Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2096 of 2974|Showing 104751-104800 of 148685
ketnet.be favicon

VRT

ketnet.be

0
MediaBelgiumlargeLOW

VRT MAX is the official online streaming platform of VRT, the public broadcaster in Belgium. It offers a wide range of video content including live TV, on-demand programs, and specialized kids content under the Ketnet brand. The platform targets a general audience with a strong emphasis on family-friendly and children’s programming. VRT MAX holds a leading position in the Belgian media market as a trusted public service provider. Technically, the website employs modern web technologies such as React, asynchronous JavaScript bundles, and CSS variables. It supports single sign-on (SSO) authentication and provides mobile-optimized experiences including dedicated iOS and Android apps. The platform is performant, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses SSO for user authentication. It publishes a responsible disclosure policy, indicating a proactive security posture. However, explicit security headers like CSP and HSTS are not detected in the provided data, suggesting room for improvement. No vulnerabilities or exposed sensitive data were found. Privacy compliance is strong with clear privacy and cookie policies aligned with GDPR. Overall, the website is professionally designed, trustworthy, and secure with a high AI-assessed score. The lack of WHOIS data is due to .be domain privacy restrictions but does not detract from the legitimacy of the site. Strategic recommendations include enhancing security headers, publishing a security.txt file, and expanding incident response contact channels to further strengthen security and trust.

85
68
20
67
95
85
100
streamingmediapublicbroadcasterbelgiumkidscontent+1 more
JavaScript bundlesCSS variables and stylesheetsSSO authentication systemManifest for PWA+1
2025-07-07T03:15:57.120Z
erfgoedcelleuven.be favicon

Erfgoedcel Leuven

erfgoedcelleuven.be

0
GovernmentBelgiumsmallMEDIUM

Erfgoedcel Leuven is a small, government-affiliated heritage organization based in Belgium, focused on preserving and promoting local cultural heritage. The website provides comprehensive information about heritage activities, educational programs, publications, and community engagement, targeting residents and cultural enthusiasts in Leuven. The organization operates under the City of Leuven and has been established since 2006, reflecting a stable presence in the heritage sector. Technically, the website is built on Drupal CMS with modern web technologies such as Bootstrap and lazy loading for images, ensuring good mobile optimization and accessibility. The site employs HTTPS and cookie consent mechanisms, demonstrating compliance with EU privacy regulations. Performance is moderate, with room for improvement in security headers and explicit security policies. Security posture is solid with no detected vulnerabilities or exposed sensitive data, but lacks explicit incident response or security policy documentation. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms. Contact information is transparent and includes phone, email, and a contact form, enhancing business credibility. Overall, the website is professional, trustworthy, and well-suited for its audience, with recommendations to enhance security headers and incident response transparency to further strengthen its security posture.

40
68
2
85
95
45
100
heritagecultureeducationcommunityleuven+1 more
Drupal CMSjQuery UIBlazy (lazy loading)Bootstrap+1
2025-07-07T03:15:52.110Z
publima.be favicon

Publima

publima.be

0
RetailBelgiummediumHIGH

Publima is a Belgian-based company specializing in the production and installation of illuminated signage, facade advertising, and 3D logos for businesses primarily in Belgium and the Netherlands. The company targets both large and small enterprises, offering a broad range of products including LED lighting, facade letters, advertising panels, and retail signage solutions. Their market position is strengthened by large-scale projects such as the rebranding of AXA Bank branches to Crelan, demonstrating operational capacity for extensive assignments. The website reflects a professional and consistent brand image with comprehensive service descriptions and multilingual support. Technically, the website employs modern web technologies including Mapbox for mapping, Google Tag Manager for analytics, and reCAPTCHA for form security. It is built on Craft CMS, indicating a robust content management system. The site is mobile-optimized with good SEO practices and includes privacy and cookie policies compliant with GDPR. Security measures include HTTPS enforcement and CSRF tokens on forms, though explicit security headers are not detected. From a security perspective, the site shows a mature posture with secure forms and privacy compliance but lacks visible incident response or vulnerability disclosure policies. The absence of WHOIS data limits domain registration trust verification, which slightly impacts overall trustworthiness. No critical vulnerabilities or suspicious content were detected. Overall, Publima presents a credible and professional online presence suitable for its B2B signage market. Strategic improvements in security headers and domain registration transparency would enhance trust and security posture further.

