. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS registration data reduces transparency but the professional presentation and privacy compliance measures support a positive security posture. Overall, Aarki presents a credible and professional business with strong digital marketing capabilities and privacy awareness. Strategic improvements in security transparency and direct contact information would enhance trust and compliance further.

15
95
17
55
52
80
100
aimobilemarketinguseracquisitionre-engagementprivacy+5 more
WordPressYoast SEO PremiumHubSpotGoogle Tag Manager+4
2025-06-26T15:32:01.949Z
tokagroup.com favicon

Toka

tokagroup.com

0
GovernmentN/amediumMEDIUM

Toka is a specialized cybersecurity and digital forensics company focused on providing advanced lawful digital forensics, intelligence, and force protection solutions primarily to government, law enforcement, and security agencies. Their offerings include forensic investigations, targeted intelligence, covert operations, and national-level cyber capacity building services. The company positions itself as a trusted partner in homeland security and cyber defense, with recognition from entities such as the World Bank and StateUp. Technically, the website is built on the Webflow platform, leveraging modern JavaScript libraries such as jQuery and Glide.js for UI components, and integrates Google Analytics and Google Tag Manager for analytics and marketing. The site is mobile optimized with good design quality and clear navigation, though accessibility features are basic. Performance is moderate, typical of Webflow-hosted sites. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML. However, it lacks visible security headers and does not provide public security policies or incident response contacts. The absence of privacy and cookie policies is a compliance gap, especially for GDPR. The WHOIS data is missing or indicates the domain may not be registered, which is a significant trust concern. Overall, while the business and technical presentation is professional and targeted, the lack of WHOIS transparency and privacy compliance documentation reduces trustworthiness. Strategic improvements in security headers, privacy policies, and domain registration transparency are recommended to enhance credibility and compliance.

60
35
55
85
57
85
100
digitalforensicscybersecuritygovernmentintelligencelawenforcement+1 more
Google AnalyticsGoogle Tag ManagerWebflowjQuery+1
2025-06-26T15:29:06.149Z
getnowadays.com favicon

Nowadays AI, Corp.

getnowadays.com

0
TechnologyN/asmallMEDIUM

Nowadays AI, Corp. operates a technology-driven platform that leverages artificial intelligence to streamline corporate event planning. The company positions itself as an in-house event planner for businesses, offering services such as venue search, negotiation with venues globally, and travel agency capabilities certified by IATA. The platform targets corporate clients seeking efficient and hassle-free event organization, supported by notable trust signals including Y Combinator backing and press coverage. Technically, the website is built using modern frameworks such as Next.js and React, with integrations like Intercom for customer engagement and embedded YouTube videos for marketing. The site demonstrates good mobile optimization and SEO practices, though some accessibility features could be enhanced. Performance is moderate, with room for improvement in loading speed and security headers. From a security perspective, the site uses HTTPS (implied by the URL), but no explicit security headers were detected in the HTML content. Privacy and terms of service pages are present, indicating some compliance with data protection regulations such as GDPR. However, no cookie consent mechanism or detailed security policies were found, suggesting areas for compliance improvement. Overall, the risk profile is moderate with no critical security issues detected. The lack of public WHOIS data is typical for startups and does not detract from legitimacy given the professional branding and external validations. Strategic recommendations include enhancing security headers, implementing cookie consent, and publishing more detailed security and incident response policies to strengthen trust and compliance.

35
53
17
75
72
65
100
aieventplanningcorporatesaasycombinator+1 more
ReactNext.jsJavaScriptIntercom+1
2025-06-26T15:28:41.100Z
marrlabs.com favicon

Marr Labs

marrlabs.com

0
TechnologyN/asmallMEDIUM

Marr Labs is a technology company specializing in AI voice agents designed to automate customer interactions such as lead qualification, appointment scheduling, and customer service. The company targets multiple industries including financial services, call centers, real estate, legal, and hospitality. Their business model is based on a managed service approach with a one-time setup fee and usage-based pricing, emphasizing quick deployment and scalability. The website reflects a professional and consistent brand with clear messaging and transparent pricing. Technically, the website is built on the Webflow platform, utilizing modern web technologies including Google Tag Manager, Google Analytics, and Howler.js for audio playback. The site is well-optimized for performance and mobile devices, with good SEO practices and basic accessibility features. Security is enforced through HTTPS and secure form handling, though some security headers are missing and no cookie consent mechanism is present. From a security perspective, Marr Labs demonstrates a moderate security posture with SOC 2 compliance mentioned, indicating a focus on data protection and reliability. However, the absence of WHOIS registration data raises questions about domain legitimacy and age, which should be monitored. No incident response or vulnerability disclosure information is publicly available, and privacy compliance could be improved with explicit cookie consent and GDPR indicators. Overall, Marr Labs presents a credible and professional business with advanced AI offerings, but improvements in transparency, security headers, and privacy compliance are recommended to enhance trust and regulatory adherence.

30
53
17
85
72
75
100
aivoiceagentscustomerserviceautomationconversationalai+2 more
Webflow CMSGoogle Tag ManagerGoogle Analytics (gtag.js)Howler.js (audio playback)+2
2025-06-26T15:27:40.902Z
justpaid.ai favicon

JustPaid

justpaid.ai

0
FinanceN/asmallMEDIUM

JustPaid is a technology-driven SaaS company specializing in AI-powered revenue operations and billing automation. Their platform streamlines invoicing, payment collections, and customer communications, targeting financial experts, entrepreneurs, and accountants. The company is positioned as an innovative player in the finance technology sector, supported by Y Combinator backing, which enhances its market credibility. The website demonstrates a high level of professionalism, with comprehensive content and clear navigation, reflecting a mature digital presence. Technically, JustPaid leverages modern web technologies including Webflow CMS, Google Tag Manager, HubSpot, Hotjar, and various tracking and marketing tools. The site is mobile-optimized and performs moderately well, with good SEO and accessibility features. Hosting is provided by Webflow, a reputable platform for SaaS startups. From a security perspective, the site enforces HTTPS and employs standard marketing and analytics scripts. However, explicit security headers are not detected, and there is no public incident response or vulnerability disclosure information. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. The lack of exposed sensitive data and professional content supports a positive security posture. Overall, the risk assessment indicates a legitimate and trustworthy business with minor recommendations to enhance security headers and incident response transparency. The domain WHOIS data is privacy protected, which is typical for startups and does not raise immediate concerns. Strategic recommendations include improving security policy visibility, adding vulnerability disclosure, and enhancing trust signals through certifications or security frameworks.

60
68
2
80
72
85
100
aibillingautomationfinancesaasycombinator+2 more
WebflowGoogle Tag ManagerHubSpotHotjar+3

Partner Domains:

www.ycombinator.com
partner
2025-06-26T15:27:35.893Z