Skip to main content

Germany security reports

Browse 14,812 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157368
Websites
130
Industries
113
Countries
52
Avg Score
Page 138 of 297|Showing 6851-6900 of 14812
ogulo.com favicon

Ogulo GmbH

ogulo.com

72
Real EstateGermanysmallMEDIUM

Ogulo GmbH operates a specialized real estate technology business focused on providing floor plan cameras and 3D virtual tours to real estate professionals. The company, founded in 2012 and based in Germany, offers innovative visualization tools that simplify the creation of up-to-date floor plans and immersive 3D tours with minimal effort. Their market position is that of a niche provider catering to real estate marketing needs, leveraging modern web technologies and integrations with marketing platforms like HubSpot. Technically, the website is built on WordPress using the Divi theme, hosted on Amazon AWS infrastructure. The site employs several HubSpot scripts for marketing automation and analytics, along with Facebook Ads Pixel for retargeting. The site is mobile optimized with good SEO practices and structured data implementation, though accessibility features are basic. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS with a valid SSL certificate and domain status locks to prevent unauthorized changes. However, DNSSEC is not enabled, and no security headers were detected in the provided data. There is no visible privacy policy, cookie consent mechanism, or incident response information, which are important for GDPR compliance and user trust. The absence of vulnerability disclosure or security.txt files suggests limited transparency in security practices. Overall, the website is professional and trustworthy with a solid business foundation and technical setup. The main risks relate to privacy compliance gaps and security best practices that could be improved to enhance user trust and regulatory adherence. Strategic recommendations include enabling DNSSEC, publishing privacy and cookie policies, adding security headers, and establishing clear incident response and vulnerability disclosure channels.

50
95
17
65
85
85
100
3drundgangimmobilienrealestategrundrisskamera3d-touren
JavaScriptHubSpot scriptsWordPressDivi Theme+2
2025-10-23T06:29:08.200Z
klischee-frei.de favicon

Servicestelle der Initiative Klischeefrei

klischee-frei.de

57
EducationGermanymediumMEDIUM

The website www.klischee-frei.de represents the Servicestelle der Initiative Klischeefrei, a German non-profit initiative dedicated to promoting gender-neutral career and study choices. It serves a broad audience including youth, parents, educators, and career counselors by providing educational resources, events, and a network of partner organizations. The initiative is supported by government entities and well-established partners, positioning it as a credible and trusted source in the education sector. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates Matomo analytics for privacy-conscious user tracking. The site is mobile-optimized, accessible, and SEO-friendly, with a professional design and clear navigation. Hosting details are not explicit, but the domain uses stable nameservers consistent with a legitimate German educational initiative. From a security perspective, the site enforces HTTPS and uses secure form submissions. However, it lacks visible security headers and explicit incident response or security policy disclosures. Privacy compliance is strong with a comprehensive privacy policy and cookie policy, though no explicit cookie consent mechanism is present. No contact emails or phone numbers are directly listed, relying instead on contact forms. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance suitable for its educational and governmental audience. Strategic improvements in security headers, incident response transparency, and cookie consent would further enhance its security posture and privacy compliance.

35
28
2
65
72
70
100
educationgenderequalitycareerguidancenon-profitgovernment-supported
HTML5CSS3JavaScriptSlick Carousel+1

Partner Domains:

www.digimintkids.de
partner
community.mint-vernetzt.de
partner

+2 more partners

2025-10-23T06:28:38.119Z
D

dSign Systems GmbH

taskcards.de

59
EducationGermanysmallMEDIUM

TaskCards is an online platform developed and operated by the German company dSign Systems GmbH, providing teachers and educational institutions a GDPR-compliant tool to share tasks and information with students. The platform supports creation and publication of digital pinboards (Pinnwände) containing text, images, links, and attachments, accessible privately or publicly. The service targets educational institutions, companies, clubs, and private users, emphasizing data privacy and German server hosting. Technically, the website is built using modern JavaScript frameworks including Vue.js and Quasar, hosted likely on German infrastructure (keymachine.de). The site is moderately performant, mobile-optimized, and structured with clear navigation. However, some SEO and accessibility features could be improved. No CMS or third-party analytics/tracking services were detected. Security posture is moderate with GDPR compliance and minimal personal data collection as key strengths. However, no explicit security headers or cookie consent mechanisms were found, and no published security or incident response policies exist. The domain WHOIS data aligns well with the business claims, showing consistent German hosting and no privacy protection, supporting legitimacy. Overall, TaskCards presents a trustworthy, well-structured educational platform with good privacy focus but could enhance security practices and transparency to improve trust and compliance further.