20
68
2
70
72
60
20
lichtreclamegevelreclamegevelbekledinggevelletterssignage+3 more
Mapbox GL JSGoogle Tag ManagerGoogle reCAPTCHAIubenda Cookie Solution+1

Partner Domains:

www.glaifa-lichtreclame.com
partner
2025-07-07T03:15:11.961Z
svr-architects.eu favicon

SVR-ARCHITECTS

svr-architects.eu

0
Real EstateBelgiumsmallMEDIUM

SVR-ARCHITECTS is a professional architectural firm based in Belgium specializing in healthcare, research, housing, utility buildings, and interior design. The company targets clients seeking specialized architectural services with a focus on living, work, and well-being environments. Their website reflects a well-structured and professional presence with clear navigation and relevant content showcasing their key services and projects. Technically, the website is built on WordPress using the Divi theme and several plugins including SEO and cookie consent tools, indicating a moderate level of digital maturity. Security posture is adequate with HTTPS enforced and cookie consent implemented; however, the absence of security headers and vulnerability disclosure mechanisms suggests room for improvement. Overall, the website is trustworthy and professional, though it lacks some compliance documentation such as a privacy policy and terms of service pages. The domain WHOIS data is privacy protected, which is common and acceptable for this business type, but limits detailed domain age and registrant verification. Strategic recommendations include enhancing security headers, publishing privacy and security policies, and adding vulnerability disclosure information to improve trust and compliance.

30
83
17
80
62
85
100
architecturehealthcarerealestateinteriordesignconstruction+1 more
WordPress 6.8.1Divi Theme 4.27.4jQuery 3.7.1All in One SEO Pro 4.8.4.1+3
2025-07-07T03:14:46.903Z
maakbaarleuven.be favicon

Maakbaar Leuven vzw

maakbaarleuven.be

0
OtherBelgiumsmallMEDIUM

Maakbaar Leuven vzw is a small non-profit organization based in Belgium focused on reducing electronic waste through repair and reuse of small electronic devices. The organization collaborates with citizens and other organizations to lead local initiatives against e-waste. Their website reflects a clear mission and community-oriented business model, positioning them as a local leader in environmental sustainability efforts related to electronics. Technically, the website is built on WordPress using the Astra theme and Elementor page builder, with modern technologies such as Google Tag Manager and CookieYes for consent management. The site is hosted likely on SiteGround, performs moderately well, and is optimized for mobile devices. SEO practices are good, with proper metadata and structured data implemented. From a security perspective, the site uses HTTPS with a good SSL configuration and includes a cookie consent mechanism, indicating awareness of privacy compliance. However, it lacks explicit security headers and published security policies or incident response information. No critical vulnerabilities or suspicious activities were detected. Overall, the website is professional, trustworthy, and compliant with basic privacy standards, though it could improve by publishing privacy and security policies and enhancing security headers. The domain registration is consistent with the organization's profile, supporting legitimacy and trustworthiness.

35
83
2
65
72
65
-
e-wasterepairreusenon-profitenvironment+2 more
WordPressElementorjQueryGoogle Tag Manager+2
2025-07-07T03:14:36.885Z
P

Pelckmans Uitgevers nv

pelckmansuitgevers.be

0
RetailBelgiummediumMEDIUM

Pelckmans Uitgevers nv is a Belgian publishing company specializing in educational, general, and professional-scientific books, complemented by e-books and audiobooks. The company positions itself as an innovative and passionate publisher aiming to inspire and educate a broad audience. Their website supports e-commerce functionality, allowing direct purchase of books and related media. The company maintains a consistent brand presence and engages users through newsletters and social media channels. Technically, the website is built on Magento, leveraging modern web technologies including jQuery, Google Tag Manager, and Facebook Pixel for marketing and analytics. Cookie consent is managed via Cookiebot, ensuring GDPR compliance. Security posture is solid with HTTPS enforced and no obvious vulnerabilities detected, though some security headers could be improved. The WHOIS data is restricted due to .be domain policies, limiting transparency but not detracting significantly from trust given the professional website and business presence. Overall, the site is well-structured, user-friendly, and compliant with privacy regulations, serving a medium-sized retail publishing business in Belgium.

