Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 536 of 579|Showing 26751-26800 of 28928
coroflot.com favicon

Core77, Inc.

coroflot.com

0
TechnologyN/amediumMEDIUM

Coroflot is an established online platform specializing in connecting design professionals with employers through job postings and portfolio hosting. The site targets designers and companies seeking creative talent, offering services such as job listings, portfolio showcases, and a design salary guide. The platform is positioned as a niche leader in the design employment market, supported by its parent company Core77, Inc. The website demonstrates a professional and consistent brand presence with active content and social media engagement. Technically, Coroflot employs a modern web stack including jQuery, Google Tag Manager, Google Analytics, and New Relic for performance monitoring. The site is served over HTTPS with valid SSL certificates, ensuring secure communications. While the site is mobile optimized and SEO friendly, accessibility features are basic and could be improved. No CMS or hosting provider details were explicitly identified. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML. However, it lacks several recommended security headers such as Content-Security-Policy and X-Frame-Options, which could enhance protection against common web attacks. The absence of a cookie consent mechanism and explicit privacy compliance features indicates room for improvement in GDPR and privacy adherence. No incident response or vulnerability disclosure policies were found. Overall, Coroflot presents a trustworthy and functional platform with good business credibility and technical implementation. The main risks relate to privacy compliance and security header implementation. Strategic enhancements in these areas would strengthen the site's security posture and regulatory compliance.

35
53
2
50
72
60
100
designjobsportfoliocreativehiring+1 more
jQuery 1.7.1Google Tag ManagerGoogle AnalyticsNew Relic Browser monitoring

Partner Domains:

core77.com
parent
2025-06-24T21:55:56.020Z
yanmet.com favicon

Yan Metelitsa

yanmet.com

0
TechnologyN/asmallMEDIUM

Yanmet.com is a professionally designed website representing Yan Metelitsa, a full-stack web developer specializing in comprehensive web solutions including frontend, backend, design, and additional web services. The site features a detailed portfolio showcasing various projects such as websites, web applications, and WordPress plugins, targeting businesses and projects seeking modern web development services. The business appears to be a small, independent operation founded in 2022, with a clear focus on quality and client engagement. Technically, the website is built on WordPress CMS with a custom theme and leverages modern web technologies including HTML, SCSS, JavaScript, PHP, and WooCommerce. Hosting is provided via hostfly.by as indicated by the nameservers. The site is well optimized for performance, mobile responsiveness, and SEO, with structured data and Open Graph metadata implemented effectively. Analytics are handled through Yandex.Metrika, providing moderate user tracking capabilities. From a security perspective, the site uses HTTPS with a valid SSL certificate and has domain status clientTransferProhibited, enhancing domain security. However, DNSSEC is not enabled and no explicit security headers were detected in the HTML content. There is no visible cookie consent mechanism or detailed privacy compliance beyond a basic privacy policy. No incident response or security policy pages were found, indicating room for improvement in formal security governance. Overall, yanmet.com presents a trustworthy and professional web presence for a small web development business with strong technical implementation and good business credibility. Strategic improvements in security headers, cookie consent, and incident response documentation would enhance the security posture and compliance standing further.

25
53
17
85
72
70
20
webdevelopmentportfoliowordpressseowebapplications+2 more
HTMLSCSSJavaScriptPHP+2
2025-06-24T21:55:51.006Z
casinova.uk favicon