30
40
2
75
82
65
100
educationdsgvoonlineplatformtaskcardsgerman
JavaScriptVue.jsQuasar Framework
2025-10-23T06:28:18.066Z
bbs-cux.eu favicon

Berufsbildende Schulen Cuxhaven

bbs-cux.eu

50
EducationGermanymediumMEDIUM

The website bbs-cux.eu serves as the login portal for the Berufsbildende Schulen Cuxhaven, a vocational educational institution in Germany. It utilizes the IServ platform to provide authenticated access to school-related digital services for students, teachers, and staff. The site is professionally designed with consistent branding and clear navigation, targeting its educational audience effectively. The business model centers on providing secure digital access to educational resources and administrative tools. Technically, the site employs standard web technologies including HTML5, CSS, and JavaScript, integrated within the IServ platform. The infrastructure appears stable with moderate performance and good mobile optimization. Hosting and domain registration are managed through reputable providers, ensuring reliable availability. However, some modern security headers and cookie consent mechanisms are absent, indicating room for technical and compliance improvements. From a security perspective, the site enforces HTTPS and uses secure login forms with password visibility toggles, reflecting basic security hygiene. No critical vulnerabilities or exposed sensitive data were detected. Nonetheless, the absence of explicit security headers and vulnerability disclosure policies suggests a moderate security posture. Privacy compliance is partially met with a privacy policy present but lacking cookie consent and detailed data protection officer information. Overall, the website is trustworthy and professionally maintained, suitable for its educational purpose. Strategic enhancements in security headers, privacy compliance, and incident response transparency would further strengthen its security and regulatory posture.

85
25
2
65
52
75
20
educationloginiservschoolvocational
IServ platformJavaScriptCSSHTML5
2025-10-23T06:28:03.030Z
haeussler.de favicon

Häussler GmbH

haeussler.de

44
HospitalityGermanymediumHIGH

Häussler GmbH is a well-established German company specializing in the rental of high-quality gastronomy and event equipment, including cutlery, glasses, tableware, linens, furniture, buffet and banquet supplies, and coffee culture products. Founded in 1991, the company serves both business and private clients, focusing on large-scale events such as trade fairs, weddings, and corporate anniversaries. Their market position is strong with a reputation for quality and reliability, supported by two related brands: Häussler Leihservice and dishcounter, which extend their service offerings in the event rental space. Technically, the website employs a modern but basic tech stack including jQuery, Bootstrap, AOS for animations, and Google Maps API. The site is mobile-optimized and well-structured, though some external resources are loaded over HTTP, which could cause mixed content issues. No CMS was detected, and hosting is provided by a German hosting provider consistent with the company’s location. From a security perspective, the site lacks visible security headers and a cookie consent mechanism, which impacts privacy compliance. No forms or sensitive data collection points were found, reducing immediate risk exposure. The WHOIS data aligns with the company’s claimed history and location, supporting legitimacy. Overall, the security posture is moderate but could be improved by enforcing HTTPS on all resources and adding security headers. The overall risk assessment is low, with recommendations focusing on improving security best practices, privacy compliance, and technical modernization to enhance trust and user experience.

15
28
2
55
90
65
20
gastronomiebedarfgeschirrverleihveranstaltungenmietservicehusslergmbh
jQuery 2.1.4BootstrapAOS (Animate On Scroll)Google Web Fonts+2

Partner Domains:

haeussler-leihservice.de
subsidiary
dishcounter.de
subsidiary
2025-10-23T05:26:28.512Z
leipzig.de favicon

Stadt Leipzig

leipzig.de

70
GovernmentGermanylargeMEDIUM

The website www.leipzig.de serves as the official digital portal for the city of Leipzig, Germany, providing comprehensive information and services to residents, tourists, and businesses. It is positioned as a large government entity portal offering a wide range of municipal services including administration, social services, culture, economy, environment, and urban development. The site is well-branded, professionally designed, and highly accessible, certified with BITV 90+ standards. It targets a broad audience including citizens, families, tourists, and enterprises. Technically, the site is built on TYPO3 CMS with modern frontend technologies such as Bootstrap and jQuery, hosted likely by Deutsche Telekom infrastructure. The site demonstrates good performance, mobile optimization, and SEO practices. It integrates cookie consent mechanisms and GDPR-compliant privacy policies, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses cookie consent, and shows no signs of exposed sensitive data or vulnerable libraries. However, explicit security headers and incident response policies are not prominently documented, suggesting room for improvement in security transparency and vulnerability disclosure. Overall, the site is trustworthy, professional, and compliant with relevant regulations, with a strong security posture and excellent user experience. Strategic recommendations include enhancing security header implementation, publishing a security policy, and adding a vulnerability disclosure mechanism to further strengthen trust and security culture.

