Skip to main content

Government security reports

Browse 7,633 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

155885
Websites
130
Industries
113
Countries
52
Avg Score
Page 16 of 153|Showing 751-800 of 7633
pardubice.cz favicon

pardubice.cz

pardubice.cz

45
GovernmentCzech RepublicsmallHIGH

Pardubice.cz operates as a regional news and cultural events portal serving the Pardubice region in the Czech Republic. The website provides timely news updates, event information, and cultural and sports content targeted at local residents and visitors. The business model centers on information dissemination with a focus on regional relevance, positioning itself as a trusted local media source. The domain is well-established since 1997, reinforcing its credibility and market presence. Technically, the website is built on WordPress CMS, leveraging popular plugins such as Yoast SEO and MonsterInsights for analytics. The infrastructure includes modern web technologies like jQuery and Facebook SDK integration. Hosting is managed through a registrar with consistent name servers. The site demonstrates good mobile optimization, SEO practices, and moderate performance. From a security perspective, the site enforces HTTPS with excellent SSL configuration and employs cookie consent mechanisms aligned with GDPR requirements. However, explicit security headers and formal security policies are absent, indicating room for improvement in security posture. No vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, pardubice.cz presents a professional, trustworthy, and compliant web presence suitable for its regional audience. Strategic enhancements in security headers and incident response disclosures would further strengthen its security maturity and user trust.

40
25
2
65
42
85
20
regionalnewscultureeventsczechrepublicwordpress+2 more
WordPressYoast SEO pluginGoogle Analytics (MonsterInsights)jQuery+5
2025-10-30T22:35:52.478Z
drks.de favicon

Bundesinstitut für Arzneimittel und Medizinprodukte (BfArM)

drks.de

62
GovernmentGermanylargeMEDIUM

The Bundesinstitut für Arzneimittel und Medizinprodukte (BfArM) is a German federal government agency responsible for the regulation and oversight of pharmaceuticals and medical devices. The website serves as an authoritative source for clinical trial registration (DRKS), pharmacovigilance, medical device regulation, and related regulatory information. It targets healthcare professionals, researchers, regulatory bodies, and the general public seeking official information on clinical studies and medical product safety. The site is built on the Government Site Builder CMS, featuring a professional, accessible, and mobile-optimized design with comprehensive navigation and content relevant to its regulatory mission. Technically, the website employs modern web standards including responsive CSS, SVG graphics, and a manifest for progressive web app capabilities. It uses HTTPS with good SSL configuration and implements cookie consent mechanisms compliant with GDPR, including opt-in for statistical cookies via Matomo analytics. No advertising or third-party marketing tools are detected, reflecting its government nature. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and cookie consent. However, explicit security headers and a public security or incident response policy are not evident. No vulnerabilities or exposed sensitive data were found. WHOIS data is minimal but consistent with a government domain managed by German federal IT infrastructure. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. It provides a secure and user-friendly platform for disseminating critical regulatory information. Strategic recommendations include enhancing security header implementation, publishing a vulnerability disclosure policy, and providing clearer direct contact information for security incidents.

70
28
2
70
77
70
100
bfarmclinicaltrialspharmaceuticalregulationmedicaldevicesgovernment+1 more
Government Site Builder CMSSVG graphicsResponsive CSS stylesheetsManifest for PWA+1
2025-10-30T22:31:34.295Z
rki.de favicon

Robert Koch-Institut

rki.de

65
GovernmentGermanylargeMEDIUM

The Robert Koch-Institut (RKI) is the central federal institution in Germany responsible for disease surveillance and prevention. The website serves as an authoritative public health portal providing comprehensive information, research data, and guidance on infectious and non-infectious diseases. It targets public health professionals, government agencies, researchers, and the general public. The RKI holds a strong market position as Germany's leading public health authority. Technically, the website is built on the Government Site Builder CMS, featuring modern HTML5, CSS3, and JavaScript technologies. It is hosted by ITZBund, a government IT service provider, and demonstrates good mobile optimization, accessibility, and SEO practices. The site employs Matomo analytics with anonymized data collection and a robust cookie consent mechanism, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses secure forms, but lacks explicit security headers and a published security policy or incident response contact. No vulnerabilities or suspicious activities were detected. Privacy compliance is strong, with GDPR-aligned policies and transparent cookie management. Overall, the RKI website is a professional, trustworthy, and well-maintained government resource with excellent content quality and privacy practices. Strategic improvements could include adding security headers and publishing a formal security policy to enhance trust and compliance further.

