Skip to main content

Germany security reports

Browse 14,802 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

155885
Websites
130
Industries
113
Countries
52
Avg Score
Page 8 of 297|Showing 351-400 of 14802
H

Hanser Literaturverlage

hanser-literaturverlage.de

70
MediaGermanymediumMEDIUM

Hanser Literaturverlage is a well-established German publishing house specializing in literature and books across several imprints including Hanser, Hanser Kinder- und Jugendbuch, Zsolnay, Hanser Berlin, and hanserblau. The website serves as a comprehensive platform for showcasing their authors and publications, targeting German-speaking literary audiences and book buyers. The business model revolves around traditional and digital book publishing and sales, positioning Hanser as a reputable player in the German media and publishing sector. Technically, the website is built using modern web technologies such as Next.js and React, supported by cloud-based image hosting and integrated marketing and analytics tools like Emarsys and eTracker. The site demonstrates good mobile optimization, accessibility features, and SEO practices, reflecting a mature digital infrastructure. Hosting appears to be managed by Noris Network AG, a reputable provider. From a security perspective, the site enforces HTTPS, implements standard security headers, and uses cookie consent management compliant with GDPR. While no explicit security policy or vulnerability disclosure page is present, the site shows no signs of vulnerabilities or exposed sensitive data. The WHOIS data is transparent and consistent with the business identity, enhancing trustworthiness. Overall, Hanser Literaturverlage's website is professional, secure, and compliant with privacy regulations, supporting its business credibility and user trust. Strategic improvements could include publishing a dedicated security policy and vulnerability disclosure to further enhance transparency and incident response readiness.

85
100
17
70
42
60
100
literaturepublishingbooksauthorsgerman+1 more
Next.jsReactCloudinary (image hosting)eTracker (analytics)+3
2025-11-01T05:26:55.524Z
dumont-buchverlag.de favicon

DuMont Buchverlag GmbH & Co. KG

dumont-buchverlag.de

64
MediaGermanymediumMEDIUM

DuMont Buchverlag GmbH & Co. KG is a German book publishing company with a well-established market presence in the media sector. The website serves as a digital storefront and informational portal showcasing their book catalog, authors, and events. The target audience primarily consists of German-speaking book readers and literary enthusiasts. The business model focuses on publishing and selling books, promoting authors, and organizing literary events. The company maintains a consistent brand image and provides clear contact information, enhancing trust and credibility. Technically, the website is built using modern web technologies including Next.js (React framework), Cloudinary for image hosting, and integrates marketing and tracking tools such as Facebook Pixel and Sendinblue. The site is mobile-optimized with good SEO practices and basic accessibility features. Performance is moderate, with room for improvement in accessibility and security headers. From a security perspective, the website enforces HTTPS and implements a cookie consent mechanism aligned with GDPR requirements. However, it lacks explicit privacy policy and terms of service pages in the analyzed content, as well as a security policy or incident response contact. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms the legitimacy of the domain with consistent registrant information matching the business location and sector. Overall, the website demonstrates a solid digital presence with good business credibility and technical implementation. Strategic improvements in security policies, privacy disclosures, and accessibility would enhance compliance and user trust. The risk profile is low, with no indications of malicious activity or content safety concerns.

70
45
25
75
52
65
100
bookspublishingliteraturegermandumontbuchverlag
React (Next.js)Cloudinary (image hosting)Facebook PixelSendinblue (email marketing)+1
2025-11-01T05:26:30.453Z
alex.info favicon

