Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 97 of 206|Showing 4801-4850 of 10254
thejoinery.com favicon

The Joinery

thejoinery.com

0
RetailUnited StatesmediumMEDIUM

The Joinery is a well-established handcrafted solid wood furniture manufacturer and retailer based in Portland, Oregon. With a domain age dating back to 1997 and a strong emphasis on sustainability and craftsmanship, the company operates a professional e-commerce website powered by Shopify. The site offers a comprehensive product catalog, online ordering, and showroom information, targeting consumers seeking high-quality, sustainable furniture. The presence of a Certified B Corporation badge and multiple press features further solidify its market position. Technically, the website leverages modern web technologies including Shopify's Dawn theme, JavaScript ES modules, and integrates multiple marketing and analytics tools such as Google Analytics, Facebook Pixel, and Mailchimp. The site is well-optimized for performance, mobile responsiveness, and accessibility, with a clear navigation structure and comprehensive metadata for SEO. From a security perspective, the site enforces HTTPS, uses domain transfer locks, and implements cookie consent mechanisms compliant with GDPR. No critical vulnerabilities or exposed sensitive data were detected. However, DNSSEC is not enabled, and there is no explicit security policy or incident response contact information published, which could be improved. Overall, The Joinery's website demonstrates a mature digital presence with strong business credibility and good security hygiene. Strategic recommendations include enabling DNSSEC, publishing a security policy, and adding vulnerability disclosure information to enhance trust and compliance further.

75
85
2
85
57
80
100
furniturehandcraftedsustainableecommerceshopify+2 more
ShopifyJavaScript ES modulesCloudflare DNSAvada Cookie Consent+5

Partner Domains:

the-joinery-pdx.myshopify.com
service
issuu.com
partner
2025-07-28T11:46:20.299Z
gensler.com favicon

Gensler

gensler.com

0
Real EstateUnited StatesenterpriseLOW

Gensler is a globally recognized architecture, design, and planning firm with a significant international footprint, operating 57 offices and employing over 6,000 professionals. The company offers a broad range of services including architecture, urban design, brand design, sustainability consulting, and interior design, targeting corporate clients, real estate developers, and urban planners. The website reflects a mature digital presence with professional design, comprehensive content, and clear navigation, supporting its market leadership position. Technically, the website employs modern web technologies such as JavaScript frameworks, Matomo analytics, and Sentry for error tracking. It is well-optimized for mobile devices and accessibility, with good SEO practices and performance. Security posture is strong with HTTPS enforced and multiple security headers present, although explicit security policies and incident response information are not publicly detailed. Overall, the site demonstrates a high level of professionalism and trustworthiness, with privacy and cookie policies implemented in compliance with GDPR. The absence of WHOIS data suggests domain privacy protection, which is common for large enterprises. No critical vulnerabilities or suspicious content were detected, indicating a low risk profile. Strategic recommendations include publishing detailed security and incident response policies, adding a vulnerability disclosure program, and enhancing transparency around data protection officer contacts and certifications to further strengthen trust and compliance.

90
68
25
87
82
85
100
architecturedesignplanningsustainabilityurbandesign+2 more
JavaScriptMatomo AnalyticsSentryGoogle Fonts+1
2025-07-28T11:46:15.285Z
aquent.com favicon

Aquent

aquent.com

0
TechnologyUnited StatesenterpriseMEDIUM

Aquent is a global work solutions company specializing in connecting businesses with talent, technology, and services primarily in marketing, creative, and design sectors. Established in 1998, it holds a strong market position as a leader in talent recruitment and workforce solutions, offering a diverse portfolio including Aquent Talent, Studios, RoboHead, Sustainability, Scout, and Employer of Record services. The website reflects a mature, enterprise-level organization with a professional digital presence and a broad client base including major global corporations. Technically, the website is built on WordPress with modern JavaScript frameworks like React, leveraging Google Tag Manager for analytics and tracking. The site is well-optimized for SEO, mobile responsiveness, and accessibility, with fast performance and consistent branding. Hosting appears to be on AWS infrastructure, supported by multiple DNS servers. From a security perspective, the site enforces HTTPS and uses domain transfer protection. However, DNSSEC is not enabled, and explicit security headers are not visible in the HTML content. Privacy and cookie policies are comprehensive and include consent mechanisms, indicating good compliance posture. No incident response or vulnerability disclosure information is publicly available, which could be improved. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enabling DNSSEC, adding security headers, publishing vulnerability disclosure policies, and providing incident response contacts to enhance trust and security posture.

