Skip to main content

Hospitality security reports

Browse 6,595 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157365
Websites
130
Industries
113
Countries
52
Avg Score
Page 55 of 132|Showing 2701-2750 of 6595
C

คาสิโนเว็ปตรง ที่รวมเกมส์สุดฮิต จากหลากหลายค่าย พร้อมด้วยทีมลูกค้าสัมพันธ์ที่พร้อมให้บริการตลอด 24 ชั่วโมง - XGB Official Sites

ctmx.cc

59
HospitalityN/amediumMEDIUM

The website ctmx.cc is an online gambling platform primarily targeting Thai-speaking users, offering casino games, sports betting, lottery, and slot games with 24-hour customer support. It positions itself as a leading entertainment casino service under the brand XGB Official Sites and XGambet. The platform is built using modern web technologies such as Nuxt.js and Vue.js, hosted on Amazon Cloudfront CDN, and incorporates user behavior tracking tools like Hotjar and Facebook Pixel. The site is mobile-optimized and moderately performant but lacks comprehensive SEO and accessibility features. Security-wise, the site enforces HTTPS but lacks visible security headers and published security or privacy policies, which are critical for compliance and user trust. No contact or incident response information is provided, limiting transparency. Overall, the site presents moderate technical maturity but has significant gaps in privacy compliance and security best practices, which could impact user trust and regulatory adherence.

15
50
2
65
100
85
100
gamblingcasinoonlinecasinothainuxt+4 more
Nuxt.jsVue.jsSocket.IOCloudfront CDN+1
2025-10-09T18:49:43.271Z
lunchgate.info favicon

Lunchgate AG

lunchgate.info

58
HospitalitySwitzerlandmediumMEDIUM

Lunchgate AG operates a professional website offering a comprehensive Restaurant Management System tailored for the hospitality industry in Switzerland. Their services include menu management, reservation systems, guest profile automation, and digital marketing tools designed to enhance online presence and customer engagement. The company positions itself as a digitalization partner for restaurants, focusing on improving operational efficiency and customer experience. Technically, the website is built on Squarespace CMS, leveraging modern web technologies and integrating Google Tag Manager and Usercentrics for analytics and consent management. The site is mobile-optimized and SEO-friendly, though some accessibility features could be improved. Security posture is good with HTTPS enforced and no exposed sensitive data, but could benefit from additional security headers and HSTS implementation. Privacy compliance is partial, with a cookie consent mechanism present but lacking explicit privacy and terms of service pages. WHOIS data is unavailable due to privacy protection or query failure, but the website content and linked domains indicate a legitimate business. Overall, the site demonstrates a mature digital presence with room for enhanced security and compliance documentation.

35
53
17
40
62
75
100
restaurantmanagementdigitalizationhospitalityreservationsystemmenumarketing+2 more
Squarespace CMSGoogle Tag ManagerUsercentrics CMPJavaScript ES6 modules+1

Partner Domains:

foratable.com
partner
2025-10-09T15:27:41.915Z
baulueuet.ch favicon

Grill-Restaurant BAULÜÜT

baulueuet.ch

50
HospitalitySwitzerlandsmallMEDIUM

Grill-Restaurant BAULÜÜT is a well-established hospitality business located in Oberkirch, Switzerland, specializing in grilled cuisine, bar services, and event hosting. The website reflects a strong market position supported by the Swiss Guest Award 2025 and positive customer reviews. Their key services include dining, bar and whisky lounge experiences, event hosting, and gift voucher sales. The target audience is general, including families, business clients, and event attendees. The business operates primarily as a small-sized restaurant entity founded in 2019. Technically, the website is built on WordPress with a modern tech stack including Bootstrap, jQuery, and various JavaScript libraries for enhanced user experience and SEO optimization. The site is mobile-optimized and uses structured data for improved search engine visibility. Privacy compliance is well addressed with a clear privacy and cookie policy, supported by a consent management platform (Usercentrics). From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA on forms, but lacks some advanced security headers. No critical vulnerabilities or exposed sensitive data were detected. The domain registration details are consistent with the business claims, indicating legitimacy and trustworthiness. Overall, the website presents a professional, secure, and user-friendly platform that effectively supports the business goals and customer engagement.

