Skip to main content

Government security reports

Browse 7,633 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

155885
Websites
130
Industries
113
Countries
52
Avg Score
Page 19 of 153|Showing 901-950 of 7633
nsm.no favicon

Nasjonal sikkerhetsmyndighet

nsm.no

10
GovernmentNorwaymediumCRITICAL

Nasjonal sikkerhetsmyndighet (NSM) is the Norwegian National Security Authority, a government agency established in 2016 responsible for national security and cybersecurity in Norway. The website serves as the official portal for disseminating security alerts, guidelines, and protective security information to the public sector, businesses, and citizens. It positions itself as the primary national authority in its domain, providing critical services related to cybersecurity and incident response coordination. Technically, the website is built on the Corepublish CMS platform, utilizing standard web technologies such as JavaScript, SVG, CSS, and HTML5. The site is accessible over HTTPS and includes Google site verification, indicating a legitimate and verified presence. The design is professional and mobile-optimized, though accessibility and SEO optimizations are basic. No advertising or tracking technologies were detected, reflecting a focus on information dissemination rather than commercial activity. From a security perspective, the site benefits from HTTPS and some best practices but lacks explicit security headers and formalized privacy or cookie policies. There is no visible vulnerability disclosure or security.txt file, and no direct contact information for incident response was found in the provided content. These gaps suggest room for improvement in transparency and security posture. Overall, the website is trustworthy and professional, consistent with a government entity. The domain registration data aligns well with the agency's profile, supporting legitimacy. However, the absence of privacy and cookie policies and limited contact information slightly reduce the privacy compliance score. Strategic enhancements in these areas would strengthen the site's security and compliance posture.

-
-
-
-
-
-
-
governmentsecuritycybersecuritynorwaynationalsecurity
JavaScriptSVGCSSHTML5
2025-10-29T19:51:20.818Z
udir.no favicon

Utdanningsdirektoratet

udir.no

74
GovernmentNorwaylargeMEDIUM

Utdanningsdirektoratet (Udir) operates as the Norwegian Directorate for Education and Training, responsible for overseeing kindergartens, primary schools, and secondary education. The website serves as a comprehensive portal offering educational frameworks, curricula, examination information, regulations, statistics, and research resources. It targets educational institutions, educators, students, and parents within Norway, positioning itself as the authoritative government source for educational matters. The content is well-structured, professionally presented, and consistently branded, reflecting its official status. Technically, the website leverages a modern technology stack including Microsoft Azure hosting, Episerver CMS, and various analytics and consent management tools such as Hotjar, Piwik PRO, and CookieInformation. The site demonstrates good performance, mobile optimization, accessibility, and SEO practices. Security is robust with HTTPS enforced, multiple security headers present, and no evident vulnerabilities. Privacy compliance is strong, featuring detailed privacy and cookie policies, GDPR adherence, and user consent mechanisms. The security posture is solid, though the absence of a public security.txt and explicit incident response policies suggests room for improvement. The WHOIS data is unavailable due to Norid's privacy policies, but the domain's .no TLD and content legitimacy strongly support trustworthiness. Overall, the site presents a low-risk profile with high professionalism and compliance. Strategic recommendations include publishing a security.txt file, enhancing incident response transparency, and expanding contact information. These steps would further strengthen trust and security culture. The website is a well-maintained government portal with a mature digital presence and sound security practices.

70
100
17
75
62
80
100
educationgovernmentnorwayprivacycookieconsent+2 more
Microsoft AzureEpiserver CMSCloudflareHotjar+4
2025-10-29T19:51:15.803Z
digdir.no favicon

Digitaliseringsdirektoratet

digdir.no

69
GovernmentNorwaymediumMEDIUM

Digitaliseringsdirektoratet (Digdir) is the Norwegian government agency responsible for driving efficient, user-oriented, and coordinated digitalization across the public sector. The agency focuses on increasing participation, value creation, and innovation within government digital services. The website serves as a comprehensive resource hub offering guidance, tools, common solutions, and information security best practices to public sector entities and digital service developers in Norway. Digdir holds a strong national position as the authoritative body for digital transformation in the Norwegian public sector. Technically, the website is built on Drupal CMS with modern frontend frameworks such as Bootstrap and FontAwesome. It features embedded Vimeo videos and uses Siteimprove analytics for performance and accessibility monitoring. The site is well-optimized for mobile devices, accessible, and SEO-friendly. The presence of privacy and cookie policies, along with a data protection officer contact page, reflects a mature approach to privacy compliance. From a security perspective, the site enforces HTTPS and uses secure embedding practices. However, explicit security headers are not detected, and there is no visible incident response or vulnerability disclosure information. No vulnerabilities or exposed sensitive data were found in the HTML content. The lack of WHOIS data limits domain registration verification, but the official Norwegian .no domain and consistent government branding strongly support legitimacy. Overall, the website presents a professional, trustworthy, and comprehensive digital presence for a government agency. Strategic recommendations include enhancing security headers, publishing incident response and vulnerability disclosure policies, and implementing a cookie consent mechanism to improve GDPR compliance and security posture.

65
50
2
88
77
90
100
governmentdigitalizationnorwaypublicsectorinformationsecurity+3 more
Drupal CMSBootstrap (data-bs-toggle attributes)FontAwesome iconsVimeo embedded video+1
2025-10-29T19:51:05.775Z
datatilsynet.no favicon

Datatilsynet

datatilsynet.no

74
GovernmentNorwaymediumMEDIUM

Datatilsynet is the Norwegian Data Protection Authority, serving as both a supervisory and ombudsman body responsible for ensuring compliance with privacy regulations and protecting individuals from misuse of personal data. The website provides comprehensive information on privacy rights, obligations for businesses, and regulatory frameworks, targeting Norwegian citizens, organizations, and privacy professionals. It holds a strong market position as a national government agency with authoritative content and services. Technically, the website employs a modern tech stack including Vue.js and jQuery, is built on the EPiServer CMS platform, and demonstrates good mobile optimization and accessibility. The site uses HTTPS and implements a cookie consent mechanism aligned with GDPR requirements, reflecting a mature digital infrastructure suitable for a government entity. From a security perspective, the site benefits from HTTPS and secure cookie handling but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data is consistent with Norwegian domain registry policies and does not detract from the site's legitimacy. Overall, Datatilsynet's website is professional, trustworthy, and compliant with privacy regulations, offering valuable resources and guidance on data protection. Strategic improvements could include enhancing security headers, publishing incident response information, and adding vulnerability disclosure mechanisms to further strengthen security posture.

