Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1 of 1|Showing 1-42 of 42
C

Community Jameel

communityjameel.org

0
Non-profitSaudi ArabiamediumMEDIUM

Community Jameel is a well-established global non-profit organization focused on advancing science, education, and community development. Founded in 2003, it continues the philanthropic legacy of the Jameel family of Saudi Arabia. The organization operates various programs in partnership with academic institutions such as MIT and J-PAL, targeting social impact through scholarships, research, arts, health, and climate initiatives. The website reflects a professional and comprehensive digital presence with clear navigation and rich content tailored to a global audience interested in philanthropy and social development. Technically, the website is built on modern frameworks like Next.js and React, ensuring fast performance and excellent mobile optimization. It employs best practices in web development, including the use of security headers and HTTPS, contributing to a strong security posture. Privacy and cookie policies are clearly stated with consent mechanisms, indicating good compliance with GDPR and related regulations. Security-wise, the site demonstrates a mature posture with no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security policy pages and incident response contacts, which could enhance trust and preparedness. The absence of WHOIS data due to privacy protection is typical for non-profits and does not detract from the site's legitimacy given its affiliations and professional presentation. Overall, Community Jameel's website is a trustworthy, well-maintained platform that effectively communicates its mission and programs while adhering to modern technical and privacy standards. Strategic improvements in security transparency and contact information could further strengthen its credibility and user trust.

35
68
2
85
72
75
100
philanthropycommunityeducationnon-profitresearch+4 more
Next.jsReactJavaScriptCSS+1

Partner Domains:

povertyactionlab.org
partner
jwafs.mit.edu
partner

+1 more partners

2025-10-26T23:53:08.051Z
ithra.com favicon

King Abdulaziz Center for World Culture (Ithra)

ithra.com

0
GovernmentSaudi ArabialargeMEDIUM

The King Abdulaziz Center for World Culture (Ithra) is a prominent cultural and educational institution in Saudi Arabia dedicated to fostering creativity, inspiration, and talent development. The website serves as a comprehensive portal for visitors, members, and the general public, offering information on programs, events, and cultural attractions. The organization holds a strong market position as a leading cultural center with government backing and a large audience reach. Technically, the website employs a modern technology stack including Concrete5 CMS, jQuery, Select2, and various analytics and tracking tools such as Google Tag Manager, TikTok Pixel, and Microsoft Clarity. The site is mobile-optimized and integrates app presence on major platforms, indicating digital maturity. Performance is moderate with good SEO and accessibility features. From a security perspective, the site uses HTTPS and implements several best practices, though explicit security headers and policies are not fully documented. No critical vulnerabilities were detected in the content analysis, but the absence of a security policy, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement. Overall, the website is professional, trustworthy, and content-rich, but the lack of WHOIS transparency and some security documentation lowers the trust score. Strategic recommendations include enhancing domain registration transparency, publishing security policies, and improving accessibility compliance.

55
53
2
70
62
80
100
cultureeducationartssaudiarabiamuseum+2 more
jQuerySelect2Swiper.jsGoogle Tag Manager+5

Partner Domains:

volunteer.ithra.com
partner
ithraeyat.ithra.com
partner
2025-10-26T19:30:00.969Z
culturalinvestmentconference.com favicon

Cultural Investment Conference

culturalinvestmentconference.com

0
GovernmentSaudi ArabiamediumMEDIUM

The Cultural Investment Conference website represents a professional event platform focused on unlocking investment opportunities in the cultural sector, with a strong emphasis on Saudi Arabia's cultural initiatives. The site features detailed information about the conference, including dates, location, speakers, partners, themes, and FAQs, targeting institutional investors, government leaders, cultural entrepreneurs, and NGOs. The business model centers on facilitating networking, knowledge sharing, and partnership building within the cultural investment ecosystem. Technically, the website employs modern web technologies such as Bootstrap, jQuery, Slick Carousel, and analytics tools like Microsoft Clarity and Google Tag Manager. The site is mobile-optimized with good design quality and clear navigation, although accessibility features could be improved. Hosting is via GoDaddy, and the site uses HTTPS with secure forms. From a security perspective, the site demonstrates good practices with HTTPS and CSRF protection on forms but lacks published security policies, incident response information, and security headers. The WHOIS data shows an anomalous future domain creation date, which reduces trustworthiness despite the professional content. No WAF or blocking mechanisms were detected, and no adult or questionable content is present. Overall, the site is credible and professional but should address privacy compliance gaps and WHOIS data inconsistencies to improve trust and security posture.

