Skip to main content

Germany security reports

Browse 14,701 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148887
Websites
130
Industries
113
Countries
52
Avg Score
Page 111 of 295|Showing 5501-5550 of 14701
D

DFL Digital Sports GmbH

dfl-digital-sports.de

11
MediaGermanymediumCRITICAL

DFL Digital Sports GmbH is a subsidiary of Deutsche Fußball Liga GmbH, focused on digital content creation and media production for the Bundesliga, Germany's premier football league. The company operates from Cologne with a medium-sized team and freelancers, delivering innovative digital experiences to football fans and partners. The LinkedIn profile reflects a professional and active organization with strong branding and consistent content updates. Technically, the company leverages the LinkedIn platform for its online presence, utilizing modern web technologies and video streaming capabilities. The website is well-optimized for performance, mobile, and accessibility, with good SEO practices. Security posture is strong, with HTTPS enforced and standard security headers implied. No vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are managed by LinkedIn, ensuring GDPR compliance and user consent mechanisms. Overall, the risk profile is low given the use of a reputable platform and professional content. Recommendations include maintaining security best practices and monitoring third-party scripts. The domain linkedin.com is a trusted platform, though WHOIS data for linkedin.com is not publicly available here, the legitimacy of the company page is unquestioned.

-
-
-
-
-
-
-
linkedinsportsmediaproductionbundesligadigitalcontent
LinkedIn platformJavaScriptVideo.js (for video playback)JSON-LD structured data+1

Partner Domains:

www.dfl.de
parent
www.linkedin.com
service
2025-10-24T16:33:18.142Z
bundesliga.com favicon

Deutsche Fußball Liga GmbH

bundesliga.com

74
MediaGermanylargeMEDIUM

The website represents the official digital presence of the Bundesliga, Germany's premier professional football league. It offers comprehensive sports content including live scores, news, match highlights, and club information, targeting football fans and sports media worldwide. The site is professionally designed with consistent branding and high-quality content, reflecting its position as a leading sports media entity. Technically, the site leverages modern web technologies such as Angular framework, Google Tag Manager for analytics, and Dynatrace for performance monitoring. It is hosted likely on AWS infrastructure, optimized for fast loading and excellent mobile responsiveness. The site employs robust security measures including HTTPS, security headers, and cookie consent mechanisms, indicating a mature digital infrastructure. Security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR adherence. However, no explicit contact information or incident response channels are publicly visible, which could be improved for transparency. Overall, the website is trustworthy, secure, and professionally maintained, though the lack of WHOIS data introduces some uncertainty about domain registration details. Strategic recommendations include enhancing visible contact and security incident response information and maintaining regular security audits to uphold the high security standards.

70
68
17
72
100
80
100
sportsfootballbundesligagermanymedia+5 more
AngularGoogle Tag ManagerDynatraceMaterial Design Components+1
2025-10-24T16:33:07.974Z
lexrocket.de favicon

Haufe-Lexware GmbH & Co. KG

lexrocket.de

66
OtherGermanylargeMEDIUM

Haufe-Lexware GmbH & Co. KG is a well-established German software company specializing in business and accounting software solutions for self-employed individuals, freelancers, and small to medium-sized enterprises. Operating since 1993 as part of the Haufe Group, Lexware holds a strong market position in Germany, offering a range of products including accounting, payroll, and business management software, complemented by educational content and tools for entrepreneurs. The website content is professionally curated, targeting entrepreneurs and business owners with relevant knowledge and practical advice on business formation and management. Technically, the website is built on the TYPO3 CMS platform and integrates modern technologies such as Usercentrics for consent management, Econda for analytics, and Kameleoon for marketing optimization. The hosting infrastructure is managed by the Haufe Group, ensuring reliable performance and security. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and employs consent management to comply with privacy regulations. While explicit security headers are not visible in the provided data, no vulnerabilities or exposed sensitive data were detected. The company maintains comprehensive privacy and cookie policies, indicating a mature approach to data protection and GDPR compliance. However, the absence of a public security policy or incident response information suggests areas for improvement. Overall, Haufe-Lexware's website reflects a mature, trustworthy, and professional digital presence with strong business credibility and compliance posture. Strategic enhancements in security transparency and header implementation could further strengthen its security stance and user trust.

