Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 22 of 206|Showing 1051-1100 of 10253
youtube.it favicon

Google LLC

youtube.it

0
TechnologyUnited StatesenterpriseLOW

YouTube, owned by Google LLC, is the world's leading online video sharing and streaming platform. It offers a vast array of video content including entertainment, education, music, and user-generated videos, serving a global audience. The platform operates on an advertising-based business model supplemented by premium subscription services. Its market position is dominant in the online video industry, supported by a strong brand and extensive user base. Technically, YouTube employs a modern web technology stack including Polymer, Web Components, and Google APIs, hosted on Google Cloud infrastructure. The website is optimized for both desktop and mobile platforms, delivering fast performance and good accessibility. SEO and metadata practices are well implemented, enhancing discoverability. From a security perspective, YouTube enforces HTTPS, employs robust security headers, and integrates advanced bot protection mechanisms. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature privacy posture. No critical vulnerabilities or exposed sensitive data were detected in the analysis. Overall, YouTube demonstrates a high level of digital maturity, security, and compliance. The domain is legitimate and longstanding, with WHOIS privacy protection typical for large enterprises. The platform's extensive analytics and advertising integrations are balanced with strong privacy controls. Strategic recommendations include maintaining regular security audits, enhancing incident response transparency, and continuing to evolve privacy practices to meet emerging regulations.

90
73
25
85
75
90
100
videostreamingmediasocialtechnology+1 more
JavaScriptPolymerWeb ComponentsHTML5+2

Partner Domains:

google.com
parent
2025-10-22T20:38:49.753Z
zephr.com favicon

Zuora

zephr.com

0
TechnologyUnited StatesenterpriseMEDIUM

Zuora is a leading enterprise technology company specializing in subscription management software and digital subscription experience platforms. Their product Zephr offers AI-powered paywall solutions tailored for media and digital publishers to accelerate subscriber acquisition and revenue growth. The company holds a strong market position with a focus on subscription billing and customer lifecycle management, targeting media companies and subscription-based businesses globally. Technically, Zuora's website is built on WordPress with modern tools such as Elementor and Yoast SEO, integrating multiple marketing and analytics platforms including Google Tag Manager, Marketo, and TrustArc for privacy compliance. The security posture is robust with HTTPS enforced, SOC 2 Type II and ISO 27001 certifications, and use of privacy management tools, although explicit security headers could be improved. Overall, the website demonstrates a mature digital presence with excellent content quality, SEO, and user experience. The absence of WHOIS data reduces domain trust slightly but does not detract from the company's legitimacy. Strategic recommendations include enhancing security header implementation, publishing vulnerability disclosure policies, and maintaining rigorous third-party script audits.

70
80
17
85
77
85
100
subscriptionaipaywallsdigitalpublishingmediasubscriptionmanagement+5 more
PHP SDK 1.5.12WordPress CMSElementor page builderYoast SEO Premium+10

Partner Domains:

info.zuora.com
partner
nav-assets.zuora.life
partner
2025-10-22T18:14:56.527Z
tailscale.com favicon

Tailscale Inc.

tailscale.com

0
TechnologyUnited StatesenterpriseMEDIUM

Tailscale Inc. is a technology company specializing in secure networking solutions, primarily offering a WireGuard®-based VPN service that enables fast, seamless device connectivity without traditional VPN complexities. The company targets businesses and enterprises seeking zero trust networking and secure remote access, boasting over 10,000 customers worldwide. Their market position is strong as a leading provider of modern VPN and networking solutions with a focus on ease of deployment and security. Technically, the website is built on a modern stack including Next.js and React, hosted on Amazon AWS infrastructure, ensuring fast performance and excellent mobile optimization. The site uses HTTPS with strong security headers and integrates tracking and marketing tools responsibly. The technical implementation reflects a mature digital presence with good SEO and accessibility practices. From a security perspective, Tailscale demonstrates a solid posture with HTTPS enforcement, use of secure VPN protocols, and no visible vulnerabilities or exposed sensitive data. However, explicit security policies and incident response contacts are not published, and DNSSEC is not enabled, which could be improved. Privacy compliance is well addressed with comprehensive privacy and cookie policies, including GDPR considerations. Overall, the website and business present a low-risk profile with high trustworthiness, professional presentation, and strong alignment between domain registration data and business claims. Strategic recommendations include enabling DNSSEC, publishing a security policy and incident response contacts, and considering a vulnerability disclosure program to further enhance trust and security transparency.

