Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 23 of 206|Showing 1101-1150 of 10253
cfpprostore.com favicon

CFP® Pro Store

cfpprostore.com

0
RetailUnited StatessmallMEDIUM

CFP® Pro Store is a newly established e-commerce platform specializing in apparel and branded merchandise for CERTIFIED FINANCIAL PLANNER® professionals. The website offers personalized goods, menswear, womenswear, and brand-name items that reflect the professionalism and prestige of the CFP® designation. The business targets a niche market of financial professionals seeking quality branded products for events, meetings, and everyday wear. The store operates on the Shopify platform, leveraging its infrastructure and ecosystem for e-commerce operations. Technically, the website is built on Shopify using the Dawn theme, with modern JavaScript and CDN delivery via Cloudfront and Google Fonts. The site demonstrates good mobile optimization, clear navigation, and basic accessibility features. Performance is moderate, with room for improvement in loading speed and SEO enhancements. The technical stack is standard for Shopify stores, ensuring reliability and scalability. From a security perspective, the site enforces HTTPS and has domain transfer/update protections. However, it lacks DNSSEC and explicit security headers, which are recommended to enhance security posture. No sensitive data exposure or vulnerable libraries were detected. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or GDPR indicators. Contact information is limited to forms, with no direct emails or phone numbers provided. Overall, the website presents a professional and trustworthy front for its niche market but could improve in privacy compliance, security headers, and direct contact transparency. Strategic recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, and publishing security and incident response policies to build greater trust and compliance.

75
58
2
55
-
80
100
e-commerceshopifycfpapparelpersonalizedgoods+1 more
ShopifyJavaScriptCloudfront CDNGoogle Fonts

Partner Domains:

sonicpromos.com
partner
cfpboard.itemorder.com
partner

+1 more partners

2025-10-22T00:24:08.024Z
cfp.net favicon

Certified Financial Planner Board of Standards, Inc.

cfp.net

0
FinanceUnited StatesmediumMEDIUM

The Certified Financial Planner Board of Standards, Inc. operates the website www.cfp.net as the authoritative source for CFP® certification information and resources. The organization is a leading certification body in the finance sector, providing rigorous education, ethical standards, and professional development for financial planners. The website targets prospective candidates, current CFP® professionals, and the general public seeking trustworthy financial planning advice. The business model centers on certification, education, and public awareness, positioning CFP Board as a trusted industry standard bearer. Technically, the website is built on the Sitecore CMS platform, leveraging modern JavaScript libraries such as jQuery and integrating Cloudflare Turnstile CAPTCHA for bot mitigation. The site demonstrates good mobile optimization, accessibility, and SEO practices, with a moderate performance profile. Analytics and marketing tools include Google Tag Manager and Simpli.fi tracking pixels, indicating a moderate level of user tracking balanced with privacy compliance. From a security perspective, the site enforces HTTPS and uses CAPTCHA to protect forms, but lacks visible security headers and published security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data is a notable anomaly, reducing trust slightly, but the overall professional presentation and consistent branding strongly support legitimacy. Overall, www.cfp.net is a high-quality, professional website serving an essential role in the financial planning certification ecosystem. Strategic improvements in security header implementation and transparency around security policies would enhance trust and compliance further.

20
53
2
70
100
60
100
financecertificationfinancialplanningeducationprofessionalstandards
jQuery 3.2.1Cloudflare Turnstile CAPTCHASitecore CMSGoogle Tag Manager+1

Partner Domains:

www.letsmakeaplan.org
partner
cfpprostore.com
partner
2025-10-22T00:20:04.533Z
letsmakeaplan.org favicon

