Skip to main content

Germany security reports

Browse 14,812 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 34 of 297|Showing 1651-1700 of 14812
rocksolidthemes.com favicon

RockSolid Themes

rocksolidthemes.com

55
TechnologyGermanysmallMEDIUM

RockSolid Themes is a specialized provider of premium Contao CMS themes and plugins, offering responsive, hand-coded designs with a strong emphasis on ease of customization and open source extensions. Established in 2012 and based in Germany, the company targets webmasters, agencies, freelancers, and developers seeking high-quality, flexible website themes. Their market position is reinforced by official Contao partnership and positive customer testimonials, positioning them as a niche leader in the Contao ecosystem. Technically, the website is well-constructed with modern HTML5 and CSS3 technologies, optimized for mobile devices and fast performance. The hosting is managed via NSHost2 name servers, and the domain is secured with HTTPS and a clientTransferProhibited status, though DNSSEC is not enabled. The site lacks some advanced security headers and explicit incident response or vulnerability disclosure policies. From a security perspective, the site demonstrates good baseline practices including HTTPS enforcement and regular updates to themes and plugins. However, there is room for improvement in cookie consent implementation, security policy transparency, and DNS security enhancements. No critical vulnerabilities or exposed sensitive data were detected in the provided content. Overall, RockSolid Themes presents a trustworthy and professional online presence with strong business credibility and technical maturity. Strategic enhancements in privacy compliance and security documentation would further strengthen their posture and customer trust.

70
35
2
70
62
75
40
contaothemestemplatesopensourcewebdesign+4 more
HTML5CSS3JavaScript
2025-10-31T01:11:03.364Z
A

Alpha-1-KIDS Register

alpha1kids.de

50
HealthcareGermanysmallMEDIUM

The Alpha-1-KIDS Register website serves as a specialized platform dedicated to the registration and study of children and adolescents affected by Alpha-1-Antitrypsin deficiency, a rare genetic condition. The site aims to facilitate better understanding and improved care for affected individuals by collecting and analyzing relevant medical data. The target audience includes patients, their families, and medical professionals involved in treatment and research. The website is presented in German and reflects a non-profit healthcare initiative based in Germany. Technically, the website is built using modern web technologies including React and custom web fonts, indicating a moderate level of digital maturity. The site is mobile-optimized and offers a good user experience with clear navigation and relevant content. However, there is no evidence of advanced SEO or accessibility features beyond basic implementation. No CMS or hosting provider details were identified. From a security perspective, the website lacks visible security headers and explicit SSL configuration details, which suggests room for improvement in security posture. The absence of cookie consent mechanisms and incident response information indicates partial compliance with privacy and security best practices. The presence of a comprehensive GDPR-compliant privacy policy is a positive indicator of privacy awareness. Overall, the website is trustworthy and professional, serving a niche healthcare community with relevant and safe content. The lack of contact information and security policies limits full assessment of operational transparency and incident readiness. Strategic improvements in security headers, cookie consent, and contact disclosures would enhance the site's security and compliance profile.

15
25
17
55
52
65
100
healthcaremedicalregistrychildrengermanynon-profit
ReactJavaScriptCSSWeb Manifest
2025-10-31T01:10:53.343Z
green-quality.de favicon

greenQuality Flammersberger + Färber

green-quality.de

43
OtherGermanysmallHIGH

greenQuality Flammersberger + Färber is a small, regionally focused consulting firm based in Regensburg, Germany, specializing in sustainable business consulting, management systems, and occupational safety. The company holds multiple industry awards and certifications, positioning itself as a trusted partner for businesses seeking long-term success through sustainable solutions. Their website reflects a professional and consistent brand image with clear service offerings and a focus on client engagement through social media and contact channels. Technically, the website is built on TYPO3 CMS, leveraging modern JavaScript and cookie consent management via Usercentrics. Google Analytics is used with IP anonymization to track user interactions. The site demonstrates good mobile optimization and SEO practices, though accessibility could be improved. Performance is moderate, with no critical technical issues detected. From a security perspective, the site uses HTTPS with a good SSL configuration and implements cookie consent mechanisms. However, it lacks explicit security headers and does not publish a security policy or incident response contacts. No vulnerabilities or exposed sensitive data were found. Privacy compliance is supported by a GDPR-compliant privacy policy and cookie consent banner. Overall, the website presents a low-risk profile with a solid business credibility and a good security posture. Strategic improvements in security headers, incident response transparency, and accessibility would further enhance trust and compliance.

