Skip to main content

Germany security reports

Browse 14,812 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157367
Websites
130
Industries
113
Countries
52
Avg Score
Page 130 of 297|Showing 6451-6500 of 14812
sogehtassetservicing.com favicon

DZ PRIVATBANK

sogehtassetservicing.com

72
FinanceGermanylargeMEDIUM

DZ PRIVATBANK, together with its subsidiary IPConcept, operates the website 'So geht Asset Servicing!' offering modular and full-service asset servicing solutions for the entire fund lifecycle. The company targets fund initiators and institutional investors primarily in Germany, Luxembourg, and Switzerland. The website presents a professional and comprehensive overview of services including custodian, transfer agent, central administration, and AIFM/KVG services, supported by a well-structured team section and multiple contact options. Technically, the site is built on WordPress with modern integrations such as Google Tag Manager and consent management tools, ensuring GDPR compliance and good user experience across devices. Security posture is strong with HTTPS enforcement and security headers, though the absence of a public security policy and incident response details is noted. The WHOIS data is missing, which raises some concerns about domain registration transparency, but the overall branding and external references support legitimacy. Strategic recommendations include publishing security and incident response policies and enhancing transparency around domain registration.

90
100
2
60
72
70
100
assetservicingfinancefundservicesgdprcookieconsent+2 more
WordPressConsentmanager.net (cookie consent)Google Tag ManagerLeadinfo+1

Partner Domains:

www.dz-privatbank.com
parent
ipconcept.com
subsidiary

+1 more partners

2025-10-23T17:01:50.854Z
W

WInTO GmbH

winto-info.de

40
GovernmentGermanysmallHIGH

WInTO GmbH is a regional government-related company focused on economic, innovation, and tourism promotion in the Oberhavel region of Germany. The website primarily serves as an imprint (Impressum) page providing legal and contact information. The business operates in the government sector with a small organizational size and targets local businesses and stakeholders interested in regional development. The website content is minimal and professional but lacks comprehensive privacy, cookie, and security policies, which are important for compliance and trust. Technically, the website uses basic HTML and CSS with no detected CMS or advanced frameworks. Hosting appears to be on generic servers indicated by the nameservers. The site shows basic mobile optimization and accessibility but lacks SEO optimization and security headers. No analytics or tracking scripts are present, indicating minimal user tracking. From a security perspective, the site uses HTTPS (assumed but not explicitly confirmed), but no security headers or incident response contacts are provided. There are no forms or user input fields, reducing attack surface. However, the absence of privacy and cookie policies is a compliance gap under GDPR. WHOIS data is partially consistent but lacks detailed registrant information, slightly reducing trustworthiness. Overall, the website is safe and professional but basic in content and technical sophistication. Strategic improvements in privacy compliance, security headers, and SEO would enhance trust and digital maturity.

15
25
2
60
82
70
-
governmenteconomicdevelopmenttourismregionalimpressum
HTML5CSS
2025-10-23T17:01:30.804Z
spk-goettingen.de favicon

Sparkasse Göttingen

spk-goettingen.de

67
FinanceGermanylargeMEDIUM

Sparkasse Göttingen is a regional financial institution providing a broad range of banking and financial services including online banking, loans, credit cards, investments, insurance, and real estate services. The website targets both private and corporate customers with a strong emphasis on secure and user-friendly online banking experiences. The bank maintains a solid market position within the Göttingen region, supported by comprehensive service offerings and a professional digital presence. Technically, the website is built on a modern infrastructure likely powered by Adobe Experience Manager CMS, utilizing JavaScript, CSS, and React components for dynamic content. The site is well-optimized for mobile devices and accessibility, featuring clear navigation and SEO best practices. The presence of cookie consent mechanisms and privacy policies indicates a mature approach to data protection and compliance. From a security perspective, the website enforces HTTPS and includes session management features such as session timeout warnings. While explicit security headers are not fully confirmed, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. However, the absence of a published security policy or incident response contact suggests room for improvement in transparency and readiness. Overall, the site is trustworthy, professionally maintained, and compliant with GDPR requirements. It demonstrates a high level of digital maturity suitable for a financial institution, with recommendations focusing on enhancing security disclosures and incident response transparency.