55
53
17
82
77
85
100
talentrecruitingmarketingcreativetechnology+2 more
ReactLodashWordPressGoogle Tag Manager+3

Partner Domains:

aquenttalent.com
partner
aquentstudios.com
partner

+2 more partners

2025-07-28T11:46:10.263Z
locationshub.com favicon

LocationsHub

locationshub.com

0
MediaUnited StatessmallMEDIUM

LocationsHub operates as a specialized marketplace connecting filmmakers, studios, production companies, and property owners to facilitate film location rentals. The platform boasts a large inventory of over 100,000 locations and 1.5 million photos, positioning itself as a niche leader in the entertainment media sector. The website is professionally designed with consistent branding and clear navigation, targeting industry professionals seeking film locations globally, with a US base in Charlotte, NC. Technically, the website is built on the Squarespace platform, leveraging modern web technologies including jQuery and Typekit fonts. It is hosted by Squarespace, with HTTPS and HSTS enabled, ensuring a secure browsing experience. The site demonstrates moderate performance and good mobile optimization, though accessibility features could be enhanced. From a security perspective, the site benefits from strong SSL configuration and security headers but lacks explicit privacy, cookie, and terms of service policies, which are critical for compliance and user trust. No incident response or vulnerability disclosure information is present, indicating areas for improvement in security transparency and readiness. Overall, the website presents a credible and professional business front with a solid technical foundation but requires enhancements in privacy compliance and domain registration transparency to strengthen trust and security posture.

60
53
2
70
65
55
100
filmlocationsmarketplaceentertainmentmedia
SquarespacejQueryTypekit fonts
2025-07-28T10:43:19.585Z
S

Simpleview

simpleviewsummit.com

0
HospitalityUnited StatesmediumMEDIUM

Simpleview Summit is a professionally presented annual conference focused on online tourism marketing and sales for Destination Marketing Organizations (DMOs). The website demonstrates a solid market position as an industry-leading event organizer, targeting tourism marketing professionals globally. The content is well-structured, with clear branding and consistent messaging emphasizing networking, education, and collaboration in the hospitality sector. Technically, the site employs a modern technology stack including jQuery, RequireJS, Foundation framework, and integrates multiple analytics and marketing tools such as Google Analytics, Facebook Pixel, and LinkedIn Insight Tag. The site is mobile optimized and performs moderately well, with good SEO and accessibility basics. Security posture is generally strong with HTTPS enforced and GDPR compliance evident via cookie consent mechanisms and a comprehensive privacy policy. However, the absence of WHOIS registration data for the domain raises concerns about domain legitimacy and trustworthiness, which should be investigated further. No explicit security policies or incident response information are published, and contact information is not readily available on the homepage, which could impact user trust. Overall, the website is professional and trustworthy but would benefit from enhanced transparency and security disclosures.

45
65
2
55
75
80
100
tourismconferencedmomarketingsales+3 more
jQuery 2.2.4RequireJSFontAwesomeSlick Carousel+9
2025-07-28T10:40:36.872Z
liveandworkinmaine.com favicon

Live + Work in Maine

liveandworkinmaine.com

0
Non-profitUnited StatessmallMEDIUM

Live + Work in Maine is a non-profit organization dedicated to providing comprehensive resources, job postings, community events, and relocation guides for individuals interested in living, working, or staying in Maine. The website serves as a central hub for job seekers, employers, entrepreneurs, and community members, offering a variety of services including a job board, employer resources, and educational opportunities. Their market position is that of a trusted regional resource with strong community ties and partnerships. Technically, the website is built on the Webflow platform, leveraging modern web technologies such as Google Tag Manager, Facebook Pixel, Hotjar, and Weglot for multilingual support. The site demonstrates good performance, mobile optimization, and SEO practices, although accessibility features could be improved. The use of third-party analytics and tracking is evident, but no cookie consent mechanism was detected. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks important security headers and does not publish a security policy or incident response information. The absence of WHOIS data for the domain raises some concerns about transparency, although the website content and external partnerships suggest legitimacy. Overall, the website presents a professional and trustworthy front for its non-profit mission but would benefit from enhanced security practices, improved privacy compliance, and greater transparency in domain registration details.

