Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 2907 of 2975|Showing 145301-145350 of 148701
qwist.com favicon

Qwist GmbH

qwist.com

0
FinanceGermanymediumMEDIUM

Qwist GmbH is a leading open finance platform operating primarily in the DACH and Iberian markets, offering a comprehensive suite of B2B2X financial technology products. Their key offerings include digital account and portfolio switching, open banking compliance solutions, financial data analytics, and digital lending integration. The company positions itself as the #1 open finance company in its region, serving major banks and financial institutions with a strong investor backing from Finch Capital and Finleap. Technically, the website is built on WordPress with the Divi theme and leverages modern marketing and analytics tools such as HubSpot, Matomo, and SalesLoft. The site employs GDPR-compliant cookie consent via Cookiebot and maintains a valid SSL certificate, although some security enhancements like HSTS and DNSSEC are absent. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, Qwist demonstrates solid foundational practices including SPF and DMARC email protections and encrypted communications. However, the absence of advanced DNS security measures and a public security or incident response policy suggests room for improvement. No critical vulnerabilities were detected in the current analysis. Overall, Qwist presents a professional and trustworthy digital presence aligned with its market leadership in open finance. Strategic security enhancements and transparency in incident response would further strengthen its risk posture and customer confidence.

30
43
25
80
67
85
100
openfinanceb2b2xapiplatformpsd2digitallending+5 more
WordPressDivi ThemeYoast SEOCookiebot+8

Partner Domains:

finchcapital.com
partnerpending
finleap.com
partnerpending

+3 more partners

2025-06-14T18:16:42.373Z
next-video.dev favicon

Next.js video embedding with next-video

next-video.dev

0
TechnologyN/asmallMEDIUM

Next-video.dev is a specialized technology website offering a Next.js video embedding solution called next-video. The platform targets developers building Next.js applications who require high-performance video embedding, streaming, and customization capabilities. The business leverages partnerships with Mux, a leading video API provider, and Vercel, a popular hosting and deployment platform, to deliver scalable and optimized video streaming services. The website presents a modern, developer-focused interface with comprehensive technical documentation and code examples, positioning itself as a niche player in the video streaming technology market. Technically, the website is built on Next.js and React frameworks, hosted likely on Vercel infrastructure, and integrates with Mux for video streaming. The tech stack includes modern web technologies and optimized media delivery, although the page load time is relatively slow, indicating potential performance optimization opportunities. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to an excellent user experience. From a security perspective, the site employs strong TLS configurations with no known vulnerabilities such as Heartbleed or FREAK. However, it lacks several security best practices including HTTP Strict Transport Security (HSTS), OCSP stapling, and security headers like Content-Security-Policy. There is no visible privacy, cookie, or terms of service policy, nor contact information for security incident response or data protection officers, which may pose compliance and trust challenges. Overall, next-video.dev is a technically mature platform with strong business partnerships and a clear developer focus. To enhance its security posture and compliance, it should implement missing security headers, publish privacy and cookie policies, and provide clear contact channels for security and privacy concerns. These improvements will strengthen trust and align the platform with industry best practices.

30
40
25
50
87
75
100
nextjsvideoembeddingstreamingmuxvercel+2 more
Next.jsReactMux PlayerVercel Blob+3

Partner Domains:

mux.com
partner68
vercel.com
partner75
2025-06-14T18:15:49.875Z
playbook.com favicon

Playbook Digital, Inc.

playbook.com

0
TechnologyN/amediumMEDIUM

Playbook Digital, Inc. operates Playbook.com, a SaaS platform focused on creative file management and media storage targeted at designers and creative teams. The company positions itself as a modern, all-in-one media library offering extensive storage, collaboration, AI-powered search, and mini-app integrations. The platform is trusted by notable brands and over 2 million creatives, indicating a strong market presence in the creative technology sector. Technically, the website is built on the Ghost CMS platform, leveraging modern JavaScript libraries and third-party services such as Cloudflare for DNS and CDN, and integrates multiple marketing and analytics tools including Google Analytics, Facebook Pixel, and LinkedIn Insight Tag. However, the website suffers from critical security issues including an invalid SSL certificate and lack of TLS support, which undermines user trust and data security. The DNS configuration is solid with SPF and DMARC policies properly set, but DNSSEC is not enabled, and CAA records are malformed. Overall, while the business demonstrates strong branding, market positioning, and digital maturity, the security posture requires urgent improvements to protect user data and maintain compliance.