30
68
2
72
100
70
100
grndungbusinessentrepreneurshipaccountingsoftwaresmallbusiness+2 more
TYPO3 CMSJavaScriptUsercentrics Consent ManagerEconda Analytics+3

Partner Domains:

haufegroup.com
parent
lexbizz.de
subsidiary

+3 more partners

2025-10-24T16:12:05.799Z
gkv-buendnis.de favicon

GKV-Bündnis für Gesundheit

gkv-buendnis.de

59
HealthcareGermanymediumMEDIUM

The GKV-Bündnis für Gesundheit website represents a collaborative initiative of statutory health insurance funds in Germany focused on advancing health promotion and prevention across various life settings such as communities, schools, and care facilities. The site provides practical resources and information targeting health professionals and stakeholders involved in these sectors. The business model is non-profit and government-related, emphasizing public health improvement. Technically, the website employs modern web standards with responsive design, accessibility features, and uses Matomo analytics with a consent mechanism, reflecting a privacy-conscious approach. Hosting and DNS infrastructure align with official statutory health insurance IT services, indicating a stable and trustworthy technical foundation. From a security perspective, the site enforces HTTPS, uses cookie consent, and avoids exposing sensitive data. However, it lacks explicit security policy documentation and incident response contacts, which could be improved to enhance transparency and trust. No vulnerabilities or suspicious elements were detected. Overall, the website is professional, trustworthy, and well-aligned with its public health mission. Strategic recommendations include publishing dedicated security and incident response policies, enhancing security headers, and providing clearer contact information to strengthen user trust and compliance.

30
43
2
70
77
70
100
gesundheitsfrderunggesundheitsprventionprventionsettinglebenswelten+2 more
Matomo AnalyticsJavaScriptCSSHTML5
2025-10-24T16:11:00.624Z
iqsperrholz.org favicon

IQS Initiative Qualitätssperrholz

iqsperrholz.org

44
ManufacturingGermanysmallHIGH

The IQS Initiative Qualitätssperrholz is a voluntary association of companies within the wood import industry in Germany, focused on promoting fair competition and transparency in plywood product quality and labeling. The website serves as an informational platform to educate customers and industry participants about plywood standards and product declarations. The business model centers on collaboration among industry members to ensure consistent quality and compliance with relevant norms. The site is well-positioned within its niche, supported by a network of partner companies and the Gesamtverband Deutscher Holzhandel e.V., which provides organizational backing. Technically, the website is built on a modern WordPress CMS platform using Elementor and JetEngine plugins, with SEO optimization via Yoast and cookie consent managed by Borlabs Cookie. The site is mobile-optimized and performs moderately well, with a clean and professional design. Security posture is adequate with HTTPS enabled and domain transfer protection in place, though it lacks explicit security policies and vulnerability disclosures. Security-wise, the site benefits from SSL encryption and domain status protections but is missing critical compliance documents such as a privacy policy and terms of service, which impacts GDPR compliance and overall trust. No incident response or vulnerability disclosure mechanisms are present, which could be improved to enhance security readiness. Overall, the website is a credible and professional representation of the IQS initiative with good business credibility and technical implementation. Strategic improvements in privacy compliance and security transparency would further strengthen its position and trustworthiness.

25
73
2
55
62
60
-
woodplywoodqualityindustryinitiative+3 more
WordPress 6.8.3Elementor 3.32.4JetEngine pluginYoast SEO plugin+2
2025-10-24T16:10:50.588Z
j1-info.de favicon

Bundesinstitut für Öffentliche Gesundheit (BIÖG)

j1-info.de

65
HealthcareGermanymediumMEDIUM

The website www.j1-info.de is an official public health information portal managed by the Bundesinstitut für Öffentliche Gesundheit (BIÖG) in Germany. It provides comprehensive information about the J1 health check for adolescents aged 12 to 14, including educational content, appointment scheduling assistance, and a doctor search feature. The site targets youth, their parents, and healthcare professionals, positioning itself as a trusted government resource in the healthcare sector. The content is well-structured, multilingual, and includes accessible media, enhancing user engagement and inclusivity. Technically, the site is built on TYPO3 CMS, employs Matomo for privacy-conscious analytics, and uses modern web technologies including accessible video players and responsive design. The website demonstrates good performance and SEO practices, with strong accessibility features. Hosting details are not explicitly disclosed, but data processing for analytics is localized in Germany, aligning with GDPR requirements. From a security perspective, the site enforces HTTPS, anonymizes IP addresses in analytics, and implements a clear cookie consent mechanism. While some security headers like Content-Security-Policy are not explicitly found, the overall posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is excellent, with detailed policies and user consent mechanisms in place. Overall, the website presents a low-risk profile with high trustworthiness, serving as a professional and reliable source of health information for its audience. Strategic recommendations include enhancing security headers and publishing explicit security policies to further strengthen trust and compliance.

