Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2901 of 2975|Showing 145001-145050 of 148702
hundstat.us favicon

Hund

hundstat.us

0
TechnologyN/asmallMEDIUM

Hund.io operates a status page at hundstat.us providing real-time and historical operational status for its services including website, DNS, GitLab, and platform components. The site targets users and customers who require transparency on service availability and performance. The business model centers on operational monitoring and status reporting, positioning Hund.io as a technology service provider in the monitoring niche. The website content is professional and consistent with the brand, but lacks comprehensive business and compliance information. Technically, the site is hosted on AWS infrastructure with DNS managed partly by AWS and Hurricane Electric. The technology stack includes standard web technologies with Google Analytics and Google Tag Manager for tracking. However, the site suffers from slow performance and lacks modern optimizations such as full mobile responsiveness and accessibility features. From a security perspective, the site has critical weaknesses including an invalid or missing SSL certificate, absence of HTTPS, no security headers, and no DNSSEC or CAA records. These issues significantly reduce the security posture and expose users to risks. Additionally, there is no evidence of privacy compliance, incident response policies, or contact information for security matters. Overall, the site presents moderate business credibility but requires urgent improvements in security and privacy compliance to reduce risk and enhance trust. Strategic recommendations include obtaining a valid SSL certificate, enabling HTTPS, implementing security headers, and publishing privacy and security policies.

55
25
25
50
50
85
100
statuspagemonitoringoperationalstatushundio
Google AnalyticsGoogle Tag ManagerOpen Sans fontJavaScript+1
2025-06-14T18:52:09.163Z
sosafe.de favicon

SoSafe

sosafe.de

0
TechnologyGermanymediumHIGH

SoSafe is a leading European provider of security awareness training and human risk management solutions, serving over 4.5 million users. Their platform leverages behavioral psychology, gamification, and AI to empower employees to recognize and mitigate cyber threats effectively. The company offers a suite of products including personalized e-learning, phishing simulation tools, an AI chatbot named Sofie, and a comprehensive human risk management dashboard. Technically, the website is built on WordPress, uses Cloudflare for hosting and CDN, and integrates marketing and analytics tools such as Google Tag Manager and Visual Website Optimizer. While the site is content-rich, well-designed, and privacy compliant with GDPR and cookie consent mechanisms, it suffers from a critical security issue: an invalid SSL certificate and disabled TLS protocols, which significantly lowers its security posture. The company demonstrates strong trust signals through ISO 27001, TISAX certifications, customer testimonials, and industry awards. Overall, SoSafe presents a professional and credible online presence but must urgently address its SSL/TLS configuration to ensure secure communications and maintain trust.

40
18
25
50
50
85
100
securityawarenesshumanriskmanagementcybersecuritytrainingphishingsimulationaichatbot+4 more
jQueryGoogle Tag ManagerCookiebotVisual Website Optimizer (VWO)+1

Partner Domains:

humanfirewallconference.com
partneranalyzing...
2025-06-14T18:51:26.250Z
landitec.de favicon

Landitec GmbH

landitec.de

0
TechnologyGermanymediumHIGH

Landitec GmbH is a medium-sized German company specializing in high-quality, flexible, and high-performance appliance solutions and services for the B2B sector. They focus on tailored IT security and network solutions, including hardware appliances, virtualization, SD-WAN, and industrial applications. The company holds a strong market position as an OPNsense Platinum Partner and collaborates with several notable technology providers such as Barracuda, 6WIND, and SECUDOS. Their offerings include customized appliances, pre-installed systems, and comprehensive customer support through an online portal. Technically, the website is built on Joomla CMS with Helix Ultimate framework and utilizes modern web technologies including Bootstrap 5 and jQuery. They employ Google Tag Manager and Google reCAPTCHA for analytics and security. However, a critical security gap is the absence of HTTPS/SSL, which significantly impacts their security posture. The site is mobile-optimized with good content quality and SEO practices. From a security perspective, while some security headers are present, the lack of SSL/TLS encryption, HSTS, and modern TLS protocols exposes the site to potential risks. No explicit security or incident response policies were found. Privacy compliance is well addressed with comprehensive privacy and cookie policies and a consent mechanism. Overall, the site is professional and trustworthy in content and business representation but requires urgent security improvements to protect data and enhance user trust.

40
18
25
70
50
85
100
applianceitsecurityb2bnetworkhardwarecustomizedsolutions+4 more
Joomla CMSHelix Ultimate FrameworkSP Page BuilderBootstrap 5+5

