Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1174 of 2974|Showing 58651-58700 of 148693
air.inc favicon

Air

air.inc

0
TechnologyUnited StatesmediumMEDIUM

Air is a US-based SaaS company founded in 2019 that provides a Creative Operations platform designed to streamline and scale creative workflows for marketing and creative teams. The platform offers features beyond traditional digital asset management, including visual workspaces, content collection, approval workflows, and sharing capabilities. The website demonstrates a strong market position with professional branding and notable client logos, targeting creative professionals and marketing teams. Technically, the website is built on modern frameworks such as Next.js and React, hosted on AWS infrastructure, and integrates advanced technologies like Three.js for visual effects. It employs industry-standard analytics and marketing tools including Google Tag Manager, Segment, Intercom, and Cookiebot for cookie consent management. The site is mobile-optimized, fast-loading, and SEO-friendly, reflecting a mature digital presence. From a security perspective, the site enforces HTTPS and uses domain status locks to protect domain integrity. However, DNSSEC is not enabled, and there is no visible security.txt or vulnerability disclosure policy, which are recommended best practices. Privacy compliance is basic, with a cookie consent mechanism present but no visible privacy policy or terms of service pages. No contact emails or phone numbers are publicly listed, which may impact user trust and support accessibility. Overall, Air presents a professional and trustworthy online presence with a solid technical foundation. To enhance security posture and compliance, it is recommended to publish comprehensive privacy and terms policies, enable DNSSEC, and implement a vulnerability disclosure policy. These steps will improve user trust and align with industry best practices.

30
70
22
70
77
65
100
creativeoperationsdigitalassetmanagementsaasmarketingcreativeteams+1 more
ReactNext.jsThree.jsStoryblok CMS+5
2025-09-07T00:58:04.635Z
hcl-software.com favicon

HCLSoftware

hcl-software.com

0
TechnologyIndiaenterpriseLOW

HCLSoftware, a division of HCL Technologies, is a leading enterprise technology provider specializing in AI, automation, data analytics, digital transformation, and enterprise security solutions. The company targets large enterprises and technology professionals, positioning itself as a key player in the Digital+ economy. The website reflects a mature digital presence with comprehensive content and professional branding consistent with a global technology leader. Technically, the site leverages modern frameworks such as Dojo and Bootstrap, integrates Google Tag Manager and OneTrust for analytics and privacy compliance, and uses IBM WebSphere Portal as its CMS platform. Security posture is strong with HTTPS enforcement, security headers, and fraud detection scripts, though public incident response and vulnerability disclosure information are not found. The absence of WHOIS data is a notable anomaly that warrants further investigation but does not detract significantly from the overall trustworthiness given the company's established market presence. Strategic recommendations include publishing a security.txt file, enhancing incident response transparency, and continuous third-party script audits to maintain security integrity.

90
100
95
75
77
80
100
technologyenterprisesoftwaredigitaltransformationaiautomation+4 more
jQueryBootstrapDojo ToolkitGoogle Tag Manager+2

Partner Domains:

hcltechsw.com
partner
hcltech.com
parent

+1 more partners

2025-09-07T00:57:24.415Z
A

Alessandro Scarpellini

alessandroscarpellini.it

0
OtherItalysmallHIGH

The website represents Alessandro Scarpellini, an Italian art director and design manager specializing in strategy, branding, and visual communication. The site serves as a professional portfolio showcasing a wide range of projects and highlights the curator role of Visual Journal. The business model appears to be a small-scale, personal service provider targeting clients seeking design and branding expertise. The website is well structured with good content quality and mobile optimization, though it lacks advanced accessibility features and comprehensive SEO beyond basic meta tags. Technically, the site is built with standard HTML5 and CSS3 without detectable CMS or frameworks. Performance is moderate with lazy loading images and responsive design. However, no analytics or tracking technologies are present, indicating minimal user tracking. Security posture is moderate but weakened by the expired domain registration and lack of DNSSEC or security headers. HTTPS status is unknown but assumed present due to modern standards. Security evaluation reveals critical concerns due to the domain expiration, which poses risks of hijacking or downtime. The absence of privacy and cookie policies indicates non-compliance with GDPR and related regulations. No incident response or security policy information is provided. Overall, the site is professional but requires urgent domain renewal and improved security and privacy compliance to reduce risk and enhance trust. Strategic recommendations include immediate domain renewal, implementation of DNSSEC, addition of privacy and cookie policies, deployment of security headers, and enforcement of HTTPS. These steps will improve security posture, compliance, and user trust, supporting the business's professional image and operational continuity.