85
40
2
60
77
70
100
healthyouthpublichealthj1examinationgermany+5 more
TYPO3 CMSMatomo AnalyticsAblePlayer (accessible media player)Bootstrap (accordion and UI components)+2
2025-10-24T16:09:54.896Z
komm.one favicon

Komm.ONE

komm.one

73
GovernmentGermanymediumMEDIUM

Komm.ONE is a public law institution and IT service provider dedicated to supporting municipalities across Baden-Württemberg, Germany. The organization develops and operates software and IT services tailored for local government administration, positioning itself as a key regional player in the public sector IT market. Their offerings include consulting, cloud services, security, innovation management, and training, targeting municipal administrations and public entities. The website reflects a professional and consistent brand image aligned with their mission. Technically, the website is built on a modern stack including jQuery, Bootstrap, and specialized CMS templates, with good mobile optimization and accessibility features. The presence of a cookie consent mechanism and Matomo analytics indicates a mature digital infrastructure with privacy considerations. Performance is moderate, and SEO practices are well implemented. From a security perspective, the site enforces HTTPS and uses cookie consent controls but lacks explicit published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable, likely due to privacy protection, but the domain and website content strongly indicate legitimacy as a public institution. Overall, Komm.ONE presents a trustworthy and professional online presence with room for improvement in transparency around security policies and incident response. The risk level is low, and the site is suitable for its target audience of public sector entities.

70
83
47
60
67
75
100
kommunenverwaltungit-dienstleisterbaden-wrttembergcloud+4 more
jQuery 3.6.4jQuery UI 1.13.2FontAwesome 5Bootstrap Bundle+6

Partner Domains:

mitgliederportal.komm-one.net
partner
2025-10-24T16:09:34.830Z
S

Städte-Verlag E. v. Wagner & J. Mitterhuber GmbH

unser-stadtplan.de

48
OtherGermanymediumHIGH

Unser-stadtplan.de is a German website operated by Städte-Verlag E. v. Wagner & J. Mitterhuber GmbH, providing digital and printed city maps, district maps, and comprehensive business directories. The platform also features job listings, targeting local residents and businesses in Germany. The website content is primarily in German and focuses on delivering detailed geographic and commercial information to its users. The business model revolves around map publishing and local business promotion, positioning itself as a regional leader in city planning and local information services. Technically, the website uses standard web technologies including JavaScript and CSS with custom scripts for UI interactions and animations. The site shows moderate performance and basic mobile optimization but lacks advanced SEO and accessibility features. No CMS or major frameworks are detected. The hosting provider and SSL configuration details are not explicitly available, limiting a full technical assessment. From a security perspective, the site does not explicitly show HTTPS status or security headers in the provided data, indicating potential gaps in security best practices. No privacy or cookie consent banners are present, which is a compliance concern under GDPR. The site includes a privacy policy and contact form but lacks visible incident response or security policies. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website is functional and provides valuable local information but would benefit from enhanced security measures, improved privacy compliance, and better technical modernization to strengthen trust and user experience.

15
28
2
85
95
75
20
mapscityplansbusinessdirectoryjoblistingsgerman+1 more
JavaScriptCSSHTML5
2025-10-24T16:09:29.656Z
smartaxxess.io favicon

Loonexx AG

smartaxxess.io

9
TechnologyGermanysmallCRITICAL

The website smartaxxess.io serves as a login portal for the smartakte service, operated by Loonexx AG, a German technology company founded in 2022. The site targets professional users requiring secure access to digital services. The business model appears to be subscription or account-based access to a technology platform. The website is professionally designed with a consistent brand presence and basic content quality focused on user authentication. Technically, the site uses modern web technologies including JavaScript ES modules and CSS, hosted by IONOS SE. The site is mobile optimized and performs moderately well. However, it lacks advanced SEO and accessibility features. Security is enforced via HTTPS and CSRF tokens in forms, but no security headers or DNSSEC are implemented, representing areas for improvement. From a security posture perspective, the site shows good basic protections but lacks published privacy, cookie, and terms policies, as well as incident response or vulnerability disclosure information. No contact information or social media presence is visible, which limits transparency. The WHOIS data is consistent and trustworthy, with no suspicious patterns. Overall, the site is safe and suitable for general audiences, with no adult or questionable content. The main risks relate to compliance and security best practices gaps. Strategic recommendations include implementing security headers, publishing privacy and cookie policies, enabling DNSSEC, and providing clear contact and incident response information to enhance trust and compliance.

