Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 74 of 579|Showing 3651-3700 of 28928
concretecms.com favicon

PortlandLabs

concretecms.com

0
TechnologyN/amediumMEDIUM

Concrete CMS is an established open source content management system designed for teams including content creators, developers, and designers. The platform offers a robust website builder with built-in tools to simplify content editing and management. PortlandLabs, the company behind Concrete CMS, positions itself strongly in the technology sector with a focus on enterprise and government clients, including the U.S. Army. The business model includes open source software distribution, hosting services, and a marketplace for themes, add-ons, and integrations. The website demonstrates excellent content quality, professional design, and clear navigation, targeting professional teams and organizations seeking secure and compliant CMS solutions. Technically, the website employs modern web technologies such as jQuery, Vue.js, Bootstrap, and Moment.js, running on the Concrete CMS platform. It integrates multiple analytics and marketing tools including Google Analytics, Matomo, ZoomInfo, and Pipedrive LeadBooster. The site is mobile optimized and accessible, with good SEO practices evident from meta tags and structured data. Hosting appears to be managed by PortlandLabs with offerings ranging from starter plans to custom enterprise SLAs. Security posture is strong with HTTPS enforced and certifications including ISO 27001, SOC 2, and HIPAA compliance prominently featured. The platform supports role-based access control, workflow approvals, and version control to enhance security and collaboration. However, the site lacks explicit HTTP security headers and a published vulnerability disclosure or security.txt file, which are recommended for further strengthening security transparency. Overall, the website is trustworthy and professional with high-quality content and a mature technical infrastructure. The main risk factor is the absence of WHOIS domain registration data, which is unusual for a business of this profile and slightly reduces trust. Strategic recommendations include implementing security headers, publishing incident response contacts, and enhancing transparency on data retention and vulnerability disclosures.

65
53
25
80
100
85
100
cmsopensourcecontentmanagementsecurityenterprise+4 more
jQueryVue.jsBootstrapMoment.js
2025-10-20T20:07:06.711Z
padlet.com favicon

Padlet

padlet.com

0
EducationN/alargeMEDIUM

Padlet is a well-established SaaS company founded in 2004, specializing in visual collaboration tools for creative work and education. The platform serves a large global user base of 40 million, targeting educators, students, and creative professionals. Their business model is freemium with tiered subscription plans for individuals, teams, classrooms, and schools. The website reflects a mature market position with strong branding and user engagement through social media and positive reviews on multiple platforms. Technically, Padlet employs modern web technologies including Vue.js and Cloudflare services for DNS and CDN. The site is well optimized for performance, mobile responsiveness, and accessibility. Analytics are implemented via RudderStack, indicating a moderate level of user tracking. The website is professionally designed with clear navigation and comprehensive content. From a security perspective, Padlet enforces HTTPS, uses security headers, and maintains a clientTransferProhibited domain status, indicating good domain security practices. However, DNSSEC is not enabled, and there is no visible vulnerability disclosure or security.txt file. Privacy compliance is partially addressed with a comprehensive privacy policy, but lacks an explicit cookie consent mechanism. Contact information for security incidents or data protection officers is not publicly available. Overall, Padlet presents a high level of business credibility and technical maturity with minor gaps in privacy compliance and security transparency. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing vulnerability disclosure information, and providing clearer contact channels for security and privacy matters.

65
58
2
87
75
85
100
educationcollaborationvisual-thinkingsaascreative-tools
JavaScriptVue.jsCloudflare DNSRudderStack analytics
2025-10-20T20:02:30.686Z
qsimpact.org favicon

QS ImpACT

qsimpact.org

0
EducationN/asmallMEDIUM

QS ImpACT is a youth-led non-profit organization dedicated to empowering young people globally to create social impact aligned with the United Nations Sustainable Development Goals (UN SDGs). The platform offers scholarships, awards, youth summits, and community leadership programs to recognize and support youth contributions to sustainable development. The website presents a professional and consistent brand image with clear navigation and relevant content targeting youth interested in social change and education opportunities. Technically, the website is built using modern web technologies including Next.js and React, hosted likely on AWS infrastructure with DNS managed via AWS nameservers. It integrates analytics tools such as Microsoft Clarity and Google Analytics via Google Tag Manager, indicating a moderate level of digital maturity. The site is mobile optimized and SEO friendly, though accessibility features are basic. From a security perspective, the site uses HTTPS and has domain status protections to prevent unauthorized domain transfers or deletions. However, DNSSEC is not enabled, and no security headers were detected in the provided data. There is no visible privacy policy, cookie consent mechanism, or security incident contact information, which are gaps in compliance and user trust. No WAF or blocking mechanisms were detected, and the domain registration is consistent with the business age and profile. Overall, QS ImpACT presents a trustworthy and professional platform with room for improvement in privacy compliance and security best practices. Strategic enhancements in policy transparency, security headers, and user data protection would strengthen the organization's digital trust and compliance posture.

