Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1102 of 2974|Showing 55051-55100 of 148692
smartcitiesdive.com favicon

TechTarget Inc.

smartcitiesdive.com

0
MediaUnited StatesmediumMEDIUM

Smart Cities Dive is a specialized digital media publication operated by TechTarget Inc., focusing on news and analysis related to smart cities, urban planning, and sustainable technology. The website targets professionals and stakeholders interested in the latest trends shaping connected and livable cities. It offers industry news, opinion pieces, event coverage, and newsletters, positioning itself as a niche leader in smart city journalism. Technically, the site employs modern web technologies including JavaScript frameworks, Google Tag Manager, New Relic monitoring, and Osano for consent management, hosted on a CDN for performance. The website is well-optimized for mobile and accessibility, with good SEO practices and fast loading times. Security-wise, the site enforces HTTPS, uses standard security headers, and implements cookie consent mechanisms, though it lacks explicit security policy and incident response contact information. The absence of WHOIS data limits domain trust assessment, but the professional content and corporate affiliation with TechTarget support legitimacy. Overall, the site presents a strong digital presence with room for improvement in transparency and security disclosures.

30
68
65
40
65
70
100
smartcitiesnewstechnologyurbanplanningsustainability+3 more
JavaScriptGoogle Tag ManagerNew Relic Browser monitoringOsano Consent Management+2

Partner Domains:

www.informatechtarget.com
partner
www.techtarget.com
parent
2025-10-07T17:40:46.830Z
I

iStockphoto LP

istockphoto.com

0
MediaN/aenterpriseMEDIUM

iStockphoto LP operates the iStock website, a leading digital marketplace offering millions of royalty-free stock images, videos, and vectors. The platform targets creative professionals and businesses seeking licensed media content for various projects. As a subsidiary of Getty Images, iStock holds a strong market position in the stock media industry, leveraging a subscription and credit-based licensing business model. The website demonstrates a professional and consistent brand presence with good content quality and user experience. Technically, the site employs modern JavaScript frameworks such as AngularJS and uses Webpack for asset bundling. It integrates third-party services like OneTrust for cookie consent and Google Tag Manager for analytics and marketing. The site is well-optimized for mobile devices and SEO, with fast loading times and basic accessibility features. However, explicit CMS or hosting provider details are not disclosed. From a security perspective, the site enforces HTTPS with CSRF protection and bot detection mechanisms. While some security headers are not explicitly observed, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is partially addressed through cookie consent, but no explicit privacy policy or terms of service links were found on this page. WHOIS data is unavailable, which is unusual but likely due to privacy or registry policies rather than malicious intent. Overall, iStock presents a low-risk profile with a mature digital infrastructure and strong business credibility. Strategic improvements include publishing comprehensive privacy and security policies, enhancing security headers, and providing clear contact information for security and compliance inquiries.

65
50
17
85
72
90
100
stockmediaroyalty-freedigitalassetsphotographymediamarketplace
JavaScriptAngularJS (ng-app, ng-scope)WebpackOneTrust Cookie Consent+1
2025-10-07T17:39:06.627Z
ooba.co.za favicon

ooba

ooba.co.za

0
FinanceSouth AfricalargeMEDIUM

ooba is a leading South African home finance expert specializing in mortgage brokerage and advisory services. The company helps customers find the best home loan deals by shopping around various lenders, serving thousands of homeowners. Their market position is strong within the South African finance and real estate sectors, offering key services such as home loan brokerage, mortgage advice, and related insurance products. The website reflects a professional and trustworthy brand with consistent branding and high-quality content tailored to South African home buyers. Technically, the website is built on WordPress with modern frameworks like Bootstrap and integrates multiple analytics and marketing tools including Google Analytics, Facebook Pixel, Crazy Egg, and Visual Website Optimizer. The site is mobile-optimized, SEO-friendly, and employs security best practices such as HTTPS and security headers. Performance is moderate with room for optimization. From a security perspective, the site demonstrates a good posture with SSL encryption, secure forms, and no visible vulnerabilities. However, it lacks a public vulnerability disclosure policy and explicit incident response contacts. Privacy compliance is well addressed with a comprehensive privacy policy, cookie consent mechanisms, and GDPR considerations. WHOIS data is privacy protected, which is typical for financial services, and does not raise immediate concerns. Overall, ooba presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include publishing a vulnerability disclosure policy, enhancing incident response transparency, and continuous monitoring of third-party scripts to maintain security integrity.