90
68
2
60
67
65
100
bankingfinanceonlinebankingsparkassegttingen+3 more
JavaScriptCSSHTML5jQuery (implied by $ usage)+1
2025-10-23T17:01:05.740Z
kulturstiftung-goettingen.de favicon

Göttinger Kulturstiftung

kulturstiftung-goettingen.de

57
Non-profitGermanysmallMEDIUM

The Göttinger Kulturstiftung is a small non-profit cultural foundation affiliated with the city of Göttingen, Germany. It focuses on supporting cultural activities through funding and public information. The website serves as an informational portal for cultural funding opportunities and donation options, targeting local cultural organizations and citizens. The business model is centered on non-profit cultural promotion with a clear local focus. Technically, the website is built on a custom CMS platform (NOLIS) using standard web technologies such as JavaScript and CSS. It features a responsive design with accessibility options like font resizing and contrast toggling. The site is well-structured with clear navigation and SEO-friendly metadata. Performance is moderate with no major issues detected. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism compliant with GDPR. However, it lacks advanced security headers and does not publish explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were found. The WHOIS data confirms domain legitimacy and consistency with the organization's identity. Overall, the website is professional, trustworthy, and suitable for its target audience. Strategic improvements could include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to strengthen security posture and user trust.

75
43
2
40
52
60
100
culturefoundationnon-profitgermanygoettingen+2 more
JavaScriptjQueryCSSHTML5
2025-10-23T17:00:24.529Z
akb-stiftung.de favicon

AKB Stiftung

akb-stiftung.de

42
Non-profitGermanysmallHIGH

The AKB Stiftung website represents a small, regional non-profit foundation with a family heritage focus. The site content is minimal but clearly communicates the foundation's regional engagement and mission. The business model is typical for a non-profit foundation, relying on regional initiatives and likely donations or grants. The market position is niche and localized, with no evident commercial activities or services offered online. Technically, the website is built on WordPress using the Enfold theme and several plugins including Slider Revolution and MediaElement.js. The site is served over HTTPS, indicating a basic level of security. However, the technical implementation is basic with limited mobile optimization and no advanced SEO or accessibility features detected. The site lacks privacy and cookie policies, which is a compliance gap. From a security perspective, the site has HTTPS enabled but lacks security headers and does not disclose any security or incident response policies. There are no visible vulnerabilities or exposed sensitive data, but the absence of security best practices and policies suggests room for improvement. No analytics or tracking scripts are present, indicating minimal user tracking. Overall, the website is safe and appropriate for a general audience, with no adult or questionable content. The lack of contact information and compliance documentation reduces trust and business credibility. Strategic improvements in privacy compliance, security headers, and contact transparency are recommended to enhance trust and compliance.

15
40
17
70
72
60
-
non-profitfoundationregionalwordpressgerman
WordPressjQuerySlider RevolutionMediaElement.js+2
2025-10-23T17:00:19.488Z
N

Niedersächsische Landesregierung

niedersachsen.de

55
GovernmentGermanylargeMEDIUM

The website www.niedersachsen.de is the official portal of the Lower Saxony state government in Germany. It serves as a comprehensive information hub for residents, government officials, and other stakeholders, providing detailed content on politics, state administration, culture, energy, emergency monitoring, integration, and public services. The site is well-structured, multilingual, and professionally designed, reflecting its authoritative government status. The business model is purely informational and service-oriented, targeting the general public and specific groups such as refugees and local citizens. Technically, the site uses a mature technology stack including jQuery, Video.js, FancyBox, Slick Carousel, DataTables, and Matomo analytics, managed via the Powerslave Liveserver CMS. The site demonstrates good mobile optimization, accessibility, and SEO practices, though performance is moderate. Security posture is solid with HTTPS enforced and no visible vulnerabilities, but lacks some security headers and explicit cookie consent mechanisms. Overall, the security posture is good with no detected vulnerabilities or suspicious content. The domain WHOIS data is privacy-protected as per DENIC policies, consistent with a government domain. The site lacks explicit security policies or incident response contacts, which could be improved. Privacy compliance is generally good, though cookie consent mechanisms should be enhanced. The risk assessment is low, with recommendations focusing on improving security headers, cookie consent, and publishing security policies to enhance trust and compliance. The site is trustworthy, professional, and safe for general audiences.

