Skip to main content

Germany security reports

Browse 14,812 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 9 of 297|Showing 401-450 of 14812
lnvg.de favicon

Landesnahverkehrsgesellschaft Niedersachsen mbH

lnvg.de

46
TransportationGermanymediumHIGH

The Landesnahverkehrsgesellschaft Niedersachsen mbH (LNVG) is a government-affiliated organization responsible for planning, financing, and managing public transportation services in the German state of Niedersachsen. The website serves as an information hub for passengers, transport operators, and stakeholders, providing comprehensive details on regional rail and bus services, funding programs, infrastructure projects, and regulatory frameworks. The company holds a significant market position as a key public transport authority in the region. Technically, the website is built on TYPO3 CMS, a robust and widely used content management system, ensuring maintainability and scalability. The site employs Matomo analytics with an opt-out mechanism, reflecting a moderate level of privacy awareness. The site is mobile-optimized, accessible, and SEO-friendly, with a clear navigation structure and professional design. From a security perspective, the site uses HTTPS with a Content-Security-Policy header, indicating good baseline security practices. However, it lacks explicit cookie consent mechanisms and published security or incident response policies, which are areas for improvement. No vulnerabilities or suspicious content were detected. Overall, the website is trustworthy, professional, and well-aligned with its public service mission. Strategic enhancements in privacy compliance and security transparency would further strengthen its posture.

20
40
17
70
77
60
-
personennahverkehrpnvspnvfrderungfinanzierung+4 more
TYPO3 CMSMatomo AnalyticsJavaScriptCSS

Partner Domains:

karriere.lnvg.de
partner
mobilotsin-niedersachsen.de
partner
2025-11-01T04:59:28.346Z
vbn.de favicon

Verkehrsverbund Bremen/Niedersachsen GmbH (VBN)

vbn.de

64
TransportationGermanylargeMEDIUM

Verkehrsverbund Bremen/Niedersachsen GmbH (VBN) operates as a regional public transportation authority providing integrated ticketing, timetable information, and mobility services across Bremen and Lower Saxony. The website serves a broad audience including commuters, families, students, and groups, offering comprehensive transport options and customer support. The business model focuses on facilitating seamless public transport usage through digital platforms and partnerships with transport operators. Technically, the website is built on TYPO3 CMS with modern JavaScript libraries such as jQuery, Bootstrap, and Leaflet for interactive maps and widgets. The integration of HAFAS public transport widgets enhances user experience for timetable and ticketing queries. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses cookie consent mechanisms, and follows good security practices, though explicit security headers like Content-Security-Policy could be improved. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear GDPR-aligned policies and cookie management. Overall, the website presents a trustworthy, professional, and user-friendly platform supporting VBN's mission. Strategic improvements in security policy transparency and header implementation would further enhance its posture.

25
80
2
85
67
70
100
publictransportticketsmobilitybremenniedersachsen+3 more
TYPO3 CMSjQueryBootstrapSelectric+3

Partner Domains:

fahrplaner.vbn.de
partner
shop.fahrplaner.de
partner

+1 more partners

2025-11-01T04:59:17.996Z
forward.live favicon

forward

forward.live

55
OtherGermanymediumMEDIUM

The website forward.live represents the 'fwd: Bundesvereinigung Veranstaltungswirtschaft e.V.', a German non-profit association dedicated to the event industry. It serves as a central platform for members of the event sector, focusing on political advocacy, networking, knowledge transfer, and sustainability initiatives. The organization positions itself as a key voice for the industry at the national and regional levels, with a clear emphasis on community and future-oriented development. The site content is professionally presented in German, targeting industry professionals and stakeholders. Technically, the website is built on WordPress using Elementor and several Jet plugins, with SEO optimization via Yoast. It employs modern web technologies including jQuery and Google Tag Manager for analytics. The site is mobile-optimized and features a cookie consent mechanism compliant with GDPR, reflecting a mature digital infrastructure. Performance is moderate, with room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and implements cookie consent, but lacks visible security headers such as CSP or HSTS. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is privacy protected, which is justified for this type of organization. No explicit security or incident response policies are publicly available, suggesting an area for enhancement. Overall, the website demonstrates a strong business credibility and compliance posture with good content quality and technical implementation. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility features to further strengthen trust and compliance.

