Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2665 of 2975|Showing 133201-133250 of 148716
R

RCD Mallorca

rcdmallorca.es

0
HospitalitySpainmediumMEDIUM

RCD Mallorca's official website serves as the primary digital platform for the professional football club based in Mallorca, Spain. It offers comprehensive information about the club, including team rosters, schedules, ticket sales, merchandise, and fan engagement opportunities. The site targets football fans and stakeholders interested in the club's activities and events. The business model revolves around sports entertainment, fan engagement, and e-commerce through ticketing and merchandise sales. Technically, the website is built using modern web technologies such as React and Next.js, ensuring a responsive and dynamic user experience. Integration with multiple analytics and marketing platforms like Google Tag Manager, TikTok Pixel, and Facebook Pixel indicates a mature digital marketing strategy. The site includes a cookie consent mechanism compliant with EU regulations, although explicit privacy and terms of service pages are not clearly identified. From a security perspective, the site enforces HTTPS and uses cookie consent tools, but lacks visible security headers and explicit security policies or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. WHOIS data is unavailable due to registry restrictions, which is common for .es domains and does not detract from the site's legitimacy. Overall, the website presents a professional and trustworthy front for RCD Mallorca, with room for improvement in security headers, privacy disclosures, and contact transparency to enhance compliance and user trust.

60
40
17
70
90
80
100
sportsfootballclubmallorcaofficial+4 more
ReactNext.jsGoogle Tag ManagerOneTrust Cookie Consent+3

Partner Domains:

estadimallorcasonmoix.es
partner
tienda.rcdmallorca.es
subsidiary

+1 more partners

2025-06-23T09:11:09.795Z
rccelta.es favicon

RC Celta

rccelta.es

0
MediaSpainmediumMEDIUM

RC Celta's official website serves as the primary digital platform for the professional football club, providing fans with news, ticket purchasing options, and club-related services. The site targets supporters and stakeholders interested in the club's activities and offerings. The business model centers on fan engagement and service provision through digital channels, positioning RC Celta as a recognized entity in the sports media sector within Spain. Technically, the website is built on WordPress CMS, leveraging popular plugins such as Yoast SEO and WPBakery Page Builder to enhance content management and SEO performance. Integration with Google Tag Manager, Google Analytics, and Cookiebot demonstrates a mature approach to analytics and privacy compliance. The site is mobile-optimized and exhibits good design and navigation clarity, supporting a positive user experience. From a security perspective, the website enforces HTTPS and includes several security headers, alongside the use of Google reCAPTCHA to mitigate bot activity. Cookie consent mechanisms comply with GDPR requirements, reflecting a commitment to privacy. However, the absence of explicit terms of service, security policy, and incident response contact information represents gaps in the security posture that could be addressed to enhance trust and compliance. Overall, the website is professional, trustworthy, and well-structured, with minor areas for improvement in security transparency and contact availability. The domain registration aligns with the club's identity, reinforcing legitimacy. Strategic recommendations include publishing comprehensive legal and security policies, enhancing accessibility, and establishing clear incident response channels.

50
83
17
55
65
80
100
sportsfootballclubofficialticketsales+4 more
WordPress 5.4Yoast SEO pluginWPBakery Page BuilderGoogle Tag Manager+2
2025-06-23T09:10:59.749Z
athletic-club.eus favicon

Athletic Club

athletic-club.eus

0
OtherSpainlargeMEDIUM

Athletic Club operates a comprehensive official website serving as the primary digital presence for the historic football club based in Bilbao, Spain. The site offers extensive content including latest news, team rosters, ticket sales for matches and tours, official merchandise stores, and membership information. It targets football fans, club members, and tourists interested in the club's activities and heritage. The business model revolves around fan engagement, ticketing, merchandising, and exclusive experiences, positioning Athletic Club as a prominent sports entity with a large and loyal audience. Technically, the website leverages modern web technologies such as the Astro framework, Google Tag Manager, Microsoft Clarity, and Cookiebot for analytics and privacy compliance. The site is well-optimized for mobile devices, features good accessibility practices, and maintains strong SEO fundamentals. Performance is fast, and the site structure supports multilingual content in Spanish, Basque, and English, enhancing its reach. From a security perspective, the site enforces HTTPS with excellent SSL configuration and implements multiple security headers to protect users. Privacy compliance is robust with clear cookie consent mechanisms and a comprehensive privacy policy. However, there is a lack of publicly available security policies or incident response contacts, which could be improved to enhance transparency and trust. Overall, Athletic Club's website demonstrates a mature digital presence with strong business credibility and security posture. The domain is privacy protected, which is typical and justified for this type of organization. The site is trustworthy, professional, and well-maintained, supporting the club's brand and operational goals effectively.