75
53
17
85
72
85
20
culturalinvestmentconferencesaudiarabiainvestmentculture+3 more
Bootstrap 5.3.3jQuery 3.6.0 and 3.7.1Slick Carousel 1.9.0FancyApps UI 5.0+4

Partner Domains:

cdf.gov.sa
partner
www.culturalassets.sa
partner

+3 more partners

2025-10-26T18:34:41.512Z
experiencealula.com favicon

Royal Commission for AlUla

experiencealula.com

0
HospitalitySaudi ArabiamediumMEDIUM

ExperienceAlUla.com is the official travel guide website for AlUla, Saudi Arabia, managed by the Royal Commission for AlUla. The site provides comprehensive information about the region's ancient heritage, cultural events, adventure activities, and wellness offerings, targeting tourists and cultural enthusiasts globally. It serves as a government-backed platform to promote tourism and facilitate bookings for various experiences in AlUla. Technically, the website is built on Adobe Experience Manager, leveraging modern web technologies including Google Tag Manager, Branch.io, and Cloudflare for bot management. It is well-optimized for mobile devices and incorporates extensive analytics and marketing tools to enhance user engagement and track performance. Security-wise, the site enforces HTTPS, uses Content Security Policy headers, and implements cookie consent mechanisms, reflecting a mature security posture. However, it lacks some additional security headers and publicly available security policies or incident response information. The absence of WHOIS registration data for the domain is a notable anomaly, potentially due to privacy protection or data unavailability, which slightly impacts trustworthiness. Overall, the website is professional, secure, and compliant with privacy regulations, making it a reliable source for travelers interested in AlUla.

55
83
17
85
75
85
100
traveltourismheritagecultureadventure+4 more
Adobe Experience Manager (AEM)Google Tag ManagerBranch.ioCloudflare Bot Management+5
2025-10-22T17:20:08.146Z
duxiana.sa favicon

DUXIANA

duxiana.sa

0
RetailSaudi ArabiamediumMEDIUM

DUXIANA is a premium retail company specializing in luxury beds and furniture, with a heritage dating back to 1926. The website targets a general audience in Saudi Arabia and offers a multilingual experience primarily in Arabic with English support. The business model focuses on retail sales of high-quality beds, bedding accessories, and furniture, positioning itself as a leader in comfort and innovation in the bedding industry. The website content is professionally designed, well-structured, and includes rich media and product information to engage visitors. Technically, the website employs modern web technologies including Google Tag Manager, Azure Application Insights for monitoring, and Cookietractor for cookie consent management. It uses HTTPS with secure cookie flags and demonstrates good mobile optimization and accessibility features. The CMS appears to be Episerver, indicating a robust content management infrastructure. SEO is enhanced by structured data and proper meta tags. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks visible security headers and explicit privacy or terms of service pages. No WHOIS data is available for the domain, which raises some concerns about domain registration transparency. No vulnerability disclosure or incident response policies are published, which could be improved to enhance trust. Overall, the website presents a professional and trustworthy front for a luxury retail business but would benefit from improved transparency in privacy policies, terms of service, and domain registration information to strengthen compliance and trustworthiness.

65
83
2
60
95
80
100
bedsfurnitureluxurysleepcomfort+4 more
Google Tag ManagerAzure Application InsightsCookietractor (cookie consent)Google Fonts+2
2025-10-10T15:45:25.287Z
almosafer.com favicon

