Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 276 of 870|Showing 13751-13800 of 43488
payload.de favicon

Payload

payload.de

0
TechnologyN/asmallHIGH

Payload.de is a specialized service provider offering a unified RPC endpoint for the Ethereum blockchain to facilitate private transactions and bundle submissions. The service aggregates submissions to multiple well-known Ethereum relays, targeting blockchain developers and users requiring privacy in transaction processing. The website is professionally designed using the Ghost CMS platform and incorporates modern web technologies such as jQuery and external search libraries. The content is relevant, clear, and focused on the Ethereum ecosystem, with consistent branding and a moderate level of trust indicators including HTTPS and structured data. From a technical perspective, the site demonstrates a moderate performance profile with good mobile optimization and SEO practices. However, it lacks some security best practices such as security headers and explicit privacy and cookie policies. No analytics or tracking scripts were detected, indicating a minimal user tracking approach. The contact information is limited to a contact page without direct emails or phone numbers, which may impact user trust and support accessibility. Security posture is generally strong with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. The absence of security headers and formal security policies suggests room for improvement in hardening the site against common web threats. The WHOIS data shows a consistent domain registration with no privacy protection or suspicious patterns, supporting the legitimacy of the domain and its alignment with the business purpose. Overall, Payload.de presents a niche, technically competent service with a good security baseline but requires enhancements in privacy compliance and security policy transparency to improve trust and regulatory adherence.

30
10
2
40
72
60
40
ethereumblockchainprivatetransactionsrpcendpointpayload
jQuery 3.4.1Ghost CMS 5.26Sodo SearchCSS+1
2025-09-06T06:32:13.115Z
inkglobalfoundation.org favicon

INK Global Foundation

inkglobalfoundation.org

0
Non-profitN/amediumHIGH

INK Global Foundation is a well-established non-profit organization focused on fostering innovation, leadership, and storytelling through its flagship programs such as INK Fellows, INK Women, and Writers INK. The foundation targets a global audience of changemakers, entrepreneurs, women leaders, and creative writers, providing mentorship, learning opportunities, and platforms for impact. The website reflects a professional and consistent brand image with active social media engagement and partner collaborations. Technically, the website is built on WordPress with modern front-end libraries like jQuery, FontAwesome, and slick carousel plugins. It demonstrates good mobile responsiveness and SEO optimization, although performance is moderate. The site uses HTTPS with an excellent SSL configuration but lacks some security headers and published security policies. From a security perspective, the site shows a mature posture with secure forms and no visible vulnerabilities or exposed sensitive data. However, it lacks published privacy and cookie policies, incident response, and vulnerability disclosure information, which are important for compliance and trust. The WHOIS data is unavailable, likely due to privacy protection, but the website content and external references support legitimacy. Overall, the site is trustworthy and professionally managed but would benefit from enhanced privacy compliance and security transparency to improve user trust and regulatory adherence.

30
35
2
60
-
75
-
non-profitinnovationleadershipstorytellingwomenempowerment+1 more
jQueryFontAwesomeSlick CarouselOwl Carousel+2

Partner Domains:

ink-fellows.org
partner
inkwomen.org
partner

+3 more partners

2025-09-06T04:18:23.839Z
3dtestosterone.net favicon

3DT Preloader

3dtestosterone.net

0
OtherN/asmallHIGH

The website 3dtestosterone.net currently serves primarily as a preloader page with minimal content focused on a thematic message celebrating 5 years of '3DTestosterone' and its association with 'Network Spirit' and 'Kyber Kommandos'. There is no clear business description, contact information, or service offerings visible, which limits understanding of the company's market position or business model. The target audience appears niche and possibly community-oriented, but this is not explicitly stated. Technically, the site uses basic HTML, CSS, and JavaScript with some audio elements and a preloading animation. There is no detected CMS or advanced frameworks. Performance appears moderate with basic mobile optimization and accessibility. SEO optimization is poor due to lack of meta tags and structured data. Analytics usage is minimal, relying on plausible analytics for basic event tracking. From a security perspective, the site uses HTTPS (implied by URL) but lacks visible security headers such as CSP or HSTS. No forms or inputs reduce attack surface, but the absence of security best practices and policies is notable. No privacy or cookie policies are present, and no contact or incident response information is provided, indicating low privacy compliance and business credibility. Overall, the site scores low on content quality, privacy compliance, and business credibility, with moderate technical implementation and security posture. The lack of business and contact information, policies, and professional content limits trustworthiness and user confidence.