25
28
2
70
77
60
-
consultingbusinessmanagementregensburgsustainability+2 more
TYPO3 CMSJavaScriptUsercentrics (cookie consent)Google Analytics
2025-10-31T01:10:03.182Z
studoq.de favicon

Deutsche Gesellschaft für Allgemein- und Viszeralchirurgie e.V.

studoq.de

45
HealthcareGermanymediumHIGH

The website studoq.de represents the Deutsche Gesellschaft für Allgemein- und Viszeralchirurgie e.V. (DGAV), a professional medical society in Germany specializing in general and visceral surgery. The site primarily serves as a portal for the StuDoQ registry, a study, documentation, and quality center for surgical data. The organization targets healthcare professionals and surgeons, providing registry services and information dissemination. The website is well-branded, consistent, and professionally presented with clear contact information and GDPR-compliant privacy and cookie policies. Technically, the site is built on TYPO3 CMS version 4.5, an older but stable content management system, with jQuery 1.5.2 and Matomo analytics hosted on their own servers. The site uses HTTPS with good SSL configuration but lacks modern security headers. Performance is moderate with basic mobile optimization and accessibility features. SEO is adequately addressed with proper meta tags. From a security perspective, the site enforces HTTPS, uses a cookie consent banner, and employs spam protection on forms. However, it lacks explicit security policies, incident response information, and vulnerability disclosure mechanisms. The use of outdated libraries like jQuery 1.5.2 could pose security risks. No critical vulnerabilities or malicious content were detected. Overall, the website is trustworthy, professional, and compliant with privacy regulations. Recommendations include updating technical components, adding security headers, publishing security policies, and implementing a vulnerability disclosure process to enhance security posture and trustworthiness.

15
83
2
60
62
55
-
healthcaremedicalsocietyvisceralsurgeryqualityregistrytypo3+2 more
TYPO3 CMS 4.5jQuery 1.5.2Matomo Analytics
2025-10-31T01:09:43.132Z
gwq-serviceplus.de favicon

GWQ ServicePlus AG

gwq-serviceplus.de

10
HealthcareGermanylargeCRITICAL

GWQ ServicePlus AG is a large healthcare-focused service provider in Germany, partnering with over 70 statutory health insurance companies to deliver data analytics, digital solutions, and efficient procurement management. The company positions itself as a key enabler for improving healthcare provision through innovative and human-centered approaches. The website is professionally designed, content-rich, and targets healthcare organizations and stakeholders in the German statutory health insurance sector. Technically, the site uses modern frameworks such as React and Next.js, indicating a mature digital infrastructure. However, some areas such as explicit security headers and cookie consent mechanisms could be improved to enhance compliance and security posture. The absence of direct contact emails or phone numbers suggests a preference for contact via web forms, which may impact user convenience. Overall, the security posture is moderate with no critical vulnerabilities detected, but improvements in transparency and incident response policies are recommended. The domain WHOIS data shows no privacy protection but lacks detailed registrant information, which slightly limits trust assessment. Strategic recommendations include implementing cookie consent, enhancing security headers, and publishing clear security policies to strengthen trust and compliance.

-
-
-
-
-
-
-
healthcaredataanalyticsdigitalsolutionseinkaufsmanagementkrankenkassen+1 more
ReactNext.jsJavaScriptCSS

Partner Domains:

www.onlinebeitrittsmanager.de
partner
gwq-healthcare.de
partner

+3 more partners

2025-10-31T01:00:23.781Z
myc3.com favicon

C3 marketing agentur GmbH

myc3.com

55
MediaGermanymediumMEDIUM

C3 marketing agentur GmbH is a German marketing and advertising agency with offices in Tirschenreuth and Regensburg. The company offers a broad range of services including website development, e-commerce solutions, print and graphic design, photography, video, 3D media, and advertising campaigns. Their market position appears well-established with over two decades of presence and a strong regional footprint. The website is professionally designed, mobile-optimized, and provides clear navigation and comprehensive content in German, targeting businesses seeking marketing services in Germany. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies such as SVG graphics and JavaScript modules. Accessibility features and cookie consent mechanisms are implemented, reflecting a mature digital infrastructure. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, the site uses HTTPS and implements cookie consent but lacks visible security headers and published security or incident response policies. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS domain registration data is a notable concern, potentially indicating privacy protection or an unregistered domain, which slightly reduces trustworthiness. Overall, the website presents a professional and trustworthy front for a marketing agency, but domain registration transparency and enhanced security disclosures would improve credibility and compliance posture.