Regentalbahn GmbH

alex.info

57
TransportationGermanymediumMEDIUM

The website www.laenderbahn.com/alex/ represents the alex regional train service operated by Regentalbahn GmbH, a subsidiary of the Netinera group. It offers daily direct train connections between Germany and the Czech Republic, targeting commuters and travelers in this region. The site provides comprehensive travel information, ticket sales, real-time updates, and customer service resources. The business model focuses on regional transportation services with a strong emphasis on customer convenience and cross-border connectivity. Technically, the website is built on Craft CMS and employs modern JavaScript libraries and frameworks such as jQuery and Mmenu for mobile navigation. It integrates multiple analytics and tracking tools including Matomo, Google Tag Manager, Facebook Pixel, and Hotjar, all managed with a cookie consent mechanism to comply with privacy regulations. The site is mobile-optimized, accessible, and SEO-friendly, providing a good user experience. From a security perspective, the website enforces HTTPS and uses CSRF tokens to protect forms. While explicit HTTP security headers were not detected in the provided data, the site follows best practices in data protection and privacy compliance, including a comprehensive privacy policy and cookie management. No vulnerabilities or exposed sensitive data were found. However, the absence of WHOIS data for the domain raises concerns about domain registration legitimacy, although the website branding and content strongly indicate a legitimate business. Overall, the site is professional, trustworthy, and well-maintained, serving its target audience effectively. The main risk lies in the missing WHOIS registration data, which should be verified externally. Strategic recommendations include enhancing HTTP security headers, publishing a vulnerability disclosure policy, and providing explicit incident response contacts to further strengthen security posture.

20
68
2
70
47
70
100
alexbahnzuglaenderbahnausflug+7 more
JavaScriptjQueryFontAwesomeMatomo Analytics+3

Partner Domains:

www.netinera.de
parent
www.zugsammen.de
partner
2025-11-01T05:22:28.881Z
vogtlandbahn.de favicon

Regentalbahn GmbH

vogtlandbahn.de

57
TransportationGermanymediumMEDIUM

The website www.laenderbahn.com/vogtlandbahn/ represents the Vogtlandbahn, a regional passenger rail service operating in the Vogtland region of Germany. It is part of Regentalbahn GmbH and affiliated with the parent company Netinera. The site offers comprehensive information on train schedules, ticketing options, real-time departure data, and customer services, targeting regional travelers and commuters. The business model focuses on providing reliable and comfortable regional rail transport connecting multiple cities and towns. The website is professionally designed with consistent branding and clear navigation, supporting a positive user experience. From a technical perspective, the site employs modern web technologies including JavaScript libraries, Matomo analytics, Google Tag Manager, and Facebook Pixel for tracking and marketing. It is built on Craft CMS and demonstrates good mobile optimization and accessibility features. Security is well addressed with HTTPS enforcement, security headers, and CSRF protection, though there is room for improvement in publishing explicit security policies and incident response information. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is robust, featuring a comprehensive privacy policy and cookie consent mechanisms aligned with GDPR requirements. Contact information is clearly provided, including phone numbers and physical addresses, enhancing business credibility. Overall, the website is a trustworthy and professional digital presence for a regional transportation provider. However, the absence of WHOIS registration details introduces some uncertainty about domain legitimacy, warranting further verification. Strategic recommendations include publishing a dedicated security policy, establishing a vulnerability disclosure program, and enhancing incident response transparency to further strengthen trust and compliance.

20
68
2
70
47
70
100
vogtlandbahnregionaltransporttrainscheduleticketspublictransport+2 more
JavaScriptjQueryMmenu.jsMatomo Analytics+2

Partner Domains:

netinera.de
parent
zugsammen.de
partner
2025-11-01T05:21:57.189Z
der-metronom.de favicon

metronom Eisenbahngesellschaft mbH

der-metronom.de

56
TransportationGermanymediumMEDIUM

metronom Eisenbahngesellschaft mbH operates regional passenger rail services connecting key northern German states including Niedersachsen, Hamburg, and Bremen. The company positions itself as a reliable regional transport provider with a focus on customer service, real-time travel information, and sustainable mobility. Their business model centers on providing scheduled train services, ticketing solutions, and substitute bus services during infrastructure works. The website reflects a medium-sized enterprise with consistent branding and a strong regional presence supported by partnerships with local transport authorities and the parent company Netinera. Technically, the website employs modern web technologies including Progressive Web App features, service workers, and integrates third-party widgets for travel planning. Hosting and DNS are managed via Cloudflare, ensuring good performance and security. The site is mobile-optimized, accessible, and SEO-friendly, with comprehensive metadata and structured content. From a security perspective, the site enforces HTTPS, uses standard security headers, and avoids exposing sensitive data. However, it lacks a dedicated security policy, incident response information, and vulnerability disclosure mechanisms, which are recommended for enhanced transparency and trust. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanisms aligned with GDPR. Overall, the website is professional, trustworthy, and well-suited for its audience. Strategic improvements in security transparency and incident response readiness would further strengthen its posture.

