Skip to main content

Germany security reports

Browse 14,812 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 263 of 297|Showing 13101-13150 of 14812
stg-cottbus.de favicon

STG Combustion Control GmbH & Co KG

stg-cottbus.de

53
EnergyGermanymediumMEDIUM

STG Combustion Control GmbH & Co KG is a German-based company specializing in advanced process control systems and sensor technologies for the glass melting industry and related sectors such as steel, chemical, and biotechnology. Founded in 1990, the company has grown to a medium-sized enterprise with over 60 specialized engineers and technicians. Their offerings include modern process control systems, high-temperature oxygen sensors, advanced signal evaluation, and burner technologies, positioning them as a trusted partner in industrial process optimization. The website reflects a professional and well-established business with a clear market focus on industrial clients requiring energy-efficient and low-emission solutions. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO and multilingual support via WPML. It features good mobile optimization, accessibility, and SEO practices. The site employs HTTPS and a comprehensive cookie consent mechanism, indicating a strong commitment to privacy compliance. However, some security headers are missing, and no explicit security or incident response policies are published. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and no visible vulnerabilities or exposed sensitive data. The cookie consent banner is well implemented, supporting GDPR compliance. No signs of WAF or blocking mechanisms were detected, allowing full content access. The domain WHOIS data aligns with the business claims, supporting legitimacy. Overall, the website is professional, secure, and compliant with privacy regulations, serving a specialized industrial market. Strategic improvements could include adding security headers, publishing incident response information, and enhancing transparency around security policies.

15
100
2
70
72
65
20
industrialglassindustryprocesscontroloxygensensorsenergyefficiency+2 more
WordPress 6.7.2Yoast SEO pluginSitepress Multilingual CMS (WPML)Contact Form 7+3

Partner Domains:

www.stg-cottbus.com
partner
2025-07-13T15:15:25.657Z
kloeber.de favicon

Klöber GmbH

kloeber.de

59
ManufacturingGermanymediumMEDIUM

Klöber GmbH is a well-established German manufacturer specializing in innovative roofing accessories for pitched and flat roofs, serving primarily B2B customers such as roofing professionals, architects, and distributors. The company boasts over 60 years of experience and holds recognized certifications like ISO 9001 and ISO 14001, reinforcing its market position as a leading specialist in Europe. The website reflects a mature digital presence with comprehensive product information, configurators, and resource centers, supporting customer engagement and technical support. Technically, the website employs modern web technologies including Bootstrap, jQuery, Swiper, and Google reCAPTCHA, ensuring responsive design and security against spam. The site is well-optimized for mobile devices and SEO, with clear navigation and professional design. Security practices include HTTPS enforcement and CSRF tokens, although some HTTP security headers could be improved. Privacy compliance is robust, featuring detailed cookie consent mechanisms and a comprehensive privacy policy. The security posture is strong with no evident vulnerabilities or exposed sensitive data. However, the absence of a public security policy or incident response contact is noted. The domain WHOIS data aligns well with the business claims, showing consistent registration and no privacy protection, which supports legitimacy. Overall, the website is trustworthy, professional, and secure, with minor areas for enhancement in security headers and incident response transparency. Strategically, Klöber should focus on publishing a formal security policy and incident response contacts, enhancing HTTP security headers, and maintaining their strong privacy compliance to further build customer trust and meet evolving regulatory requirements.

45
83
17
75
62
65
40
roofingconstructionmanufacturingbuildingmaterialsroofaccessories+2 more
Bootstrap 4.2.1jQuery 3.6.4Swiper 4.4.1Slick Carousel 1.8.1+4