45
25
25
85
100
90
100
creativefilemanagementmediastoragecollaborationai-poweredsearchsaas+1 more
JavaScriptjQueryHLS.jsGhost CMS+8

Partner Domains:

ghost.io
servicepending
airtable.com
partner95

+2 more partners

2025-06-14T18:11:53.904Z
if.ee favicon

If P&C Insurance AS

if.ee

0
FinanceEstonialargeMEDIUM

If P&C Insurance AS operates the website if.ee, providing a broad range of insurance products and services targeted at both private individuals and business clients in Estonia. The company offers various insurance types including vehicle, home, travel, accident, and pet insurance, positioning itself as a leading insurance provider in the Baltic region. The website is multilingual and designed to facilitate online insurance purchases and claims management, reflecting a mature digital business model. Technically, the site leverages Microsoft Azure DNS, Episerver CMS, and integrates advanced analytics tools such as Microsoft Application Insights and Google Tag Manager. However, the absence of a valid SSL certificate and lack of modern TLS protocols represent significant security weaknesses that could undermine user trust and data protection. The site demonstrates good compliance with GDPR and cookie regulations, including explicit cookie consent mechanisms and published privacy policies. Contact information is clearly provided, including a company email and phone number, alongside active social media channels. Overall, the website reflects a professional and comprehensive insurance service platform but requires urgent security improvements to ensure safe and trusted user interactions.

-
18
25
85
100
85
100
insurancekindlustusliikluskindlustuskaskokindlustuskodukindlustus+5 more
jQueryAzure DNSMicrosoft Application InsightsGoogle Tag Manager+4

Partner Domains:

if.lv
partner63
if.lt
partneranalyzing...
2025-06-14T17:37:00.752Z
if.lt favicon

If P&C Insurance AS filialas

if.lt

0
FinanceLithuanialargeMEDIUM

If P&C Insurance AS filialas operates the website if.lt, providing a wide range of insurance products including automobile, home, pet, travel, personal, and business insurance primarily targeting private individuals and businesses in Lithuania. The company is positioned as a leading insurance provider in the Baltic region, offering online services and customer self-service portals. The website is well-branded and provides comprehensive information about insurance products and customer support. Technically, the site uses a mix of technologies including jQuery, Microsoft Application Insights, OneTrust for cookie consent, and Google Tag Manager, hosted on Microsoft Azure DNS infrastructure. However, the website suffers from a critical security issue due to the absence of a valid SSL certificate and lack of modern TLS protocol support, which undermines secure communications and user trust. The site demonstrates good GDPR compliance with detailed privacy and cookie policies and active consent mechanisms. Performance is slow with a high page load time and large page size, but mobile optimization and accessibility are well addressed. Overall, the security posture requires urgent improvement to protect user data and maintain trust.

-
-
25
85
50
85
100
insuranceinsuranceproductsprivacycookieconsentgdpr+2 more
jQueryMicrosoft Application InsightsOneTrust Cookie ConsentGoogle Tag Manager+1