15
50
2
60
75
75
40
preloaderjavascriptfitnessnetworkspirit3dtestosterone
JavaScriptHTML5CSSAudio element
2025-09-06T04:16:33.510Z
K

Kingsway Capital Partners Limited

kingswaycap.com

0
FinanceUnited KingdomsmallHIGH

Kingsway Capital Partners Limited is a UK-based financial services firm authorised and regulated by the Financial Conduct Authority. The company provides investment and capital management services primarily targeting investors within the UK market. The website content is minimal but consistent with a professional financial services provider, including clear contact information and regulatory disclosures. The domain is well-established since 2013, supporting the company's legitimacy and market presence. Technically, the website is basic with no detected advanced frameworks or CMS. It lacks privacy and cookie policies and does not employ tracking or analytics services, indicating a low digital footprint. The site is hosted under a reputable registrar but does not enable DNSSEC, and no security headers were detected, suggesting room for security improvements. From a security perspective, the domain registration status flags provide good protection against unauthorized changes. However, the absence of security headers and privacy compliance documentation are notable gaps. The website does not appear to be blocked or protected by a WAF, and no vulnerabilities or suspicious content were detected. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk is low given the nature of the business and the lack of sensitive data collection on the site. Strategic recommendations include enabling DNSSEC, adding privacy and cookie policies, implementing security headers, and publishing incident response and vulnerability disclosure information to improve trust and compliance.

15
50
2
70
82
75
-
financeinvestmentfcaregulatedukcapitalmanagement
2025-09-06T04:14:22.942Z
confianzaonline.es favicon

Confianza Online

confianzaonline.es

0
E-commerceSpainmediumHIGH

Confianza Online is a Spanish organization dedicated to promoting transparency and responsibility in e-commerce. The website serves as an informational platform offering resources on who they are, how consumers can file claims, partnership opportunities, and membership information. The organization appears to be a recognized entity within Spain's e-commerce ecosystem, focusing on consumer protection and dispute resolution. Technically, the website is built on WordPress using the Divi theme and several plugins that enhance functionality and user experience. It employs modern web technologies including HTTPS, Google reCAPTCHA v3 for spam protection, and caching mechanisms for performance. The site is mobile-optimized and presents a professional design with clear navigation. From a security perspective, the site uses HTTPS and implements reCAPTCHA, but lacks visible advanced security headers and explicit security or incident response policies. Privacy and cookie policies are present and appear comprehensive, indicating good GDPR compliance. No WHOIS data was accessible due to registry restrictions, limiting domain legitimacy verification. Overall, the website is professional, trustworthy, and serves its purpose well. Recommendations include enhancing security headers, adding explicit security policies, and implementing cookie consent mechanisms to further improve compliance and security posture.

15
25
2
70
72
75
-
e-commerceconsumerprotectionprivacytransparencyspain+2 more
WordPress 6.8.2Divi Theme 4.27.4jQuery 3.7.1Google reCAPTCHA v3+4
2025-09-06T03:03:57.955Z
S

Sfera

sfera.com

0
RetailSpainlargeHIGH

Sfera is a retail fashion brand operating an online platform primarily targeting Spanish-speaking countries with some English-speaking markets. The website serves as a login and country selection portal for customers. The business model focuses on e-commerce sales of apparel and accessories. The website's market position appears established but lacks visible trust signals or detailed business information on the landing page. Technically, the site uses common web technologies such as jQuery, Google Tag Manager, and Ensighten for tracking and tag management, with Akamai as a CDN provider. The site shows basic mobile optimization and moderate performance but lacks advanced SEO optimization due to restrictive meta robots tags. No CMS or specific frameworks were detected. From a security perspective, the site lacks visible security headers and privacy or cookie policies, which are critical for GDPR compliance. The WHOIS data is missing, raising concerns about domain legitimacy. No WAF or blocking mechanisms were detected, and the site content is accessible. The security posture is moderate but requires improvements in SSL configuration, header implementation, and privacy compliance. Overall, the site scores moderately low on AI scoring due to missing WHOIS data, lack of privacy policies, and poor SEO. Strategic recommendations include improving transparency with privacy and cookie policies, enhancing security headers, and verifying domain registration details to build trust.

