Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2029 of 2974|Showing 101401-101450 of 148689
itameri.fi favicon

Suomen Ympäristökeskus

itameri.fi

0
GovernmentFinlandmediumMEDIUM

The website itameri.fi is an official Finnish government environmental portal managed by Suomen Ympäristökeskus (Finnish Environment Institute). It provides educational and informational content about the Baltic Sea, targeting the general public interested in environmental data, nature, and maritime conditions. The site offers multilingual support in Finnish, Swedish, and English, enhancing accessibility for a broader audience. The business model is informational and service-oriented, focusing on environmental awareness and data dissemination. Technically, the website is built on WordPress and employs modern web technologies including Google Tag Manager for analytics and CookieHub for cookie consent management. The site is mobile-optimized, accessible, and performs moderately well. Security posture is solid with HTTPS enforced and no exposed sensitive data, though DNSSEC is not implemented and some security headers could be improved. From a security and compliance perspective, the site lacks explicit privacy and terms of service pages, which slightly reduces privacy compliance scores. No contact emails or phone numbers are directly visible, which may impact user trust and support accessibility. The WHOIS data confirms the domain is legitimately registered to the Finnish Environment Institute with consistent registration details and a long domain age, indicating high legitimacy. Overall, the website is trustworthy, professionally maintained, and serves an important governmental informational role. Strategic improvements include publishing clear privacy and terms policies, enhancing DNS security with DNSSEC, and adding explicit security headers to strengthen the security posture further.

80
10
17
60
95
75
100
environmentbalticseagovernmenteducationnature+1 more
WordPressGoogle Tag ManagerCookieHubMercatorSSO+1
2025-07-10T02:23:41.124Z
syke.fi favicon

Suomen ympäristökeskus

syke.fi

0
GovernmentFinlandlargeMEDIUM

Suomen ympäristökeskus (Syke) is a Finnish governmental environmental research and expert center providing comprehensive environmental data, research, and services. The website serves as a portal for information about their activities, projects, publications, and open job positions, targeting environmental professionals, authorities, researchers, and the general public interested in environmental issues. The organization has a strong market position as a key national environmental authority in Finland, with a large operational size and a 30-year history. Technically, the website is built on Drupal 10, uses modern web technologies including SVG graphics, Google Tag Manager for analytics, and CookieHub for cookie consent management. The site is mobile-optimized, accessible, and SEO-friendly, with good performance characteristics. Security posture is solid with HTTPS, security headers, and no visible vulnerabilities, though explicit security policies and incident response information are not published. Overall, the site demonstrates a mature digital presence with strong privacy compliance and business credibility. The WHOIS data confirms the domain's legitimacy and consistency with the organization's identity. No suspicious or malicious indicators were found. Strategic recommendations include publishing explicit security and incident response policies, adding vulnerability disclosure mechanisms, and enhancing direct contact options for security matters.

65
10
17
85
95
60
100
environmentgovernmentresearchfinlandsustainability+1 more
Drupal 10Google Tag ManagerCookieHubSVG graphics
2025-07-10T02:23:15.984Z
wellcome.ac.uk favicon

Wellcome

wellcome.ac.uk

0
HealthcareUnited KingdomlargeMEDIUM

Wellcome is a globally recognized charitable foundation dedicated to advancing discovery research in life sciences, health, and wellbeing. The organization focuses on critical global health challenges including mental health, infectious diseases, and climate-related health issues. Their market position is strong, supported by a large portfolio of active grants and a significant charitable expenditure. The website reflects a professional and authoritative presence, targeting researchers, policymakers, and the general public interested in health and science. Technically, the website is built on modern frameworks such as Next.js and React, hosted on AWS infrastructure, and incorporates performance and accessibility best practices. The use of Google Tag Manager and Web Vitals indicates a mature approach to analytics and performance monitoring. The site is mobile-optimized and SEO-friendly, with structured data and meta tags properly implemented. From a security perspective, the site enforces HTTPS, employs domain status protections, and has a cookie consent mechanism aligned with GDPR requirements. However, DNSSEC is not enabled, and there is no explicit security policy or incident response contact information published. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, the website demonstrates a high level of professionalism, security, and compliance suitable for a large charitable organization. Strategic recommendations include enabling DNSSEC, publishing a formal security policy, and establishing a vulnerability disclosure program to further enhance trust and security posture.