30
53
2
70
62
80
100
non-profitrelocationemploymentcommunitymaine+2 more
Webflow CMSGoogle FontsGoogle Tag ManagerFacebook Pixel+3

Partner Domains:

live-work-in-maine.myshopify.com
partner
careers.liveandworkinmaine.com
partner

+1 more partners

2025-07-28T10:36:45.749Z
nlc100.org favicon

National League of Cities

nlc100.org

0
GovernmentUnited StateslargeMEDIUM

The National League of Cities (NLC) operates the website nlc100.org as a dedicated centennial campaign platform celebrating 100 years of service to local governments in the United States. The organization provides research, advocacy, and technical expertise to mayors, city council members, and municipal staff. The site highlights historical milestones, leadership, and upcoming events tied to the centennial celebration. The business model is that of a large non-profit advocacy organization with a strong national presence and trusted reputation. Technically, the website is built on WordPress using the Themify Ultra theme and leverages plugins such as Jetpack and Qi Blocks. It is hosted on WordPress.com infrastructure, indicated by the WordPress nameservers. The site is moderately performant, mobile optimized, and includes SEO best practices. However, accessibility features are basic and could be improved. From a security perspective, the site uses HTTPS with a valid SSL certificate and has domain transfer protections in place. DNSSEC is not enabled, which is a minor security gap. No advanced security headers were detected, and no explicit security or incident response policies are publicly available. Privacy compliance is partial, with a privacy policy linked on the parent domain but no cookie consent mechanism on this site. Overall, the website is professional, trustworthy, and well-aligned with the organization's mission. It poses low risk but could benefit from enhanced security controls and privacy compliance measures.

30
53
22
55
52
75
100
governmentnon-profitlocalgovernmentcentennialadvocacy+1 more
WordPressjQueryThemify Ultra themeJetpack plugin+1

Partner Domains:

nlc.org
partner
2025-07-28T09:33:07.675Z
N

NLC Mutual Insurance Company

nlcmutual.com

0
GovernmentUnited StatesmediumMEDIUM

NLC Mutual Insurance Company is a member-owned captive reinsurance organization founded in 1986, serving state municipal league risk pools across 31 states in the United States. The company provides specialized reinsurance solutions tailored for public entities, including liability, property, and workers’ compensation coverages, supported by actuarial expertise and data-driven insights. The organization operates on a collaborative governance model with board representation from all members, emphasizing stability and member empowerment. Technically, the website is built on WordPress with modern web technologies including jQuery, New Relic monitoring, and Google Analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices, though some improvements in explicit privacy and cookie policy disclosures are recommended. The site is served over HTTPS with no detected blocking or WAF interference, indicating a secure and accessible digital presence. From a security perspective, the site employs HTTPS and monitoring tools but lacks explicit security headers and published incident response or vulnerability disclosure policies. No sensitive data exposure or vulnerabilities were detected in the content. The absence of WHOIS data for the domain is a concern, slightly reducing trustworthiness, but the professional presentation and external partner links support legitimacy. Overall, NLC Mutual presents a credible and professional online presence aligned with its business mission. Strategic recommendations include enhancing privacy compliance disclosures, publishing security policies, and verifying domain registration details to strengthen trust and compliance posture.

25
35
17
85
85
85
100
reinsuranceinsurancegovernmentriskpoolsmemberpowered+2 more
WordPressjQueryNew Relic Browser monitoringGoogle Analytics+1

Partner Domains:

www.nlc.org
partner
risc.nlc.org
partner

+1 more partners

2025-07-28T09:33:02.665Z
free.law favicon

Free Law Project

free.law

0
Non-profitUnited StatesmediumMEDIUM

Free Law Project is a leading nonprofit organization dedicated to making the legal ecosystem more equitable and competitive through technology, data, and advocacy. They provide a suite of open-source tools and datasets including CourtListener, RECAP, and Bots.law, serving journalists, researchers, legal professionals, and the public. Their market position is strong as a pioneer in legal data transparency and open access, supported by donations and organizational sponsorships. Technically, the website is built on modern frameworks such as Next.js and React, hosted on Netlify, and optimized for performance and mobile responsiveness. The site demonstrates good SEO and accessibility practices, with a clean, professional design and clear navigation. Analytics are implemented via plausible.io, indicating a privacy-conscious approach to user tracking. From a security perspective, the site enforces HTTPS and employs domain status protections but lacks DNSSEC and security headers like CSP or HSTS. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a basic privacy policy present but no cookie consent mechanism or detailed GDPR compliance statements. Contact information is limited to a contact form, with no direct emails or phone numbers publicly listed. Overall, the website presents a low-risk profile with a high degree of professionalism and trustworthiness. Strategic recommendations include enhancing security headers, implementing DNSSEC, adding cookie consent, and publishing a security.txt file to improve incident response transparency.