CFP Board

letsmakeaplan.org

0
FinanceUnited StateslargeMEDIUM

Let's Make a Plan (letsmakeaplan.org) is a professionally designed and content-rich website operated by CFP Board, a leading non-profit organization in the financial planning sector. The site serves as a consumer education platform and a directory to find CERTIFIED FINANCIAL PLANNER® professionals across the United States. It offers comprehensive educational resources, a robust search tool for locating CFP® professionals by location or name, and emphasizes fiduciary duty and ethical financial planning. The website is well-branded, consistent, and trusted within its niche, supported by references to CFP Board's official site and social media presence. Technically, the site leverages modern web technologies including Sitecore CMS, Google Tag Manager, Google Maps API, jQuery, and Cloudflare Turnstile CAPTCHA for form security. It demonstrates good mobile optimization, accessibility, and SEO practices. Privacy compliance is evident through a clear privacy policy, cookie consent mechanisms, and GDPR awareness. However, the site lacks explicit security policies and incident response information. From a security perspective, the site uses HTTPS and CAPTCHA protections effectively, with no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data due to a malformed response limits domain registration trust analysis, but the strong brand presence and external references mitigate concerns. Overall, the site presents a secure, professional, and trustworthy platform for financial planning consumers. Strategically, the site should improve transparency by publishing security policies and incident response contacts, and address WHOIS data visibility to enhance domain trustworthiness. These steps will strengthen user confidence and compliance posture.

55
53
25
70
100
70
100
financefinancialplanningcfpcertifiedfinancialplannerconsumereducation+1 more
Google Tag ManagerGoogle Maps APIjQueryCloudflare Turnstile CAPTCHA

Partner Domains:

www.cfp.net
partner
2025-10-21T23:15:46.355Z
cpsg.org favicon

Conservation Planning Specialist Group

cpsg.org

0
Non-profitUnited StatesmediumMEDIUM

The Conservation Planning Specialist Group (CPSG) is a well-established non-profit organization dedicated to species conservation planning and capacity building. With over 40 years of experience, CPSG leverages scientific approaches and collaborative workshops to support global biodiversity goals. Their website reflects a professional and consistent brand, targeting conservationists, researchers, donors, and the general public interested in wildlife preservation. The organization offers key services including conservation planning workshops, training, scientific tools, and annual meetings. Technically, the website is built on Drupal 10 and incorporates modern JavaScript libraries and Google Tag Manager for analytics. The site is mobile-optimized, accessible, and performs moderately well. Security posture is strong with HTTPS enabled and cookie consent mechanisms in place, though some security headers could be improved. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable due to malformed output, but the website's professionalism and trust indicators suggest legitimacy. Privacy protection for domain registration is justified given the non-profit nature. Overall, the site demonstrates a mature digital presence with good compliance and security practices. Recommendations include enhancing security headers, publishing a security policy and incident response contacts, and adding a vulnerability disclosure mechanism to further strengthen trust and security posture.

50
53
17
75
65
80
100
conservationwildlifenon-profitspeciesplanningenvironment+3 more
Drupal 10Google Tag ManagerTippy.jsPopper.js+1

Partner Domains:

cpsg2025.org
partner
augustash.com
service
2025-10-21T22:50:35.373Z
stateoftheapes.com favicon

Arcus Foundation

stateoftheapes.com

0
Non-profitUnited StatesmediumMEDIUM

State of the Apes is a non-profit publication initiative under the Arcus Foundation, focusing on the conservation of great apes and gibbons by examining the impact of human development activities. The website serves as a resource hub offering downloadable chapters, video interviews, and research reports targeting policymakers, academics, NGOs, and conservation experts. The platform is well-branded, professionally designed, and provides clear navigation and content relevant to its mission. Technically, the website is built on WordPress with Bootstrap and jQuery, enhanced by SEO plugins and integrated with marketing and analytics tools such as HubSpot Forms, Google Tag Manager, and LinkedIn Insight. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and publicly available security or incident response policies. The absence of WHOIS domain registration data is a notable concern, potentially impacting trustworthiness despite the reputable association with the Arcus Foundation. Overall, the website presents a low-risk profile with strong content and business credibility but would benefit from enhanced transparency in domain registration and security practices to improve trust and compliance.