-
35
2
70
-
85
100
fashionretaile-commerceloginmultilingual
jQueryGoogle Tag ManagerEnsightenAkamai
2025-09-06T01:55:57.436Z
E

El Corte Inglés, S.A.

primeriti.es

0
RetailSpainenterpriseHIGH

Primeriti is a flash sales e-commerce platform operated by El Corte Inglés, S.A., a leading retail company in Spain. The website offers discounted branded fashion, sportswear, accessories, and home products targeting consumers looking for exclusive deals. The platform leverages the strong brand reputation of El Corte Inglés and integrates secure user authentication via the parent company's OAuth system. The site is well-branded, professionally designed, and provides comprehensive privacy and cookie policies in Spanish, demonstrating compliance with GDPR requirements. Contact information and a designated Data Protection Officer are clearly provided, enhancing trust and transparency. Technically, the website employs modern JavaScript libraries, tag management tools like Google Tag Manager and Adobe DTM, and a content delivery network associated with the parent company. The site is mobile-optimized, accessible, and SEO-friendly, with moderate performance. Security posture is strong with HTTPS enforced, encrypted data transmission, and secure login mechanisms. However, explicit security headers and a public incident response policy are not evident, and a cookie consent mechanism is missing, which are areas for improvement. Overall, the website presents a high level of professionalism, security, and compliance suitable for an enterprise retail business. The domain registration data aligns with the business entity, confirming legitimacy. Strategic recommendations include implementing explicit cookie consent, publishing a security policy, and enhancing security headers to further strengthen the security posture and compliance.

-
25
17
70
-
70
100
e-commercefashionflashsalesretailelcorteingls+4 more
JavaScriptAdobe DTM (Adobe Dynamic Tag Management)Google Tag ManagerInsider SDK+2

Partner Domains:

cuenta.elcorteingles.es
partner
cdn.grupoelcorteingles.es
partner
2025-09-06T01:55:32.175Z
frederickwgc.org favicon

Women's Giving Circle of Frederick County

frederickwgc.org

0
Non-profitUnited StatessmallHIGH

The Women's Giving Circle of Frederick County is a small non-profit organization focused on empowering women in challenging situations through philanthropic efforts. The website serves as a platform to provide information about donor opportunities and support programs aimed at improving the quality of life for women and their dependents in Frederick County, Maryland. The organization positions itself as a local philanthropic entity with a clear mission and target audience of donors and supporters interested in women's empowerment. Technically, the website is built on the Wix platform, leveraging modern web technologies and standard tracking tools such as Google Analytics and Google Tag Manager. The site demonstrates good mobile optimization and a professional design, although accessibility and SEO optimizations are basic. The website is hosted and managed by Wix, ensuring reliable infrastructure and moderate performance. From a security perspective, the site enforces HTTPS and includes scripts to harden fetch and XHR requests, but lacks important security headers and formal privacy or cookie policies. No forms or sensitive data collection mechanisms were detected, reducing immediate risk. The absence of WHOIS data limits domain registration insights, but the overall digital footprint and content quality suggest a legitimate and trustworthy organization. Overall, the website presents a low-risk profile with room for improvement in privacy compliance, security headers, and contact transparency. Strategic enhancements in these areas would strengthen trust and regulatory adherence.