80
53
2
70
72
60
20
marketingadvertisingtypo3cookie-consentprivacy+1 more
TYPO3 CMSJavaScriptSVGHTML5+1
2025-10-31T00:56:13.801Z
herzstiftung.de favicon

Deutsche Herzstiftung e.V.

herzstiftung.de

65
HealthcareGermanymediumMEDIUM

Deutsche Herzstiftung e.V. is Germany's largest independent non-profit organization dedicated to providing information and support to patients and interested parties in the field of heart diseases. The website serves as a comprehensive resource for patient education and awareness, positioning itself as a trusted authority in cardiology-related health information. The organization operates primarily in the healthcare and non-profit sectors, targeting patients and the general public seeking reliable heart health information. Technically, the website is built on Drupal 10, leveraging modern web technologies including Cloudflare for DNS and CDN services, Google Tag Manager for analytics, Cookiebot for cookie consent management, and Eye-Able for accessibility enhancements. The site demonstrates good mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure suitable for its audience. From a security perspective, the site enforces HTTPS, employs cookie consent with granular user controls, and integrates bot protection via hCaptcha. While explicit security headers are not fully visible in the HTML, the overall posture is solid with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and GDPR-aligned cookie management. Overall, the website presents a professional, trustworthy, and user-friendly platform aligned with its mission. Strategic recommendations include enhancing security headers, maintaining up-to-date third-party libraries, and expanding contact information transparency to further strengthen user trust and compliance.

40
83
2
85
57
70
100
healthcarenon-profitheartdiseasepatienteducationgdpr+2 more
Drupal 10Cloudflare DNSGoogle Tag ManagerCookiebot+2

Partner Domains:

stripe.com
partner
fundraisingbox.com
partner

+3 more partners

2025-10-31T00:55:18.681Z
F

Formula Student Germany GmbH

fs-world.org

10
EducationGermanysmallCRITICAL

The website fs-world.org serves as an authoritative platform for consolidating and publishing world ranking lists for Formula SAE/Formula Student competitions globally. Operated by Formula Student Germany GmbH, it targets student teams participating in these competitions, providing a transparent and methodical ranking system based on recent event results. The platform is niche-focused and well-positioned within the educational motorsport community, offering valuable benchmarking services without commercial intent. Technically, the website is straightforward, built with standard HTML and CSS, hosted via Cloudflare, and secured with HTTPS. While the site performs adequately with basic mobile optimization and accessibility, it lacks advanced security headers and DNSSEC, which could enhance its security posture. No CMS or complex frameworks are detected, indicating a simple and maintainable infrastructure. From a security perspective, the site benefits from HTTPS and domain transfer protections but would improve by implementing DNSSEC, security headers, and publishing a formal security policy. No forms or user data collection mechanisms are present, reducing attack surface. Privacy compliance is partial, with a privacy policy available but no cookie consent or GDPR-specific indicators. No incident response or vulnerability disclosure information is provided. Overall, the website is trustworthy, safe, and professionally maintained, with a clear focus on educational content. Strategic improvements in security and privacy compliance would enhance its resilience and user trust.

-
-
-
-
-
-
-
formulastudentworldrankingeducationmotorsportstudentcompetition
HTML5CSS3

Partner Domains:

formulastudent.de
partner
fsg.one
partner
2025-10-31T00:54:28.585Z
sepa.net favicon

GRÜN IT Group GmbH

sepa.net

50
FinanceGermanysmallMEDIUM

SEPA.net, operated by GRÜN IT Group GmbH, provides an innovative online payment system specializing in SEPA direct debit transactions across Europe. The service targets online merchants and buyers, enabling seamless payment processing without requiring buyer registration. The platform offers multiple integration options including purchase buttons, iFrame/mobile integration, API interfaces for recurring payments, and a WordPress plugin for WooCommerce stores. The website is professionally designed, mobile-optimized, and provides clear business and contact information, enhancing user trust and accessibility. Technically, the website is built on WordPress with WooCommerce and utilizes modern JavaScript libraries and plugins such as jQuery, MediaElement.js, and WPBakery Page Builder. SEO is well-implemented with Yoast SEO plugin, and the site employs HTTPS with strong SSL encryption. Cookie consent mechanisms and privacy policies are in place, reflecting GDPR compliance. However, the absence of WHOIS domain registration data raises concerns about domain legitimacy and trustworthiness. From a security perspective, SEPA.net demonstrates good practices including transaction authorization via security TAN, adherence to German data protection laws, and encrypted communications. Nonetheless, the site lacks explicit incident response and vulnerability disclosure information, which could be improved to enhance transparency and readiness. Overall, the platform presents a solid security posture suitable for its payment processing business model. The main risk identified is the missing WHOIS data, which impacts domain trust and could affect user confidence. Strategic recommendations include publishing security headers, adding incident response details, and maintaining regular security audits. These steps will strengthen the platform's security and compliance stature, supporting its growth and market position.