40
58
17
80
62
70
-
homeloansmortgagefinancesouthafricarealestate+2 more
Google Tag ManagerCrazy EggFacebook PixelGoogle Analytics+5
2025-10-07T17:38:56.607Z
flickr.com favicon

Flickr

flickr.com

0
TechnologyUnited StateslargeMEDIUM

Flickr is a well-established online photography community platform founded in 2003, offering photo storage, sharing, and community engagement services. It operates a freemium business model with a premium Flickr Pro subscription that provides enhanced features such as unlimited storage and ad-free browsing. The platform is positioned as one of the largest collections of Creative Commons-licensed imagery and targets photographers and creative enthusiasts worldwide. Owned by SmugMug, Flickr maintains a strong brand presence with consistent design and professional content. Technically, Flickr leverages modern web technologies including Webflow CMS, Google Tag Manager, Cloudflare security services, and AWS DNS hosting. The site is optimized for performance, mobile responsiveness, and accessibility, with a comprehensive content security policy and HTTPS enforcement ensuring a secure user experience. The use of CAPTCHA on forms and consent management tools demonstrates a mature approach to user privacy and bot mitigation. From a security perspective, Flickr exhibits strong security posture with proper HTTPS, CSP headers, and no visible vulnerabilities or exposed sensitive data. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response contact information, which could be improved. Privacy compliance is robust with clear privacy and cookie policies aligned with GDPR requirements. Business credibility is high, supported by certifications and trust indicators. Overall, Flickr presents a secure, professional, and user-friendly platform with a strong market position in the photography community space. Strategic improvements in DNS security and transparency around security policies would further enhance trust and resilience.

55
68
2
80
82
90
100
photographyphotosharingcommunitycreativecommonsflickrpro+2 more
Google Tag ManagerCloudflare Turnstile CAPTCHAjQuery 3.5.1Webflow CMS+2

Partner Domains:

flickrads.com
partner
flickr.org
partner
2025-10-07T17:38:36.561Z
un.org favicon

United Nations

un.org

0
GovernmentN/aenterpriseMEDIUM

The United Nations website serves as the official digital presence of the international intergovernmental organization dedicated to global peace, security, and humanitarian efforts. It provides multilingual access to reports, programs, and initiatives, targeting a global audience including governments, NGOs, and the public. The site is professionally designed with consistent branding and good content quality, reflecting its authoritative position. Technically, the site employs a mature technology stack including Bootstrap, jQuery, and Google Analytics with IP anonymization, ensuring a responsive and accessible user experience. However, the absence of explicit privacy and cookie policies and lack of security headers indicate areas for improvement in privacy compliance and security hardening. From a security perspective, the site uses HTTPS effectively but lacks visible security headers and detailed incident response or data protection contact information. The WHOIS data is unavailable or malformed, which limits domain registration trust analysis but does not detract from the site's legitimacy given its branding and content. Overall, the website is trustworthy and professional but would benefit from enhanced privacy disclosures, security headers, and transparent contact information to improve compliance and security posture.