Partner Domains:

if.ee
sister68
if.lv
sister63
2025-06-14T17:37:00.728Z
mpamag.com favicon

KM Business Information UK Ltd

mpamag.com

0
MediaUnited KingdommediumLOW

Mortgage Introducer, operated by KM Business Information UK Ltd, is a leading UK-based media platform specializing in mortgage industry news, insights, and expert advice. The website offers a broad range of content including news articles, premium subscription content, mortgage broker software reviews, and industry resources targeting mortgage brokers and financial professionals. It maintains a strong market position as a trusted source within the UK mortgage sector, supported by a consistent brand and a professional online presence. Technically, the site leverages a modern tech stack including Bootstrap, jQuery, Algolia search, HubSpot analytics, and Google Ad Manager for advertising. However, the site suffers from an invalid SSL certificate and lacks advanced security configurations such as DNSSEC and HSTS, which impacts its security posture. The security best practices include a strict DMARC policy and SPF records, but the absence of a valid SSL certificate and missing security headers reduce overall trust. The website employs extensive user tracking and marketing tools, including Facebook Pixel and Bombora, indicating a mature digital marketing strategy but raising privacy considerations. Overall, the site is professional and content-rich but requires urgent security improvements to protect user data and enhance trust.

-
-
25
85
100
85
100
mortgagebrokernewsfinanceuk+4 more
Bootstrap 4.3.1jQuery 3.3.1Underscore.js 1.9.1Google Tag Manager+11

Partner Domains:

keymedia.com
partner57
2025-06-14T17:36:56.078Z
hrreporter.com favicon

KM Business Information Canada Ltd.

hrreporter.com

0
MediaCanadamediumMEDIUM

Canadian HR Reporter, operated by KM Business Information Canada Ltd., is a leading Canadian media platform specializing in human resources news, analysis, and data. The website targets HR professionals in Canada, offering a broad range of content including news, opinion pieces, premium articles, white papers, podcasts, and events. It holds a strong market position as a trusted source for HR-related information in Canada. The business model is primarily media publishing supported by subscriptions and advertising revenue. Technically, the website employs modern web technologies such as Bootstrap, jQuery, Algolia Search, and integrates with HubSpot and Microsoft Application Insights for analytics and marketing. It is hosted behind Cloudflare, leveraging their DNS and proxy services. Security-wise, the site uses a valid SSL certificate but lacks advanced security headers like HSTS and DNSSEC, which could be improved. The site implements a cookie consent mechanism compliant with GDPR, reflecting good privacy practices. However, no explicit security policy or incident response contact information is found. Overall, the website demonstrates a mature digital presence with good content quality and user experience but could enhance its security posture and transparency around vulnerability disclosures.

40
40
25
50
67
85
100
hrhumanresourcescanadianhrnewsanalysis+7 more
Bootstrap 4.3.1jQuery 3.3.1Underscore.js 1.9.1Algolia Search+5

Partner Domains:

keymedia.com
partner57
lexpert.ca
partnerpending
2025-06-14T17:36:56.013Z
brokernews.com.au favicon

KM Business Information Australia Pty Ltd

brokernews.com.au

0
FinanceAustraliamediumMEDIUM

Australian Broker News, operated by KM Business Information Australia Pty Ltd, is a specialized online media platform delivering mortgage industry news, insights, and premium content targeted at Australian mortgage brokers and finance professionals. The website serves as a leading source of industry updates, lender product news, and expert commentary, positioning itself as a trusted resource within the Australian finance sector. The business model revolves around content publishing, premium subscriptions, event coverage, and advertising revenue. Technically, the site leverages modern JavaScript libraries, Algolia search, and Google advertising technologies, hosted behind Cloudflare DNS services. However, the website exhibits a slow load time and lacks a valid SSL certificate, which impacts user trust and security posture. Security configurations include valid SPF and DMARC email protections but lack DNSSEC and modern TLS implementations. The absence of published security policies and incident response information indicates a gap in transparency and readiness. Overall, the site maintains good content quality and user experience but requires significant improvements in security and performance to enhance trust and compliance.