-
-
-
70
85
70
100
sepapaymentdirectdebitonlinepaymente-commerce+2 more
WordPressWooCommercejQueryMediaElement.js+2
2025-10-31T00:53:27.296Z
uni-hohenheim.de favicon

University of Hohenheim

uni-hohenheim.de

11
EducationGermanylargeCRITICAL

The University of Hohenheim is a well-established German higher education institution specializing in agricultural sciences, natural sciences, business, economics, and social sciences. The website serves as a comprehensive portal for prospective students, staff, alumni, and other stakeholders, offering detailed information on degree programs, research, events, and university news. The institution positions itself as a leading university with a strong emphasis on research and international collaboration. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies such as Bootstrap and Matomo for analytics. The site demonstrates good performance, mobile optimization, and accessibility features, reflecting a mature digital infrastructure. Hosting is managed via academic network nameservers (belwue.de), indicating reliable and specialized hosting. From a security perspective, the site enforces HTTPS, disables cookies in analytics, and respects Do Not Track settings, showcasing a privacy-conscious approach. However, there is room for improvement in implementing security headers and explicit cookie consent mechanisms. No vulnerabilities or exposed sensitive data were detected, and the login form appears secure. Overall, the website reflects a high level of professionalism, trustworthiness, and compliance with GDPR. The risk profile is low, with recommendations focusing on enhancing security headers and privacy transparency to further strengthen the security posture.

-
-
-
-
-
-
-
educationuniversityhighereducationresearchagriculture+3 more
TYPO3 CMSMatomo AnalyticsBootstrapFontAwesome+1
2025-10-31T00:29:32.272Z
tropos.de favicon

Leibniz-Institut für Troposphärenforschung e.V. (TROPOS)

tropos.de

10
Non-profitGermanymediumCRITICAL

The Leibniz-Institut für Troposphärenforschung e.V. (TROPOS) is a German non-profit research institute specializing in atmospheric sciences, focusing on aerosols and clouds. It holds a strong position within the scientific community as a member of the Leibniz Association, offering research, publications, educational programs, and public outreach. The website reflects a professional and consistent brand image with comprehensive scientific content primarily in German, also offering English alternatives. The target audience includes researchers, students, and the general public interested in atmospheric research. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies and integrating Matomo analytics with privacy-conscious configurations such as cookie disabling. The site demonstrates good mobile optimization, accessibility, and SEO practices, though performance is moderate. Security posture is solid with HTTPS enforced, but lacks some security headers and explicit incident response or security policies. Privacy compliance is good with a comprehensive privacy policy, but no cookie consent mechanism is present. Overall, the security posture is sound with no detected vulnerabilities or suspicious content. The domain registration aligns with the institution's German research identity, using DNS servers from the German research network. Contact information is clearly provided, enhancing business credibility. Recommendations include adding security headers, cookie consent, and publishing security policies to further strengthen trust and compliance.

-
-
-
-
-
-
-
researchatmospheresciencenon-profiteducation+1 more
TYPO3 CMSJavaScriptMatomo Analytics
2025-10-31T00:29:17.234Z
gfz-potsdam.de favicon

GFZ Helmholtz-Zentrum für Geoforschung

gfz-potsdam.de

58
GovernmentGermanylargeMEDIUM

GFZ Helmholtz-Zentrum für Geoforschung is Germany's national center for solid earth research, focusing on geoscientific studies of the Earth's geosphere and related systems. The website serves a broad audience including researchers, students, policymakers, and the public, providing scientific publications, research data, and educational resources. It operates under the Helmholtz Association umbrella, indicating a strong institutional backing and national significance. Technically, the website is built on TYPO3 CMS, a robust open-source content management system, and employs Matomo for privacy-conscious analytics. The site is well-structured, mobile-optimized, and accessible, with clear navigation and professional design. It uses HTTPS with good SSL configuration and respects user privacy through cookie consent mechanisms. Security posture is solid with no detected vulnerabilities or exposed sensitive data, though explicit security policies and incident response contacts are not published. Privacy compliance is strong, with GDPR-aligned policies and consent banners. The domain WHOIS data aligns well with the organization's identity, supporting legitimacy. Overall, the website is a trustworthy, professional platform for geoscientific research dissemination, with recommendations to enhance security transparency and incident response readiness.