Casinova Casino

casinova.uk

0
HospitalityN/asmallMEDIUM

Casinova Casino is a newly launched online gambling platform established in 2024, targeting primarily UK players with a premium and sophisticated gaming experience. The website offers a broad portfolio of casino games including slots, live dealer games, jackpots, and sports betting, supported by a user-friendly interface and attractive bonuses. The platform emphasizes a stylish design and seamless navigation to enhance player engagement and satisfaction. Technically, the site employs modern web technologies, including HTML5, CSS3, JavaScript, Google Fonts, and Google reCAPTCHA for form security. Hosting is provided by Hosting Concepts B.V., a reputable European provider. Security posture is strong with HTTPS enforced and SSL encryption protecting user data, though explicit security headers and incident response information are lacking. Privacy compliance is basic with a privacy and cookie policy present but no active cookie consent mechanism. Business credibility is supported by transparent WHOIS data and positive user reviews, though the domain is very new, reflecting the platform's recent market entry. Overall, Casinova Casino presents a professional and trustworthy online casino experience with room for improvement in security transparency and compliance documentation.

65
68
17
70
75
60
100
onlinecasinoslotslivecasinojackpotsportsbetting+2 more
HTML5CSS3JavaScriptGoogle Fonts+3

Partner Domains:

casinova-au.com
sister
casinovacasino-online.de
sister

+3 more partners

2025-06-24T21:49:48.461Z
R

rapiddevapi.com

rapiddevapi.com

0
OtherN/asmallHIGH

The website at rapiddevapi.com currently presents only minimal placeholder content with no meaningful business information, metadata, or contact details. The domain registration data is suspicious due to a future creation date, which undermines trust and legitimacy. Technically, the site lacks modern SEO, accessibility, and security features, with no privacy or cookie policies implemented. The security posture is basic with no advanced headers or DNSSEC enabled. Overall, the site appears to be either under development or abandoned, providing no clear indication of business operations or services. From a technical infrastructure perspective, the site does not utilize any detectable frameworks, CMS, or third-party technologies. The hosting provider and performance characteristics cannot be determined from the available data. The absence of forms, scripts, or analytics indicates a very low digital maturity level. Security evaluation reveals a basic SSL configuration but no additional security headers or best practices. The lack of privacy and cookie policies indicates non-compliance with GDPR and other data protection regulations. The suspicious WHOIS data further reduces confidence in the domain's legitimacy. Given these findings, the overall risk assessment is high due to lack of transparency, minimal content, and questionable domain registration data. Strategic recommendations include establishing a legitimate and transparent web presence with complete business information, implementing security best practices including DNSSEC and security headers, and ensuring compliance with privacy regulations.

15
40
17
60
52
70
40
2025-06-24T21:49:18.276Z
poetic.io favicon

Poetic

poetic.io

0
Real EstateN/asmallMEDIUM

Poetic is a specialized digital agency focused on empowering property professionals through tailored website development, personalized digital marketing, and compelling branding services. The company positions itself as a niche provider within the real estate sector, offering a cohesive suite of services that support property success stories from branding to technology integration. The website reflects a professional, modern, and visually appealing digital presence that aligns with its business focus. Technically, the website is built on Webflow CMS and leverages modern JavaScript libraries such as jQuery and GSAP for animations and user experience enhancements. Hosting and security are supported by Cloudflare, including the use of Turnstile captcha for form protection, indicating a mature approach to bot mitigation and user interaction security. The site is mobile-optimized and performs well with good accessibility and SEO practices. From a security perspective, the site uses HTTPS and includes form protection mechanisms but lacks explicit security headers and published privacy or cookie policies. No vulnerability disclosure or security.txt pages are present, which could be improved to enhance transparency and trust. The WHOIS data is not publicly available, likely due to privacy protection, which is common and justified for this business type. Overall, Poetic demonstrates a strong digital maturity and business credibility with minor gaps in privacy compliance and security transparency. Strategic recommendations include publishing privacy and cookie policies, adding security headers, and implementing a vulnerability disclosure mechanism to further strengthen trust and compliance.

