Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1177 of 2974|Showing 58801-58850 of 148693
science.io favicon

ScienceIO

science.io

0
HealthcareN/amediumMEDIUM

ScienceIO is a healthcare technology company specializing in AI-powered data solutions that transform unstructured medical text into enriched, actionable data. Their platform offers products to identify, redact, and structure Protected Health Information (PHI) to improve patient care and operational efficiency. Recently acquired by Veradigm LLC, ScienceIO is positioned as a trusted player in the healthcare AI market, targeting healthcare providers, payors, and digital health companies. The website is built on modern web technologies including Next.js and React, with a professional and responsive design optimized for mobile and desktop. The technical infrastructure supports fast loading times and good SEO practices, although some security headers are not explicitly detected. The site uses Google Tag Manager for analytics and marketing tracking, but lacks a visible cookie consent mechanism. Security posture is strong with HTTPS enforced and secure form handling, but could be improved by adding security headers and publishing explicit security policies. WHOIS data is privacy protected, which is justified given the healthcare focus, but limits transparency. Overall, the site demonstrates high professionalism, trustworthiness, and compliance with privacy regulations. Recommendations include implementing a cookie consent banner, enhancing security headers, publishing a security policy and incident response contacts, and considering a vulnerability disclosure program to further strengthen trust and compliance.

30
53
17
70
72
85
100
healthcareaidatatechnologyprivacy+1 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

investor.veradigm.com
partner
2025-09-06T22:41:54.607Z
union54.com favicon

ChitChat

union54.com

0
FinanceZambiasmallMEDIUM

ChitChat is a fintech company offering a unique combination of instant messaging integrated with USD wallets and Mastercard debit cards, targeting users who need seamless communication and financial services globally. The platform supports group wallets, global remittances to multiple countries, and offers tiered subscription plans to cater to different user needs. The company is licensed by the Bank of Zambia and issues Mastercard debit cards through Union Fiftyfour Limited, ensuring regulatory compliance and trust. Technically, the website is built on a modern React and Next.js stack, hosted on Amazon AWS, and uses Prismic CMS for content management. The site is well-optimized for mobile devices, has good SEO practices, and integrates Google Tag Manager for analytics. The design is professional and consistent, providing a smooth user experience. From a security perspective, the site enforces HTTPS, uses appropriate domain status locks, and implements standard security headers. However, DNSSEC is not enabled, and there is no visible cookie consent mechanism or published security policy, which are areas for improvement. No vulnerabilities or suspicious activities were detected. Overall, ChitChat presents a credible and professional fintech service with strong business and technical foundations. Strategic improvements in privacy compliance and security transparency would further enhance trust and regulatory adherence.

85
53
2
70
62
65
100
fintechmessagingusdwalletdebitcardremittance+1 more
ReactNext.jsPrismic CMSAWS DNS+1
2025-09-06T22:41:49.195Z
nexhealth.com favicon

Nexhealth

nexhealth.com

0
HealthcareUnited StatesmediumMEDIUM

NexHealth operates a sophisticated digital patient experience platform designed to streamline front-office operations for medical and dental practices. Their platform integrates scheduling, payments, patient intake, and communications, syncing seamlessly with popular EHR systems. Trusted by over 10,000 practices, NexHealth positions itself as a market leader in healthcare SaaS solutions, focusing on improving patient engagement and operational efficiency. Technically, the website is built on Webflow CMS and leverages modern web technologies including Google Tag Manager, Rollbar for error tracking, VWO for optimization, and HubSpot for form management. The site is well-optimized for performance, mobile responsiveness, and SEO, with comprehensive structured data enhancing search visibility. The technical infrastructure reflects a mature digital presence with strong integration capabilities. From a security perspective, the site enforces HTTPS, employs multiple security headers, and uses secure third-party integrations. However, there is no publicly available security policy or incident response information, and the WHOIS data for the domain is missing, which slightly reduces transparency. No critical vulnerabilities or exposed sensitive data were detected in the site content. Overall, NexHealth presents a low-risk profile with a professional and trustworthy online presence. Strategic improvements include publishing detailed security and incident response policies and clarifying domain registration details to enhance trust and compliance.

