Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2087 of 2974|Showing 104301-104350 of 148685
whova.com favicon

Whova

whova.com

0
TechnologyUnited StatesmediumMEDIUM

Whova is a well-established technology company founded in 2012, specializing in providing an all-in-one event management platform that supports in-person, hybrid, and virtual events. Their platform includes award-winning event apps, registration and ticketing software, event management tools, marketing solutions, and exhibitor management. The company targets a broad range of event organizers including corporate, academic, government, association, and trade show sectors. Whova has a strong market position supported by industry awards, customer testimonials, and press coverage. Technically, the website is built on WordPress using the Divi theme and leverages modern web technologies including jQuery, Google Fonts, and YouTube APIs. Hosting is via AWS infrastructure, and the site demonstrates good performance, mobile optimization, and SEO practices. Privacy and cookie compliance are robust, with a clear cookie consent mechanism and comprehensive privacy policies. From a security perspective, the site uses HTTPS with good SSL configuration but lacks DNSSEC and some advanced security headers. No vulnerabilities or exposed sensitive data were detected. However, the absence of a public incident response or vulnerability disclosure policy is noted. Overall, the security posture is solid but could be improved with additional transparency and DNS security. The website is professional, trustworthy, and safe for general audiences. It employs extensive user tracking for analytics and marketing purposes but maintains GDPR compliance. Contact information is clearly provided, including a company email and phone number. Social media presence on Twitter and LinkedIn supports engagement and trust. Strategic recommendations include enabling DNSSEC, adding security headers, publishing incident response and vulnerability disclosure information, and continuing to enhance privacy transparency to maintain and improve trust and security posture.

70
80
2
85
67
90
100
eventmanagementeventappeventregistrationhybrideventsvirtualevents+3 more
WordPressDivi ThemejQueryYouTube iframe API+6
2025-07-07T09:02:44.772Z
getapplicantai.com favicon

Applicant AI

getapplicantai.com

0
TechnologyN/asmallMEDIUM

Applicant AI is a newly launched SaaS platform specializing in AI-powered applicant tracking and recruiting software. The company offers an AI Applicant Tracking System (ATS) that automates the pre-screening of job applicants based on their resumes and job descriptions, aiming to accelerate the hiring process for companies. With over 600 companies and more than 140,000 applicants served, Applicant AI positions itself as a leading AI ATS solution in the recruitment technology market. The platform integrates with existing ATS systems to enhance applicant filtering and scoring, providing a seamless experience for recruiters and HR professionals. Technically, the website is built using modern web technologies including Ruby on Rails, Bootstrap 5, and Hotwired Turbo and Stimulus frameworks. It is hosted and registered via Cloudflare, ensuring reliable performance and security. The site is mobile-optimized and features good SEO practices, although accessibility features are basic. Analytics tools such as Google Analytics and Simple Analytics are employed for user tracking and performance monitoring. From a security perspective, the site uses HTTPS and includes CSRF protection tokens, but lacks explicit security headers and published security policies. No privacy or cookie policies were found, indicating gaps in privacy compliance. The domain is recently registered, consistent with a startup, and shows no suspicious WHOIS patterns. Overall, the security posture is moderate but could be improved by adding formal policies and security best practices. The overall risk assessment suggests a trustworthy and professional SaaS startup with room for improvement in privacy and security transparency. Strategic recommendations include implementing comprehensive privacy and cookie policies, enabling DNSSEC, publishing vulnerability disclosure information, and enhancing security headers to strengthen trust and compliance.

50
35
17
70
75
55
100
aiapplicanttrackingsystemrecruitingsoftwaresaashrtech+3 more
Bootstrap 5Hotwired Turbo and StimulusTrix editorCloudflare DNS and registrar
2025-07-07T09:02:14.597Z
unlimitedgroup.mc favicon

