Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 547 of 579|Showing 27301-27350 of 28909
changeclimate.org favicon

Climate Neutral dba The Change Climate Project

changeclimate.org

0
Non-profitN/amediumMEDIUM

The Change Climate Project is a non-profit organization focused on climate leadership certification and carbon management. They have developed The Climate Label, a certification standard adopted by over 300 companies committed to reducing their carbon footprint and funding climate solutions. The organization provides accessible technology tools such as the Business Emissions Evaluator (BEE) to help companies measure and manage their emissions effectively. Their market position is strong within the sustainability and climate certification sector, supported by partnerships and testimonials from reputable organizations. Technically, the website is built on the Webflow platform, leveraging modern web technologies including Google Tag Manager, Facebook Pixel, LinkedIn Insight Tag, and Jetboost for enhanced user experience and marketing analytics. The site is mobile optimized with good SEO and accessibility basics, though there is room for improvement in security headers and cookie consent mechanisms. From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA on forms to prevent abuse. However, explicit security headers are missing, and no public incident response or vulnerability disclosure policies are found. The WHOIS data is unavailable due to privacy or query failure, which slightly reduces domain transparency but does not significantly impact overall trust given the professional presentation and content. Overall, the website demonstrates a high level of professionalism, content quality, and business credibility. Strategic recommendations include enhancing security headers, implementing cookie consent for privacy compliance, publishing security policies, and improving accessibility features to further strengthen trust and compliance.

60
53
17
75
62
80
100
climatecertificationcarbonmanagementsustainabilitynon-profit+3 more
Google Tag ManagerGoogle Analytics (gtag.js)Facebook PixelLinkedIn Insight Tag+4

Partner Domains:

explore.changeclimate.org
partner
www.notion.so
partner
2025-06-23T18:13:34.385Z
decibel.vc favicon

Decibel

decibel.vc

0
TechnologyN/asmallLOW

Decibel is an early-stage venture capital firm specializing in investments in essential infrastructure software used by developers, data engineers, and cybersecurity teams. The company positions itself as an early believer in technical founders, providing not only capital but also strategic support including access to early customers, marketing playbooks, founder advisory, and talent recruitment. The website reflects a professional and consistent brand image targeting technical founders and startups in the technology sector. The technical infrastructure of the website is modern and robust, leveraging Webflow CMS, jQuery, Slick Carousel, and multiple analytics and marketing tools such as Google Tag Manager, LinkedIn Insight, Twitter Analytics, and HubSpot. The site is mobile-optimized with good SEO and accessibility basics, though some accessibility features could be enhanced. Performance is moderate, with a clean and responsive design. From a security perspective, the website uses HTTPS with good SSL configuration and secure form handling. However, it lacks explicit security headers and published security policies or incident response contacts. Cookie consent is implemented, indicating some privacy compliance, but GDPR compliance is not fully evident. No vulnerabilities or exposed sensitive data were detected in the content. Overall, Decibel's website presents a credible and professional digital presence with strong business credibility and moderate to good security posture. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and improving privacy compliance disclosures to strengthen trust and compliance.

60
68
57
85
72
85
100
venturecapitaltechnologyearly-stageinvestmentinfrastructuresoftwaretechnicalfounders+4 more
jQuerySlick CarouselGoogle Tag ManagerLinkedIn Insight Tag+4
2025-06-23T18:13:29.370Z
cinando.com favicon

Cinando

cinando.com

0
MediaN/amediumMEDIUM

Cinando operates as a premier online networking platform tailored for film industry professionals worldwide. Founded in 2007, it offers a comprehensive suite of services including film and company searches, market preparation tools, and secure streaming of screeners with DRM and watermarking technologies. The platform supports both web and mobile app access, facilitating real-time updates and seamless connectivity among industry stakeholders. Its business model is subscription-based, charging companies an annual fee to register and access the platform's features. Technically, Cinando employs a modern technology stack including jQuery, Google Maps API, and cookie consent management via tarteaucitron, integrated within an ASP.NET MVC framework. Hosting is managed through Gandi SAS, a reputable registrar and hosting provider. The website demonstrates good mobile optimization and SEO practices, although accessibility features are basic. Analytics are implemented using Google Analytics (GA4) with user consent mechanisms in place. From a security perspective, the site enforces HTTPS and incorporates anti-CSRF tokens in forms, alongside DRM and watermarking for content protection. However, there is room for improvement in security headers implementation and explicit publication of security policies or incident response contacts. GDPR compliance is referenced but lacks a dedicated privacy policy page. The domain's WHOIS data aligns well with the business's legitimacy, showing consistent registration details and appropriate domain age. Overall, Cinando presents a trustworthy and professional digital presence with strong business credibility and a solid technical foundation. Enhancements in privacy documentation and security header deployment would further strengthen its security posture and compliance standing.