almosafer

almosafer.com

0
HospitalitySaudi ArabialargeMEDIUM

Almosafer is a leading online travel agency primarily serving Saudi Arabia, offering a comprehensive platform for booking flights, hotels, activities, and airline tickets. The company positions itself as Saudi's number one travel company with a vast inventory of over 500,000 hotels worldwide and partnerships with more than 450 airlines. The website is designed to cater to travelers seeking convenient and reliable travel booking services, featuring user reviews and 24/7 customer support with flexible payment options such as 'Book Now, Pay Later'. Technically, the website leverages modern web technologies including React and Next.js frameworks, along with Material-UI for UI components. It integrates multiple analytics and marketing tools such as Amplitude, TikTok Pixel, Google Tag Manager, Facebook Pixel, Bing Ads, AppsFlyer, and MoEngage, indicating a mature digital marketing and analytics infrastructure. The site is mobile-optimized and demonstrates good SEO practices, although accessibility features are basic. From a security perspective, the site uses HTTPS with strong SSL configuration and employs modern JavaScript libraries. However, explicit security headers are not evident in the provided data, and there is no visible privacy or cookie policy, which are important for compliance and user trust. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data for the subdomain is unavailable, which is typical and not suspicious for subdomains. Overall, Almosafer presents a professional and trustworthy online travel service with a strong market presence in Saudi Arabia. To enhance security posture and compliance, it is recommended to implement comprehensive privacy and cookie policies, publish security incident response and vulnerability disclosure information, and provide clear contact details for users and security concerns.

65
58
17
70
-
85
100
travelbookingflightshotelsactivities+3 more
ReactNext.jsMaterial-UIAmplitude Analytics+6
2025-08-04T02:42:30.401Z
whirlpool.sa favicon

Whirlpool

whirlpool.sa

0
RetailSaudi ArabialargeMEDIUM

Whirlpool Saudi Arabia operates as the regional presence of the global Whirlpool Corporation, offering a comprehensive range of home appliances tailored to the Saudi market. The website serves as a product catalog, customer support portal, and brand engagement platform targeting consumers in Saudi Arabia. The business model focuses on retail and customer service, leveraging digital channels to enhance user experience and brand loyalty. Whirlpool holds a strong market position as a leading appliance manufacturer with localized offerings and support. Technically, the website employs modern web technologies including JavaScript frameworks, Google Tag Manager for marketing and analytics, and OneTrust for privacy compliance. The site is built on a responsive design framework (Foundation CSS) ensuring good mobile optimization and moderate performance. Integration with New Relic indicates active performance monitoring. The technical infrastructure reflects a mature digital presence with room for improvements in accessibility and CMS transparency. From a security perspective, the site enforces HTTPS and includes standard security headers, indicating a good baseline security posture. Cookie consent and privacy policies are implemented comprehensively, reflecting GDPR compliance efforts. However, the absence of a public security policy, incident response contacts, and vulnerability disclosure mechanisms suggests areas for enhancement. No critical vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, Whirlpool Saudi Arabia's website demonstrates a professional, secure, and privacy-conscious digital presence aligned with its brand stature. Strategic improvements in security transparency and accessibility could further strengthen trust and compliance. The domain's privacy-protected WHOIS data is consistent with corporate privacy practices and does not raise legitimacy concerns.

70
88
2
40
95
80
100
homeappliancesretailconsumerelectronicsprivacycomplianceanalytics+1 more
JavaScriptGoogle Tag ManagerOneTrust Cookie ConsentNew Relic Browser Agent
2025-07-12T10:33:35.282Z
geidea.net favicon

