Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2777 of 2975|Showing 138801-138850 of 148706
prosafe.com favicon

Prosafe

prosafe.com

0
EnergyNorwaymediumMEDIUM

Prosafe is a leading owner and operator of semi-submersible offshore accommodation vessels, holding the largest and most versatile fleet globally. Their vessels provide accommodation for 159 to 500 people and are equipped with high-quality welfare, catering, and safety facilities. The company targets offshore energy operators and investors, positioning itself as a market leader in offshore accommodation services. The website reflects a professional corporate presence with comprehensive investor relations and sustainability information. Technically, the website is built on WordPress with modern plugins such as Yoast SEO and ExactMetrics for analytics. It uses Google Tag Manager and Google Analytics for tracking, with cookie consent mechanisms in place. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Performance is moderate, with room for improvement in technical optimization. From a security perspective, the site enforces HTTPS and implements cookie consent, but lacks explicit security policy pages and incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. The domain registration is consistent with the business identity, supporting legitimacy. Overall, the security posture is solid but could be enhanced by adding security headers and formal policies. The overall risk is low, with recommendations focusing on improving security transparency and technical hardening to maintain trust and compliance in a regulated industry.

15
43
-
80
-
85
100
energyoffshoreaccommodationvesselscorporateinvestorrelations+1 more
WordPress 5.7.12Yoast SEO pluginGoogle Analytics (ExactMetrics plugin)jQuery+2
2025-06-18T08:07:09.694Z
I

Isle of Man Financial Services Authority

iomfsa.im

0
FinanceIsle of ManmediumMEDIUM

The Isle of Man Financial Services Authority (IOMFSA) operates as the primary regulatory body overseeing a broad range of financial sectors within the Isle of Man, including banking, insurance, investment business, pensions, and designated businesses. The website reflects a well-structured regulatory authority with comprehensive information on regulated sectors, enforcement, AML/CFT, and innovation initiatives. The target audience includes financial institutions, regulated entities, consumers, and professionals within the Isle of Man's financial ecosystem. The business model is typical of a government regulatory authority, funded through fees and government oversight, with a medium organizational size and a strong market position as the island's financial regulator. Technically, the website employs a modern but straightforward technology stack including jQuery, Font Awesome, Google Fonts, Google Tag Manager, and Google Analytics. The site is mobile-optimized with good navigation clarity and SEO practices, though accessibility features are basic. Performance is moderate, with asynchronous loading of scripts enhancing user experience. No CMS or hosting provider details are explicitly detected. From a security perspective, the site enforces HTTPS and uses Google Tag Manager and Analytics scripts responsibly. However, it lacks explicit security headers and dedicated security or incident response policy pages. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is adequate with a clear privacy policy and cookie policy present, though no active cookie consent mechanism is implemented. Contact information is limited to a contact form and social media links, with no direct emails or phone numbers visible. Overall, the website demonstrates a solid security posture and business credibility appropriate for a government financial regulator. Recommendations include enhancing security headers, implementing cookie consent mechanisms, publishing incident response policies, and auditing third-party scripts regularly to maintain security and compliance standards.

65
43
5
98
-
85
100
financeregulationisleofmanfinancialservicesaml+1 more
jQuery 3.1.1Font Awesome 4.7.0Google Fonts (Lato)Google Tag Manager+2
2025-06-18T08:07:09.653Z
mtg.im favicon

Manx Technology Group

mtg.im

0
TechnologyIsle of ManmediumMEDIUM

Manx Technology Group (MTG) is a reputable IT and IoT solutions provider serving businesses primarily in the Isle of Man and Scotland. The company offers a broad range of services including managed IT support, cybersecurity, cloud infrastructure, and innovative IoT solutions. Their market position is strong within their regional focus, supported by a professional website that clearly communicates their offerings and expertise. The website demonstrates a mature digital presence with modern technologies such as WordPress, Gravity Forms, Google reCAPTCHA, and Osano consent management, ensuring both usability and compliance with privacy regulations. From a security perspective, MTG employs HTTPS across their site, integrates CAPTCHA to protect forms, and provides a comprehensive cookie consent mechanism, reflecting a good security posture. However, explicit security policies and incident response information are not publicly available, which could be improved to enhance trust and transparency. The absence of a vulnerability disclosure policy or security.txt file suggests an opportunity to strengthen their security communication. Overall, the website is well-optimized for SEO, accessibility, and mobile responsiveness, providing an excellent user experience. The business information is consistent with WHOIS data, reinforcing the legitimacy of the company. Strategic recommendations include publishing detailed security and incident response policies, implementing a vulnerability disclosure program, and maintaining regular audits of third-party scripts to mitigate potential risks.

