Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 57 of 206|Showing 2801-2850 of 10256
newventurefund.org favicon

New Venture Fund

newventurefund.org

0
Non-profitUnited StateslargeMEDIUM

New Venture Fund is a well-established non-profit organization founded in 2009 that provides fiscal sponsorship and philanthropic portfolio management services to change leaders and social impact projects globally. The organization manages a charitable portfolio exceeding $356 million and supports a wide range of initiatives including environment, education, advocacy, and global health. Their business model focuses on operational expertise and cost-effective support to accelerate positive impact. The website reflects a professional and consistent brand with clear navigation and relevant content targeted at grant seekers and partners. Technically, the website is built on WordPress with modern plugins such as Yoast SEO and Jetpack, and integrates Google Tag Manager for analytics. The site is mobile optimized and demonstrates good SEO practices. Hosting appears to be through GoDaddy, consistent with the domain registrar information. Performance is moderate with room for improvement in accessibility features. From a security perspective, the site uses HTTPS and domain registration protections but lacks DNSSEC and some recommended security headers. There is no explicit incident response contact or vulnerability disclosure policy visible. Privacy policies and whistleblower policies are published, indicating a commitment to compliance and governance. However, cookie consent mechanisms are absent, which may impact GDPR compliance. Overall, the website and organization present a low-risk profile with strong business credibility and a good security posture. Strategic improvements in DNS security, security headers, and privacy compliance would enhance their security and trustworthiness further.

75
53
2
55
67
80
100
non-profitfiscalsponsorshipphilanthropysocialimpactgrantmaking+3 more
WordPressYoast SEO pluginGoogle Tag ManagerJetpack plugin+2
2025-10-08T09:43:40.345Z
co-pay.com favicon

co-pay

co-pay.com

0
HealthcareUnited StatesmediumMEDIUM

co-pay.com is a healthcare-focused platform powered by Doceree, Inc., offering the largest database of co-pay and affordability programs for prescription medications. The platform integrates with over 150 electronic health records (EHRs) and health systems, enabling physicians to provide real-time, patient-specific savings during the prescribing process. The business model centers on providing free co-pay discount coupons to patients, enhancing medication affordability without subscriptions or hidden fees. The website targets patients seeking medication savings and healthcare providers aiming to improve patient affordability. Technically, the website is built using modern web technologies including React and Next.js, hosted on AWS infrastructure. It employs multiple analytics and marketing tools such as Google Tag Manager, Microsoft Clarity, and LinkedIn Insight Tag, indicating a mature digital marketing and analytics strategy. The site is mobile-optimized with good performance and SEO practices, though accessibility features are basic. From a security perspective, the site uses HTTPS with good SSL configuration but lacks explicit security headers and a dedicated security policy or incident response information. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is strong with comprehensive privacy and cookie policies, though no active cookie consent mechanism is present. WHOIS data confirms the domain's legitimacy with a long registration history and consistent business information. Overall, co-pay.com presents a professional, trustworthy, and user-friendly platform with a solid business foundation and good technical implementation. Strategic improvements in security headers, incident response transparency, and cookie consent would enhance its security posture and compliance.

-
68
17
40
77
75
100
healthcareprescriptionsavingsco-paycouponsdiscountprogramspatientaffordability+1 more
ReactNext.jsAWS DNSGoogle Tag Manager+2

Partner Domains:

doceree.com
parent
2025-10-08T09:42:02.202Z
mailchimp.com favicon

Mailchimp

mailchimp.com

0
TechnologyUnited StatesenterpriseLOW

Mailchimp is a leading marketing, automation, and email platform that leverages AI and real-time behavioral data to help businesses convert customers effectively. As a subsidiary of Intuit Inc., it holds a strong market position with a comprehensive suite of services including email marketing, website building, social media marketing, and audience management. The platform targets small to enterprise-level businesses, startups, agencies, and developers, offering a SaaS subscription model with free trials to attract users. Technically, Mailchimp employs a modern and robust technology stack including JavaScript frameworks, Google Tag Manager, Segment, Optimizely, and FullStory for analytics and user experience optimization. The site is hosted on Akamai's infrastructure, ensuring fast performance and excellent mobile optimization. SEO and accessibility practices are well implemented, contributing to a professional and user-friendly website. From a security perspective, Mailchimp enforces HTTPS, uses domain status locks to prevent unauthorized changes, and integrates CAPTCHA and consent management tools to protect user data and comply with privacy regulations. However, explicit security policies and incident response information are not publicly detailed, and DNSSEC is not enabled, which could be improved. No vulnerabilities or suspicious activities were detected. Overall, Mailchimp presents a secure, compliant, and highly credible online presence with strong business credibility and technical maturity. The domain WHOIS data aligns with the company's history and legitimacy, reinforcing trust. Strategic recommendations include enabling DNSSEC, publishing detailed security policies, and adding a vulnerability disclosure mechanism to further enhance security posture.

