Skip to main content

Germany security reports

Browse 14,812 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 277 of 297|Showing 13801-13850 of 14812
peak-system.com favicon

PEAK-System Technik GmbH

peak-system.com

49
TechnologyGermanymediumHIGH

PEAK-System Technik GmbH is a medium-sized German company specializing in hardware, software, and services for automotive and industrial communication, focusing on CAN and LIN bus technologies. The company is positioned as a leading provider in its niche, serving industrial, trade, and commercial sectors with a B2B business model. Since November 2024, it operates as a subsidiary of HMS Networks, enhancing its market reach and credibility. The website content is professional, well-structured, and multilingual, supporting German, English, French, Chinese, and Korean languages, indicating a global audience focus. Technically, the website is built on TYPO3 CMS version 4.5, utilizing Bootstrap and jQuery frameworks, with Matomo analytics integrated for user tracking and heatmap session recording. The site is mobile-optimized with good SEO and accessibility basics, though some improvements in accessibility and security headers are recommended. The SSL configuration is excellent, ensuring secure HTTPS connections. From a security perspective, the site implements cookie consent mechanisms and does not expose sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure information, which are important for transparency and trust. The WHOIS data for the domain is unavailable or protected, which slightly reduces trust but is somewhat mitigated by the professional site content and certifications such as ISO 9001, ISO 14001, and Microsoft Partner status. Overall, the website demonstrates a solid digital presence with good security posture and privacy compliance, though it would benefit from enhanced security transparency and updated CMS versions. The domain's legitimacy is supported by the business content and parent company association, despite the lack of WHOIS details.

15
53
2
75
67
80
20
canlinbushardwaresoftware+3 more
BootstrapjQueryMatomo AnalyticsTYPO3 CMS 4.5

Partner Domains:

peak-system.com.cn
partner
peak-system.kr
partner

+1 more partners

2025-06-27T17:49:20.746Z
matrikonopc.de favicon

MatrikonOPC Inc.

matrikonopc.de

63
TechnologyGermanylargeMEDIUM

MatrikonOPC Inc., a Honeywell International Inc. subsidiary, is a leading provider of OPC servers, clients, and industrial connectivity solutions. The company offers over 500 OPC products designed for secure and reliable data integration across major industrial automation systems. Their website targets industrial automation professionals and enterprises seeking OPC-based connectivity and data management solutions, supported by training and technical support services. The site is well-branded, consistent, and provides comprehensive product information and resources in multiple languages, primarily German and English. Technically, the website is built on ASP.NET with JavaScript enhancements and integrates Google Analytics for user tracking. It uses Cloudflare DNS services and enforces HTTPS, indicating a modern and secure infrastructure. The site shows moderate performance and basic mobile optimization, with good SEO practices and accessibility features. Privacy and cookie policies are linked to Honeywell's corporate pages, demonstrating compliance with GDPR and cookie consent requirements. From a security perspective, the website employs secure form tokens and HTTPS but lacks explicit security headers and dedicated security or incident response policy pages. No vulnerabilities or sensitive data exposures were detected in the HTML content. The WHOIS data aligns well with the website's branding and ownership, reinforcing legitimacy. Overall, the site presents a strong security posture with room for improvement in security policy transparency and header implementation. The overall risk assessment is low, with the website demonstrating professionalism, compliance, and trustworthiness. Strategic recommendations include enhancing security headers, publishing explicit security and incident response policies, and continuous monitoring of third-party scripts to maintain security integrity.