15
50
2
70
85
80
100
filmnetworkingscreenersmediacinema+4 more
jQueryGoogle Maps APItarteaucitron (cookie consent)Zendesk Web Widget
2025-06-23T18:09:37.771Z
aomni.com favicon

aomni

aomni.com

0
TechnologyN/asmallMEDIUM

aomni is a technology company specializing in AI-powered sales and marketing automation solutions designed to enhance revenue teams' performance. Their platform leverages autonomous AI agents to deliver account-based sales and ABM automation, targeting revenue organizations and account executives. The website presents a professional and modern interface, indicating a focus on innovation and AI-driven go-to-market strategies. Despite the lack of WHOIS data, the site shows signs of active business presence including a funding announcement and GitHub repository link. Technically, the website is built using modern frameworks such as React and Next.js, hosted on Vercel, and optimized for performance and mobile responsiveness. The use of Vercel Analytics and Speed Insights suggests attention to performance monitoring. However, the absence of visible security headers and privacy policies indicates room for improvement in security and compliance maturity. From a security perspective, the site uses HTTPS but lacks explicit security headers and privacy compliance mechanisms such as cookie consent banners or GDPR statements. No contact information or incident response channels are provided, which could hinder trust and responsiveness in case of security incidents. The missing WHOIS data raises questions about domain registration transparency, slightly impacting trustworthiness. Overall, aomni demonstrates a solid business and technical foundation with innovative AI offerings but should prioritize enhancing security policies, privacy compliance, and transparency to improve trust and regulatory adherence.

35
53
17
85
72
80
100
salessalesintelligenceb2bsalessalesaisalesautomation+10 more
ReactNext.jsVercel AnalyticsVercel Speed Insights+1
2025-06-23T16:58:42.002Z
W

wins.com

wins.com

0
OtherN/asmallMEDIUM

The website at https://www.audacy.com/1010wins is currently inaccessible to users in the European Union, displaying only a minimal message indicating unavailability. This suggests geo-blocking or regional content restrictions likely enforced by a web application firewall or compliance mechanism. The lack of accessible content prevents a thorough analysis of the business, technical infrastructure, or security posture. The WHOIS lookup for the domain www.audacy.com returned no match, indicating either the domain is not registered under this exact name, is newly registered, or uses privacy protection that obscures registrant details. Consequently, no registrar, creation date, expiry date, or registrant information could be extracted, limiting trust and legitimacy assessments. Technically, the site shows no metadata, scripts, or external links in the provided HTML snippet, and no security headers or HTTPS information were available for review. This absence of data, combined with the geo-blocking message, results in a very low AI score and an inability to evaluate compliance with privacy regulations such as GDPR. No contact information, privacy policies, cookie banners, or terms of service were found, further reducing the site's transparency and trustworthiness. From a security perspective, the lack of accessible content and missing WHOIS data are significant concerns. Without HTTPS or security headers, the site would be vulnerable if accessible. The geo-blocking may be a deliberate measure to comply with regional regulations or restrict access, but it also impedes external security and compliance assessments. Overall, the site currently presents a high risk due to lack of transparency and accessibility. Strategically, it is recommended that the site owners improve transparency by publishing clear privacy and cookie policies, providing contact information, and ensuring WHOIS data is accurate and publicly available. Implementing HTTPS and security headers is critical to protect users and improve trust. Removing or clarifying geo-blocking restrictions would enable broader access and facilitate compliance verification.

25
40
17
55
82
80
100
2025-06-23T15:56:14.000Z
A

attoresearch.com

attoresearch.com

0
OtherN/asmallMEDIUM

The website at attoresearch.com/lander is currently a minimal placeholder or parking page with very limited content. It primarily serves ads via Google Adsense and loads a parking lander JavaScript framework. There is no visible business information, contact details, or policies on the page, which indicates the site is not actively used for business or customer engagement. The domain itself is registered since 2005 with Wild West Domains, LLC, suggesting a long-standing registration but no active content presence. From a technical perspective, the site uses basic JavaScript and a proprietary parking lander framework (PW). The hosting appears to be managed by the domain registrar's default name servers. There is no evidence of CMS usage or advanced SEO and accessibility features. Performance is likely moderate given the minimal content, but the site lacks mobile optimization and user experience considerations. Security posture is weak due to the absence of DNSSEC, security headers, and no visible HTTPS enforcement details in the HTML content. No privacy or cookie policies are present, and no contact or incident response information is provided. These factors indicate low compliance with privacy regulations such as GDPR. The lack of business credibility signals and trust indicators further reduce confidence in the site. Overall, the website appears to be a parked domain with no active business operations or security measures implemented. The risk is low in terms of active threats but high in terms of trust and compliance. Strategic recommendations include developing a proper website with business content, implementing security best practices, and adding privacy and contact information to improve legitimacy and compliance.