UNLIMITED Group

unlimitedgroup.mc

0
Real EstateMonacosmallMEDIUM

Unlimited Group is a Monaco-based luxury real estate development and investment company with over 20 years of experience. The company focuses on bespoke luxury properties in key locations including Monaco, Megève, Saint-Tropez, and Saint-Barth. Their business model centers on real estate development and buy & hold investments targeting ultra and very high net worth individuals. The website reflects a professional and consistent brand image with a strong portfolio showcase and leadership bios. Technically, the website uses modern web technologies including ProcessWire CMS, Uikit framework, and Google Tag Manager for analytics. The site is mobile optimized and performs moderately well. Privacy and cookie policies are implemented with a consent mechanism, though no explicit security policy or incident response information is published. Security posture is good with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, security headers are not explicitly detected, and incident response contacts are missing. The domain registration data is consistent with the business claims, supporting legitimacy. Overall, the website is professional, trustworthy, and compliant with basic privacy requirements. Strategic improvements include publishing a dedicated security policy, enhancing security headers, and providing incident response contacts to strengthen security posture and trust.

50
65
2
65
95
85
100
luxuryrealestateinvestmentmonacodevelopment+1 more
JavaScriptGoogle Tag ManagerUikit CSS frameworkAdobe Typekit fonts+2
2025-07-07T09:02:04.581Z
orao.network favicon

ORAO

orao.network

0
TechnologyIcelandmediumMEDIUM

ORAO Network is a technology company specializing in blockchain oracle services and verifiable randomness functions, supporting multiple blockchains such as Polygon, Solana, and Fuel. Their offerings include zkVRF leveraging zero-knowledge proofs, proactive data rating via neural networks, and pricing oracles. The company targets blockchain developers and enterprises requiring secure, real-time data feeds and randomness. The website reflects a modern, professional digital presence with consistent branding and active social media engagement. Technically, the site uses a Nuxt.js framework with Bootstrap and integrates Google Analytics and reCAPTCHA for user interaction and security. Hosting is behind Cloudflare DNS, but no explicit CMS is detected. Security posture is good with HTTPS and reCAPTCHA, though DNSSEC is not enabled and security headers are not explicitly visible. Privacy compliance is basic with a privacy policy and terms of service present but no cookie consent mechanism. Contact is primarily via a web form with no direct emails or phone numbers published. WHOIS data shows privacy protection typical for tech startups, with domain age consistent with the company's founding in 2020. Overall, the site is professional and trustworthy but could improve in security headers and privacy transparency.

15
53
17
70
75
70
100
blockchainoracleverifiablerandomnesszkvrfcryptocurrency+1 more
Vue.js (Nuxt.js framework)Bootstrap 5Swiper.jsGoogle Analytics+2
2025-07-07T09:01:19.469Z
T

The Australian and New Zealand Institute of Insurance and Finance

anziif.com

0
FinanceAustraliamediumMEDIUM

The Australian and New Zealand Institute of Insurance and Finance (ANZIIF) operates as a leading membership, education, and professional development organization serving the insurance and finance sectors across the Asia-Pacific region. The website reflects a mature business with a clear focus on providing training, compliance solutions, and industry events to professionals. ANZIIF positions itself as a trusted authority with a long operational history dating back to 2005, supported by a well-maintained domain and professional branding. Technically, the website leverages modern web technologies including Bootstrap 4, Sitecore CMS, and integrates multiple analytics and marketing tools such as Google Analytics, Hotjar, Facebook Pixel, and LinkedIn Insight Tag. Hosting and security are managed via Cloudflare, ensuring HTTPS enforcement and domain transfer protection. However, DNSSEC is not enabled, and security headers are minimal, indicating room for improvement in hardening the site against advanced threats. From a security and compliance perspective, the site maintains a good posture with HTTPS and domain locking but lacks explicit cookie consent mechanisms and detailed security policies publicly available. Contact information is primarily provided via web forms rather than direct emails or phone numbers, which may impact user trust and accessibility. The WHOIS data aligns well with the business profile, reinforcing legitimacy and trustworthiness. Overall, ANZIIF's website demonstrates a solid digital presence with professional content and a good security baseline. Enhancements in privacy compliance and security headers would further strengthen its posture and user trust.