80
65
17
85
77
85
100
privacypersonverngdprinformationsecuritynorway+2 more
jQuery 3.2.1jQuery UIVue.jsSVG for icons+1

Partner Domains:

personvernbloggen.no
partner
dubestemmer.no
partner

+1 more partners

2025-10-29T19:51:00.763Z
nceclusters.no favicon

Innovasjon Norge

nceclusters.no

66
GovernmentNorwaymediumMEDIUM

Norwegian Innovation Clusters (NIC) is a government-backed collaborative program managed by Innovasjon Norge in partnership with Siva and Forskningsrådet. The program aims to enhance cooperation and innovation among Norwegian companies to address challenges and build competitive advantages collectively. The website serves as an informational and engagement platform for Norwegian businesses involved in innovation clusters, offering program modules such as NIC Connect, NIC Explore, and NIC Impact. The site is well-branded, consistent, and professionally designed, targeting a Norwegian audience with clear contact information and partner links. Technically, the website is built using modern web technologies including React, Next.js, and Sanity CMS, ensuring good performance, mobile optimization, and accessibility. Google Tag Manager is used for analytics and tracking, with a cookie consent mechanism implemented to comply with privacy regulations. However, explicit privacy policy and terms of service pages are not found, representing a compliance gap. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and published incident response or vulnerability disclosure policies. WHOIS data is unavailable due to .no domain privacy norms, but the association with official government agencies and consistent branding supports legitimacy. Overall, the site demonstrates a solid security posture with room for improvement in privacy compliance and security transparency. Strategically, the site should prioritize publishing comprehensive privacy and terms policies, implement security headers, and establish clear vulnerability disclosure channels to enhance trust and compliance. The technical infrastructure is modern and scalable, supporting the program's mission effectively.

95
35
2
80
52
85
100
innovationnorwaygovernmentclusterscollaboration+1 more
ReactNext.jsSanity CMSGoogle Tag Manager

Partner Domains:

www.innovasjonnorge.no
partner
siva.no
partner

+1 more partners

2025-10-29T19:50:55.750Z
flib-erzbistum-paderborn.de favicon

Erzbistum Paderborn - FLIB-Bestellung

flib-erzbistum-paderborn.de

64
GovernmentGermanymediumMEDIUM

The website 'Erzbistum Paderborn - FLIB-Bestellung' serves as an online platform for ordering FLIB websites, primarily targeting church institutions affiliated with the Erzbistum Paderborn in Germany. It operates within a niche religious service sector, providing digital services to its community. The platform leverages WordPress CMS with WooCommerce for e-commerce capabilities, enhanced by plugins such as Yoast SEO Premium and Real Cookie Banner Pro for SEO and privacy compliance respectively. The technical infrastructure is modern and well-maintained, with moderate performance and good mobile optimization. From a security perspective, the website demonstrates a solid posture by enforcing HTTPS, utilizing the Wordfence security plugin, and integrating hCaptcha to mitigate bot activity. Cookie consent management aligns with GDPR requirements, and Matomo analytics is used for user behavior tracking with appropriate consent mechanisms. However, some security headers like Content-Security-Policy and X-Frame-Options are not explicitly detected and could be improved. Overall, the website is professional, trustworthy, and compliant with privacy regulations. It does not exhibit any signs of malicious activity or vulnerabilities. The content is safe for general audiences, focusing on church-related services without any adult or questionable material. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and improving accessibility features to further strengthen the site's security and compliance posture.

30
100
17
70
52
60
100
churche-commercewordpressgdprprivacy+3 more
WordPressWooCommerceYoast SEO PremiumReal Cookie Banner Pro+3
2025-10-29T19:34:27.921Z
hinweisgeberschutzsystem.de favicon

Digitaler Meldekanal Hinweisgeberschutz

hinweisgeberschutzsystem.de

42
GovernmentGermanysmallHIGH

The website www.hinweisgeberschutzsystem.de serves as a digital reporting channel for whistleblower protection in Germany. It is a password-protected portal designed to securely receive whistleblower reports, indicating a focus on compliance and secure communication. The site is built on WordPress and uses standard CSS and PHP technologies. However, the public content is minimal due to password protection, limiting visibility into detailed business information or policies. The target audience appears to be organizations or individuals in Germany seeking secure whistleblower reporting mechanisms. From a technical perspective, the site uses WordPress CMS with standard admin CSS files and no visible advanced frameworks or analytics. The performance and mobile optimization are basic, and SEO optimization is poor due to lack of metadata and structured data. Security posture shows some basic best practices such as password protection but lacks critical security headers and visible HTTPS enforcement details. No privacy or cookie policies are present, and no contact information is publicly available, which limits transparency and compliance indicators. Security evaluation reveals moderate security measures but also gaps such as missing security headers, no CSRF tokens on forms, and absence of incident response or vulnerability disclosure information. The domain WHOIS data is limited but does not show suspicious patterns. Overall, the site is functional for its purpose but lacks comprehensive security and privacy transparency. The overall risk is moderate due to limited public information and security best practices. Strategic improvements in security headers, privacy policies, and contact transparency are recommended to enhance trust and compliance.