Partner Domains:

kloberfinder.com
partner
flavent.kloberfinder.com
partner

+1 more partners

2025-07-13T15:14:35.408Z
stihl-sso.com favicon

ANDREAS STIHL AG & Co. KG

stihl-sso.com

67
ManufacturingGermanyenterpriseMEDIUM

The website analyzed is the official STIHL dealer portal login page, designed to provide authorized dealers and partners access to account management and related services. STIHL, a well-established German manufacturer of power tools and equipment, uses this portal to facilitate secure Single Sign-On (SSO) authentication for its dealer network. The site is professionally branded, consistent with the corporate identity, and targets a B2B audience. The portal includes essential features such as login, password reset, and registration completion links, with clear references to privacy and terms documents hosted on trusted cloudfront URLs. Technically, the site employs modern web technologies including JavaScript ES modules and likely a SPA framework such as Vue.js, hosted on AWS infrastructure. The site is mobile optimized with a responsive design and uses HTTPS to secure communications. However, some security best practices such as DNSSEC and security headers are not enabled or visible in the provided data. The site lacks a cookie consent mechanism, which is a minor compliance gap. From a security perspective, the portal demonstrates a solid baseline with encrypted login forms and no exposed sensitive data. The domain registration is consistent with the business, and the domain age is appropriate for a corporate SSO service. No signs of phishing, malware, or blocking by WAFs were detected. Privacy policies and terms of service are clearly linked, supporting GDPR compliance. Overall, the site is trustworthy and professionally maintained. The overall risk is low, but improvements in security headers, DNSSEC, and cookie consent would enhance the security posture and compliance. Strategic recommendations include implementing these controls and publishing explicit security and incident response policies to strengthen trust and readiness.

80
53
2
70
72
80
100
logindealerportalstihlssocorporate
JavaScript ES ModulesAWS DNS hostingModern CSS
2025-07-13T14:01:47.416Z
marcsiemering.de favicon

Marc Siemering Business Coaching

marcsiemering.de

51
OtherGermanysmallMEDIUM

Marc Siemering Business Coaching is a small, professional coaching service based in Hannover, Germany, specializing in business coaching, team development, and organizational consulting. The website presents a clear and focused business model targeting individuals and organizations seeking to leverage change as an opportunity for growth. The company appears to have been founded around 2020, consistent with the domain registration data. The site uses WordPress with the Enfold theme and is optimized for SEO and mobile devices, indicating a moderate level of digital maturity. Technically, the website employs modern technologies including Yoast SEO, Real Cookie Banner Pro for GDPR compliance, Google Tag Manager for analytics, and Wordfence for security. Hosting is provided by a German hosting provider, and the site enforces HTTPS with good SSL configuration and security headers. The cookie consent mechanism is comprehensive and compliant with GDPR requirements. From a security perspective, the site benefits from Wordfence firewall protection and proper cookie consent management, with no visible vulnerabilities or exposed sensitive data. However, there is no publicly available security policy or incident response information, which could be improved to enhance trust and preparedness. The absence of a vulnerability disclosure policy or security.txt file is noted. Overall, the website is professional, secure, and compliant with privacy regulations, suitable for its business purpose. Strategic recommendations include publishing security and incident response policies, adding vulnerability disclosure information, and maintaining regular updates to software components to mitigate risks.

15
100
17
70
62
60
-
businesscoachingteamdevelopmentorganizationalconsultinghannovergdpr+3 more
WordPressYoast SEOReal Cookie Banner ProGoogle Tag Manager+1
2025-07-13T11:48:40.682Z
lentiamo.de favicon

Lentiamo s.r.o.

lentiamo.de

72
RetailGermanymediumMEDIUM

Lentiamo.de is a professional e-commerce retailer specializing in contact lenses, prescription glasses, sunglasses, and related accessories. The company operates primarily in Germany with a strong European presence through multiple localized domains. The website offers a comprehensive product catalog, customer support, and a user-friendly shopping experience. The business model focuses on direct online sales to consumers, leveraging trusted brands and competitive pricing. The company is positioned as a reputable player in the optical retail market, supported by certifications such as Trusted Shops and high customer satisfaction ratings. Technically, the website employs modern web technologies including Google Tag Manager, Google Analytics 4, and Cloudflare for DNS and CDN services. The site is well-optimized for mobile devices, accessible, and SEO-friendly. Security measures include HTTPS enforcement, robust security headers, and secure login forms. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms aligned with GDPR requirements. The security posture is solid, with no detected vulnerabilities or exposed sensitive data. However, the site lacks a dedicated security policy or incident response page, which could enhance transparency and trust. Overall, the website is secure, professional, and compliant, making it a trustworthy platform for consumers. Strategically, Lentiamo.de should consider publishing a formal security policy and vulnerability disclosure to further strengthen its security culture and customer confidence. Regular audits of third-party scripts and continued adherence to privacy regulations will maintain its strong compliance stance.