85
58
25
82
95
65
100
insurancefinanceeducationprofessionaldevelopmentmembership+1 more
CloudflareGoogle Tag ManagerGoogle AnalyticsHotjar+6
2025-07-07T09:01:09.444Z
windcave.com favicon

Windcave

windcave.com

0
FinanceN/amediumMEDIUM

Windcave operates as a global payment platform providing seamless payment processing solutions across multiple channels including online, in-store, and unattended/self-service environments. The company targets merchants worldwide, particularly in sectors such as retail, finance, hospitality, and government. Their business model centers on offering integrated payment gateway services with features like tokenization, fraud prevention, and global acquiring, positioning them as a significant player in the payment technology industry. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and Bootstrap framework, hosted behind Cloudflare infrastructure which enhances performance and security. The site is mobile optimized with good SEO and accessibility basics, though some improvements in accessibility and cookie consent mechanisms are recommended. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. However, the absence of visible security headers and lack of published incident response or vulnerability disclosure policies indicate areas for improvement. The WHOIS data is missing, which raises concerns about domain registration transparency and legitimacy, although the professional presentation and PCI compliance suggest a legitimate business. Overall, Windcave's website is professional and functional with a solid security posture but would benefit from enhanced transparency in domain registration, improved privacy compliance features, and stronger security header implementation to bolster trust and compliance.

75
53
2
85
82
90
100
paymentgatewayeftposonlinepaymentspcicompliantfraudprevention+2 more
HTML5CSS3JavaScriptCloudflare Insights
2025-07-07T09:00:49.401Z
tablebooker.be favicon

Tablebooker

tablebooker.be

0
HospitalityBelgiummediumMEDIUM

Tablebooker is an established online platform specializing in restaurant discovery and real-time table reservations primarily serving the Belgian market. The website offers a comprehensive database of over 17,500 restaurants with more than 250,000 user reviews, positioning itself as a leading service in the hospitality sector. The platform targets consumers seeking convenient and efficient restaurant booking experiences, leveraging a user-friendly interface and multilingual support (Dutch, French, English). Technically, the website employs a mature technology stack including JavaScript libraries such as jQuery, Select2, and Moment.js, alongside integrations with Google services like reCAPTCHA, Maps API, and Analytics. The use of server-side templating (Thymeleaf) indicates a robust backend infrastructure. The site demonstrates good mobile optimization and SEO practices, though some libraries are outdated, suggesting opportunities for modernization. From a security perspective, the site enforces HTTPS and integrates anti-bot measures via reCAPTCHA. It also implements a cookie consent mechanism aligned with GDPR requirements, reflecting a commitment to privacy compliance. However, the absence of visible security headers and the use of an older jQuery version present potential vulnerabilities. The lack of publicly available incident response or vulnerability disclosure policies indicates areas for improvement in security transparency. Overall, the website is professionally designed and trustworthy, with strong business credibility and user engagement. The primary risk factor is the missing WHOIS registration data, which raises questions about domain legitimacy despite the active and professional online presence. Strategic recommendations include enhancing security headers, updating libraries, and publishing clear security and incident response policies to bolster trust and compliance.

50
68
17
70
67
65
100
restaurantbookingbelgiumreservationhospitality+2 more
JavaScriptjQuery 1.11.3Select2 4.0.3Moment.js 2.10.2+2

Partner Domains:

app.tablemanager.be
partner
restofactory.com
partner

+2 more partners

2025-07-07T09:00:14.309Z
F

Federal Reserve Bank of St. Louis

askthefed.org

0
FinanceUnited StatesenterpriseMEDIUM

Ask the Fed® is an educational program operated by the Federal Reserve Bank of St. Louis, providing financial and regulatory updates to bankers and their boards through webinars and conference calls. The website serves as a login portal for registered users to access these resources. The business operates under the Federal Reserve System umbrella, positioning itself as a trusted authority in the finance sector. The content is professional, targeted, and consistent with the Federal Reserve's branding and mission. Technically, the website uses a modern but somewhat dated tech stack including AngularJS, jQuery, and Bootstrap. The site is moderately optimized for performance and mobile use, though accessibility features appear basic. Security practices include use of anti-forgery tokens and secure form submission, but visible security headers and cookie consent mechanisms are lacking. The WHOIS data is unavailable due to privacy or query failure, but the domain is a subdomain of a legitimate Federal Reserve domain, supporting its authenticity. Security posture is moderate with room for improvement in headers and transparency around incident response. No vulnerabilities or malicious content were detected. Privacy compliance is good with a clear privacy policy and contact information, though cookie consent is missing. Overall, the site is trustworthy and professionally maintained, suitable for its audience. Risk is low but recommendations include enhancing security headers, adding cookie consent, and publishing security policies to improve compliance and trust further.