70
70
25
20
2
30
72
whistleblowersecuritycompliancepassword-protecteddigitalreporting+1 more
WordPressPHPCSS
2025-10-29T19:05:02.023Z
T

Technické služby Lanškroun, s.r.o.

tslan.cz

41
GovernmentCzech RepublicsmallHIGH

Technické služby Lanškroun, s.r.o. is a municipal service provider based in the Czech Republic, offering a range of public services including waste management, maintenance of green areas, public lighting, transport and construction works, sports facility management, and cemetery services. The company primarily serves the town of Lanškroun and its residents, positioning itself as a local essential service provider. The website content is well-structured and relevant to its audience, with clear navigation and consistent branding. However, the absence of WHOIS data and lack of explicit contact information on the site limits external verification of legitimacy. From a technical perspective, the website employs standard web technologies such as jQuery and custom JavaScript, with basic mobile optimization and accessibility features. The site includes a cookie consent mechanism indicating some level of privacy awareness, but lacks comprehensive privacy and security policies. No evidence of modern CMS or advanced frameworks was found, and performance is moderate. Security posture is weak due to missing HTTPS confirmation, absence of security headers, and no visible incident response or vulnerability disclosure information. The lack of WHOIS data further reduces trustworthiness. There are no signs of malicious content or adult material, and the site appears safe for general audiences. Overall, while the business appears legitimate and focused on municipal services, the website would benefit from improved security measures, transparency in privacy practices, and clearer contact information to enhance trust and compliance.

20
25
2
70
52
75
20
municipalserviceswastemanagementpubliclightingtransportsportsfacilities+3 more
jQueryjQuery UICustom JavaScriptCSS
2025-10-29T19:04:26.919Z
heilig-kreuz-ffo.de favicon

Katholische Kirchengemeinde Heilig Kreuz

heilig-kreuz-ffo.de

47
GovernmentGermanysmallHIGH

The website represents the Katholische Kirchengemeinde Heilig Kreuz, a Catholic church community located in Frankfurt (Oder), Germany. It serves as an information and communication platform for parishioners and the local community, offering details on religious services, community events, youth programs, and kindergarten services. The site is positioned as a trusted local religious institution with a clear focus on community engagement and spiritual care. Technically, the website is built on TYPO3 CMS, utilizing jQuery and other JavaScript libraries for enhanced user experience. It features a responsive design with good accessibility and SEO practices. Privacy is respected through a comprehensive cookie consent mechanism that blocks third-party content like YouTube videos until user consent is given, aligning with GDPR requirements. From a security perspective, the site enforces HTTPS and employs cookie consent controls to manage user data privacy. However, it lacks explicit security headers and formal security or incident response policies. No vulnerabilities or suspicious activities were detected in the content or domain registration data, which aligns well with the church's legitimate and transparent operations. Overall, the website demonstrates a solid balance of content quality, technical implementation, privacy compliance, and business credibility, making it a reliable and professional digital presence for the church community.

25
43
17
70
62
60
20
catholicchurchcommunityfrankfurtoderreligious+3 more
TYPO3 CMSjQueryShadowbox.js

Partner Domains:

www.erzbistumberlin.de
partner
www.katholisch-muencheberg.de
partner

+3 more partners

2025-10-29T18:12:44.786Z
lanskroun.eu favicon

Městský úřad Lanškroun

lanskroun.eu

47
GovernmentCzech RepublicsmallHIGH

The website www.lanskroun.eu serves as the official municipal portal for the city of Lanškroun in the Czech Republic. It provides comprehensive information about the city administration, local news, cultural events, tourism, and public services. The site targets residents, visitors, and businesses in the Lanškroun region, offering multilingual support and various e-government services. The business model is focused on public service and community engagement, positioning itself as a trusted local government resource. Technically, the website is built on the Vismo CMS platform, utilizing standard web technologies such as HTML5, CSS, and JavaScript. It integrates Google Analytics and Google Tag Manager for visitor tracking and employs Google reCAPTCHA v2 to protect forms from spam. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some improvements in security headers could be made. From a security perspective, the site enforces HTTPS and uses reCAPTCHA for form protection. However, no explicit security policies or incident response contacts are published, and security headers appear to be missing or not detected in the provided content. The WHOIS data is not publicly available due to EURid privacy policies, which is typical for .eu domains and does not raise immediate concerns. Overall, the security posture is moderate with room for enhancement. The overall risk assessment indicates a well-maintained official government website with no signs of malicious activity or content safety issues. Strategic recommendations include implementing HTTP security headers, publishing a security policy, and adding a vulnerability disclosure mechanism to enhance trust and security maturity.

25
25
17
70
62
75
20
governmentmunicipalczechrepubliclankrounofficial+4 more
HTML5CSSJavaScriptGoogle Analytics+2

Partner Domains:

dzierzoniow.pl
partner
serock.pl
partner

+3 more partners

2025-10-29T18:11:19.420Z
hlinsko.cz favicon

Město Hlinsko

hlinsko.cz

48
GovernmentCzech RepublicsmallHIGH

Město Hlinsko operates an official municipal website serving residents and visitors of the city of Hlinsko, Czech Republic. The site provides comprehensive information about municipal offices, citizen services, local news, social and cultural activities, and crisis management. It targets local citizens and stakeholders seeking official information and services. The website is well-structured and content-rich, reflecting a public sector information portal model with a focus on transparency and accessibility. Technically, the website uses a combination of jQuery, Bootstrap 4.4.1, Swiper, PhotoSwipe, and mmenu libraries, indicating a moderately modern front-end stack. The site appears mobile-optimized and provides a cookie consent mechanism, demonstrating awareness of privacy compliance. However, no major CMS or hosting provider details are evident, suggesting a custom or proprietary municipal CMS. From a security perspective, the site enforces HTTPS and includes cookie consent but lacks visible security headers and explicit security policies or incident response information. The absence of WHOIS data for the domain reduces trust signals, although the website content and domain usage appear legitimate. No vulnerabilities or tracking scripts were detected, indicating a low-risk profile but with room for security improvements. Overall, the website is a functional and professional municipal portal with good content quality and user experience. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and investigating the missing WHOIS data to improve domain trustworthiness.