65
10
2
40
72
10
40
artdirectordesignmanagerbrandingstrategyvisualcommunication+2 more
HTML5CSS3
2025-09-07T00:57:19.407Z
wormholescan.io favicon

Domains By Proxy, LLC

wormholescan.io

0
TechnologyUnited StatessmallMEDIUM

Wormholescan is a specialized blockchain explorer and analytics platform focused on the Wormhole ecosystem. It provides users and developers with tools to search, visualize, and analyze blockchain activity related to Wormhole, including robust APIs for integration. The platform is positioned as a niche service catering to blockchain developers and users interested in cross-chain transfers and token analytics within the Wormhole network. The website is professionally designed with modern UI elements and interactive charts, indicating a mature digital presence for a relatively new company founded in 2022. Technically, the site leverages modern JavaScript frameworks, Google Fonts, ApexCharts for data visualization, and is hosted on AWS infrastructure, ensuring scalability and reliability. Security posture is generally good with HTTPS enforced and domain registration protections in place, but lacks explicit security headers and published security policies. Privacy compliance is weak due to absence of privacy and cookie policies and no visible consent mechanisms, which should be addressed to meet regulatory standards. Overall, Wormholescan presents a credible and professional service with room for improvement in privacy and security transparency.

15
35
2
60
77
60
100
blockchainanalyticsexplorerwormholecryptocurrency+2 more
JavaScript ES ModulesGoogle Fonts (Roboto, Roboto Mono)ApexCharts for chartingGoogle Analytics (gtag.js)

Partner Domains:

wormhole.com
partner
xlabs.xyz
partner
2025-09-06T23:55:22.267Z
uncut.wtf favicon

UNCUT.wtf

uncut.wtf

0
TechnologyN/asmallMEDIUM

UNCUT.wtf is a niche online platform offering a free catalogue of contemporary typefaces, currently featuring 163 fonts across categories such as Sans Serif, Serif, Monospace, and Display. The website primarily serves designers, typographers, and font enthusiasts by providing curated font information and direct download links to external sources like GitHub and personal foundry sites. The business model is centered on free distribution and cataloguing rather than direct sales, positioning UNCUT.wtf as a valuable resource in the typography community. Technically, the website is built with standard web technologies including HTML5, CSS, and JavaScript, and leverages Cloudflare for hosting and analytics. The site demonstrates good performance, mobile optimization, and basic accessibility features. However, it lacks advanced security headers and a cookie consent mechanism, which are areas for improvement. The absence of WHOIS data due to unsupported TLD WHOIS limits domain trust verification but is common for such domains. From a security perspective, the site enforces HTTPS and does not expose sensitive data or contain forms collecting personal information, reducing risk. The presence of a privacy and terms page adds to compliance, though GDPR indicators and cookie consent are minimal. No incident response or vulnerability disclosure information is provided, which could be enhanced to improve security posture. Overall, UNCUT.wtf is a professionally presented, safe, and useful resource with moderate trustworthiness. Strategic improvements in privacy compliance, security headers, and transparency would elevate its security and compliance standing.

