Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1688 of 2975|Showing 84351-84400 of 148702
code.golf favicon

Cloudflare, Inc

code.golf

0
TechnologyUnited KingdomsmallMEDIUM

Code Golf is an online platform dedicated to coding challenges focused on minimizing code length, appealing primarily to programmers and coding enthusiasts. The website offers a variety of coding problems categorized by themes such as sequences, mathematics, gaming, and art, fostering a niche community of developers interested in code golfing. The platform integrates community features such as Discord for advice and GitHub for source code transparency, positioning itself as a specialized educational and recreational coding site. Technically, the website employs modern web standards including HTML5, CSS3 with light and dark themes, and JavaScript ES modules. Hosting and domain registration are managed by Cloudflare, ensuring reliable performance and security infrastructure. The site is mobile-optimized and demonstrates good SEO practices with appropriate meta tags and Open Graph data. However, no CMS or major frameworks are detected, indicating a custom or lightweight implementation. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. However, it lacks visible security headers and does not provide privacy, cookie, or terms of service policies, which are important for compliance and user trust. No contact information or incident response channels are provided, limiting transparency. The absence of a security.txt or vulnerability disclosure policy suggests room for improvement in security communication. Overall, Code Golf presents a well-structured, content-rich platform with a strong technical foundation but requires enhancements in privacy compliance, security best practices, and user trust mechanisms to improve its security posture and regulatory adherence.

60
50
17
40
75
75
40
code-golfprogrammingcodingchallengesdevelopertechnology+2 more
HTML5CSS3JavaScript ES Modules
2025-07-27T11:46:03.100Z
cambridgeconsultants.com favicon

Cambridge Consultants

cambridgeconsultants.com

0
TechnologyN/alargeMEDIUM

Cambridge Consultants is a global deep tech innovation consultancy operating as the deep tech powerhouse within Capgemini. They specialize in pioneering transformative technologies across sectors such as energy, telecommunications, healthcare, and transportation. Their services include advanced computing, AI, biotechnology, quantum technology, and digital transformation, targeting large enterprises and ambitious startups. The website reflects a mature digital presence with professional design, clear navigation, and comprehensive content showcasing their expertise and industry leadership. Technically, the site is built on WordPress with modern plugins and analytics tools, offering good performance and mobile optimization. Security posture is solid with HTTPS and cookie consent mechanisms, though some security headers and explicit policies could be improved. Privacy compliance is well addressed with detailed policies and consent management. The WHOIS data is missing or unregistered publicly, which is unusual but the site’s affiliation with Capgemini and professional presentation support its legitimacy. Overall, the site scores well on content quality, technical implementation, security, privacy, and business credibility, making it a trustworthy and authoritative digital asset for Cambridge Consultants.

75
95
47
70
42
85
100
deeptechinnovationtechnologyconsultingcapgeminiai+5 more
WordPress 6.8.2Yoast SEO PremiumSlider Revolution 6.7.34jQuery+2

Partner Domains:

capgemini.com
parent
2025-07-27T11:42:57.720Z
hec.ca favicon

HEC Montréal

hec.ca

0
EducationCanadalargeMEDIUM

HEC Montréal is a leading Quebec-based university-level management school recognized for its excellence in teaching and research. The institution offers a wide range of programs including degree courses, continuing education, and executive training, targeting students, faculty, alumni, and business partners. It holds prestigious triple accreditation (AMBA, AACSB, EQUIS), positioning it strongly in the global education market. The website reflects a professional and consistent brand image with rich content and clear navigation, supporting its educational mission. Technically, the website employs modern web technologies such as jQuery, FontAwesome, and Google Tag Manager, with a responsive design optimized for mobile devices. The presence of cookie consent mechanisms and privacy policies indicates a mature approach to privacy compliance. Performance is moderate with room for optimization, and accessibility features are well implemented. From a security perspective, the site uses HTTPS with good SSL configuration and secure form practices. However, explicit security headers are missing, and no public security policy or incident response contacts are provided, which could be improved. No vulnerabilities or exposed sensitive data were detected. The domain WHOIS data is unavailable due to privacy protection, which is justified for this type of institution. Overall, the website is trustworthy, professional, and secure with minor areas for improvement in security transparency and technical optimization. The risk profile is low, and the institution demonstrates strong digital maturity aligned with its business goals.

