Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2140 of 2974|Showing 106951-107000 of 148685
descarteslabs.com favicon

EarthDaily Analytics

descarteslabs.com

0
TechnologyN/amediumMEDIUM

EarthDaily Analytics is a technology company specializing in providing science-grade satellite data and AI-powered geospatial intelligence solutions. Their offerings target industries such as agriculture, mining, forestry, government, climate, insurance, and risk management. The company positions itself as an innovator with a next-generation satellite constellation launching in 2025, delivering daily, high-resolution Earth Observation data. The website reflects a mature digital presence with professional design, comprehensive content, and clear navigation, supporting their market position as a trusted data provider. Technically, the website is built on the HubSpot CMS platform, leveraging modern marketing and analytics tools such as Google Tag Manager and Cookiebot for consent management. Hosting is via Amazon AWS infrastructure, and the site demonstrates good mobile optimization, accessibility, and SEO practices. The presence of structured data and meta tags further enhances search visibility. From a security perspective, the site enforces HTTPS, employs domain locking mechanisms, and integrates cookie consent to comply with privacy regulations. However, DNSSEC is not enabled, and no explicit security or incident response policies are published. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, EarthDaily Analytics presents a credible, professional, and secure online presence aligned with its business objectives. The domain registration details corroborate the company's legitimacy and longevity. Strategic recommendations include enabling DNSSEC, publishing security policies, and adding vulnerability disclosure mechanisms to further strengthen trust and compliance.

95
68
29
78
57
80
100
earthobservationsatellitedataaianalyticsgeospatialintelligenceagriculture+5 more
HubSpot CMSGoogle Tag ManagerCookiebotHubSpot Video Embed+2

Partner Domains:

ag.earthdaily.com
subsidiary
mining.earthdaily.com
subsidiary

+1 more partners

2025-07-05T19:09:37.691Z
allsourceanalysis.com favicon

AllSource Analysis

allsourceanalysis.com

0
GovernmentUnited StatessmallMEDIUM

AllSource Analysis is a specialized provider of finished geospatial intelligence products and expert analysis, serving government and commercial clients primarily in the energy, finance, and government sectors. Founded in 2013, the company leverages a network of independent analysts combined with advanced technology and partnerships to deliver actionable intelligence. Their offerings include finished intelligence reports, AI model training, GEOINT request services, and data labeling. The website reflects a professional and consistent brand presence with clear navigation and relevant content tailored to their target audience. Technically, the website is built on WordPress with popular plugins such as WPBakery Page Builder and Slider Revolution. Hosting is provided by SiteGround, inferred from the nameservers. The site demonstrates moderate performance and good mobile optimization, with basic accessibility features and good SEO practices. Analytics and marketing tools from HubSpot are integrated, indicating moderate user tracking and engagement. From a security perspective, the site uses HTTPS with a valid SSL configuration and domain status protections against unauthorized transfers and updates. However, DNSSEC is not enabled, and no security headers were detected, representing areas for improvement. Privacy compliance is weak due to the absence of privacy and cookie policies and consent mechanisms. Contact information is clearly provided, enhancing business credibility. Overall, the website presents a trustworthy and professional front for AllSource Analysis, but improvements in privacy compliance and security hardening are recommended to enhance trust and regulatory adherence.

20
50
17
70
62
75
100
geospatialintelligencegovernmentenergyfinance+2 more
WordPressWPBakery Page BuilderSlider RevolutionjQuery+2
2025-07-05T19:09:27.657Z
casinoexpert.co.uk favicon

CasinoExpert

casinoexpert.co.uk

0
OtherUnited KingdomsmallMEDIUM

CasinoExpert is a UK-based online casino guide providing expert reviews, bonus offers, and news related to the UK online gambling market. The website targets UK players seeking trusted casino information and safe gambling environments. It operates primarily as an affiliate and informational platform, listing top casinos, games, and banking methods. The site is positioned as a leading expert guide in its niche with a small but focused business model. Technically, the website is built on WordPress with common SEO and tracking plugins such as Yoast SEO and Google Analytics. It uses a CDN for hosting static assets and employs Routy for affiliate tracking. The site is mobile-optimized with good navigation and content structure, though accessibility features are basic. Performance is moderate, with room for improvement in security headers and cookie consent mechanisms. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and a cookie consent banner, which are important for GDPR compliance. No incident response or vulnerability disclosure information is published. The WHOIS data is unavailable due to a domain naming rules violation error from Nominet UK, which raises concerns about domain legitimacy or registration status. Despite this, the website content and branding appear professional and trustworthy. Overall, CasinoExpert presents a solid online presence in the UK gambling affiliate space but should address compliance and security best practices to enhance trust and reduce risk. The domain registration anomaly warrants further investigation to confirm legitimacy.