70
83
2
40
67
60
100
opcindustrialautomationconnectivityhoneywellscada+5 more
JavaScriptASP.NET Web FormsGoogle AnalyticsCloudflare DNS

Partner Domains:

www.opcsupport.com
partner
www.matrikonopc.com
related

+1 more partners

2025-06-27T17:48:45.589Z
dehn-international.com favicon

DEHN SE

dehn-international.com

63
EnergyGermanylargeMEDIUM

DEHN SE is a well-established, internationally active family-owned electrical engineering company founded in 1910, specializing in lightning protection, surge protection, and safety equipment. The company serves a broad range of clients including industrial, infrastructure, and energy sectors, offering both products and engineering services. Their market position is strong with a comprehensive product portfolio and multiple country-specific partner sites, reflecting a global footprint. The website is professionally designed, mobile-optimized, and rich in relevant content, supporting their business credibility. Technically, the website is built on Drupal 10, leveraging modern web technologies and Google Tag Manager for analytics. The site demonstrates good performance, accessibility, and SEO practices. Security posture is solid with HTTPS enforced and no visible vulnerabilities, although explicit security headers and incident response information could be improved. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. The WHOIS data is notably missing or unavailable, which is unusual for a company of this size and history, suggesting possible privacy protection or proxy registration. This discrepancy warrants further verification but does not currently undermine the overall trustworthiness given the strong branding and content quality. Overall, DEHN SE presents a credible and professional online presence with robust technical and security foundations, serving a critical niche in electrical safety and protection solutions.

35
53
17
85
65
70
100
lightningprotectionsurgeprotectionsafetyequipmentelectricalengineeringindustrialsafety+2 more
Drupal 10Google Tag Manager

Partner Domains:

www.dehn.at
partner
www.dehn.cz
partner

+3 more partners

2025-06-27T16:34:49.559Z
festool.com favicon

Festool

festool.com

74
ManufacturingGermanylargeMEDIUM

Festool is a globally recognized manufacturer and retailer of high-quality power tools and accessories, targeting professional tradespeople and serious DIY enthusiasts. The company offers a broad range of products including plunge-cut saws, circular saws, jigsaws, cordless drills, joining machines, and routers. The website reflects a strong brand presence with consistent design and comprehensive product information, supporting its market position as a premium tool provider. Technical infrastructure leverages modern JavaScript frameworks such as Vue.js, along with Google Tag Manager and Analytics for marketing and performance tracking. The site is well-optimized for mobile and SEO, with good accessibility features. From a security perspective, the website enforces HTTPS with strong SSL configuration and includes security headers such as Content Security Policy. Privacy compliance is robust, featuring a comprehensive privacy policy and cookie consent mechanism via Usercentrics. However, the absence of WHOIS registration data and lack of explicit security policies or incident response contacts present gaps in transparency and trustworthiness. No vulnerability disclosure or security.txt files were found, which could be improved to enhance security posture. Overall, the website is professional, secure, and privacy-conscious, but the missing domain registration details and limited security policy disclosures suggest areas for improvement. Strategic recommendations include publishing a security policy, establishing incident response contacts, and implementing vulnerability disclosure mechanisms to strengthen trust and compliance.

60
83
2
93
95
80
100
powertoolsmanufacturingretailprofessionaltoolsprivacycompliant+1 more
JavaScriptVue.jsGoogle Tag ManagerGoogle Analytics+2
2025-06-27T15:31:52.138Z
itdesign.de favicon

itdesign GmbH

itdesign.de

62
TechnologyGermanymediumMEDIUM

itdesign GmbH is a German technology company specializing in software and consulting services focused on project and portfolio management (PPM) and customer relationship management (CRM). The company positions itself as a provider of high-quality software solutions and consulting from a single source, targeting businesses seeking to optimize their project and customer management processes. The website reflects a professional and modern digital presence, leveraging WordPress CMS with a custom theme and hosted on Amazon AWS infrastructure, indicating a mature technical setup. From a security perspective, the website is accessible without any WAF or security challenge interference. However, it lacks visible security headers and publicly available security or incident response policies, which could be improved to enhance trust and compliance. Privacy and cookie policies are not detected, which is a compliance gap especially relevant under GDPR regulations. The absence of explicit contact information such as emails or phone numbers on the main page limits direct communication channels for users. Overall, the website demonstrates good technical implementation and business credibility but requires improvements in privacy compliance and security posture to align with best practices. Strategic recommendations include publishing comprehensive privacy and cookie policies with consent mechanisms, implementing security headers, and providing clear incident response contacts to strengthen user trust and regulatory compliance.