-
-
-
-
-
-
-
logintechnologysecureaccesssmartaktedigitalservice
JavaScript ES ModulesCSSHTML5
2025-10-24T16:07:06.657Z
metzler.com favicon

B. Metzler seel. Sohn & Co. AG

metzler.com

10
FinanceGermanylargeCRITICAL

Bankhaus Metzler is Germany's oldest family-owned bank, specializing in capital market services for institutions and discerning private clients. The company operates across four main business areas: Asset Management, Capital Markets, Corporate Finance, and Private Banking. The website reflects a strong market position with a focus on personalized, long-term financial solutions. The bank emphasizes stability, reliability, and a tradition of excellence in its services. Technically, the website is well-structured with modern HTML5, CSS, and JavaScript technologies. It is mobile-optimized and provides a good user experience with clear navigation and comprehensive content. The presence of structured data (JSON-LD) enhances SEO and trustworthiness. However, explicit security headers are missing, and no CMS or hosting provider details are evident from the source. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism compliant with GDPR. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data for the domain is a notable concern for a financial institution, potentially indicating privacy protection or registry issues. No incident response or vulnerability disclosure information is publicly available, which could be improved to enhance transparency and trust. Overall, the website is professional, trustworthy, and compliant with privacy regulations, but improvements in security headers, incident response transparency, and WHOIS data availability are recommended to strengthen the security posture and business credibility.

-
-
-
-
-
-
-
bankingfinanceassetmanagementcapitalmarketscorporatefinance+3 more
JavaScriptCSSHTML5
2025-10-24T16:06:56.631Z
amnesty-intern.de favicon

Fachkommission Internet – Amnesty International

amnesty-intern.de

43
Non-profitGermanysmallHIGH

The Fachkommission Internet (FK Internet) website serves as an informational and support platform for the German section of Amnesty International, focusing on IT-related services such as webhosting, email, cloud storage, and intranet support. The organization operates as a small, volunteer-driven non-profit entity providing specialized IT assistance to Amnesty International groups and districts in Germany. The website is built on WordPress and leverages a variety of plugins and modern web technologies to deliver content and services effectively. Hosting is provided by Manitu, a reputable German hosting provider, which aligns with the organization's regional focus. From a technical perspective, the site demonstrates a moderate level of digital maturity with a modern tech stack, responsive design, and active content updates. However, there is room for improvement in areas such as security headers implementation and cookie consent mechanisms to enhance GDPR compliance. The absence of explicit terms of service and vulnerability disclosure pages suggests potential gaps in formal security and compliance documentation. Security posture is generally good, with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. The site does not exhibit signs of malicious activity or phishing. Privacy compliance is supported by the presence of a privacy policy, though cookie consent mechanisms are lacking. Contact information is available primarily via email and contact forms, but no phone numbers or physical addresses are prominently displayed. Overall, FK Internet presents a trustworthy and professional online presence consistent with its non-profit mission. Strategic recommendations include enhancing privacy compliance with cookie consent, implementing security headers, and publishing formal security policies to strengthen trust and compliance further.

35
28
2
55
62
65
20
non-profitamnestyinternationalitsupportwebhostingemailservices+2 more
WordPress 6.8.3jQueryLeaflet.jsFontAwesome Pro+5

Partner Domains:

amnesty-international.de
partner
amnesty-intern.de
partner
2025-10-24T16:06:21.545Z
junge-erwachsene-mit-krebs.de favicon