70
28
17
70
77
70
100
publichealthgovernmenthealthcarediseasepreventionepidemiology+2 more
HTML5CSS3JavaScriptGovernment Site Builder CMS
2025-10-30T22:31:29.284Z
envisionsaintjohn.com favicon

Envision Saint John: The Regional Growth Agency

envisionsaintjohn.com

10
GovernmentCanadamediumCRITICAL

Envision Saint John: The Regional Growth Agency is a government-affiliated organization focused on promoting economic growth, investment, and quality of life in the Saint John region of Canada. The website serves as a comprehensive portal for investors, residents, visitors, and businesses, offering detailed information on regional advantages, services, and community highlights. The agency positions itself as a key regional player facilitating growth through strategic initiatives in real estate, workforce development, and destination marketing. Technically, the website is built on Drupal 10, leveraging modern web technologies including jQuery, Slick Carousel, and various tracking pixels for analytics and marketing. The site is mobile-optimized, accessible, and well-structured with clear navigation and professional design. However, some security best practices such as security headers and cookie consent mechanisms are missing, which could be improved to enhance compliance and user trust. From a security perspective, the site uses HTTPS and integrates secure forms with CAPTCHA, but lacks visible security headers and explicit incident response or vulnerability disclosure information. The absence of WHOIS data for the domain reduces transparency and trustworthiness, although the website content and branding suggest legitimacy. Overall, the website is a well-executed regional growth platform with strong business credibility and user experience. Strategic improvements in privacy compliance, security headers, and domain transparency would further strengthen its security posture and trust signals.

-
-
-
-
-
-
-
regionalgrowthinvestmentsaintjohneconomicdevelopmenttourism+3 more
Drupal 10jQuerySlick CarouselFont Awesome+7

Partner Domains:

saintjohn.ca
partner
quispamsis.ca
partner

+3 more partners

2025-10-30T20:53:21.043Z
vision2040.ca favicon

NACO

vision2040.ca

8
GovernmentCanadamediumCRITICAL

The website 'vision2040.ca' represents NACO's initiative to establish a unified capital strategy aimed at mobilizing $15 billion in private capital to build Canada's innovation economy. The site positions itself as a national strategy platform targeting stakeholders in the Canadian innovation ecosystem, including investors and policymakers. The business model appears to be advocacy and strategy development within the government or non-profit sector, focusing on economic growth through innovation capital. Technically, the website is built on the Softr platform, leveraging Bootstrap 4.6.2 and Font Awesome for styling and icons. It integrates Mailchimp for marketing and tracking purposes. The site is mobile-optimized with good design quality and clear navigation, though accessibility features are basic. Performance is moderate, with no evident blocking by WAF or security challenges. From a security perspective, the site lacks visible security headers and privacy-related policies, which are critical for compliance and trust. The WHOIS lookup failed, indicating the domain may be unregistered or privacy-protected, which reduces trustworthiness. No contact information or incident response channels are provided, limiting transparency. No vulnerabilities or exposed sensitive data were detected in the content. Overall, the website is professional and relevant to its target audience but requires improvements in privacy compliance, security best practices, and transparency to enhance trust and reduce risk. Verification of domain registration and addition of contact and policy pages are recommended.

-
-
-
-
-
-
-
innovationcapitalstrategycanadanacotechnology+2 more
Bootstrap 4.6.2jQuerySoftr platformFont Awesome 6.5.0
2025-10-30T20:53:00.986Z
insidelbnews.com favicon

insideLB news

insidelbnews.com

10
GovernmentUnited StatesmediumCRITICAL

InsideLB News is an official digital news platform operated by the City of Long Beach, providing residents and stakeholders with timely updates on city news, events, and initiatives across various sectors including arts, culture, economic opportunity, and infrastructure. The website is well-branded, consistent with city government identity, and targets a broad audience including residents, businesses, and visitors. The platform leverages modern web technologies such as Nuxt.js and Vue.js, and integrates analytics and monitoring tools like Google Tag Manager and Application Insights to maintain operational insights. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data, but lacks some recommended security headers and does not publish explicit security or incident response policies. Privacy compliance is limited, with no visible privacy or cookie policies on the homepage, which could be improved to meet regulatory expectations. The absence of WHOIS data for the domain is unusual and warrants verification, though the site content and social media presence strongly support its legitimacy. Overall, the website demonstrates a good level of professionalism, technical implementation, and content quality, but could enhance its privacy and security posture to better protect users and comply with best practices. Strategic improvements in policy transparency and security headers would strengthen trust and compliance.