25
50
2
70
77
75
100
parkingplaceholderminimalcontentadsensedomainparking
JavaScript
2025-06-23T15:56:03.984Z
arcticsix.org favicon

Arctic Six

arcticsix.org

0
EducationN/amediumMEDIUM

Arctic Six is a consortium of Nordic universities dedicated to advancing knowledge, education, and innovation for sustainable development in the Arctic region. The alliance represents a significant research and educational infrastructure in the European Arctic, targeting researchers, students, and stakeholders interested in Arctic issues. The website reflects a professional and consistent brand identity with clear navigation and relevant content focused on research, education, and events. Technically, the site is built on the SiteVision CMS platform using React 17 and integrates Piwik PRO for analytics. It is mobile-optimized, accessible, and uses HTTPS with no visible security vulnerabilities. However, the absence of explicit privacy, cookie, and terms of service policies, as well as missing contact information, limits its privacy compliance and user trust. Security posture is generally strong with HTTPS and no exposed sensitive data, but the lack of security headers and incident response contacts suggests room for improvement. The missing WHOIS data reduces domain trustworthiness, though the website content and social media presence support legitimacy. Overall, Arctic Six presents a credible educational alliance website with good technical implementation but requires enhancements in privacy compliance, security transparency, and domain registration transparency to improve trust and compliance.

90
35
17
60
100
60
100
educationarcticresearchnordicuniversity+1 more
JavaScriptReact 17SiteVision CMSPiwik PRO Analytics
2025-06-23T15:55:08.884Z
C

Captain Metrics

captainmetrics.com

0
TechnologyN/asmallMEDIUM

Captain Metrics' website currently serves as a placeholder page indicating that the company has transferred its activities to Rimdian.com, a digital marketing operating system. The site content is minimal, with no detailed business information, contact details, or privacy policies. The domain WHOIS data is missing, suggesting the domain may be unregistered or expired, which undermines the legitimacy and trustworthiness of the site. Technically, the site is basic with no detected security headers or HTTPS information, and no analytics or tracking scripts are present. Overall, the site appears to be deprecated in favor of Rimdian.com. From a technical infrastructure perspective, the website is minimal and lacks modern web technologies or CMS indicators. The page is mobile responsive with basic styling but lacks SEO optimization and accessibility features. No forms or data collection mechanisms are present, reducing privacy compliance concerns but also limiting user engagement. Security posture is weak due to the absence of HTTPS confirmation, security headers, and any visible security best practices. The lack of WHOIS data and domain registration information further reduces trust. There are no signs of malware or phishing, but the domain status is suspicious. The overall risk is moderate to high due to the domain's unclear registration status and minimal content. Strategic recommendations include securing the domain registration, implementing HTTPS and security headers, publishing privacy and cookie policies, and providing clear business and contact information. Transitioning fully to Rimdian.com with proper branding and security measures is advisable.

30
50
2
75
77
80
100
placeholderredirectdigitalmarketingrebranding

Partner Domains:

www.rimdian.com
partner
2025-06-23T15:53:08.601Z
serverless.com favicon

Serverless, Inc.

serverless.com

0
TechnologyN/amediumMEDIUM

Serverless, Inc. operates the website serverless.com, providing a comprehensive Serverless Framework platform that enables developers and organizations to build, deploy, and manage serverless applications primarily on AWS Lambda and related cloud services. The company positions itself as a technology leader with a strong community presence, evidenced by significant GitHub stars, downloads, and partnerships with major enterprises such as Nordstrom and Coca-Cola. The website is professionally designed, mobile-optimized, and rich in content, targeting developers and enterprises seeking efficient serverless solutions. Technically, the website leverages modern web technologies including AWS services, JavaScript frameworks, analytics tools like Google Analytics and Hotjar, and search capabilities via Algolia DocSearch. The site is hosted likely on Webflow infrastructure, ensuring fast performance and good accessibility. However, explicit security headers and detailed security policies are not evident, which suggests room for improvement in security transparency. From a security perspective, the site uses HTTPS and secure form submission methods, but lacks published security policies, incident response contacts, and vulnerability disclosure mechanisms. The absence of WHOIS data for the domain is unusual and slightly reduces trust, although the website content and branding strongly indicate legitimacy. Privacy compliance is basic, with a cookie consent mechanism present but no clear privacy policy page. Overall, the website demonstrates a mature digital presence with strong business credibility and technical implementation but would benefit from enhanced security disclosures and privacy documentation to improve trust and compliance posture.