60
53
17
85
95
90
100
healthcaresaaspatientexperienceehrintegrationmedicalsoftware+4 more
WebflowGoogle Tag ManagerRollbarVWO (Visual Website Optimizer)+5
2025-09-06T22:41:39.145Z
D

Dune

smlxl.io

0
TechnologyN/amediumMEDIUM

The website dune.com is currently inaccessible due to a Cloudflare Web Application Firewall (WAF) block, which prevents access to any substantive content. As a result, no direct business descriptions, policies, or contact information are available for analysis. The domain is well-established, registered since 1997, and shows no signs of privacy protection or suspicious registration patterns, indicating legitimacy. The technical infrastructure includes Cloudflare security services and hosting via Amazon Registrar, Inc. However, the inability to access the actual website content severely limits the assessment of the company's digital maturity and security posture beyond the presence of a robust WAF. Given the block, the security posture is partially observable only through the presence of Cloudflare protection, but no detailed security policies or incident response information are available. Privacy compliance indicators such as GDPR adherence, cookie consent mechanisms, and data protection officer contacts are not found. The lack of accessible content also precludes evaluation of business credibility, user experience, or marketing practices. Overall, the site appears legitimate based on WHOIS data but is currently inaccessible for a full security and compliance audit. Strategic recommendations focus on resolving access issues to enable comprehensive analysis and ensuring that privacy and security policies are publicly accessible once the site is reachable.

35
35
2
80
75
85
100
securitycloudflareblockedwafprotection
Cloudflare
2025-09-06T22:41:29.101Z
cedar.money favicon

MBD Finance Technology Ltd. (DBA Cedar)

cedar.money

0
FinanceUnited StatesmediumMEDIUM

Cedar Money, operated by MBD Finance Technology Ltd., is a fintech company specializing in secure, scalable cross-border payment solutions primarily targeting businesses operating in Africa and global markets. The platform offers competitive exchange rates, high-volume transaction capabilities, and a seamless user experience through web and mobile applications. Cedar positions itself as a trusted B2B payment orchestrator, leveraging partnerships with regulated financial institutions worldwide to facilitate efficient international payments and collections. Technically, the website is built on the Webflow platform, utilizing modern JavaScript libraries and analytics tools such as Google Analytics, Facebook Pixel, Segment, and FullStory. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, providing a professional and user-friendly interface. The presence of multi-factor authentication and regular security audits mentioned on the site indicates a mature security posture, although explicit security headers and incident response disclosures could be improved. From a security perspective, the site enforces HTTPS and employs multiple tracking and marketing scripts, which are standard for fintech platforms but require careful management to maintain privacy compliance. The absence of a cookie consent mechanism is a minor compliance gap. WHOIS data is privacy protected, which is common in the fintech sector to safeguard sensitive registrant information, and does not raise immediate legitimacy concerns given the professional site content and business model. Overall, Cedar Money presents a credible, well-structured fintech service with strong business and technical foundations. Strategic recommendations include enhancing transparency around security policies, implementing cookie consent for GDPR compliance, and maintaining vigilance on third-party script security to uphold trust and regulatory adherence.

60
53
47
55
75
80
100
financecross-borderpaymentsb2bfintechafrica+2 more
Webflow CMSjQuerySwiperJSGoogle Tag Manager+5

Partner Domains:

intercom.help
partner
calendly.com
partner
2025-09-06T22:41:19.083Z
hyperbeat.org favicon

Hyperbeat

hyperbeat.org

0
TechnologyN/asmallMEDIUM

Hyperbeat is a decentralized finance (DeFi) platform focused on the HyperEVM blockchain ecosystem, offering users the ability to earn passive yield, borrow assets, and unlock leverage through automated strategies. The platform targets DeFi users and investors interested in leveraging Hyperliquid assets to grow their holdings. Positioned as a niche player within the HyperEVM space, Hyperbeat emphasizes ease of use and native leverage capabilities. Technically, the website is built using modern web technologies including React and Next.js, hosted on Vercel, and integrates blockchain wallet functionality via Privy. The site demonstrates good performance, mobile optimization, and SEO practices. Analytics are implemented through Google Tag Manager, indicating moderate user tracking. From a security perspective, the site enforces HTTPS and uses embedded wallet iframes securely. However, explicit security headers are not clearly present, and there is no published security policy or incident response contact information. The absence of a cookie consent mechanism and vulnerability disclosure reduces privacy compliance and security transparency. Overall, the website is professional and functional with a moderate trust level. The lack of WHOIS transparency and direct contact details slightly reduce credibility. Strategic improvements in security headers, privacy compliance, and transparency would enhance the platform's trustworthiness and compliance posture.