15
53
17
90
85
65
100
onlinecasinoukgamblingcasinoreviewscasinobonusesslots+3 more
WordPress 6.4.5Yoast SEO pluginjQueryFontAwesome+2

Partner Domains:

affiliates.routy.app
partner
routy.app
partner

+2 more partners

2025-07-05T19:06:13.717Z
tag.media favicon

TAG Media Limited

tag.media

0
MediaUnited KingdommediumCRITICAL

TAG Media Limited is a UK-based iGaming affiliate marketing company established in 2016. It operates a portfolio of digital marketing products and services focused on customer acquisition for online casinos, sports betting, daily fantasy sports operators, and game studios worldwide. The company holds a strong market position with award-winning agency services and a recognized publishing division, including flagship sites like PuntersLounge.com and US-Odds.com. Their business model centers on affiliate marketing, agency management, and content marketing platforms such as First Look Games. The company targets operators, affiliates, game studios, and players within the regulated iGaming industry. Technically, the website is built on WordPress with modern frameworks like Bootstrap and uses popular plugins such as WPBakery Page Builder and Rank Math SEO. Hosting and DNS are managed via Cloudflare, ensuring good performance and security. The site is mobile optimized with good SEO practices, though accessibility is basic. The technical infrastructure reflects a mature digital presence suitable for a medium-sized enterprise. From a security perspective, the site enforces HTTPS and uses domain transfer protection. However, it lacks DNSSEC and visible security headers, and no explicit security or incident response policies are published. Privacy compliance is weak due to the absence of privacy and cookie policies or consent mechanisms. Contact information is clearly presented, enhancing business credibility. Overall, the security posture is moderate but could be improved with additional controls and transparency. The overall risk assessment is low to moderate. The company appears legitimate and professional with consistent WHOIS data and a strong market presence. Strategic recommendations include enabling DNSSEC, publishing privacy and cookie policies, implementing security headers, and establishing incident response documentation to enhance trust and compliance.

-
-
-
-
-
-
-
igamingaffiliatemarketingdigitalmarketingsportsbettingcasino+2 more
WordPressjQueryBootstrapFont Awesome+3

Partner Domains:

punterslounge.com
partner
us-odds.com
partner

+2 more partners

2025-07-05T19:06:03.680Z
H

Hawaiian Airlines

hawaiianairlines.com

0
TransportationUnited StateslargeMEDIUM

Hawaiian Airlines is the largest and longest-serving airline in Hawaii, providing non-stop flights from the U.S. mainland and international destinations to Hawaii. The company offers a comprehensive suite of travel services including flights, vacation packages, car rentals, and hotel bookings, supported by a loyalty program called HawaiianMiles. Recently, Hawaiian Airlines joined Alaska Airlines, strengthening its market position and expanding its partnership ecosystem. The website reflects a mature digital presence with rich content, user-friendly booking interfaces, and strong branding consistency. Technically, the website employs modern web technologies such as AngularJS, Adobe Target, Quantum Metric, and Google Tag Manager, hosted likely on Akamai infrastructure. The site is optimized for performance, mobile responsiveness, and accessibility, with comprehensive SEO practices. Security posture is strong with HTTPS enforcement, multiple security headers, and secure form handling. However, the absence of publicly available WHOIS data slightly reduces transparency. From a security perspective, the site follows best practices with no evident vulnerabilities or exposed sensitive data. Privacy compliance is robust, featuring clear privacy and cookie policies with consent mechanisms. The site uses extensive analytics and tracking tools, balanced with privacy considerations. Overall, the risk profile is low, but improvements in publishing explicit security policies and vulnerability disclosure would enhance trust. Strategically, Hawaiian Airlines should focus on improving transparency around domain registration, incident response, and data protection officer contacts. Maintaining updated third-party scripts and continuing to enhance privacy compliance will support long-term security and customer trust.