95
53
2
60
65
85
100
fontstypefacesfreefontstypographydesign+2 more
HTML5CSSJavaScriptCloudflare Insights
2025-09-06T23:54:55.063Z
counter-forms.com favicon

Counter Forms

counter-forms.com

0
OtherN/asmallMEDIUM

Counter Forms is a specialized online platform dedicated to promoting young and discursive type designers primarily from the Antipodean region. The website offers a curated collection of typefaces, insightful articles on typography, and interactive tools such as a PPP Table & Calculator. It positions itself as a niche player in the typography and design community with a focus on cultural and political aspects of type design. Technically, the site is built using modern web technologies including Next.js, React, and is hosted on Vercel with content managed via Sanity.io. Payment processing is securely handled through Stripe, ensuring safe transactions. The website demonstrates good performance, mobile optimization, and a professional design aesthetic. However, it lacks explicit privacy and cookie policies, which are critical for GDPR compliance and user trust. No direct contact information or security incident response details are provided, which could hinder user confidence and compliance. Security posture is generally good with HTTPS enforced, but the absence of DNSSEC and security headers suggests room for improvement. Overall, the site is trustworthy and professional but should enhance its privacy and security disclosures to align with best practices.

30
50
2
70
72
90
100
typographytypefacesdesignfontsantipodean+1 more
React (Next.js)JavaScriptStripe (payment processing)Sanity.io (CMS and media hosting)+2

Partner Domains:

js.stripe.com
service
cdn.sanity.io
service
2025-09-06T23:54:49.297Z
wiz.io favicon

Wiz

wiz.io

0
TechnologyUnited StateslargeLOW

Wiz is a leading cloud security platform designed to enable security, development, and DevOps teams to build and run applications securely in the cloud. Positioned as the #1 cloud security software, Wiz offers unified prevention and response capabilities tailored for modern cloud environments. The platform targets enterprise and large organizations seeking scalable and integrated cloud security solutions. The website reflects a mature and professional brand with clear messaging and a focus on enabling faster cloud development with security embedded. Technically, the website leverages modern web technologies including Next.js and React, hosted on Vercel, ensuring fast performance and excellent mobile optimization. The presence of advanced analytics and consent management tools indicates a mature digital infrastructure with attention to privacy compliance. Security best practices are observed with HTTPS, security headers, and secure form handling, although explicit security policies and incident response contacts are not prominently published. The security posture of the website is strong, with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with comprehensive privacy and cookie policies and consent mechanisms. However, the lack of WHOIS data limits domain registration transparency, though this is common for security companies protecting registrant privacy. Overall, Wiz demonstrates a high level of professionalism, technical maturity, and security awareness, making it a trustworthy platform in the cloud security market.

60
70
95
80
72
80
100
cloudsecuritycybersecuritycloudplatformenterprisesecuritydevopssecurity
Next.jsReactVercel AnalyticsGoogle Tag Manager+2
2025-09-06T23:54:18.773Z
overpass.com favicon

Overpass

overpass.com

0
TechnologyN/asmallMEDIUM

Overpass operates as a specialized marketplace platform that connects businesses with qualified remote sales and support contractors. The company positions itself as a leading talent marketplace in this niche, offering services that streamline the hiring, onboarding, and payment processes for remote contractors. The website content is professionally designed and clearly communicates the business model and key services, targeting businesses seeking remote sales and support talent. Technically, the website employs modern web technologies including Vue.js/Nuxt.js frameworks and integrates multiple third-party analytics and marketing tools such as Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and others. The site appears mobile-optimized and well-structured, though some accessibility features could be enhanced. Performance is moderate with room for improvement. From a security perspective, HTTPS is implied but no explicit security headers or policies are detected in the provided content. There is no visible privacy policy, cookie consent mechanism, or terms of service, which are critical for compliance and user trust. The WHOIS data is missing, raising concerns about domain registration legitimacy and reducing overall trustworthiness. Overall, while the business and website present a professional front with a clear value proposition, the lack of transparency in domain registration and absence of privacy and security policies represent risks. Strategic improvements in compliance documentation, security headers, and domain registration transparency are recommended to enhance trust and security posture.