65
35
2
70
77
75
100
educationuniversitymanagementresearchhecmontral+3 more
jQuery 3.5.0FontAwesome 6.4.2Google Tag ManagerGoogle Analytics+1
2025-07-27T11:42:02.624Z
utoronto.ca favicon

University of Toronto

utoronto.ca

0
EducationCanadalargeMEDIUM

The University of Toronto website represents a globally recognized public research university based in Toronto, Canada. The site provides comprehensive information about academic programs, research initiatives, campus life, and community engagement. It targets a broad audience including prospective and current students, faculty, staff, alumni, donors, and visitors. The university maintains a strong market position as a top-ranked institution with a large scale of operations and a rich history dating back to 1827. Technically, the website is built on Drupal 10 CMS, leveraging modern web technologies and analytics tools such as Google Tag Manager, Microsoft Clarity, and New Relic Browser monitoring. The site demonstrates excellent performance, mobile optimization, and accessibility features, ensuring a high-quality user experience. SEO practices are well implemented with proper metadata and structured data. From a security perspective, the site enforces HTTPS with strong SSL configuration and security headers including CSP, HSTS, and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response information are not prominently published, and no vulnerability disclosure or security.txt file was found. Privacy compliance is strong with clear privacy and cookie policies, including consent mechanisms and GDPR adherence. Overall, the website is highly professional, trustworthy, and secure, reflecting the stature of the University of Toronto. The absence of WHOIS data is likely due to privacy protection policies common for large institutions. Strategic recommendations include publishing detailed security policies, incident response contacts, and vulnerability disclosure information to further enhance trust and transparency.

55
58
17
75
85
75
100
educationuniversityresearchpublicinstitutioncanada+3 more
Drupal 10Google Tag ManagerNew Relic Browser monitoringFontAwesome icons+1
2025-07-27T11:41:52.601Z
gultsch.social favicon

Daniel Gultsch

gultsch.social

0
TechnologyGermanysmallMEDIUM

The website gultsch.social is an independent Mastodon instance operated by Daniel Gultsch, a recognized figure in the open source and XMPP communities. The platform emphasizes ethical design, decentralization, and user data ownership, catering to users interested in federated social networking. The business model is community-driven without advertising, focusing on technology enthusiasts and privacy-conscious users. The domain registration and website content are consistent, reflecting a small but credible operation. Technically, the site runs Mastodon 4.4.0 with modern web technologies including Ruby on Rails and React. The infrastructure appears well-maintained with HTTPS enforced and a moderate performance profile. Mobile optimization and accessibility are adequate, though some SEO and security header enhancements could improve the overall technical posture. Security-wise, the site benefits from HTTPS and domain transfer protections but lacks DNSSEC and explicit security policies. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a basic privacy policy but no cookie consent mechanism. No incident response or vulnerability disclosure information is published. Overall, the site presents a low-risk profile with strong business credibility and technical maturity for its scale. Strategic improvements in security headers, privacy compliance, and incident response transparency would enhance trust and resilience.