35
35
2
55
-
80
100
givingnonprofitphilanthropywomen
Wix.com Website BuilderGoogle AnalyticsGoogle Tag ManagerCore-js polyfills+2
2025-09-05T23:37:36.999Z
E

editec-online.com | 521: Web server is down

editec-online.com

0
OtherN/asmallHIGH

The website editec-online.com is currently inaccessible due to a Cloudflare error 521 indicating the web server is down and not responding. This prevents access to any substantive content or business information. The domain is registered with 101domain GRS Limited since December 2020 and uses Cloudflare DNS services. No privacy, cookie, or terms of service policies are present, nor is there any contact information or business details visible. The technical infrastructure relies on Cloudflare for DNS and security, but the hosting server is currently offline, severely impacting availability and trust. From a security perspective, the site lacks visible security headers and does not have DNSSEC enabled, which could improve domain security. The SSL configuration cannot be fully assessed due to the server being down. No forms or scripts are detected, indicating minimal data collection or tracking. The overall security posture is weak due to the server downtime and lack of security best practices visible. The website quality is poor with minimal content, no SEO or accessibility features, and no mobile optimization. The lack of business information and contact details reduces credibility and trustworthiness. Given the site is blocked by Cloudflare due to server issues, the AI scoring is capped low, reflecting the inability to perform a full analysis. Strategic recommendations include restoring server availability immediately, enabling DNSSEC, implementing security headers, ensuring HTTPS is properly configured, and establishing monitoring for uptime and security incidents to improve trust and security posture.

-
35
2
40
75
70
100
errorcloudflareserverdownsecurityunavailable
Cloudflare
2025-09-05T22:27:37.530Z
fija.io favicon

Fija Finance

fija.io

0
FinanceN/asmallHIGH

Fija Finance is a regulated DeFi platform focused on providing MiCA-compliant, transparent, and secure yield products without issuing its own token. The company targets crypto investors seeking easy access to advanced DeFi strategies with compliance and transparency. The website presents curated yield strategies with detailed APYs, safety scores, and blockchain/protocol information, positioning itself as a trustworthy player in the EU DeFi market. The platform emphasizes regulatory compliance, security audits, and automated risk management to build user trust. Technically, the website uses the Contao CMS with modern web technologies including jQuery, MooTools, Font Awesome, and Google Fonts. The site is mobile optimized, has good SEO practices, and integrates minimal user tracking via plausible.io analytics. The site is fully accessible with no WAF or blocking detected, and performance is moderate. However, some security headers are missing and no cookie consent mechanism is implemented. Security posture is strong with HTTPS enforced, audited risk management, and transparent on-chain transactions. No vulnerabilities or exposed sensitive data were detected. However, the site lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. WHOIS data is unavailable due to TLD restrictions and privacy, but the website content and regulatory claims support legitimacy. Overall, Fija Finance demonstrates a professional and compliant approach to DeFi yield products with a solid technical foundation and good security practices. Strategic improvements in security headers, privacy compliance, and incident response transparency would further enhance trust and resilience.

60
53
2
55
72
65
-
defifinancecryptoyieldmica+2 more
jQueryMooToolsFont AwesomeGoogle Fonts (Lexend)+1

Partner Domains:

keyrock.com
partner
cvvc.com
partner

+3 more partners

2025-09-05T22:26:57.415Z
psyche.network favicon

Nous Psyche

psyche.network

0
TechnologyN/asmallHIGH

Nous Psyche operates as an innovative technology platform focused on democratizing AI development through decentralized training infrastructure. Their core offering leverages underutilized hardware to optimize distributed AI training, reducing data transfer significantly. The website branding and description position the company as a niche player in the AI infrastructure space, targeting developers and researchers interested in scalable AI training solutions. However, the website content is minimal and lacks comprehensive business and contact information, which limits transparency and user engagement. Technically, the site employs modern JavaScript modules and basic responsive design elements but lacks advanced SEO, accessibility, and performance optimizations. The absence of security headers and privacy-related policies indicates a nascent stage in security and compliance maturity. No analytics or tracking scripts were detected, suggesting minimal user data collection at this stage. From a security perspective, the site uses HTTPS (assumed from the URL) but does not present additional security best practices such as security headers or incident response information. The WHOIS data is limited due to TLD restrictions and privacy protections, which is common but reduces trust signals. No signs of malicious activity or blocking mechanisms were found. Overall, the website presents a promising technology concept but requires significant improvements in content richness, security posture, and compliance transparency to enhance trust and professional credibility.