45
85
47
87
79
90
100
emailmarketingmarketingautomatione-commerceaimarketingleadgeneration+2 more
JavaScriptReact (likely)Google Tag ManagerGoogle Analytics+8

Partner Domains:

intuit.com
parent
turbotax.intuit.com
sister

+2 more partners

2025-10-08T09:41:26.893Z
doceree.com favicon

Doceree Media India Pvt. Ltd.

doceree.com

0
HealthcareUnited StatesmediumMEDIUM

Doceree Media India Pvt. Ltd. operates a sophisticated AI-powered operating system for healthcare marketing, targeting healthcare professionals globally. The company leverages proprietary AI technology to deliver hyper-personalized, privacy-compliant messaging across multiple channels, including programmatic advertising, point-of-care platforms, and AI virtual representatives. Positioned as a leader in healthcare marketing technology, Doceree serves pharmaceutical manufacturers, media agencies, and healthcare marketers with a comprehensive suite of products and services. The company maintains offices in the USA, UK, and India, reflecting a global operational footprint. Technically, the website is built on WordPress with modern frameworks such as Bootstrap 5 and integrates multiple analytics and marketing tools including Google Analytics, Hotjar, Microsoft Clarity, and HubSpot forms. The site demonstrates good mobile optimization, accessibility, and SEO practices. Hosting is supported by Amazon AWS infrastructure, ensuring reliable performance. From a security perspective, Doceree employs HTTPS, reCAPTCHA Enterprise, and displays multiple industry certifications such as HIPAA and SOC 2 Type 2, indicating a strong commitment to data protection and compliance. However, DNSSEC is not enabled, and no explicit security.txt or incident response contacts are published, representing areas for improvement. Overall, Doceree presents a professional, trustworthy, and technically mature online presence with a strong focus on privacy and compliance. Strategic recommendations include enabling DNSSEC, publishing vulnerability disclosure policies, and enhancing security headers to further strengthen the security posture.

15
85
17
90
67
80
100
healthcareaimarketingprogrammaticadvertisingpharmaceutical+3 more
Bootstrap 5Slick CarouselFont AwesomeGoogle Fonts (Work Sans)+8

Partner Domains:

co-pay.com
partner
docereespark.com
partner

+1 more partners

2025-10-08T08:36:57.900Z
G

Google

googledomains.com

0
TechnologyUnited StatesenterpriseMEDIUM

Google Domains was a domain registration service operated by Google LLC, providing domain registration and management services. The website prominently informs visitors about the definitive agreement and completed migration of Google Domains registrations and customer accounts to Squarespace as of September 2023, effectively transitioning the service. The business model focused on domain registration and management targeting website owners and domain registrants. The site maintains strong Google branding and directs users to Squarespace and Google Cloud support for further assistance. Technically, the website employs modern web technologies including Google Fonts, Google Tag Manager, and Google Analytics, hosted on Google's infrastructure. The site is fast, mobile-optimized, and accessible with good SEO practices. No CMS or third-party frameworks were explicitly detected. The site lacks visible forms or direct contact information, reflecting its informational and transitional nature. From a security perspective, the site enforces HTTPS with excellent SSL configuration and no visible vulnerabilities or exposed sensitive data. However, explicit security headers are not detected, and no dedicated security or incident response policies are published on the site. Privacy compliance is good with a clear link to Google's comprehensive privacy policy and terms of service, though no cookie consent mechanism is visible on this page. Overall, the website is trustworthy, professional, and safe, with a high legitimacy score based on consistent WHOIS data matching Google LLC. The main risk is the lack of explicit security policy disclosures and cookie consent mechanisms, which could be improved. The site effectively communicates the business transition to Squarespace, maintaining user trust during migration.