55
28
2
70
47
60
100
metronomregionalrailtransportationgermanypublictransit+3 more
JavaScriptCSSHTML5Service Worker (PWA)+2

Partner Domains:

www.netinera.de
parent
www.lnvg.de
partner

+3 more partners

2025-11-01T05:21:26.589Z
laenderbahn.com favicon

Die Länderbahn GmbH DLB

laenderbahn.com

59
TransportationGermanymediumMEDIUM

Die Länderbahn GmbH DLB is a well-established private railway company operating regional passenger transport services in Germany and the Czech Republic. With a history spanning over 130 years and multiple regional brands such as alex, trilex, and vogtlandbahn, the company holds a strong market position in the transportation sector. It is a subsidiary of NETINERA Deutschland GmbH, indicating a solid corporate backing. The website provides comprehensive information about the company’s services, history, and career opportunities, targeting both customers and potential employees. Technically, the website is built on a modern CMS platform (Craft CMS) and employs various analytics and marketing tools including Matomo, Google Tag Manager, Facebook Pixel, and Hotjar. The site is mobile-optimized with good SEO practices and a clear navigation structure. Security measures such as HTTPS and CSRF tokens are implemented, though some security headers and explicit incident response policies are absent. From a security and compliance perspective, the website includes a detailed privacy policy and cookie consent mechanism compliant with GDPR. However, the absence of WHOIS data for the domain raises questions about domain registration transparency, although the website content and branding strongly support legitimacy. No critical vulnerabilities or adult content were detected, and the site maintains a professional and trustworthy online presence. Overall, the website reflects a mature digital presence for a transportation company with good technical and privacy practices. Strategic improvements in security headers and public incident response information could further enhance trust and compliance.

20
68
17
70
47
70
100
lnderbahnwaldbahnalextrilexvogtlandbahn+10 more
JavaScriptjQueryMatomo AnalyticsGoogle Tag Manager+2

Partner Domains:

www.netinera.de
parent
www.alex.info
subsidiary

+3 more partners

2025-11-01T05:21:21.577Z
mobilotsin-niedersachsen.de favicon

Landesverkehrsgesellschaft Niedersachsen mbH (LNVG)

mobilotsin-niedersachsen.de

43
TransportationGermanymediumHIGH

MOBILOTSIN is a regional initiative under the Landesverkehrsgesellschaft Niedersachsen mbH (LNVG) focused on supporting municipalities and counties in Lower Saxony, Germany, with innovative mobility concepts and the traffic transition. The website presents a professional and consistent brand image, offering services such as consulting, qualification courses, and events. The target audience primarily includes local government entities and stakeholders involved in mobility management. The digital infrastructure is built on the ProcessWire CMS with modern JavaScript libraries enhancing user experience. The site is mobile-optimized and well-structured, providing clear navigation and relevant content including event listings and newsletter subscription. From a security perspective, the website uses HTTPS and does not expose sensitive data in the HTML content. However, there is no evidence of advanced security headers or published security policies, and no cookie consent mechanism is present, which could be improved for better compliance. No analytics or tracking scripts were detected, indicating minimal user tracking. Contact information is clearly provided, enhancing business credibility. WHOIS data shows consistent domain registration with no privacy protection, aligning with the website's governmental affiliation. Overall, the website demonstrates a solid technical foundation and business credibility with room for improvement in privacy compliance and security best practices. The content is safe and appropriate for a general audience, with no adult or questionable material detected.

