Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 42 of 57|Showing 2051-2100 of 2820
mongodb.com favicon

MongoDB, Inc.

mongodb.com

0
TechnologyUnited StatesenterpriseLOW

MongoDB, Inc. is a leading provider of modern, flexible, and AI-ready database solutions designed to help developers and enterprises build scalable applications. Positioned as a market leader in cloud database management systems, MongoDB offers a comprehensive suite of services including MongoDB Atlas, self-managed enterprise solutions, and developer tools. The company targets a broad audience ranging from startups and AI innovators to large enterprises across various sectors such as technology, financial services, healthcare, retail, automotive, and telecommunications. Their business model combines SaaS offerings with self-managed deployments, emphasizing flexibility and performance. Technically, MongoDB's website leverages modern web technologies including Next.js and React, hosted on AWS CloudFront CDN, and managed via Contentstack CMS. The site demonstrates fast performance, good mobile optimization, and strong SEO practices. Security-wise, MongoDB employs a valid SSL certificate but currently lacks modern TLS protocol support and HSTS enforcement, which are recommended for enhanced security. The site includes comprehensive legal and security policies, including a vulnerability disclosure policy, but lacks a visible cookie consent mechanism. Overall, MongoDB maintains a strong security posture with no detected vulnerabilities in SSL/TLS configurations and provides clear trust signals through customer case studies and industry recognitions. The company’s digital maturity is high, with a well-structured, professional website that supports its market leadership. Strategic improvements in security protocols and privacy compliance mechanisms would further strengthen their risk management and user trust.

-
-
-
100
80
85
100
databaseclouddeveloperAIenterprise+4 more
Next.jsReactSource Code Pro fontEuclid Circular A font+2

Partner Domains:

cloud.mongodb.com
service
support.mongodb.com
service

+1 more partners

2025-06-14T12:17:27.850Z
nifty.com favicon

NIFTY Corporation

nifty.com

0
TelecommunicationsJapanlargeLOW

NIFTY Corporation operates as a major Japanese internet service provider offering a wide range of broadband, mobile SIM, security, and media services primarily targeting Japanese consumers. The company maintains a strong market position with a comprehensive portfolio including @nifty光 broadband, NifMo mobile SIM, and various security and lifestyle services. Their digital presence is built on modern web technologies such as Next.js and is hosted via Amazon CloudFront, ensuring fast content delivery and good mobile optimization. However, the website currently lacks a valid SSL certificate, which is a critical security concern that undermines user trust and data protection. Security headers are partially implemented, but the absence of DNSSEC, CAA records, and HSTS reduces domain and transport security. The site uses multiple advertising and tracking services, with moderate user tracking and basic privacy compliance. Contact information is limited to a phone number with no visible email addresses or contact forms on the main page. Overall, the website is professionally designed with good content relevance and navigation clarity but requires urgent security improvements to protect users and enhance trust.

55
-
-
70
100
85
100
ISPInternet Service ProviderJapanTelecommunicationsSecurity+3 more
Next.jsReactJavaScriptAmazon CloudFront+1

Partner Domains:

lifemedia.jp
partnerpending
nojima.co.jp
partnerpending

+3 more partners

2025-06-14T12:17:00.411Z
lancashiregroup.com favicon

Lancashire Inc.

lancashiregroup.com

0
insuranceUnited KingdommediumLOW

The website demonstrates a generally stable security posture with no critical vulnerabilities detected, but notable gaps exist in compliance and governance areas. GDPR compliance is weak, primarily due to the absence of a cookie consent banner and insufficient privacy policy details, risking regulatory penalties. The NIS2 framework adherence is particularly poor, with multiple high-severity issues such as missing security policies, incident response procedures, and information security frameworks, exposing the business to operational and reputational risks. Technical security controls like email security, SSL/TLS configurations, and DNS health are fairly strong but can be further improved. Missing security headers and lack of advanced HTTP policies indicate opportunities to harden defenses. The lack of business continuity planning and vulnerability disclosure policies reduces the organization's preparedness for incidents and coordination with external security researchers. Enhancing these areas will not only improve security posture but also strengthen customer trust and regulatory compliance. Addressing these issues promptly will mitigate potential legal, financial, and operational impacts.

85
58
25
85
85
90
100
insuranceunderwritingpropertyenergymarine+5 more
jQueryGoogle Tag Managervideo-jscookiechoice.js+2

Partner Domains:

lancashireinsurance.com
subsidiarypending
lancashirecapital.com
subsidiarypending
2025-06-13T21:52:06.890Z
cybusinessonline.co.uk favicon

Virgin Money UK

cybusinessonline.co.uk

0
bankingUKlargeLOW

The website demonstrates a generally strong technical security foundation with high scores in email security, SSL/TLS, DNS health, and network security. However, significant gaps exist in compliance and governance areas, particularly related to GDPR and NIS2 regulations, which pose notable legal and operational risks. The absence of a cookie policy, consent banner, and incomplete privacy documentation expose the business to potential regulatory penalties and customer trust issues. Critical deficiencies in information security framework, incident response, and security policy documentation under NIS2 further elevate the risk of unmanaged security incidents and business disruption. While no critical vulnerabilities were identified, the combination of high and medium severity findings indicates an urgent need to address compliance and governance controls. Proactively remediating these issues will reduce regulatory exposure, improve stakeholder confidence, and strengthen the overall security posture. Immediate focus on policy implementation and GDPR compliance will deliver the greatest business value and risk mitigation. Ongoing monitoring of SSL certificates and DNS configurations ensures continued protection of core infrastructure components.

85
43
25
100
95
90
100
business bankingVirgin Moneybusiness accountsfinanceSME banking+1 more
jQuery 3.5.1Visual Website Optimizer (VWO)Adobe DTM (Dynamic Tag Manager)CSS Custom Properties (with fallback)+7

Partner Domains:

virginmoneyukplc.com
subsidiary74
virginmoney.com.au
sister company67

+1 more partners

2025-06-13T21:51:18.215Z