45
53
2
60
52
70
100
domainregistrationgooglesquarespacedomainmigrationtechnology
Google FontsGoogle Tag ManagerGoogle Analytics

Partner Domains:

domains.squarespace.com
partner
cloud.google.com
partner
2025-10-08T08:35:42.075Z
ftc.gov favicon

Federal Trade Commission

ftc.gov

0
GovernmentUnited StatesenterpriseLOW

The Federal Trade Commission (FTC) is a U.S. government agency dedicated to protecting consumers and promoting competition. The website serves as the official digital presence, offering resources such as fraud reporting, consumer alerts, and legal information. It targets American consumers, businesses, and legal professionals, positioning itself as the primary federal authority in consumer protection and antitrust enforcement. The site reflects a mature, enterprise-level government entity with a long history dating back over 100 years. Technically, the website is built on Drupal 10, leveraging modern web technologies including jQuery UI and Google Tag Manager. It demonstrates good mobile optimization, accessibility, and SEO practices. The infrastructure appears robust and professionally maintained, with no signs of technical debt or performance bottlenecks. From a security perspective, the site enforces HTTPS, implements key security headers, and avoids exposing sensitive data. It uses trusted analytics and marketing tools with privacy considerations. The presence of security policies, incident response contacts, and vulnerability disclosure programs indicates a mature security posture aligned with government standards. Overall, the FTC website is a highly credible, secure, and well-maintained government resource. It effectively balances transparency, user experience, and compliance, making it a trustworthy platform for consumer protection information and services.

55
58
47
85
90
80
100
governmentconsumerprotectionlegalfraudreportingprivacy+1 more
Drupal 10jQuery UIGoogle Tag ManagerAddToAny+1

Partner Domains:

reportfraud.ftc.gov
service
public.govdelivery.com
partner
2025-10-08T08:35:32.055Z
fordfoundation.org favicon

Ford Foundation

fordfoundation.org

0
Non-profitUnited StateslargeLOW

The Ford Foundation is a globally recognized philanthropic organization dedicated to advancing social justice, equity, and opportunity for all. Established in 1936, it operates as a large non-profit entity providing grants and mission investments to support various social causes including challenging inequality, climate justice, and human rights. The website reflects the foundation's mission with professional design, comprehensive content, and clear navigation targeting non-profit organizations, activists, and the global community. Technically, the website is built on WordPress and leverages modern tools such as Google Tag Manager and OneTrust for analytics and cookie consent management. It demonstrates good digital maturity with mobile optimization, accessibility features, and SEO best practices. The site is served over HTTPS with strong security headers, indicating a solid security posture. Security-wise, while no explicit vulnerabilities or exposed sensitive data were detected, the site lacks a dedicated security policy or incident response contact information, which are recommended for transparency and readiness. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR adherence. Overall, the Ford Foundation website is a trustworthy, professional, and secure platform that effectively supports its mission. Strategic recommendations include publishing a security policy, incident response details, and a vulnerability disclosure program to further enhance trust and security posture.

85
88
25
93
65
85
100
philanthropynon-profitsocialjusticegrantmakingfoundation+3 more
WordPressGoogle Tag ManagerOneTrust Cookie ConsentYoast SEO
2025-10-08T08:35:22.034Z
internic.net favicon

Internet Corporation for Assigned Names and Numbers

internic.net

0
TechnologyUnited StatesmediumMEDIUM

InterNIC is an authoritative informational website operated by the Internet Corporation for Assigned Names and Numbers (ICANN) under license from the U.S. Department of Commerce. It provides public information regarding internet domain name registration services, including links to registrar directories, Whois lookup, and complaint resolution resources. The site targets internet users, domain registrants, and registrars seeking official domain registration and compliance information. The business model is focused on providing trusted, official resources rather than commercial services. Technically, the website uses basic HTML and CSS without advanced frameworks or CMS detected. The site is moderately optimized for mobile devices and accessibility but lacks modern performance enhancements and SEO optimizations. No analytics or advertising technologies are present, indicating a minimalistic and privacy-conscious approach. From a security perspective, the site lacks visible security headers and explicit security policies. HTTPS status is unknown from the provided data but is assumed given the official nature of the site. No forms or data collection mechanisms are present, reducing attack surface. The WHOIS data is consistent with the official entity, enhancing trustworthiness. However, the absence of privacy and cookie policies indicates room for compliance improvement. Overall, the website is trustworthy and professional but could improve in privacy compliance, security best practices, and technical modernization to enhance user experience and regulatory adherence.