30
10
17
70
62
85
40
municipalgovernmentofficialczechrepublicpublicservices+1 more
jQueryBootstrap 4.4.1Swiper 4.5.0PhotoSwipe+1
2025-10-29T18:11:09.401Z
holice.eu favicon

Město Holice

holice.eu

56
GovernmentCzech RepublicsmallMEDIUM

The website www.holice.eu serves as the official municipal portal for the city of Holice in the Czech Republic. It provides residents and visitors with comprehensive information about city administration, local news, events, public notices, and tourist information. The site is well-branded with consistent city logos and offers multiple channels for citizen engagement including social media and a chatbot. The business model is focused on public service and community engagement, positioning the city as accessible and transparent to its constituents. Technically, the website employs a modern frontend stack including Bootstrap, jQuery, and integrates third-party services such as Google Analytics and a chatbot platform. The site is mobile-optimized and includes a cookie consent mechanism compliant with GDPR, reflecting a moderate level of digital maturity. Performance is moderate with room for improvement in accessibility and security headers. From a security perspective, the site uses HTTPS with a strong SSL configuration and implements cookie consent for privacy compliance. However, it lacks visible security headers and does not publish security policies or incident response information. The WHOIS data is privacy protected, which is common for .eu domains, and does not raise immediate concerns given the official nature of the site. Overall, the website is trustworthy and professional, serving its purpose as a municipal information portal. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and improving accessibility features to meet higher compliance standards.

15
40
2
65
62
85
100
municipalgovernmentczechcityofficial+3 more
Bootstrap 4.5.3jQuery 3.7.1Popper.jsGoogle Analytics (gtag.js)+3

Partner Domains:

www.holubovomuzeum.cz
partner
www.kdholice.cz
partner

+1 more partners

2025-10-29T18:11:04.391Z
litomysl.cz favicon

Město Litomyšl

litomysl.cz

54
GovernmentCzech RepublicmediumMEDIUM

Město Litomyšl is the official municipal government website for the city of Litomyšl in the Czech Republic. It provides comprehensive information and services for both citizens and tourists, including municipal services, cultural events, education, and tourism information. The site targets local residents and visitors, positioning itself as a key resource for public administration and community engagement. The website demonstrates consistent branding and professional content quality, supporting its role as a trusted government portal. Technically, the website employs standard web technologies such as jQuery, Google Custom Search Engine, and Fancybox for enhanced user experience. The site is mobile-optimized and features good navigation and SEO practices. However, there is room for improvement in accessibility and security headers implementation. Performance is moderate, with external dependencies on Google services. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. No critical vulnerabilities or outdated libraries were detected. The presence of a comprehensive GDPR privacy policy indicates attention to compliance, though the absence of a cookie consent mechanism is a gap. The lack of WHOIS data for the domain raises concerns about domain registration transparency, though the official nature of the content mitigates some risk. Overall, the website is a well-structured and professional municipal portal with good content and usability. Strategic improvements in security headers, cookie consent, and domain registration transparency would enhance trust and compliance.

15
10
25
70
62
75
100
governmentmunicipaleducationculturetourism+2 more
jQueryGoogle Custom Search EngineFancybox (Lightbox)CSS3+1
2025-10-29T18:10:59.381Z
svitavy.cz favicon

Městský úřad Svitavy

svitavy.cz

61
GovernmentCzech RepublicmediumMEDIUM

The website www.svitavy.cz serves as the official municipal portal for the city of Svitavy in the Czech Republic. It provides comprehensive information about the city administration, public services, cultural events, and citizen resources. The site targets residents and visitors, offering a well-structured navigation system and multiple language options via external translation links. The business model is that of a government service portal, with a medium-sized organizational footprint and a focus on transparency and public engagement. Technically, the site is built on Drupal 10, leveraging modern web technologies including Bootstrap for responsive design, Google Analytics for traffic monitoring, and various JavaScript libraries for enhanced user experience. The site is mobile-optimized and accessible, with good SEO practices evident in meta tags and structured navigation. Performance is moderate, with no critical errors or broken elements detected. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism compliant with EU GDPR regulations. However, it lacks visible security headers such as Content-Security-Policy and X-Frame-Options, which are recommended to enhance security posture. No vulnerabilities or exposed sensitive data were found in the HTML content. The absence of WHOIS data limits the ability to fully verify domain legitimacy, but the official branding and content strongly support authenticity. Overall, the website presents a trustworthy and professional digital presence for the city government, with room for security enhancements and improved transparency in incident response and vulnerability disclosure policies. The risk level is low, and the site is safe for general audiences.

40
40
17
85
42
85
100
governmentmunicipalczechrepublicdrupalofficial+3 more
Drupal 10BootstrapjQueryGoogle Analytics+2
2025-10-29T18:10:49.329Z
khkpce.cz favicon

Krajská hospodářská komora Pardubického kraje

khkpce.cz

53
GovernmentCzech RepublicmediumMEDIUM

The website represents the Krajská hospodářská komora Pardubického kraje, a regional chamber of commerce serving the Pardubice region in the Czech Republic. It provides a variety of business support services including certification, training, legal services, and networking opportunities for local entrepreneurs and companies. The site targets regional businesses and operates as a membership-based non-profit organization with multiple local offices. Technically, the website uses a moderate technology stack including jQuery and Google services such as Analytics and Tag Manager. The site is mobile optimized with good navigation and content quality, though accessibility features are basic. Performance is moderate with no critical technical issues detected. From a security perspective, the site uses HTTPS and includes no visible exposed sensitive data. However, it lacks security headers and visible privacy or cookie policies, which are important for compliance and user trust. The WHOIS data is unavailable or privacy protected, which reduces transparency but is not uncommon for this type of organization. Overall, the website is professional and trustworthy with a good business credibility score. The main risks relate to privacy compliance and security best practices, which should be addressed to improve user trust and regulatory adherence.