45
28
2
65
52
70
-
mobilittniedersachsenberatungqualifizierungveranstaltungen+2 more
HTML5CSSJavaScriptOwl Carousel+1
2025-11-01T05:21:06.539Z
static-thomann.de favicon

Musikhaus Thomann

static-thomann.de

63
RetailGermanylargeMEDIUM

Musikhaus Thomann operates Europe's largest online retail platform for musical instruments and related equipment, targeting musicians and music enthusiasts primarily in Germany and Europe. The website demonstrates a mature e-commerce business model with a strong market position as a leader in its sector. Key services include sales of instruments, studio and lighting equipment, repair services, and a mobile app for enhanced customer engagement. The platform supports multiple languages and currencies, reflecting its broad European reach. Technically, the website employs modern web technologies including JavaScript frameworks, SVG icons, and Google Tag Manager for analytics. It features responsive design optimized for mobile and desktop, with good SEO and accessibility practices. The site uses HTTPS with strong SSL configuration, although some security headers are not explicitly detected. Cookie consent mechanisms are implemented with user options, supporting GDPR compliance. From a security perspective, the site shows good practices such as HTTPS enforcement and secure login forms, but lacks published security policies or incident response contacts. CAPTCHA is implemented but currently disabled, which could be improved to mitigate automated abuse. No vulnerabilities or suspicious content were detected. WHOIS data aligns with the business claims, showing consistent domain registration and no privacy protection, indicating legitimacy. Overall, the website is professional, secure, and compliant with privacy regulations, serving a large customer base with a trustworthy online presence. Strategic recommendations include enabling CAPTCHA, publishing security policies, and enhancing security headers to further strengthen the security posture.

55
48
17
70
57
70
100
e-commercemusicretailmusicalinstrumentseurope+4 more
JavaScriptGoogle Tag ManagerTurnstile CAPTCHA (disabled)SVG icons+1
2025-11-01T05:18:49.297Z
R

Ralf M. Mendle - Mediendienstleistungen

streamfood.tv

64
MediaGermanysmallMEDIUM

streamfood.tv is a media streaming platform founded in 2020 and operated by Ralf M. Mendle - Mediendienstleistungen based in Germany. The platform offers a variety of cultural content including events, shows, interviews, and documentaries across genres such as comedy, music, literature, science, and politics. It targets a general audience interested in fair and transparent media consumption. The business model centers on streaming content with a focus on fair revenue sharing. Technically, the website is built using modern technologies including the Elixir Phoenix framework, Video.js for video playback, and Tailwind CSS for styling. Hosting is provided by Vautron Rechenzentrum AG, with DNS managed via Google Domains. The site is mobile optimized and provides a good user experience with clear navigation and search functionality. Security posture is adequate with HTTPS enforced and CSRF protection, but lacks important security headers and DNSSEC. Privacy compliance is weak due to the absence of privacy and cookie policies and no visible consent mechanisms. Contact and security incident response information are not provided, limiting transparency. Overall, the domain registration is consistent and legitimate, supporting the business claims. Recommendations include adding comprehensive privacy and cookie policies, implementing security headers, enabling DNSSEC, and providing clear contact information to improve trust and compliance.

60
53
17
70
72
65
100
mediastreamingeventsshowscomedy+4 more
Elixir Phoenix FrameworkVideo.jsGlider.jsTailwind CSS+1
2025-11-01T05:16:58.701Z
cyquest.net favicon

CYQUEST GmbH

cyquest.net

10
TechnologyGermanymediumCRITICAL

CYQUEST GmbH operates as a specialized provider of online assessment, self-assessment, and study orientation solutions, combining psychological expertise with modern web technologies to enhance employer branding and recruitment processes. The company targets businesses and educational institutions primarily in Germany, offering scientifically validated tools and interactive applications to improve selection decisions and candidate engagement. The website demonstrates a professional and consistent brand presence with strong client references and ISO 27001 certification, indicating a mature security posture. Technically, the website is built on WordPress using the Enfold theme, leveraging modern JavaScript libraries such as jQuery and integrating Google Analytics 4 and Google Tag Manager for analytics and marketing purposes. The site is mobile-optimized and SEO-friendly, though some accessibility features could be improved. Security practices include HTTPS enforcement and use of security plugins, but the absence of security headers and cookie consent mechanisms suggests room for enhancement. The security posture is solid with ISO 27001 certification, but the lack of visible incident response contacts and missing WHOIS registration data raise concerns about domain legitimacy and transparency. No WAF or blocking mechanisms were detected, and the site content is safe and business-focused without any adult or questionable material. Overall, CYQUEST presents as a credible and professional business with a good digital presence and security foundation, but should address domain registration transparency, privacy compliance (cookie consent), and security header implementation to strengthen trust and compliance.