15
53
17
70
62
75
20
restaurantgrillbarwhiskyloungeevents+4 more
WordPressYoast SEOjQueryBootstrap 4.3.1+6

Partner Domains:

campus-sursee.ch
partner
lunchgate.ch
partner

+1 more partners

2025-10-09T11:56:25.448Z
adventuretravel.biz favicon

Adventure Travel Trade Association

adventuretravel.biz

65
HospitalityN/amediumMEDIUM

The Adventure Travel Trade Association operates as a global network connecting adventure travel tour operators, destinations, and industry partners. The organization focuses on inspiring and empowering the global community to engage in sustainable and responsible travel. Their market position is that of a leading trade association within the adventure travel sector, providing networking and advocacy services to its members. The website content reflects a professional and consistent brand image, targeting industry professionals and stakeholders in the adventure travel space. Technically, the website employs modern web technologies including Tailwind CSS for styling, Google reCAPTCHA for form security, Flywire for payment processing, and Fathom Analytics for privacy-conscious visitor tracking. The site is mobile optimized and demonstrates good SEO and accessibility practices, although some accessibility features could be enhanced. The presence of cookie consent and privacy policies indicates a commitment to privacy compliance. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes standard security headers. The use of reCAPTCHA and cookie consent mechanisms further strengthen its security posture. However, the absence of a publicly available security policy, incident response contacts, and vulnerability disclosure mechanisms suggests areas for improvement in transparency and readiness. Overall, the website presents a low-risk profile with a strong business credibility and good technical implementation. The lack of WHOIS data due to privacy protection is common for organizations of this type and does not detract from the legitimacy of the site. Strategic recommendations include publishing a security policy, adding incident response information, and implementing a vulnerability disclosure program to enhance trust and security maturity.

15
88
7
75
65
85
100
Tailwind CSSGoogle reCAPTCHAFlywire payment integrationFathom Analytics+1
2025-10-09T11:28:28.253Z
watergroup.me favicon

Water Group d.o.o.

watergroup.me

46
HospitalityMontenegromediumHIGH

Water Group d.o.o. is a Montenegrin company specializing in the distribution and sale of beverages and Horeka-related products, including mineral and spring water, espresso coffee, and hot and cold drinks for hotels. Established in 2006, the company operates multiple distribution centers across Montenegro and serves the Horeka market segment with a broad product portfolio including brands like RADA, Suza, MOAK, and Tchibo. The website reflects a professional business presence with consistent branding and relevant content tailored to its target audience. Technically, the website is built on Joomla CMS with the Gridbox framework and uses common libraries such as jQuery and Bootstrap. The site is mobile-optimized and demonstrates good SEO practices, although accessibility features are basic. Hosting and DNS infrastructure align with the business location, and the domain is privacy protected but registered through a reputable registrar. Performance is moderate with no blocking or WAF detected. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks important security headers and does not provide privacy or cookie policies, which are critical for GDPR compliance. No incident response or vulnerability disclosure mechanisms are present. Social media integration is evident, enhancing trust and engagement. Overall, the security posture is adequate but could be improved with standard best practices and compliance documentation. The overall risk assessment indicates a moderate risk profile primarily due to compliance gaps and missing security headers. Strategic recommendations include implementing privacy and cookie policies, adding security headers, enabling DNSSEC, and establishing vulnerability disclosure processes to enhance trust and security maturity.

20
35
2
70
72
75
20
horekabeveragesmontenegrowatercoffee+1 more
Joomla CMSjQueryBootstrapGridbox framework
2025-10-09T11:26:51.846Z
travelife.info favicon