15
68
17
40
67
75
100
conservationgreatapesnon-profitenvironmenteducation+1 more
WordPressBootstrapjQueryYoast SEO+4

Partner Domains:

arcusfoundation.org
parent
2025-10-21T22:48:04.339Z
U

U.S. Securities and Exchange Commission

sec.gov

0
GovernmentUnited StatesenterpriseMEDIUM

The U.S. Securities and Exchange Commission (SEC) operates the website www.sec.gov as the official federal government portal for securities regulation, investor protection, and market oversight. The site provides comprehensive resources including filings search, rulemaking activities, enforcement news, and educational materials targeted at investors, businesses, and market participants. The SEC is a large, enterprise-level government agency with a long-standing history dating back to 1934, reflected in the authoritative and professional content presented on the site. Technically, the website is built on the Drupal CMS platform, leveraging the U.S. Web Design System (USWDS) for accessibility and responsive design. It integrates modern analytics and tracking tools such as Google Tag Manager and YouTube APIs, ensuring a rich user experience with fast performance and excellent mobile optimization. The site is hosted likely on government infrastructure or via Akamai CDN, ensuring reliability and security. From a security perspective, the site enforces HTTPS and demonstrates good security practices including secure forms and no visible vulnerabilities. While explicit security headers were not fully confirmed in the provided content, the overall posture is strong, consistent with a government entity. Privacy and cookie policies were not explicitly found in the provided HTML snippet, which slightly impacts privacy compliance scoring. Overall, the SEC website is a highly credible, trustworthy, and professionally maintained government resource. It effectively serves its mission to protect investors and maintain market integrity. Strategic recommendations include publishing explicit privacy and cookie policies prominently, ensuring all security headers are set, and maintaining vigilance on third-party scripts to uphold security standards.

35
53
47
80
80
85
100
governmentfinancesecuritiesregulationinvestorprotection+2 more
Drupal CMSGoogle Tag ManagerYouTube iframe APIUSWDS (U.S. Web Design System)
2025-10-21T20:46:33.624Z
curatedcp.com favicon

Curated Capital & Planning LLC

curatedcp.com

0
FinanceUnited StatessmallMEDIUM

Curated Capital & Planning LLC is a specialized financial advisory firm focusing on remarried baby boomers with blended families. The company offers fee-only, fiduciary financial planning and investment management services, operating virtually across the United States. The website is professionally designed, with clear branding and trust indicators such as CFP certification and industry memberships. Technically, the site uses modern web technologies including Bootstrap, jQuery, and MailerLite for marketing and forms, hosted on Zephyr CMS. The site is mobile optimized and performs moderately well. Security posture is generally good with HTTPS enabled and no visible vulnerabilities, but lacks some security headers and cookie consent mechanisms, which are recommended for compliance and enhanced protection. The absence of WHOIS registration data is a notable concern, potentially indicating privacy protection or registration issues, which slightly impacts trustworthiness. Overall, the site is safe, professional, and trustworthy for its target audience. Recommendations include implementing security headers, adding cookie consent for GDPR compliance, publishing terms of service and incident response policies, and verifying domain registration details to improve legitimacy and trust.

30
53
2
70
62
75
100
financialplanninginvestmentmanagementfee-onlyadvisorblendedfamiliesbabyboomers+2 more
jQuery 3.4.1Bootstrap 3.4.1FontAwesome 5.7.2Google Tag Manager+2
2025-10-21T19:37:47.400Z
inta.org favicon

International Trademark Association

inta.org

0
Non-profitUnited StateslargeMEDIUM

The International Trademark Association (INTA) operates as a large, well-established global non-profit organization dedicated to supporting trademarks and related intellectual property. It serves a broad audience of brand owners and IP professionals through advocacy, events, resources, and professional development programs. The organization maintains a strong market position as the largest network of trademark professionals worldwide, with a membership-based business model emphasizing community and education. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, Google Tag Manager, Algolia Search, and GDPR compliance plugins. The site demonstrates good performance, excellent mobile optimization, and strong SEO practices. The presence of comprehensive privacy and cookie policies with consent mechanisms reflects a mature approach to privacy compliance. From a security perspective, the site enforces HTTPS and employs cookie consent management. While explicit security headers are not fully visible in the HTML, the overall posture is strong with no evident vulnerabilities or exposed sensitive data. The WHOIS data is unavailable or privacy protected, which is typical for organizations of this nature and does not detract from legitimacy. Overall, the website presents a professional, trustworthy, and secure digital presence aligned with the organization's mission and audience. Strategic recommendations include enhancing visible security headers and continuous monitoring of third-party scripts to maintain security and compliance.