-
-
-
-
-
-
-
insidelbnewslongbeachcitynewsartscultureentertainment+3 more
Nuxt.jsVue.jsGoogle Tag ManagerGoogle Translate+2
2025-10-30T20:30:38.716Z
schadefonds.nl favicon

Schadefonds Geweldsmisdrijven

schadefonds.nl

62
GovernmentNetherlandsmediumMEDIUM

Schadefonds Geweldsmisdrijven is a Dutch government-backed compensation fund established in 2000 to provide financial support to victims of violent and sexual crimes, as well as their relatives and witnesses. The organization operates with a clear mission to acknowledge victims' suffering and offer monetary compensation without requiring legal proceedings against perpetrators. The website reflects a mature digital presence with comprehensive content, clear navigation, and professional design, targeting victims and stakeholders in the Netherlands. Collaboration with Slachtofferhulp Nederland enhances victim support services. Technically, the website is built on WordPress with modern plugins such as Gravity Forms and Yoast SEO Premium, ensuring good SEO and user experience. It uses HTTPS with DNSSEC enabled, integrates analytics tools like Google Analytics and Hotjar, and employs secure login via DigiD. The site is mobile-optimized and accessible, with a fast to moderate performance profile. From a security perspective, the site demonstrates strong baseline protections including HTTPS, DNSSEC, and secure mail sending via Zivver. However, explicit security policies, incident response details, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. No vulnerabilities or suspicious activities were detected. Overall, Schadefonds Geweldsmisdrijven presents a trustworthy, professional, and secure online presence consistent with its government affiliation and mission. Strategic recommendations include publishing detailed security policies, incident response plans, and vulnerability disclosure information to enhance transparency and trust further.

15
83
2
70
72
70
100
governmentvictimsupportcompensationnon-profitdutch+3 more
WordPress 6.8.3Gravity Forms pluginYoast SEO PremiumjQuery+5

Partner Domains:

slachtofferhulp.nl
partner
werkenbijschadefonds.nl
partner
2025-10-30T20:26:17.952Z
deutsche-meeresforschung.de favicon

Konsortium Deutsche Meeresforschung

deutsche-meeresforschung.de

59
GovernmentGermanymediumMEDIUM

The Konsortium Deutsche Meeresforschung (KDM) is a German non-profit consortium dedicated to coordinating and promoting marine research. The website serves as an information hub for current news, strategic groups, cooperation projects, events, and publications related to ocean science. It targets scientists, research institutions, policymakers, and the interested public. The organization holds a significant position in the German marine research landscape, facilitating national and international collaborations. Technically, the website is built on WordPress and employs modern web technologies including Matomo for privacy-focused analytics, Mapbox for interactive maps, and jQuery. The site is well-structured, mobile-optimized, and SEO-friendly, with a clear navigation system and multilingual support (German and English). Consent mechanisms for cookies and external media are implemented, reflecting good privacy practices. From a security perspective, the site uses HTTPS with a strong SSL configuration and disables cookies in Matomo to enhance privacy. However, it lacks explicit security headers and does not provide visible security policies or incident response information. No vulnerabilities or exposed sensitive data were detected. The domain WHOIS data is minimal but consistent with the organization's identity, supporting legitimacy. Overall, the website presents a professional, trustworthy, and privacy-conscious digital presence for the KDM. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and improving accessibility features to further strengthen the site's security posture and compliance.

50
28
2
65
72
70
100
marineresearchsciencenon-profitgermanyenvironment+2 more
WordPressPHPMatomo AnalyticsMapbox API+2
2025-10-30T20:21:01.343Z
leibniz-zmt.de favicon

Leibniz Zentrum für Marine Tropenforschung (ZMT)

leibniz-zmt.de

63
GovernmentGermanymediumMEDIUM

The Leibniz Zentrum für Marine Tropenforschung (ZMT) is a German research institute specializing in the study of tropical and subtropical coastal ecosystems and their significance for nature and humans. The website reflects a well-established scientific organization with numerous international research projects, funded by various governmental and non-governmental bodies. The content is primarily in German with English alternatives, targeting scientific communities, partners, and stakeholders interested in marine research. Technically, the website is built on Joomla CMS with a modern tech stack including Bootstrap, jQuery, Font Awesome, and Leaflet for interactive maps. Accessibility features and responsive design are implemented, providing a good user experience across devices. The site uses Matomo for analytics, indicating a preference for privacy-conscious tracking. Security posture is moderate; HTTPS is used, and CSRF tokens are present, but explicit security headers and published security policies are missing. No vulnerability disclosure or incident response contacts are visible, which could be improved to enhance trust and compliance. Privacy and cookie policies are not explicitly found, indicating a gap in GDPR compliance documentation. Overall, the website is professional, content-rich, and trustworthy from a business perspective but could benefit from enhanced privacy and security disclosures to meet modern compliance standards fully.