85
35
2
85
100
80
100
governmentinternationalnon-profitmultilingualhumanitarian+1 more
jQuery 3.7.1Bootstrap 3.3.5Font Awesome 4.6.3Google Fonts (Roboto)+1
2025-10-07T17:38:06.498Z
F

🖤 ANTI-META FEDI PACT 🖤

fedipact.online

0
OtherN/asmallMEDIUM

The website fedipact.online serves as a community-driven platform advocating for Fediverse instance administrators and moderators to block Meta-owned instances, specifically targeting the project92 threat. It operates as a niche initiative within the decentralized social media ecosystem, providing a list of participating admins and a mechanism to sign a pact via an external cryptpad form. The site is simple in design and content, focusing on community coordination rather than commercial activity. Technically, the website is built with standard HTML, CSS, and JavaScript without reliance on major frameworks or CMS platforms. Hosting appears to be through Namecheap, consistent with the domain registration data. The site demonstrates basic mobile optimization and accessibility but lacks advanced SEO and performance optimizations. No analytics or advertising technologies are detected, indicating minimal user tracking. From a security perspective, the site lacks important security headers and does not enable DNSSEC, which could be improved to enhance domain and site security. There is no published privacy, cookie, or terms of service policy, which limits compliance with GDPR and other privacy regulations. Contact information is minimal but present, including an email address and a Mastodon handle for communication. Overall, the website is functional and serves its community purpose but would benefit from improved security practices, privacy compliance, and more professional content presentation to enhance trust and credibility.

40
50
17
70
95
70
100
fediversecommunitymoderationanti-metaprivacy+1 more
HTML5CSS3JavaScript
2025-10-07T17:38:00.803Z
masto.host favicon

Masto.host

masto.host

0
TechnologyN/asmallMEDIUM

Masto.host is a specialized service provider offering fully managed Mastodon hosting solutions. Founded in 2017, the company targets individuals and organizations seeking an easy and secure way to run Mastodon instances without the complexity of self-hosting. Their business model is subscription-based, with plans starting at $6 per month, emphasizing managed installation, security, and upgrades. The website reflects a focused niche market position with clear service offerings and positive user testimonials, indicating a trusted presence in the Mastodon hosting ecosystem. Technically, the website is built using modern static site generation technology (Eleventy), delivering fast performance and good mobile optimization. The absence of heavy scripts or analytics tools suggests a privacy-conscious approach. However, the site lacks some advanced security headers and cookie consent mechanisms, which could be improved to enhance compliance and security posture. From a security perspective, the site enforces HTTPS and uses domain status protections but does not enable DNSSEC or publish a security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. Overall, the security posture is solid but could benefit from additional hardening and transparency. The overall risk assessment is low, with no critical issues found. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent for privacy compliance, and publishing a security policy. These steps will improve trust, compliance, and resilience against potential threats.

25
53
17
72
72
80
20
mastodonhostingmanagedservicesocialmediaopensource
Eleventy v2.0.1Font Awesome Pro 6.4.0Poppins fontSVG graphics
2025-10-07T17:37:45.718Z
trackjs.com favicon

TrackJS LLC

trackjs.com

0
TechnologyUnited StatessmallMEDIUM

TrackJS LLC is a specialized technology company providing JavaScript error monitoring solutions primarily targeting developers and businesses that require robust frontend error tracking. The company offers a SaaS platform with features such as telemetry timelines, AI-powered debugging, and seamless integration with popular web frameworks and Node.js environments. Their market position is supported by reputable clients and positive customer testimonials, indicating a trusted niche player in the developer tools space. The website is professionally designed, well-structured, and optimized for SEO and mobile devices, reflecting a mature digital presence. Technically, TrackJS employs a modern technology stack including React, Angular, Next.js, and Node.js, complemented by analytics and performance monitoring tools like PostHog and Request Metrics. The site uses HTTPS with excellent SSL configuration and integrates multiple third-party scripts responsibly. Privacy and security policies are clearly stated, with GDPR and CCPA compliance noted, although cookie consent mechanisms could be improved. No critical vulnerabilities or suspicious content were detected. From a security perspective, TrackJS demonstrates good practices such as token-based authentication, data minimization, and server-side filtering of errors. However, the absence of publicly disclosed incident response contacts and vulnerability disclosure policies suggests areas for enhancement. Overall, the security posture is strong but could benefit from additional transparency and security headers. The domain registration data aligns well with the company's business claims, showing a consistent and legitimate registration history. The company maintains a small but focused team and operates primarily in the US. Strategic recommendations include implementing explicit cookie consent, publishing incident response and vulnerability disclosure information, and enhancing security headers to further strengthen trust and compliance.