35
58
2
87
72
90
100
airlinetravelvacationflightshawaiianmiles+2 more
AngularJSAdobe TargetQuantum MetricGoogle Tag Manager+3

Partner Domains:

www.alaskaair.com
parent
cards.barclaycardus.com
partner

+3 more partners

2025-07-05T19:05:33.497Z
C

City and County of San Francisco

sf.gov

0
GovernmentUnited StateslargeMEDIUM

The City and County of San Francisco operates SF.gov as its official government portal, providing residents, businesses, and visitors with access to a wide range of public services and information. The website features comprehensive content including services like job search, marriage licensing, birth certificate requests, and contact information for city staff. It also prominently displays profiles of elected officials, reinforcing its authoritative position as a government resource. The site targets a broad audience including local citizens, government employees, and businesses operating within San Francisco. Technically, SF.gov is built on modern web technologies including React and Next.js, with a CMS likely based on Wagtail. The site demonstrates excellent mobile optimization, accessibility, and SEO practices. It integrates Google Tag Manager and Google Analytics for user tracking and performance monitoring. The website is served over HTTPS with strong security headers, indicating a robust security posture. However, it lacks a visible cookie consent mechanism and explicit security or incident response policies, which are areas for improvement. From a security perspective, the site follows best practices such as enforcing HTTPS, implementing security headers, and avoiding exposure of sensitive data. No vulnerabilities or suspicious domains were detected. The WHOIS data is limited, showing no registrar or creation date, but this is typical for government domains using privacy protection. The domain's legitimacy is supported by consistent branding and official content. Overall, SF.gov presents a secure, professional, and trustworthy online presence for the San Francisco government. Strategically, the site should enhance privacy compliance by implementing a cookie consent banner and publishing clear security policies and incident response contacts. Adding a vulnerability disclosure or security.txt file would further improve transparency and trust. Regular audits of third-party scripts and tracking tools are recommended to maintain security and privacy standards. These steps will strengthen the site's compliance posture and user trust while maintaining its role as a critical public service platform.

20
53
17
85
67
30
100
governmentpublicservicescityportalsanfranciscoofficial+1 more
ReactNext.jsGoogle Tag ManagerGoogle Analytics

Partner Domains:

careers.sf.gov
partner
www.sfbos.org
partner

+1 more partners

2025-07-05T19:05:13.276Z
L

Labor Law Center, Inc.

complianceprotectionplan.com

0
OtherUnited StatesmediumMEDIUM

Compliance Protection Plan is a membership-based service operated by Labor Law Center, Inc., providing businesses nationwide with labor law compliance poster monitoring and shipping. The service ensures clients receive updated posters whenever labor law changes occur, supporting hassle-free compliance. The website serves as a portal for members to log in, manage locations, and track shipments. The business targets companies needing to maintain compliance with state and federal labor laws, positioning itself as a niche provider in this regulatory compliance space. Technically, the website uses standard web technologies including HTML5, CSS3, JavaScript, and integrates third-party tools such as Axios for API calls and Olark for live chat support. Hosting is provided via GoDaddy, with domain registration dating back to 2008, consistent with the company’s founding year. The site is moderately optimized for mobile and performance, though lacks advanced SEO and accessibility features. From a security perspective, the site uses HTTPS and secure login forms but lacks DNSSEC and important security headers, which could improve protection against certain attacks. No cookie consent mechanism or detailed privacy compliance indicators are present, which may expose the business to regulatory risks. The domain registration is transparent and consistent with the business, supporting legitimacy. Overall, the security posture is moderate but could benefit from enhancements in headers, DNS security, and privacy compliance. The overall risk is moderate with no critical vulnerabilities detected in the provided data. Strategic improvements in security headers, privacy policies, and cookie consent would enhance trust and compliance. The business model and website content are professional and focused, supporting a solid market position in labor law compliance services.

25
53
2
85
82
85
100
compliancelaborlawmembershipbusinesslogin+2 more
HTML5CSS3JavaScriptAxios+1

Partner Domains:

laborlawcenter.com
partner
2025-07-05T19:05:03.246Z
theclubb.co favicon

Clubb

theclubb.co

0
TechnologyN/asmallMEDIUM

Clubb is a technology platform designed to empower content creators by providing a purpose-built membership tool that enables them to launch custom subscription websites and mobile apps quickly. The platform targets creators in niches such as food, fitness, wellness, video, podcasts, and education, offering monetization tools that allow creators to build sustainable revenue streams independent of traditional social media algorithms. The website presents a professional and polished digital presence with comprehensive content, testimonials, and case studies that reinforce its market position as a niche player focused on creator independence. Technically, the website is built on Webflow CMS and leverages modern web technologies including Google Fonts, Facebook Pixel, Google Tag Manager, and Crisp Chat for customer engagement and analytics. The site is well-optimized for performance, mobile responsiveness, and accessibility, providing a seamless user experience. Security is robust with HTTPS enforced and secure form handling, although some security headers are not explicitly detected, and no cookie consent mechanism is present, which could be improved for GDPR compliance. From a security posture perspective, the site shows good practices with no visible vulnerabilities or exposed sensitive data. However, the lack of a published security policy, incident response contacts, or vulnerability disclosure page indicates room for maturity in security governance. The WHOIS data is fully redacted, which is common but reduces transparency about domain ownership. Despite this, the website's professional content and business model support its legitimacy. Overall, Clubb presents a low-risk profile with strong business credibility and technical implementation. Strategic recommendations include enhancing privacy compliance with cookie consent, publishing security policies, and implementing security headers to further strengthen the security posture.