65
68
17
95
72
70
100
contactlensesglassessunglassese-commerceoptical+5 more
Google Tag ManagerGoogle Analytics 4Cloudflare DNSJavaScript+2
2025-07-13T08:21:46.012Z
E

ESTA Antrag | Online Registrierung | USA Einreise-Visum

estaregistrierung.org

47
GovernmentGermanysmallHIGH

The website www.estaregistrierung.org is a German-language service focused on assisting travelers from Visa Waiver Program countries with their ESTA (Electronic System for Travel Authorization) applications for entry into the United States. It provides detailed information about the ESTA process, requirements, costs, and FAQs, along with an online application form and status checking service. The site targets German-speaking travelers seeking a streamlined and supported ESTA application experience. Technically, the site uses standard web technologies including HTML5, CSS3, JavaScript with jQuery, and integrates third-party services such as Tawk.to for live chat support and Google Analytics for visitor tracking. The site is mobile-optimized and structured for good SEO and user navigation. Security-wise, while HTTPS is implied, the site lacks visible security headers and explicit cookie consent mechanisms, which are areas for improvement. The WHOIS data for the domain is not publicly available, indicating privacy protection, which is common but reduces transparency. Overall, the site presents a professional and trustworthy front for its niche service but could enhance its security posture and privacy compliance to increase user trust and regulatory alignment.

15
53
2
70
57
70
40
estausavisawaiverprogramtravelauthorizationgerman+1 more
HTML5CSS3JavaScriptjQuery 1.11.2+3
2025-07-13T07:09:50.637Z
R

roemhild.de

roemhild.de

46
OtherGermanysmallHIGH

The website roemhild.de serves as a minimalistic personal domain dedicated exclusively to email and XMPP chat communications. It does not operate as a commercial business but rather as a private communication channel, emphasizing privacy and voluntary communication. The site explicitly states that no personal data, log files, IP addresses, cookies, or analytics tools are used, reflecting a strong privacy stance. The provision of an OpenPGP key further supports encrypted communication, indicating a privacy-conscious user or owner. From a technical perspective, the website is simple, built with basic HTML and CSS, without any detected CMS, frameworks, or advanced technologies. There are no forms, scripts, or tracking mechanisms, which reduces the attack surface but also limits functionality. The site appears to have moderate performance and basic mobile optimization but lacks SEO and accessibility enhancements. No security headers or HTTPS status were provided, suggesting room for improvement in security hardening. Security-wise, the site demonstrates good privacy practices by not collecting user data and encouraging encrypted communication. However, the absence of formal privacy and cookie policies, security headers, and incident response information indicates gaps in compliance and security posture. The WHOIS data is minimal but consistent with the domain's personal use, showing no suspicious patterns. Overall, the site is low risk but could benefit from improved security and compliance documentation. Strategically, the site is a personal or small-scale communication platform with limited business relevance. Recommendations include implementing HTTPS, publishing formal privacy and cookie policies, adding security headers, and considering incident response contacts to enhance trust and compliance.