15
68
47
75
77
80
100
educationyouthnon-profitsustainabilityunsdgs+3 more
Next.jsReactGoogle FontsMicrosoft Clarity+2
2025-10-20T19:23:13.778Z
meyerweb.com favicon

Eric A. and Kathryn S. Meyer

meyerweb.com

0
TechnologyN/asmallHIGH

meyerweb.com is a well-established personal and professional website belonging to Eric A. Meyer, a recognized expert in CSS and web development, and his wife Kathryn, a doctor of nursing. The site primarily serves as a blog and resource hub for web developers and CSS enthusiasts, featuring detailed technical articles, tools, and personal writings. The business model is centered on content sharing and community engagement, targeting a niche audience of web professionals and learners. The site has a consistent brand identity and a strong reputation within its niche, supported by a domain age of over two decades. Technically, the site uses a combination of hand-authored HTML and WordPress for the blog section, with some static site generation for book content. The technology stack is modern and standards-compliant, with good mobile optimization and accessibility features. However, performance is moderate and could benefit from further optimization. SEO practices are good, with proper meta tags and structured navigation. From a security perspective, the site benefits from a long-standing domain with clientTransferProhibited status, indicating protection against unauthorized transfers. However, there is no evidence of DNSSEC, security headers, or explicit SSL configuration details, which suggests room for improvement. The absence of privacy and cookie policies is a compliance gap, especially for GDPR. No contact or incident response information is provided, limiting transparency in security matters. Overall, meyerweb.com is a trustworthy and authoritative site with excellent content quality and business credibility. The main risks relate to privacy compliance and security best practices, which if addressed, would enhance the site's security posture and user trust. Strategic recommendations include implementing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact and vulnerability disclosure information.

15
35
17
85
62
70
-
csswebdevelopmentblogtechnologypersonalsite+1 more
HTML5CSS3JavaScript
2025-10-20T19:21:03.482Z
sil.org favicon

SIL Global

sil.org

0
Non-profitN/alargeMEDIUM

SIL Global is a well-established, faith-based nonprofit organization dedicated to language development and community empowerment worldwide. Their website reflects a professional and comprehensive digital presence, offering extensive resources, training, and services in linguistic research, literacy, translation, and language technology. The organization targets diverse global communities and language professionals, emphasizing equal access to education and socio-economic opportunities regardless of language barriers. Technically, the website is built on Drupal CMS with modern frameworks like Bootstrap and uses standard web technologies including jQuery and Font Awesome. It is mobile-optimized and accessible, with embedded multimedia content enhancing user engagement. Security posture is solid with HTTPS enforced and secure form handling, though the absence of certain security headers and explicit cookie consent mechanisms are areas for improvement. The lack of WHOIS data limits domain registration trust verification, but the presence of recognized nonprofit certifications and consistent branding supports legitimacy. Overall, the site scores well on content quality, technical implementation, and business credibility, with moderate privacy compliance.

40
53
2
85
65
80
100
nonprofitlanguageeducationlinguisticstranslation+3 more
Drupal CMSjQuery 3.7.1BootstrapFont Awesome 4.7.0+2

Partner Domains:

globaldiaspora.sil.org
partner
software.sil.org
partner
2025-10-20T19:20:58.473Z
concrete5.org favicon