15
68
2
85
67
85
100
healthresearchcharityscienceglobalhealth+3 more
ReactNext.jsGoogle Tag ManagerWeb Vitals+1

Partner Domains:

funding.wellcome.org
service
wellcomecollection.org
partner
2025-07-10T02:22:05.645Z
coalition-s.org favicon

cOAlition S

coalition-s.org

0
EducationN/amediumMEDIUM

cOAlition S operates as an international consortium promoting Plan S, an initiative to accelerate full and immediate Open Access to scientific publications. The organization targets research funders, academic institutions, and publishers to ensure publicly funded research is openly accessible. The website reflects a professional and authoritative presence with clear information about their mission, principles, and tools supporting Open Access. Technically, the website is built on WordPress, leveraging modern web technologies such as jQuery, Font Awesome, Google Analytics, and reCAPTCHA for security and analytics. The site is well-structured, mobile-optimized, and uses HTTPS, indicating a mature digital infrastructure. However, some security headers are missing, which could be improved to enhance security posture. Security-wise, the site enforces HTTPS and uses reCAPTCHA to protect forms, but lacks explicit security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy and cookie policies are present and indicate GDPR compliance, supporting user privacy and regulatory adherence. Overall, the website presents a low-risk profile with a strong business credibility and good technical implementation. The main limitation is the absence of WHOIS data, which restricts domain registration trust analysis. Strategic improvements in security headers and explicit security policies would further strengthen the site's security posture.

40
68
17
70
62
70
20
openaccessscientificpublishingplanscoalitionsresearchfunding+1 more
WordPressjQueryFont AwesomeGoogle Analytics+1
2025-07-10T02:21:30.407Z
antleaf.com favicon

Antleaf Ltd.

antleaf.com

0
EducationUnited KingdomsmallMEDIUM

Antleaf Ltd. is a specialized digital consultancy operating primarily in the higher-education and research sectors. The company focuses on scholarly communications, repositories, data and metadata management, and web system design and development. Their market position is that of a niche expert consultancy serving academic and research institutions with tailored technical and project management services. The website reflects a small but professional business with clear branding and a consistent message aligned with their domain expertise. Technically, the website is built using the Hugo static site generator, leveraging Bootstrap for responsive design and Google Fonts for typography. The site is hosted with DNS managed by Cloudflare and uses Plausible Analytics for privacy-conscious visitor tracking. The technical implementation is modern and performant, with good mobile optimization and SEO practices, though accessibility features are basic. From a security perspective, the site uses HTTPS and Cloudflare DNS but lacks DNSSEC and visible security headers, which are recommended for enhanced protection. No privacy or cookie policies are published, representing a compliance gap especially relevant under GDPR. No incident response or vulnerability disclosure information is provided. The WHOIS data is consistent and trustworthy, with domain registration dating back to 2012, matching the company's founding timeline. Overall, the website is professional and trustworthy but would benefit from improved privacy compliance and enhanced security headers. The risk level is moderate with no critical vulnerabilities detected, but compliance improvements are advised.