60
50
2
70
100
80
100
internicdomainregistrationwhoisicanninternetgovernance
HTML5CSS
2025-10-08T08:34:46.940Z
gtranslate.io favicon

GTranslate Inc

gtranslate.io

0
TechnologyUnited StatesmediumMEDIUM

GTranslate Inc operates a cloud-based website translation service that enables website owners to automatically translate their sites into multiple languages using advanced neural machine translation technology. The company offers a range of subscription plans tailored to different business needs, including features such as translation editing, URL translation, and language hosting. Positioned as a technology SaaS provider, GTranslate targets businesses seeking to expand their global reach and improve international traffic and sales through multilingual websites. The website is professionally designed, mobile-optimized, and provides clear navigation and comprehensive content including FAQs, pricing, and customer logos from major CMS platforms. Technically, the site leverages modern web standards, Cloudflare DNS and registrar services, and integrates third-party tools like Intercom for live chat support. Security posture is strong with HTTPS and no exposed sensitive data, though explicit security headers and a published security policy are absent. Privacy compliance is adequate with a comprehensive privacy policy but lacks a cookie consent mechanism. WHOIS data confirms the legitimacy and consistency of the domain registration with the business identity. Overall, GTranslate presents a credible and professional online presence with room for improvement in privacy and security transparency.

15
68
17
60
75
75
100
translationmultilingualwebsitesaascloud+2 more
HTML5CSS3JavaScriptjQuery+2

Partner Domains:

translatex.com
partner
2025-10-08T08:33:20.609Z
fotolia.com favicon

Adobe

fotolia.com

0
TechnologyUnited StatesenterpriseMEDIUM

Adobe Stock is a leading global provider of royalty-free stock images, videos, graphics, and creative assets, integrated within the Adobe Creative Cloud ecosystem. The website offers a comprehensive collection of digital media assets targeting creative professionals, marketers, and businesses worldwide. Adobe's strong brand presence and enterprise scale position it as a market leader in digital content licensing. Technically, the website employs modern web technologies including React, GraphQL APIs, and Adobe's proprietary infrastructure. It is optimized for performance, mobile responsiveness, and accessibility, supported by advanced monitoring tools such as New Relic. The site demonstrates a mature digital infrastructure suitable for enterprise-grade operations. From a security perspective, Adobe Stock enforces HTTPS, implements strong security headers, and integrates monitoring for vulnerabilities and performance. Privacy compliance is robust, with clear GDPR adherence, cookie consent mechanisms, and comprehensive privacy policies. No critical vulnerabilities or suspicious indicators were detected. Overall, Adobe Stock presents a low-risk profile with strong business credibility, technical maturity, and security posture. Strategic recommendations include continuous security monitoring, regular privacy audits, and maintaining transparency in data protection practices to uphold trust and compliance.

75
50
17
65
82
85
100
stockphotosroyalty-freeimagesgraphicsvectorsvideos+2 more
React (implied by SPA and JSX-like components)New Relic monitoringAdobe proprietary scriptsTypekit fonts+1

Partner Domains:

account.adobe.com
partner
blog.adobe.com
partner

+2 more partners

2025-10-08T08:32:09.722Z
smartrecruiters.com favicon

SmartRecruiters, Inc.