35
65
17
65
100
75
100
sportsfootballclubticketsmerchandise+3 more
Astro frameworkGoogle Tag ManagerMicrosoft ClarityCookiebot+1

Partner Domains:

shop.athletic-club.eus
partner
tienda.athletic-club.eus
partner

+3 more partners

2025-06-23T09:10:14.525Z
morningstar.se favicon

Morningstar, Inc.

morningstar.se

0
FinanceSwedenlargeMEDIUM

Morningstar Sverige is a localized Swedish website of Morningstar, Inc., a global financial services company specializing in investment research, fund data, and portfolio management tools. The website offers comprehensive financial content including fund prices, market news, and investment analysis targeted at both private investors and financial professionals in Sweden. The business model is primarily based on subscription services and advertising revenue, supported by a strong brand presence and consistent content quality. The site is well-established with a domain age dating back to 2000, reflecting a mature market position. Technically, the website employs a modern technology stack including jQuery, Bootstrap, New Relic monitoring, and OneTrust for cookie consent management. It integrates multiple third-party analytics and marketing tools such as Google Analytics, Google Tag Manager, and Qualtrics feedback modules. The site is hosted under a reputable registrar with DNS services from UltraDNS and NS1, though DNSSEC is not enabled. Performance is moderate with good mobile optimization and basic accessibility features. From a security perspective, the site enforces HTTPS and implements several security headers, though some headers like Content-Security-Policy could be more explicitly defined. The cookie consent mechanism is robust and GDPR compliant, providing users with granular control over cookie categories. No critical vulnerabilities or exposed sensitive data were detected. The domain registration data aligns well with the business claims, indicating a legitimate and trustworthy online presence. Overall, Morningstar Sverige demonstrates a strong security posture, good privacy compliance, and a professional digital presence. Recommendations include enabling DNSSEC, enhancing security headers, and maintaining regular audits of third-party scripts to mitigate potential risks. The site provides a reliable and user-friendly platform for investment research and financial data in the Swedish market.

85
83
2
85
72
70
100
financeinvestmentfundsstocksportfolio+3 more
jQuery 3.5.1Bootstrap 3.4.1New Relic monitoringOneTrust cookie consent+5
2025-06-23T09:09:54.437Z
eventsingozo.com favicon

Events in Gozo

eventsingozo.com

0
GovernmentMaltasmallMEDIUM

Events in Gozo is a government-supported digital platform dedicated to promoting and listing events on Gozo Island, Malta. The website offers comprehensive event information ranging from festivals, music concerts, food fairs, arts, sports, to family and kids activities. Supported by the Ministry for Gozo and Planning, the platform serves residents and visitors seeking up-to-date event details and features a mobile app to enhance accessibility and user engagement. The site is professionally designed with clear navigation, mobile optimization, and SEO best practices, reflecting a mature digital presence for a relatively new domain established in 2023. Technically, the website is built on WordPress using modern plugins such as The Events Calendar, Yoast SEO, and Ajax Search Pro, with a responsive design and moderate performance. Hosting appears to leverage Azure DNS services, indicating a reliable infrastructure. Security posture is good with HTTPS enforced and domain status protections in place; however, DNSSEC is not enabled and security headers are not fully implemented, suggesting room for improvement in hardening the site against advanced threats. Privacy compliance is strong, with clear privacy and cookie policies, cookie consent mechanisms, and GDPR adherence. Contact information is transparent and includes official government email and phone contacts. No incident response or vulnerability disclosure policies are found, which is typical for government event platforms but could be enhanced for security maturity. Overall, Events in Gozo presents a trustworthy, well-maintained, and user-friendly platform with solid government backing. Strategic recommendations include enabling DNSSEC, implementing comprehensive security headers, and establishing formal vulnerability disclosure and incident response policies to further strengthen security and trust.

80
80
17
70
77
75
100
eventsgozomaltagovernmentfestival+5 more
WordPressPHPJavaScriptjQuery+4
2025-06-23T09:09:44.364Z
yaycommerce.com favicon

YAYCOMMERCE COMPANY LIMITED

yaycommerce.com

0
E-commerceN/asmallMEDIUM

YayCommerce is a specialized provider of WooCommerce plugins, serving over 100,000 WordPress websites. The company offers a suite of products designed to enhance e-commerce functionality, including email customization, multi-currency switching, SMTP integration, dynamic pricing, variation swatches, and extra product options. Their market position is that of a trusted, niche player in the WooCommerce ecosystem, targeting online store owners and WordPress users seeking enhanced e-commerce capabilities. The business model is primarily product sales supplemented by an affiliate program to expand reach. Technically, the website is built on a modern WordPress stack utilizing popular plugins such as Elementor for design, Easy Digital Downloads for commerce, and WP Rocket for performance optimization. The site is hosted with domain registration via GoDaddy and DNS managed by Cloudflare, indicating a reliable infrastructure. Performance and mobile optimization are good, with SEO best practices implemented through Yoast SEO. From a security perspective, the site employs HTTPS with good SSL configuration and some security best practices. However, it lacks explicit security headers like Content-Security-Policy and does not publish a dedicated security or incident response policy. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, YayCommerce presents a professional and trustworthy online presence with solid technical foundations. The main areas for improvement include enhancing privacy compliance by publishing a dedicated privacy and cookie policy with consent mechanisms, and strengthening security posture by adding security headers and incident response information.