30
10
2
70
67
75
100
regionalchamberofcommercebusinesssupportczechrepublicgovernment+1 more
jQueryGoogle AnalyticsGoogle Tag ManagerGoogle Custom Search Engine

Partner Domains:

www.komora.cz
partner
www.vychodni-cechy.info
partner

+2 more partners

2025-10-29T18:10:39.290Z
Č

Česká správa sociálního zabezpečení

cssz.cz

45
GovernmentCzech RepubliclargeHIGH

Česká správa sociálního zabezpečení (ČSSZ) is the official Czech government agency responsible for administering social security programs including pensions, sickness benefits, maternity support, and social insurance contributions. The website serves as a comprehensive portal providing information, online services, and resources for citizens, employers, self-employed persons, and foreigners with temporary protection. It holds a strong market position as the primary social security institution in the Czech Republic. Technically, the website is built on the Liferay CMS platform, utilizing modern web technologies such as Bootstrap and jQuery, and integrates Matomo for analytics. The site is mobile-optimized, accessible, and demonstrates good SEO practices. Security measures include HTTPS enforcement and standard security headers, contributing to a solid security posture. While the WHOIS data is unavailable due to registry policies, the website's official domain, consistent branding, and government affiliation indicate legitimacy. Privacy and cookie policies are present and GDPR compliant, though explicit terms of service and vulnerability disclosure mechanisms are not found. Contact information includes phone numbers and contact forms, with no exposed sensitive data detected. Overall, the website presents a professional, secure, and user-friendly platform for social security services in the Czech Republic, with recommendations to enhance transparency around security policies and incident response capabilities.

-
25
17
60
-
80
100
governmentsocialsecurityczechrepublicpensionshealthinsurance+3 more
JavaScriptjQueryBootstrapLiferay Portal+1

Partner Domains:

eportal.cssz.cz
subsidiary
analytics.cssz.cz
subsidiary

+3 more partners

2025-10-29T18:10:19.234Z
dsoh.cz favicon

Dobrovolný svazek obcí Holicka

dsoh.cz

51
GovernmentCzech RepublicsmallMEDIUM

Dobrovolný svazek obcí Holicka is a voluntary association of municipalities in the Pardubice region of the Czech Republic, centered around the town of Holice. The website serves as an informational portal for residents and stakeholders, providing official notices, event calendars, tourism information, and downloadable documents. The organization operates as a local government non-profit entity, focusing on regional cooperation and community services. Technically, the website employs a custom CMS developed by Galileo Corporation s.r.o., utilizing JavaScript libraries such as jQuery and MooTools. The site has moderate performance and basic mobile optimization. It implements a cookie consent mechanism but lacks visible privacy and terms of service pages. No advanced analytics or tracking tools are detected, indicating a minimal user tracking approach. From a security perspective, the site uses HTTPS but lacks visible security headers such as CSP or HSTS in the provided data. No WHOIS registration data is available, which reduces domain trustworthiness. Contact information is clearly presented, but no dedicated security policy or incident response contacts are found. Overall, the security posture is moderate but could be improved with enhanced headers and transparency. The overall risk is moderate with recommendations to verify domain registration status, implement security headers, and publish privacy and security policies to enhance trust and compliance.

30
25
17
80
62
85
40
localgovernmentmunicipalassociationczechrepubliccommunitynon-profit
jQueryMooToolsHighslide JSFont Awesome
2025-10-29T16:59:28.316Z
krajprorodinu.cz favicon

Pardubický kraj

krajprorodinu.cz

46
GovernmentCzech RepublicmediumHIGH

The website krajprorodinu.cz serves as an official regional government portal dedicated to family support in the Pardubice region of the Czech Republic. It provides comprehensive information and resources for families with children, seniors, caregivers, and professionals involved in social services. The site is well-positioned as a trusted regional support platform with a clear focus on social welfare and community engagement. The business model is non-commercial, supported by the regional government, and targets local residents and stakeholders. Technically, the website is built on WordPress with a modern plugin ecosystem including Yoast SEO, WPBakery Page Builder, and Events Manager. It uses HTTPS with good SSL configuration and implements GDPR-compliant cookie consent mechanisms. The site demonstrates good SEO practices, moderate performance, and basic accessibility features. Social media integration includes Facebook and Instagram links. From a security perspective, the site enforces HTTPS and uses cookie consent to manage user privacy. No critical vulnerabilities or exposed sensitive data were detected. However, security headers could be improved, and a security.txt file is absent. The domain registration is consistent with the website’s regional government affiliation, with no suspicious patterns detected. Overall, the website presents a low-risk profile with a solid foundation for content delivery and user engagement. Strategic recommendations include enhancing security headers, improving accessibility, and formalizing vulnerability disclosure processes to further strengthen trust and compliance.

15
25
17
65
62
85
20
familysocialservicesregionalgovernmentczechrepublicnon-profit+6 more
WordPressPHPjQueryYoast SEO+6

Partner Domains:

pardubickykraj.cz
partner
uradprace.cz
partner

+2 more partners

2025-10-29T16:58:48.188Z
cervenykostelec.cz favicon

Město Červený Kostelec

cervenykostelec.cz

41
GovernmentCzech RepublicsmallHIGH

Město Červený Kostelec operates an official municipal website serving residents and visitors with comprehensive information about the town's administration, public services, news, and community events. The website is well-structured, primarily in Czech, and targets local citizens and stakeholders. It provides key services such as contact details, public documents, and updates on municipal activities, positioning itself as a trusted local government resource. Technically, the website employs a modern tech stack including jQuery, Bootstrap, and Swiper.js, running on the Munipolis CMS platform. It is mobile-optimized and offers a moderate performance profile. The site uses HTTPS and implements cookie consent mechanisms, reflecting a reasonable level of digital maturity. From a security perspective, HTTPS is enforced, and no immediate vulnerabilities or exposed sensitive data were detected. However, the absence of security headers and vulnerability disclosure mechanisms suggests room for improvement. Privacy compliance is supported by a dedicated GDPR page and cookie consent, but terms of service and incident response contacts are missing. Overall, the website is a reliable and professional municipal portal with good content quality and user experience. The lack of WHOIS data limits domain trust assessment, but the site itself shows no signs of malicious activity. Strategic recommendations include enhancing security headers, adding terms of service, and publishing a security.txt file to improve transparency and trust.