20
28
17
70
52
70
100
governmentofficiallowersaxonypublicservicesemergency+4 more
jQuery 3.4.1Video.js 7.20.1FancyBoxSlick Carousel+2

Partner Domains:

www.stk.niedersachsen.de
partner
www.mi.niedersachsen.de
partner

+2 more partners

2025-10-23T16:59:41.639Z
G

Gesellschaft für Medienförderung Saarland – Saarland Medien – mbH

saarland-medien.de

44
MediaGermanysmallHIGH

The Gesellschaft für Medienförderung Saarland – Saarland Medien – mbH is a regional media promotion company based in Saarland, Germany, focusing on supporting film, games, and media location development. The website clearly communicates its business focus and upcoming liquidation status effective January 1, 2025. The target audience includes media professionals, filmmakers, game developers, and regional stakeholders. The business operates primarily as a public sector entity providing funding, networking, and promotional services within the media industry. Technically, the website is built on WordPress using Visual Composer, Bootstrap 4, and several common plugins such as Events Manager and Contact Form 7. The site is served over HTTPS with good SSL configuration, though it lacks advanced security headers and cookie consent mechanisms. Performance and mobile optimization are moderate to good, with basic accessibility and SEO features. From a security perspective, the site employs HTTPS and some security plugins but lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic, with a privacy policy present but no cookie consent banner. Overall, the website is professional, trustworthy, and suitable for its business purpose, though improvements in security headers, privacy compliance, and incident response transparency are recommended to enhance its security posture and regulatory adherence.

55
33
2
70
62
60
-
mediafilmgamesregionalsaarland+1 more
WordPressVisual Composer Website BuilderjQueryBootstrap 4+3

Partner Domains:

www.lmsaar.de
partner
2025-10-23T16:14:11.879Z
pfproit.de favicon

PFPRO IT Services

pfproit.de

60
TechnologyGermanysmallMEDIUM

PFPRO IT Services is a small German IT company based in Saarbrücken, specializing in professional web development, IT consulting, and support services. Founded in 2008, the company offers a range of services including consulting, custom web application development, IT support, remote maintenance, and emergency IT services. They also provide a cloud-based industry solution called PFPRO Cloud R6 targeting sectors like gastronomy and entertainment. The website is well-structured, professionally designed, and targets both businesses and private users in the local region. The company maintains an active presence on LinkedIn, Xing, and GitHub, enhancing its professional credibility. Technically, the website employs a modern technology stack including Bootstrap, FontAwesome, jQuery, Owl Carousel, and Matomo for analytics, combined with Usercentrics for GDPR-compliant cookie consent management. The site is mobile-optimized and uses HTTPS with good SSL configuration. However, explicit security headers are not detected, and no dedicated security policy or incident response information is provided. The website demonstrates good privacy compliance and moderate user tracking through Matomo. From a security perspective, the site shows a solid baseline with HTTPS and consent management but lacks advanced security headers and documented incident response processes. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data aligns well with the website's business claims, showing consistent registration information and domain age appropriate for the company's founding date. Overall, PFPRO IT Services presents a trustworthy and professional online presence with good technical implementation and privacy compliance. Strategic improvements could include enhancing security headers, publishing a security policy, and providing incident response contacts to further strengthen trust and security posture.

15
28
17
70
100
70
100
itserviceswebdevelopmentconsultingcloudsolutionsgerman+1 more
BootstrapFontAwesomejQueryOwl Carousel+4
2025-10-23T16:14:01.862Z
vergabe.saarland favicon

Zweckverband eGo-Saar

vergabe.saarland

57
GovernmentGermanymediumMEDIUM

The website vergabe.saarland serves as the official electronic procurement platform for the Saarland region in Germany, operated by Zweckverband eGo-Saar. It provides public sector entities such as cities, municipalities, and state administration with a centralized platform to publish tenders and manage electronic submissions. The platform targets businesses and contractors interested in public procurement within Saarland, offering services like digital download of tender documents and electronic bid submission. The site is well-branded with official logos and maintains a professional appearance consistent with government standards. Technically, the website is built on WordPress 6.8.3 with common web technologies such as jQuery and Slick Carousel for UI components. Hosting is provided by plusserver.com, and the site uses HTTPS with a valid SSL certificate. Cookie consent is implemented with an opt-in mechanism for Google Analytics and Facebook Ads, reflecting a good level of privacy compliance. However, some security headers are missing or misconfigured, such as an empty Content-Security-Policy and lack of DNSSEC, which slightly reduce the security posture. From a security perspective, the site enforces HTTPS and uses clientTransferProhibited status on the domain to prevent unauthorized transfers. The WHOIS data aligns well with the website's governmental purpose, showing consistent registration details. No signs of malware, phishing, or suspicious activity were detected. The cookie consent mechanism and privacy policy indicate GDPR compliance, but no explicit security policy or incident response information is published. Overall, vergabe.saarland is a legitimate, regionally focused government procurement platform with good content quality and business credibility. Security practices are adequate but could be improved by enabling DNSSEC, configuring security headers properly, and publishing security policies. The site is safe for general audiences and does not contain any adult or questionable content.