15
28
35
100
-
85
100
itservicescybersecuritycloudsolutionsiotmanagedit+4 more
WordPressGravity FormsGoogle reCAPTCHAYoast SEO+3
2025-06-18T08:07:09.648Z
M

Mann & Partners

mplegal.im

0
OtherIsle of MansmallHIGH

M&P Legal is a small incorporated legal practice based in the Isle of Man, offering a broad range of legal services including dispute resolution, employment law, commercial law, and private client services. The firm positions itself as a professional and responsive legal service provider with a focus on both local and international clients. The website content is well-structured, professionally presented, and includes trust signals such as testimonials and company registration details. Technically, the website uses modern web technologies including Google Analytics for tracking, Typekit for fonts, and Modernizr for feature detection. The site is served over HTTPS with secure forms incorporating CSRF tokens, indicating a reasonable level of technical maturity. However, some security best practices such as security headers and cookie consent mechanisms are missing. From a security perspective, the site shows good SSL configuration and no obvious vulnerabilities or exposed sensitive data. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. Contact information is comprehensive and clearly displayed, but no explicit security or incident response policies are published. Overall, the site demonstrates a moderate to good security posture with room for improvement. The domain registration data aligns well with the business claims, showing consistency and legitimacy. No WAF or blocking mechanisms were detected, allowing full content access and analysis. Strategic recommendations include enhancing security headers, implementing cookie consent, publishing security policies, and improving accessibility features to further strengthen the website's security and compliance posture.

20
28
-
60
-
80
20
legalisleofmanadvocatessolicitorsattorneys+4 more
JavaScriptGoogle AnalyticsTypekit FontsModernizr
2025-06-18T08:07:09.519Z
nhsprofessionals.nhs.uk favicon

NHS Professionals Ltd

nhsprofessionals.nhs.uk

0
HealthcareUnited KingdomlargeMEDIUM

NHS Professionals Ltd operates the largest NHS staff bank in the UK, specializing in flexible workforce solutions for NHS Trusts and healthcare organizations across England. Their services include staffing, recruitment, and training through the NHS Professionals Academy, targeting healthcare professionals and NHS partners. The website reflects a strong market position with comprehensive service offerings and a clear focus on supporting the NHS workforce needs. Technically, the website employs modern frontend technologies including Bootstrap, jQuery, and Cookiebot for consent management, ensuring responsive design and GDPR compliance. The use of Google Tag Manager and multiple analytics services indicates a mature digital infrastructure with extensive user tracking and marketing capabilities. From a security perspective, the site enforces HTTPS, uses secure cookies with CSRF protection, and integrates a robust cookie consent mechanism. However, there is room for improvement in implementing explicit security headers and publishing a dedicated security policy or incident response contacts. Overall, the website is professional, trustworthy, and compliant with privacy regulations, with no signs of blocking or WAF interference. The WHOIS data confirms the legitimacy and consistency of the domain registration, supporting a high trust score.

35
58
-
75
-
80
100
healthcarenhsstaffbankworkforcesolutionscookieconsent+3 more
Bootstrap 4.6.2jQuery 3.7.1bcswipeHeadroom.js 0.12.0+5