30
35
2
70
65
75
100
consultancyhigher-educationresearchscholarlycommunicationsrepositories+2 more
BootstrapGoogle Fonts (Roboto, Roboto Mono)Hugo static site generatorPlausible Analytics
2025-07-10T02:21:25.384Z
appkee-manager.cz favicon

APPKEE s.r.o.

appkee-manager.cz

0
TechnologyCzech RepublicsmallHIGH

APPKEE s.r.o. operates a Czech-language software platform focused on mobile application management and development, primarily targeting businesses and developers requiring app creation and management tools for iOS and Android. The company has established a consistent brand presence since its domain registration in 2020 and maintains a professional website with clear navigation and relevant business content. The platform leverages modern JavaScript libraries and the Nette Framework, hosted on Czech-based servers, indicating a localized and technically competent infrastructure. From a security perspective, the website employs client-side validation and uses HTTPS (implied though not explicitly confirmed in provided data). However, it lacks visible security headers such as Content Security Policy or HSTS, and no explicit cookie consent mechanism is present, which are areas for improvement. The absence of contact information and incident response details on the login page limits transparency and user trust. No signs of WAF or blocking mechanisms were detected, allowing full content accessibility. Overall, the website demonstrates moderate technical maturity and business credibility but would benefit from enhanced security practices and privacy compliance measures. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic improvements in security headers, cookie consent, and contact transparency would strengthen the platform's trustworthiness and compliance posture.

50
33
2
65
72
65
20
mobileappmanagementloginappkeesoftwareczech
jQuery 3.4.1jQuery UI 1.12.1SweetAlert2Leaflet 1.9.2+1
2025-07-10T02:20:40.097Z
energycenter.org favicon

Center for Sustainable Energy

energycenter.org

0
EnergyUnited StatesmediumMEDIUM

The Center for Sustainable Energy is a well-established nonprofit organization focused on advancing decarbonization through sustainable, equitable, and resilient transportation, buildings, and communities. Their services include program implementation, advisory, incentive management, policy analysis, and outreach, supported by their proprietary software platform Caret® for electric vehicle policy. The organization targets government agencies, utilities, policymakers, and clean energy stakeholders, positioning itself as a national leader in clean energy program management. Technically, the website is built on Drupal 10 with modern frameworks such as Bootstrap and FontAwesome, and integrates analytics and marketing tools like Google Analytics, Google Tag Manager, and Marketo. The site is mobile-optimized, accessible, and SEO-friendly, hosted likely via GoDaddy infrastructure. Performance is moderate with good technical implementation. From a security perspective, the site uses HTTPS and follows some best practices like external link security attributes, but lacks visible security headers and a cookie consent mechanism, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected. The WHOIS data shows a long-established domain with privacy protection appropriate for a nonprofit. Overall, the website is professional, trustworthy, and content-rich, with minor gaps in privacy compliance and security headers. Strategic recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, and publishing security policies to enhance trust and compliance.

50
53
17
80
95
85
100
nonprofitcleanenergysustainabilityelectricvehiclesdecarbonization+1 more
Drupal 10Bootstrap CSSFontAwesomeGoogle Analytics+3
2025-07-10T01:17:07.642Z
E

Elsevier

expertlookup.com

0
OtherN/aMEDIUM

Expert Lookup was a service provided by Elsevier, now officially sunset as indicated by the website's sole content: a sunset notice message. The website no longer offers active services or user engagement features. The domain is well-established, created in 2006, and hosted on Amazon AWS infrastructure, indicating a previously professional setup. However, the current website is minimalistic with no interactive elements, policies, or contact information, reflecting its discontinued status. Technically, the website is very basic with no detected scripts, frameworks, or CMS. The hosting is via AWS DNS servers, but no advanced security headers or DNSSEC are enabled. The site is accessible without WAF or security challenges but lacks modern SEO, accessibility, and privacy compliance features. The absence of privacy and cookie policies indicates non-compliance with GDPR and related regulations. From a security perspective, the site shows minimal security posture with no visible security headers or incident response contacts. The domain registration is transparent and consistent with a legitimate business domain, registered through SafeNames Ltd. The domain age supports the legitimacy of the business history, but the website content no longer reflects an active service. Overall, the website poses low risk but also low value due to its discontinued status. Strategic recommendations include improving security configurations if the domain is repurposed, adding privacy and cookie policies for compliance, and enhancing content quality and user engagement if relaunched.