Concrete CMS

concrete5.org

0
TechnologyN/amediumMEDIUM

Concrete CMS is an open source content management system designed for teams including content creators, designers, and developers. It offers a website builder with built-in tools to simplify content editing and management. The company behind Concrete CMS, PortlandLabs, positions itself as a provider of secure, compliant, and enterprise-ready CMS solutions, serving notable clients such as the U.S. Army, BASF, and Home Depot. Their business model includes offering the open source CMS software alongside hosting, support, and custom development services. The website demonstrates strong branding consistency, professional design, and clear navigation, targeting medium-sized to enterprise organizations in technology and government sectors. Technically, the website leverages modern web technologies including jQuery, Bootstrap, Vue.js, and integrates analytics and marketing tools such as Google Tag Manager, Matomo, ZoomInfo, Leadfeeder, and Pipedrive LeadBooster. The CMS platform itself is Concrete CMS, hosted likely by PortlandLabs. The site is mobile optimized and performs moderately well, with good SEO and accessibility features. From a security perspective, Concrete CMS emphasizes compliance with ISO 27001, SOC 2, and HIPAA standards, offering role-based access control, workflow approvals, and version control. The site uses HTTPS and has cookie consent mechanisms. However, explicit security headers are not detected, and there is no public vulnerability disclosure or incident response contact information, which are areas for improvement. Overall, the website is professional, trustworthy, and content safe for general audiences. The main concern is the lack of WHOIS registration data, which raises questions about domain legitimacy despite the strong business presence. Strategic recommendations include improving security header implementation, publishing vulnerability disclosure policies, and clarifying domain registration details to enhance trust.

65
53
25
80
100
85
100
cmsopensourcecontentmanagementsecurityhosting+2 more
jQueryBootstrapVue.jsGoogle Tag Manager+4
2025-10-20T19:20:53.465Z
concretecms.org favicon

PortlandLabs

concretecms.org

0
TechnologyN/amediumMEDIUM

Concrete CMS is an established open source content management system developed and maintained by PortlandLabs since 2008. It targets web developers and content editors seeking an easy-to-use, flexible CMS platform with built-in features and a strong community backing. The website positions Concrete CMS as a trusted solution used by governments and Fortune 500 companies, emphasizing security, extensibility, and user-friendly editing experiences. The business model revolves around open source software distribution complemented by community engagement and commercial support services. Technically, the website employs a modern technology stack including jQuery, Bootstrap, Vue.js, FontAwesome, and analytics tools such as Matomo and Google Analytics. The CMS itself is Concrete CMS, which is also the product being promoted. The site is mobile optimized, well-structured, and uses responsive design techniques. Performance is moderate with room for improvement in accessibility features. SEO practices are good with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and includes a dedicated security page. Cookie consent mechanisms and a comprehensive privacy policy demonstrate compliance with privacy regulations including GDPR. However, explicit security headers are not detected, and no public vulnerability disclosure or incident response contacts are published. No vulnerabilities or exposed sensitive data were found in the HTML content. Overall, the website is professional, trustworthy, and well-maintained with a high level of content quality and business credibility. The lack of WHOIS data limits domain registration trust analysis, but the site’s branding and external trust signals strongly support legitimacy. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure policies, improving accessibility, and maintaining transparency in data protection practices.

65
53
17
70
100
85
100
cmsopensourcecontentmanagementtechnologysoftware+1 more
jQueryBootstrapFontAwesomeVue.js+3

Partner Domains:

www.concretecms.com
partner
market.concretecms.com
partner

+3 more partners

2025-10-20T19:20:48.454Z
xecurify.com favicon

miniOrange

xecurify.com

0
TechnologyN/amediumMEDIUM

The website login.xecurify.com/moas/login serves as a secure login portal for miniOrange, a company specializing in identity and access management solutions such as Single Sign-On and Multi-Factor Authentication. The portal is designed for business and enterprise users requiring secure authentication services. The site uses modern frontend technologies including Bootstrap, jQuery, and Select2, ensuring a responsive and user-friendly experience. However, the page is minimalistic, focusing solely on login functionality without additional content such as privacy or cookie policies. From a security perspective, the site enforces HTTPS and uses cache-control headers to prevent sensitive data caching. The login form includes CSRF tokens, enhancing security. Nonetheless, the absence of key security headers like Content-Security-Policy, HSTS, and Referrer-Policy represents an area for improvement. No signs of WAF or security challenge blocking were detected, allowing full content access. WHOIS data for the subdomain login.xecurify.com is unavailable, which is typical for subdomains. The main domain xecurify.com likely holds the registration. The branding and technical setup align with a legitimate business operation. The lack of privacy and cookie policies on this login page reduces privacy compliance scores. Overall, the site demonstrates a moderate security posture and good business credibility but would benefit from enhanced privacy and security header implementations.