30
83
17
85
95
90
100
vpnwireguardzerotrustnetworkingenterprise+1 more
ReactNext.jsWireGuardAWS (Amazon Web Services)+1
2025-10-22T17:34:54.777Z
propublica.org favicon

ProPublica

propublica.org

0
MediaUnited StateslargeMEDIUM

ProPublica is a leading independent non-profit newsroom specializing in investigative journalism and news in the public interest. The organization focuses on producing high-quality, impactful journalism covering topics such as racial justice, healthcare, politics, and criminal justice. Their market position is strong as a trusted source of investigative reporting with a large audience and extensive social media presence. The business model relies on donations and grants, emphasizing transparency and public service. Technically, the website employs modern web technologies including asynchronous JavaScript loading, lazy loading of images, and integration with analytics and marketing tools such as Parsely and Google Tag Manager. The site is well-optimized for performance, mobile responsiveness, and accessibility, providing an excellent user experience. From a security perspective, the site enforces HTTPS with strong SSL configuration and implements security headers to protect users. Forms use Google reCAPTCHA to prevent abuse. However, explicit security policies and incident response information are not publicly available, and no vulnerability disclosure program is evident. Overall, the website demonstrates a mature digital presence with strong content quality and security posture. The lack of WHOIS data is mitigated by the organization's well-known reputation and trust signals. Strategic recommendations include publishing formal security policies, establishing a vulnerability disclosure channel, and maintaining regular audits of third-party scripts to enhance security further.

45
53
17
80
65
80
100
investigativejournalismnewsnon-profitmediapublicinterest+2 more
JavaScriptGoogle Tag ManagerParsely analyticsGoogle reCAPTCHA+4
2025-10-22T17:34:44.743Z
A

Apple Inc.

icloud.com

0
TechnologyUnited StatesenterpriseMEDIUM

The website www.icloud.com is the official web portal for Apple's iCloud service, a cloud storage and cloud computing platform integrated deeply within the Apple ecosystem. It offers users access to photos, mail, notes, documents, and other personal data synced across Apple devices. The site is professionally designed with consistent branding and clear navigation, targeting Apple device users and general consumers seeking secure cloud services. The business model is subscription-based with free and paid tiers, positioning Apple as a leading technology provider in consumer cloud services. Technically, the site employs modern web technologies including strict Content-Security-Policy headers, HTTPS encryption, and Apple proprietary JavaScript libraries. The infrastructure is hosted on Apple’s own platforms, ensuring high performance and excellent mobile optimization. Accessibility and SEO practices are well implemented, contributing to a positive user experience. From a security perspective, the site demonstrates strong best practices such as strict CSP, HTTPS enforcement, and restricted form actions. However, it lacks visible cookie consent mechanisms and publicly available security policies or incident response contacts, which are areas for improvement. No vulnerabilities or suspicious elements were detected in the provided content. Overall, the site is trustworthy and professional with a high security posture and excellent business credibility. The absence of WHOIS data is likely due to privacy protections common for large corporations. Strategic recommendations include adding explicit cookie consent, publishing security policies, and providing vulnerability disclosure information to enhance transparency and compliance.

80
53
2
72
100
90
100
icloudapplecloudstoragephotosmail+3 more
JavaScriptHTML5CSS3Custom Apple JS libraries+1
2025-10-22T17:23:49.384Z
csoonline.com favicon

CSO Online

csoonline.com

0
MediaUnited StateslargeMEDIUM

CSO Online is a well-established media platform delivering critical information, news, and analysis focused on cybersecurity and enterprise security leadership. Owned by Foundry, it serves a professional audience including CISOs, IT leaders, and security practitioners. The website offers a broad range of content including features, news analysis, opinion pieces, and buyer’s guides, positioning itself as a trusted source in the cybersecurity media space. Technically, the site is built on WordPress with a modern tech stack including Yoast SEO, Google Tag Manager, and New Relic for performance monitoring. It is optimized for mobile and SEO, providing a good user experience with clear navigation and professional design. Security-wise, the site enforces HTTPS and implements privacy and cookie policies with consent mechanisms, though explicit security headers and incident response information are not publicly detailed. The domain WHOIS data is not publicly available, likely due to privacy protection, but the website’s content and network affiliations indicate legitimacy. Overall, the site demonstrates a mature digital presence with strong content quality and privacy compliance, suitable for its enterprise audience.