Partner Domains:

secudos.de
partnerpending
barracudanetworks.com
partner68

+3 more partners

2025-06-14T18:49:35.427Z
mpirical-lms.com favicon

Mpirical

mpirical-lms.com

0
EducationN/asmallMEDIUM

Mpirical LMS is an educational technology platform providing a Moodle-based learning management system primarily targeting educational institutions and learners. The platform integrates Microsoft 365 for user authentication and incorporates video content via Vimeo, indicating a focus on multimedia learning experiences. The business operates a niche SaaS model within the education sector, with a relatively small scale and basic public-facing content. Technically, the website is built on Moodle with YUI JavaScript libraries and uses OAuth2 for authentication. However, the site suffers from significant performance issues with a slow load time and lacks modern SEO and accessibility optimizations. The absence of a valid SSL certificate and HTTPS implementation is a critical security flaw, exposing users to potential data interception risks. The site also lacks essential security headers and cookie consent mechanisms, which further weakens its security posture and privacy compliance. From a security perspective, the platform shows minimal adherence to best practices. The lack of HTTPS, no HSTS, no DNSSEC, and missing DMARC reporting emails are notable vulnerabilities. No incident response or security policy information is publicly available, and no certifications or vulnerability disclosure policies are evident. These gaps present risks to user data protection and regulatory compliance. Overall, the website's risk profile is elevated due to poor security configurations and slow performance. Strategic improvements in SSL deployment, security headers, privacy compliance, and performance optimization are recommended to enhance trustworthiness and protect user data effectively.

30
43
25
50
50
85
100
moodlelmseducationloginmicrosoft365
MoodleYUI 3.17.2Vimeo PlayerOAuth2+2

Partner Domains:

mpirical.com
partner69
2025-06-14T18:49:27.295Z
absence.io favicon

absence.io GmbH

absence.io

0
TechnologyGermanymediumMEDIUM

absence.io GmbH is a medium-sized technology company based in Germany specializing in SaaS solutions for absence management, time tracking, digital personnel files, and expense management. The company serves over 2,500 companies and 100,000 users, positioning itself as a reliable and trusted provider in the HR software market. Their platform supports multiple languages and integrates with major services like Google Workspace, Microsoft 365, and Slack, enhancing usability and enterprise adoption. The website demonstrates a strong brand presence with multiple trust signals including ISO certification and positive customer testimonials. Technically, absence.io uses TYPO3 CMS with a modern JavaScript stack including jQuery, Bootstrap, and Swiper for UI components. Hosting is on DigitalOcean with DNS managed via AWS Route53. The site supports TLS 1.3 and 1.2 but lacks advanced SSL features like HSTS and OCSP stapling. Cookie consent is managed via Usercentrics CMP, and analytics are extensive using HubSpot, Google Analytics, and Crazy Egg. Performance is moderate to slow, likely due to large page size and resource count. Security posture is solid with ISO-certified servers, daily backups, SPF and DMARC email protections, and SSL encryption. However, DNSSEC is not enabled, and CAA records are malformed. No public vulnerability disclosure or security.txt file was found. Privacy policies and terms of service are present and GDPR compliant. Overall, the company demonstrates a mature security and compliance stance but could improve SSL and DNS security features. Strategically, absence.io is well positioned in the HR SaaS market with a comprehensive product suite and strong customer trust. Continued investment in security hardening and performance optimization will enhance their competitive edge and customer confidence.

50
25
17
80
77
90
100
absencemanagementtimetrackingdigitalpersonnelfileexpensemanagementhrsoftware+3 more
TYPO3 CMSjQueryBootstrapSwiper+6

Partner Domains:

zendesk.com
partner71
softgarden.de
partnerpending
2025-06-14T18:47:31.893Z
planonsoftware.com favicon

Planon

planonsoftware.com

0
Real EstateUnited KingdomlargeMEDIUM

Planon is a leading global provider of Smart Sustainable Building Management software solutions, connecting buildings, people, and processes to optimize workspace management and building performance. With a strong market position recognized by industry analysts such as Verdantix, IDC, Gartner, and Frost & Sullivan, Planon offers a comprehensive suite of services including Integrated Workplace Management, Campus Management, Lease Accounting, and Field Services. Their platform supports IoT-enabled solutions and is designed to meet the evolving needs of real estate and facilities management professionals worldwide. Technically, Planon's website leverages modern web technologies including jQuery, Bootstrap, Swiper, and Choices.js, integrated with advanced analytics and A/B testing tools like Google Analytics and Visual Website Optimizer. The site is hosted on Yourhosting DNS infrastructure and employs secure TLS 1.2 encryption with strong cipher suites. Cookie consent is managed via Cookiebot, ensuring compliance with GDPR and other privacy regulations. From a security perspective, Planon demonstrates good practices with SPF and DMARC email policies, absence of known SSL vulnerabilities, and a strict DMARC reject policy. However, there are opportunities to enhance security by enabling HSTS, OCSP stapling, TLS 1.3 support, and DNSSEC. No explicit vulnerability disclosure or incident response contacts were found, indicating potential areas for improvement in transparency and security readiness. Overall, Planon maintains a high-quality, professional web presence with strong trust indicators and comprehensive compliance measures. Strategic enhancements in security configurations and public disclosure policies could further strengthen their security posture and stakeholder confidence.