30
53
2
70
77
80
100
remoteworksalessupportmarketplacecontractors+2 more
Google AnalyticsFacebook PixelLinkedIn Insight TagBing Ads+5
2025-09-06T23:54:08.745Z
visualjournal.it favicon

Visual Journal

visualjournal.it

0
MediaItalysmallMEDIUM

Visual Journal is a niche design blog operated by Alessandro Scarpellini, focusing on curated branding and graphic design projects worldwide. The site targets design professionals and enthusiasts, offering high-quality editorial content without advertising or sponsorships, maintaining independence and quality. The business model is primarily content curation with voluntary project submissions and optional user contributions. The website is well-branded and consistent, with a clear focus on visual communication and strategy. Technically, the website uses modern web technologies including HTML5, CSS3, and JavaScript libraries for infinite scrolling and lazy loading, providing a good user experience and mobile optimization. However, there is no detected CMS or hosting provider information. Performance is moderate, and SEO practices are good with proper meta tags and Open Graph data. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, which lowers its security posture. There are no privacy or cookie policies, and no incident response or vulnerability disclosure mechanisms are evident. The WHOIS data is consistent and transparent, supporting the legitimacy of the domain and business. Overall, the site is safe, professional, and trustworthy but could improve compliance and security practices. The overall risk is moderate with recommendations to enhance security headers, enable DNSSEC, and add privacy and cookie policies to improve compliance and user trust.

75
10
17
60
62
60
40
brandinggraphicdesigneditorialdesignblogvisualcommunication
HTML5CSS3JavaScriptinfinitescroll.min.js+1
2025-09-06T23:53:39.329Z
hyperplay.xyz favicon

HYPERPLAY LABS INC

hyperplay.xyz

0
TechnologyUnited StatessmallMEDIUM

HyperPlay Labs Inc operates HyperPlay, a Web3 desktop gaming platform that unifies access to multiple game stores including its own HyperPlay Store, Epic Games, and GOG. The platform targets Web3 gamers and developers, offering cross-platform compatibility and a wallet overlay to integrate popular Web3 wallets like MetaMask and WalletConnect. The business positions itself as an innovator in the Web3 gaming space, providing quests and achievement rewards to enhance user engagement. Technically, the website is built on modern frameworks such as Next.js and Mantine UI, hosted on Vercel, and employs privacy-conscious analytics like Plausible. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses multiple security headers, and avoids exposing sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for further maturity. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though it could improve transparency around security and incident handling. The domain registration details align well with the business identity, supporting legitimacy.

30
68
2
85
72
85
100
web3gaminggamestorecross-platformblockchain+2 more
ReactNext.jsMantine UIJavaScript+3

Partner Domains:

store.hyperplay.xyz
partner
docs.hyperplay.xyz
partner
2025-09-06T23:52:36.108Z
hclsofy.com favicon

HCL Technologies

hclsofy.com

0
TechnologyN/aenterpriseMEDIUM

The website hclsofy.com represents a technology product or service under the HCL Technologies umbrella, likely focused on software testing automation or digital transformation solutions. The domain is relatively young, created in 2019, consistent with a modern enterprise technology offering. The site uses a modern Angular framework and integrates multiple marketing and analytics tools such as Google Tag Manager, Microsoft Clarity, Facebook Pixel, and Twitter tracking scripts, indicating a moderate level of digital maturity. Hosting is via Google Cloud infrastructure, which supports scalability and reliability. From a security perspective, the site enforces HTTPS and domain registration protections but lacks DNSSEC and security headers, which are recommended to enhance security posture. No explicit privacy policy, terms of service, or contact information is present, which may impact compliance and user trust. Cookie consent is implemented, showing some attention to privacy regulations. No forms or data collection fields were detected in the analyzed content, limiting exposure to input-based vulnerabilities. Overall, the website presents a basic but functional digital presence for a technology enterprise product. The lack of detailed content and compliance documentation suggests room for improvement in transparency and user engagement. Security practices are adequate but could be enhanced by implementing DNSSEC and security headers. The site is safe for general audiences with no adult or questionable content detected.

60
50
2
40
77
75
100
technologysoftwareanalyticsmarketingenterprise
AngularGoogle Tag ManagerMicrosoft ClarityFacebook Pixel+4
2025-09-06T23:52:26.088Z