75
58
17
60
72
70
40
mastodonsocialnetworkdecentralizedopensourcexmpp+2 more
Mastodon 4.4.0Ruby on RailsReactJavaScript ES Modules+1
2025-07-27T11:41:42.582Z
process-one.net favicon

ProcessOne

process-one.net

0
TechnologyN/asmallMEDIUM

ProcessOne operates as a technology company specializing in scalable, powerful, and versatile multiprotocol messaging platforms. Their offerings include advanced messaging solutions and the ejabberd XMPP server, targeting businesses and developers requiring robust messaging infrastructure. The company positions itself as a proven provider powering messaging platforms supporting billions of users globally. The website content is professional and well-structured, reflecting a focused business model in software development for messaging technologies. Technically, the website is built on the Ghost CMS platform, utilizing modern web technologies such as JavaScript, Alpine.js, and CSS3. The site demonstrates good mobile optimization and SEO practices, with moderate performance. Analytics are implemented via privacy-conscious Fathom Analytics, indicating a moderate level of digital maturity and privacy awareness. However, the absence of explicit privacy and cookie policies, as well as security headers, suggests room for improvement in compliance and security hardening. From a security perspective, the site enforces HTTPS and shows no signs of exposed sensitive data or vulnerable libraries. Nonetheless, the lack of security headers, vulnerability disclosure information, and incident response contacts limits the overall security posture. Critically, the WHOIS data is unavailable or indicates the domain may not be registered, which raises significant legitimacy concerns despite the professional appearance of the website. Overall, the website presents a credible business front with solid technical implementation but suffers from critical gaps in domain registration transparency and privacy compliance. Strategic recommendations include establishing clear privacy and cookie policies, publishing security and incident response information, implementing security headers, and resolving domain registration issues to enhance trust and compliance.

15
50
17
60
52
75
100
messagingtechnologysoftwarescalablemultiprotocol+2 more
Ghost CMSJavaScriptAlpine.jsCSS3+3
2025-07-27T11:41:22.548Z
flathub.org favicon

Flathub

flathub.org

0
TechnologyUnited StatesmediumMEDIUM

Flathub is a prominent app store platform dedicated to Linux users, providing a centralized repository for discovering, installing, and updating Linux applications packaged as Flatpaks. Established in 2016, it serves a global audience of Linux enthusiasts and developers, offering hundreds of apps including popular titles like Firefox, Telegram, and GIMP. The platform emphasizes ease of use and broad compatibility across Linux distributions, positioning itself as the primary app distribution channel in the Linux ecosystem. Technically, Flathub employs modern web technologies including React and Next.js, delivering a fast, responsive, and accessible user experience optimized for both desktop and mobile devices. The site is hosted with reputable providers and uses HTTPS with strong SSL configurations, ensuring secure communications. Analytics are handled via Matomo, reflecting a moderate level of user tracking with some privacy considerations. From a security perspective, Flathub demonstrates good practices such as HTTPS enforcement and domain transfer protection. However, it lacks explicit published privacy, cookie, security, and incident response policies on the main site, which are important for compliance and user trust. The domain registration is consistent and stable, reinforcing the legitimacy of the platform. Overall, Flathub presents a professional, trustworthy, and technically mature platform with room for improvement in privacy compliance and security transparency. Strategic enhancements in these areas would further strengthen user confidence and regulatory adherence.

95
58
25
70
100
70
100
linuxappstoreflatpakopensourcesoftwaredistribution
ReactNext.jsJavaScriptMatomo Analytics
2025-07-27T11:41:02.512Z
moonbase.lgbt favicon

Luna Sorcery

moonbase.lgbt

0
TechnologyUnited StatessmallHIGH

The website moonbase.lgbt is a personal site belonging to Luna, a software developer and reverse engineer who shares blog posts, artwork, and personal interests. The site serves as a portfolio and blog platform targeting a general audience interested in technology, demoscene art, and personal projects. The market position is niche, focusing on personal branding rather than commercial business operations. Technically, the site is hosted on DigitalOcean and uses a simple tech stack of HTML, CSS, JavaScript, and GoatCounter analytics. The site is well-structured, mobile-optimized, and performs well with fast loading times. However, it lacks advanced SEO and accessibility features and does not use a CMS or frameworks. From a security perspective, the site uses HTTPS but lacks DNSSEC and important security headers, which reduces its security posture. No privacy or cookie policies are present, and no contact information for security incidents is provided. The use of privacy protection in WHOIS is justified given the personal nature of the site. Overall, the site is safe, trustworthy, and suitable for general audiences but could improve compliance and security practices. The overall risk is low given the non-commercial nature, but strategic improvements in security headers, privacy policies, and contact transparency are recommended to enhance trust and compliance.