55
28
25
85
67
70
100
marineresearchtropicalecosystemsscientificprojectsleibnizgermany+2 more
jQueryBootstrap v3Font Awesome 6.5.2Leaflet.js+6
2025-10-30T20:20:56.332Z
skatturinn.is favicon

Ríkisskattstjóri

skatturinn.is

65
GovernmentIcelandlargeMEDIUM

The website www.skatturinn.is serves as the official online presence of Ríkisskattstjóri, the Icelandic national tax and customs authority. It provides comprehensive information and services related to tax assessment, collection, customs duties, and enforcement. The site targets individuals, businesses, tax professionals, and government entities, offering detailed guidance, calculators, forms, and self-service portals. The content is primarily in Icelandic with an English section to accommodate international users. The site is well-structured, professionally designed, and rich in relevant content, reflecting a mature digital presence for a government entity. Technically, the website is built on the Eplica CMS platform and leverages modern JavaScript libraries including jQuery and GSAP for interactive elements. It integrates multiple analytics and tracking tools such as Google Analytics and Siteimprove, and features an IBM Watson Assistant chatbot localized in Icelandic. The site is mobile-optimized and accessible, with good SEO practices evident from meta tags and structured navigation. Performance is moderate, with asynchronous loading of scripts enhancing user experience. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML content. However, no explicit security headers were detected in the provided data, suggesting room for improvement in HTTP security configurations. The use of third-party scripts necessitates ongoing vulnerability management. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. Contact information is available, enhancing trust and transparency. Overall, the website presents a low-risk profile with a high degree of professionalism and compliance. The main concern is the absence of WHOIS data, which is unusual for a government domain but may be due to Icelandic domain registration norms. Strategic recommendations include enhancing HTTP security headers, continuous monitoring of third-party scripts, and improving WHOIS transparency if possible to bolster trust further.

80
35
2
70
67
85
100
governmenttaxcustomsicelandpublicservices+2 more
JavaScriptjQuery 2.2GSAP TweenMaxGoogle Tag Manager+4

Partner Domains:

innskraning.rsk.is
partner
tiund.rsk.is
partner

+3 more partners

2025-10-30T20:20:46.310Z
bfk.no favicon

Buskerud fylkeskommune

bfk.no

64
GovernmentNorwaymediumMEDIUM

Buskerud fylkeskommune operates as the regional government authority for Buskerud county in Norway, providing public services, political information, and educational resources. The website serves residents and stakeholders with relevant information about the county's services and governance. The domain and branding are consistent with a government entity, and the content is primarily in Norwegian, targeting local users. The business model is public sector focused, emphasizing service delivery rather than commercial activities. Technically, the website employs a mix of modern JavaScript modules and legacy jQuery libraries, hosted on a CMS platform identified as Acos CMS. The site uses Google Fonts and external icon fonts, with Siteimprove Analytics integrated for monitoring accessibility and quality. The website is moderately performant and well-optimized for mobile devices, with good accessibility and SEO practices observed. From a security perspective, the site uses HTTPS (implied by domain and external resources), but no explicit security headers were detected in the provided content. There is no visible privacy or cookie policy, nor incident response or security contact information, indicating gaps in compliance and transparency. No vulnerabilities or suspicious content were found, and the domain registration is consistent with the official government entity, supporting legitimacy. Overall, the website is a credible government portal with good content and technical implementation but requires improvements in privacy compliance and security transparency to enhance trust and regulatory adherence.