85
83
17
80
62
55
40
softwareconsultingppmcrmtechnology+1 more
PHP 8.2WordPress 6.4.1AWS DNS (Amazon Route 53)Roboto font+2
2025-06-27T12:56:23.062Z
adorsys.de favicon

adorsys GmbH & Co. KG

adorsys.de

59
TechnologyGermanymediumMEDIUM

adorsys GmbH & Co. KG is a specialized boutique IT architecture and software engineering consultancy focused on delivering secure, compliant, and innovative digital solutions primarily for highly-regulated industries such as banking and finance. Established in 2006, the company positions itself as a trusted sparring partner for management teams, emphasizing quality, compliance, and technological excellence. Their service portfolio spans secure software engineering, business analysis, cloud technologies, digital finance, data & AI, API management, cybersecurity, blockchain, and global delivery capabilities. Technically, the website is built on WordPress with modern enhancements including Yoast SEO for search optimization, WP Rocket for performance, and Alpine.js for frontend interactivity. Hosting and domain registration are managed via Amazon Registrar and AWS DNS infrastructure, ensuring reliable and scalable hosting. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, supported by structured data and comprehensive content. From a security perspective, the site enforces HTTPS and employs domain status protections to prevent unauthorized changes. While no critical vulnerabilities or exposed sensitive data were detected, the absence of DNSSEC, security headers, and explicit incident response or vulnerability disclosure mechanisms suggests room for improvement. Privacy compliance is strong with a comprehensive privacy policy, though cookie consent mechanisms are lacking. Overall, adorsys presents a mature, professional, and trustworthy digital presence aligned with its business focus. Strategic recommendations include enhancing DNS security, implementing security headers, publishing vulnerability disclosure information, and adding cookie consent to further strengthen compliance and trust.

35
53
47
80
62
90
20
itarchitecturesoftwareengineeringdigitalfinancecybersecuritycloudtechnology+4 more
WordPressYoast SEO pluginWP RocketAlpine.js+1
2025-06-27T12:56:22.293Z
gopa.de favicon

GOPA Worldwide Consultants GmbH

gopa.de

54
GovernmentGermanymediumMEDIUM

GOPA Worldwide Consultants GmbH is a Germany-based international development consultancy specializing in implementing projects in developing and transition economies. Their business model focuses on delivering socially inclusive growth and poverty reduction through six core sectors including education, governance, environment, statistics, health, and monitoring and evaluation. The company holds ISO 9001 and ISO 14001 certifications, underscoring their commitment to quality and environmental responsibility. Their target audience includes national and international development partners, authorities, NGOs, and beneficiaries. Technically, the website is built on Drupal 10 with modern web technologies including SVG graphics and Matomo analytics for privacy-conscious user tracking. The site is mobile-optimized, accessible, and SEO-friendly, with a moderate performance profile. Security posture is strong with HTTPS enforced and cookie consent mechanisms implemented, though some security headers could be improved and explicit security policies are not publicly available. Overall, the security posture is good with no visible vulnerabilities or exposed sensitive data. The WHOIS data is consistent and supports the legitimacy of the domain and business. The website demonstrates high professionalism, trustworthiness, and compliance with GDPR through clear privacy and cookie policies. Strategically, GOPA should consider publishing a formal security policy and incident response contacts, enhancing security headers, and possibly adding a vulnerability disclosure policy to further strengthen trust and security culture.