-
-
-
-
-
-
-
online-assessmentself-assessmentemployerbrandingrecrutainmentiso27001+3 more
jQueryGoogle Tag ManagerGoogle Analytics 4WordPress+2

Partner Domains:

blog.recrutainment.de
partner
2025-11-01T05:00:18.989Z
lnvg.de favicon

Landesnahverkehrsgesellschaft Niedersachsen mbH

lnvg.de

46
TransportationGermanymediumHIGH

The Landesnahverkehrsgesellschaft Niedersachsen mbH (LNVG) is a government-affiliated organization responsible for planning, financing, and managing public transportation services in the German state of Niedersachsen. The website serves as an information hub for passengers, transport operators, and stakeholders, providing comprehensive details on regional rail and bus services, funding programs, infrastructure projects, and regulatory frameworks. The company holds a significant market position as a key public transport authority in the region. Technically, the website is built on TYPO3 CMS, a robust and widely used content management system, ensuring maintainability and scalability. The site employs Matomo analytics with an opt-out mechanism, reflecting a moderate level of privacy awareness. The site is mobile-optimized, accessible, and SEO-friendly, with a clear navigation structure and professional design. From a security perspective, the site uses HTTPS with a Content-Security-Policy header, indicating good baseline security practices. However, it lacks explicit cookie consent mechanisms and published security or incident response policies, which are areas for improvement. No vulnerabilities or suspicious content were detected. Overall, the website is trustworthy, professional, and well-aligned with its public service mission. Strategic enhancements in privacy compliance and security transparency would further strengthen its posture.

20
40
17
70
77
60
-
personennahverkehrpnvspnvfrderungfinanzierung+4 more
TYPO3 CMSMatomo AnalyticsJavaScriptCSS

Partner Domains:

karriere.lnvg.de
partner
mobilotsin-niedersachsen.de
partner
2025-11-01T04:59:28.346Z
vbn.de favicon

Verkehrsverbund Bremen/Niedersachsen GmbH (VBN)

vbn.de

64
TransportationGermanylargeMEDIUM

Verkehrsverbund Bremen/Niedersachsen GmbH (VBN) operates as a regional public transportation authority providing integrated ticketing, timetable information, and mobility services across Bremen and Lower Saxony. The website serves a broad audience including commuters, families, students, and groups, offering comprehensive transport options and customer support. The business model focuses on facilitating seamless public transport usage through digital platforms and partnerships with transport operators. Technically, the website is built on TYPO3 CMS with modern JavaScript libraries such as jQuery, Bootstrap, and Leaflet for interactive maps and widgets. The integration of HAFAS public transport widgets enhances user experience for timetable and ticketing queries. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses cookie consent mechanisms, and follows good security practices, though explicit security headers like Content-Security-Policy could be improved. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear GDPR-aligned policies and cookie management. Overall, the website presents a trustworthy, professional, and user-friendly platform supporting VBN's mission. Strategic improvements in security policy transparency and header implementation would further enhance its posture.