15
65
47
75
72
75
100
javascripterrormonitoringdevelopertoolssaasfrontend+3 more
JavaScriptReactAngularNode.js+5

Partner Domains:

requestmetrics.com
partner
certkit.io
partner

+1 more partners

2025-10-07T17:37:35.690Z
thisisbeacon.com favicon

Veracity Trust Network

thisisbeacon.com

0
TechnologyN/amediumMEDIUM

Veracity Trust Network is a technology company specializing in AI-powered bot protection and ad fraud prevention solutions. Their patented Veracity Bot Protection Suite aims to secure digital infrastructure from automated attacks, API abuse, and fraudulent activities in real time. The company targets businesses and organizations that require advanced cybersecurity measures to protect their online assets and advertising investments. The website reflects a professional and consistent brand presence with a focus on B2B cybersecurity services. Technically, the website is built on WordPress using modern frameworks such as Bootstrap and Font Awesome, with integrations for Google Tag Manager and Cookiebot for analytics and cookie consent management. Hosting and DNS are managed via Cloudflare, providing a reliable infrastructure. Security posture is good with HTTPS enforced and domain registration locked against unauthorized transfers, though there is room for improvement in publishing explicit security policies, incident response contacts, and vulnerability disclosure information. Privacy compliance is partially addressed through cookie consent but lacks a clearly published privacy policy and terms of service. Overall, the website is professional, trustworthy, and well-positioned in the cybersecurity market, but could enhance transparency and security communication to further build trust.

55
95
47
60
75
80
100
cybersecuritybotprotectionadfraudpreventionaisecuritywebthreatprotection
WordPressWPBakery Page BuilderFont Awesome 6.7.2Google Tag Manager+3
2025-10-07T17:36:44.982Z
veracitytrustnetwork.com favicon

Veracity Trust Network

veracitytrustnetwork.com

0
TechnologyUnited KingdommediumMEDIUM

Veracity Trust Network is a UK-based cybersecurity company specializing in AI-powered bot protection and fraud prevention solutions. Founded in 2021, it serves enterprises, MSSPs, risk teams, and digital platforms globally, with offices in the UK and Singapore. The company offers patented machine learning technologies to detect and prevent automated attacks, synthetic identity fraud, and ad click fraud, positioning itself as an innovative leader in the cybersecurity market. Their award-winning solutions and partner programs underscore their strong market presence and credibility. Technically, the website is built on WordPress with modern frameworks like Bootstrap and integrates various third-party services such as Google Tag Manager and Microsoft Clarity for analytics and marketing. The site is well-optimized for mobile and SEO, with good performance and accessibility standards. DNS is managed via Cloudflare, though DNSSEC is not enabled, representing a minor security gap. From a security perspective, the site enforces HTTPS, uses domain locking statuses, and implements cookie consent mechanisms aligned with GDPR. However, it lacks a publicly available security policy, incident response contacts, and vulnerability disclosure information, which are recommended for enhanced transparency and trust. The domain registration data is consistent with the business claims, showing no privacy protection and a legitimate registration history. Overall, Veracity Trust Network demonstrates a strong security posture and professional digital presence, with room for improvement in publishing explicit security policies and enabling DNSSEC. The website content is safe for general audiences and reflects a mature, credible cybersecurity business.

55
95
47
60
75
80
100
cybersecuritybotprotectionaisecurityfraudpreventionenterprisesecurity+4 more
WordPress 6.8.3WPBakery Page BuilderBootstrapjQuery+2

Partner Domains:

platform.veracitytrustnetwork.com
service
go.veracitytrustnetwork.com
service
2025-10-07T17:36:39.955Z
soundcloud.com favicon