Partner Domains:

www.nhsponline.nhs.uk
partner
contact.nhsp.co.uk
partner

+3 more partners

2025-06-18T08:07:09.516Z
endorconsultants.com favicon

Endor Consultants LLC

endorconsultants.com

0
FinanceIsle of MansmallHIGH

Endor Consultants LLC is a small Isle of Man based professional accounting and financial consultancy firm specializing in tax advisory, audit, valuation, business acquisitions, relocation, and family office concierge services. The company positions itself between sole practitioners and larger firms, offering personalized service combined with broader expertise. Their website reflects a professional and consistent brand image with clear service offerings targeted at businesses and individuals seeking expert financial advice. Technically, the website is built on WordPress 6.7.2, utilizing common libraries such as jQuery, Bootstrap, and Slick Carousel. Google Tag Manager is used for analytics and tracking. The site is mobile optimized with good navigation and moderate performance. However, there is room for improvement in accessibility and SEO optimization. From a security perspective, the site uses HTTPS but lacks important security headers such as Content-Security-Policy and HSTS. No explicit security or incident response policies are published, which could be a gap in compliance and readiness. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy and cookie policies are present with a consent mechanism, but GDPR compliance indicators are minimal. Overall, the website demonstrates a moderate risk profile with good business credibility but could benefit from enhanced security practices and clearer compliance documentation. Strategic improvements in security headers, incident response transparency, and accessibility would strengthen the site's trustworthiness and resilience.

15
28
5
70
-
85
40
accountingtaxadvisoryauditvaluationfamilyoffice+2 more
jQueryBootstrap 3.3.4Slick CarouselFeatherlight Lightbox+1
2025-06-18T08:07:09.505Z
asml.com favicon

ASML

asml.com

0
TechnologyNetherlandsenterpriseMEDIUM

ASML is a leading global supplier to the semiconductor industry, specializing in lithography systems that enable chipmakers to produce smaller, faster, and more energy-efficient microchips. The company holds a strong market position as an essential technology provider with a comprehensive product portfolio including EUV and DUV lithography systems, metrology, inspection, and computational lithography solutions. The website targets semiconductor professionals, investors, and potential employees, reflecting a mature and enterprise-scale business model. Technically, the website is built on modern frameworks such as Next.js and React, integrated with Adobe Dynamic Tag Management and OneTrust for privacy compliance. The use of Sitecore CMS indicates a robust content management infrastructure. The site demonstrates excellent performance, mobile optimization, accessibility, and SEO practices, supporting a high-quality user experience. From a security perspective, the site enforces HTTPS, employs cookie consent mechanisms, and avoids exposing sensitive data. While explicit security policies and incident response contacts are not found, the overall security posture is strong with no visible vulnerabilities. Privacy compliance is well addressed with comprehensive privacy and cookie policies and GDPR adherence. Overall, ASML's website reflects a professional, trustworthy, and well-maintained digital presence aligned with its industry leadership. Strategic recommendations include publishing explicit security policies, incident response information, and vulnerability disclosure details to further enhance trust and compliance.

85
63
5
85
-
85
100
technologysemiconductorlithographycorporatecareers+3 more
React (Next.js)Adobe Dynamic Tag ManagementYouTube Iframe APIOneTrust Cookie Consent+1
2025-06-18T08:07:09.478Z
capita.com favicon

Capita plc

capita.com

0
GovernmentUnited KingdomenterpriseMEDIUM

Capita plc is a leading international business process outsourcing and customer experience professional services company, primarily serving government and private sectors in the UK and Europe. The company offers a broad range of services including consulting, digital transformation, workforce development, and technology-enabled business process services. Their market position is strong, with a focus on delivering innovative solutions to improve operational efficiency and customer engagement. Technically, the website is built on Drupal CMS and integrates multiple modern marketing and analytics tools such as Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and Pardot. The site is well-optimized for mobile devices, accessible, and demonstrates good SEO practices. Performance is moderate, with extensive use of third-party scripts. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms compliant with GDPR. While explicit security headers are not fully visible, no critical vulnerabilities or exposed sensitive data were detected. The absence of a public incident response or vulnerability disclosure page is noted. Overall, the website reflects a mature digital presence with strong business credibility and compliance posture. The domain registration details align with the company's UK base, supporting legitimacy. Strategic recommendations include enhancing security header implementation, publishing incident response contacts, and adding a security.txt file to improve transparency and vulnerability management.