25
80
2
85
67
70
100
publictransportticketsmobilitybremenniedersachsen+3 more
TYPO3 CMSjQueryBootstrapSelectric+3

Partner Domains:

fahrplaner.vbn.de
partner
shop.fahrplaner.de
partner

+1 more partners

2025-11-01T04:59:17.996Z
forward.live favicon

forward

forward.live

55
OtherGermanymediumMEDIUM

The website forward.live represents the 'fwd: Bundesvereinigung Veranstaltungswirtschaft e.V.', a German non-profit association dedicated to the event industry. It serves as a central platform for members of the event sector, focusing on political advocacy, networking, knowledge transfer, and sustainability initiatives. The organization positions itself as a key voice for the industry at the national and regional levels, with a clear emphasis on community and future-oriented development. The site content is professionally presented in German, targeting industry professionals and stakeholders. Technically, the website is built on WordPress using Elementor and several Jet plugins, with SEO optimization via Yoast. It employs modern web technologies including jQuery and Google Tag Manager for analytics. The site is mobile-optimized and features a cookie consent mechanism compliant with GDPR, reflecting a mature digital infrastructure. Performance is moderate, with room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and implements cookie consent, but lacks visible security headers such as CSP or HSTS. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is privacy protected, which is justified for this type of organization. No explicit security or incident response policies are publicly available, suggesting an area for enhancement. Overall, the website demonstrates a strong business credibility and compliance posture with good content quality and technical implementation. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility features to further strengthen trust and compliance.

20
85
17
75
62
80
20
eventindustryassociationnetworkingpoliticalrepresentationgdpr+2 more
WordPressElementorYoast SEOjQuery+2

Partner Domains:

brand-ex.org
partner
www.bundeskonferenz.org
partner

+2 more partners

2025-11-01T04:56:01.459Z
rifel-institut.de favicon

R.I.F.E.L. Research Institute for Exhibition and Live-Communication e.V.

rifel-institut.de

45
OtherGermanysmallHIGH

R.I.F.E.L. Research Institute for Exhibition and Live-Communication e.V. is a small, Germany-based non-profit organization specializing in research within the exhibition and live communication sectors. The website serves as a platform to showcase their research activities, provide access to an online shop, and offer contact channels for stakeholders. Their market position is niche, targeting professionals and organizations involved in exhibitions and live events. The business model combines research services with e-commerce capabilities, supporting their mission and outreach. Technically, the website is built on WordPress with WooCommerce integration, leveraging common web technologies such as jQuery and PHP. Hosting is managed via Corpex DNS, and the site employs HTTPS with a good SSL configuration. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. The presence of Jetpack and WooCommerce analytics indicates moderate user tracking. From a security perspective, the site uses HTTPS but lacks advanced security headers and explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. Contact information is clearly provided, enhancing business credibility. Overall, the website is professional, trustworthy, and safe for general audiences. Strategic improvements in security headers, cookie consent, and incident response transparency would enhance compliance and security posture, supporting the organization's credibility and user trust.

15
33
2
85
62
60
20
researchexhibitionlivecommunicationnon-profitgerman+2 more
WordPressWooCommercejQueryPHP+2
2025-11-01T04:55:56.444Z
bundeskonferenz.org favicon

Bundeskonferenz Veranstaltungswirtschaft

bundeskonferenz.org

63
Non-profitGermanysmallMEDIUM

Bundeskonferenz Veranstaltungswirtschaft is a German non-profit organization representing the event industry. The website serves as a platform for advocacy, event information, and industry representation. It targets professionals and stakeholders within the German event sector, providing information about conferences, programs, and organizational goals. The organization positions itself as a strong voice for the event industry in Germany. Technically, the website is built on the Squarespace platform, leveraging modern web technologies including Google Fonts and reCAPTCHA for form security. The site is mobile-optimized and uses HTTPS with HSTS enabled, indicating a good baseline security posture. However, there is a lack of explicit privacy and cookie policies, which impacts privacy compliance. Security-wise, the site benefits from HTTPS and HSTS but lacks several recommended security headers such as Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data limits domain ownership verification, but the website content and social media presence support legitimacy. Overall, the website is professional and trustworthy for its intended audience but would benefit from improved privacy compliance and enhanced security headers. Strategic recommendations include publishing privacy and cookie policies, adding security headers, and providing incident response contact information.

45
53
17
75
62
75
100
eventindustrynon-profitconferencegermanyadvocacy
Squarespace CMSGoogle reCAPTCHAYUI JavaScript libraryGoogle Fonts (Poppins)
2025-11-01T04:55:46.419Z