85
43
2
70
100
70
100
governmentcityleipzigpublicservicestypo3+4 more
TYPO3 CMSjQueryBootstrapFontAwesome+2
2025-10-23T05:24:55.515Z
webgo.de favicon

webgo GmbH

webgo.de

11
TechnologyGermanymediumCRITICAL

webgo GmbH is a German-based web hosting and online services provider established in 2004, offering a comprehensive portfolio including web hosting, virtual and dedicated servers, domain registration, website builders with AI features, and online marketing tools. The company positions itself as a performance-driven and environmentally conscious hosting provider, leveraging 100% green energy and emphasizing customer support availability year-round. Their market position is reinforced by multiple awards such as the Stiftung Warentest rating and the German Customer Award, indicating strong customer satisfaction and product quality. Technically, the website employs modern web technologies including Alpine.js, FontAwesome, hCaptcha for bot protection, and Microsoft Clarity for analytics. The site is built on the Statamic CMS platform, optimized for fast performance, mobile responsiveness, and accessibility. Security best practices are observed with HTTPS enforcement, comprehensive security headers, and no visible vulnerabilities or exposed sensitive data. From a security posture perspective, webgo demonstrates a mature approach with strong SSL configuration and bot mitigation. However, explicit security policies, incident response details, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Overall, webgo presents a trustworthy and professional online presence with a high degree of business credibility and technical maturity. The domain registration data, while limited due to DENIC privacy restrictions, aligns with the company's German market focus and business claims. No signs of malicious activity or content safety concerns are detected, making webgo a reliable hosting provider in its sector.

-
-
-
-
-
-
-
webhostingserverdomainsonlinemarketingseo+5 more
JavaScriptAlpine.jsFontAwesomehCaptcha+1
2025-10-23T05:24:50.473Z
wolff-tools.com favicon

Uzin Utz Tools GmbH & Co.KG

wolff-tools.com

61
ManufacturingGermanymediumMEDIUM

WOLFF, operated by Uzin Utz Tools GmbH & Co.KG, is a well-established manufacturer and distributor of powerful machines and premium quality tools for floor removal, subfloor preparation, and floor installation. The company targets flooring professionals and distributors, offering a comprehensive product range including cordless power tools, measurement devices, and cleaning equipment. The website reflects a strong market position with consistent branding and detailed product information, supported by a parent company presence (Uzin Utz SE). Technically, the website is built on TYPO3 CMS with modern frontend technologies such as Bootstrap, FontAwesome, and slick sliders. It integrates Google Analytics and Matomo for analytics, with a robust cookie consent mechanism ensuring GDPR compliance. The site is mobile-optimized, accessible, and SEO-friendly, providing a professional user experience. From a security perspective, the site enforces HTTPS and implements cookie consent but lacks visible security headers and explicit security or incident response policies. The absence of WHOIS registration data for the domain raises moderate concerns about domain legitimacy, although the website content and company information appear trustworthy and professional. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic improvements in security headers, incident response transparency, and domain registration verification would enhance trust and security posture.

30
50
17
70
72
70
100
flooringtoolsmachineryconstructionmanufacturing+4 more
TYPO3 CMSJavaScriptGoogle Tag ManagerMatomo Analytics+3

Partner Domains:

int.uzin-utz.com
parent
uk.wolff-tools.com
sister

+3 more partners

2025-10-23T05:24:10.310Z
tud.link favicon

Technische Universität Dresden

tud.link

67
EducationGermanylargeMEDIUM

The website selfservice.tu-dresden.de/services/short-link/ is an official service provided by Technische Universität Dresden (TUD) offering a short URL generation platform tailored for university members. It supports URL shortening with additional features such as validity period restrictions and QR code generation, targeting employees, guests, and students. The service is free and emphasizes compliance with data protection requirements, reflecting the university's commitment to secure and privacy-conscious digital services. Technically, the site uses standard web technologies including JavaScript and CSS, hosted under the DFN network with official university branding. The site is mobile optimized and accessible, though it lacks visible advanced frameworks or CMS indicators. Security practices include CSRF protection on forms and HTTPS usage, but there is room for improvement in security headers and transparency of security policies. From a security perspective, the site shows a moderate security posture with no detected vulnerabilities or exposed sensitive data. However, the absence of a cookie consent mechanism and explicit security or incident response policies suggests partial GDPR compliance. The WHOIS data confirms the domain's legitimacy as a university subdomain with consistent registration details. Overall, the website is a trustworthy, well-maintained educational service with good usability and privacy focus but could enhance its security and compliance transparency to further strengthen user trust and regulatory adherence.