20
85
17
75
62
80
20
eventindustryassociationnetworkingpoliticalrepresentationgdpr+2 more
WordPressElementorYoast SEOjQuery+2

Partner Domains:

brand-ex.org
partner
www.bundeskonferenz.org
partner

+2 more partners

2025-11-01T04:56:01.459Z
rifel-institut.de favicon

R.I.F.E.L. Research Institute for Exhibition and Live-Communication e.V.

rifel-institut.de

45
OtherGermanysmallHIGH

R.I.F.E.L. Research Institute for Exhibition and Live-Communication e.V. is a small, Germany-based non-profit organization specializing in research within the exhibition and live communication sectors. The website serves as a platform to showcase their research activities, provide access to an online shop, and offer contact channels for stakeholders. Their market position is niche, targeting professionals and organizations involved in exhibitions and live events. The business model combines research services with e-commerce capabilities, supporting their mission and outreach. Technically, the website is built on WordPress with WooCommerce integration, leveraging common web technologies such as jQuery and PHP. Hosting is managed via Corpex DNS, and the site employs HTTPS with a good SSL configuration. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. The presence of Jetpack and WooCommerce analytics indicates moderate user tracking. From a security perspective, the site uses HTTPS but lacks advanced security headers and explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. Contact information is clearly provided, enhancing business credibility. Overall, the website is professional, trustworthy, and safe for general audiences. Strategic improvements in security headers, cookie consent, and incident response transparency would enhance compliance and security posture, supporting the organization's credibility and user trust.

15
33
2
85
62
60
20
researchexhibitionlivecommunicationnon-profitgerman+2 more
WordPressWooCommercejQueryPHP+2
2025-11-01T04:55:56.444Z
bundeskonferenz.org favicon

Bundeskonferenz Veranstaltungswirtschaft

bundeskonferenz.org

63
Non-profitGermanysmallMEDIUM

Bundeskonferenz Veranstaltungswirtschaft is a German non-profit organization representing the event industry. The website serves as a platform for advocacy, event information, and industry representation. It targets professionals and stakeholders within the German event sector, providing information about conferences, programs, and organizational goals. The organization positions itself as a strong voice for the event industry in Germany. Technically, the website is built on the Squarespace platform, leveraging modern web technologies including Google Fonts and reCAPTCHA for form security. The site is mobile-optimized and uses HTTPS with HSTS enabled, indicating a good baseline security posture. However, there is a lack of explicit privacy and cookie policies, which impacts privacy compliance. Security-wise, the site benefits from HTTPS and HSTS but lacks several recommended security headers such as Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data limits domain ownership verification, but the website content and social media presence support legitimacy. Overall, the website is professional and trustworthy for its intended audience but would benefit from improved privacy compliance and enhanced security headers. Strategic recommendations include publishing privacy and cookie policies, adding security headers, and providing incident response contact information.

45
53
17
75
62
75
100
eventindustrynon-profitconferencegermanyadvocacy
Squarespace CMSGoogle reCAPTCHAYUI JavaScript libraryGoogle Fonts (Poppins)
2025-11-01T04:55:46.419Z
elektro-sachsen-thueringen.de favicon

Fachverband Elektro- und Informationstechnik Sachsen/Thüringen

elektro-sachsen-thueringen.de

38
EnergyGermanymediumHIGH

The Fachverband Elektro- und Informationstechnik Sachsen/Thüringen is a regional trade association representing electrical and information technology craftsmen and companies in the German states of Saxony and Thuringia. The website serves as a professional platform offering information about the association, upcoming events, employee training, and member services. It targets electrical trade professionals and companies seeking industry support and networking. The business model focuses on member representation, training, and industry promotion within the regional market. Technically, the website is built on TYPO3 CMS, hosted on Strato servers, and integrates modern marketing and analytics tools such as Usercentrics CMP, Google Tag Manager, and TikTok Pixel. The site is well-structured, mobile-optimized, and provides comprehensive privacy and cookie policies with consent management, reflecting good digital maturity. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though security headers and incident response information are lacking. Overall, the site is professional, trustworthy, and compliant with GDPR requirements, supporting the association's credibility and member engagement.