45
85
77
70
42
80
100
cybersecuritysecuritynewsenterprisesecurityitleadershipprivacy+2 more
WordPressYoast SEOGoogle Tag ManagerNew Relic Browser Agent+7

Partner Domains:

foundryco.com
parent
cio.com
sister

+3 more partners

2025-10-22T17:22:28.935Z
knightlab.com favicon

Northwestern University Knight Lab

knightlab.com

0
EducationUnited StatesmediumMEDIUM

Northwestern University Knight Lab is an academic and research community focused on advancing journalism and media innovation through exploration, experimentation, and open-source storytelling tools. The Lab serves a diverse audience including students, educators, journalists, and media makers, providing tools, classes, and research initiatives that push the boundaries of storytelling and media technology. The Lab is well-positioned as a leader in media innovation with strong ties to Northwestern University and a global user base for its open-source projects. Technically, the website employs modern web standards with HTML5, CSS3, and JavaScript, including Google Analytics for tracking. The site is mobile-optimized with good SEO and accessibility basics, hosted likely on Northwestern's infrastructure or associated CDNs. However, there is room for improvement in security headers and privacy compliance, as no explicit privacy or cookie policies are found, and no cookie consent mechanism is implemented. From a security perspective, the site uses HTTPS with good SSL configuration and no visible vulnerabilities in the provided content. The absence of security headers and privacy policies are notable gaps. The WHOIS data is unavailable, typical for edu subdomains, but the domain's affiliation with Northwestern University and consistent website content support legitimacy. Overall, the site demonstrates a solid security posture but could enhance compliance and transparency. The overall risk is low given the academic nature and reputable affiliation, but strategic improvements in privacy, security headers, and user consent would strengthen trust and compliance.

15
35
2
70
90
65
100
mediajournalismeducationopen-sourcestorytelling+2 more
HTML5CSS3JavaScriptGoogle Analytics (gtag.js)+2
2025-10-22T16:17:53.804Z
icmec.org favicon

International Missing Children

icmec.org

0
Non-profitUnited StatesmediumMEDIUM

The International Centre for Missing & Exploited Children (ICMEC) is a globally recognized non-profit organization dedicated to protecting children from abduction, sexual abuse, and exploitation. The organization operates internationally with partnerships in over 120 countries, providing training, advocacy, and resources to law enforcement, educators, healthcare providers, and child protection professionals. Their website reflects a mature digital presence with comprehensive content, clear navigation, and strong branding consistency. The site offers extensive resources including education portals, training programs, and global hotline directories, positioning ICMEC as a leader in child protection advocacy. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Analytics, Google Tag Manager, and integrations with payment processors like Stripe and PayPal. The site employs robust cookie consent mechanisms and uses Cloudflare for bot management, indicating a focus on security and privacy compliance. Performance is moderate with good mobile optimization and accessibility features, supported by SEO best practices via Yoast SEO. Security posture is strong with HTTPS enforced, multiple security headers present, and no visible vulnerabilities or exposed sensitive data. The organization demonstrates good privacy compliance with a comprehensive privacy policy, cookie consent banner, and GDPR adherence. However, there is no explicit security policy or incident response page publicly available, which could be improved. Overall, the website and organization present a low-risk profile with high trustworthiness and professionalism. Strategic recommendations include publishing a formal security policy, establishing an incident response contact, and considering a vulnerability disclosure program to further enhance security transparency and resilience.

95
100
2
75
62
80
100
childprotectionnon-profiteducationadvocacymissingchildren+3 more
WordPressjQueryGoogle AnalyticsGoogle Tag Manager+7

Partner Domains:

icmec.tovuti.io
partner
discovered.tv
partner

+1 more partners

2025-10-22T15:06:24.378Z
aboutamazon.com favicon

Amazon.com, Inc.

aboutamazon.com

0
TechnologyUnited StatesenterpriseMEDIUM

The website www.aboutamazon.com serves as Amazon.com's official corporate news and information portal, providing breaking news, company updates, and insights into Amazon's innovations, workplace culture, sustainability efforts, and community impact. It targets a broad audience including consumers, investors, employees, and media professionals. The site reflects Amazon's position as a global leader in e-commerce, cloud computing, and technology services, showcasing key services such as AWS, retail operations, devices, and entertainment. Technically, the site is built on modern web technologies including React and Next.js, with a strong focus on performance, mobile optimization, and accessibility. It employs advanced tracking and analytics tools like Adobe Alloy and Adobe DTM, and integrates comprehensive SEO and metadata strategies to enhance discoverability. The content is rich, professionally curated, and regularly updated, supporting a high-quality user experience. From a security perspective, the site enforces HTTPS with excellent SSL configuration and implements multiple security headers to protect users. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not prominently available, representing an area for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Overall, the site demonstrates a mature digital presence with strong business credibility and security posture. The absence of WHOIS data is noted but does not detract from the site's legitimacy given its official branding and content. Strategic recommendations include publishing detailed security policies, establishing a vulnerability disclosure program, and enhancing security contact transparency to further strengthen trust and compliance.