50
43
25
70
62
60
40
consultingdevelopmentinternationalprojectsiso9001+3 more
Drupal 10Matomo AnalyticsSVG graphicsJavaScript+1
2025-06-27T12:56:21.278Z
grey.de favicon

Grey

grey.de

67
MediaGermanyenterpriseMEDIUM

Grey is a globally recognized advertising and marketing agency with a strong presence in Germany, offering a wide range of services including creative, experiential, social, digital, commerce, and health & wellness expertise. The company targets large enterprises, including one-fifth of the Fortune 500, positioning itself as a top-tier agency in the media sector. The website reflects a professional and enterprise-grade digital presence with modern technologies such as React and Next.js, and integrates Google Tag Manager and OneTrust for analytics and privacy compliance respectively. From a security perspective, the website employs HTTPS and a cookie consent mechanism, demonstrating a baseline commitment to user privacy and security. However, the absence of explicit privacy policy and terms of service pages, lack of visible security headers, and missing WHOIS data introduce moderate concerns. These gaps suggest opportunities for Grey to enhance transparency and security posture to align with best practices and regulatory requirements. Overall, the website is well-designed, content-rich, and professionally maintained, supporting Grey's market position and business credibility. The technical infrastructure is modern and performant, though improvements in security headers and explicit compliance documentation would strengthen the security and privacy posture. The domain WHOIS data is not publicly available, likely due to privacy protection, which is common for enterprises but should be monitored for legitimacy assurance. Strategically, Grey should focus on publishing comprehensive privacy and security policies, implementing robust security headers, and providing clear incident response and vulnerability disclosure channels to enhance trust and compliance. These steps will mitigate risks and reinforce Grey's reputation as a secure and privacy-conscious advertising leader.

45
65
2
80
75
85
100
advertisingmarketingcreativeagencygermanyenterprise
ReactNext.jsGoogle Tag ManagerOneTrust Cookie Consent
2025-06-27T12:56:20.646Z
eurexgroup.com favicon

Deutsche Börse Group

eurexgroup.com

70
FinanceGermanyenterpriseMEDIUM

Eurex, operated by Deutsche Börse Group, is a leading global derivatives exchange specializing in EUR-denominated equity index and fixed income derivatives. The website presents comprehensive market and product information targeting financial market participants such as traders, clearing members, and institutional investors. The business model focuses on providing derivatives trading, clearing services, market data, and repo market solutions, positioning Eurex as a key player in the global financial markets. Technically, the website is built on CoreMedia CMS with JavaScript and integrates Matomo analytics for user tracking. The site demonstrates good mobile optimization, clear navigation, and professional design, supporting a positive user experience. Security posture is strong with HTTPS enforced and cookie consent implemented, though explicit security headers and incident response information are not clearly published. WHOIS data is unavailable, likely due to privacy protections common in financial sector domains, but the domain and content legitimacy are supported by consistent branding and association with Deutsche Börse Group. Overall, the website is professional, secure, and credible, serving its target audience effectively.

60
83
17
65
72
85
100
financederivativesexchangetradingclearing+1 more
CoreMedia CMSJavaScriptMatomo Analytics

Partner Domains:

deutsche-boerse.com
parent
eurex-clearing.com
subsidiary

+1 more partners

2025-06-27T12:56:20.356Z
welton.de favicon

Sebastian Welton

welton.de

44
TechnologyGermanysmallHIGH

The website welton.de represents Sebastian Welton, a seasoned systems consultant with over 35 years of experience in cross-platform systems programming and project management, particularly in IBM mainframe and related technologies. The site targets businesses and professionals seeking expert consulting services in legacy and modern IT environments. The business model is consulting-focused, with a niche market position emphasizing deep technical expertise. Technically, the website is built on WordPress using the Twenty Seventeen theme, leveraging standard web technologies such as jQuery and Google Fonts. The site is accessible, mobile-optimized, and presents content in both English and German, reflecting its German origin. However, hosting provider details are not explicitly identified, and performance is moderate. From a security perspective, the site uses HTTPS, but lacks important security headers and policies such as privacy, cookie, and terms of service. No incident response or vulnerability disclosure information is provided. No analytics or tracking scripts are detected, indicating minimal user tracking. The security posture is adequate but could be improved with standard best practices. Overall, the website is professional and credible but lacks formal privacy and security documentation. The risk level is moderate, with recommendations to enhance security headers, add privacy and cookie policies, and provide incident response contacts to improve compliance and trust.