30
15
17
85
65
70
20
privacyemailxmppencryptedcommunicationpersonal
HTML5CSS
2025-07-13T04:54:46.748Z
termine.de favicon

Termine.de AG

termine.de

64
OtherGermanymediumMEDIUM

Termine.de AG operates a German-language online platform focused on event discovery and appointment booking services. The website positions itself as a leading calendar and event service in Germany, offering users the ability to find events, book appointments online, and create or share calendars. The business model includes services for both consumers and companies, such as online booking tools and location/event publishing. The platform targets a broad general audience in Germany, emphasizing ease of use and comprehensive event coverage. Technically, the website is built using Angular 14, leveraging modern web technologies including Google Fonts, Google Adsense, Google Tag Manager, and Leaflet.js for interactive maps. The site demonstrates good mobile optimization and a professional design, although accessibility features are basic. Performance is moderate, with proper meta tags and SEO considerations in place. From a security perspective, the site enforces HTTPS and uses secure Google services for advertising and analytics. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not evident in the HTML, and no dedicated security or incident response policies are published. The cookie consent mechanism is implemented via Google Funding Choices, indicating some level of GDPR compliance, though no explicit privacy or terms of service pages were found in the provided content. Overall, the website presents a trustworthy and professional front with moderate security maturity. The lack of explicit privacy and security policies, as well as missing direct contact information, are areas for improvement. Strategic recommendations include publishing comprehensive privacy and terms documents, enhancing security headers, and providing clear contact channels for security incidents to strengthen compliance and user trust.

30
80
17
85
62
60
100
terminedeeventsveranstaltungenonline-terminbuchungkalender+2 more
Angular 14Google FontsGoogle AdsenseGoogle Tag Manager+3
2025-07-13T03:47:01.296Z
R

rserver.de

rserver.de

45
OtherGermanysmallHIGH

The website rserver.de is a minimalistic site used exclusively for private services, with no commercial or public business operations evident. The content is in German and clearly states that no personal data, cookies, or analytics are collected, emphasizing privacy and voluntary communication via email or Jabber/XMPP with OpenPGP encryption. The site lacks formal privacy, cookie, or terms of service policies, and no phone numbers or physical addresses are provided. Technically, the site is built with basic HTML and CSS, without any detected CMS or advanced frameworks. There is no evidence of analytics or advertising tools, and the site appears to have basic mobile optimization and accessibility. Security headers and HTTPS status are not confirmed from the data, but the use of encrypted communication methods is a positive indicator. From a security perspective, the site demonstrates a privacy-conscious approach by not collecting user data and encouraging encrypted communication. However, the absence of security headers, privacy policies, and cookie consent mechanisms are gaps that could be improved. The WHOIS data is consistent with the website's private use, showing no suspicious patterns or privacy protection that would raise concerns. Overall, the site presents a low-risk profile focused on privacy and minimal data exposure but would benefit from enhanced security practices and formalized compliance documentation.

25
15
17
85
65
70
20
privateprivacyencryptedcommunicationnotrackingminimalist
HTML5CSS
2025-07-13T02:35:17.031Z
internetwerk.de favicon

InternetWerk GmbH

internetwerk.de

46
TechnologyGermanysmallHIGH

InternetWerk GmbH is a small German technology company specializing in professional webhosting, domain registration, and managed server services primarily targeting customers in Germany, Austria, and Switzerland. Established in 2007, the company manages over 7500 domains and serves a diverse clientele including professionals, institutions, and SMEs. Their website reflects a consistent and professional brand image with clear service offerings and contact information. Technically, the website is built on WordPress with jQuery libraries, delivering moderate performance and good mobile optimization. The site uses HTTPS with a good SSL configuration but lacks advanced security headers and cookie consent mechanisms. No analytics or tracking scripts were detected, indicating a privacy-conscious approach. From a security perspective, the site demonstrates basic best practices such as HTTPS and no exposed sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. The WHOIS data is limited due to DENIC privacy restrictions but aligns with the business claims and domain usage. Overall, the website is trustworthy and professionally maintained with room for improvement in security headers, privacy compliance (cookie consent), and publishing security policies. Strategic recommendations include enhancing security headers, implementing cookie consent, and publishing incident response information to strengthen trust and compliance.