20
53
17
45
100
85
100
amazonnewscorporatetechnologye-commerce+5 more
ReactNext.jsJavaScriptAdobe Alloy+1

Partner Domains:

amazon.com
parent
press.aboutamazon.com
partner

+2 more partners

2025-10-22T15:05:44.124Z
trade.gov favicon

International Trade Administration

trade.gov

0
GovernmentUnited StatesenterpriseMEDIUM

The International Trade Administration (ITA) is a U.S. government agency under the Department of Commerce focused on strengthening the competitiveness of U.S. industry, promoting trade and investment, and ensuring fair trade through trade laws and agreements. The website serves as a comprehensive resource for U.S. businesses, exporters, and investors, offering export solutions, trade data and analysis, problem resolution services, and virtual assistance. ITA positions itself as the authoritative source for navigating global markets and supporting U.S. economic growth through international trade. Technically, the website is built on Drupal 10, leveraging modern web technologies including jQuery, Google Tag Manager, and analytics tools such as Google Analytics and Crazy Egg. The site is mobile-optimized, accessible, and well-structured with clear navigation and professional design. Security best practices are observed with HTTPS enforcement, multiple security headers, and no visible vulnerabilities. Privacy and cookie policies are present and indicate GDPR compliance, enhancing user trust. The security posture is strong, with no detected vulnerabilities or exposed sensitive data. The domain is a .gov domain, which inherently provides a high level of trust and legitimacy. WHOIS data is limited due to .gov domain privacy norms but aligns with expectations for a government entity. Overall, the website demonstrates a mature digital presence with robust security and compliance measures. Strategically, ITA should consider publishing explicit security policies and vulnerability disclosure programs to further enhance transparency and trust. Regular updates to third-party scripts and continued monitoring of privacy compliance will maintain the site's integrity and user confidence.

55
53
17
70
-
85
100
governmenttradeexportinvestmentinternationalbusiness+1 more
Drupal 10jQueryGoogle Tag ManagerGoogle Analytics+2

Partner Domains:

www.stopfakes.gov
partner
selectusa.stateincentives.org
partner

+1 more partners

2025-10-22T13:55:56.625Z
apple.com favicon

Apple

apple.com

0
TechnologyUnited StatesenterpriseLOW

Apple Inc. is a globally recognized leader in consumer electronics, software, and digital services. The company operates a comprehensive online presence offering a wide range of products including iPhone, iPad, Mac, Apple Watch, and Apple TV, alongside accessories and entertainment services. Apple maintains a strong market position with a focus on innovation, quality, and user experience. The website reflects this with professional design, clear navigation, and extensive product information targeting both consumers and businesses worldwide. Technically, the website employs modern web technologies including HTML5, CSS, JavaScript, and SVG graphics, optimized for both desktop and mobile platforms. The site demonstrates excellent performance, accessibility, and SEO practices, ensuring a fast and user-friendly experience. The presence of multiple language and regional versions indicates a mature digital infrastructure supporting global operations. From a security perspective, Apple enforces HTTPS with strong SSL configurations and comprehensive security headers such as Content-Security-Policy and Strict-Transport-Security. The site avoids exposing sensitive data and follows best practices in secure form handling. Privacy compliance is robust, with detailed privacy and cookie policies, GDPR adherence, and a clear vulnerability disclosure program. The WHOIS data is not publicly available, likely due to privacy protection, which is justified for a large enterprise. Overall, the website presents a low-risk profile with high trustworthiness, professional content, and strong security posture. Strategic recommendations include maintaining regular security audits, enhancing incident response transparency, and continuing to evolve privacy and consent mechanisms to align with emerging regulations.