30
50
2
55
100
75
100
serverlessawslambdacloudcomputingserverlessframeworkapigateway+3 more
AWS LambdaAPI GatewayDynamoDBYAML+11
2025-06-23T14:46:18.931Z
thdsecurity.com favicon

The Hacking Day (THD'S)

thdsecurity.com

0
TechnologyN/asmallHIGH

The Hacking Day (THD'S) is a cybersecurity education platform offering practical workshops and certifications focused on hacking, pentesting, and information security. The website positions itself as a regional leader in Central and South America, providing hands-on training led by experts. The business model revolves around educational services delivered through courses, workshops, and certifications, targeting individuals seeking to enhance their cybersecurity skills. Technically, the website employs a modern tech stack including Bootstrap, jQuery, Owl Carousel, and Google reCAPTCHA, hosted via NameCheap. The site is mobile optimized with good design and navigation, though SEO and accessibility features are basic. No CMS is detected, indicating a custom or static site approach. Security posture is moderate: HTTPS is enforced and reCAPTCHA is used to protect forms, but the absence of DNSSEC and security headers represents gaps. No privacy or cookie policies are present, and no vulnerability disclosure or incident response information is published, which limits compliance and transparency. Overall, the website is professional and functional with moderate trustworthiness. Strategic improvements in privacy compliance, security headers, and transparency would enhance its security posture and user trust.

15
35
2
85
72
75
-
cybersecuritypentestinghackingeducationworkshops+1 more
jQueryBootstrapOwl CarouselFontAwesome+2
2025-06-23T14:41:58.142Z
S

Robot Challenge Screen

socialenergy.es

0
OtherN/asmallHIGH

The website socialenergy.es is currently inaccessible to normal visitors due to a proof-of-work CAPTCHA challenge page designed to verify the visitor is not a bot. This security mechanism effectively blocks access to the actual website content, preventing any meaningful analysis of business information, services, or user experience. The page is served with assets from Cloudfront CDN and uses advanced JavaScript to perform cryptographic challenges. WHOIS data for the domain is unavailable due to IP authorization restrictions imposed by the .es registry, limiting transparency about domain ownership and registration details. From a technical perspective, the site employs modern JavaScript features and a CDN for content delivery, but lacks visible SEO, accessibility, or privacy compliance features. The security posture is partially demonstrated by the presence of a proof-of-work CAPTCHA, but no other security headers or policies are observable. The absence of contact information, privacy policies, or terms of service further reduces trust and compliance confidence. Overall, the site’s risk profile is elevated due to the lack of accessible information, inability to verify domain legitimacy, and absence of compliance indicators. The security challenge page, while protecting the site from automated abuse, also hinders legitimate user access and third-party assessments. Strategic recommendations include improving transparency by enabling WHOIS access, publishing privacy and cookie policies, providing clear contact details, and enhancing SEO and accessibility to improve user trust and compliance.

20
25
2
70
72
80
-
security-challengecaptchablockedwaf
JavaScriptWeb Crypto APIBlobTextEncoder+1
2025-06-23T13:39:50.649Z
C

ERROR: The request could not be satisfied

cruzcampo.es

0
OtherN/asmallHIGH

The website cruzcampo.es is currently inaccessible due to a CloudFront 403 error indicating a Web Application Firewall (WAF) block or configuration issue. This prevents any meaningful content or metadata extraction, severely limiting the ability to analyze the business, technical infrastructure, or security posture. The WHOIS data for the domain is also unavailable due to query restrictions imposed by the .es domain registry (Red.es), further complicating legitimacy and ownership verification. As a result, the overall risk assessment is elevated due to lack of transparency and accessibility. From a technical perspective, the site is hosted behind Amazon CloudFront, but the current configuration or traffic conditions are causing access denial. No information about the technology stack, CMS, or performance can be determined. Security headers, SSL configuration, and compliance indicators cannot be evaluated due to the blocked content. Security posture evaluation is limited by the absence of accessible content and metadata. The presence of a WAF block suggests some level of security control, but the inability to access the site hinders assessment of vulnerabilities, incident response readiness, or data protection practices. No contact or policy information is available to assess GDPR compliance or incident response capabilities. Overall, the site’s inaccessibility and lack of WHOIS transparency pose significant challenges for trust and security evaluation. Strategic recommendations include resolving the WAF or CloudFront configuration issues to restore access, implementing comprehensive security headers and HTTPS enforcement, and ensuring public availability of privacy and contact information to improve compliance and trustworthiness.