100
83
2
80
67
85
40
publishingbookseducatione-commercecookie-consent+2 more
Magento (e-commerce platform)jQueryGoogle Tag ManagerFacebook Pixel+1

Partner Domains:

api.pelckmans.be
service
mijn.pelckmans.be
service

+2 more partners

2025-07-07T03:14:11.842Z
joinbankon.org favicon

Cities for Financial Empowerment Fund

joinbankon.org

0
FinanceUnited StatesmediumMEDIUM

The website joinbankon.org represents the Bank On initiative managed by the Cities for Financial Empowerment Fund, a US-based non-profit organization founded in 2009. The platform aims to promote safe and affordable banking access nationwide through certification of bank and credit union accounts, support for local coalitions, and dissemination of research and resources. The site positions itself as a national leader with over 500 certified accounts and nearly 100 local coalitions, targeting consumers, financial institutions, regulators, and community partners. Technically, the website is built on WordPress using the Understrap theme and hosted on WP Engine. It employs modern web technologies including jQuery and Google Analytics via the MonsterInsights plugin. The site is mobile optimized with good SEO and accessibility basics, though some improvements could be made in accessibility and cookie consent compliance. Performance is moderate with no critical technical issues detected. From a security perspective, the site enforces HTTPS with excellent SSL configuration but lacks some security headers and a formal vulnerability disclosure policy. No sensitive data is exposed, and tracking opt-out mechanisms are implemented for analytics. WHOIS data shows privacy protection typical for non-profits, with domain age consistent with the organization's history. Overall, the security posture is solid but could be enhanced with additional policies and headers. The overall risk assessment is low, with the site demonstrating high business credibility and trustworthiness. Strategic recommendations include implementing a cookie consent banner to improve privacy compliance, enabling DNSSEC, adding security headers, and publishing a vulnerability disclosure or security policy to enhance transparency and incident response readiness.

30
53
2
70
62
75
100
financenon-profitbankingfinancialempowermentcertification+1 more
Google Analytics (MonsterInsights plugin)jQueryWordPressGravity Forms (implied by form field IDs)+1

Partner Domains:

cfefund.org
parent
stlouisfed.org
partner
2025-07-07T03:13:21.741Z
F

First Place Internet, Inc.

sba.org

0
OtherN/asmallHIGH

The website sba.org is an informational and search platform focused on Small Business Administration (SBA) related topics, operated by First Place Internet, Inc. It provides users with search capabilities for SBA business loans, grants, business plans, and related services. The site appears to be monetized primarily through advertising, leveraging Google Ads and tracking technologies. The content is basic and targeted towards small business owners and entrepreneurs seeking SBA-related information. Technically, the site uses a modest technology stack including jQuery, Google Analytics, Google Tag Manager, and Google Ads Domains CAF scripts. The site is moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. There is no detected CMS or hosting provider information. Security measures are minimal, with no explicit security headers or HTTPS enforcement details visible, though CSRF tokens are present in meta tags. From a security perspective, the site lacks comprehensive security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy compliance is basic with a privacy policy and cookie consent banner present, but GDPR compliance is not clearly demonstrated. WHOIS data is unavailable or privacy-protected, which reduces trustworthiness but is somewhat justified given the site's informational nature. Overall, the site is functional but basic, with moderate trustworthiness and security posture. Strategic improvements in security headers, HTTPS enforcement, contact transparency, and privacy compliance would enhance its credibility and user trust.