SoundCloud

soundcloud.com

0
MediaUnited StateslargeMEDIUM

SoundCloud is a leading online music streaming and sharing platform, hosting over 320 million tracks and serving a global community of artists, bands, DJs, and audio creators. Established in 2005, it has grown to become one of the largest music communities worldwide, offering services that enable music discovery, sharing, and community engagement. The platform supports web, iOS, and Android applications, leveraging modern web technologies and cloud hosting to deliver a fast and responsive user experience. Technically, SoundCloud employs a robust infrastructure including AWS DNS hosting, React-based frontend, and advanced bot protection via Datadome. The site is optimized for mobile devices, includes accessibility features, and integrates analytics and advertising networks such as Google Analytics and DoubleClick. Security posture is strong with HTTPS enforcement, security headers, and domain transfer protections, though DNSSEC is not enabled. From a security and compliance perspective, SoundCloud maintains comprehensive privacy and cookie policies with GDPR compliance indicators. However, explicit security policies and incident response contacts are not publicly detailed. The platform does not expose sensitive data and uses secure forms for user interactions. Overall, the site demonstrates a mature security culture with room for improvement in transparency around security operations. The overall risk assessment is low, with no critical vulnerabilities detected. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing incident response transparency to further strengthen trust and security posture.

60
73
17
85
82
85
100
musicstreamingaudiocommunitymedia+1 more
JavaScriptReact (inferred from script structure and assets)AWS DNS hostingDatadome bot protection+3
2025-10-07T17:36:14.881Z
dreamdata.io favicon

Dreamdata.io ApS

dreamdata.io

0
TechnologyDenmarkmediumMEDIUM

Dreamdata.io ApS operates a specialized B2B SaaS platform focused on revenue attribution and marketing activation. The company provides advanced tools for mapping the B2B customer journey, leveraging AI signals, and enabling marketers to optimize revenue-driving activities. Positioned as a technology leader in B2B marketing analytics, Dreamdata targets marketing and sales professionals seeking precise attribution insights. The company maintains offices in Denmark and the US, reflecting an international presence. Technically, the website is built on Squarespace CMS with integrations including Cookiebot for GDPR-compliant cookie management, Segment and HubSpot for analytics and marketing automation, and Typekit for fonts. The site demonstrates good performance, mobile optimization, and SEO best practices. Structured data and social media links enhance discoverability and trust. Security posture is strong with HTTPS enforced, HSTS enabled, and no exposed sensitive data detected. However, DNSSEC is not enabled, and no explicit security or incident response policies are published. Privacy compliance is robust with a clear privacy policy and cookie consent mechanism. Business credibility is supported by consistent WHOIS data, professional content, and multiple trust signals. Overall, Dreamdata.io presents a mature, professional online presence with strong technical and security foundations. Strategic improvements could include enabling DNSSEC, publishing security policies, and enhancing accessibility features to further strengthen compliance and trust.

50
100
17
90
62
85
100
b2battributionmarketingsaasanalytics+2 more
Squarespace CMSTypekit fontsCookiebot for cookie consentSegment analytics+1
2025-10-07T17:35:44.341Z
sgnic.sg favicon

Singapore Network Information Centre (SGNIC) Pte Ltd

sgnic.sg

0
TechnologySingaporemediumMEDIUM

Singapore Network Information Centre (SGNIC) Pte Ltd operates as the official registry for Singapore's .SG domain namespace, providing domain registration and related internet infrastructure services. Established in 2005, SGNIC plays a critical role in maintaining the security, stability, and growth of Singapore's internet presence. The website reflects a professional and consistent brand image, targeting businesses and individuals seeking domain registration and related services within Singapore. The content is relevant, well-structured, and supported by active announcements and FAQs, indicating ongoing engagement with its audience. Technically, the website is built on the Telerik Sitefinity CMS platform with ASP.NET backend, utilizing modern JavaScript libraries such as jQuery and Bootstrap for responsive design. The site employs HTTPS with a valid SSL certificate, Google reCAPTCHA for form security, and a cookie consent mechanism to comply with basic privacy standards. However, DNSSEC is not enabled, which is a recommended security enhancement for domain registries. Performance is moderate with good mobile optimization and basic accessibility features. From a security perspective, the site demonstrates good practices including HTTPS enforcement and bot protection, but lacks advanced security headers and a published security policy or incident response contacts. No vulnerabilities or suspicious content were detected. WHOIS data confirms the domain's legitimacy, showing consistent registration details aligned with the business's operational history and purpose. Overall, SGNIC's website presents a trustworthy and professional front for its essential internet registry services. Strategic improvements in DNSSEC deployment, enhanced security headers, and transparent security policies would further strengthen its security posture and compliance standing.