smartrecruiters.com

0
TechnologyUnited StatesenterpriseLOW

SmartRecruiters, Inc. operates a leading enterprise-grade AI-powered talent acquisition and recruiting software platform, serving HR professionals, recruiters, and hiring managers globally. Positioned as a Gartner Magic Quadrant Leader for 2025, the company offers a comprehensive SaaS solution that covers applicant tracking, AI talent matching, interview scheduling, offer management, onboarding, and recruitment CRM. The platform integrates modern AI capabilities to streamline hiring processes and improve efficiency across corporate and high-volume hiring scenarios. Owned by SAP, SmartRecruiters demonstrates strong market presence and brand consistency. The website infrastructure is built on WordPress with a modern tech stack including Bootstrap, jQuery, and various marketing and analytics tools such as Marketo, Google Tag Manager, Crazy Egg, and Qualified chat. The site is well-optimized for performance, mobile responsiveness, and SEO, providing an excellent user experience with clear navigation and professional design. Privacy and cookie policies are comprehensive and GDPR compliant, supported by a consent management platform. Security posture is robust with HTTPS enforced, appropriate security headers, and no visible vulnerabilities or exposed sensitive data. However, explicit incident response contacts and vulnerability disclosure mechanisms are not publicly available, representing an area for improvement. WHOIS data is unavailable, likely due to privacy protection, but this does not detract from the overall legitimacy and trustworthiness of the business. Overall, SmartRecruiters presents a mature, secure, and professional digital presence aligned with its enterprise SaaS business model. Strategic recommendations include enhancing transparency around security incident response and vulnerability disclosures to further strengthen trust and compliance.

70
85
17
85
90
90
100
recruitingtalentacquisitionaihrsoftwareenterprise+3 more
Bootstrap 4.6.2jQuery 3.6.0Slick CarouselMarketo Munchkin+7

Partner Domains:

customers.smartrecruiters.com
service
trust.smartrecruiters.com
service

+3 more partners

2025-10-08T08:30:54.197Z
magellan.ai favicon

Twenty Nine Enterprises, Inc. d/b/a Magellan AI

magellan.ai

0
MediaUnited StatesmediumMEDIUM

Magellan AI is a technology-driven SaaS platform specializing in podcast advertising analytics, media planning, and attribution. Positioned as a leading solution in the podcast advertising ecosystem, it serves brands, publishers, and agencies with comprehensive tools for competitive intelligence, ad verification, brand safety, and conversion tracking. The platform is trusted by notable clients such as Amazon, Teladoc Health, NPR, and the New York Times, underscoring its market credibility and influence. Technically, the website leverages modern web technologies including Webflow CMS, HubSpot marketing and analytics tools, Google Tag Manager, and various tracking pixels to deliver a fast, responsive, and user-friendly experience. The site is well-optimized for mobile devices and accessibility, with clear navigation and professional design. From a security perspective, the site enforces HTTPS and employs secure forms with CAPTCHA to protect user data. While explicit security headers are not visible in the HTML, the overall security posture is strong with no exposed sensitive information or vulnerabilities detected. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Overall, Magellan AI presents a low-risk profile with a professional online presence, strong business credibility, and a solid technical foundation. The lack of publicly available WHOIS data is consistent with privacy protection practices common in the SaaS industry and does not detract from the legitimacy of the business.

60
68
17
85
72
80
100
podcastadvertisinganalyticsmediaplanningattribution+4 more
Webflow CMSHubSpot formsGoogle Tag ManagerGoogle Analytics+7
2025-10-08T08:29:38.538Z
the-asci.org favicon

The American Society of Clinical Investigation

the-asci.org

0
HealthcareUnited StatesmediumMEDIUM

The American Society of Clinical Investigation (ASCI) is a well-established nonprofit organization dedicated to supporting physician-scientists through educational resources, career development, awards, and scientific meetings. The website serves as a comprehensive portal for members and the broader medical research community, offering access to directories, publications, and event information. The organization has a strong market position within the healthcare and medical research sectors, with a history dating back to 1908. Technically, the website is built on WordPress with modern optimization tools such as NitroPack, Bootstrap 5, and Google Tag Manager. It demonstrates good performance, mobile responsiveness, and accessibility. The use of HTTPS and absence of exposed sensitive data indicate a solid security foundation, though the lack of explicit security headers and incident response information suggests room for improvement. Security posture is generally strong, with no visible vulnerabilities or insecure elements. Privacy compliance is partially addressed with clear privacy and cookie policies, but the absence of a cookie consent mechanism and security policy reduces compliance maturity. WHOIS data is unavailable, likely due to privacy protection, which is justified for this nonprofit entity. Overall, the website is professional, trustworthy, and well-maintained, serving its target audience effectively. Strategic improvements in security headers, cookie consent, and incident response transparency would enhance its security and compliance posture.