80
53
2
97
100
90
100
technologyconsumerelectronicsretailappleprivacy+2 more
JavaScriptCSSHTML5SVG+1

Partner Domains:

beatsbydre.com
subsidiary
filemaker.com
subsidiary
2025-10-22T13:52:30.407Z
unglobalcompact.org favicon

United Nations Global Compact

unglobalcompact.org

0
GovernmentUnited StateslargeMEDIUM

The United Nations Global Compact website represents a well-established, globally recognized non-profit initiative focused on promoting corporate sustainability and responsible business practices aligned with the UN Sustainable Development Goals. The organization operates under the United Nations umbrella and targets businesses, governments, civil society, and young professionals worldwide. The website effectively communicates its mission, key services, and impact through professional design and comprehensive content. Technically, the site employs a modern technology stack including JavaScript frameworks, Google Tag Manager, Hotjar, and Stripe for payments, hosted on Amazon Cloudfront CDN. The site is performant, mobile-optimized, and accessible, with clear navigation and SEO best practices. Cookie consent and privacy policies are implemented with high compliance standards, reflecting GDPR adherence. From a security perspective, the site uses HTTPS with good SSL configuration and domain transfer protections. However, DNSSEC is not enabled, and no explicit security or incident response policies are published. The use of multiple third-party analytics and marketing tools introduces moderate tracking but is managed transparently with user consent. Overall, the website is trustworthy, professional, and secure with minor areas for improvement in security policy transparency and DNS security. The domain registration data aligns well with the organization's history, reinforcing legitimacy. Strategic recommendations include enabling DNSSEC, publishing security policies, and enhancing security headers to further strengthen the security posture.

60
68
2
100
72
80
100
unsustainabilitycorporateresponsibilitysdgsglobalcompact+4 more
JavaScriptGoogle Tag ManagerHotjarDemandbase+3

Partner Domains:

pardot.com
service
stripe.com
service

+1 more partners

2025-10-22T12:50:48.859Z
dataprivacyframework.gov favicon

U.S. Department of Commerce - International Trade Administration

dataprivacyframework.gov

0
GovernmentUnited StateslargeMEDIUM

The Data Privacy Framework website is an official U.S. government platform managed by the Department of Commerce's International Trade Administration. It serves as a resource and certification portal for U.S. organizations to comply with data transfer regulations from the European Union, United Kingdom, and Switzerland. The site targets multiple audiences including U.S. businesses, European businesses, individuals, and data protection authorities, providing program overviews, self-certification processes, and lists of participants. The business model is government-driven, focusing on regulatory compliance facilitation rather than commercial services. Technically, the website employs a modern frontend stack including React, Bootstrap, jQuery UI, and Font Awesome, hosted on Microsoft Azure Blob Storage. The site demonstrates good mobile responsiveness, accessibility, and SEO optimization. Performance is moderate, with no major technical issues detected. However, explicit security headers are not visible in the HTML, and no cookie consent mechanism is present, which are areas for improvement. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. The lack of visible security headers and absence of published security or incident response policies suggest room for enhancement in security posture. No vulnerabilities or malicious content were detected. WHOIS data is incomplete, likely due to .gov domain privacy restrictions, but the domain's official status and content confirm legitimacy. Overall, the website is a trustworthy, professional government resource with good content quality and technical implementation. Strategic recommendations include adding security headers, implementing cookie consent, publishing security policies, and enhancing transparency around incident response to strengthen compliance and trust.

30
53
17
70
67
85
100
dataprivacyeu-usframeworkgovernmentcompliancepersonaldatatransfers
jQuery UIBootstrap CSSFont Awesome 4.7.0Google Fonts (Lato)
2025-10-22T12:50:18.797Z
M

Marcaria.com International, Inc.

marcaria.com

0
TechnologyUnited StatesmediumMEDIUM

Marcaria.com International, Inc. operates a professional website offering international domain and trademark registration services across more than 180 countries. The company positions itself as a world-renowned ICANN-accredited registrar with a comprehensive portfolio of over 1,200 domain extensions and trademark services adhering to major treaties. The website targets individuals, small businesses, and multinational firms seeking global brand protection and domain management solutions. Technically, the site is built on ASP.NET WebForms with Kentico CMS, leveraging modern JavaScript libraries like jQuery and integrating multiple analytics and tracking tools including Google Tag Manager, Facebook Pixel, and Rollbar for error monitoring. The site is hosted behind Cloudflare, ensuring good SSL configuration and content delivery. Security posture is strong with HTTPS and trust seals, though some improvements are recommended such as adding security headers and cookie consent mechanisms. The absence of WHOIS data for the domain is a notable anomaly that slightly reduces trustworthiness, despite the professional presentation and certifications displayed. Overall, the website demonstrates a mature digital presence with room for enhanced privacy compliance and security transparency.