30
53
2
40
69
70
100
defiblockchainfinancehyperevmyield+2 more
ReactNext.jsJavaScriptWeb3+3
2025-09-06T22:41:14.075Z
byzantine.fi favicon

Byzantine Finance

byzantine.fi

0
FinanceFinlandsmallMEDIUM

Byzantine Finance operates as an institutional gateway to digital assets, specializing in restaking strategies and vault deployment within the decentralized finance (DeFi) ecosystem. The company targets institutional clients, curators, and developers seeking secure, compliant, and flexible staking solutions. Their platform enables custom vault creation, restaking yield aggregation, and API-first integration, positioning them as a key player in the emerging restaking market. The website reflects a professional and modern digital presence with strong branding and multiple industry partnerships, enhancing credibility. Technically, the website is built on Webflow CMS with modern web technologies including Google Fonts, Google Tag Manager, and DotLottie animations. It is well-optimized for mobile and desktop, with fast loading times and good accessibility. Security measures include HTTPS enforcement and Google reCAPTCHA on forms, though explicit security policies and headers are not publicly documented. Privacy compliance is limited by the absence of privacy and cookie policies. The security posture is solid but could be improved by publishing formal policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or suspicious elements were detected. WHOIS data confirms domain legitimacy with consistent registrant information matching the business claims. Overall, Byzantine Finance presents a trustworthy and professional digital asset infrastructure platform with room for enhanced privacy and security transparency.

60
28
35
85
75
85
100
financedefirestakinginstitutionalblockchain+2 more
Webflow CMSGoogle Fonts (Urbanist, Manrope)Google reCAPTCHAGoogle Tag Manager+3

Partner Domains:

eigenlayer.xyz
partner
symbiotic.fi
partner

+3 more partners

2025-09-06T22:41:09.066Z
ika.xyz favicon

Ika

ika.xyz

0
TechnologyN/asmallMEDIUM

Ika is a newly founded technology company specializing in the development of a sub-second Multi-Party Computation (MPC) network designed to scale to 10,000 transactions per second and support hundreds of signer nodes with zero-trust security. Positioned as an innovator in the blockchain and Web3 ecosystem, Ika focuses on enabling multi-chain coordination on the Sui blockchain, targeting Web3 developers, institutional users, and blockchain builders. The company offers key services including scalable MPC infrastructure, cryptographic primitives like dWallet, and interoperability solutions for digital assets across multiple blockchains. Technically, the website is built on modern web technologies including Webflow CMS, Google Fonts, and Cloudflare DNS services. It employs minimal user tracking via Plausible Analytics, ensuring a lightweight and privacy-conscious user experience. The site is mobile-optimized with good performance and SEO practices, although accessibility features are basic. The domain is very recently registered, consistent with the company's founding year 2024, and uses HTTPS with domain transfer protections in place, though DNSSEC is not enabled. From a security perspective, the website enforces HTTPS and has domain status protections but lacks visible security headers and published security policies. There are no privacy or cookie policies found, indicating potential compliance gaps with GDPR and other privacy regulations. No contact emails or phone numbers are provided, limiting direct communication channels. The site demonstrates trust through partner logos, a whitepaper, and links to Github and documentation, but could improve transparency and compliance. Overall, Ika presents a professional and credible front as a cutting-edge blockchain technology provider. The main risks relate to privacy compliance and security policy transparency. Strategic recommendations include publishing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact and incident response information to enhance trust and regulatory compliance.

