Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1029 of 2974|Showing 51401-51450 of 148691
bollandbranch.com favicon

Boll & Branch

bollandbranch.com

0
RetailUnited StatesmediumMEDIUM

Boll & Branch is a premium e-commerce retailer specializing in luxury organic bedding, sheets, towels, and home textiles. The company emphasizes ethical sourcing, sustainability, and Fair Trade certification, targeting consumers who value high-quality, toxin-free organic cotton products. Their market position is that of a trusted, upscale brand in the organic bedding sector, with a direct-to-consumer business model leveraging Shopify's platform for online sales. Technically, the website is built on Shopify with modern frameworks and technologies such as React and Oxygen, ensuring fast performance, mobile responsiveness, and good SEO practices. The site includes comprehensive privacy and cookie policies with GDPR compliance and uses marketing and analytics tools like AB Tasty and OneTrust for consent management and user experience optimization. From a security perspective, the site enforces HTTPS, employs strong security headers, and avoids exposing sensitive data. However, it lacks publicly available incident response or vulnerability disclosure information, which could be improved to enhance trust. The absence of WHOIS registration data is a concern but does not detract significantly from the overall legitimacy given the professional presentation and trust signals. Overall, Boll & Branch presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include publishing security policies and incident response contacts and addressing the WHOIS data gap to improve transparency and trust.

65
73
2
100
75
85
100
organicbeddinge-commercefairtradehometextilesluxurysheets+3 more
ShopifyReactJavaScriptCSS+1
2025-10-09T14:18:39.911Z
bloomandwild.com favicon

Bloom & Wild

bloomandwild.com

0
RetailUnited KingdomlargeMEDIUM

Bloom & Wild is a prominent UK-based e-commerce company specializing in flower delivery services, including letterbox flowers, plants, and gifts. The company targets consumers seeking convenient and reliable floral gifting solutions, positioning itself as a leading online flower delivery brand in the UK market. The website is professionally designed with excellent content quality, clear navigation, and strong branding consistency, supporting a positive user experience and high trustworthiness. Technically, the website leverages modern web technologies such as Angular, integrates advanced monitoring tools like Datadog RUM, and employs A/B testing via Optimizely. It demonstrates good mobile optimization, accessibility, and SEO practices, contributing to fast performance and broad user reach. Privacy compliance is well addressed with comprehensive privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. From a security perspective, the site enforces HTTPS, implements key security headers, and avoids exposing sensitive data. However, it lacks a dedicated security policy page, incident response contact details, and a vulnerability disclosure program, which are areas for improvement. The absence of WHOIS registration data slightly reduces trust but does not significantly impact the overall legitimacy given the professional site presentation and security posture. Overall, Bloom & Wild presents a secure, compliant, and user-friendly platform with minor gaps in transparency around security policies and domain registration. Strategic enhancements in these areas would further strengthen its risk profile and stakeholder confidence.

55
83
2
85
75
85
100
flowerdeliveryletterboxflowerse-commerceplantsgifts+2 more
Angular (implied by _ngcontent attributes)JavaScriptWebP image supportDatadog RUM+2
2025-10-09T14:18:19.814Z
treuhand-talente.ch favicon

Schweizerischer Treuhänderverband

treuhand-talente.ch

0
FinanceSwitzerlandmediumMEDIUM

The website www.treuhand-talente.ch serves as a professional job matching platform operated by the Schweizerischer Treuhänderverband, the Swiss fiduciary association. It targets fiduciary professionals, trainees, and career changers within Switzerland, offering a specialized service to connect job seekers and employers in the fiduciary sector. The platform supports multilingual content and provides detailed job listings and matching functionalities, reinforcing its niche market position. The business model includes free usage for members and paid job postings for non-members, indicating a membership-driven revenue stream. Technically, the website employs a modern technology stack including Bootstrap 5.2.2, jQuery, and Open Web Analytics for tracking. The site is mobile-optimized with good SEO practices and a custom CMS backend. Performance is moderate, with room for improvement in accessibility features. Security is robust with HTTPS enforced, CSRF tokens, and standard security headers, though the absence of a visible cookie consent mechanism and a dedicated security policy page are notable gaps. From a security perspective, the site demonstrates good practices but lacks published incident response or vulnerability disclosure information. No vulnerabilities or exposed sensitive data were detected. The WHOIS data aligns well with the website’s claims, confirming legitimacy and consistent registration details. Overall, the site is trustworthy and professionally maintained, with minor recommendations to enhance privacy compliance and security transparency. The overall risk assessment is low, with strategic recommendations focusing on improving GDPR cookie consent mechanisms, publishing security policies, and adding incident response contacts to strengthen user trust and compliance.