70
68
17
70
-
80
100
domainregistrationtrademarkregistrationinternationalicannlegalservices+1 more
jQuery 3.6.0jQuery UI 1.13.3Rollbar (Error Monitoring)Google Tag Manager+5

Partner Domains:

patentarea.com
partner
blog.marcaria.com
subsidiary

+3 more partners

2025-10-22T09:48:18.869Z
S

SAP SE

ariba.com

0
TechnologyUnited StatesenterpriseMEDIUM

SAP SE is a global leader in enterprise software solutions, specializing in spend management and procurement software among other business applications. The website presents a comprehensive portfolio of spend management solutions designed to automate and optimize procurement processes for enterprises. The company targets large enterprises and businesses seeking to improve spend control, savings, and operational resilience. SAP's market position is strong, supported by its subsidiaries such as SAP Ariba, SAP Fieldglass, and SAP Concur, which complement its spend management offerings. Technically, the website is built on modern frameworks including SAP UI5 and Adobe Experience Manager, ensuring a fast, accessible, and mobile-optimized user experience. Security posture is robust with HTTPS enforcement, security headers, and privacy compliance mechanisms including GDPR-aligned privacy and cookie policies. No critical vulnerabilities or suspicious content were detected. Overall, the website reflects a mature digital presence consistent with SAP's enterprise stature, though WHOIS data is unavailable likely due to registry policies. Strategic recommendations include publishing explicit incident response contacts and vulnerability disclosure information to enhance transparency and trust.

65
68
25
88
80
85
100
spendmanagemententerprisesoftwareprocurementsapbusinessapplications+1 more
JavaScriptjQueryUI5OverlayScrollbars

Partner Domains:

concur.com
subsidiary
fieldglass.com
subsidiary

+1 more partners

2025-10-22T09:46:18.270Z
earthshare.org favicon

EarthShare

earthshare.org

0
Non-profitUnited StatesmediumCRITICAL

EarthShare is a well-established non-profit organization dedicated to accelerating environmental impact through supporting nonprofits, launching projects, and inspiring action for a healthier planet. The website serves as a platform for donors, corporate partners, and environmental advocates to engage and contribute to environmental causes. The organization maintains a strong market position within the environmental non-profit sector, leveraging digital tools to facilitate donations and partnerships. Technically, the website is built on WordPress using Elementor for design and Yoast SEO for optimization, indicating a modern and maintainable infrastructure. Integration with Stripe and GiveWP for donations reflects a secure and user-friendly payment experience. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS, employs multiple security headers, and secures forms handling sensitive donation data. However, it lacks a publicly available security policy, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. Overall, EarthShare presents a low-risk profile with strong business credibility and technical maturity. Strategic improvements in security transparency and incident readiness would further strengthen its posture.

-
-
-
-
-
-
-
environmentnon-profitdonationsenvironmentalimpactsustainability+1 more
WordPressElementorYoast SEOGoogle Analytics+2
2025-10-22T06:59:35.211Z
governmentjobs.com favicon

Governmentjobs.com, Inc. d/b/a NEOGOV

governmentjobs.com

0
GovernmentUnited StateslargeCRITICAL

GovernmentJobs.com, operated by Governmentjobs.com, Inc. d/b/a NEOGOV, is a leading online job board specializing in public sector employment opportunities across federal, state, and local government agencies. The platform offers a comprehensive job search engine and application system designed to streamline the hiring process for both job seekers and public sector employers. With a large market presence as the largest public sector job board in the United States, GovernmentJobs.com provides key services including job listings, application management, and an Access Membership program to enhance job search efficiency and employer discovery. Technically, the website employs modern web technologies such as jQuery, Knockout.js, Google reCAPTCHA, and Google Tag Manager, alongside a robust cookie consent management system powered by Osano. The site demonstrates good mobile optimization, accessibility compliance, and SEO practices, contributing to a positive user experience. Security measures include HTTPS enforcement, secure login forms with CAPTCHA and two-factor authentication, and privacy policies aligned with GDPR and CCPA requirements. The security posture is strong with no evident vulnerabilities or exposed sensitive data. The site integrates multiple analytics and marketing tools while maintaining user privacy through consent mechanisms. However, the WHOIS data is unavailable or privacy protected, which is common for commercial sites but reduces transparency. Overall, the platform is legitimate, professionally maintained, and compliant with relevant privacy and security standards. Strategically, GovernmentJobs.com should continue enhancing transparency around incident response and vulnerability disclosure, ensure all security headers are explicitly implemented, and maintain up-to-date third-party libraries to sustain its trusted position in the public sector recruitment market.