75
35
43
70
52
85
100
legalnonprofitopendatalegaltechnologypacer+5 more
ReactNext.jsTailwind CSSAWS DNS (Amazon Route 53)+1
2025-07-28T09:32:47.577Z
fico.com favicon

FICO

fico.com

0
FinanceUnited StatesenterpriseMEDIUM

FICO is a leading analytics company specializing in providing advanced analytics software, solutions, and services that empower businesses to make better decisions, driving growth, profitability, and customer satisfaction. The company is well-established with a founding date in 1956 and operates primarily in the finance and technology sectors, serving lenders, investors, consumers, and enterprises globally. Their product portfolio includes credit scoring models, fraud detection systems, customer communication services, and business outcome simulators, positioning them as a market leader in analytics and decision management. Technically, the FICO website is built on Drupal CMS and leverages modern web technologies such as Google Tag Manager, Osano for consent management, and Maze Analytics for user behavior insights. The site is well-optimized for performance, mobile responsiveness, and accessibility, with comprehensive SEO and metadata implementations. The presence of structured data (JSON-LD) enhances search engine understanding and brand visibility. From a security perspective, the website enforces HTTPS and employs cookie consent mechanisms, indicating a mature privacy compliance posture. While explicit security headers were not fully confirmed in the HTML, the overall security posture is strong with no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data is noted but likely due to registry or privacy policies rather than malicious intent. Overall, FICO's digital presence reflects a professional, trustworthy, and well-managed enterprise with strong compliance and security awareness. Strategic recommendations include enhancing transparency around security policies and incident response, confirming security headers, and establishing a public vulnerability disclosure program to further strengthen trust and security culture.

70
53
25
50
82
85
100
analyticsfinancecreditscoringfrauddetectionbusinessintelligence+5 more
Google Tag ManagerYouTube Widget APILazysizes (lazy loading images)Osano Consent Management+1
2025-07-28T09:32:17.492Z
916ink.org favicon

916 Ink

916ink.org

0
Non-profitUnited StatessmallMEDIUM

916 Ink is a small non-profit organization dedicated to empowering children and youth through creative writing workshops and literacy tutoring in the Sacramento region. The organization offers a variety of programs including after-school workshops, summer camps, and one-on-one tutoring, targeting disadvantaged youth to improve literacy and creative skills. Their market position is that of a community-focused educational non-profit with strong local engagement and social media presence. Technically, the website is built on the Squarespace platform, leveraging modern web technologies such as Google Analytics, Google Tag Manager, and reCAPTCHA for security and analytics. The site is mobile-optimized with good design quality and clear navigation, although some accessibility features could be improved. Performance is moderate, typical for a CMS-based site. From a security perspective, the site enforces HTTPS and uses reCAPTCHA on forms, but lacks advanced security headers like HSTS and Content Security Policy, which are recommended to enhance protection. Privacy compliance is minimal, with no explicit privacy or cookie policies found, which could be improved to meet GDPR and other regulations. Overall, the website is trustworthy and professional, with clear contact information and consistent branding. The lack of WHOIS data is likely due to privacy protection, which is justified for a non-profit. Strategic recommendations include enhancing security headers, adding privacy and cookie policies, and improving accessibility to strengthen compliance and user trust.

35
53
2
70
62
75
100
Squarespace CMSGoogle AnalyticsGoogle Tag ManagerreCAPTCHA+2
2025-07-28T09:32:02.360Z
shoutmousepress.org favicon

Shout Mouse Press

shoutmousepress.org

0
Non-profitUnited StatessmallMEDIUM

Shout Mouse Press is a nonprofit organization dedicated to empowering marginalized youth aged 12 and above through writing workshops, book publication, and public speaking opportunities. The organization focuses on amplifying underrepresented voices in literature and operates primarily within the United States. Their business model centers on nonprofit activities with a strong community and educational focus, supported by book sales and donations. Technically, the website is built on the Squarespace platform, leveraging modern web technologies including Google Analytics and Facebook SDK for tracking and engagement. The site is mobile optimized with good SEO practices and a professional design, though some accessibility features are basic. Performance is moderate, typical for a Squarespace-hosted site. From a security perspective, the site uses HTTPS but lacks some advanced security headers such as HSTS and CSP, which could improve protection against certain web attacks. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is addressed with a clear privacy policy and cookie consent banner, indicating GDPR awareness. Overall, the website presents a trustworthy and professional front for a nonprofit organization with a clear mission and active social media presence. The lack of WHOIS data is due to privacy protection, which is justified for this type of entity. Recommendations include enhancing security headers and continuing to maintain privacy compliance and transparency.