90
40
25
80
92
85
100
smartbuildingmanagementsustainabilityrealestatemanagementfacilitiesmanagementiot+4 more
jQueryBootstrapSwiperChoices.js+7

Partner Domains:

gxcloud.net
partnerpending
ubigreen.com
subsidiarypending
2025-06-14T18:46:51.222Z
lc.com favicon

The Luxury Collection

lc.com

0
HospitalityN/aenterpriseMEDIUM

The Luxury Collection website represents a premium luxury hospitality brand under Marriott International, offering curated boutique hotels and resorts worldwide. The site targets affluent travelers seeking unique cultural and luxury experiences. The business is positioned as a high-end brand within the global hospitality industry, leveraging Marriott's extensive portfolio and brand recognition. Technically, the site is built on WordPress with React components, hosted on WP Engine and served via Cloudflare CDN. It employs modern SEO practices including structured data and Yoast SEO plugin, and integrates multimedia content such as Brightcove videos and Google Maps. However, the site lacks a valid SSL certificate and does not enforce HTTPS, which is a critical security gap. Security headers are partially implemented but could be enhanced with additional controls. The site shows GDPR compliance through DMARC and SPF records but lacks visible cookie consent mechanisms. Overall, the security posture is moderate with room for improvement in encryption and security best practices. Strategic recommendations include immediate SSL implementation, enabling modern TLS protocols, and enhancing security headers to protect user data and improve trust. The site demonstrates excellent design, content quality, and user experience, reflecting its luxury market positioning.

30
25
25
70
90
85
100
luxuryhotelsresortstravelboutique+5 more
ReactWordPressYoast SEOBrightcove Video+3

Partner Domains:

marriott.com
parent47
luxurycollectionstore.com
partnerpending

+2 more partners

2025-06-14T18:46:27.448Z
mxdeposit.net favicon

Seequent

mxdeposit.net

0
EnergyNew ZealandlargeMEDIUM

Seequent is a New Zealand-based company specializing in geological and geotechnical data management solutions, with a strong focus on the mining and energy sectors. Their flagship product, MX Deposit, is a cloud-based platform designed to streamline the collection, management, and sharing of drillhole and sample data. The company operates under the parent company Bentley Systems, leveraging a subscription-based SaaS model with multiple user plans to cater to different operational needs. The website demonstrates a high level of professionalism, clear content structure, and consistent branding, targeting professionals in mining, exploration, and geotechnical fields. Technically, the website is built on WordPress with extensive use of modern JavaScript libraries and performance optimization tools such as NitroPack. It integrates several marketing and analytics tools including Segment, Marketo, and Google Tag Manager, indicating a mature digital marketing strategy. However, the primary domain mxdeposit.net lacks a valid SSL certificate and modern TLS support, which is a critical security concern. The main content and corporate information reside on seequent.com, which appears to be better maintained. From a security perspective, the site has implemented strict SPF and DMARC policies, but lacks essential SSL/TLS configurations, HSTS, and DNSSEC, exposing it to potential risks. No explicit security or incident response policies are found, which could be a gap in transparency and readiness. The presence of comprehensive privacy and terms of service pages indicates good compliance posture, including GDPR considerations. Overall, Seequent's MX Deposit website is a well-structured, content-rich platform with strong business and marketing foundations but requires urgent improvements in its security infrastructure to protect user data and enhance trust. Strategic recommendations include immediate SSL deployment, enabling modern security protocols, and publishing clear security and incident response policies.

50
25
25
50
100
70
100
geologydatamanagementminingclouddrillholedata+5 more
WordPressWPBakery Page BuilderNitroPackjQuery+11

Partner Domains:

bentley.com
parent65
2025-06-14T18:46:19.182Z
dealogic.com favicon

Dealogic

dealogic.com

0
FinanceN/aenterpriseMEDIUM

Dealogic is a leading provider of software and data solutions for the global capital markets, serving top financial firms worldwide. As part of ION Analytics, Dealogic offers platforms tailored for investment banking, capital markets, syndicate, sales, trading, research, investment managers, and corporations. Their business model focuses on delivering industry-standard data and connectivity solutions that enhance deal-making, compliance, and market insights. The company maintains a strong market position as a trusted partner with extensive media presence and client base. Technically, the website is built on WordPress hosted on Microsoft Azure, leveraging modern web technologies including TLS 1.3, OCSP stapling, and multiple analytics and marketing tools such as Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and 6sense. The site supports multiple languages and demonstrates good performance and mobile optimization, although accessibility is basic. From a security perspective, Dealogic implements strong email authentication with SPF and DMARC policies, uses secure TLS protocols, and has OCSP stapling enabled. However, it lacks HSTS enforcement, DNSSEC, and certificate transparency compliance. No explicit security policy or incident response information is published, and cookie consent mechanisms are not evident. The security posture is good but could be improved with additional best practices. Overall, Dealogic's website reflects a mature enterprise with strong branding, comprehensive business offerings, and a solid technical foundation. Strategic improvements in security transparency and privacy compliance would enhance trust and reduce risk exposure.

85
25
25
80
62
85
100
financeinvestmentbankingcapitalmarketsdataanalyticssoftwaresolutions+2 more
WordPressGoogle AnalyticsGoogle Tag ManagerFacebook Pixel+7

Partner Domains:

iongroup.com
parentpending
ionanalytics.com
partnerpending
2025-06-14T18:45:06.507Z