25
68
2
40
67
75
100
governmentprocurementpublictenderssaarlanddigitalplatform+1 more
WordPress 6.8.3jQuerySlick CarouselCookieConsent.js

Partner Domains:

ego-saar.de
partner
saarland.de
partner
2025-10-23T16:13:51.843Z
115.de favicon

FITKO

115.de

62
GovernmentGermanylargeMEDIUM

The website www.115.de serves as the official German government service portal providing citizens with a centralized phone number (115) to access administrative information and services from federal, state, and local authorities. It targets the general public in Germany, offering comprehensive support for a wide range of administrative topics. The site is well-positioned as a trusted, nationwide service with over 71 million reachable citizens and multiple service centers. The content is professionally curated, accessible, and includes features for easy language and sign language support. Technically, the site is built on the TYPO3 CMS platform, leveraging modern web technologies such as Matomo for privacy-compliant analytics and Cookiebot for consent management. The site demonstrates good mobile optimization, accessibility, and SEO practices. The use of consent-based tracking and blocking mechanisms reflects a mature approach to privacy compliance. From a security perspective, the site enforces HTTPS and integrates cookie consent mechanisms to manage user privacy. While explicit security headers are not fully visible in the provided data, the overall posture is good with no evident vulnerabilities or exposed sensitive data. However, the site lacks publicly available security policies or incident response contacts, which could be improved. Overall, www.115.de is a high-quality, trustworthy government service website with strong privacy and usability features. It is recommended to enhance security transparency by publishing security policies and implementing comprehensive security headers to further strengthen its security posture.

30
88
2
55
72
65
100
governmentpublicserviceadministrationprivacycookieconsent+3 more
TYPO3 CMSMatomo AnalyticsCookiebot Consent ManagementBootstrap (implied by navbar classes)+1
2025-10-23T16:13:36.813Z
geomar.de favicon

GEOMAR Helmholtz-Zentrum für Ozeanforschung Kiel

geomar.de

50
EducationGermanylargeMEDIUM

GEOMAR Helmholtz-Zentrum für Ozeanforschung Kiel is a prominent German research institution specializing in oceanographic and climate research. The website serves as a comprehensive platform for scientific information, research programs, expeditions, and public outreach. It targets researchers, students, policymakers, and the general public interested in marine and climate sciences. Affiliated with the Helmholtz Association, GEOMAR holds a strong market position in the education and government research sectors. Technically, the website is built on TYPO3 CMS with modern JavaScript libraries such as jQuery and Slick Slider, providing a responsive and accessible user experience. The site demonstrates good SEO practices and mobile optimization, though performance is moderate. Security posture is solid with HTTPS enforced and some security headers present, but could be improved by adding more comprehensive headers and visible incident response policies. Overall, the site is trustworthy and professional, with clear branding and consistent content quality. However, it lacks a visible cookie consent mechanism and explicit security contact information, which are areas for improvement. The domain registration data aligns well with the website content, reinforcing legitimacy and trustworthiness.

40
28
2
65
72
70
40
oceanresearchclimatesciencemarineecologyscientificexpeditionseducation+1 more
TYPO3 CMSjQueryjQuery UISlick Slider

Partner Domains:

www.aquarium-geomar.de
partner
oceanrep.geomar.de
partner
2025-10-23T16:12:36.292Z
sinma.de favicon