25
43
2
80
52
75
100
geoscienceresearcheducationgovernmentscience+2 more
TYPO3 CMSMatomo AnalyticsJavaScriptCSS+1
2025-10-31T00:29:07.207Z
dkrz.de favicon

Deutsches Klimarechenzentrum GmbH

dkrz.de

65
EnergyGermanymediumMEDIUM

The Deutsches Klimarechenzentrum GmbH (DKRZ) operates as a national service center providing high-performance computing and data management infrastructure to support climate research in Germany. The website reflects a well-established organization focused on delivering computational resources, data storage, and expert services to the scientific community engaged in climate modeling and simulations. Their market position is strong within the German and international climate research ecosystem, emphasizing collaboration and advanced technological support. Technically, the website is built on the Plone CMS platform, leveraging Bootstrap for responsive design and Matomo for privacy-conscious analytics. The site demonstrates good mobile optimization, clear navigation, and professional content presentation. However, some improvements could be made in accessibility and the implementation of security headers. From a security perspective, the site enforces HTTPS and uses script integrity attributes, but lacks explicit security headers and a published security policy or incident response information. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partially addressed with a comprehensive privacy policy but lacks a cookie consent mechanism. Overall, the website is trustworthy, professional, and serves its target audience effectively. Strategic enhancements in security headers, cookie consent, and incident response transparency would further strengthen its security posture and compliance.

80
28
2
85
82
65
100
climateresearchhighperformancecomputingdatamanagementscientificservicesgermany+2 more
Plone CMSBootstrapMatomo AnalyticsJavaScript+1
2025-10-31T00:28:51.923Z
U

Universität Hamburg

uni-hamburg.de

61
EducationGermanylargeMEDIUM

The Universität Hamburg is a large, well-established public university in Germany, serving over 42,000 students and recognized as one of the leading research and education institutions in Northern Germany. The website reflects a comprehensive academic institution offering a wide range of study programs, research initiatives, and community engagement services. It targets students, researchers, faculty, and administrative staff, providing extensive information on academic offerings, research projects, career services, and events. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and multimedia content such as videos and image carousels. It uses analytics tools like eTracker and error monitoring via BetterWeb, indicating a mature digital infrastructure. The site is mobile-optimized and accessible, with good SEO practices and clear navigation. From a security perspective, the site uses HTTPS and includes CSRF tokens, but lacks visible security headers and explicit incident response or vulnerability disclosure information. Privacy compliance is partially addressed with a comprehensive privacy policy, but no explicit cookie consent mechanism was detected. Contact information is primarily via a feedback form, with no direct emails or phone numbers publicly listed. Overall, the website is professional, trustworthy, and well-maintained, with minor areas for improvement in security headers, cookie consent, and incident response transparency. The domain and hosting are consistent with a reputable academic institution, with no signs of suspicious activity.

65
28
17
70
59
70
100
educationuniversityresearchgermanyhamburg+2 more
JavaScriptjQueryCSS3HTML5+6
2025-10-31T00:28:46.915Z
enercon.de favicon

ENERCON

enercon.de

63
EnergyGermanylargeMEDIUM

ENERCON is a leading manufacturer and service provider specializing in onshore wind turbines and integrated green energy solutions. The company positions itself as a pioneer in wind energy, offering a comprehensive portfolio that spans turbine manufacturing, service and maintenance, SCADA remote monitoring, training, and energy marketing and financing. Their website reflects a mature digital presence with professional design, multilingual support, and clear navigation aimed at business customers and stakeholders in the renewable energy sector. Technically, the website leverages modern technologies including Webflow CMS, Cookiebot for consent management, and Matomo for privacy-focused analytics. Hosting is managed via Netlify for staging and Azure DNS for domain services, indicating a robust infrastructure. Performance and mobile optimization are good, with accessibility and SEO practices well implemented. From a security perspective, the site enforces HTTPS and uses Cookiebot to manage cookie consent, enhancing privacy compliance. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not evident, and no public security or incident response policies are published. There is no vulnerability disclosure or security.txt file, which could improve transparency and trust. Overall, the website is professional, trustworthy, and compliant with GDPR, with a strong business credibility score. Recommendations include enhancing security headers, publishing security policies, and providing clearer incident response contacts to further strengthen the security posture and user trust.

30
83
2
75
62
65
100
windenergyrenewableenergyonshorewindturbinesgreenenergyenergysolutions+4 more
WebflowCookiebotMatomo AnalyticsNetlify (staging environment)+1

Partner Domains:

sip.enercon.de
service
career.enercon.de
service
2025-10-30T23:19:25.264Z