15
25
2
65
77
85
100
2025-06-23T13:39:40.630Z
ausglobaluk.com favicon

AUS Global

ausglobaluk.com

0
FinanceN/amediumMEDIUM

AUS Global operates as a multinational online financial trading platform offering a broad range of trading products including Forex, stocks, commodities, futures, and social trading services. The company emphasizes regulatory compliance with multiple financial authorities and provides diverse account types and trading platforms to cater to various trader profiles globally. Their business model focuses on providing a technologically advanced, fast, and low-cost trading environment supported by a professional team and global liquidity partnerships. Technically, the website employs modern analytics and marketing technologies, is mobile optimized, and uses HTTPS for secure communications. However, the absence of WHOIS registration data raises concerns about domain legitimacy. Security posture is generally good with HTTPS and no visible vulnerabilities, but could be improved with additional security headers and explicit incident response information. Privacy compliance is basic with cookie consent and a compliance disclosure but lacks a dedicated privacy policy page. Overall, the site presents a professional trading service but requires verification of domain registration and enhanced transparency in contact and security policies.

15
53
25
75
75
80
100
financeforextradingsocialtradinginvestment+2 more
Google Tag ManagerGoogle AnalyticsFacebook PixelTikTok Pixel+5

Partner Domains:

www.ausglobalmall.com
partner
media.ausglobal.sc
partner

+1 more partners

2025-06-23T13:39:25.594Z
L

LearningCart Inc.

learningcart.com

0
EducationN/amediumMEDIUM

LearningCart Inc. operates a comprehensive e-learning platform that integrates learning management, content management, and e-commerce capabilities to enable organizations to market, deliver, and sell training products online. The platform targets businesses and educational organizations seeking a unified solution for course delivery and sales. Recognized by industry awards and boasting over one million users, LearningCart positions itself as a reliable and scalable solution in the education technology sector. Technically, the website employs modern web technologies including jQuery, Bootstrap, and Slick Carousel, alongside analytics and user engagement tools such as Google Tag Manager, Hotjar, and Tawk.to chat. The platform is mobile-optimized and demonstrates good SEO practices, though some accessibility features could be enhanced. The site is served over HTTPS with no visible security vulnerabilities in the front-end code. From a security perspective, the site enforces HTTPS and uses secure form practices but lacks important security headers and a visible cookie consent mechanism, which are recommended for compliance and enhanced security posture. The absence of WHOIS data for the domain introduces some uncertainty regarding domain registration legitimacy, although the business content and trust signals mitigate this concern. Overall, LearningCart presents a professional and trustworthy online presence with solid technical and business foundations. Strategic improvements in security headers, privacy compliance, and domain registration transparency would further strengthen its security posture and trustworthiness.

15
53
2
40
82
80
100
e-learninglmse-commercetrainingeducation+2 more
jQuery 3.6.0Slick Carousel 1.6.0Bootstrap 3.3.7Google Tag Manager+4
2025-06-23T13:38:00.147Z
oei.int favicon

OEI - Organización de Estados Iberoamericanos

oei.int

0
EducationN/alargeMEDIUM

The Organización de Estados Iberoamericanos (OEI) is a large, well-established international non-profit organization focused on education, culture, science, and multilateral relations within Ibero-American countries. The website serves as a comprehensive portal offering information on their programs, projects, training, and cultural initiatives, targeting governments, educational institutions, and citizens in the region. The organization maintains a strong digital presence with multilingual support and accessibility features. Technically, the website is built on WordPress with modern SEO and accessibility best practices, including the use of Yoast SEO, WPML for multilingual content, and Google Tag Manager for analytics. Hosting is provided by Interhost, and the site uses HTTPS with a good SSL configuration. Performance is moderate with good mobile optimization. From a security perspective, the site enforces HTTPS, uses Google reCAPTCHA for bot protection, and implements cookie consent mechanisms aligned with GDPR. However, explicit security headers and a published security policy or incident response contacts are absent, representing areas for improvement. Overall, the website is professional, trustworthy, and compliant with privacy regulations, with no signs of blocking or WAF interference. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and security posture.

30
50
17
70
52
75
100
educationinternationalorganizationibero-americanon-profitmultilingual+2 more
WordPressYoast SEOGoogle Tag ManagerGoogle reCAPTCHA+1
2025-06-23T13:27:26.429Z