15
35
2
70
65
60
40
personalsoftwaredevelopmentreverseengineeringblogart+2 more
HTML5CSS3JavaScriptGoatCounter analytics
2025-07-27T10:40:40.659Z
coolstation.space favicon

COOLSTATION

coolstation.space

0
TechnologyIcelandsmallHIGH

Coolstation.space is a niche community website dedicated to the Space Station 13 gaming server and its player community. It provides access to game servers, forums, wiki documentation, and open source code repositories, fostering a retro gaming culture with active community engagement through IRC and Discord. The site targets Space Station 13 players and enthusiasts, operating as a small-scale community hub founded in 2021. Technically, the website uses a basic but functional tech stack including HTML5, Bootstrap CSS, and JavaScript. Hosting is provided via Namecheap with privacy-protected domain registration. The site is moderately optimized for performance and mobile devices but lacks advanced accessibility and SEO features. No CMS or complex frameworks are detected. From a security perspective, the site uses HTTPS and has domain transfer protection but lacks DNSSEC and security headers such as CSP or HSTS. There are no visible privacy, cookie, or terms of service policies, and no incident response or vulnerability disclosure information is provided. Tracking is minimal, limited to a web hit counter. Overall security posture is basic with room for improvement. The website content is safe for general audiences, with no adult or explicit content detected. The site lacks formal business contact information and legal disclosures, which impacts trust and privacy compliance. The domain registration is privacy protected, which is justified for this type of community site. The overall risk is moderate, with recommendations to improve security headers, privacy policies, and contact transparency to enhance trust and compliance.

15
50
17
85
62
75
20
gamingcommunityspacestation13opensourcewebring+2 more
HTML5CSS (Bootstrap)JavaScript
2025-07-27T10:40:30.639Z
bambosh.dev favicon

Bambosh Internet Website

bambosh.dev

0
OtherN/asmallMEDIUM

The website bambosh.dev serves as a personal online presence for an individual known as Bambosh, providing links to their projects, social media profiles, and a donation channel via PayPal. The site is minimalistic, primarily informational, and targets a general audience interested in the individual's work or online persona. The business model is personal branding and community engagement rather than commercial enterprise. Technically, the site is built with basic HTML and CSS, enhanced with Font Awesome icons, and hosted on GitHub Pages, indicating a lightweight and fast-loading infrastructure with good mobile optimization but limited advanced features or frameworks. Security posture is minimal; no HTTPS status was explicitly provided, no security headers or policies are present, and no forms or data collection mechanisms exist, reducing the attack surface but also limiting user interaction. Privacy and compliance measures are absent, with no privacy or cookie policies, and no contact information for incident response or data protection officers. Overall, the site is low risk but lacks professional security and compliance maturity. Strategic improvements in security headers, privacy policies, and contact transparency are recommended to enhance trust and compliance.

15
35
17
60
95
75
100
personalportfoliodevelopersocialdonations
HTML5CSSFont Awesome 5.15.4JavaScript (Font Awesome Kit)