-
28
2
67
62
65
-
fachverbandelektrohandwerksachsenthringenelektrotechnik+7 more
JavaScriptUsercentrics CMPGoogle Tag ManagerTikTok Pixel+2

Partner Domains:

www.mein-ehandwerk.de
partner
www.zveh.de
partner

+2 more partners

2025-11-01T04:55:26.361Z
elektrohandwerk-saar.de favicon

Landesinnung Saarland der Elektro- und Informationstechnischen Handwerke

elektrohandwerk-saar.de

38
EnergyGermanymediumHIGH

The Landesinnung Saarland der Elektro- und Informationstechnischen Handwerke is a well-established regional trade association in Germany, serving the electrical and information technology trades with a history spanning 50 years. The organization provides member services including training, certification, industry news, and event organization, positioning itself as a trusted entity within its sector. The website reflects this professionalism with good content quality, clear navigation, and consistent branding aimed at members and stakeholders in the Saarland region. Technically, the website is built on TYPO3 CMS and employs modern web technologies including Usercentrics for consent management and Google Analytics for tracking, all served over HTTPS with good mobile optimization. While performance is moderate, the site is accessible and SEO-friendly. Security practices include HTTPS enforcement and consent mechanisms, though explicit security headers and incident response information are absent. From a security perspective, the site shows a mature posture with no visible vulnerabilities or exposed sensitive data. Privacy compliance is strong with clear policies and consent management. The WHOIS data aligns with the business claims, showing domain age and registration consistency that support legitimacy. Overall, the site is low risk with good trust indicators. Strategic recommendations include enhancing security headers, publishing a security policy and incident response contacts, and implementing a vulnerability disclosure mechanism to further strengthen security and trust.

-
28
2
70
62
60
-
e-checkelektrohandwerke-markeenergiesparensicherheit+3 more
JavaScriptUsercentrics (consent management)Google AnalyticsGoogle Tag Manager+1

Partner Domains:

www.mein-ehandwerk.de
partner
www.zveh.de
partner
2025-11-01T04:55:20.815Z
feh-nrw.de favicon

Fachverband Elektro- und Informationstechnische Handwerke Nordrhein-Westfalen

feh-nrw.de

43
EnergyGermanymediumHIGH

The Fachverband Elektro- und Informationstechnische Handwerke Nordrhein-Westfalen (FEH.NRW) is a regional trade association serving the electrical and information technology trades in North Rhine-Westphalia, Germany. The website provides comprehensive information about the association's services, including member support, training, industry news, and job listings. The organization targets professionals and companies within the electrical trade sector, positioning itself as a key regional industry body. Technically, the website is built on TYPO3 CMS and employs modern web technologies including JavaScript, Usercentrics for consent management, Google Tag Manager, and TikTok analytics. The site is well-optimized for mobile devices, accessible, and SEO-friendly, reflecting a mature digital infrastructure. The use of HTTPS and consent management indicates a good level of privacy and security awareness. From a security perspective, the site enforces HTTPS and uses a consent management platform to comply with GDPR. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data is privacy protected, which is typical for such organizations and does not raise immediate concerns. Overall, the website is professional, trustworthy, and well-maintained, with a strong focus on compliance and user privacy. Strategic recommendations include publishing explicit security and incident response policies, enhancing HTTP security headers, and maintaining regular audits of third-party scripts to further strengthen security posture.

-
53
2
65
62
80
-
electricaltradeinformationtechnologytradeassociationgermanynrw+3 more
JavaScriptUsercentrics CMPGoogle Tag ManagerTikTok Pixel+1

Partner Domains:

www.mein-ehandwerk.de
partner
www.e-zubis.de
partner

+3 more partners

2025-11-01T04:55:15.497Z
eh-nb.de favicon

Landesinnungsverband für Elektro- und Informationstechnik Niedersachsen / Bremen

eh-nb.de

40
EnergyGermanymediumHIGH

The Landesinnungsverband für Elektro- und Informationstechnik Niedersachsen / Bremen is a regional trade association serving professionals in the electrical and information technology sectors within the German states of Niedersachsen and Bremen. The organization provides member services including certification as E-Marken Betrieb, educational seminars, industry news, and representation. Their website reflects a professional and consistent brand image, targeting trade members and stakeholders with relevant content and resources. Technically, the website is built on the TYPO3 CMS platform, utilizing modern web technologies such as SVG, CSS3, and JavaScript. It integrates Usercentrics for cookie consent management and TikTok analytics for user tracking. The site is mobile-optimized and performs moderately well, with good SEO and accessibility basics in place. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks visible security headers and explicit security or incident response policies. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with a comprehensive privacy policy and cookie consent banner. Overall, the website presents a low-risk profile with a solid business credibility and privacy posture. Strategic improvements could focus on enhancing security headers, publishing security policies, and expanding incident response information to further strengthen trust and compliance.

-
28
17
70
62
60
-
e-checkelektrohandwerke-markeenergiesparensicherheit+3 more
JavaScriptUsercentrics CMPTYPO3 CMSSVG+2

Partner Domains:

www.zveh.de
partner
www.mein-ehandwerk.de
partner

+1 more partners

2025-11-01T04:55:10.481Z
eh-mv.de favicon

Landesinnungsverband der Elektro- und Informationstechnischen Handwerke Mecklenburg-Vorpommern

eh-mv.de

40
EnergyGermanymediumHIGH

The Landesinnungsverband der Elektro- und Informationstechnischen Handwerke Mecklenburg-Vorpommern operates as a regional trade association focused on the electrical and information technology sectors within Mecklenburg-Vorpommern, Germany. The website serves as a comprehensive portal offering member services, training, certification programs, industry news, and job postings, positioning itself as a key resource for professionals in the electrical trade industry. The business model centers on supporting and representing member companies, providing educational resources, and facilitating industry collaboration. Technically, the website is built on the TYPO3 CMS platform and employs modern web technologies including JavaScript, AJAX for search functionality, and integrates third-party services such as Usercentrics for cookie consent management, Google Analytics, Google Tag Manager, and TikTok Pixel for analytics and marketing. The site is hosted on infrastructure associated with DomainControl, with good mobile optimization, accessibility, and SEO practices observed. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, demonstrating compliance with GDPR. However, explicit security headers and incident response policies are not evident, suggesting areas for improvement. No vulnerabilities or exposed sensitive data were detected in the analysis. The WHOIS data aligns well with the website's business claims, supporting legitimacy. Overall, the website presents a professional, trustworthy, and well-maintained digital presence for the trade association, with moderate to good scores across content quality, technical implementation, security posture, privacy compliance, and business credibility. Strategic enhancements in security headers and incident response transparency would further strengthen the security posture and trustworthiness.

-
28
2
85
62
60
-
e-checkelektrohandwerke-markeenergiesparensicherheit+2 more
JavaScriptUsercentrics (cookie consent)Google AnalyticsGoogle Tag Manager+2

Partner Domains:

www.mein-ehandwerk.de
partner
www.zveh.de
partner

+1 more partners

2025-11-01T04:55:05.470Z
liv-fehr.de favicon

Fachverband Elektro- und Informationstechnik Hessen/Rheinland-Pfalz

liv-fehr.de

39
EnergyGermanymediumHIGH

The Fachverband Elektro- und Informationstechnik Hessen/Rheinland-Pfalz (FEHR) operates as a regional trade association providing comprehensive support, consulting, and training services to entrepreneurs and businesses in the electro-technology sector within Hessen and Rheinland-Pfalz, Germany. The website serves as an information hub offering access to legal advice, technical consultations, training seminars, and member benefits, targeting local industry professionals and companies. The association maintains a strong market position as a trusted regional entity with a consistent brand presence and active member engagement. Technically, the website is built on TYPO3 CMS and integrates modern web technologies including Usercentrics for consent management, Google Analytics, Google Tag Manager, and TikTok Pixel for analytics and marketing. The site is mobile-optimized, accessible, and SEO-friendly, with moderate performance. Hosting and DNS are managed via DomainControl (GoDaddy), indicating a professional infrastructure. From a security perspective, the site enforces HTTPS and uses a consent management platform to comply with GDPR. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not visibly implemented, and no public security or incident response policies are published. No vulnerabilities or sensitive data exposures were detected. The WHOIS data aligns with the website's legitimacy, showing consistent domain registration without privacy protection, appropriate for a trade association. Overall, the website demonstrates a good balance of content quality, technical implementation, security posture, privacy compliance, and business credibility, scoring an overall AI rating of 82. Strategic improvements in security headers, incident response transparency, and vulnerability disclosure would further enhance trust and resilience.