60
95
2
70
75
80
100
trademarkintellectualpropertynon-profitadvocacymembership+3 more
WordPressYoast SEO pluginGoogle Tag ManagerGoogle Analytics+5
2025-10-21T18:24:01.829Z
theweather.com favicon

Meteored

theweather.com

0
MediaUnited StatesmediumMEDIUM

Theweather.com, operated under the Meteored brand, is a professional weather information service providing 14-day forecasts, hourly updates, meteorological news, and videos primarily targeting the US market and global users. The site offers extensive weather data for over 200,000 cities worldwide and supports multiple languages and regional partner sites. It also provides weather widgets and mobile applications across major platforms including Android, iOS, Huawei, and Windows. The business model is advertising-supported, leveraging multiple ad networks and tracking technologies integrated with a GDPR-compliant consent management platform. Technically, the website employs modern JavaScript frameworks, Google Tag Manager, header bidding with Prebid.js, and integrates video content via Dailymotion. The site is well-optimized for performance and mobile responsiveness, with good SEO and accessibility basics. Hosting appears to be managed via Meteored's own services or trusted CDNs. Privacy and cookie policies are comprehensive and prominently linked, with active consent mechanisms. Security posture is strong with HTTPS enforced, security headers implemented, and no visible vulnerabilities or exposed sensitive data. However, the site lacks explicit published security policies or incident response contacts, and no vulnerability disclosure or security.txt files were found. The WHOIS data for the domain is unavailable, indicating privacy protection or recent registration, which slightly reduces trust but is mitigated by the professional site presentation and brand recognition. Overall, theweather.com is a credible and professionally managed weather information platform with good technical and security practices. Strategic recommendations include publishing explicit security policies and incident response contacts, adding vulnerability disclosure mechanisms, and enhancing accessibility features to further improve trust and compliance.

35
80
17
85
75
75
100
weatherforecastnewsmeteorologymedia+2 more
JavaScriptGoogle Tag ManagerGoogle DoubleClick for PublishersPrebid.js (header bidding)+3

Partner Domains:

meteored.com.ar
partner
tiempo.com
partner

+1 more partners

2025-10-21T15:40:30.287Z
resilientcitiesnetwork.org favicon

Resilient Cities Network

resilientcitiesnetwork.org

0
GovernmentUnited StatesmediumLOW

Resilient Cities Network is a globally recognized non-profit organization dedicated to fostering urban resilience by connecting cities worldwide. Their platform facilitates collaboration, knowledge sharing, and capacity building among city governments and resilience professionals to address urban challenges and promote safe, equitable urban environments. The organization operates primarily through a membership and network model, targeting city officials and stakeholders interested in sustainability and resilience. Technically, the website is built on WordPress using the Divi theme, leveraging modern web technologies including jQuery, Google Analytics, and Google Tag Manager. Hosting and DNS services are managed via Cloudflare, ensuring reliable performance and security. The site demonstrates good mobile optimization and SEO practices, though some accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and employs reCAPTCHA on forms, but lacks DNSSEC and explicit security policies or vulnerability disclosure mechanisms. Security headers are partially implemented, and no critical vulnerabilities were detected. Privacy compliance is strong with clear privacy and cookie policies aligned with GDPR requirements. Overall, the website presents a professional, trustworthy digital presence with a solid security posture suitable for a non-profit organization. Recommendations include enabling DNSSEC, publishing a security policy, and enhancing HTTP security headers to further strengthen security and trust.