جيديا للتقنية

geidea.net

0
FinanceSaudi ArabialargeMEDIUM

جيديا للتقنية هي شركة رائدة في مجال حلول الدفع الإلكتروني ونقاط البيع في المملكة العربية السعودية، تقدم خدمات متكاملة تشمل أجهزة نقاط البيع، المدفوعات عبر الإنترنت، وحلول نقاط البيع للمطاعم. تتمتع الشركة بحصة سوقية كبيرة في السعودية وتقدم خدماتها لأكثر من 150,000 تاجر مع أكثر من 5 ملايين عملية مالية يومياً. الموقع الإلكتروني يعكس تركيز الشركة على السوق السعودي ويقدم محتوى غني ومتنوع باللغة العربية مع دعم للغة الإنجليزية. من الناحية التقنية، يستخدم الموقع تقنيات حديثة مثل Bootstrap وjQuery مع تكامل أدوات تتبع وتحليل مثل Google Tag Manager وFacebook Pixel. من حيث الأمن، الموقع يستخدم HTTPS بشكل كامل ويطبق ممارسات أمان أساسية، لكنه يفتقر إلى بعض السياسات الأمنية المنشورة مثل سياسة الأمان أو سياسة الحوادث. لا توجد سياسات خصوصية أو ملفات تعريف ارتباط واضحة، مما يشير إلى فجوات في الامتثال للخصوصية. من ناحية أخرى، وجود شهادات معتمدة وترخيص من البنك المركزي السعودي يعزز من مصداقية الشركة. التقييم العام للموقع جيد مع نقاط قوة في المحتوى والموثوقية، لكن هناك مجال لتحسين الامتثال للخصوصية وتعزيز ممارسات الأمان التقنية. التوصيات الاستراتيجية تشمل نشر سياسات الخصوصية والكوكيز، تحسين رؤوس الأمان، وتوفير قنوات اتصال للحوادث الأمنية.

30
35
17
70
77
85
100
paymentspointofsalee-commercefinancesaudiarabia+3 more
BootstrapjQueryGoogle Tag ManagerFacebook Pixel+2
2025-06-25T17:07:47.816Z
anelarabia.com favicon

Anel Arabian company

anelarabia.com

0
TechnologySaudi ArabiasmallCRITICAL

Anel Arabian company is a Saudi-based business specializing in information and communication technologies and electromechanical technology services. Established in 2010, it positions itself as a leader in the Saudi market with a focus on leveraging local talent to meet customer needs. The website content is bilingual, targeting Arabic and English-speaking audiences, and is hosted on the Weebly platform with basic design and navigation features. However, the site lacks critical contact information and formal policies, which limits user trust and engagement. Technically, the website runs on an nginx server with jQuery and Weebly's platform scripts. Hosting is provided by Hostmonster. The site suffers from poor performance metrics, no mobile optimization beyond basic, and minimal SEO and accessibility features. Importantly, the site does not have a valid SSL certificate, resulting in no HTTPS support, which severely impacts security and user trust. From a security perspective, the absence of HTTPS, lack of security headers, and missing compliance policies such as privacy and cookie policies indicate a low security maturity level. No incident response or vulnerability disclosure information is provided. Analytics tools like Google Analytics and Snowplow are used, but no cookie consent mechanism is implemented, raising privacy compliance concerns. Overall, the website presents a basic online presence for the company but requires significant improvements in security, privacy compliance, and user engagement features to enhance trustworthiness and professionalism.

15
-
-
50
-
85
-
technologyictelectromechanicalsaudiarabiaweebly
nginxjQuery 1.8.3Weebly platformWeebly
2025-06-15T08:35:28.674Z
ا

الهيئة العامة للطيران المدني

gaca.gov.sa

0
GovernmentSaudi ArabialargeHIGH

The General Authority of Civil Aviation (GACA) is the official Saudi government entity responsible for civil aviation regulation and services. The website serves as a comprehensive platform offering information on aviation policies, passenger rights, safety reporting, and electronic services. It targets citizens, travelers, and aviation stakeholders within Saudi Arabia, positioning itself as the national authority in the transportation sector. The site features a professional design with consistent branding and a strong social media presence, enhancing trust and engagement. Technically, the website employs modern web technologies including Bootstrap, jQuery, and Swiper.js, and is likely powered by the Sitecore CMS. Accessibility and digital experience tools are integrated, though performance is hindered by slow load times and a large page size. The SSL/TLS configuration is currently invalid or missing, which significantly impacts the security posture. Security-wise, the site lacks a valid HTTPS certificate and security headers, which are critical for protecting user data and ensuring secure communications. No explicit incident response or vulnerability disclosure mechanisms are evident. Privacy and cookie policies exist but are basic, with limited GDPR compliance indicators. The domain registration aligns with the Saudi government entity, supporting legitimacy. Overall, the website is functional and professional but requires urgent improvements in security configuration and performance optimization to enhance user trust and compliance with modern standards.

-
-
-
50
-
90
100
governmentaviationcivilaviationsaudiarabiapublicservices+2 more
BootstrapjQuerySwiper.jsSelect2+3
2025-06-15T08:35:25.225Z