-
28
2
72
62
65
-
tradeassociationenergyelectro-technologygdprconsentmanagement+3 more
JavaScriptUsercentrics CMPGoogle AnalyticsGoogle Tag Manager+2

Partner Domains:

www.mein-ehandwerk.de
partner
www.zveh.de
partner
2025-11-01T04:55:00.456Z
elektroverband-bayern.de favicon

Landesinnungsverband für das Bayerische Elektrohandwerk

elektroverband-bayern.de

37
EnergyGermanymediumHIGH

The Landesinnungsverband für das Bayerische Elektrohandwerk is a regional trade association representing the Bavarian electrical craft sector. It provides member services including training, certification (E-Marke), public relations, and a platform for news and events. The website targets professionals, trainees, and stakeholders in the electrical industry within Bavaria, positioning itself as an authoritative and trusted organization in this niche. Technically, the site is built on TYPO3 CMS, employs modern JavaScript libraries, and integrates a consent management platform (Usercentrics) alongside analytics tools such as Google Analytics and TikTok Pixel. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a moderate to good digital maturity. Security posture is solid with HTTPS enforced and privacy compliance mechanisms in place; however, there is room for improvement in publishing explicit security policies and implementing additional HTTP security headers. Overall, the domain registration data aligns well with the website content, indicating legitimacy and consistency. The site is free from blocking mechanisms or WAF challenges, enabling full content accessibility.

-
28
2
70
52
60
-
e-checkelektrohandwerke-markeenergiesparensicherheit+4 more
JavaScriptUsercentrics CMPGoogle AnalyticsGoogle Tag Manager+1

Partner Domains:

arge-medien.de
partner
www.zveh.de
partner

+3 more partners

2025-11-01T04:54:45.414Z
fv-eit-bw.de favicon

Fachverband Elektro- und Informationstechnik Baden-Württemberg

fv-eit-bw.de

43
EnergyGermanymediumHIGH

The Fachverband Elektro- und Informationstechnik Baden-Württemberg is a regional industry association focused on the electrical and information technology sectors in Baden-Württemberg, Germany. It provides its members with industry news, training, networking opportunities, and advocacy services. The website reflects a professional and well-structured digital presence, targeting professionals and businesses within the regional energy and technology sectors. The association maintains a strong market position as a trusted regional body with a clear focus on quality and member services. Technically, the website is built on TYPO3 CMS and integrates modern technologies including Usercentrics for consent management, Google Analytics, and TikTok Pixel for analytics and marketing. The site is hosted on a domain controlled by DomainControl, likely GoDaddy, and shows good mobile optimization and SEO practices. Performance is moderate with no critical technical issues detected. From a security perspective, the website uses HTTPS with SSL and implements privacy best practices such as IP anonymization and cookie consent mechanisms. However, it lacks explicit security headers and does not provide visible security or incident response policies. No vulnerabilities or suspicious content were detected. Overall, the security posture is good but could be improved with additional headers and documented policies. The overall risk assessment is low with no signs of malicious activity or content safety concerns. Strategic recommendations include enhancing security headers, publishing incident response information, and maintaining regular audits of third-party scripts to ensure ongoing compliance and security.

-
28
17
85
62
70
-
industryassociationelectricalengineeringinformationtechnologybaden-wrttembergprofessionalservices+3 more
JavaScriptUsercentrics CMPGoogle AnalyticsTikTok Pixel

Partner Domains:

www.mein-ehandwerk.de
partner
www.e-zubis.de
partner

+3 more partners

2025-11-01T04:54:40.400Z
rheinzink.de favicon

RHEINZINK

rheinzink.de

55
ManufacturingGermanylargeMEDIUM

RHEINZINK is a globally recognized manufacturer specializing in titanium zinc products, primarily serving the construction and architectural sectors. The company positions itself as a market leader with a strong emphasis on quality, sustainability, and innovative solutions for roofing, facades, and drainage systems. Their website reflects a mature digital presence with comprehensive product information, localized domains for international markets, and a professional design tailored to architects, craftsmen, distributors, and builders. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies and includes performance optimizations and mobile responsiveness. Security measures such as HTTPS, security headers, and cookie consent mechanisms are in place, indicating a solid security posture. However, explicit security policies and incident response contacts are not prominently published. Overall, the site demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations such as GDPR. The absence of blocking mechanisms or WAF challenges allows full content accessibility and analysis. Strategic recommendations include enhancing security transparency and publishing vulnerability disclosure information to further strengthen trust.