15
68
17
75
42
75
100
healthcarenon-profitphysician-scientistmedicalresearchprofessionalsociety
WordPressNitroPack optimizationGoogle Tag ManagerjQuery+3

Partner Domains:

the-asci.org
partner
data.the-asci.org
partner
2025-10-08T07:25:41.508Z
rakuten.com favicon

Ebates Performance Marketing Inc., d/b/a Rakuten Rewards

rakuten.com

0
E-commerceUnited StatesenterpriseMEDIUM

Rakuten, operated by Ebates Performance Marketing Inc., is a well-established cashback and coupon platform founded in 1999. It offers users the ability to earn cash back and access promo codes across thousands of online stores, positioning itself as a major player in the e-commerce affiliate marketing space. The website targets online shoppers primarily in the USA and Europe, providing a seamless shopping rewards experience. Technically, the site is built on modern frameworks such as Next.js and React, with a strong focus on performance, mobile optimization, and accessibility. The use of advanced analytics and marketing tools like Google Tag Manager, Facebook SDK, Amplitude, and Branch.io indicates a mature digital infrastructure. Security-wise, the site enforces HTTPS and implements key security headers, reflecting good security hygiene. However, the absence of visible cookie consent mechanisms and explicit security policies suggests areas for improvement in privacy compliance and transparency. The WHOIS data is not publicly available, likely due to privacy protection, but the site's branding and content quality support its legitimacy. Overall, Rakuten presents a professional, secure, and user-friendly platform with minor gaps in privacy and security disclosures.

60
80
2
82
82
85
100
cashbackcouponspromocodesonlinerebatesdiscounts+3 more
ReactNext.jsChakra UIGoogle Tag Manager+4

Partner Domains:

rd.rakuten.co.jp
partner
2025-10-08T07:25:06.439Z
C

Center for Democracy and Technology

cdt.org

0
Non-profitUnited StatesmediumMEDIUM

The Center for Democracy and Technology (CDT) is a well-established 501(c)(3) non-profit organization founded in 1994, focused on promoting democratic values through technology policy and internet architecture advocacy. The organization operates both in the United States and Europe, with specialized branches such as CDT Europe and the CDT AI Governance Lab. CDT provides research, policy advocacy, and public education services targeting policymakers, technology professionals, and civil rights advocates. Their market position is strong within the technology policy non-profit sector, supported by a consistent brand and multiple trust indicators including high charity ratings. Technically, the website is built on WordPress with modern technologies including jQuery, Google Tag Manager, and Simple Analytics for tracking. Hosting and DNS services are provided via Cloudflare, ensuring good performance and security. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses domain transfer protection, and avoids exposing sensitive data. However, DNSSEC is not enabled, and there is no explicit security or incident response policy publicly available. Privacy compliance is good with a comprehensive privacy policy, but the absence of a cookie consent mechanism is a minor gap. No vulnerabilities or suspicious activities were detected. Overall, CDT presents a low-risk profile with a high level of professionalism and trustworthiness. Strategic recommendations include enabling DNSSEC, implementing a cookie consent mechanism, publishing security policies, and adding a vulnerability disclosure framework to further enhance security posture and compliance.

45
53
47
85
52
80
100
technologypolicyprivacysecuritycivilrightsnon-profit+2 more
WordPress 6.7.4jQueryCloudflare DNSGoogle Tag Manager+1

Partner Domains:

nclud.com
partner
2025-10-08T07:23:01.143Z
zoom.us favicon

Zoom Communications, Inc.

zoom.us

0
TechnologyUnited StatesenterpriseMEDIUM

Zoom Communications, Inc. is a leading enterprise technology company specializing in unified communications and collaboration tools. Their website, www.zoom.com, showcases a comprehensive suite of services including video meetings, team chat, VoIP phone, webinars, whiteboard, contact center, and event management platforms. The company targets businesses and professionals seeking modern, AI-first collaboration solutions. The site is professionally designed with clear navigation and extensive product information, reflecting Zoom's strong market position as a global leader in video conferencing and unified communications. Technically, the website employs modern web technologies such as Google Tag Manager and Optimizely for analytics and A/B testing, uses structured data (JSON-LD) for enhanced SEO and rich snippets, and is hosted on Zoom's own infrastructure with fast performance and excellent mobile optimization. The site is accessible and well-optimized for SEO and accessibility standards. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML content. However, explicit security headers and a published security.txt file are not detected, and incident response contact information is not publicly available. Privacy and cookie policies are comprehensive and indicate GDPR compliance, with consent mechanisms in place. Overall, the security posture is strong but could be improved with additional transparency and security best practices. The domain WHOIS data is unavailable, which is unusual but may be due to registry restrictions or privacy protections. Despite this, the website's professional presentation, verified social media presence, and alignment with a known enterprise company support its legitimacy. Strategic recommendations include enhancing security header implementation, publishing vulnerability disclosure information, and improving incident response transparency to further strengthen trust and compliance.