sinma GmbH

sinma.de

60
TelecommunicationsGermanysmallMEDIUM

sinma GmbH is a small German telecommunications company specializing in providing full-service internet solutions tailored for business customers. Their offerings include fiber optic leased lines, DSL with fixed IPs, web hosting, server housing, virtual servers, backup solutions, VPN networks, and related services such as domain management and firewalls. The company emphasizes high availability and security in their network solutions and has been operating since 1991, indicating a long-standing presence in the market. The website reflects a professional and consistent brand image with clear navigation and relevant business content targeting German business clients. From a technical perspective, the website employs basic web technologies including JavaScript and CSS without modern frameworks or CMS detected. The site is moderately optimized for performance and accessibility but lacks advanced mobile optimization. There is no evidence of analytics or tracking scripts, which suggests minimal user tracking. However, the absence of security headers and explicit SSL/TLS information indicates room for improvement in technical security measures. Security posture evaluation reveals gaps such as missing privacy and cookie policies, lack of security headers, and limited contact information. No incident response or vulnerability disclosure information is provided, which could impact trust and compliance. The WHOIS data shows partial consistency with the website's claims but lacks detailed registrant information, limiting full legitimacy verification. Overall, the site is accessible without WAF or blocking mechanisms, and content safety is rated safe with no adult or questionable content. The overall risk assessment suggests the company maintains a moderate security and compliance posture suitable for its business scale but should prioritize implementing privacy policies, enhancing security headers, and expanding contact information to improve trust and regulatory compliance. Strategic recommendations include publishing comprehensive privacy and cookie policies with consent mechanisms, enforcing HTTPS with proper security headers, and establishing clear incident response and vulnerability disclosure channels.

35
28
10
70
95
70
100
full-service-providerbusinessinternettelecommunicationsnetworkmanagementvpn+2 more
JavaScriptCSSHTML
2025-10-23T16:09:35.664Z
biocologne.de favicon

BioCologne e.V.

biocologne.de

58
HealthcareGermanysmallMEDIUM

BioCologne e.V. is a specialized network organization based in Cologne, Germany, focused on fostering the biotechnology and life sciences sector through technology transfer, startup support, and industry networking. The website positions BioCologne as a central hub connecting companies, research institutions, investors, and other stakeholders to promote innovation and economic growth in the region. The business model centers on facilitating collaboration and providing resources such as job boards and events to support career development and entrepreneurship in biotech. Technically, the website is built on the Webflow platform, leveraging modern web technologies including jQuery, Google Fonts, and Google reCAPTCHA for form security. The site demonstrates good mobile optimization and SEO practices, though performance is moderate. The technical infrastructure is suitable for a small to medium-sized organization with a focus on content delivery and user engagement. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms, but lacks visible security headers and explicit security or incident response policies. Privacy compliance is partially addressed with a privacy policy present, but no cookie consent mechanism was detected, which may pose GDPR compliance risks. Contact information is clearly provided, enhancing trustworthiness. Overall, the website is professional, trustworthy, and well-aligned with the organization's mission. Security and privacy practices could be improved to enhance compliance and resilience. The domain appears legitimate and consistent with the business claims, though WHOIS data is limited. Strategic recommendations include implementing cookie consent, adding security headers, and publishing incident response contacts to strengthen security posture and compliance.

60
28
2
70
62
60
100
biotechnologynetworklifesciencestechnologytransferstartupsupport+3 more
jQuery 3.6.0Google Fonts (Open Sans)Webflow CMSGoogle reCAPTCHA+1
2025-10-23T16:08:15.399Z
berlin-buch.com favicon

Berlin Buch

berlin-buch.com

57
HealthcareGermanymediumMEDIUM

Berlin Buch is a well-established biomedical and healthcare cluster located in Berlin, Germany, with a history dating back over 100 years in medical research and clinical care. The website serves as a portal to the cluster's institutes, companies, and services, targeting healthcare professionals, researchers, and the general public interested in health and biomedical innovation. The business model focuses on fostering collaboration and innovation within the life sciences sector, supported by reputable partners and EU funding. Technically, the website uses a modern but traditional tech stack including jQuery, Bootstrap, and Matomo analytics configured for privacy. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. Security posture is adequate with HTTPS and domain transfer protection, but lacks DNSSEC and security headers, and does not provide explicit security or incident response policies. Privacy compliance is partially met with a privacy policy and GDPR-respecting analytics, but lacks a cookie consent mechanism. Overall, the website is professional, trustworthy, and serves its audience well, though improvements in security headers and privacy transparency are recommended.

30
53
2
60
62
70
100
healthcarebiomedicalresearchberlinmedical+2 more
jQueryBootstrapjQuery UINivo Slider+1

Partner Domains:

gesundheit-akademie.de
partner
ewg-pankow.de
partner

+3 more partners

2025-10-23T16:07:55.300Z