80
35
2
90
77
85
100
loginauthenticationidentitymanagementsecurityminiorange+3 more
Bootstrap 5.3.2jQuery 3.7.1jQuery Migrate 3.4.1Select2 4.1.0-rc.0+3

Partner Domains:

www.miniorange.com
partner
2025-10-20T19:20:33.344Z
wp-royal.com favicon

Wp Royal

wp-royal.com

0
TechnologyN/asmallMEDIUM

WP Royal Themes is a small technology company specializing in the development and sale of WordPress themes, targeting bloggers, small businesses, and WordPress users seeking quality, customizable themes. The company emphasizes customer support, providing forums, documentation, and video tutorials to enhance user experience. Their market position is that of a niche WordPress theme provider with a focus on quality and support, leveraging modern WordPress technologies and e-commerce capabilities via WooCommerce. Technically, the website is built on WordPress with a robust tech stack including WooCommerce, Yoast SEO, WPBakery Page Builder, and Slider Revolution. Hosting is provided by Bluehost Inc., and the site uses HTTPS with a good SSL configuration. Performance is moderate with good mobile optimization and basic accessibility features. SEO is well addressed through meta tags and structured data. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and explicit security headers, which are recommended for enhanced security. No explicit security or incident response policies are published, and no direct contact emails or phone numbers are provided, which could be improved for better trust and compliance. Cookie consent is implemented, indicating some GDPR compliance efforts. Overall, the website is professional, trustworthy, and safe for general audiences. The main risks relate to minor security hardening and privacy policy transparency. Strategic improvements in these areas would enhance compliance and user trust.

25
85
2
40
57
70
100
wordpressthemese-commerceseosupport+2 more
WordPressWooCommerceYoast SEOWPBakery Page Builder+4

Partner Domains:

users.freemius.com
partner
2025-10-20T18:17:46.526Z
uptimerobot.com favicon

UptimeRobot

uptimerobot.com

0
TechnologyN/alargeLOW

UptimeRobot is a well-established SaaS company founded in 2010, providing uptime monitoring services to over 2.5 million users globally. Their platform offers a wide range of monitoring features including website, SSL, DNS, and response time monitoring, complemented by incident management and status pages. The company targets developers, DevOps teams, marketers, support staff, and business owners, positioning itself as a leading uptime monitoring service with a freemium business model and multiple paid subscription tiers. Technically, the website is built on a modern stack utilizing Cloudflare for DNS and CDN, Uikit for UI components, and integrates various third-party analytics and marketing tools such as Google Analytics, Microsoft Clarity, Intercom, and User.com. The site is mobile-optimized with dedicated Android and iOS apps, and demonstrates excellent performance and SEO practices. From a security perspective, the site enforces HTTPS with strong domain registration protections but lacks DNSSEC and a publicly available security policy or vulnerability disclosure program. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, UptimeRobot presents a professional, trustworthy, and technically mature online presence with strong business credibility. Minor improvements could be made in DNS security and transparency around security policies to further enhance trust and compliance.

95
58
17
85
75
90
100
uptimemonitoringwebsitemonitoringsslmonitoringstatuspagesincidentmanagement+5 more
Google Fonts (Roboto)Cloudflare DNSUikit CSS frameworkWebpack bundling
2025-10-20T18:14:49.787Z
iscmr.org favicon

International Society for Traditional, Complementary & Integrative Medicine Research (ISCMR)

iscmr.org

0
OtherN/asmallMEDIUM

The International Society for Traditional, Complementary & Integrative Medicine Research (ISCMR) is a well-established international scientific organization focused on advancing research in whole person healing and integrative healthcare. The website serves as a platform for knowledge exchange, membership services, and event promotion, targeting researchers and practitioners globally. The organization has a strong market position with multiple regional chapters and partnerships with reputable journals and research bodies. Technically, the website is built on the ClubExpress platform using ASP.NET WebForms and Telerik UI components, with integrations including Google Tag Manager and Zendesk for analytics and user engagement. The site demonstrates moderate performance and basic mobile optimization. Security posture is adequate with HTTPS enabled but lacks advanced security headers and DNSSEC, which are recommended for improvement. Privacy compliance is basic with presence of privacy and terms policies but no cookie consent mechanism. Overall, the website is professional and trustworthy but could benefit from enhanced security and privacy features.