40
58
17
50
100
85
100
mortgagefinanceaustralianbrokernewsindustry+3 more
JavaScriptGoogle Tag ManagerAlgolia SearchInstantSearch.js+8

Partner Domains:

australianmortgageawards.com.au
partnerpending
keymedia.com
partner57
2025-06-14T17:36:55.983Z
dealavo.com favicon

Dealavo Sp. z o.o.

dealavo.com

0
E-commercePolandmediumMEDIUM

Dealavo Sp. z o.o. is a Poland-based company specializing in price monitoring and dynamic pricing software for brands and e-commerce stores. The company serves over 30 markets and thousands of online shops, providing tools for price tracking, promotion monitoring, and pricing optimization. Their platform integrates with popular e-commerce and sales platforms such as Amazon, Google Shopping, and eBay, targeting brands and retailers seeking to optimize pricing strategies and increase profitability. The website is well-branded, multilingual, and contains rich content including client testimonials and blog articles, indicating a mature digital presence. Technically, the website is built on WordPress with Yoast SEO and uses various marketing and analytics tools including HubSpot, Google Tag Manager, Microsoft Clarity, and LinkedIn Insight Tag. However, the site suffers from a critical security issue: the SSL certificate is invalid or missing, and no modern TLS protocols are enabled, which severely impacts security and user trust. The site has a strict DMARC policy and SPF records configured, indicating good email security practices. Performance is slow with a large page size and long load times, suggesting optimization opportunities. Security posture is moderate with good email security but poor HTTPS implementation and lack of advanced security headers or DNSSEC. No explicit security policy or incident response information is found. Privacy policy is present and GDPR compliant, but no cookie consent mechanism is detected despite tracking scripts. Overall, the site is professional and trustworthy but requires urgent security improvements. Recommendations include immediate SSL certificate installation and configuration, enabling HSTS and DNSSEC, implementing a cookie consent mechanism, and publishing security and vulnerability disclosure policies to enhance trust and compliance.

65
43
25
85
100
85
75
pricemonitoringdynamicpricinge-commercepricetrackingdistributionmonitoring+2 more
WordPressPHPjQueryGoogle Tag Manager+10

Partner Domains:

hubspot.com
partner73
paperform.co
partnerpending

+1 more partners

2025-06-14T17:36:08.172Z
cdr-lab.de favicon

dimension2 economics & philosophy GmbH

cdr-lab.de

0
OtherGermanysmallMEDIUM

CDR Lab, operated by dimension2 economics & philosophy GmbH, is a German-based cooperative platform established in 2018 that focuses on Corporate Digital Responsibility (CDR). It serves as a participatory process for companies, academia, NGOs, and institutions to collaboratively develop knowledge, share experiences, and initiate joint CDR solutions through conferences, workshops, webinars, and research projects. The organization positions itself as a niche leader in responsible digital transformation and ethical digital business practices. The website is professionally built on WordPress with modern plugins and SEO optimization, targeting German-speaking audiences interested in digital responsibility and sustainability. Technically, the website leverages WordPress 6.6.1 with Colibri Page Builder Pro, Ultimate Member, The Events Calendar, and Forminator plugins. It is hosted on lima-city.de with multiple IPv4 and IPv6 addresses. Performance is moderate with a page load time of approximately 5 seconds and a page size of 450 KB. Mobile optimization and SEO are good, but accessibility is basic. The site lacks a valid SSL certificate and does not currently enforce HTTPS, which is a significant security concern. DNS records include valid SPF and DMARC policies, but DNSSEC and CAA are not enabled. From a security perspective, the absence of a valid SSL certificate and disabled TLS protocols expose the site to risks such as data interception and man-in-the-middle attacks. The site does not implement HSTS, OCSP stapling, or session resumption, further weakening its security posture. No explicit security policy, incident response contacts, or vulnerability disclosure mechanisms are present. The site collects personal data via a contact form but lacks visible cookie consent mechanisms, which may impact GDPR compliance despite having a comprehensive privacy policy hosted on a related domain. Overall, while the business and content aspects of CDR Lab are strong and professionally presented, the technical security posture requires urgent improvement to protect user data and enhance trust. Strategic recommendations include immediate SSL/TLS deployment, enabling modern security headers and protocols, and implementing cookie consent and vulnerability disclosure policies to align with best practices and regulatory requirements.