35
50
2
70
62
80
100
nonprofityouthempowermentpublishingdiversityliterature+1 more
Squarespace CMSGoogle AnalyticsFacebook SDKTypekit Fonts+1

Partner Domains:

shout-mouse-press.networkforgood.com
partner
kickstarter.com
partner
2025-07-28T09:31:01.456Z
vital.io favicon

Vital Software Inc.

vital.io

0
HealthcareUnited StatesmediumMEDIUM

Vital Software Inc. operates a sophisticated patient experience technology platform that leverages AI and live EHR data integration to enhance healthcare delivery across emergency, inpatient, and urgent care settings. The company is well-positioned in the healthcare technology market, trusted by over 100 hospitals, and recognized for significantly improving patient satisfaction and operational outcomes. Their platform offers seamless integration with major EHR systems and emphasizes enterprise-grade security and compliance, including HITRUST and SOC2 certifications. Technically, the website is built on modern frameworks such as Next.js and React, hosted on AWS infrastructure, and employs advanced analytics and marketing tools like Google Tag Manager and LinkedIn Insight. The site demonstrates excellent performance, mobile optimization, and accessibility, reflecting a mature digital presence. Security practices are robust, with HTTPS enforcement and strong security headers, although DNSSEC is not enabled. The security posture is strong, with no evident vulnerabilities or exposed sensitive data. However, the absence of a cookie consent mechanism and explicit incident response contacts are areas for improvement. Privacy compliance is supported by a comprehensive privacy policy and GDPR adherence, but cookie consent implementation would enhance compliance further. Overall, Vital presents a credible, professional, and secure online presence aligned with its healthcare technology business. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing a vulnerability disclosure policy, and providing clear incident response contacts to further strengthen trust and compliance.

40
53
17
65
72
80
100
healthcarepatientexperienceaiehrintegrationhealthcaretechnology+4 more
ReactNext.jsAWS DNSGoogle Tag Manager+2
2025-07-28T09:30:20.859Z
F

Fanatics

fanatics.com

0
RetailUnited StatesenterpriseMEDIUM

Fanatics.com is a leading enterprise-level e-commerce platform specializing in officially licensed sports apparel, fan gear, and collectibles. The website targets sports fans across major leagues such as NFL, MLB, NBA, NHL, and college sports, offering a wide range of merchandise including jerseys, hats, and collectibles. The company holds a strong market position as a trusted retailer with official licensing agreements, catering to a broad audience of sports enthusiasts and collectors. Technically, the website employs modern web technologies including JavaScript, CSS, and integrates third-party analytics and marketing tools such as Google Analytics and Verint Unified Web SDK. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices, although some accessibility features could be enhanced. Performance is moderate with efficient use of fonts and preloading strategies. From a security perspective, Fanatics.com enforces HTTPS with strong SSL configuration and implements key security headers to protect users. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a publicly available security policy and incident response contact information represents an area for improvement. Privacy compliance is robust with clear privacy and cookie policies and consent mechanisms aligned with GDPR requirements. Overall, Fanatics.com presents a professional, trustworthy, and secure online presence suitable for enterprise e-commerce. The main risk factor is the lack of publicly available WHOIS data, which reduces transparency but is likely due to privacy protection or registry limitations. Strategic recommendations include publishing a dedicated security policy, providing incident response contacts, and enhancing accessibility features to further strengthen trust and compliance.

15
73
17
80
100
85
100
sportsapparele-commercefangearcollectibles+1 more
JavaScriptCSSHTML5Verint Unified Web SDK+1

Partner Domains:

shoprunner.com
partner
2025-07-28T09:29:55.806Z
coursereport.com favicon

Course Report

coursereport.com

0
EducationUnited StatesmediumMEDIUM

Course Report operates as a comprehensive online directory and review platform specializing in coding bootcamps. Established in 2013, it serves as a trusted resource for individuals seeking to start or advance careers in technology by providing detailed bootcamp listings, alumni reviews, tuition comparisons, and career tools. The platform positions itself as a market leader in the coding education space, offering a wide range of services including scholarship information and career preparation resources. Technically, the website leverages modern web technologies such as Ruby on Rails, JavaScript frameworks, and CDN services to deliver a fast, responsive, and SEO-optimized user experience. The use of New Relic and Google Tag Manager indicates a mature approach to performance monitoring and analytics. Security-wise, the site enforces HTTPS and employs standard web security practices, though it lacks explicit security headers and published privacy or cookie policies, which are areas for improvement. The absence of WHOIS data for the domain raises some concerns about domain registration transparency, but the overall professional presentation and external trust signals support the legitimacy of the business. Strategic recommendations include enhancing transparency with clear privacy and security policies, improving security headers, and verifying domain registration details to strengthen trust and compliance.

65
68
47
65
72
70
100
educationcodingbootcamptechnologycareerreviews+1 more
JavaScriptNew Relic monitoringGoogle Tag ManagerGoogle Analytics+4
2025-07-28T09:27:55.365Z