15
10
2
65
100
70
20
consultingsystemsprogrammingibmmainframetechnologyprofessionalservices
WordPress 5.6.14jQuery 3.5.1Google FontsSVG icons
2025-06-27T12:56:18.525Z
P

PREPARE - Partnership for Rural Europe

preparenetwork.org

41
Non-profitGermanysmallHIGH

PREPARE - Partnership for Rural Europe is a small non-profit organization focused on fostering collaboration and development in rural European areas. The website serves as an informational and networking platform, offering newsletters, event information, and links to partner organizations. The business model centers on partnership and knowledge sharing within the rural development sector. The domain age and WHOIS data support the legitimacy of the organization, with registration dating back to 2003 and consistent registrant information from Germany. Technically, the website is built on an outdated Joomla! 1.5 CMS platform, which poses significant security risks due to lack of support and known vulnerabilities. The site lacks HTTPS, security headers, and modern security best practices. The technical infrastructure is basic, with moderate performance and limited mobile optimization. The site uses JavaScript libraries such as MooTools and jQuery but does not employ modern frameworks or analytics tools. From a security perspective, the absence of HTTPS and security headers, combined with an outdated CMS, significantly lowers the security posture. No privacy or cookie policies are present, and no contact information or incident response channels are clearly provided. These factors indicate low privacy compliance and limited security maturity. Overall, the website is functional but basic, with moderate business credibility but poor security and privacy compliance. Strategic improvements in security infrastructure, privacy policy implementation, and CMS modernization are recommended to enhance trust and protect user data.

15
25
-
65
-
70
100
preparepartnershipruraleuropenon-profitnetworking+2 more
JavaScriptMooToolsjQuery
2025-06-27T12:56:16.755Z
S

SIA k-Consulting

ikkonsultacija.lv

43
TechnologyGermanysmallHIGH

Gamelab is an academic web application designed for conducting online game theory experiments, primarily targeting researchers and experimenters in the field of economics and social sciences. The platform supports two-player normal-form games with features such as lottery incentives and Mechanical Turk integration. The project is open source and encourages academic citation, positioning itself as a niche tool within the academic research community. The business entity behind the site is SIA k-Consulting, based in Germany, with the domain registered since 2015, reflecting a mature and stable project. Technically, the website employs a straightforward stack including HTML5, CSS3, Font Awesome, Google Fonts, and a C-based web framework (kcgi) hosted on OpenBSD. The site is moderately optimized for performance and mobile devices, with basic accessibility and SEO features. No CMS or advanced hosting provider details are evident. External dependencies are limited to trusted sources such as GitHub and Google Fonts. From a security perspective, the site lacks several modern security best practices. There are no detected security headers, DNSSEC is not enabled, and no privacy or cookie policies are present, which impacts compliance with GDPR and other regulations. The domain registration is consistent and legitimate, but the absence of incident response or vulnerability disclosure information suggests room for improvement in security maturity. Overall, the website is functional, professionally presented, and trustworthy within its academic niche but would benefit from enhanced security measures, privacy compliance, and clearer business contact information to improve trust and regulatory adherence.

-
35
17
60
52
70
40
gametheoryacademicopensourceexperimentresearch+1 more
HTML5CSS3Font Awesome 4.4.0Google Fonts (Alegreya Sans)+2
2025-06-27T12:56:16.377Z
rpksoft.com favicon