15
83
2
75
72
65
40
manufacturingconstructionarchitecturebuildingmaterialstitaniumzinc+3 more
TYPO3 CMSJavaScriptCSSHTML5+1

Partner Domains:

rheinzink.at
subsidiary
rheinzink.ch
subsidiary

+3 more partners

2025-11-01T04:36:02.782Z
tesvolt.com favicon

TESVOLT AG

tesvolt.com

57
EnergyGermanymediumMEDIUM

TESVOLT AG is a German-based company specializing in the production and provision of lithium battery storage systems tailored for renewable energy applications across industry, commerce, and agriculture sectors. The company positions itself as a leading European full-service provider with a strong market presence demonstrated by over 6,000 projects worldwide. TESVOLT offers a broad product portfolio including cabinet and container systems, energy management solutions, and partner programs to support sustainable energy transitions. Technically, the website is built on the CIDEMOS CMS platform with modern web technologies such as lazy loading, JSON-LD structured data, and Google Tag Manager for analytics. The site is well-optimized for mobile devices and SEO, providing a professional user experience with clear navigation and comprehensive content. From a security perspective, the website enforces HTTPS, uses CSRF tokens in forms, and implements cookie consent mechanisms aligned with GDPR requirements. However, explicit security headers are not detected, and no dedicated incident response or vulnerability disclosure pages are present, indicating room for improvement in security transparency and defense-in-depth. Overall, the website and business exhibit a high level of professionalism and trustworthiness, supported by certifications, awards, and active social media engagement. The only notable concern is the lack of WHOIS data, which may be due to domain privacy or registration anomalies but does not currently detract significantly from the company's credibility. Strategic recommendations include enhancing security headers, publishing incident response information, and implementing a security.txt file to further strengthen security posture and stakeholder trust.

75
70
80
-
17
60
72
energystoragelithiumbatteryrenewableenergybatterysystemsenergymanagement+2 more
CIDEMOS CMSGoogle Tag ManagerFontAwesomeSwiper.js+2

Partner Domains:

tesvolt-energy.com
partner
tesvolt-projects.com
partner

+1 more partners

2025-11-01T04:35:35.930Z
bsw-solar-shop.de favicon

Bundesverband Solarwirtschaft (BSW-Solar) e.V.

bsw-solar-shop.de

49
EnergyGermanysmallHIGH

The website www.bsw-solar-shop.de serves as the official online shop for the Bundesverband Solarwirtschaft (BSW-Solar) e.V., a German solar industry association. It offers publications, guides, and studies related to solar thermal energy, photovoltaics, and energy storage. The platform targets investors, members of the association, and other stakeholders interested in solar energy solutions. The business model is primarily e-commerce focused on niche solar energy content, supported by member discounts and campaign information. The site holds a strong position within the German solar energy sector as a trusted source of industry publications. Technically, the website is built on the Magento CMS platform, utilizing standard web technologies such as HTML5, CSS, and JavaScript. The site demonstrates good mobile responsiveness and basic accessibility features. Hosting is provided by a German hosting provider (kasserver.com), and the site structure supports clear navigation and SEO best practices. However, some modern security headers and cookie consent mechanisms are missing, which could be improved to enhance compliance and security. From a security perspective, the site uses HTTPS (assumed though not explicitly confirmed), does not expose sensitive data, and avoids vulnerable libraries in the visible code. However, it lacks explicit security headers and published security policies or incident response information. No vulnerability disclosure or security.txt files are present. The site does not appear to use tracking or advertising scripts, which reduces privacy risks but also indicates limited marketing automation. Overall, the website is professional, trustworthy, and focused on its niche market. Security posture is moderate with room for improvement in headers and compliance mechanisms. Privacy compliance is basic, with a privacy policy present but no cookie consent banner. The risk level is low, but strategic improvements in security and privacy transparency are recommended to maintain trust and compliance.