25
68
25
70
95
85
-
zoomunifiedcommunicationscollaborationtoolsvideoconferencingucaas+2 more
JavaScriptGoogle Tag ManagerOptimizelySchema.org JSON-LD+2

Partner Domains:

zoom.us
partner
developers.zoom.us
partner
2025-10-08T07:22:25.961Z
mgln.ai favicon

Twenty Nine Enterprises, Inc. d/b/a Magellan AI

mgln.ai

0
MediaUnited StatesmediumMEDIUM

Magellan AI operates as a specialized SaaS platform focused on podcast advertising analytics, media planning, and attribution. The company positions itself as a comprehensive solution for brands, publishers, and agencies to optimize audio advertising campaigns across podcasts and YouTube. The platform offers a suite of services including competitive intelligence, ad verification, pixel-based attribution, and brand safety, supported by a strong client base featuring well-known brands and media companies. Technically, the website is built on modern frameworks such as Webflow and HubSpot, leveraging Google Analytics and Facebook Pixel for marketing and analytics purposes. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. Security-wise, the site enforces HTTPS and implements cookie consent mechanisms, though explicit security headers and policies could be more visible. The absence of WHOIS data due to privacy protection is typical for commercial entities and does not detract from the site's legitimacy. Overall, Magellan AI presents a professional, trustworthy, and technically sound online presence with room for enhanced transparency in security and incident response policies.

60
68
17
85
72
80
100
podcastadvertisinganalyticsmediaplanningattribution+3 more
Webflow CMSHubSpot formsGoogle Tag ManagerGoogle Analytics+4
2025-10-08T07:21:35.763Z
newfest.org favicon

NewFest

newfest.org

0
MediaUnited StatesmediumMEDIUM

NewFest is a well-established non-profit organization dedicated to presenting LGBTQ+ film and media in New York City, with a history dating back to 1988. The website serves as a comprehensive platform for their annual film festival, year-round programming, membership, and sponsorship opportunities. It targets the LGBTQ+ community and film enthusiasts, positioning itself as the largest presenter of queer film and media in NYC. The business model focuses on event presentation, community engagement, and support through memberships and donations. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Tag Manager, and various analytics and marketing pixels. It uses Gravity Forms for data collection and Stripe for payment processing. The site is mobile-optimized, accessible, and SEO-friendly, with structured data enhancing search visibility. Hosting appears to be via GoDaddy, consistent with the domain registrar information. From a security perspective, the site enforces HTTPS and employs CAPTCHA on forms to mitigate spam. However, DNSSEC is not enabled, and there is no explicit Content Security Policy or published security incident response information. Privacy compliance is basic, with privacy and cookie policies present but lacking advanced consent mechanisms. No phone contact or dedicated security contacts are provided. Overall, the website is professional, trustworthy, and content-rich, with minor improvements recommended in security and privacy compliance to enhance user trust and regulatory adherence.

15
68
2
55
47
65
100
lgbtqfilmfestivalmedianon-profitnewyork+2 more
WordPressjQueryGoogle Tag ManagerGoogle Analytics+5

Partner Domains:

newfestfilmfestival.pixieset.com
partner
newfest-gear.myshopify.com
partner

+2 more partners

2025-10-08T06:15:14.121Z
usaspending.gov favicon

USAspending.gov

usaspending.gov

0
GovernmentUnited StateslargeMEDIUM

USAspending.gov is the official U.S. government website dedicated to providing transparent, publicly accessible data on federal government spending. It serves a broad audience including researchers, policymakers, and the general public, offering tools to search, explore, and download award data. The site is authoritative and positioned as a key transparency platform under the U.S. Department of the Treasury. Technically, the website employs modern JavaScript frameworks and integrates with popular analytics and tracking services such as Google Tag Manager and the Digital Analytics Program. It uses the USA Web Design System for consistent government branding and accessibility. The site is mobile optimized and performs moderately well, with good SEO and accessibility features. From a security perspective, the site enforces HTTPS and uses a secure .gov domain, which is a strong trust indicator. However, it lacks visible security headers in the HTML response and does not have a cookie consent mechanism, which are areas for improvement. The WHOIS data is minimal and lacks registrar and registrant details, which is typical for .gov domains but reduces transparency in domain registration information. Overall, USAspending.gov is a high-quality, trustworthy government resource with excellent content and professional presentation. Strategic improvements in security headers and privacy compliance would enhance its security posture and user trust further.