CSL Computer Service Langenbach GmbH

rpksoft.com

39
TechnologyGermanysmallHIGH

The website rpksoft.com is currently a parked domain hosted by Joker.com, a domain registration and reseller platform operated by CSL Computer Service Langenbach GmbH. The site primarily promotes domain registration services with a simple landing page and no active business content. The target audience includes individuals and businesses looking to register or manage domain names. The business model is focused on domain registration and reseller services, with key offerings such as domain management control panels, reseller APIs, email forwarding, and URL forwarding. The company behind the registrar is based in Germany and has been operating since 2009. From a technical perspective, the website uses basic HTML5 and Bootstrap CSS for layout and styling. The site is mobile optimized and has moderate performance but lacks advanced technical features or CMS integration. No analytics or tracking technologies are detected, indicating minimal data collection. However, the site does not enforce HTTPS in the provided content, and DNSSEC is not enabled, which are notable security gaps. Security posture is limited with no visible security headers or HTTPS enforcement in the provided HTML content. The domain status clientTransferProhibited is a positive indicator against unauthorized transfers. No privacy or cookie policies are present, and no contact information is provided, which impacts compliance and trust. Overall, the site is low risk but lacks maturity in security and privacy practices. Strategically, the domain appears to be parked and not actively used for business operations, which limits exposure but also reduces trust signals. Recommendations include enabling HTTPS, adding privacy and cookie policies, and providing clear contact information to improve compliance and user trust.

15
25
-
40
-
75
100
domaindomainsfreecheapreseller+5 more
Bootstrap CSSHTML5JavaScript
2025-06-27T12:56:15.519Z
oct-clinicaltrials.com favicon

OCT Group LLC

oct-clinicaltrials.com

54
HealthcareGermanymediumMEDIUM

OCT Clinical, operating under OCT Group LLC and recently merged with Palleos Healthcare GmbH, is a mid-size Contract Research Organization (CRO) specializing in managing clinical trials primarily in Eastern Europe. The company offers a comprehensive range of clinical trial services including study design, regulatory support, pharmacovigilance, data management, and logistics. With operations in over 21 countries and a strong client base including major pharmaceutical companies, OCT Clinical positions itself as a leading CRO in the region with a focus on accelerating clinical research timelines and delivering regulatory-compliant data. Technically, the website is built on the Webflow platform utilizing modern JavaScript libraries such as jQuery, Owl Carousel, and MediaElement.js. It integrates Google Tag Manager, Google Analytics, and LinkedIn Insight for marketing and analytics purposes. The site is mobile-optimized with good SEO practices and a moderate performance profile. Cookie consent mechanisms and privacy policies are implemented, reflecting basic GDPR compliance. From a security perspective, the site enforces HTTPS and employs domain transfer protection. However, it lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms domain legitimacy with consistent registration details and a long domain age, supporting the company's credibility. Overall, OCT Clinical demonstrates a solid business presence with professional digital infrastructure and moderate security posture. Strategic improvements in security policy transparency and enhanced accessibility could further strengthen trust and compliance.

20
83
10
60
-
80
100
clinicaltrialscroeasterneuropepharmaceuticalbiotech+1 more
WebflowjQueryOwl CarouselMediaElement.js+3

Partner Domains:

palleos.com
parent
2025-06-27T12:56:15.146Z
esn.com favicon

ESN

esn.com

73
E-commerceGermanymediumMEDIUM

ESN operates a professional e-commerce platform specializing in nutritional supplements for bodybuilding, fitness, and health-conscious consumers primarily in Germany and other European markets. The website is built on Shopify, leveraging modern web technologies and marketing tools such as Klaviyo and Google Tag Manager to support a robust digital presence. The company actively engages in influencer marketing and offers multiple discount campaigns, indicating a mature marketing strategy and customer engagement approach. Technically, the site is well-optimized for performance, mobile responsiveness, and accessibility, with strong SEO practices and comprehensive privacy and cookie policies aligned with GDPR requirements. Security posture is strong with HTTPS enforcement and appropriate security headers, although explicit security policies and incident response contacts are not publicly disclosed. The absence of WHOIS registration data reduces domain trustworthiness from a registration perspective, but the operational website and business indicators suggest legitimacy. Strategic recommendations include enhancing transparency around security policies and incident response, and publishing vulnerability disclosure information to further strengthen trust and compliance.

75
85
17
70
75
80
100
e-commercesupplementsfitnessbodybuildinghealth+3 more
ShopifyJavaScriptWix Madefor Text fontDIN Condensed VF font+6

Partner Domains:

klarna.com
partner
shop.app
partner
2025-06-27T12:00:54.153Z