55
53
2
80
-
70
40
smallbusinesssbabusinessloanssearchdirectory+1 more
jQuery 3.3.1Google AnalyticsGoogle Tag ManagerGoogle Ads Domains CAF+1
2025-07-07T03:13:01.687Z
N

NeighborWorks America

nw.org

0
Non-profitUnited StateslargeMEDIUM

The domain nw.org is registered to NeighborWorks America, a US-based non-profit organization established in 1995. The website is currently inaccessible due to a Cloudflare Web Application Firewall (WAF) block, which prevents access to any substantive content. As a result, no direct information about the organization's services, policies, or contact details can be extracted from the website content. The domain registration data is consistent and indicates a legitimate entity with a long operational history. Technically, the website is protected by Cloudflare, which provides security and performance services. However, DNSSEC is not enabled, and no security headers or privacy-related policies are visible on the blocked page. The lack of accessible content and policies limits the ability to assess the website's compliance with privacy regulations such as GDPR or its security posture in detail. From a security perspective, the presence of a Cloudflare block page indicates active protection against potential threats, but also suggests possible false positives or overly aggressive security rules that may impact legitimate users. No vulnerabilities or exposed sensitive data were detected due to the lack of accessible content. The domain's WHOIS data supports the legitimacy of the organization, with no suspicious patterns or privacy protection masking registrant details. Overall, the website's current state limits comprehensive analysis. The primary risk is the lack of accessible information for users and auditors, which impacts trust and transparency. Strategic recommendations include enabling DNSSEC, publishing clear privacy and security policies, and tuning WAF rules to reduce false positives while maintaining protection.

35
35
2
75
75
75
100
non-profitcloudflaresecurityblocked
Cloudflare
2025-07-07T03:12:36.623Z
knowyouroptions.com favicon

Fannie Mae

knowyouroptions.com

0
FinanceUnited StatesenterpriseLOW

Fannie Mae is a government-sponsored enterprise focused on facilitating equitable and sustainable access to homeownership and affordable rental housing across the United States. The website yourhome.fanniemae.com serves as a consumer-facing portal providing mortgage financing information and reliable housing resources. The site targets homebuyers, renters, and housing professionals, positioning itself as a trusted leader in the US housing finance market. Key services include mortgage financing facilitation and housing information dissemination. Technically, the website is built on Drupal 11, leveraging modern JavaScript libraries and third-party analytics and optimization tools such as Visual Website Optimizer, Google Tag Manager, and Crazy Egg. The site demonstrates good mobile optimization and SEO practices, with structured data and Open Graph metadata implemented for enhanced search engine visibility and social media sharing. From a security perspective, the site enforces HTTPS with strong SSL configuration and implements key security headers. No exposed sensitive data or vulnerabilities were detected in the analyzed content. Privacy and cookie policies are comprehensive and include consent mechanisms, indicating good compliance with GDPR and related privacy regulations. However, explicit security policy and incident response contact information are not publicly available. Overall, the website presents a professional, trustworthy, and well-maintained digital presence consistent with a large enterprise in the finance and real estate sectors. Strategic recommendations include publishing a dedicated security policy page, incident response contacts, and a vulnerability disclosure program to further enhance transparency and security posture.

55
88
25
100
90
90
100
mortgagehousingfinancefanniemaehomeownership+4 more
Drupal 11JavaScriptVisual Website Optimizer (VWO)Google Tag Manager+1

Partner Domains:

fanniemae.com
parent
singlefamily.fanniemae.com
subsidiary

+3 more partners

2025-07-07T03:12:31.611Z
T

TAMUS.org on WPMU Dev Network

tamus.org

0
OtherN/asmallHIGH

The website www.tamus.org serves as a primary multi-site WordPress development network for TAMUS-related sites, hosting multiple live and test sites. It functions primarily as a platform for managing and cloning WordPress sites within the TAMUS ecosystem. The business model centers on multi-site WordPress hosting and development, targeting internal users or affiliated entities rather than the general public. The site has been active since at least 2015, indicating a stable presence in its niche. Technically, the site leverages a modern WordPress stack including Elementor, Yoast SEO, and the Kadence theme, hosted on the WPMU Dev network with CDN support. The infrastructure supports responsive design and basic SEO optimization, though accessibility and advanced SEO features are limited. Performance is moderate, with external dependencies on common libraries and services such as AddThis for sharing. From a security perspective, the site enforces HTTPS with a valid SSL certificate but lacks visible security headers and public security policies. No contact or incident response information is provided, and WHOIS data is unavailable, which reduces trustworthiness. There are no indications of vulnerabilities or exposed sensitive data in the HTML content. Privacy and cookie policies are absent, indicating compliance gaps. Overall, the site is functional and serves its intended purpose within the TAMUS network but requires improvements in privacy compliance, security best practices, and transparency to enhance trust and regulatory adherence.