15
10
17
45
42
85
40
municipalgovernmentpublicservicesczechrepublicofficial+1 more
jQueryBootstrap 4.4.1Swiper.jsHighslide JS+3

Partner Domains:

www.kuesnacht.ch
partner
www.uchte-online.de
partner

+2 more partners

2025-10-29T16:40:20.477Z
bihk.cz favicon

Biskupství královéhradecké

bihk.cz

54
GovernmentCzech RepublicmediumMEDIUM

Biskupství královéhradecké is the official website of the Diocese of Hradec Králové, serving the Catholic community in the Czech Republic. The site provides comprehensive information about the diocese, including news, events, spiritual services, educational resources, and a diocesan catalog. It targets parishioners, clergy, and those interested in diocesan activities, operating as a non-profit religious organization with a medium-sized presence in its region. Technically, the website is built on the Drupal CMS platform, utilizing modern web technologies such as Google Tag Manager and Google Analytics for tracking, and a cookie consent mechanism to comply with GDPR. The site is mobile-optimized, accessible, and well-structured, offering a good user experience with clear navigation and relevant content. From a security perspective, the website enforces HTTPS and uses cookie consent banners, but lacks visible advanced security headers and published security policies. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is not publicly available, indicating privacy protection, which is typical and justified for such an organization. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations, though it could improve by publishing security policies and enhancing security headers to strengthen its security posture further.

40
40
17
85
52
75
40
religiondiocesecatholicchurchcommunity+4 more
Drupal CMSGoogle Tag ManagerGoogle AnalyticsFreePrivacyPolicy cookie consent+2
2025-10-29T16:40:15.443Z
bohdanec.cz favicon

Město Lázně Bohdaneč

bohdanec.cz

45
GovernmentCzech RepublicsmallHIGH

Lázně Bohdaneč is the official municipal website for the town of Lázně Bohdaneč in the Czech Republic. It serves as a comprehensive portal providing residents and visitors with access to municipal services, news updates, event calendars, job vacancies, and contact information. The site targets local citizens and stakeholders interested in town governance and community activities. The business model is that of a local government authority focused on public service and information dissemination. Technically, the website employs modern web technologies including Blazor WebAssembly for interactive components, Google Translate for multilingual support, and a chatbot for user assistance. The site is built on the Vismo CMS platform, which is specialized for municipal websites. The design is responsive and accessible, with good SEO practices and clear navigation, although some performance optimizations could be considered. From a security perspective, the site uses HTTPS and secure form submissions but lacks visible security headers and explicit cookie consent mechanisms. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS registration data for the domain raises concerns about domain legitimacy and trustworthiness, which should be investigated further. Overall, the website is professional, trustworthy, and well-suited for its purpose, but improvements in security headers, privacy compliance, and domain registration transparency are recommended to enhance trust and compliance.

15
25
17
70
62
75
20
municipalgovernmentlocalservicesczechrepublicofficial+1 more
HTML5CSSJavaScriptBlazor WebAssembly+2
2025-10-29T16:39:55.391Z
vr-jva.nrw favicon

Ministerium der Justiz des Landes Nordrhein-Westfalen

vr-jva.nrw

55
GovernmentGermanymediumMEDIUM

The website vr-jva.nrw is an official government digital platform operated by the Ministerium der Justiz des Landes Nordrhein-Westfalen, providing a virtual 360° tour of correctional facilities in North Rhine-Westphalia, Germany. It serves an educational and informational purpose, targeting the general public and potential applicants interested in the justice system. The site features interactive virtual tours, quizzes, and contact forms to engage users. Technically, the site employs modern web technologies including HTML5, CSS3, JavaScript, and licensed krpano software for immersive virtual tours. Hosting is provided by Global Village GmbH, with a domain registered under the government ministry. The site is mobile-optimized and includes basic accessibility features, though SEO and privacy compliance could be improved. From a security perspective, the site uses HTTPS and input validation on forms but lacks DNSSEC and important security headers. No privacy or cookie policies are present, representing compliance gaps. The WHOIS data confirms legitimacy and consistency with the government entity. No signs of blocking or WAF interference were detected. Overall, the site is trustworthy and professionally implemented but would benefit from enhanced privacy compliance, security hardening, and explicit incident response information to improve user trust and regulatory adherence.

30
35
2
60
72
60
100
virtualtourgovernmentcorrectionalfacilityeducation360-degree+1 more
HTML5CSS3JavaScriptkrpano 1.20.9+1
2025-10-29T16:33:02.181Z
deutschland.de favicon

N/A

deutschland.de

62
GovernmentGermanylargeMEDIUM

deutschland.de is an official German government digital platform providing comprehensive information about Germany's politics, business, culture, society, and global partnerships. It targets a broad international audience with multilingual content, interactive features, and multimedia presentations. The website is professionally designed and well-structured, reflecting a high level of digital maturity and content quality. The technical infrastructure is based on Drupal 10 CMS, enhanced with modern web technologies such as responsive images, HTML5 video, and a consent management platform (Usercentrics) to ensure privacy compliance. Google Tag Manager is used for analytics with strict consent settings denying ad personalization, indicating a privacy-conscious approach. Security posture is solid with HTTPS implied, consent management implemented, and no visible vulnerabilities or exposed sensitive data. However, explicit security headers and incident response contacts are not found, suggesting room for improvement in security transparency and incident readiness. Overall, the website represents a trustworthy and authoritative source of information about Germany, with strong branding consistency and a high level of professionalism. Strategic recommendations include publishing explicit privacy and terms policies, enhancing security headers, and providing clear contact channels for security and data protection inquiries.