55
50
2
83
62
85
100
governmenteducationpublicservicesregionalnorway
JavaScript ES modulesjQuery 1.12.4Remixicon fontsGoogle Fonts (Inter)+1
2025-10-30T20:19:56.196Z
ltkt.lt favicon

Lietuvos kultūros taryba

ltkt.lt

44
GovernmentLithuaniamediumHIGH

Lietuvos kultūros taryba is the official Lithuanian Culture Council responsible for providing funding, guidelines, and support to cultural organizations, creators, and regional cultural development initiatives within Lithuania. The organization operates as a governmental or non-profit entity, serving a broad audience including NGOs, private and public cultural institutions, and individual creators. Their website offers comprehensive information on funding competitions, project financing, stipends, and cultural research, positioning them as a key national cultural funding body. Technically, the website employs modern web technologies such as jQuery, Select2, Fancybox, and integrates Google Tag Manager and Google Analytics for analytics and marketing purposes. Accessibility is a strong focus, with the implementation of the Readabler tool providing multiple accessibility modes and features. The site is mobile-optimized and demonstrates good SEO practices, although some security headers are missing. From a security perspective, the site uses HTTPS and has a robust cookie consent mechanism aligned with GDPR requirements. However, the absence of WHOIS data limits domain registration trust verification, and no explicit security or incident response policies are published. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website is professional, trustworthy, and well-structured, serving its governmental cultural funding role effectively. Strategic improvements include adding security headers, publishing terms of service and security policies, and verifying domain registration details to enhance trustworthiness.

20
25
17
75
72
65
-
culturefundinglithuaniagovernmentnon-profit+3 more
jQuery 3.7.1Select2FancyboxReadabler accessibility tool+2
2025-10-30T20:18:00.883Z
aoc.cat favicon

Open Administration Consortium of Catalonia (AOC Consortium)

aoc.cat

51
GovernmentSpainmediumMEDIUM

The Open Administration Consortium of Catalonia (AOC Consortium) is a government-backed organization focused on facilitating the digital transformation of local administrations in Catalonia. The website provides comprehensive information about their services, including digital maturity assessment, change management, innovation initiatives, and support tools. The consortium positions itself as a key regional player in public sector digital services, targeting local government entities to improve administrative efficiency, citizen satisfaction, and transparency. Technically, the website is built on WordPress, utilizing modern plugins such as Slider Revolution, EventON, and Ajax Search Lite. It integrates analytics and tracking tools like Google Tag Manager and Hotjar, indicating a mature digital infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, with multilingual support enhancing its reach. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, explicit security headers are not detected, and no dedicated security or incident response policies are published. The WHOIS data is unavailable, likely due to privacy or registry policies, which slightly reduces domain trustworthiness. Nevertheless, the presence of official government logos, partner links, and comprehensive privacy and cookie policies supports a strong trust profile. Overall, the website demonstrates a professional, secure, and user-friendly platform aligned with its mission to support digital government transformation. Strategic recommendations include enhancing security headers, auditing third-party plugins regularly, and publishing explicit security and incident response policies to further strengthen trust and compliance.

45
50
17
70
52
70
20
governmentdigitaltransformationlocaladministrationpublicservicescatalonia+2 more
WordPressPHPjQueryGoogle Fonts+7

Partner Domains:

www.gencat.cat
partner
www.localret.cat
partner

+3 more partners

2025-10-30T20:02:52.360Z
veteransflorida.org favicon

Veterans Florida

veteransflorida.org

60
GovernmentUnited StatesmediumMEDIUM

Veterans Florida is a state-established organization dedicated to supporting separating and retiring servicemembers, veterans, and their families in Florida through career, SkillBridge, and entrepreneur initiatives. The organization holds a strong market position as Florida's primary veteran support entity, offering a broad range of services including workforce transition, entrepreneur training, and employer engagement. The website reflects a professional and consistent brand aligned with its mission and target audience. Technically, the website is built on WordPress using the Avada theme and integrates modern plugins for event management and analytics. It employs Google Tag Manager and Google Analytics for tracking, with hosting and domain registration managed through reputable providers. The site demonstrates good mobile optimization and SEO practices, though some accessibility features are basic. From a security perspective, the site enforces HTTPS and has domain status protections but lacks DNSSEC and security headers, which are recommended for enhanced security. There is no visible cookie consent mechanism or detailed privacy compliance features, indicating room for improvement in GDPR adherence. No incident response or vulnerability disclosure policies are published, which could be addressed to strengthen trust. Overall, Veterans Florida's website is a credible and professional platform serving its community effectively, with moderate technical and security maturity. Strategic enhancements in security headers, DNSSEC, privacy compliance, and incident response documentation would further improve its posture and user trust.