15
50
2
60
72
75
100
elsevierexpertlookupsunsetnotice
2025-07-10T01:17:02.587Z
onfa.org favicon

Opera Nazionale per i Figli degli Aviatori

onfa.org

0
GovernmentItalysmallHIGH

ONFA (Opera Nazionale per i Figli degli Aviatori) is an Italian non-profit organization dedicated to providing social assistance and support to the children of aviators. The website serves as an informational and community platform targeting families connected to the aviation sector in Italy. The organization operates with a focused mission in the government and non-profit sectors, maintaining a small organizational size and a niche market position. The website is built on WordPress using the Divi theme, with integration of Iubenda for cookie consent management, reflecting a moderate level of digital maturity and compliance with privacy regulations such as GDPR. Technically, the website is hosted on a provider using Host Anycast DNS servers, secured with HTTPS, and employs modern web fonts and cookie consent scripts. Performance and mobile optimization are rated as moderate to good, with basic accessibility features. SEO practices appear adequate with proper meta tags and structured data. Security posture is decent with HTTPS enforced and domain transfer protections enabled, but could be improved by enabling DNSSEC and adding more comprehensive security headers and vulnerability disclosure mechanisms. Overall, the security posture is solid for a small non-profit, with no critical vulnerabilities detected. Privacy compliance is strong, supported by a comprehensive privacy and cookie policy with explicit consent mechanisms. However, the absence of terms of service, security policy, and incident response contact details indicates areas for improvement. The website content is safe and appropriate for a general audience, with no adult or questionable content. Strategically, ONFA should focus on enhancing security headers, publishing a security.txt file, and providing clearer contact information to improve trust and compliance. These steps will strengthen their security culture and better protect their community members.

20
68
17
70
32
70
-
non-profitaviationsocialassistanceitalianwordpress+2 more
WordPressDivi ThemeGoogle FontsIubenda Cookie Consent
2025-07-10T01:16:17.347Z
anfcma.it favicon

Associazione Nazionale Famiglie Caduti e Mutilati dell'Aeronautica

anfcma.it

0
GovernmentItalysmallHIGH

The Associazione Nazionale Famiglie Caduti e Mutilati dell'Aeronautica (A.N.F.C.M.A.) is a longstanding Italian non-profit association dedicated to supporting families of fallen and mutilated members of the Italian Air Force. The website serves as an informational and engagement platform, offering details about the association's history, mission, activities, staff, and contact information. It targets families of military personnel, researchers, and members of the association. The organization operates with a moral and supportive mission rather than commercial intent, providing scholarships, awards, psychological support, and legal assistance to its members. Technically, the website employs modern front-end technologies including Blazor, Bootstrap, and various JavaScript libraries for UI enhancements. The site is mobile-optimized with good navigation and content structure, though performance is moderate. The domain is relatively new (created in 2023) and recently expired, which poses a risk to availability and trust. No CMS or hosting provider details were identified. Privacy and cookie policies are present and GDPR compliance appears addressed, but no explicit security policies or incident response contacts are found. From a security perspective, the site uses HTTPS and DNSSEC is enabled, but lacks visible security headers and explicit security documentation. The expired domain status is a critical risk factor. No analytics or advertising scripts were detected, indicating a privacy-conscious approach. Overall, the website is professional and trustworthy but requires urgent domain renewal and enhanced security practices. Strategically, the association should prioritize domain renewal, implement security headers, document security policies, and establish incident response contacts to improve trust and resilience. Enhancing technical performance and accessibility would further benefit user experience.

35
83
17
55
72
15
-
non-profitaeronauticacadutimutilatiassociazione+3 more
BlazorBootstrapAOS (Animate On Scroll)Swiper+3

Partner Domains:

www.difesa.it
partner
www.aeronautica.difesa.it
partner

+3 more partners

2025-07-10T01:16:12.327Z