20
40
2
60
52
75
40
aidecentralizedtechnologyinfrastructuredistributedtraining
JavaScriptES Modules
2025-09-05T21:19:32.001Z
perbility.de favicon

PERBILITY GmbH

perbility.de

0
TechnologyGermanymediumHIGH

PERBILITY GmbH is a German technology company specializing in innovative personnel management software, notably their HELIX platform. The company positions itself as a hub for coders and problem solvers, targeting HR professionals and organizations seeking to unlock hidden potential within their workforce. Their market position is that of an innovative HR solution provider with a medium-sized operation based in Germany. The website is professionally designed, mobile-optimized, and provides clear contact information, enhancing trust and credibility. Technically, the website is built using the Hugo static site generator, leveraging modern CSS and JavaScript assets, and integrates Matomo analytics for user tracking. Hosting is managed via reputable German nameservers (noris.ch, noris.de, noris.net), indicating a stable infrastructure. Performance is moderate with good mobile optimization, though accessibility features are basic. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks visible security headers and does not provide explicit security or incident response policies. Privacy compliance is limited due to the absence of privacy and cookie policies, which is a notable gap given GDPR requirements. No vulnerability disclosure or security.txt files were found. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security transparency to improve its risk posture and regulatory adherence.

40
28
2
55
82
70
40
hrsoftwarepersonnelmanagementtechnologygermanymatomoanalytics+1 more
Hugo static site generatorMatomo analyticsJavaScript

Partner Domains:

mein-helix.de
partner
statistics.perbility.de
related
2025-09-05T20:14:22.786Z
O

Oumi PBC

oumi.ai

0
TechnologyUnited StatessmallHIGH

Oumi PBC is a technology startup focused on building an open and collaborative AI platform, partnering with leading academic institutions to advance frontier AI research and development. Their platform offers tools for pre-training, fine-tuning, and deploying AI models, targeting researchers, developers, and enterprises. The company positions itself as a community-driven open AI lab with enterprise-grade solutions and expert support. Technically, the website is built using modern frameworks such as Next.js and React, with a clean, responsive design optimized for performance and accessibility. The infrastructure appears robust with fast loading times and good SEO practices. The site integrates Google Analytics for user tracking and has a presence on major social media platforms. From a security perspective, the site enforces HTTPS and has domain registration protections in place. However, it lacks DNSSEC and visible security or incident response policies. No cookie consent mechanism was detected, which may affect privacy compliance. There are no signs of vulnerabilities or malicious content. Overall, Oumi presents a credible and professional online presence with strong academic ties and a clear mission. Strategic improvements in privacy compliance and security transparency would enhance trust and regulatory adherence.

15
53
2
70
52
65
40
aiopensourceresearchtechnologyenterpriseai
ReactNext.jsFont AwesomeGoogle Analytics
2025-09-05T20:12:16.654Z
R

Reach Solutions

reachcreativedev.co.uk

0
OtherUnited KingdomsmallHIGH

Reach Solutions is a small UK-based business with a website currently under scheduled maintenance. The site provides minimal information, primarily a maintenance notice and a single contact email address. The business appears recently established in 2022, consistent with the domain registration data. The website uses modern front-end technologies such as Bootstrap 5 and Google Fonts but lacks detailed business descriptions or service information. From a technical perspective, the website is basic but mobile responsive and uses a modern CSS framework. However, it lacks SEO optimization, accessibility features, and any analytics or tracking tools. Security posture is minimal with no detected security headers or explicit HTTPS confirmation in the provided data. No forms or data collection mechanisms are present, reducing immediate security risks but also limiting user engagement. Security evaluation indicates a low maturity level with no privacy or cookie policies, no incident response contacts, and no vulnerability disclosure mechanisms. The domain registration is transparent and consistent with the business claims, supporting legitimacy. Overall, the website is functional but minimal, with significant room for improvement in security, compliance, and content richness. Strategic recommendations include implementing HTTPS and security headers, publishing privacy and cookie policies, enhancing SEO and accessibility, and providing more comprehensive business and contact information to improve trust and compliance.