30
53
17
70
52
80
100
veteransfloridacareerskillbridgeentrepreneur+3 more
WordPressAvada ThemejQueryGoogle Tag Manager+4

Partner Domains:

floridavets.org
partner
visitflorida.com
partner

+3 more partners

2025-10-30T18:21:25.655Z
A

Acord Ciutadà (implied)

mapainteract.es

53
GovernmentSpainsmallMEDIUM

The website serves as a private access portal for member entities of the 'Acord Ciutadà', a local government initiative in Barcelona focused on social inclusion and reducing social inequalities. It allows members to update their organizational data, request official seals, and participate in strategic social programs. The site targets non-profit and governmental organizations involved in this agreement. The business model is membership-based, supporting collaboration and data management within a defined community. Technically, the website uses basic HTML, CSS, and JavaScript without advanced frameworks or CMS detected. The design is functional but basic, with limited mobile optimization and accessibility features. No analytics or advertising technologies are present, indicating a focus on privacy and minimal tracking. However, the absence of HTTPS enforcement and security headers is a notable technical gap. From a security perspective, the site uses POST for login but lacks visible protections such as CSRF tokens or security headers. No privacy or cookie policies are present, which is a compliance concern under GDPR. The WHOIS data is unavailable due to .es domain restrictions, but the domain aligns with the local government context, suggesting legitimacy. Overall, the security posture is moderate but requires improvements to meet modern standards. The overall risk is moderate with recommendations to implement HTTPS, add security headers, introduce privacy and cookie policies, and enhance form security. These steps will improve trust, compliance, and protection for users accessing sensitive organizational data.

15
25
17
70
67
75
100
loginsocialinclusiongovernmentnon-profitcatalan+1 more
HTMLCSSJavaScript
2025-10-30T15:06:04.297Z
neustadt-bei-coburg.de favicon

Stadt Neustadt bei Coburg

neustadt-bei-coburg.de

57
GovernmentGermanysmallMEDIUM

The website www.neustadt-bei-coburg.de serves as the official municipal portal for the city of Neustadt bei Coburg in Germany. It provides comprehensive information about local government services, community life, cultural events, economic development, and citizen resources. The site targets residents, visitors, and local businesses, offering structured navigation and relevant content to support civic engagement and municipal transparency. The business model is that of a government entity focused on public service delivery. Technically, the website is built on TYPO3 CMS, leveraging modern frontend technologies such as Bootstrap, FontAwesome, and OpenLayers for maps. It is hosted by netcup GmbH, as inferred from the nameservers. The site demonstrates good mobile optimization, accessibility features, and moderate performance. SEO practices are basic but functional. Analytics are handled via Matomo with a clear cookie consent mechanism, reflecting a commitment to privacy compliance. From a security perspective, the site enforces HTTPS and includes cookie consent banners, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The WHOIS data is consistent and legitimate, supporting the trustworthiness of the domain. No WAF or blocking mechanisms interfere with content access. Overall, the website presents a professional, trustworthy, and privacy-conscious municipal portal with room for improvement in security headers and incident response transparency. The risk profile is low, with no critical issues identified.

85
83
17
70
62
60
-
governmentmunicipaltypo3gdprmatomo+2 more
TYPO3 CMSBootstrap CSSFontAwesome IconsTiny Slider+2
2025-10-30T14:23:15.474Z
cermna-n-orl.cz favicon

Čermná nad Orlicí

cermna-n-orl.cz

39
GovernmentCzech RepublicsmallHIGH

The website www.cermna-n-orl.cz serves as the official online presence for the municipality of Čermná nad Orlicí in the Czech Republic. It provides residents and visitors with information about local government, community events, public announcements, and municipal projects. The site is designed to support the local population with relevant news and administrative resources, reflecting a small government entity focused on community engagement. Technically, the site uses standard web technologies including HTML5, CSS3, JavaScript, and jQuery, with additional integration of a Smart App Banner to promote a mobile application. The CMS appears to be WebConfig, a platform commonly used for municipal websites in the region. The site is moderately optimized for performance and mobile devices, with a clear navigation structure and good content relevance. From a security perspective, the site lacks visible security headers and does not provide privacy or cookie policies, which are important for GDPR compliance and user trust. The WHOIS data for the domain is unavailable, which raises concerns about domain registration transparency and legitimacy. No forms or direct contact information are present on the site, limiting user interaction and support channels. Overall, the website is functional and serves its purpose as a municipal information portal but requires improvements in security posture, privacy compliance, and domain registration transparency to enhance trust and regulatory adherence.