55
53
17
70
95
85
100
financebankingfederalreservewebinarlogin+2 more
jQueryBootstrapAngularJSModernizr
2025-07-07T08:59:43.496Z
B

Board of Governors of the Federal Reserve System

fedpartnership.gov

0
FinanceUnited StateslargeMEDIUM

The website www.fedpartnership.gov represents the Partnership for Progress program, a Federal Reserve System initiative aimed at supporting minority-owned and de novo banking institutions. The site provides educational resources, guidance, and regulatory information to help these institutions thrive in a competitive financial environment. It is positioned as a niche government program with a clear focus on minority banking within the United States. The content is professionally presented with consistent branding aligned with the Federal Reserve, targeting minority banks, entrepreneurs, and financial professionals. Technically, the website employs basic JavaScript and CSS technologies, including Google Tag Manager for analytics. The site lacks modern frameworks or CMS indications and shows moderate performance and basic mobile optimization. Accessibility features are minimal but present. Security posture is moderate with HTTPS implied but missing explicit security headers and no visible advanced security policies. Privacy compliance is basic, with a privacy policy linked but no cookie consent mechanism. Security-wise, the site shows no critical vulnerabilities or exposed sensitive data but would benefit from improved security headers and incident response disclosures. WHOIS data is incomplete or unavailable, likely due to government domain privacy or restrictions, which slightly reduces trust but does not detract from the site's legitimacy given its official Federal Reserve affiliation. Overall, the site is trustworthy, safe, and serves its informational purpose effectively.

45
53
2
70
85
80
100
governmentfinanceminority-ownedbankingfederalreserve+1 more
JavaScriptGoogle Tag ManagerGreybox JS
2025-07-07T08:59:38.480Z
B

Board of Governors of the Federal Reserve System

federalreserve.gov

0
GovernmentUnited StatesenterpriseMEDIUM

The Board of Governors of the Federal Reserve System operates as the central bank of the United States, providing critical monetary policy, financial system oversight, and regulatory functions. The website serves as an authoritative source of information for policymakers, financial institutions, researchers, and the general public, offering extensive resources on monetary policy, supervision, financial stability, payment systems, and economic research. The Federal Reserve holds a dominant market position as the nation's central banking authority, delivering essential services that underpin the US financial system's safety and stability. Technically, the website employs a mature and robust infrastructure leveraging AngularJS, Bootstrap, and Modernizr, with Cloudflare Zaraz for tag management and tracking. The site is well-optimized for mobile devices, accessible, and demonstrates good SEO practices. Performance is moderate, consistent with the complexity and volume of content served. Security is strong, with HTTPS enforced, comprehensive security headers, and no visible vulnerabilities or exposed sensitive data. The security posture is commendable, reflecting best practices for a government entity. However, the absence of a public vulnerability disclosure program or security.txt file and limited incident response contact visibility represent areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms, aligning with GDPR principles. Overall, the website is highly trustworthy, professionally maintained, and secure, supporting the Federal Reserve's mission. Strategic recommendations include enhancing public security communication channels, maintaining up-to-date third-party libraries, and implementing a formal vulnerability disclosure process to further strengthen security and transparency.

45
58
17
85
95
80
100
federalreserveusgovernmentfinancemonetarypolicybankingregulation+2 more
AngularJSBootstrap CSSModernizrVideoJS+1
2025-07-07T08:59:23.442Z
H