80
28
47
60
72
70
100
educationurl-shorteneruniversity-servicedata-protection
JavaScriptCSSHTML5
2025-10-23T05:21:39.608Z
mcei.de favicon

University of Mannheim

mcei.de

63
EducationGermanylargeMEDIUM

The University of Mannheim is a well-established educational institution in Germany with a strong focus on entrepreneurship and startup support. Through its Mannheim Center for Entrepreneurship and Innovation (MCEI), it offers a comprehensive range of services including teaching, coaching, funding advice, and networking events aimed at students and alumni interested in founding startups. The university leverages partnerships with regional innovation hubs and business angel networks to enhance its ecosystem. Technically, the website is built on TYPO3 CMS and uses modern JavaScript libraries such as maplibre-gl. The site is well-structured, mobile-optimized, and includes accessibility features. Privacy compliance is robust with a clear privacy policy and cookie consent mechanism aligned with GDPR requirements. Analytics are handled via Matomo, indicating a privacy-conscious approach. From a security perspective, the site enforces HTTPS and implements cookie consent but lacks visible security policy documentation and incident response contacts. No critical vulnerabilities or suspicious content were detected. The WHOIS data confirms domain legitimacy and consistency with the university's identity. Overall, the website presents a professional, trustworthy, and secure platform supporting the university's entrepreneurship mission, with recommendations to enhance security transparency and incident response readiness.

60
43
17
70
85
40
100
educationstartupsentrepreneurshipuniversityinnovation+1 more
TYPO3 CMSJavaScriptmaplibre-gl

Partner Domains:

next-mannheim.de
partner
ki-garage.de
partner

+3 more partners

2025-10-23T05:21:09.538Z
hzdr-academy.de favicon

HZDR Innovators School

hzdr-academy.de

53
EducationGermanymediumMEDIUM

The HZDR Academy website serves as an internal coaching and qualification platform for employees of the Helmholtz-Zentrum Dresden-Rossendorf (HZDR). It focuses on scientific knowledge transfer, career development, and networking within the research community. The site offers event listings, e-learning resources, and links to career support services, targeting doctoral researchers, postdocs, group leaders, and technical staff. The business model is centered on employee development and fostering innovation within the HZDR ecosystem. Technically, the website is built on WordPress with a modern stack including Yoast SEO, Flatpickr, and custom event management plugins. The site is mobile-optimized, well-structured, and uses HTTPS with good SSL configuration. However, some security best practices such as security headers and explicit cookie consent mechanisms are missing, which could be improved to enhance compliance and security posture. From a security perspective, the site shows no signs of vulnerabilities or exposed sensitive data. The domain registration aligns with the institutional affiliation, supporting legitimacy. Privacy policies are present but could be more comprehensive with explicit GDPR consent mechanisms. No incident response or vulnerability disclosure information is provided, which is a potential area for enhancement. Overall, the website is professional, trustworthy, and serves its internal audience well. Strategic recommendations include implementing security headers, adding cookie consent banners, publishing security policies, and establishing a vulnerability disclosure process to strengthen security and compliance further.

15
28
2
60
77
60
100
educationsciencecoachingknowledgetransferevents+1 more
WordPress 6.8.3Yoast SEO pluginjQuery 3.7.1Flatpickr datepicker+4

Partner Domains:

www.hzdr.de
partner
events.hifis.net
service

+1 more partners

2025-10-23T05:19:19.070Z
helmholtz.social favicon

Hermann von Helmholtz-Gemeinschaft Deutscher Forschungszentren e.V.