55
53
17
70
100
80
100
governmentfederalspendingtransparencydataofficial+1 more
JavaScriptYouTube iframe APIGoogle Tag ManagerVerint Voice of Customer (VOC) scripts+1

Partner Domains:

fiscaldata.treasury.gov
partner
fiscal.treasury.gov
partner

+1 more partners

2025-10-08T06:13:50.495Z
healthypeople.gov favicon

U.S. Department of Health and Human Services

healthypeople.gov

0
GovernmentUnited StatesenterpriseMEDIUM

The website odphp.health.gov/healthypeople is an official U.S. government health promotion platform under the Office of Disease Prevention and Health Promotion, part of the U.S. Department of Health and Human Services. It provides data-driven national health objectives and resources aimed at improving public health over the next decade. The site targets a broad audience including the general public, health professionals, and policymakers, offering tools, priority health areas, and evidence-based resources. The business model is a government public health initiative focused on education and data dissemination. Technically, the site is built on Drupal 10 CMS and leverages modern web technologies such as Google Tag Manager and OverlayScrollbars. It demonstrates good mobile optimization, accessibility, and SEO practices. Performance is moderate, with room for improvement in explicit security headers and cookie consent mechanisms. Analytics usage is moderate, primarily through Google Analytics via GTM, with privacy policies linked to authoritative HHS pages. From a security perspective, the site enforces HTTPS and links to a vulnerability disclosure policy, indicating a mature security posture. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit security headers and incident response contact details suggests areas for enhancement. WHOIS data is minimal and incomplete, typical for .gov domains, but the domain's legitimacy is strongly supported by the official content and branding. Overall, the website is professional, trustworthy, and well-maintained, with minor recommendations to improve privacy compliance and security headers to further strengthen its posture.

80
53
35
-
77
-
100
healthgovernmentpublichealthhealthpromotionhealthypeople2030
Drupal 10Google Tag ManagerOverlayScrollbarsWeb Vitals
2025-10-08T06:13:30.436Z
health.gov favicon

Office of the Assistant Secretary for Health

health.gov

0
GovernmentUnited StatesenterpriseMEDIUM

The Office of the Assistant Secretary for Health (OASH) operates as a key component of the U.S. Department of Health and Human Services, providing leadership on health policy, programs, and initiatives aimed at improving the health and well-being of Americans. The website serves as an authoritative source for health information, advisory committees, grants, and career opportunities, targeting a broad audience including the general public, health professionals, and government stakeholders. The site maintains a strong market position as an official government resource with comprehensive content and clear navigation. Technically, the website is built on Drupal 10 and leverages the U.S. Web Design System (USWDS) to ensure accessibility, mobile responsiveness, and consistent branding. Integration with Google Tag Manager and Digital Analytics Program indicates moderate user tracking and analytics capabilities. Performance is moderate with good SEO and accessibility features, though there is room for improvement in security headers and DNS security. From a security perspective, the site enforces HTTPS with a valid SSL certificate and has domain transfer protections in place. However, DNSSEC is not enabled, and security headers are not explicitly detected, representing areas for enhancement. The presence of a vulnerability disclosure policy is a positive indicator, though incident response contact details are not found. Privacy compliance is partial, with a comprehensive privacy policy but no detected cookie consent mechanism. Overall, the website demonstrates a high level of professionalism, trustworthiness, and content quality consistent with a U.S. government health agency. Strategic improvements in DNS security, security headers, and privacy consent mechanisms would further strengthen its security posture and compliance standing.

65
53
35
70
72
90
100
governmenthealthpublichealthnutritionpolicy+3 more
Drupal 10Google Tag ManagerFont Awesome 6US Web Design System (USWDS)+1

Partner Domains:

www.hhs.gov
partner
odphp.health.gov
partner

+3 more partners

2025-10-08T06:13:25.383Z