30
53
17
75
72
70
100
creatorplatformsubscriptionmembershipfoodcreatorsfitness+4 more
Webflow CMSGoogle FontsFacebook PixelGoogle Tag Manager+4
2025-07-05T19:04:08.005Z
S

Sozial-Aktien-Gesellschaft Bielefeld

engagementtools.de

0
Non-profitGermanysmallHIGH

EngagementTools is a German-based initiative operated by Sozial-Aktien-Gesellschaft Bielefeld, providing web-based tools and widgets tailored for the non-profit sector. Their offerings include time donation management, monetary donation presentation, and in-kind donation tools, aimed at enhancing engagement and network effects among charitable organizations. The website is professionally designed with a clear focus on the non-profit audience, supporting sustainable digital engagement. Technically, the site employs a standard modern stack including jQuery, Bootstrap, and FontAwesome, ensuring responsive design and moderate performance. However, there is no evidence of advanced CMS usage or hosting details. The site lacks visible analytics or tracking scripts, indicating a privacy-conscious approach but also limited marketing insights. From a security perspective, the site does not show signs of advanced security headers or policies, and no cookie consent mechanism is present, which may impact GDPR compliance. The WHOIS data indicates a legitimate domain registration without privacy protection, consistent with the transparency expected from a non-profit entity. No blocking or WAF mechanisms were detected, allowing full content access. Overall, the site is functional and credible for its niche but would benefit from enhanced security practices and privacy compliance measures to strengthen trust and regulatory adherence.

20
28
2
70
72
60
-
non-profitdonationvolunteeringcommunityengagement+3 more
jQuery 3.3.1Popper.jsBootstrap 4 (CSS and JS)FontAwesome 5.0.13
2025-07-05T19:04:02.966Z
S

Sozial-Aktien-Gesellschaft Bielefeld

sozialaktie.de

0
Non-profitGermanysmallHIGH

The Sozial-Aktien-Gesellschaft Bielefeld operates as a small non-profit organization in Germany, offering a unique business model centered on the sale of social and artistic stocks to support charitable institutions. Their website presents a basic but functional digital presence, utilizing standard web technologies such as Bootstrap and jQuery. The content is primarily in German and targets individuals and organizations interested in supporting social causes through innovative investment-like mechanisms. The site includes sections for photo stocks, art stocks, and custom stocks for clubs, indicating a niche market position within the non-profit sector. Technically, the website employs a moderate technology stack with no detected CMS or advanced analytics tools. The site is moderately optimized for performance and mobile use but lacks advanced SEO and accessibility features. Security posture is limited, with no explicit HTTPS confirmation, absence of security headers, and no visible cookie consent mechanisms. The WHOIS data is minimal and shows an unusual domain status, which slightly reduces trust but does not indicate clear illegitimacy. Overall, the security posture is basic with room for improvement in SSL implementation, security headers, and privacy compliance. The business credibility is moderate, supported by trust indicators such as membership in recognized organizations and the presence of legal pages. There are no signs of adult or questionable content, making the site safe for general audiences. Strategic recommendations include enhancing security configurations, implementing GDPR-compliant privacy and cookie policies, and improving technical and content quality to increase trust and user experience.

20
18
2
60
72
60
-
non-profitsocialinvestmentgemeinntzigaktienkunst+2 more
jQuery 3.5.1Bootstrap 4.5.2Popper.js