-
-
-
-
-
-
-
governmentjobspublicsectorjobsearchemploymentprivacy+2 more
jQuery 3.5.1Knockout.js 3.5.1Google reCAPTCHAGoogle Tag Manager+2

Partner Domains:

employer.governmentjobs.com
partner
www.neogov.com
partner

+2 more partners

2025-10-22T06:59:15.168Z
M

Marcaria.com International, Inc.

trademarkarea.com

0
TechnologyUnited StatesmediumMEDIUM

Marcaria.com International, Inc. is a medium-sized technology service provider specializing in international domain and trademark registration services. The company operates globally, serving individuals, small businesses, and multinational firms with a broad portfolio of domain extensions and trademark jurisdictions. Their market position is strong, supported by ICANN accreditation and multiple trust seals, indicating a reputable presence in the domain and trademark registration industry. The website offers comprehensive services including trademark watch, domain management, and hosting, with a user-friendly online interface and multilingual support. Technically, the site is built on ASP.NET WebForms with Kentico CMS, leveraging modern JavaScript libraries and multiple third-party analytics and tracking tools. Security posture is good with HTTPS and error monitoring, though some security headers are not explicitly detected. Privacy and cookie policies are comprehensive and GDPR compliant. However, the absence of WHOIS registrant data and explicit contact information on the site slightly reduces trustworthiness. Overall, the site is professional, well-structured, and trustworthy with room for improvement in transparency and security header implementation.

70
68
17
70
85
75
100
domainregistrationtrademarkregistrationinternationallegalservicestechnology+1 more
jQuery 3.6.0jQuery UI 1.13.3Rollbar (error monitoring)Google Tag Manager+5

Partner Domains:

patentarea.com
partner
support.marcaria.com
service

+3 more partners

2025-10-22T05:50:19.118Z
civicactions.com favicon

CivicActions

civicactions.com

0
GovernmentUnited StatesmediumMEDIUM

CivicActions is a well-established company founded in 2003 that specializes in helping government agencies deliver better public services through open technology, Agile and DevOps methodologies, and human-centered design. Their market position is that of a trusted partner for government digital transformation, offering a range of services including web and CMS solutions, IT modernization, product design, security and compliance, data services, workforce development, and DITAP training. The website reflects a professional and consistent brand image targeted primarily at government organizations and public service entities. Technically, the website is built using modern technologies such as Gatsby and React, hosted likely behind Cloudflare DNS services, and optimized for performance and mobile responsiveness. The site demonstrates good SEO and accessibility practices, with comprehensive metadata and structured content. Security-wise, the site enforces HTTPS, employs several security headers, and maintains a secure domain registration status. However, it lacks a published security policy, incident response contacts, and vulnerability disclosure mechanisms, which are areas for improvement. Overall, the security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies including consent mechanisms and GDPR compliance indicators. The business credibility is high, supported by trust signals such as client logos, case studies, and professional content. The site does not contain any adult or questionable content and is safe for general audiences. Strategically, CivicActions should consider enabling DNSSEC to enhance DNS security, publishing a formal security policy and incident response contact information, and establishing a vulnerability disclosure program to further strengthen their security posture and trustworthiness.

65
58
17
85
77
85
100
governmentdigitalservicesagiledevopsopensource+5 more
GatsbyReactCloudflare DNS
2025-10-22T05:46:22.711Z
V

Via

remix.com

0
TransportationUnited StateslargeMEDIUM

Via operates Remix, a comprehensive transportation planning and scheduling software platform designed to help transit agencies and operators optimize their networks. The company targets a broad audience including cities, transit authorities, paratransit operators, school districts, and healthcare providers. With over 450 transit agencies using Remix and partnerships with major organizations like MTA and Transport for London, Via holds a strong market position in the transportation technology sector. The website reflects a mature digital presence with professional design, clear navigation, and multilingual support via Weglot. Technically, the site is built on HubSpot CMS and leverages modern marketing and analytics tools such as Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and Visual Website Optimizer. Hosting is via AWS infrastructure, and the site uses HTTPS with strong domain registration protections. The site is mobile-optimized and accessible, with good SEO practices. However, DNSSEC is not enabled, which is a minor security improvement opportunity. Security posture is solid with HTTPS, reCAPTCHA Enterprise, and no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Contact information is primarily via forms, with no direct emails or phone numbers visible in the analyzed content. No explicit security policies or incident response contacts were found, suggesting an area for enhancement. Overall, Via's Remix website demonstrates a high level of professionalism, security, and compliance suitable for its enterprise transportation clientele. Strategic recommendations include enabling DNSSEC, publishing explicit security and incident response policies, and enhancing direct contact options for security issues.