60
70
35
75
72
80
100
blockchainmpcweb3suicryptography+3 more
Webflow CMSGoogle Fonts (Manrope, Merriweather)Cloudflare DNSPlausible Analytics

Partner Domains:

dwallet.io
partner
sui.io
partner

+1 more partners

2025-09-06T22:40:28.986Z
othentic.xyz favicon

Othentic Labs

othentic.xyz

0
TechnologyN/asmallMEDIUM

Othentic Labs operates the Othentic Stack, a self-deploy infrastructure framework designed to build decentralized systems and Actively Validated Services (AVS). The company targets developers and operators in the blockchain and decentralized technology space, offering modular components and node software to facilitate shared security and network orchestration. The website positions Othentic as a technology enabler with credible partnerships and endorsements from notable entities such as Coinbase Ventures and Collider. Technically, the website is built on modern web technologies including Webflow CMS, Google Fonts, and integrates Google Tag Manager for analytics. The site is mobile optimized and provides a good user experience with clear navigation and professional design. However, some accessibility features are basic and there is room for improvement in security headers and privacy compliance. From a security perspective, the site enforces HTTPS and uses Botpoison CAPTCHA for form protection, indicating a good baseline security posture. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit privacy and cookie policies, as well as missing security headers, represent compliance and security gaps that should be addressed. Overall, the website is trustworthy and professional, with a strong focus on decentralized technology. The domain uses privacy protection for WHOIS data, which is justified for a tech startup. Strategic recommendations include enhancing privacy compliance, publishing security policies, and improving security headers to strengthen the security posture and regulatory adherence.

60
53
2
50
72
85
100
decentralizedblockchainavssharedsecuritytechnology+6 more
Webflow CMSGoogle FontsjQuery 3.5.1Google Tag Manager (gtag.js)+2

Partner Domains:

redstone.finance
partner
fhenix.io
partner

+3 more partners

2025-09-06T22:40:03.750Z
alonso.network favicon

Alonso Network

alonso.network

0
TechnologyN/asmallMEDIUM

Alonso Network is a professional technology-focused blog and consulting platform that provides insightful commentary and thought leadership on software engineering, technology culture, and business. The site targets software engineers and technology professionals seeking high-quality, principled content that challenges mainstream software development norms. The business model appears to be content subscription combined with consulting or coaching services, supported by a well-maintained blog and social media presence. Technically, the website is built on the Ghost CMS platform, leveraging modern JavaScript libraries and Google services such as reCAPTCHA Enterprise and Tag Manager. The site demonstrates excellent design quality, mobile optimization, and SEO practices, resulting in a fast and accessible user experience. However, some security best practices like explicit security headers and cookie consent mechanisms are missing. From a security perspective, the site uses HTTPS and integrates Google reCAPTCHA Enterprise to protect forms, indicating a good baseline security posture. No vulnerabilities or exposed sensitive data were detected. The lack of WHOIS data transparency due to TLD restrictions slightly reduces trust but does not detract significantly from the site's legitimacy given the professional content and consistent branding. Overall, Alonso Network presents a low-risk profile with strong content quality and technical implementation. Strategic improvements in privacy compliance and security policy publication would enhance trust and regulatory adherence.

55
53
17
75
65
65
100
technologysoftwareengineeringblogconsultingsecurity+2 more
Ghost CMSJavaScriptGoogle reCAPTCHA EnterpriseFloating Share Button+4
2025-09-06T22:38:40.984Z
httpster.net favicon

Httpster

httpster.net

0
TechnologyAustraliasmallHIGH

Httpster is a niche website dedicated to curating and showcasing website design inspiration, featuring over 3100 hand-picked websites. The platform targets web designers, developers, and creative professionals seeking innovative and award-winning design ideas. The business operates primarily as a content curation and inspiration gallery, with a small but consistent market presence since its founding in 2012 in Tasmania, Australia. The website offers categorized browsing by style and type and a newsletter subscription to engage its audience. Technically, the website is built with modern web standards including HTML5, CSS3, and JavaScript, and leverages Google Tag Manager for analytics. It is hosted on Linode, a reputable hosting provider, and demonstrates good performance and mobile optimization. However, no CMS or major frameworks were detected, indicating a likely custom or static site architecture. From a security perspective, the site uses HTTPS (implied by external scripts), but lacks DNSSEC and security headers, which are recommended to enhance security posture. No sensitive data exposure or vulnerable libraries were detected, but the absence of cookie consent mechanisms and security policies indicates room for improvement in privacy compliance and security transparency. Overall, Httpster presents a professional and trustworthy platform with good content quality and technical implementation. Strategic improvements in security headers, privacy compliance, and contact transparency would enhance its security posture and user trust.