Partner Domains:

sozialaktiengesellschaft.de
partner
stiftung-solidaritaet.de
partner

+2 more partners

2025-07-05T19:03:57.928Z
dy.dev favicon

Dynamic Yield

dy.dev

0
TechnologyN/aenterpriseMEDIUM

Dynamic Yield operates as an enterprise-grade technology company specializing in digital experience optimization through its Experience OS platform. The company targets developers and enterprise clients seeking to personalize digital interactions across multiple channels using API-first, cloud-native solutions. The website analyzed serves as a developer documentation portal, providing comprehensive guides and API references to facilitate integration and usage of their platform. The company holds MACH Alliance certification, underscoring its commitment to modern, modular, and API-driven architectures. Technically, the website is built on modern frameworks such as React and is hosted on the ReadMe.io platform, ensuring fast performance and good mobile optimization. The site employs HTTPS with excellent SSL configuration and shows no signs of exposed sensitive data or vulnerable libraries. However, some security best practices such as explicit security headers and visible cookie consent mechanisms are missing. Privacy policies and security information are referenced on the main corporate site but are not directly linked on this developer subdomain. From a security perspective, the site demonstrates a mature posture with enterprise-grade security claims and no detected vulnerabilities or blocking mechanisms. The absence of incident response contacts and vulnerability disclosure policies suggests areas for improvement. Overall, the site is trustworthy, professional, and well-aligned with the company's business model and market positioning. Strategically, the company should enhance transparency by adding direct links to privacy and terms of service pages, implement cookie consent mechanisms to comply with GDPR, and publish clear vulnerability disclosure and incident response information to strengthen trust and compliance.

65
50
2
70
52
85
100
developerdocumentationapipersonalizationexperienceoptimizationmachalliance+1 more
ReactReadMe.io platformJavaScriptCSS
2025-07-05T19:03:52.904Z
simplybook.it favicon

SimplyBook.me

simplybook.it

0
TechnologyUnited StatesmediumMEDIUM

SimplyBook.me is a well-established SaaS provider specializing in online appointment booking and scheduling solutions for service-based industries worldwide. Founded in 2011, the company offers a comprehensive platform including booking websites, widgets, client and admin mobile apps, payment processing, and multi-channel integrations. The business targets a broad audience of small to medium enterprises seeking efficient scheduling and client management tools. Their market position is strong, supported by thousands of customers and positive testimonials. Technically, SimplyBook.me employs modern web technologies with a focus on performance, mobile optimization, and accessibility. Hosting is provided by Linode with DNS managed accordingly. The website integrates multiple analytics and marketing tools such as Google Tag Manager, LinkedIn Insight, and Reditus affiliate tracking, demonstrating digital maturity and marketing sophistication. From a security perspective, the company maintains a robust posture with ISO 27001 certification and GDPR compliance. HTTPS is enforced, and no critical vulnerabilities or exposed sensitive data were detected. However, some security headers could be improved, and a formal vulnerability disclosure policy is absent. Privacy policies and cookie consent mechanisms are comprehensive and transparent. Overall, SimplyBook.me presents a low-risk profile with strong business credibility, technical soundness, and good privacy and security practices. Strategic recommendations include enhancing security headers, publishing a security.txt file, and providing explicit incident response contacts to further strengthen trust and compliance.

45
80
17
75
82
80
100
appointmentbookingonlineschedulingsaasiso27001gdpr+3 more
JavaScriptGoogle Tag ManagerYouTube embedsSVG graphics+2
2025-07-05T19:03:27.815Z
tenisakorti.eu favicon

Tenisa korti Mežaparkā

tenisakorti.eu

0
HospitalityLatviasmallMEDIUM

The website www.tenisakorti.eu represents a small business operating tennis courts in Mežaparks, Riga, Latvia. It offers 11 professional clay tennis courts with additional amenities such as private parking, changing rooms, showers, and soon a café. The business model centers on court rental, equipment rental and sales, and customer engagement through an online booking platform powered by SimplyBook.me. The site includes customer reviews indicating high satisfaction and trust. Technically, the website uses modern web technologies including JavaScript, jQuery, Bootstrap, and integrates with the SimplyBook.me booking system. The site is mobile-optimized and provides a good user experience with clear navigation and structured content. However, there is room for improvement in security headers and privacy compliance. Security posture is moderate; HTTPS is used but no explicit security headers were detected. No vulnerabilities or exposed sensitive data were found in the HTML content. Privacy and cookie policies are missing, which is a compliance gap especially under GDPR. The site uses minimal tracking via Matomo analytics, indicating a low level of user tracking. Overall, the website is legitimate and professionally presented, with no signs of malicious activity or adult content. The lack of WHOIS data is due to EURid privacy policies and is common for small businesses. Strategic recommendations include adding privacy and cookie policies, implementing security headers, and enhancing compliance documentation to improve trust and security posture.

45
25
17
70
59
85
100
sportstennisbookinglatviatenniscourts+1 more
JavaScriptjQueryBootstrapHandlebars.js+1
2025-07-05T18:21:08.959Z