50
68
17
70
67
80
100
transportationplanningschedulingtransitmobility+3 more
HubSpot CMSGoogle Tag ManagerGoogle AnalyticsFacebook Pixel+5

Partner Domains:

platform.remix.com
partner
eu.remix.com
partner

+1 more partners

2025-10-22T04:40:11.887Z
natureserve.org favicon

NatureServe

natureserve.org

0
Non-profitUnited StatesmediumMEDIUM

NatureServe is a well-established nonprofit organization specializing in biodiversity data and conservation science across North America. With a 50-year history, it collaborates with a broad network of scientists and organizations to provide authoritative data that supports conservation efforts. The website reflects a mature digital presence with comprehensive content, clear navigation, and strong branding consistent with its mission. Technically, the site is built on Drupal 10 with modern frameworks like Bootstrap and integrates multiple analytics and marketing tools such as Google Tag Manager, Facebook Pixel, and Mailchimp. The site is mobile-optimized and accessible, though performance is moderate. Security posture is solid with HTTPS and some security headers, but could be enhanced with additional headers and explicit cookie consent mechanisms. Overall, the security and privacy compliance is good, with a comprehensive privacy policy and clear contact information. The WHOIS data is limited due to privacy protection, but the domain and website content align well with the organization's claims, supporting legitimacy. No critical vulnerabilities or suspicious indicators were found. Strategically, NatureServe should focus on enhancing security headers, implementing explicit cookie consent, and maintaining transparency to further strengthen trust and compliance.

40
53
25
70
52
75
100
nonprofitbiodiversityconservationscienceenvironment+3 more
Drupal 10Bootstrap 4.5.2jQuery 3.7.1Google Tag Manager+4

Partner Domains:

onepercentfortheplanet.org
partner
www.earthshare.org
partner

+1 more partners

2025-10-22T02:24:20.785Z
M

Missouri Botanical Garden

missouribotanicalgarden.org

0
Non-profitUnited StateslargeMEDIUM

The Missouri Botanical Garden is a well-established non-profit organization focused on botanical research, conservation, education, and providing a public garden experience. The website reflects a mature digital presence with comprehensive content, including event information, educational programs, visitor services, and donation opportunities. The organization targets a broad audience including families, researchers, students, and garden enthusiasts. Technically, the website is built on ASP.NET WebForms with DNN CMS, leveraging modern JavaScript libraries and analytics tools such as Google Analytics, Hotjar, and Facebook Pixel. The site is mobile-optimized and provides a professional user experience with clear navigation and rich multimedia content. Security posture is strong with HTTPS enforcement and appropriate security headers, though there is room for improvement in publishing explicit security policies and incident response information. Privacy compliance is well addressed with visible privacy and cookie policies and consent mechanisms. Overall, the website demonstrates high business credibility and trustworthiness, despite the absence of detailed WHOIS data due to privacy protection.

40
65
22
70
57
70
100
botanicalgardennon-profiteducationeventsplantscience+4 more
JavaScriptBootstrap 5Google AnalyticsGoogle Tag Manager+4

Partner Domains:

secure.missouribotanicalgarden.org
service
giftplanning.missouribotanicalgarden.org
service

+2 more partners

2025-10-22T02:24:15.774Z
conservation.org favicon

Conservation International

conservation.org

0
Non-profitUnited StateslargeLOW

Conservation International is a well-established non-profit organization founded in 1987, dedicated to protecting oceans, forests, and other vital ecosystems globally. The organization targets a broad audience including donors, environmental advocates, and the general public. Their business model focuses on conservation efforts, scientific research, community partnerships, and advocacy. The website reflects a mature digital presence with integrated donation capabilities and active social media engagement. Technically, the website is built on the Sitefinity CMS platform, utilizing modern technologies such as Bootstrap, jQuery, and various third-party widgets for fundraising and analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, supported by comprehensive privacy and cookie policies with user consent mechanisms. From a security perspective, the site enforces HTTPS, employs standard security headers, and avoids exposing sensitive data. However, it lacks publicly available security policies, incident response details, and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. Overall, the website is professional, trustworthy, and secure, with minor areas for improvement in security communication and incident handling. The absence of WHOIS data is due to privacy protection, which is justified for this type of organization. The domain and website content align well, supporting a high legitimacy score.

80
88
25
80
77
80
100
environmentconservationnon-profitenvironmentalprotectiondonation+1 more
jQueryBootstrapYouTube iframe APIFundraise Up widget+4

Partner Domains:

give.conservation.org
partner
conservation.org.co
partner

+1 more partners

2025-10-22T02:24:10.765Z