15
53
2
70
72
45
40
websitedesigninspirationgallerycreativeaward-winning+3 more
HTML5CSS3JavaScriptGoogle Tag Manager+2
2025-09-06T21:36:46.717Z
theinspirationgrid.com favicon

The Inspiration Grid

theinspirationgrid.com

0
MediaN/asmallMEDIUM

The Inspiration Grid is a niche media platform established in 2011 that provides daily curated design inspiration for creatives worldwide. It focuses on various creative disciplines including design, art, illustration, photography, and branding. The website targets creative professionals and enthusiasts seeking fresh ideas and showcases creative talent globally. Its business model revolves around content publishing and advertising partnerships, positioning itself as a trusted source of creative inspiration in the media industry. Technically, the website is built using modern web technologies such as React and Gatsby, hosted by DreamHost with Cloudflare DNS services. It employs Google Analytics and Google Tag Manager for analytics and tracking. The site demonstrates good performance, mobile optimization, and SEO practices, though accessibility features are basic. The presence of comprehensive privacy and cookie policies with consent mechanisms indicates a mature approach to privacy compliance. From a security perspective, the site uses HTTPS with good SSL configuration and some security best practices. However, it lacks explicit security headers like Content-Security-Policy and X-Frame-Options, which are recommended for enhanced protection. No critical vulnerabilities or exposed sensitive data were detected. The domain WHOIS data is consistent with the website's profile, showing a long registration history and no privacy protection, supporting its legitimacy. Overall, The Inspiration Grid presents a professional, trustworthy, and content-rich platform with a solid technical foundation and good privacy compliance. Strategic improvements in security headers and accessibility could further enhance its security posture and user experience.

30
65
17
60
42
80
100
designartphotographyillustrationbranding+4 more
ReactGatsbyGoogle AnalyticsCloudflare DNS
2025-09-06T21:36:41.705Z
aweb.page favicon

AWeber Systems, Inc.

aweb.page

0
TechnologyUnited StateslargeMEDIUM

AWeber Systems, Inc. is a well-established technology company specializing in email marketing and landing page building solutions for small businesses and entrepreneurs. Their flagship product, the AWeber Landing Page Builder, enables users to create high-converting landing pages with integrated email automation, ecommerce payment processing via Stripe, and analytics tracking without requiring coding skills. The company has a strong market presence with a large customer base and positive user ratings, positioning itself as a reliable SaaS provider in the digital marketing space. Technically, the website employs a modern technology stack including jQuery, Google Tag Manager, Visual Website Optimizer, Kissmetrics, and Google reCAPTCHA to ensure performance, user tracking, and security. The site is mobile-optimized, accessible, and SEO-friendly, with fast loading times and clear navigation. Integration with third-party services like Stripe and Canva enhances the platform's capabilities and user experience. From a security perspective, the site enforces HTTPS, uses reCAPTCHA to protect forms, and includes a detailed Service Agreement outlining prohibited activities and data protection commitments. While explicit security headers are not visible in the HTML, the overall posture is strong with no evident vulnerabilities or exposed sensitive data. Incident response contact information is provided, demonstrating readiness to handle abuse or security incidents. Overall, AWeber's website reflects a mature, professional, and trustworthy business with comprehensive privacy and terms policies, strong branding, and a clear focus on customer support and compliance. The absence of WHOIS data in the raw output is likely a data retrieval issue and does not detract from the company's legitimacy. Strategic recommendations include enhancing visible security headers and increasing transparency around security policies to further strengthen trust.

45
65
27
87
82
90
100
landingpagebuilderemailmarketingecommercesmallbusinessautomation+4 more
jQueryGoogle Tag ManagerVisual Website Optimizer (VWO)Kissmetrics+2

Partner Domains:

stripe.com
partner
2025-09-06T21:35:57.188Z