70
25
17
60
77
65
100
governmentculturenewseducationmultilingual+4 more
Drupal 10Google Tag ManagerUsercentrics Consent Management PlatformVideo autoplay with HTML5 video+1

Partner Domains:

tatsachen-ueber-deutschland.de
partner
goethe.de
partner

+3 more partners

2025-10-29T16:31:18.760Z
aszod.hu favicon

Aszód város

aszod.hu

47
GovernmentHungarysmallHIGH

Aszód.hu is the official website of Aszód city in Hungary, serving as a municipal information portal. It provides comprehensive information about the city's geography, history, economy, community life, and events. The website targets residents and visitors seeking official city information and services. The business model is that of a government/public service entity, with a focus on transparency and community engagement. Technically, the site is built on WordPress 6.8.3 using the Astra theme and Elementor page builder, supplemented by plugins for events, search, accessibility, and GDPR compliance. The infrastructure reflects a modern WordPress ecosystem with performance optimizations via WP Rocket. Mobile optimization and accessibility are well addressed, enhancing user experience. From a security perspective, the site enforces HTTPS and uses performance and accessibility plugins that indirectly support security and compliance. However, explicit security headers are missing, and no dedicated security or privacy policies are found. There is no visible incident response or vulnerability disclosure information, which could be improved to enhance trust and compliance. Overall, the website is legitimate, consistent with the domain's WHOIS data, and professionally maintained. The risk level is low, but improvements in privacy transparency and security headers would strengthen the security posture and user trust.

15
40
17
85
62
75
-
governmentmunicipalhungaryofficialcity+3 more
WordPress 6.8.3PHPjQueryElementor+5
2025-10-29T16:30:55.991Z
welcomehub.no favicon

Welcome Hub Agder

welcomehub.no

70
GovernmentNorwaysmallMEDIUM

Welcome Hub Agder is a community-focused program operated by Inklusiv Agder AS in collaboration with the Arendal Municipality, aimed at helping international newcomers and residents integrate into the Agder region of Norway. The website provides comprehensive information about settlement support, work life, Norwegian courses, social life, and community events, targeting newcomers, internationals, and local residents. The platform serves as a one-stop-shop for integration services and community engagement, supported by testimonials and partnerships with local government entities. Technically, the website is built on WordPress using Oxygen Builder, with integrations including Yoast SEO, Microsoft Clarity, and Mailchimp for marketing and analytics. The site is well-structured with modern web technologies, responsive design, and good SEO practices. Cookie consent mechanisms and privacy policies indicate GDPR compliance awareness. However, WHOIS data is unavailable, likely due to privacy protection, which limits domain registration transparency. From a security perspective, the site uses HTTPS with good SSL configuration and cookie consent but lacks advanced security headers and published security policies. No vulnerabilities or suspicious content were detected. The website demonstrates a strong trust profile through partner logos, testimonials, and consistent branding. Overall, Welcome Hub Agder presents a professional, secure, and user-friendly platform for newcomer integration in Norway, with recommendations to enhance security headers, publish incident response policies, and improve accessibility compliance for further maturity.

30
80
25
85
72
85
100
communityintegrationnewcomerseventsnorway+3 more
WordPress 6.8.3Oxygen BuilderjQuery 3.7.1Google Fonts (Open Sans)+4

Partner Domains:

arendal.kommune.no
partner
agderfk.no
partner
2025-10-29T15:43:26.591Z
kins.no favicon

Foreningen kommunal informasjonssikkerhet – KiNS

kins.no

69
GovernmentNorwaymediumMEDIUM

Foreningen kommunal informasjonssikkerhet – KiNS is a Norwegian non-profit association dedicated to enhancing information security within municipalities and county municipalities. With over 370 members including public sector entities and companies, KiNS offers training, webinars, tools, and networking opportunities to strengthen cybersecurity and privacy practices in local government. The website reflects a mature organization with strong partnerships with official Norwegian government agencies, indicating a solid market position in the public sector security domain. Technically, the website employs modern web technologies such as Bootstrap for responsive design, Plausible Analytics for privacy-conscious tracking, and Cookie-Script for consent management. The site is mobile-optimized, accessible, and SEO-friendly, providing a professional user experience. While no CMS or hosting provider is explicitly identified, the technical implementation is robust and well-maintained. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data is due to registry privacy policies for .no domains and does not indicate suspicious activity. Overall, the security posture is good but could be improved with additional transparency and security best practices. The overall risk assessment is low, with the site demonstrating high professionalism, trustworthiness, and compliance with privacy regulations such as GDPR. Strategic recommendations include publishing a security policy, adding incident response contacts, implementing security.txt, and enhancing HTTP security headers to further strengthen the security posture and trust.