helmholtz.social

72
GovernmentGermanymediumMEDIUM

The website helmholtz.social serves as a dedicated Mastodon instance for the Helmholtz Association of German Research Centers, facilitating decentralized and institutional scientific communication. It is positioned as a non-commercial platform targeting Helmholtz centers, their member institutions, and selected initiatives. The platform leverages modern open-source technologies, primarily Mastodon version 4.4.8, with a React-based frontend and WebSocket streaming for real-time feeds. Hosting is provided by a German company with servers located in the EU, ensuring compliance with regional data protection laws. From a security perspective, the site enforces HTTPS and employs encrypted connections, though explicit security headers are not evident in the HTML source. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with a comprehensive GDPR-aligned privacy policy and clear data retention practices. Contact information and legal disclosures are thorough, enhancing business credibility and trust. However, the absence of a cookie consent mechanism and terms of service page are areas for improvement. Overall, the site demonstrates a mature technical infrastructure and a solid security posture appropriate for an institutional platform. The lack of WHOIS data due to TLD restrictions is mitigated by the detailed legal imprint and contact transparency. The platform is safe for general audiences, with no adult or questionable content. Strategic recommendations include enhancing security headers, publishing incident response policies, and implementing cookie consent to further strengthen compliance and trust.

80
70
17
70
85
75
100
mastodonsocialmediascientificcommunicationhelmholtznon-commercial+2 more
Mastodon 4.4.8ReactJavaScript ES ModulesCSS+1
2025-10-23T05:19:14.059Z
C

CAE

klima-umwelt-energie.de

53
EnergyGermanysmallMEDIUM

The website klima-umwelt-energie.de represents an educational exhibition managed by CAE, focusing on energy efficiency, climate, and sustainability topics. It serves as an information center and exhibition space primarily targeting youth, schools, and visitors interested in environmental education. The business model is non-profit and educational, with a regional focus in Germany. The site is professionally designed with good content relevance and clear navigation, supporting its mission effectively. Technically, the site is built on WordPress with a modern plugin stack including event management, form handling, and responsive slideshows. Performance is moderate with good mobile optimization. However, some accessibility features are basic, and SEO is adequately addressed. The hosting provider is not explicitly identified, but the site uses HTTPS with a strong SSL configuration. From a security perspective, the site enforces HTTPS and uses nonce tokens for AJAX calls, indicating some security awareness. However, it lacks important security headers and does not provide incident response or vulnerability disclosure information. No cookie consent mechanism was detected, which is a GDPR compliance gap. No critical vulnerabilities or exposed sensitive data were found. Overall, the site is trustworthy and professional but could improve its privacy compliance and security posture by implementing cookie consent, security headers, and incident response contacts. These improvements would enhance user trust and regulatory compliance.

30
28
2
60
62
60
100
energyenvironmenteducationexhibitionsustainability+1 more
WordPressjQueryFluid Responsive Slideshow pluginEvents Manager plugin+3

Partner Domains:

cae-zerocarbon.de
partner
klimawandel-meistern.bayern.de
partner
2025-10-23T05:18:53.715Z
C

Center for Applied Energy Research e.V. (CAE)

energy-efficiency-center.de

52
EnergyGermanysmallMEDIUM

The Energy Efficiency Center (EEC) website represents a research and demonstration facility focused on energy efficiency technologies and sustainable building practices in Würzburg, Germany. The site is operated by the Center for Applied Energy Research e.V. (CAE) and funded by federal and Bavarian government initiatives. It serves as an informational hub with exhibits and research outputs targeting professionals, researchers, and interested public in the energy sector. The business model is primarily research and public information dissemination supported by public funding. Technically, the website is built on WordPress 6.7.4 with common plugins for slideshows and image lightboxes. The site uses HTTPS and basic performance optimizations like lazy loading images, although some lazy loading errors were detected. Mobile optimization and accessibility are basic but functional. SEO is basic with proper meta tags but no advanced structured data or Open Graph tags detected. From a security perspective, the site benefits from HTTPS but lacks explicit security headers and visible incident response or security policy documentation. No forms with input validation or CSRF protections were found on the homepage. Privacy compliance is indicated by a privacy policy page in German, but no cookie consent mechanism is implemented despite cookie policy presence. No vulnerability disclosure or security.txt files were found. Overall, the site is a credible and professional informational resource with moderate technical maturity and a good business credibility score. Security posture is adequate but could be improved with additional headers and policies. Privacy compliance is basic but present. There are no indications of malicious or suspicious activity. Strategic recommendations include enhancing security headers, implementing cookie consent, and improving technical robustness.

30
28
17
40
62
60
100
energyefficiencyresearchsustainabilitytechnology+1 more
WordPress 6.7.4jQuery 3.7.1Fluid Responsive Slideshow pluginFooBox Image Lightbox plugin+1

Partner Domains:

cae-zerocarbon.de
partner
www.enob.info
partner

+3 more partners

2025-10-23T05:18:48.704Z