85
53
2
70
72
75
20
financejob-matchingfiduciaryswitzerlandcareer+1 more
Bootstrap 5.2.2jQuery 3.3.1Open Web AnalyticsGoogle Fonts (Roboto)+2
2025-10-09T14:17:44.496Z
L

Liechtensteiner Bankenverband

kontenvergleich.li

0
FinanceLiechtensteinsmallMEDIUM

Kontenvergleich.li is the official payment account comparison website operated by the Liechtensteiner Bankenverband, serving as a trusted platform for consumers in Liechtenstein to compare banking products and fees. The site provides structured access to information about payment accounts, associated services, and pricing from major Liechtenstein banks, positioning itself as a key resource for financial decision-making within the country. The business model centers on transparency and consumer empowerment in the banking sector, supported by the official banking association. Technically, the website employs a straightforward stack including jQuery, Bootstrap Grid, and Select2 for enhanced UI elements. The site is mobile-optimized with good navigation and user experience, though some SEO and accessibility features are basic. No advanced CMS or hosting details are evident, suggesting a custom or lightweight implementation. Performance is moderate with no blocking or WAF detected, indicating reliable accessibility. From a security perspective, the site uses HTTPS and secure form controls but lacks visible security headers and explicit security policies. Privacy compliance is partially addressed via a linked privacy policy on the parent domain, but cookie consent mechanisms are absent. No incident response or vulnerability disclosure information is provided. Overall, the security posture is adequate but could be improved with standard headers and transparency. The overall risk is low given the official nature and limited attack surface, but enhancements in security headers, privacy notices, and incident response readiness are recommended to strengthen trust and compliance. The site is safe for general audiences with no adult or questionable content detected.

20
53
2
70
77
75
100
bankingfinancepaymentaccountscomparisonliechtenstein
jQueryBootstrap GridSelect2

Partner Domains:

bankenverband.li
parent
2025-10-09T14:17:24.351Z
bbentrepreneurprivate.ch favicon

Bellevue Asset Management AG

bbentrepreneurprivate.ch

0
FinanceSwitzerlandmediumHIGH

Bellevue Entrepreneur Private is a specialized investment fund managed by Bellevue Asset Management AG, focusing on providing growth capital to small and medium-sized enterprises (SMEs) in the DACH region, particularly Switzerland. The fund targets established, profitable companies with strong growth potential, acting as a co-investor alongside experienced investors and entrepreneurs. The website reflects a professional and consistent brand image, with clear investor-focused content and legal disclaimers. Technically, the website is built on the Neos CMS platform using the Flow PHP framework, integrating modern web technologies such as Google Tag Manager and Vimeo embeds. The site demonstrates good mobile optimization, SEO practices, and moderate performance. Security is well implemented with HTTPS, secure login forms, and cookie consent mechanisms, although explicit security policies and incident response contacts are not published. Overall, the security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with comprehensive privacy and cookie policies. The website maintains high business credibility with consistent WHOIS data and clear contact information. Strategic recommendations include publishing a dedicated security policy, incident response details, and vulnerability disclosure information to enhance trust and compliance.