30
28
2
55
52
50
100
solarenergiephotovoltaiksolarthermieenergiebsw-solar+1 more
JavaScriptCSSHTML5
2025-11-01T04:25:02.376Z
brezel.io favicon

Kiwis & Brownies GbR

brezel.io

39
TechnologyGermanysmallHIGH

Brezel.io is a German-based small technology company specializing in tailored enterprise software solutions including ERP, CRM, PIM, and DAM systems. Their business model focuses on providing customizable low-code and no-code platforms that enable businesses to digitize and automate complex workflows. The company emphasizes flexibility, security, and modern web technologies, targeting businesses that require bespoke digitalization solutions rather than off-the-shelf products. Their market position is niche but well-defined, with a focus on industrial, hospitality, and membership management sectors. Technically, the website is built on a modern stack including Laravel, Vue.js, and supports a Progressive Web App for cross-device compatibility. The site is mobile optimized and offers good user experience and navigation clarity. However, performance is moderate and accessibility features are basic. The hosting and DNS setup is standard with no DNSSEC enabled, and no CMS detected. From a security perspective, the site implements two-factor authentication and WebAuthn for user login security and includes CSRF tokens. However, it lacks visible HTTP security headers and DNSSEC, and does not publish security or incident response policies. Privacy compliance is weak due to absence of privacy and cookie policies and no visible consent mechanisms, despite the use of tracking scripts. WHOIS data is consistent and transparent, supporting legitimacy. Overall, the website presents a professional and trustworthy business front with good technical foundations but requires improvements in privacy compliance and security best practices to enhance trust and regulatory adherence.

15
35
2
45
72
70
-
erpcrmpimdamlow-code+6 more
Vue.jsSASSHTML5Laravel+1

Partner Domains:

kiwis-and-brownies.de
partner
2025-11-01T04:17:16.030Z
kiwis-and-brownies.de favicon

Christian Kiewaldt & Benjamin Braun GbR

kiwis-and-brownies.de

45
TechnologyGermanysmallHIGH

KIWIS & BROWNIES is a small German software development company specializing in custom enterprise software, eCommerce solutions using Magento, and promotional applications to increase reach and lead generation. The company operates primarily in the Gummersbach and Oberberg regions of Germany, targeting local businesses seeking digital transformation and marketing services. Their website reflects a professional and modern digital presence with a focus on clear communication and customer engagement via WhatsApp and downloadable informational materials. Technically, the website employs standard modern web technologies including HTML5, CSS, JavaScript with jQuery, and Google Fonts. The hosting is managed via DomainControl nameservers, and Magento is indicated as the eCommerce platform. The site is moderately optimized for performance and mobile devices, though accessibility features are basic. SEO practices are adequately implemented with meta tags and structured content. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and a formal security policy or incident response contacts. The privacy policy is comprehensive and GDPR compliant, but no cookie consent mechanism is present, which is a compliance gap. No vulnerability disclosure or security.txt files are found, limiting transparency in security practices. Overall, the website presents a trustworthy and professional image suitable for its business scope. The risk level is moderate with recommendations to enhance security headers, implement cookie consent, and publish security policies to improve compliance and trust. The domain registration aligns with the business identity, supporting legitimacy.

15
40
2
70
72
65
20
softwareherstellerdigitalisierungcrmerpgummersbach+12 more
HTML5CSSJavaScriptjQuery+2
2025-11-01T04:04:42.371Z
ffii.org favicon

Foundation for a Free Information Infrastructure e.V.

ffii.org

50
TechnologyGermanysmallMEDIUM

The Foundation for a Free Information Infrastructure (FFII) is a well-established European non-profit organization advocating against software patents and promoting open standards and free software since 1999. It operates primarily in the technology policy sector, targeting software developers, civil society, and policymakers. The organization is recognized for its influential role in preventing the EU software patent directive and continues active engagement through events, working groups, and public education. Technically, the website is built on WordPress with a modern theme and plugins such as Contact Form 7 and Jetpack, supported by Google reCAPTCHA for form security. The site demonstrates good mobile optimization, SEO practices, and moderate performance. Hosting is managed by Gandi SAS, a reputable registrar and hosting provider. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms compliant with GDPR. However, DNSSEC is not enabled, and some security headers like Content-Security-Policy are missing, representing areas for improvement. No incident response or vulnerability disclosure policies are published, which could enhance trust and security posture. Overall, the website is professional, trustworthy, and content-rich, with a strong focus on advocacy and community engagement. Strategic recommendations include enhancing DNS security, publishing security policies, and improving HTTP security headers to strengthen the security posture and compliance.