45
53
17
85
72
75
100
digitalmarketingbrandingrealestatewebsitedevelopmentpropertyprofessionals
jQuery 3.5.1GSAP 3.11.3SplitType.jsCloudflare Turnstile Captcha

Partner Domains:

assetliving.com
partner
amli.com
partner

+3 more partners

2025-06-24T21:43:30.770Z
renewable-technology.com favicon

Energy Monitor

renewable-technology.com

0
EnergyN/asmallLOW

Energy Monitor is a specialized media outlet focused on the global transition to net zero, providing non-partisan analysis on the politics and economics of moving away from fossil fuels towards renewable energy and climate neutrality. The website targets policy makers, energy professionals, academics, and the interested public, positioning itself as a niche information provider in the energy sector. The business model revolves around media content and insights, with a small but professional online presence established since 2020. Technically, the website is built on WordPress and leverages a modern technology stack including Google Analytics, Google Tag Manager, Pardot marketing automation, and New Relic for performance monitoring. The site is mobile-optimized with good SEO practices and uses structured data for enhanced search engine visibility. Cookie consent is managed via OneTrust, indicating some level of privacy compliance. From a security perspective, the site enforces HTTPS and employs standard security headers, although explicit security policies and incident response contacts are not publicly available. The absence of WHOIS data limits domain trust assessment, but the website's professional design and technical setup suggest legitimacy. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a moderate risk profile with room for improvement in privacy transparency and contact availability. Strategic recommendations include publishing clear privacy and terms of service pages, adding security contact information, and implementing a vulnerability disclosure policy to enhance trust and compliance.

75
100
47
70
95
60
100
energyrenewablesclimatenetzeromedia+2 more
WordPressGoogle AnalyticsGoogle Tag ManagerPardot+7
2025-06-24T21:42:40.453Z
verifypass.com favicon

VerifyPass

verifypass.com

0
TechnologyN/asmallMEDIUM

VerifyPass operates as a technology platform focused on providing consumers from specific communities such as Military, First Responders, Healthcare Workers, Teachers, Government employees, Students, and Senior Citizens with verified access to exclusive offers and discounts. The platform facilitates a verification process that enables users to confirm their eligibility and access benefits from various companies. The website demonstrates a clear business model centered on community-based verification services and discount facilitation, positioning itself as a niche player in this domain. Technically, the website employs modern web technologies including Vue.js, Axios, and Prism.js, supported by Google Analytics and Google Tag Manager for tracking and analytics. Hosting and DNS services are managed via Cloudflare, providing robust infrastructure and performance benefits. The site is mobile-optimized with a responsive design and clear navigation, although accessibility features are basic. SEO practices are adequately implemented with proper meta tags and structured navigation. From a security perspective, the website enforces HTTPS and employs domain registration protections such as clientDeleteProhibited status. However, DNSSEC is not enabled, and there is a lack of advanced security headers and explicit security or incident response policies. Privacy compliance is partial, with a privacy policy and terms of service present but no cookie consent mechanism or GDPR compliance indicators. Contact information is limited to a support email address, with no phone or physical address provided. Overall, VerifyPass presents a moderately secure and professionally maintained platform with room for improvement in privacy compliance and security policy transparency. The domain registration data supports the legitimacy of the business, and no blocking or WAF challenges were detected, allowing full content accessibility and analysis.

35
53
2
75
75
80
100
verificationdiscountscommunityoffersconsumer+1 more
Vue.js 2.6.14AxiosPrism.jsGoogle Analytics+1
2025-06-24T21:42:05.258Z
apocaviation.com favicon