15
35
17
70
-
70
40
financeinvestmentsmeswitzerlandneoscms+2 more
PHPFlow FrameworkNeos CMSGoogle Tag Manager+4

Partner Domains:

www.bellevue.ch
partner
www.adbodmer.ch
partner
2025-10-09T14:16:39.050Z
adbodmer.ch favicon

adbodmer AG

adbodmer.ch

0
FinanceSwitzerlandsmallMEDIUM

adbodmer AG is a Swiss investment group specializing in providing private capital and strategic support to medium-sized companies with growth ambitions, primarily in the DACH region. With approximately 20 years of experience, the company positions itself as a supportive and future-oriented partner for entrepreneurial ventures. The website reflects a professional and consistent brand image, targeting medium-sized enterprises seeking growth capital and expertise. Technically, the website is built on the Neos CMS platform using the Flow PHP framework, leveraging modern web technologies including JavaScript and CSS. The site demonstrates good mobile optimization and SEO practices, with a moderate performance profile. Cookie consent mechanisms are implemented, ensuring compliance with privacy regulations. From a security perspective, the website enforces HTTPS and employs cookie consent for user privacy. However, it lacks visible security policies, incident response contacts, and advanced security headers, which could be improved to enhance trust and compliance. No vulnerabilities or suspicious elements were detected in the content or scripts. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance. Strategic improvements in security transparency and incident response readiness are recommended to further strengthen the security posture and user trust.

15
53
2
80
57
85
40
investmentfinanceentrepreneurswitzerlandmedium-sizedcompanies
PHPJavaScriptCSS
2025-10-09T14:16:28.757Z
creditmutuel-am.eu favicon

Crédit Mutuel Asset Management

creditmutuel-am.eu

0
FinanceFrancelargeMEDIUM

Crédit Mutuel Asset Management (CMAM) is a prominent asset management company operating primarily in France and Europe, offering a comprehensive range of investment funds focused on simplicity, transparency, performance, and risk management. The company emphasizes responsible and sustainable finance as part of its core business model. The website reflects a professional and consistent brand image aligned with its parent company, Crédit Mutuel. The target audience includes both professional and non-professional investors across multiple European countries. CMAM's market position is that of a significant player in the financial services sector, leveraging its parent group's reputation and resources. Technically, the website employs modern web technologies including jQuery and YouTube's widget API, with analytics powered by Piano Analytics. The site is served over HTTPS with cookie consent mechanisms that comply with GDPR requirements, offering users granular control over tracking preferences. While the site demonstrates good mobile optimization and SEO practices, accessibility compliance is partial, indicating room for improvement. No CMS or hosting provider details were explicitly identified. From a security perspective, the site benefits from HTTPS encryption and a cookie consent banner, alongside a published vulnerability disclosure policy, indicating a mature security posture. However, explicit security headers such as Content Security Policy or HSTS are not evident, and no direct incident response contacts are provided. The WHOIS data is privacy protected by EURid, which is common for European domains, and does not raise immediate concerns given the professional nature of the site and its alignment with a reputable financial institution. Overall, the security posture is solid but could be enhanced by adding more explicit security policies and headers.

75
68
2
40
77
80
100
financeassetmanagementinvestmentcookieconsentgdpr+1 more
jQueryYouTube Widget APIPiano AnalyticsCSS+1

Partner Domains:

www.creditmutuel.fr
parent
2025-10-09T14:15:48.647Z
scor.com favicon

SCOR

scor.com

0
FinanceFranceenterpriseMEDIUM

SCOR is a leading global reinsurance company headquartered in France, offering a broad portfolio of innovative Property & Casualty, Life & Health, and Investment solutions. The company targets insurance firms and investors, positioning itself as a financially solid and innovative market leader. The website reflects a mature digital presence with comprehensive corporate, investor, and compliance information, supporting transparency and trust. Technically, the site is built on Drupal 10 with modern web technologies including Matomo analytics for privacy-respecting user tracking, lazy loading images, and embedded multimedia content. The site is mobile-optimized, accessible, and SEO-friendly, providing a fast and professional user experience. From a security perspective, the website enforces HTTPS, uses security cookies, and implements a robust cookie consent mechanism aligned with GDPR. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security headers like Content-Security-Policy could be improved, and a security.txt file is absent. Overall, the domain WHOIS data is unavailable, likely due to privacy protection, but the website's professional content and compliance posture support legitimacy. The risk profile is low, with recommendations to enhance security transparency and incident response visibility.