90
53
47
85
72
70
100
domainregistrationinternetregistrysingaporesgnicdns+3 more
jQueryBootstrapGoogle reCAPTCHATelerik Sitefinity CMS+1
2025-10-07T16:24:11.790Z
C

Communications Regulatory Authority

domains.qa

0
GovernmentQatarlargeMEDIUM

The Communications Regulatory Authority (CRA) of Qatar operates as the official government body responsible for telecommunications regulation and domain management within Qatar. The website focuses on promoting Qatar domain registrations (.qa and قطر.) and provides comprehensive information about domain services, accredited registrars, and registrants. The CRA positions itself as a trusted authority with a strong emphasis on security, professionalism, and local market visibility. The site targets businesses and individuals seeking domain registration services in Qatar, leveraging its government status to establish market leadership. Technically, the website employs a modern technology stack including jQuery, Bootstrap, Google Tag Manager, and analytics tools such as Google Analytics and Facebook Pixel. The CMS identified is Sitecore, indicating a robust enterprise-grade content management system. The site is mobile optimized, accessible, and SEO friendly, with good performance and consistent branding. Security headers like Content-Security-Policy are implemented, and HTTPS is enforced, reflecting a strong security posture. Security-wise, the site demonstrates good practices with no visible vulnerabilities or exposed sensitive data. However, it lacks visible cookie consent mechanisms and published security or incident response policies, which are important for compliance and user trust. The WHOIS data aligns well with the website content, confirming legitimacy as a government entity with consistent registration details. Overall, the CRA website is a professional, secure, and credible platform serving its regulatory and domain management functions effectively. Strategic improvements in privacy compliance and transparency around security policies would further enhance trust and compliance.

20
53
17
60
52
45
100
domainmanagementtelecommunicationsgovernmentqatarregulatoryauthority
jQueryBootstrapGoogle Tag ManagerGoogle Analytics+6
2025-10-07T16:23:56.759Z
registry.pw favicon

Radix FZC

registry.pw

0
TechnologyN/amediumMEDIUM

Registry.pw operates as the official registry for the .PW top-level domain, targeting professionals and businesses seeking a dedicated online namespace. Established in 2012 and managed by Radix FZC, the website offers domain registration services, registrar accreditation, and policy information. The site positions itself as a registrar-friendly TLD operator with a global reach, emphasizing professional identity online. The business model revolves around domain registry operations and partnerships with registrars worldwide. Technically, the website is built on WordPress 5.8.12, utilizing common plugins such as Contact Form 7 and Cookie Law Info for forms and compliance. The site employs Cloudflare for DNS services and integrates Google Analytics and AdRoll for tracking and advertising. The technical infrastructure is moderately optimized with basic mobile responsiveness and accessibility features. SEO practices are good, with proper meta tags and structured navigation. From a security perspective, the site enforces HTTPS and includes a cookie consent banner with granular controls, indicating good privacy compliance. However, DNSSEC is not enabled, representing a minor security gap. No critical vulnerabilities or exposed sensitive data were detected. The site lacks explicit security certifications and a vulnerability disclosure policy, which could enhance trust. Incident response is facilitated via an abuse reporting page. Overall, registry.pw demonstrates a solid security posture and business credibility with professional content and clear policies. Recommendations include enabling DNSSEC, adding security headers, improving accessibility and mobile optimization, and establishing a formal vulnerability disclosure process to further strengthen security and compliance.

20
80
2
70
65
35
100
domainregistryprofessionalwebtldregistrarscookieconsent+2 more
WordPress 5.8.12jQueryCufon font replacementGoogle Analytics+4
2025-10-07T16:23:51.751Z