Holo Host

holo.host

0
TechnologyUnited StatessmallMEDIUM

Holo Host is a technology company specializing in community owned cloud hosting infrastructure tailored for Holochain and decentralized applications. The company positions itself as an ethical and sovereign alternative to traditional centralized cloud providers, targeting organizations and developers who prioritize data ownership, privacy, and freedom from big tech monopolies. Their key services include dedicated Holo Cloud Nodes and the Holo Web Bridge, enabling resilient and user-owned digital infrastructure. The business is affiliated with the Holochain Foundation and has been operational since 2017, with a small but focused market presence. Technically, the website employs modern JavaScript technologies, integrates Google Analytics with user consent, and uses Cloudflare DNS and Cloudfront for content delivery. The site is mobile optimized with good SEO practices and clear navigation. However, no major CMS or frameworks are detected, indicating a custom-built solution. Performance is moderate, and accessibility is basic but adequate. From a security perspective, the site enforces HTTPS and uses clientTransferProhibited status on the domain. Cookie consent mechanisms are implemented, but security headers are not explicitly detected, and no published security or incident response policies are found. The WHOIS data shows privacy protection but is consistent with the business profile and domain age. No vulnerabilities or suspicious patterns are evident. Overall, Holo Host demonstrates a solid digital maturity level with good privacy compliance and business credibility. Strategic improvements in security policy transparency and DNSSEC enablement could further enhance trust and resilience.

45
83
10
80
75
80
100
decentralizedhostingholochaincloudhostingdigitalsovereigntyethicaltechnology+2 more
JavaScriptGoogle Analytics (GA4)Cloudflare DNSEngageBay (marketing automation)+1

Partner Domains:

visvere.com
partner
hummhive.com
partner
2025-07-07T08:59:18.432Z
undergroundshirts.com favicon

Underground Printing

undergroundshirts.com

0
RetailUnited StateslargeMEDIUM

Underground Printing is a well-established custom apparel and promotional products company founded in 2001, operating primarily in the US retail sector. The company offers a wide range of services including screen printing, embroidery, digital printing, and heat transfer, targeting businesses, teams, fundraisers, and individuals. Their market position is strong, supported by a large product catalog, multiple physical locations, and a professional e-commerce platform. The website reflects a consistent brand image with excellent content quality and user experience, catering effectively to their target audience. Technically, the website leverages modern web technologies such as Vue.js and Vuetify, integrates with reputable third-party services like Stripe for payments, Klaviyo for marketing, and HelpScout for customer support. Hosting is provided via Amazon AWS infrastructure, ensuring reliable performance. The site is mobile-optimized and includes SEO best practices, although accessibility features could be improved. From a security perspective, the site enforces HTTPS and employs domain locking mechanisms to prevent unauthorized changes. However, DNSSEC is not enabled, and there is a lack of publicly available security policies or incident response information. The absence of privacy and cookie policies indicates a gap in privacy compliance, which could expose the company to regulatory risks. Overall, the website is professional, trustworthy, and functionally sound but would benefit from enhanced privacy compliance and explicit security disclosures to strengthen its security posture and regulatory adherence.

15
53
2
70
77
80
100
customapparelscreenprintingembroiderypromotionalproductse-commerce+1 more
Vue.jsVuetifyStripeKlaviyo+6
2025-07-07T08:59:08.370Z
A

Afonso Digitalbyrå & Webbyrå

afonso.se

0
TechnologySwedensmallMEDIUM

Afonso Digitalbyrå & Webbyrå is a Stockholm-based digital agency specializing in headless e-commerce, web design, and app development. Established since 2008, the company has served over 100 clients, delivering award-winning digital solutions that drive business value and brand growth. Their key services include UX/UI design, WooCommerce development, backend systems, and mobile app creation, targeting businesses seeking to enhance their online presence and sales capabilities. The agency leverages modern technologies such as WordPress, Next.js, Laravel, and React, demonstrating a mature technical infrastructure with fast performance and excellent mobile optimization. From a security perspective, the website employs HTTPS with a strong SSL configuration and uses Cookiebot for GDPR-compliant cookie consent management. However, it lacks visible security headers and published security policies or incident response contacts, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected. The domain registration is consistent with the business claims, showing a long-standing presence and trustworthy legitimacy. Overall, the website presents a professional, well-structured, and secure digital agency platform with strong business credibility. The absence of privacy and terms of service pages slightly impacts privacy compliance scores. Strategic enhancements in security policy transparency and DNS security would further strengthen their security posture and trustworthiness.

30
25
17
55
72
65
100
digitalagencywebdesignheadlessecommerceappdevelopmentsweden+4 more
WordPressWooCommercePHPNuxt+8
2025-07-07T08:58:02.969Z