40
60
13
80
-
85
100
businessprocessoutsourcingcustomerexperiencegovernmentservicesdigitaltransformationconsulting+2 more
Google Tag ManagerGoogle AnalyticsFacebook PixelLinkedIn Insight Tag+8
2025-06-18T08:07:09.466Z
C

DNS resolution error | crowecw.im | Cloudflare

crowecw.im

0
OtherN/asmallHIGH

The website crowecw.im is currently inaccessible due to a DNS resolution error as indicated by the Cloudflare error page. This suggests that the domain is either newly registered and not fully propagated or misconfigured at the DNS level. No actual business content, policies, or contact information is available on the site, preventing any meaningful analysis of the company's operations or services. The site relies on Cloudflare for DNS and security services but is currently blocked from public access. From a technical perspective, the site uses Cloudflare's infrastructure and includes JavaScript for error feedback reporting. However, no CMS, frameworks, or additional technologies are detected. The site lacks HTTPS content delivery, security headers, or any SEO or accessibility optimizations. The overall digital maturity is very low. Security posture is weak due to the lack of HTTPS, absence of security headers, and no visible privacy or incident response policies. The DNS resolution failure itself is a critical issue preventing access and undermining trust. No contact or business information is provided, which further reduces credibility and compliance confidence. Overall, the site is non-functional and presents a high risk from a security and business credibility standpoint. Strategic remediation should focus on resolving DNS issues, establishing secure HTTPS delivery, publishing privacy and security policies, and providing clear business contact information to improve trust and compliance.

35
10
-
55
-
80
100
errorcloudflarednsblockedsecurity
CloudflareJavaScriptXMLHttpRequest
2025-06-18T08:07:09.452Z
scouts.org.uk favicon

The Scout Association

scouts.org.uk

0
Non-profitUnited KingdomlargeMEDIUM

The Scout Association is a well-established non-profit organization dedicated to preparing young people aged 4 to 25 with skills for life through various youth programs and volunteer opportunities. It holds a strong market position in the UK as a leading youth organization, supported by a large membership base and extensive partnerships. The website reflects a professional and comprehensive digital presence, offering resources for youth, parents, and volunteers, along with clear contact and support information. Technically, the website employs modern technologies including Vue.js, Google Tag Manager, Cloudflare for security and performance, and advanced analytics tools such as Visual Website Optimizer and Maze Analytics. The site is well-optimized for performance, mobile responsiveness, and accessibility, indicating a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses content security policies, and manages cookie consent effectively. While explicit security policies and incident response information are not directly found, the overall security posture is strong with no evident vulnerabilities or exposed sensitive data. The use of third-party scripts is managed with user consent, enhancing privacy compliance. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations, making it a reliable platform for its audience. Strategic recommendations include publishing explicit security and incident response policies, establishing a vulnerability disclosure program, and enhancing transparency around data retention and protection roles.

35
40
5
80
-
70
100
non-profityouthvolunteeringeducationcommunity
Vue.jsGoogle Tag ManagerCloudflareOneTrust Cookie Consent+5

Partner Domains:

scouts.enthuse.com
partner
shop.scouts.org.uk
subsidiary

+3 more partners

2025-06-18T08:07:09.448Z
diy.org favicon

DIY.ORG - Where every kid is a maker & creator!

diy.org

0
EducationN/amediumMEDIUM

DIY.org is a well-established online educational platform focused on providing a safe and engaging community for kids to learn creative skills through hands-on projects, video challenges, and courses. The platform targets children and families, offering a subscription-based model with a free trial to encourage skill development in areas such as art, coding, and gaming. The website demonstrates a strong market position with over 500,000 families trusting the service and more than 2 million projects completed. Technically, the site is built on modern web technologies including React and Next.js, with integrations for Stripe payments and analytics tools like PostHog and Google Tag Manager. The site is optimized for performance and mobile responsiveness, providing an excellent user experience with clear navigation and professional design. From a security perspective, the website enforces HTTPS, employs security headers, and avoids exposing sensitive data. However, it lacks publicly available security policies, incident response plans, and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. Privacy compliance is generally good, with a comprehensive privacy policy present, though a visible cookie consent mechanism is missing. Overall, DIY.org presents a trustworthy and professional online learning environment for kids, with strong content quality and technical implementation. Strategic improvements in privacy consent and security transparency would further strengthen its security posture and compliance.

35
28
5
85
-
60
100
educationkidslearningcreativecommunity+4 more
ReactNext.jsStripePostHog analytics+2
2025-06-18T08:07:09.444Z