20
10
2
60
62
75
20
municipalitygovernmentcommunityczechrepubliclocalnews+2 more
HTML5CSS3JavaScriptjQuery+1
2025-10-30T14:19:24.785Z
usfcr.com favicon

US Federal Contractor Registration (USFCR)

usfcr.com

62
GovernmentUnited StatesmediumMEDIUM

US Federal Contractor Registration (USFCR) is a specialized service provider focused on assisting businesses, nonprofits, and government agencies with federal contracting registrations, including SAM registrations and SBA set-aside certifications. Established in 2009, USFCR has completed over 300,000 SAM registrations, positioning itself as a trusted partner in the federal contracting space. Their service offerings include registration facilitation, compliance monitoring, proposal writing consulting, and vendor verification programs, targeting a broad audience from small to large entities seeking federal contracts. Technically, the website employs a modern technology stack including Bootstrap, FontAwesome, Google reCaptcha, and various analytics and advertising pixels such as Google Analytics, Facebook Pixel, and LinkedIn Insight Tag. The site is hosted on DigitalOcean and built using HubSpot CMS components, indicating a mature digital infrastructure. The site is mobile optimized with good SEO and accessibility basics, though some improvements could be made in accessibility features. From a security perspective, the site uses HTTPS and implements reCaptcha for form security, but lacks DNSSEC and explicit security headers such as Content-Security-Policy and X-Frame-Options. No privacy or cookie policies were found, representing a compliance gap especially regarding GDPR. The WHOIS data shows a consistent and legitimate domain registration with no privacy protection, supporting the business credibility. Overall, USFCR presents a professional and trustworthy online presence with solid business credibility and technical implementation. However, it should improve privacy compliance and security hardening to enhance user trust and regulatory adherence.

60
58
22
80
77
80
40
federalcontractingsamregistrationgovernmentservicessmallbusinesssbacertifications
Bootstrap CSSFontAwesomejQuery MousewheelGoogle reCaptcha+7
2025-10-30T14:12:16.351Z
prosecutionservice.nl favicon

Ministerie van Justitie en Veiligheid

prosecutionservice.nl

60
GovernmentNetherlandslargeMEDIUM

The Netherlands Public Prosecution Service website represents an official government entity under the Ministry of Justice and Security. It provides comprehensive information about its role in supervising police investigations, prosecuting criminal offenses, and managing court proceedings. The site targets a general audience including citizens, legal professionals, and international stakeholders interested in Dutch prosecution services. The business model is a government service with a strong national presence and a large organizational size. The website content is well-structured, professionally designed, and consistent with government branding standards. Technically, the website employs modern JavaScript libraries such as jQuery UI and uses Piwik PRO for analytics, indicating a moderate level of digital maturity. The site is hosted on government infrastructure with HTTPS enforced, ensuring secure communications. Mobile optimization and accessibility features are well implemented, supporting a broad user base. However, some security headers are missing, and no explicit security policy page is published. From a security perspective, the site demonstrates good practices including HTTPS, no visible vulnerabilities, and secure form handling. Privacy compliance is strong with clear privacy and cookie policies and consent mechanisms. Incident response is supported via a vulnerability reporting page, though no direct security contact emails are published. The domain registration data aligns perfectly with the official government entity, reinforcing trust and legitimacy. Overall, the website is a trustworthy, professional government portal with good security and privacy posture. Recommendations include adding security headers, publishing a dedicated security policy, and providing explicit incident response contact details to further enhance security transparency and user trust.

85
68
17
65
-
60
100
governmentjusticeprosecutionlawenforcementpublicservice+1 more
JavaScriptjQuery UIPiwik PRO analytics

Partner Domains:

www.om.nl
partner
criminalfilesmh17.prosecutionservice.nl
subsidiary
2025-10-30T14:04:20.211Z
om.nl favicon

Openbaar Ministerie

om.nl

63
GovernmentNetherlandslargeMEDIUM

The Openbaar Ministerie (OM) website is the official online presence of the Dutch Public Prosecution Service, a key government entity responsible for criminal prosecution and law enforcement leadership in the Netherlands. The site clearly communicates its role, services, and legal authority, targeting citizens, legal professionals, and stakeholders in the justice system. It is published under the Ministry of Justice and Security, reinforcing its authoritative position. Technically, the website employs modern web technologies including JavaScript, jQuery UI, and Piwik PRO analytics, hosted likely on government infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, with comprehensive metadata and structured content. Privacy and cookie policies are present and GDPR compliant, reflecting a mature digital governance approach. Security posture is strong with HTTPS enforced and no visible vulnerabilities or sensitive data exposure. However, explicit security headers are not detected in the HTML content, and no dedicated security policy or incident response contacts are published, which are areas for improvement. The domain registration aligns perfectly with the government entity, enhancing trust and legitimacy. Overall, the OM website is a professional, trustworthy, and well-maintained government portal with strong content quality and compliance. Strategic recommendations include enhancing security headers, publishing a security policy, and providing explicit incident response contacts to further strengthen security and transparency.