75
68
10
65
82
80
100
reinsurancefinancecorporateinvestorscompliance+3 more
Drupal 10Matomo AnalyticsBootstrapLazySizes (lazy loading images)+1

Partner Domains:

foundation.scor.com
subsidiary
scor-ip.com
subsidiary

+1 more partners

2025-10-09T14:15:38.323Z
pgconf.dev favicon

Slonik Events Canada

pgconf.dev

0
TechnologyCanadasmallMEDIUM

PGConf.dev 2026 is a specialized technology conference focused on PostgreSQL development and community growth, organized by Slonik Events Canada. The event is scheduled for May 19–22, 2026, at Simon Fraser University in Vancouver, Canada. The website serves as an informational portal for attendees, sponsors, and contributors, emphasizing community engagement and technical advancement in the PostgreSQL ecosystem. The target audience includes PostgreSQL users, developers, and community organizers. Technically, the website is built using modern web technologies including Svelte and SvelteKit, ensuring fast performance and good mobile optimization. The site structure is clear and professional, with SVG graphics and modular JavaScript loading. However, there is no evidence of a CMS or advanced hosting details. SEO and accessibility are basic but adequate for the site’s purpose. From a security perspective, the site uses HTTPS as indicated by the URL, but no explicit security headers were detected in the provided data. There are no visible forms or data collection points, reducing attack surface, but also no published privacy or cookie policies, which is a compliance gap. The WHOIS data shows privacy protection for the domain registrant, which is common and justified for event sites. No vulnerabilities or suspicious patterns were found. Overall, the website is a credible and professional platform for the PGConf.dev 2026 event but would benefit from enhanced privacy compliance, explicit security headers, and published policies to improve trust and regulatory adherence.

15
35
2
70
95
80
100
SvelteJavaScriptSVGCSS
2025-10-09T14:14:53.217Z
I

International Association for Cryptologic Research

iacr.org

0
TechnologyN/amediumMEDIUM

The International Association for Cryptologic Research (IACR) operates as a well-established non-profit scientific organization dedicated to advancing research in cryptology and related fields. The website serves as a central hub for disseminating information about cryptology conferences, publications, news, awards, and membership services. The organization has a strong market position supported by a domain registered since 1995 and a professional online presence. The target audience primarily includes researchers, academics, and professionals in cryptology. Technically, the website employs a modern and stable technology stack including Bootstrap and jQuery, hosted via Gandi SAS. The site is mobile-optimized and features good navigation and content structure. However, some modern security practices such as DNSSEC and security headers are not implemented, and no cookie consent mechanism is present, indicating room for improvement in privacy compliance. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks advanced security headers and explicit vulnerability disclosure policies. No signs of blocking or WAF interference were detected, and no sensitive data exposure or vulnerabilities were found in the analyzed content. Overall, the security posture is solid but could be enhanced with additional measures. The overall risk assessment is low given the organization's reputable status and the website's professional presentation. Strategic recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, and publishing a vulnerability disclosure policy to further strengthen security and privacy compliance.

50
53
2
70
72
85
40
cryptologyresearchconferencepublicationnon-profit+1 more
Bootstrap CSSjQuery 3.3.1EasyAutocomplete jQuery plugin
2025-10-09T14:14:43.192Z
hackmd.io favicon