50
50
47
75
62
80
100
informationsecuritymunicipalitiesnorwaynon-profitcybersecurity+3 more
Bootstrap CSSFontAwesome iconsPlausible AnalyticsCookie-Script consent management+1

Partner Domains:

datatilsynet.no
partner
digdir.no
partner

+3 more partners

2025-10-29T15:43:06.540Z
kirchenrecht-westfalen.de favicon

Evangelische Kirche von Westfalen

kirchenrecht-westfalen.de

62
GovernmentGermanymediumMEDIUM

The website kirchenrecht-westfalen.de serves as an official online legal reference system for the Evangelical Church of Westphalia, providing comprehensive access to church laws, ordinances, and related legal documents. It targets church officials, legal professionals, and members interested in church law. The platform offers systematic navigation, search functionality, and downloadable e-book formats, positioning itself as a trusted resource within its niche. Technically, the site employs Bootstrap for responsive design, Font Awesome for icons, and Matomo (Piwik) for analytics, indicating a modern and privacy-conscious infrastructure. Hosting is managed by SchlundTech, a known German hosting provider. The site is mobile-optimized with good navigation clarity and SEO practices, though accessibility features are basic. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms, reflecting GDPR awareness. However, no explicit privacy policy, terms of service, or security headers were detected, suggesting areas for compliance and security enhancement. No vulnerabilities or suspicious content were found, and the domain registration aligns well with the church's identity, supporting legitimacy. Overall, the site is a professional, secure, and trustworthy resource for church law, with recommendations to improve privacy disclosures and security headers to enhance compliance and user trust.

100
83
2
60
72
60
40
churchlawlegalreferenceevangelicalchurchgermanychurchregulations+2 more
Bootstrap CSSFont AwesomejQuery (implied by Bootstrap usage)Piwik/Matomo Analytics
2025-10-29T15:41:16.099Z
ata-dag.de favicon

Deutsche Atlantische Gesellschaft e.V.

ata-dag.de

38
GovernmentGermanymediumHIGH

The Deutsche Atlantische Gesellschaft e.V. is a German non-profit organization dedicated to informing and engaging the public on German and European security policy, NATO objectives, and transatlantic relations. The organization operates through events, seminars, lectures, podcasts, and publications, targeting individuals and entities interested in security and defense topics. Their market position is that of an established, reputable non-profit within the government and policy sector in Germany. Technically, the website is built on WordPress, utilizing common libraries such as jQuery, Bootstrap, and Font Awesome, with SEO optimization via Yoast. Hosting appears to be managed through kasserver.com. The site is moderately performant, mobile-optimized, and includes analytics via Matomo, reflecting a reasonable level of digital maturity. From a security perspective, the site enforces HTTPS and uses CAPTCHA on contact forms, alongside a cookie consent mechanism. However, it lacks explicit security headers, a published security policy, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with no explicit privacy policy or terms of service pages found. Overall, the website presents a professional and trustworthy front for the organization, with good content quality and business credibility. Security and privacy practices could be enhanced to meet higher compliance standards and improve user trust.

15
68
17
75
-
50
-
securitynatonon-profitgermanyevents+3 more
WordPressjQueryMediaElement.jsMatomo Analytics+4
2025-10-29T15:40:45.991Z
iwd.de favicon

Institut der deutschen Wirtschaft

iwd.de

45
GovernmentGermanylargeHIGH

The website www.iwd.de serves as the information service of the Institut der deutschen Wirtschaft, providing up-to-date economic analyses, research results, and background information on current economic topics primarily focused on Germany and Europe. It targets professionals, policymakers, academics, and the general public interested in economic affairs. The business model revolves around disseminating economic knowledge through articles, dossiers, newsletters, and interactive graphics, positioning itself as a reputable and authoritative source in the German economic research landscape. Technically, the site is built on the TYPO3 CMS platform, leveraging modern web technologies including JavaScript, CSS, and integrates analytics tools such as Matomo and Google Tag Manager. It employs Usercentrics for GDPR-compliant consent management. The site is mobile-optimized, accessible, and SEO-friendly, with structured data enhancing search engine visibility. Hosting is managed via domaincontrol.com (GoDaddy), a common and reliable provider. From a security perspective, the website enforces HTTPS with a strong SSL configuration and uses consent management for cookies, reflecting good privacy practices. However, it lacks explicit security headers and published security policies or incident response contacts, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected in the content. The site demonstrates a moderate to high security posture but could enhance transparency and technical security controls. Overall, www.iwd.de is a professional, trustworthy, and content-rich platform with strong compliance to privacy regulations and a solid technical foundation. Strategic recommendations include implementing security headers, publishing a security policy and incident response information, and adding a security.txt file to facilitate vulnerability disclosures. These steps would further strengthen the site's security posture and trustworthiness.

45
28
17
60
62
65
-
economicsresearchnewsgermanyfinance+1 more
TYPO3 CMSMatomo AnalyticsGoogle Tag ManagerUsercentrics Consent Management+2

Partner Domains:

www.iwkoeln.de
partner
2025-10-29T15:40:25.936Z
wahlen-ekm.de favicon

Evangelische Kirche in Mitteldeutschland (EKM)

wahlen-ekm.de

45
GovernmentGermanymediumHIGH

The website www.wahlen-ekm.de serves as an informational and organizational platform for the Evangelical Church in Central Germany (EKM) focusing on the 2025 church council elections (GKR-Wahl). It provides comprehensive resources including election preparation, candidate search, voting procedures, and educational materials for church members and candidates. The site targets church community members and volunteers, supporting their engagement in church governance. The organization is a medium-sized non-profit religious entity with a strong regional presence in Germany. Technically, the website employs a modern tech stack including jQuery, Bootstrap, Slick Carousel, and Piwik/Matomo analytics. It is hosted on eastlink.de servers and demonstrates good mobile responsiveness and SEO practices. However, no explicit CMS was detected. Performance is moderate with room for optimization, and accessibility is basic. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks visible security headers and a formal security policy or incident response contact. No vulnerabilities or exposed sensitive data were found. Privacy compliance is partial; a privacy policy exists but no cookie consent mechanism was detected. User tracking is moderate via Piwik/Matomo analytics. Overall, the website is professional, trustworthy, and well-aligned with its organizational mission. Strategic improvements include implementing cookie consent, enhancing security headers, and publishing security and incident response policies to strengthen compliance and user trust.

30
28
2
65
62
70
20
churchelectionnon-profitgkr-wahlevangelical+2 more
jQuery 3.2.1Bootstrap CSS/JSSlick CarouseljQuery Fancybox+4
2025-10-29T14:32:23.818Z