Partner Domains:

paypal.com
partner
2025-07-27T10:40:10.590Z
sylvie.lol favicon

home - sylvie.lol

sylvie.lol

0
TechnologyN/asmallMEDIUM

Sylvie.lol is a personal portfolio and blog website belonging to Sylvia (aka sylvxa), a full-stack software developer and programming enthusiast. The site serves as a platform to share programming knowledge, open source projects, and personal interests such as speedrunning and cats. It targets a niche audience of developers and tech hobbyists. The website is newly created in 2024 and reflects a small-scale personal brand rather than a corporate entity. Technically, the website uses standard modern web technologies including HTML5, CSS3, and JavaScript, with Cloudflare providing DNS and likely CDN services. The site is well-structured with good mobile optimization and SEO meta tags. However, it lacks advanced frameworks or CMS platforms, indicating a lightweight and custom-built approach. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and security headers such as Content-Security-Policy. There are no visible forms or data collection mechanisms, reducing attack surface but also limiting user interaction. Privacy and cookie policies are absent, which is a compliance gap. No incident response or vulnerability disclosure information is provided. Overall, sylvie.lol is a safe, well-maintained personal website with moderate trustworthiness. To improve, the owner should consider adding privacy and cookie policies, security headers, and contact information to enhance compliance and user trust.

15
50
2
70
75
70
100
personalportfoliosoftwaredevelopmentblogopensource
HTML5CSS3JavaScriptCloudflare DNS
2025-07-27T10:39:20.453Z
lona.moe favicon

Lonaasan

lona.moe

0
TechnologyGermanysmallMEDIUM

Lona.moe is a personal website belonging to Lonaasan, a 22-year-old software engineer from Germany. The site serves as a portfolio and community hub featuring programming projects, blog content, photography, and social links. It targets a general audience interested in cats, blahaj, and programming. The website is small scale, with a niche market position focused on personal branding and community engagement. Technically, the site uses standard web technologies including HTML5, CSS3, and JavaScript, with Cloudflare DNS hosting. The site is mobile optimized and accessible, with good SEO practices. However, DNSSEC is not enabled, and no advanced security headers are detected. The site uses a minimal tracking script (umami) for analytics, indicating a low level of user tracking. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and security headers. There is a potential XSS vulnerability in the citation block due to unsanitized HTML content. No privacy or cookie policies are present, which impacts compliance. The domain registration is privacy protected but consistent with the personal nature of the site. Overall, the security posture is moderate but could be improved with standard best practices. The overall risk is low given the personal and non-commercial nature of the site, but improvements in security headers, privacy policies, and content sanitization are recommended to enhance trust and compliance.

20
50
2
85
72
80
40
personalprogrammingblogcommunitycats+1 more
HTML5CSS3JavaScriptCloudflare DNS
2025-07-27T10:39:15.444Z
funtimes909.xyz favicon

Private by Design, LLC

funtimes909.xyz

0
TechnologyUnited StatessmallMEDIUM

The website funtimes909.xyz is a personal site operated by Amy, an 18-year-old technology and privacy enthusiast. The site serves as a platform to share personal interests, projects, and contact information, targeting a niche audience of tech and privacy advocates. The business model is non-commercial, focusing on hobbyist and community engagement with open source and privacy tools. The domain is registered under a privacy protection service, consistent with the personal and privacy-focused nature of the site. Technically, the site is built with basic HTML and CSS, hosted behind Cloudflare DNS services, and uses HTTPS for secure communication. The site lacks advanced frameworks or CMS and has moderate performance and basic mobile optimization. SEO and accessibility features are minimal but functional. No analytics or tracking scripts are present, reflecting a strong privacy orientation. From a security perspective, the site benefits from HTTPS and domain transfer protections but lacks security headers and formal policies such as privacy or cookie policies. No vulnerability disclosure or incident response information is provided. The absence of these elements suggests room for improvement in security posture and compliance. Overall, the site is safe, trustworthy, and suitable for general audiences. The risk level is low given the personal nature and limited scope of the site. Strategic recommendations include enabling DNSSEC, adding security headers, publishing privacy and cookie policies, and establishing vulnerability disclosure mechanisms to enhance trust and security maturity.

15
50
47
60
75
75
100
technologyprivacyopensourcepersonalblog+1 more
HTML5CSSCloudflare DNS
2025-07-27T10:39:10.432Z