50
28
2
70
72
65
-
webhostingwebspacehostingdomaindomains+3 more
jQueryWordPressPHP
2025-07-13T02:34:06.820Z
gold.de favicon

GOLD.DE - Deutschlands Nr. 1 Gold-Vergleichsportal

gold.de

60
FinanceGermanymediumMEDIUM

GOLD.DE operates as Germany's leading gold price comparison portal, offering consumers a platform to compare prices from over 40,000 gold coins and bars sold by certified dealers. The website targets German-speaking investors and collectors interested in purchasing or selling gold securely and at competitive prices. Its market position is strong within the niche of precious metals price comparison in Germany. Technically, the website leverages Cloudflare for DNS and likely CDN services, ensuring reliable hosting and performance. It employs Cookiebot for cookie consent management, Google Fonts for typography, FontAwesome for icons, and Google Ads for monetization. The site is mobile-optimized and includes proper SEO meta tags and Open Graph data, contributing to good digital maturity. From a security perspective, the site enforces HTTPS and uses a cookie consent mechanism, but lacks visible advanced security headers and published security policies. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is supported by the Cookiebot consent banner, though no explicit privacy policy or terms of service were found in the analyzed content. Overall, GOLD.DE presents a professional and trustworthy online presence with moderate to good technical and security posture. Strategic improvements in publishing comprehensive privacy and security policies, enhancing security headers, and providing clear contact information would further strengthen its compliance and trustworthiness.

20
83
7
60
75
55
100
goldpricecomparisonfinanceinvestmentgermany+2 more
Cloudflare (DNS and likely CDN)Cookiebot (cookie consent management)FontAwesome (icon fonts)Open Sans font from Google Fonts+2
2025-07-13T01:28:02.278Z
teambreakout.de favicon

Teambreakout Hamburg

teambreakout.de

49
HospitalityGermanymediumHIGH

Teambreakout Hamburg operates as a well-established live escape game provider offering immersive indoor and outdoor escape experiences, as well as interactive crime games for home use. The company targets a broad audience including families, friends, and corporate teams, positioning itself as a leading entertainment venue in Hamburg with multiple positive customer reviews and awards. The business model centers on event-based entertainment with online ticket sales and team event hosting. Technically, the website is built on TYPO3 CMS, leveraging modern JavaScript libraries such as jQuery and Modernizr, and integrates Google Analytics and Facebook Pixel for marketing and analytics. Hosting is provided by rzone.de, with proper HTTPS encryption and moderate performance. The site is mobile-optimized and SEO-friendly, with clear navigation and professional design. From a security perspective, the site enforces HTTPS, uses secure forms with validation, and maintains good privacy compliance including GDPR-aligned privacy and cookie policies. However, some security headers like Content-Security-Policy and X-Frame-Options are not explicitly detected and could be improved. No critical vulnerabilities or exposed sensitive data were found. Overall, the website demonstrates a strong security posture, good privacy compliance, and high business credibility. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and continuous monitoring of third-party scripts.

25
28
2
75
90
65
20
escaperoomlivegameteameventhamburgentertainment+3 more
TYPO3 CMSjQueryModernizrGoogle Tag Manager+2

Partner Domains:

thecodeagency.de
partner
superfreunde.beer
partner

+3 more partners

2025-07-13T00:19:13.024Z
adventurebox-karlsruhe.de favicon

Adventurebox Karlsruhe

adventurebox-karlsruhe.de

59
HospitalityGermanysmallMEDIUM

Adventurebox Karlsruhe is a specialized event service provider offering escape rooms, outdoor exit games, city challenges, home games, and remote events primarily targeting groups and individuals in Karlsruhe, Germany. Founded in 2021, the company has established a strong local market presence with a focus on team-building and entertainment experiences. Their website is professionally designed, mobile-optimized, and rich in relevant content, providing users with clear navigation and comprehensive event filtering options. Technically, the website is built on WordPress using modern plugins such as Revolution Slider, PixelYourSite for tracking, and Borlabs Cookie for consent management. The hosting appears to be managed via UI-DNS nameservers, and performance is moderate with caching enabled. Security best practices are observed, including HTTPS enforcement and security headers, although no explicit security policy or incident response information is published. The security posture is solid with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. The business credibility is reinforced by numerous positive customer reviews and trust signals such as the ProvenExpert widget and TripAdvisor award mentions. Overall, the website and business demonstrate a mature digital presence with good security hygiene and privacy awareness, suitable for their hospitality and entertainment sector. Strategic improvements could include publishing formal security and incident response policies and enhancing accessibility features.