95
65
25
85
75
85
100
urbanresiliencecitynetworknon-profitsustainabilityclimateadaptation+2 more
WordPress 6.8.3Divi Theme 4.27.4jQuery 3.7.1Google Analytics+3
2025-10-21T08:12:51.678Z
worldofwarcraft.com favicon

Blizzard Entertainment

worldofwarcraft.com

0
TechnologyUnited StatesenterpriseMEDIUM

World of Warcraft's official website, hosted under the Blizzard Entertainment domain, serves as a comprehensive portal for one of the most popular MMORPGs globally. The site targets gamers and fans of fantasy online games, offering game information, updates, and community engagement. As part of the Activision Blizzard group, it benefits from strong brand recognition and a large enterprise infrastructure. The website is professionally designed with excellent content quality and clear navigation, optimized for both desktop and mobile users. Technically, the site employs modern web technologies including JavaScript frameworks, Google Tag Manager for analytics, and OneTrust for cookie consent management, indicating a mature digital infrastructure. Performance is fast, and SEO and accessibility practices are well implemented. However, explicit security headers are not visibly present in the HTML, and no public security policy or incident response information is found, which could be improved. Security posture is strong with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. Privacy compliance is good, with comprehensive privacy and cookie policies and GDPR compliance indicators. Business credibility is high due to clear branding, association with Blizzard Entertainment, and professional presentation. WHOIS data is unavailable due to the domain being a subdomain of blizzard.com, which is typical for large enterprises and privacy protected domains. Overall, the website presents a low risk profile with strong trust indicators, though it could enhance transparency by publishing security policies and vulnerability disclosure information.

75
88
2
87
77
85
100
gamingmmorpgblizzardworldofwarcraftonlinegame+1 more
JavaScriptGoogle Tag ManagerOneTrust Cookie ConsentCSS3+1

Partner Domains:

blizzard.com
parent
activision.com
parent
2025-10-21T08:07:59.522Z
H

HugeDomains

lucidrealities.com

0
E-commerceUnited StatesmediumCRITICAL

HugeDomains operates as a reputable domain marketplace specializing in premium domain name sales with flexible payment options. Established in 2005, it targets entrepreneurs and businesses seeking valuable web addresses to enhance their online presence. The platform offers a secure and user-friendly shopping experience, supported by SSL encryption, trusted payment methods including PayPal and Escrow.com, and a 30-day money back guarantee. Customer testimonials and clear pricing reinforce its market credibility. Technically, the website employs modern web technologies such as jQuery, Google Analytics, and CookieYes for consent management, ensuring good mobile responsiveness and SEO optimization. While the site lacks explicit security headers beyond HTTPS, it maintains a solid security posture with encrypted transactions and bot protection via reCAPTCHA. Privacy and cookie policies are comprehensive and GDPR compliant, though a dedicated security policy and incident response details are absent. Overall, the security posture is strong with room for improvement in explicit security header implementation and transparency around vulnerability disclosures. The business model is clear and credible, supported by consistent WHOIS data and trusted partner integrations. The site is safe for general audiences with no adult or questionable content detected.

-
-
-
-
-
-
-
domainmarketplacepremiumdomainsdomainsalespaymentplanssecureshopping
jQueryGoogle Analytics (gtag.js)FancyBoxCookieYes consent management+1

Partner Domains:

NameBright.com
partner
Escrow.com
partner
2025-10-21T07:51:21.482Z
forgemedia.io favicon

forgemedia LLC

forgemedia.io

0
TechnologyUnited StatessmallMEDIUM

forgemedia LLC is a small US-based digital agency specializing in WordPress plugin development and actionable content creation. Founded in 2016 by two brothers, Brian and Brett Jackson, the company focuses on performance-driven solutions such as the Perfmatters and Novashare plugins. Their market position is niche but well-defined, targeting WordPress users and businesses seeking to improve site performance and content effectiveness. The website reflects a professional and consistent brand image with clear messaging and good user experience. Technically, the site is built on WordPress using the GeneratePress theme and leverages performance optimization plugins. Hosting is provided by Kinsta, a reputable managed WordPress host. The site demonstrates good performance and mobile optimization, with modern technologies and SEO best practices in place. Analytics are handled via Fathom Analytics, indicating a privacy-conscious approach to user tracking. From a security perspective, the site uses HTTPS with a valid SSL configuration and has domain transfer protections enabled. However, DNSSEC is not enabled, and no explicit security headers or incident response policies are publicly available. Privacy compliance is partial, with a privacy policy and terms of service present but lacking cookie consent mechanisms and GDPR explicit indicators. Contact is primarily via a web form, with no direct emails or phone numbers published. Overall, the website is trustworthy and professional with a solid technical foundation. Strategic improvements in security headers, DNSSEC, and privacy compliance would enhance the security posture and regulatory adherence. The business shows credible legitimacy with consistent WHOIS data and a mature domain age.