85
68
17
70
-
75
100
governmentjusticepublicprosecutionlawenforcementnetherlands+2 more
JavaScriptjQuery UIPiwik PRO analyticsCSS3+1

Partner Domains:

prosecutionservice.nl
partner
mijnslachtofferzaak.nl
partner

+2 more partners

2025-10-30T14:04:15.201Z
mijnslachtofferzaak.nl favicon

Rijksoverheid

mijnslachtofferzaak.nl

67
GovernmentNetherlandsmediumMEDIUM

MijnSlachtofferzaak is an official Dutch government platform designed to provide victims of crimes and their relatives with a centralized overview of their case progress. It aggregates information from multiple justice organizations including the police, Public Prosecution Service, and victim support agencies. The platform leverages secure DigiD authentication to ensure privacy and secure access to sensitive case data. The website is well-branded with consistent government logos and partner endorsements, targeting Dutch residents involved in legal proceedings as victims or next of kin. Technically, the site is built on a modern Angular framework (version 20.1.3) and integrates Matomo analytics for user behavior tracking. The platform supports accessibility features and mobile responsiveness, with multimedia content such as videos with captions enhancing user engagement. The site is served over HTTPS with DNSSEC enabled, indicating strong foundational security practices. However, explicit security headers and cookie consent mechanisms are not visibly implemented. From a security perspective, the platform demonstrates good practices including secure login via DigiD and no visible exposure of sensitive data. The domain registration is consistent with the Dutch government entity, with no suspicious WHOIS patterns. The absence of a published security policy or incident response contact is a minor gap. Overall, the site is trustworthy and professionally maintained, suitable for its sensitive user base. Strategically, the platform should enhance transparency by publishing security and incident response policies, implement cookie consent for GDPR compliance, and add security headers to harden defenses. These improvements will strengthen user trust and regulatory compliance while maintaining the platform's critical role in victim support services.

70
68
17
70
62
70
100
governmentvictimsupportjusticedigidcasemanagement
Angular 20.1.3Matomo AnalyticsDigiD authenticationSVG logos+1

Partner Domains:

politie.nl
partner
slachtofferhulp.nl
partner

+3 more partners

2025-10-30T14:04:10.190Z
uscontractorregistration.com favicon

US Federal Contractor Registration (USFCR)

uscontractorregistration.com

65
GovernmentUnited StatesmediumMEDIUM

US Federal Contractor Registration (USFCR) is a specialized service provider focused on assisting businesses, nonprofits, and government agencies with federal registrations and contracting services. Established in 2009, USFCR has positioned itself as a trusted partner in the federal sector, having completed over 300,000 SAM registrations. Their key offerings include SAM registration and renewal, SBA set-aside program qualifications, federal proposal writing, vendor management, and grant writing services. The company targets a broad audience ranging from small to large organizations seeking to engage with federal contracts and grants. Technically, the website is built on a modern stack leveraging Bootstrap, jQuery, HubSpot CMS, and integrates multiple analytics and marketing tools such as Google Analytics, Bing Ads, Facebook Pixel, and Trustpilot. Hosting is provided by DigitalOcean, and the site employs HTTPS with appropriate security headers, Google reCaptcha for form protection, and a client portal for registered users. The site demonstrates good mobile optimization and SEO practices, though accessibility could be improved. From a security perspective, USFCR maintains a solid posture with encrypted communications, security headers, and no visible vulnerabilities or exposed sensitive data. However, the absence of a published security policy or incident response contact limits transparency in security governance. The WHOIS data corroborates the business legitimacy with a long-standing domain registration and no privacy protection, aligning with the company's stated history. Overall, USFCR presents a professional, trustworthy, and well-maintained online presence suitable for its government contracting niche. Strategic improvements in security transparency and accessibility would further enhance its credibility and compliance posture.

60
73
22
80
77
80
40
federalcontractingsamregistrationsbacertificationsgovernmentservicesbusinessregistration
Bootstrap CSSFont AwesomejQueryGoogle reCaptcha+9
2025-10-30T14:02:24.913Z