80
53
17
70
67
60
100
iscmrtraditionalmedicinecomplementarymedicineintegrativemedicineresearch+3 more
jQueryTelerik.Web.UIGoogle Tag ManagerAddToAny sharing+1

Partner Domains:

bmccomplementmedtherapies.biomedcentral.com
partner
home.liebertpub.com
partner

+3 more partners

2025-10-20T18:14:34.737Z
T

Security Verification

thebls.com

0
OtherN/asmallMEDIUM

The website thebls.com currently presents a security verification page employing Google reCAPTCHA v3, indicating a bot protection mechanism is in place. No actual business content, services, or company information is accessible on the provided page, limiting the ability to assess the business comprehensively. The domain is registered since 2007 with Tucows Domains Inc., showing a stable and legitimate registration history. However, the lack of visible content and policies suggests the site is either under maintenance, restricted, or protected by a security gateway. From a technical perspective, the site uses Bootstrap 5.3.3 for styling and Google reCAPTCHA for security verification. There is no evidence of DNSSEC, security headers, or HTTPS enforcement visible in the provided content, which are areas for improvement. The site’s mobile optimization and accessibility are basic, and SEO elements are minimal or absent. Security posture is moderate due to the presence of reCAPTCHA but lacks other best practices such as DNSSEC and security headers. No privacy, cookie, or terms of service policies are found, indicating poor privacy compliance. No contact or incident response information is available, which reduces trust and business credibility. Overall, the site is currently inaccessible beyond the security verification challenge, resulting in a low AI score and limited insights. Strategic recommendations include enabling DNSSEC, implementing HTTPS with security headers, publishing privacy and cookie policies, and providing clear contact information to improve trust and compliance.

15
50
2
70
85
70
100
securityverificationcaptchabotprotection
Bootstrap 5.3.3Google reCAPTCHA v3
2025-10-20T17:07:11.461Z
flexitylife.eu favicon

Flexity

flexitylife.eu

0
E-commerceN/asmallHIGH

Flexity is a specialized e-commerce retailer focusing on Pilates reformers, chairs, Cadillac units, and related fitness and body-mind care products. The website targets Pilates and fitness enthusiasts across multiple European markets with localized versions and multiple language support. The business model is retail e-commerce with a niche focus, supported by professional product presentation and customer engagement tools such as Trustpilot reviews and loyalty programs. Technically, the site is built on the Shoptet platform, leveraging common web technologies like jQuery, Google Tag Manager, and Facebook SDK for marketing and analytics. The site is mobile optimized and provides a good user experience with clear navigation and product categorization. Security posture is solid with HTTPS enforced and CSRF protection on forms, though some security headers could be improved. Privacy compliance is evident with a cookie consent mechanism and a privacy policy that aligns with GDPR requirements. No WHOIS registrant data is publicly available due to privacy protection, which is typical for commercial e-commerce sites. Overall, the site presents a trustworthy and professional front with moderate technical sophistication and good compliance practices.

-
-
-
65
42
80
100
pilatesfitnesse-commercemassagesuppliesbody-mindcare+3 more
jQuery 1.11.3Google Tag ManagerFacebook SDKShoptet platform+2

Partner Domains:

www.flexitylife.com
partner
www.flexitylife.cz
partner

+3 more partners

2025-10-20T17:04:34.610Z
eventscalendar.co favicon

An embeddable Events Calendar for any website

eventscalendar.co

0
TechnologyN/asmallMEDIUM

The website www.eventscalendar.co offers a feature-rich embeddable events calendar solution designed for integration with multiple platforms such as Shopify, Wix, Webflow, Wordpress, and others. It targets website owners and event organizers seeking to manage and display events seamlessly, with syncing capabilities to popular services like Eventbrite, Zoom, Google Calendar, and Outlook. The business operates as a small SaaS provider within the technology sector, focusing on event management tools. Technically, the site is built on Webflow CMS and leverages modern analytics and tracking technologies including Google Tag Manager, Mixpanel, and FullStory, indicating a moderate level of digital maturity. The site is mobile optimized and presents a professional design with good user experience, though accessibility and SEO optimizations are basic. Security posture is adequate with HTTPS enforced and use of reCAPTCHA, but lacks explicit security headers and published security policies. Privacy compliance is weak due to absence of privacy and cookie policies and no consent mechanisms. No direct contact or incident response information is provided, which limits trust and transparency. Overall, the site is functional and professional but would benefit from enhanced privacy compliance and security disclosures.

30
53
2
55
75
80
100
eventscalendarembeddablesaaseventmanagement+2 more
WebflowGoogle Tag ManagerGoogle reCAPTCHAMixpanel+2
2025-10-20T17:01:48.045Z