15
35
2
60
85
70
40
wordpressmulti-sitetamusdevelopmentwpmudev+2 more
WordPress 6.8.1Elementor 3.30.0Elementor Pro 3.29.2Yoast SEO 25.4+5

Partner Domains:

reynagas.com
partner
glennlea.com
partner
2025-07-07T03:10:56.390Z
illinoistollway.com favicon

Illinois Tollway

illinoistollway.com

0
TransportationUnited StateslargeMEDIUM

The Illinois Tollway website serves as the official portal for the Illinois Tollway Authority, a government entity managing toll roads in Illinois. It provides key services such as electronic toll collection via I-PASS, Pay By Plate options, invoice payments, and violation enforcement. The site targets commuters, commercial fleet operators, and other tollway users in Illinois. The business model is government-operated, focusing on transportation infrastructure funding and management. Technically, the website employs modern web technologies including React and Material-UI, integrates Google reCAPTCHA Enterprise for bot protection, and uses Google Tag Manager for analytics. Hosting appears to be managed by Illinois state government infrastructure, indicated by state.il.us name servers. The site is mobile optimized and has a professional design with clear navigation. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms. However, DNSSEC is not enabled and no explicit security headers were detected in the provided data. There is no visible security.txt or vulnerability disclosure policy. Privacy compliance is good with a comprehensive privacy policy and terms of service linked. Contact information is limited on the landing page. Overall, the website is trustworthy, professionally maintained, and aligned with its government mandate. Recommendations include enabling DNSSEC, adding security headers, publishing a security.txt file, and improving visible contact information for incident response. These steps would enhance security posture and user trust.

70
35
17
85
77
85
100
governmenttransportationtollwayillinoisi-pass+1 more
React (indicated by JSX and module scripts)Google reCAPTCHA EnterpriseGoogle Tag ManagerCommerceHub secure data capture+1
2025-07-07T02:10:26.816Z
uic.edu favicon

University of Illinois Chicago

uic.edu

0
EducationUnited StateslargeMEDIUM

The University of Illinois Chicago (UIC) is a large public research university located in Chicago, Illinois. It serves over 33,000 students across 16 colleges and includes a hospital and health sciences system. The website reflects its role as a vital educational and cultural institution in the region, targeting students, faculty, researchers, and the public. The business model is centered on higher education and research services, positioning UIC as Chicago's only public research university. The website content is professionally presented, consistent with the university's branding, and provides a clear description of its mission and offerings. Technically, the website employs modern JavaScript libraries and analytics tools such as Google Analytics, Mouseflow, and Google Tag Manager. It uses HTTPS and loads resources from trusted external domains. The site is mobile optimized and accessible, with good SEO practices evident from meta tags and structured data. However, no CMS or hosting provider details were explicitly detected. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism compliant with GDPR. However, explicit security headers are not evident, and no public security policies, incident response contacts, or vulnerability disclosure mechanisms were found. The WHOIS data for the www subdomain was unavailable, but this is likely due to querying the subdomain rather than the root domain. Overall, the domain and website appear legitimate and trustworthy. The overall risk assessment is low, with recommendations to enhance security headers, publish security policies, and provide clear contact channels for security incidents. These improvements would strengthen trust and compliance posture while maintaining the university's reputable online presence.

40
50
10
80
77
85
100
educationuniversityresearchpublicchicago+1 more
JavaScriptGoogle AnalyticsMouseflowGoogle Tag Manager+1
2025-07-07T02:10:21.808Z