15
35
2
40
75
75
100
maintenancebusinesscontactbootstrapresponsive
Bootstrap 5.1.3Google Fonts (Poppins)
2025-09-05T19:04:08.107Z
E

Page not found · GitHub Pages

evmos.org

0
OtherN/asmallHIGH

The website at evmos.org currently serves only a 404 error page hosted on GitHub Pages, indicating that the actual website content is missing or not deployed. There is no visible business information, contact details, or policies, which severely limits the ability to assess the company's operations or market position. The domain is registered through NameCheap, Inc. since 2021 and is valid until 2026, but the lack of content suggests the site is either under development or abandoned. Technically, the site is hosted on GitHub Pages with minimal security headers such as Content-Security-Policy. There is no evidence of HTTPS enforcement or DNSSEC enabled, and no analytics or tracking technologies are present. The site’s performance and SEO are poor due to the absence of content and metadata. From a security perspective, the site shows basic security header implementation but lacks critical protections like HTTPS and DNSSEC. No privacy, cookie, or terms of service policies are found, and no contact or incident response information is available. The domain registration is consistent and not privacy-protected, which is typical for a standard domain but does not compensate for the lack of website content. Overall, the website is currently non-functional from a user and business perspective, with a low trust and professionalism rating. Strategic recommendations include deploying actual website content, enabling HTTPS and DNSSEC, adding privacy and cookie policies, and providing clear contact and business information to improve credibility and security posture.

30
35
2
40
72
70
100
404errorgithubpagesnotfound
2025-09-05T17:54:33.908Z
openagro.uk favicon

Extreme Electronics Ltd.

openagro.uk

0
OtherUnited KingdomsmallHIGH

OpenAgro.uk is a UK-based small business specializing in agricultural analytics using satellite and climate data. The company offers detailed datasets and customizable analytical reports to support crop monitoring, targeting farmers, agricultural holdings, cooperatives, insurance companies, and analysts. The team behind OpenAgro has a strong background in big data and weather analytics, with notable projects such as OpenWeatherMap and Agro API, positioning them as a niche player in agri-tech data services. Technically, the website employs standard web technologies including jQuery, Bootstrap, and Leaflet, with integration of Google Analytics and Tag Manager for user tracking. The site is moderately optimized for performance and mobile use, with good SEO practices but basic accessibility features. Security posture is moderate; HTTPS is implied but no advanced security headers or policies are published. Privacy compliance is basic with a privacy policy and cookie consent banner present, but lacks explicit GDPR statements. Contact is primarily via Google Forms, with no direct emails or phone numbers listed. Overall, the site is professional and trustworthy but could improve transparency and security documentation.

15
68
2
60
72
60
40
agricultureanalyticssatellitedataclimatedataai+1 more
jQueryBootstrap 3.3.7Font Awesome 4.7.0Leaflet 1.0.3+2

Partner Domains:

openweathermap.org
partner
agromonitoring.com
partner

+1 more partners

2025-09-05T16:45:11.704Z
D

DigitalConfusion

geolocation-db.com

0
TechnologyFinlandsmallHIGH

Geolocation DB, operated by DigitalConfusion, offers a free and unlimited geolocation IP API service designed to help website owners and developers identify the geographic location of their visitors. The website is positioned as a niche technology provider focusing on geolocation data services, targeting users who require visitor location insights for analytics or customization purposes. The business model revolves around providing API access with a free signup, emphasizing ease of use and accessibility. Technically, the website employs a modern but somewhat dated technology stack including Bootstrap 3.3.7 and jQuery 1.9.1, along with popular libraries like Owl Carousel and Font Awesome. The site is mobile-optimized with good SEO practices and a clean, professional design. However, some technical debt is evident due to the older jQuery version and lack of advanced accessibility features. From a security perspective, the site benefits from HTTPS and does not expose sensitive data or use vulnerable libraries visibly. However, it lacks important security headers and does not provide visible security or incident response policies. Privacy compliance is partial; while privacy and cookie policies exist, the cookie consent mechanism is commented out and inactive, which may pose compliance risks under GDPR. Overall, the website is functional, professional, and trustworthy but could improve in privacy compliance, security best practices, and transparency by adding contact information and terms of service. Strategic recommendations include implementing a GDPR-compliant cookie consent, updating libraries, adding security headers, and publishing incident response information.

15
35
2
60
72
75
40
geolocationipaddressapifreeservicevisitorlocation
jQuery 1.9.1Bootstrap 3.3.7Owl CarouselFont Awesome+1
2025-09-05T16:42:01.221Z