15
55
2
70
85
60
100
escaperoomteameventskarlsruheoutdoorexitgamescitychallenges+5 more
WordPressPHPjQueryRevolution Slider+5
2025-07-13T00:18:57.871Z
nexus-exit.de favicon

Nexus Exit

nexus-exit.de

62
HospitalityGermanysmallMEDIUM

Nexus Exit is a specialized entertainment provider offering next-level escape room experiences in Gelnhausen, Germany. The company holds a strong market position as the highest-rated escape room provider in the Hessen region, supported by excellent customer reviews on Tripadvisor, Facebook, and Google. Their services include a variety of escape rooms, outdoor adventures, online games, group offers for companies, schools, bachelor parties, and consulting services under Nexus Creations. The website is professionally designed, mobile-optimized, and provides clear navigation and contact information, enhancing user experience and trust. Technically, the website is built on the Webflow CMS platform, utilizing modern web technologies such as Google Fonts, Matomo analytics, and Google reCAPTCHA for security. Hosting is provided by a reputable German provider (Netcup), and the site employs HTTPS with good SSL configuration. While security headers are not explicitly detected, the site follows good security practices including cookie consent and bot protection. Analytics usage is moderate with privacy compliance considered good. From a security perspective, the site shows a mature posture with no visible vulnerabilities or exposed sensitive data. However, there is room for improvement by implementing additional security headers and publishing a security policy or incident response contact. The absence of terms of service and vulnerability disclosure pages are minor gaps. Overall, the domain registration data aligns well with the business claims, supporting legitimacy and trustworthiness. The overall risk assessment is low, with the site presenting a professional and secure front to customers. Strategic recommendations include enhancing security headers, formalizing security policies, and maintaining up-to-date software to sustain and improve security posture.

60
28
2
85
72
60
100
escaperoomsentertainmentteambuildingoutdooradventuresonlinegames+2 more
Webflow CMSGoogle FontsMatomo AnalyticsGoogle reCAPTCHA+1
2025-07-13T00:18:52.789Z
twistedrooms.com favicon

Escape Room Theater - OPOLUM

twistedrooms.com

50
HospitalityGermanysmallMEDIUM

OPOLUM is a specialized entertainment business operating in Hamburg, Germany, offering modern escape room experiences with live actors. The company targets groups ranging from small parties to large groups (2-120 persons) and provides both indoor and outdoor escape games. It holds a strong market position supported by over 1,700 positive Google reviews and an award (1. Platz ADAC Tourismuspreis), indicating high customer satisfaction and recognition. The business model focuses on immersive, interactive entertainment experiences, appealing to tourists and locals alike. Technically, the website is built on WordPress using Elementor, with integrations including Google Tag Manager, Sendinblue, and Borlabs Cookie for marketing and consent management. The site is mobile-optimized and SEO-friendly, with structured data enhancing search visibility. Hosting and domain registration are stable and consistent with the business profile, registered through IONOS SE. From a security perspective, the site uses HTTPS and has implemented cookie consent mechanisms, but lacks advanced DNS security (DNSSEC) and security policy disclosures. No critical vulnerabilities or exposed sensitive data were detected. Tracking and marketing tools are extensively used, with a moderate to extensive user tracking level. Privacy compliance is basic, with no explicit privacy policy found in the provided content. Overall, OPOLUM presents a professional, trustworthy online presence with strong business credibility and good technical implementation. Strategic improvements include publishing a privacy policy, enhancing DNS security, and adding security and incident response information to strengthen compliance and trust.

15
80
2
70
57
70
20
escaperoomentertainmenthamburgliveschauspielindooroutdoorgames
WordPressElementorjQueryGoogle Tag Manager+3
2025-07-13T00:18:37.743Z