45
18
17
50
90
85
90
cdrlabworkshopsconferenceswebinarsevents+3 more
WordPress 6.6.1Yoast SEO pluginColibri Page Builder ProUltimate Member plugin+8

Partner Domains:

dimension2.consulting
partnerpending
bayern-innovativ.de
partneranalyzing...

+1 more partners

2025-06-14T17:36:04.368Z
bayern-innovativ.de favicon

Bayern Innovativ

bayern-innovativ.de

0
GovernmentGermanymediumHIGH

Bayern Innovativ is a publicly commissioned innovation support organization based in Bavaria, Germany, established in 1995. It focuses on fostering innovation by connecting businesses, research institutions, and organizations through networks, services, and events. The organization supports the entire innovation lifecycle, from idea development to market introduction, with a strong emphasis on sectors such as energy, transportation, healthcare, manufacturing, and creative industries. Their market position is well-established as a key facilitator of innovation in the Bavarian economy. Technically, the website is built on TYPO3 CMS and incorporates modern web technologies including Bootstrap, jQuery, and various third-party services such as ReadSpeaker for accessibility and Google Tag Manager for marketing analytics. The site demonstrates good mobile optimization and accessibility features, though performance is somewhat slow with a high load time and resource count. From a security perspective, the site supports TLS 1.3 and 1.2 with no known SSL vulnerabilities, but lacks advanced security headers like HSTS and DNSSEC. Cookie consent mechanisms are implemented comprehensively, supporting GDPR compliance. Certifications such as ISO 37301 and audit badges enhance trustworthiness. However, no explicit security or incident response policies are publicly available. Overall, Bayern Innovativ presents a professional and trustworthy digital presence with room for improvement in security hardening and performance optimization. Strategic enhancements in these areas would strengthen their security posture and user experience.

25
18
25
50
87
85
50
innovationbavariatechnologynetworkingevents+6 more
TYPO3 CMSBootstrap (implied by classes and navbar)jQueryReadSpeaker+5
2025-06-14T17:36:04.346Z
2i9.com.br favicon

S B SERVICOS DIGITAIS LTDA

2i9.com.br

0
TechnologyBrazilsmallMEDIUM

2i9 negócios digitais is a Brazilian digital agency specializing in the development and maintenance of news portals, websites, hotsites, and digital branding services. With over 12 years of market presence, the company positions itself as an innovative and multidisciplinary agency focused on delivering tailored digital solutions to its clients. Their key services include web development, digital media planning, email marketing, and server infrastructure, targeting businesses seeking to enhance their digital footprint. The company maintains a moderate market position supported by client testimonials, awards, and certifications such as D4Sign. Technically, the website leverages a mix of established web technologies including jQuery, Bootstrap, Google Fonts, and integrates Google reCAPTCHA v3 for spam protection. Hosting and DNS services are provided via Cloudflare, enhancing performance and security at the network level. However, the website suffers from a critical security flaw due to an invalid SSL certificate and lack of modern TLS protocol support, which undermines secure communications. Performance is suboptimal with a slow page load time and a large page size, indicating potential for optimization. From a security perspective, while some best practices like reCAPTCHA and Cloudflare usage are in place, the absence of valid SSL, security headers, DNSSEC, and HSTS significantly lowers the security posture. There is no visible security policy or incident response information, and no data protection officer contact is provided, which may impact compliance with data protection regulations. Privacy and terms of service documents exist but appear basic in scope. Overall, 2i9 negócios digitais demonstrates a solid business foundation and digital maturity but requires urgent improvements in security infrastructure and compliance transparency to reduce risk and enhance trustworthiness. Strategic investments in SSL certification, security headers, and performance optimization are recommended to align with industry best practices and regulatory expectations.

55
25
25
50
90
85
100
desenvolvimentoportaisdenotciaswebsiteshotsitesagnciadigital+3 more
jQueryBootstrapGoogle FontsGoogle reCAPTCHA v3+4

Partner Domains:

d4sign.com.br
partnerpending
2025-06-14T17:36:02.951Z