45
50
17
85
75
85
100
woocommercewordpresse-commercepluginssaas+1 more
WordPressWooCommerceElementorEasy Digital Downloads+3
2025-06-23T09:09:39.334Z
fondo.se favicon

Fondo Solutions AB

fondo.se

0
FinanceSwedensmallMEDIUM

Fondo Solutions AB is a Swedish fintech company specializing in providing a cloud-native investment platform and API that enables financial and non-financial partners to integrate mutual fund investments seamlessly into their products and user journeys. The company positions itself as a market leader in Sweden with strategic partnerships such as Sharpfin, offering a modern, scalable, and compliant infrastructure for investment services. Their business model focuses on API-first solutions, digital onboarding, automated order execution, and regulatory compliance, targeting wealth managers, banks, fund companies, and other financial service providers. Technically, Fondo employs modern web technologies including htmx.org, Alpine.js, and Flowbite, hosted on Google Cloud infrastructure as indicated by DNS records. The website is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital presence. SEO practices are solid with comprehensive meta tags and Open Graph data. From a security perspective, the site uses HTTPS and modern libraries without visible vulnerabilities. However, it lacks DNSSEC, security headers, and explicit security or incident response policies, which are areas for improvement. Privacy compliance is good with a clear privacy policy and terms of service, but the absence of a cookie consent mechanism is a notable gap. Overall, Fondo demonstrates a strong business credibility and technical maturity with a high trustworthiness level. Strategic recommendations include enhancing DNS security, implementing security headers, adding cookie consent, and publishing vulnerability disclosure information to further strengthen security posture and compliance.

15
28
2
75
52
80
100
investmentapimutualfundsfinancewealthmanagement+2 more
htmx.orgAlpine.jsFlowbiteLenis (smooth scrolling)+1

Partner Domains:

getdreams.com
partner
sharpfin.com
partner

+3 more partners

2025-06-23T09:09:34.323Z
alpcot.se favicon

alpcot.se

alpcot.se

0
OtherN/asmallMEDIUM

The website www.alpcot.se currently presents minimal accessible content, displaying an error message indicating the page could not be loaded. The site is built using modern technologies such as Blazor server-side framework, Radzen components, and Bootstrap CSS for styling. PostHog analytics is integrated for user behavior tracking. However, the lack of visible business information, contact details, and policy documents significantly limits the ability to assess the company's market position or business model. The domain queried (www.alpcot.se) is a subdomain, with no WHOIS data found, which reduces trustworthiness and raises questions about domain registration consistency. From a technical perspective, the site implements a Content-Security-Policy header and enforces HTTPS, which are positive security indicators. Nevertheless, the absence of privacy and cookie policies, incident response information, and vulnerability disclosure mechanisms highlights compliance gaps. The user experience is poor due to the error page and lack of navigable content, and SEO and accessibility optimizations are minimal. Security posture is moderate with basic best practices in place but lacks comprehensive policies and contact channels for security incidents. Overall, the website's risk profile is elevated due to minimal content, lack of transparency, and incomplete compliance documentation. Strategic improvements are needed to enhance trust, compliance, and user experience.

30
10
17
70
82
75
100
blazorradzenposthogbootstrapanalytics+2 more
BlazorRadzen.BlazorBootstrapPostHog
2025-06-23T09:09:29.293Z
ruimtelijkeprocedures.nl favicon

BRO

ruimtelijkeprocedures.nl

0
GovernmentNetherlandsmediumCRITICAL

Ruimtelijkeprocedures.nl is a specialized informational website operated by BRO, a Dutch organization focused on spatial planning and environmental permits. The site provides detailed guidance on various procedures related to environmental permits and spatial plans, targeting professionals and stakeholders in the Netherlands. The website is well-branded, consistent, and offers clear contact information, enhancing its credibility and trustworthiness. Technically, the website is built on Concrete CMS and employs modern web technologies including jQuery, Google Tag Manager, and Typekit fonts. The site is mobile-optimized and structured with good SEO practices, although some accessibility features could be improved. Performance is moderate, with no critical technical issues detected. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks important security headers and explicit security or incident response policies. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism detected. Analytics usage is moderate, relying on Google Analytics and Tag Manager. Overall, the website presents a moderate risk profile with good business credibility but some gaps in security and privacy compliance. Strategic improvements in security headers, cookie consent, and incident response documentation are recommended to enhance trust and compliance.

-
-
-
-
-
-
-
spatialplanningenvironmentalpermitsnetherlandsgovernmentprocedures+1 more
jQueryGoogle Tag ManagerGoogle Analytics (gtag.js)Typekit Fonts

Partner Domains:

bro.nl
partner
movares.nl
partner

+1 more partners

2025-06-23T07:59:37.891Z