40
35
2
75
75
80
100
wordpressdigitalagencyperformancepluginscontent+1 more
WordPressPHPJavaScriptPerfmatters plugin+1

Partner Domains:

perfmatters.io
partner
novashare.io
partner

+3 more partners

2025-10-21T07:38:30.093Z
filmlinc.org favicon

Film at Lincoln Center

filmlinc.org

0
Non-profitUnited StatesmediumMEDIUM

Film at Lincoln Center (FLC) is a well-established nonprofit organization founded in 1969 dedicated to celebrating cinema as an essential art form and fostering a vibrant film culture. The organization operates a professional website that provides detailed information about film screenings, festivals such as the New York Film Festival (NYFF), membership programs, and cultural events. The site targets cinema enthusiasts and the broader film community, offering ticket sales and membership benefits to sustain its nonprofit mission. Technically, the website leverages modern web technologies including React and Next.js frameworks, hosted likely on Vercel with Cloudflare CDN for performance and security. The site is mobile-optimized, accessible, and SEO-friendly, with comprehensive metadata and structured data enhancing discoverability. Security best practices are observed with HTTPS enforcement and multiple security headers, and privacy compliance is supported by clear privacy and cookie policies with consent mechanisms. The security posture is strong with no visible vulnerabilities or exposed sensitive data. However, the WHOIS data is unavailable due to a malformed response, which limits domain registration insights. Despite this, the website's professional presentation, consistent branding, and presence of trust indicators support its legitimacy. No WAF or blocking mechanisms were detected, allowing full content access. Overall, FLC's website represents a mature digital presence for a nonprofit cultural institution with strong security and privacy practices. Strategic recommendations include publishing a vulnerability disclosure policy and incident response contacts to further enhance trust and security transparency.

35
53
17
75
65
75
100
filmnonprofitcinemamembershipevents+3 more
ReactNext.jsTypekit FontsGoogle Tag Manager+3
2025-10-21T07:37:19.944Z
afci.org favicon

Association of Film Commissioners International

afci.org

0
MediaUnited StatesmediumMEDIUM

The Association of Film Commissioners International (AFCI) is a well-established membership organization founded in 1975, serving the global film commission industry. It provides networking, education, and industry support services to film commissions, business affiliates, film liaisons, and producers worldwide. The website reflects a professional and consistent brand presence, with a focus on events, educational programs, and community engagement. The organization holds a strong market position as the largest network of its kind, primarily targeting media industry professionals and stakeholders. Technically, the website is built on WordPress using modern plugins such as Elementor, WooCommerce, and Yoast SEO, with integration of Google Analytics for user tracking. The site is hosted with Cloudflare DNS and uses HTTPS with a valid SSL certificate, ensuring secure communications. Performance and mobile optimization are good, though accessibility features are basic. SEO is well implemented with structured data and meta tags. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks DNSSEC and explicit security headers. There is no publicly visible security policy or incident response information, and no privacy or cookie policies were found, indicating gaps in privacy compliance. No vulnerabilities or suspicious patterns were detected in the content or WHOIS data. The domain is long-standing and consistent with the organization's history, supporting legitimacy. Overall, the website is professional, content-rich, and trustworthy but would benefit from enhanced privacy compliance and security transparency to improve user trust and regulatory adherence.

15
35
17
90
65
75
100
filmcommissionsmediaeducationeventsmembership+1 more
WordPressWooCommerceElementorYoast SEO+4

Partner Domains:

directory.afci.org
partner
community.afci.org
partner

+1 more partners

2025-10-21T06:30:29.848Z