HackMD

hackmd.io

0
TechnologyTaiwanmediumMEDIUM

HackMD is a collaborative Markdown editor platform founded in 2015 and based in Taiwan. It offers real-time document editing and sharing capabilities targeted at teams, developers, researchers, educators, and communities. The platform supports integrations such as GitHub and provides features like templates, book mode, and UML graph visualization, positioning itself as a versatile tool for knowledge sharing and collaboration. The business model is primarily freemium SaaS with paid tiers for teams and enterprises, serving a global user base including notable organizations like the Ethereum Foundation. Technically, HackMD employs modern web technologies including React and Next.js, hosted on AWS infrastructure. The website demonstrates excellent performance, mobile optimization, and SEO practices. Security is robust with HTTPS enforcement, CSRF protections, and domain transfer restrictions, although DNSSEC is not enabled. Privacy and terms policies are comprehensive and GDPR compliant, with active use of analytics tools such as Google Tag Manager and Plausible Analytics. Security posture is strong with no detected vulnerabilities or exposed sensitive data. However, explicit incident response contacts and vulnerability disclosure mechanisms are not publicly evident, representing an area for improvement. The WHOIS data is transparent and consistent with the business identity, supporting legitimacy and trustworthiness. Overall, HackMD presents a professional, secure, and user-friendly platform with a strong market position in collaborative documentation tools. Strategic recommendations include enabling DNSSEC, publishing explicit security headers, and establishing clear incident response and vulnerability disclosure channels to further enhance security and trust.

60
68
17
80
100
85
100
collaborationmarkdownreal-timeeditortechnologydocumentation+3 more
ReactNext.jsJavaScriptWebAssembly (possible for UML rendering)+1
2025-10-09T14:14:27.921Z
C

Cari D. Burstein

anybrowser.org

0
OtherN/asmallHIGH

AnyBrowser.org is a personal and advocacy website managed by Cari D. Burstein, hosting multiple small sites including a campaign promoting accessible web design and various archived gaming and community sites. The website targets general internet users interested in accessible web design and niche gaming communities. The business model is primarily personal and hobbyist with no evident commercial intent. The domain is well-established, having been registered since 1997, which supports the site's long-term presence and credibility. Technically, the website uses basic HTML, CSS, and JavaScript technologies, including Google Analytics for visitor tracking. It is hosted by DreamHost, LLC, a reputable hosting provider. The site shows moderate performance and basic mobile optimization, with good accessibility features. However, it lacks modern security headers and DNSSEC, which could improve its security posture. From a security perspective, the site uses HTTPS (implied by the domain and hosting provider but not explicitly confirmed in the data), but no advanced security headers are present. There is no evidence of privacy or cookie policies, GDPR compliance, or vulnerability disclosure mechanisms. The use of Google Analytics without a cookie consent mechanism indicates limited privacy compliance. No critical vulnerabilities or suspicious patterns were detected. Overall, the website is safe for general audiences, with no adult or questionable content. The risk level is low, but improvements in privacy compliance, security headers, and DNS security are recommended to enhance trust and protection.

15
25
2
60
-
70
40
personaladvocacyaccessiblewebdesigngamingarchivedsites
HTML5CSSJavaScriptGoogle Analytics (gtag.js)
2025-10-09T14:14:17.892Z
brevo.com favicon

Brevo

brevo.com

0
TechnologyUnited StateslargeMEDIUM

Brevo is a large technology company providing an all-in-one AI-enabled marketing platform that integrates email marketing, SMS, WhatsApp, CRM, and automation tools. It serves over 500,000 customers globally, positioning itself as a competitive player in the marketing automation and CRM SaaS market. The platform emphasizes multichannel communication and AI-driven features to enhance marketing efficiency and customer engagement. Technically, the website is built on modern web technologies including React with Next.js framework, and integrates multiple analytics and marketing tools such as Google Tag Manager, AB Tasty, and Albacross. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and employs standard security headers, indicating a good security posture. However, the absence of publicly available WHOIS data and lack of explicit security policies or incident response information slightly reduce transparency and trust. No critical vulnerabilities or exposed sensitive data were detected. Overall, Brevo presents a professional and trustworthy online presence with strong business credibility and technical maturity. Strategic improvements in WHOIS transparency and security policy disclosures would further enhance trust and compliance.

15
85
20
100
75
85
100
emailmarketingcrmmarketingautomationsmsmarketingwhatsappmarketing+4 more
React (Next.js)JavaScriptCSSVimeo player+6
2025-10-09T14:13:52.822Z