Deutsche Stiftung für junge Erwachsene mit Krebs

junge-erwachsene-mit-krebs.de

46
HealthcareGermanymediumHIGH

The Deutsche Stiftung für junge Erwachsene mit Krebs is a specialized non-profit foundation dedicated to supporting young adults aged 18 to 39 diagnosed with cancer. The organization provides comprehensive information, support services, advocacy, and educational resources tailored to this demographic within Germany. Their market position is focused and niche, serving a critical healthcare segment with a strong emphasis on community engagement and scientific collaboration. The website reflects a mature digital presence with multilingual support and donation capabilities, indicating a well-established infrastructure. Technically, the website is built on WordPress with modern plugins such as Yoast SEO for optimization, GiveWP for donations, and WPML for multilingual content. The site demonstrates good mobile responsiveness, accessibility compliance (including BITV standards), and SEO best practices. Performance is moderate, with room for optimization, but overall the technical implementation supports the foundation's mission effectively. From a security perspective, the site enforces HTTPS and employs cookie consent management via Borlabs Cookie. While explicit security headers are not fully evident, no critical vulnerabilities or exposed sensitive data were found. The WHOIS data aligns well with the organization's identity, showing consistent registration and no privacy protection, which is appropriate for a non-profit entity. No incident response or vulnerability disclosure policies are publicly visible, suggesting an area for improvement. Overall, the website presents a low-risk profile with strong business credibility and compliance with privacy regulations. Strategic recommendations include enhancing security headers, formalizing incident response and vulnerability disclosure processes, and continuous monitoring of plugin security to maintain a robust security posture.

15
48
17
70
67
60
-
healthcarenon-profitcancersupportyoungadultsaccessibility+2 more
WordPressYoast SEO pluginGiveWP donation pluginWPML multilingual plugin+3
2025-10-24T15:55:33.980Z
tokenize.it favicon

Tokenize.it GmbH

tokenize.it

58
FinanceGermanysmallMEDIUM

Tokenize.it GmbH operates a sophisticated digital platform focused on startup fundraising and investment using tokenized virtual shares on the Ethereum blockchain. The company targets startups, founders, investors including business angels, venture capitalists, and retail investors primarily in Germany and Austria. Their platform enables continuous fundraising without notary involvement, leveraging legal templates optimized for GmbH companies. The business is positioned as a leader in digital fundraising with over €10 million in tokenized assets and more than 65 companies onboarded. Technically, the website is built on Webflow with modern libraries such as GSAP and Swiper.js, integrating blockchain technology and advanced analytics tools like Google Analytics, Hotjar, and LinkedIn Insight. Security posture is strong with HTTPS, DNSSEC, and non-custodial wallet control, though the absence of a published security policy and incident response details is noted. Privacy compliance is robust with GDPR-aligned cookie consent mechanisms and clear privacy and terms pages. The domain is well-aged but currently expired, posing a risk that should be addressed promptly. Overall, Tokenize.it presents a professional, trustworthy, and technically mature digital presence with room for improvement in security transparency and operational domain management.

60
55
2
85
57
20
100
startupfundraisinginvestmentblockchaintokenization+5 more
Ethereum blockchainGoogle Fonts (Poppins, DM Sans)Webflow CMSGSAP animation library+5

Partner Domains:

concedus.de
partner
tangany.com
partner

+2 more partners

2025-10-24T15:54:48.563Z
weil-am-rhein.de favicon

Stadtverwaltung Weil am Rhein

weil-am-rhein.de

55
GovernmentGermanymediumMEDIUM

The website www.weil-am-rhein.de serves as the official digital presence of the city administration of Weil am Rhein, Germany. It provides comprehensive information and services related to city governance, citizen services, cultural events, environmental initiatives, and urban development projects. The site targets residents, local businesses, tourists, and government stakeholders, offering multilingual support in German, English, and French. The business model is governmental, focusing on public service and information dissemination, positioning itself as the authoritative source for municipal matters in the region. Technically, the website is built on the Komm.ONE CMS platform, leveraging modern JavaScript libraries such as jQuery, Bootstrap, and bxSlider for interactive and responsive user experience. The site is hosted on netcup servers, uses HTTPS with a Content-Security-Policy header, and demonstrates good mobile optimization and accessibility features. SEO practices are well implemented with proper meta tags and structured data (JSON-LD) for enhanced search engine visibility. From a security perspective, the site enforces HTTPS and includes a Content-Security-Policy header, minimizing risks from mixed content and some injection attacks. No critical vulnerabilities or exposed sensitive data were detected. However, additional security headers like X-Frame-Options and Referrer-Policy could further strengthen the security posture. Privacy compliance is robust, with clear privacy and cookie policies and consent mechanisms in place, aligning with GDPR requirements. Overall, the website presents a professional, trustworthy, and secure platform for municipal communication and services. It lacks explicit security incident response information and vulnerability disclosure mechanisms, which could be areas for future improvement. The domain registration and hosting details are consistent with the official city identity, reinforcing legitimacy and trustworthiness.

70
68
2
70
62
60
20
municipalgovernmentcityservicesweilamrheinpublicadministration+3 more
jQuery 3.6.4jQuery UI 1.13.2FontAwesome 5bxSlider+4

Partner Domains:

www.w-wt.de
partner
2025-10-24T15:53:27.964Z