APOC - Aircraft Part-out Company

apocaviation.com

0
TransportationN/amediumMEDIUM

APOC Aviation is a European-based company specializing in aircraft part-out, leasing, trading, and component support services primarily focused on Airbus and Boeing assets. The company positions itself as an innovative and client-oriented supplier within the aviation industry, offering services such as aircraft acquisition for teardown, engine and landing gear management, and parts supply. The website reflects a medium-sized enterprise with a professional online presence and a clear focus on aviation sector clients. Technically, the website is built on WordPress using modern plugins such as Yoast SEO and WPBakery Page Builder, with integration of Google Analytics and reCAPTCHA for security and analytics. The site is mobile optimized and demonstrates good SEO practices, although accessibility features are basic. Performance is moderate, with no critical technical issues detected. From a security perspective, the site uses HTTPS and includes reCAPTCHA on forms, but lacks explicit security headers such as Content-Security-Policy and X-Frame-Options. No exposed sensitive data or vulnerable libraries were identified. Privacy compliance is partial, with a cookie consent mechanism present but no clear privacy policy or terms of service pages found. Overall, the website is professional and trustworthy in appearance, but the absence of WHOIS registration data for the domain raises concerns about domain legitimacy and ownership transparency. This discrepancy should be investigated further to ensure full trustworthiness. Strategic improvements in privacy policy publication and security header implementation are recommended to enhance compliance and security posture.

65
68
2
80
57
60
100
aviationaircraftleasingtradingpart-out+2 more
WordPressYoast SEOjQueryFlickity Carousel+3
2025-06-24T16:46:18.190Z
N

Neuroscience Education Institute

neiglobal.com

0
HealthcareN/amediumMEDIUM

The Neuroscience Education Institute (NEI) operates a professional website offering membership-based access to neuroscience educational resources, including an extensive online library and discounted registrations for live and virtual events. The site targets healthcare professionals seeking to stay current in clinical practice. The business model centers on education and membership services within the healthcare sector. Technically, the website is built on the DotNetNuke CMS platform and integrates common analytics and tracking tools such as Google Analytics, Facebook Pixel, Hotjar, and Feathr, indicating a moderate level of digital maturity. The site demonstrates good design quality and user experience but shows only basic mobile optimization and accessibility features. Security posture is moderate, with HTTPS implied but lacking visible security headers and published security policies. Privacy compliance is weak, with no detected privacy or cookie policies and extensive user tracking. The absence of WHOIS registration data is a significant concern, reducing overall trustworthiness despite the professional appearance of the site. Strategic recommendations include improving privacy compliance, publishing security and incident response policies, enhancing mobile and accessibility features, and investigating domain registration legitimacy.

60
65
17
85
77
85
100
healthcareeducationmembershipneuroscienceonlinelearning
JavaScriptjQueryGoogle AnalyticsFacebook Pixel+2
2025-06-24T16:46:18.108Z
V

vipcommunications.lt

vipcommunications.lt

0
OtherN/asmallHIGH

The website vipcommunications.lt currently serves as a parked domain with minimal content, primarily displaying a message indicating the domain may be for sale. There is no active business presence or detailed company information on the site. The domain's WHOIS data is unavailable due to query limits, preventing verification of registration details or ownership. The site includes multiple third-party advertising scripts, primarily from Google Adsense and related networks, but lacks any user-facing services or products. Technically, the site uses basic HTML and JavaScript with content delivery via Amazon Cloudfront CDN. There is no evidence of a CMS or advanced frameworks. The site is minimally optimized for mobile and accessibility, with no visible security headers or HTTPS verification in the provided data. Privacy compliance is minimal, with a basic privacy policy page but no cookie consent mechanism. From a security perspective, the site shows no active security measures or incident response information. The presence of multiple third-party ad and tracking scripts without clear privacy controls raises privacy concerns. The lack of contact information and business legitimacy indicators further reduces trustworthiness. Overall, the domain appears to be inactive and primarily used for domain parking and resale. The overall risk assessment is low due to the lack of active business operations, but the site should not be considered trustworthy for business or transactional purposes. Strategic recommendations include implementing HTTPS, adding security headers, providing clear privacy and cookie policies with consent mechanisms, and publishing verifiable business contact information to improve trust and compliance.

15
28
17
-
72
-
100
parked-domaindomain-for-saleadvertisingplaceholder
HTML5JavaScriptGoogle Adsense Domains CAFCloudfront CDN
2025-06-24T16:46:16.966Z