15
80
17
70
72
40
20
softwarepatentsopenstandardsnon-profitadvocacyeuropeanunion+2 more
WordPressjQueryContact Form 7Jetpack+2

Partner Domains:

webshop.ffii.org
partner
members.ffii.org
partner

+3 more partners

2025-11-01T03:16:11.846Z
berufundpflege-nrw.de favicon

Kuratorium Deutsche Altershilfe

berufundpflege-nrw.de

48
GovernmentGermanylargeHIGH

The website berufundpflege-nrw.de represents a government-supported non-profit program managed by Kuratorium Deutsche Altershilfe, aimed at improving the compatibility of professional work and caregiving responsibilities for employees in North Rhine-Westphalia, Germany. It offers a comprehensive web portal, qualification programs for workplace care guides, a digital care toolkit, and employer branding tools. The program targets companies seeking to support employees with caregiving duties and secure skilled workforce retention. The site is well-positioned regionally with strong institutional backing and partnerships. Technically, the website is built on WordPress with modern plugins such as Yoast SEO, Advanced Custom Fields Pro, and Borlabs Cookie for privacy compliance. It uses Bootstrap for responsive design and integrates Matomo Tag Manager for analytics, reflecting a mature digital infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, though some security headers could be improved. From a security perspective, the site enforces HTTPS and cookie consent mechanisms, with no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for enhanced trust and compliance. The WHOIS data is minimal but consistent with the business profile, showing no suspicious patterns. Overall, berufundpflege-nrw.de is a professional, trustworthy, and well-maintained website serving a clear social and governmental mission. Strategic improvements in security headers and transparency around incident response would further strengthen its posture.

15
43
10
70
62
60
40
governmentnon-profithealthcarework-lifebalancecaregiving+2 more
WordPressYoast SEO pluginjQueryBootstrap+3

Partner Domains:

berufundfamilie.de
partner
kda.de
parent
2025-11-01T03:15:05.614Z
A

AllBytes GmbH

allbytes.de

56
TechnologyGermanysmallMEDIUM

AllBytes GmbH is a specialized software development agency based in Germany, focusing on delivering tailored and agile software solutions primarily for small and medium-sized enterprises (SMEs) and startups. Their services encompass custom software development, web applications, interface and database development, as well as CMS solutions like Shopware and WordPress. The company positions itself as a reliable partner for digital transformation and process optimization, emphasizing flexibility, scalability, and security in its offerings. The website reflects a professional and comprehensive digital presence with clear service descriptions and client references. Technically, the website is built on WordPress using modern frameworks and plugins such as React, Angular, Vue.js, Yoast SEO, and hCaptcha for security. The site is mobile-optimized, SEO-friendly, and incorporates GDPR-compliant cookie consent mechanisms. Performance is moderate with room for optimization, but overall the technical infrastructure supports a robust user experience. From a security perspective, the site enforces HTTPS and uses CAPTCHA to protect forms, indicating a good baseline security posture. However, there is no explicit security policy or incident response information publicly available, and security headers are not explicitly detected, suggesting areas for improvement. No vulnerabilities or suspicious activities were identified in the analysis. Overall, AllBytes GmbH presents a trustworthy and professional business with a solid digital footprint. The domain and WHOIS data align with the company branding, and the site complies with GDPR requirements. Strategic recommendations include enhancing security headers, publishing security policies, and adding vulnerability disclosure information to further strengthen trust and compliance.

55
85
2
60
72
65
20
softwareentwicklungagenturindividuellesoftwaredigitalisierungwebapps+5 more
JavaPythonPHPReact+8
2025-11-01T02:57:19.949Z