Travelife

travelife.info

46
HospitalityNetherlandsmediumHIGH

Travelife is a recognized sustainability certification and training organization targeting tour operators and travel agencies. Owned by ABTA Ltd, it offers a structured program to help tourism companies improve their social and environmental impacts through training, management tools, and certification awards. The website reflects a professional presence with clear business focus and contact information, supporting its market position as a leader in sustainable tourism certification. Technically, the website employs a mix of legacy and modern JavaScript libraries including jQuery, Foundation 3.2, and various UI plugins. While performance appears fast and navigation clear, mobile optimization and accessibility are basic and could be improved. The site lacks advanced CMS or hosting details but integrates Google Analytics and Facebook SDK for marketing and tracking. Security posture is moderate with HTTPS implied but no visible security headers or advanced protections. The login form exists but lacks visible multi-factor authentication or CSRF protections. Privacy and cookie policies are absent, indicating compliance gaps with GDPR and related regulations. WHOIS data is unavailable due to privacy or malformed queries, but business legitimacy is supported by consistent contact details and ownership by ABTA Ltd. Overall, the website is a credible and professional platform for sustainability certification in tourism but would benefit from enhanced security measures, privacy compliance, and modernization of technical stack to improve trust and user experience.

85
80
35
-
2
20
72
sustainabilitytourismcertificationtraveltraining+1 more
jQuery 2.2.2Foundation 3.2 CSS/JSjQuery UIGoogle Analytics (ga.js)+6
2025-10-09T11:21:25.760Z
grandtours.se favicon

Grand Tours

grandtours.se

62
HospitalitySwedenmediumMEDIUM

Grand Tours is a well-established Swedish travel agency specializing in curated, quality travel experiences since 1986. The company offers a diverse portfolio of travel themes including river cruises, train journeys, long-term stays, cultural tours, and seasonal trips such as Christmas and New Year travels. Their market position is strong within the niche of personalized and content-rich travel services targeting adult travelers seeking comfort and quality. Technically, the website is built on WordPress with modern SEO and tracking tools such as Yoast SEO and Google Tag Manager, demonstrating a mature digital presence. Security posture is solid with HTTPS, security headers, and reCAPTCHA integration, although explicit security policies and incident response contacts are not publicly disclosed. Overall, the site is professional, trustworthy, and compliant with GDPR, featuring cookie consent mechanisms and privacy policies. The WHOIS data provided is incomplete due to querying a subdomain rather than the main domain, which slightly reduces trustworthiness but does not detract from the site's legitimacy. Strategic recommendations include enhancing security transparency and adding vulnerability disclosure information.

50
25
17
98
52
70
100
traveltourismflodkryssningartgresorlngtidsresor+5 more
WordPressYoast SEOjQueryGoogle Tag Manager+2

Partner Domains:

minbokning.grandtours.se
service
www.vi.se
partner

+3 more partners

2025-10-09T10:41:37.879Z
stjernegaard-rejser.dk favicon

Stjernegaard Rejser

stjernegaard-rejser.dk

62
HospitalityDenmarkmediumMEDIUM

Stjernegaard Rejser is a Danish travel agency with over 35 years of experience, specializing in guided tours with Danish tour leaders and individual travel arrangements worldwide. The company targets Danish-speaking travelers seeking curated travel experiences and offers a range of services including cruises and travel lectures. The website reflects a mature business with consistent branding and professional content, positioning it as a reputable player in the hospitality sector in Denmark. Technically, the website employs modern web technologies including Google Tag Manager, reCAPTCHA, and Cookiebot for privacy compliance, indicating a good level of digital maturity. The site is mobile-optimized and uses structured data to enhance SEO and business information visibility. Security-wise, the site enforces HTTPS and uses bot protection mechanisms, but lacks some advanced security headers and published security policies. The cookie consent implementation is comprehensive and GDPR compliant, reflecting good privacy practices. Overall, the website presents a low-risk profile with no signs of malicious activity or suspicious content. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further improve trust and compliance.

75
83
17
70
-
70
100
traveltourismguidedtoursindividualtravelcruises+4 more
Google Tag ManagerGoogle reCAPTCHACookiebotLinkedIn Insight Tag+4

Partner Domains:

ssl.ditonlinebetalingssystem.dk
partner
bambora.com
partner

+1 more partners

2025-10-09T10:40:41.410Z
chooserestaurants.org favicon

National Restaurant Association Educational Foundation

chooserestaurants.org

66
HospitalityUnited StateslargeMEDIUM

The National Restaurant Association Educational Foundation website serves as a digital platform for a well-established non-profit organization focused on education and workforce development within the restaurant and hospitality industry. The site targets industry professionals, educators, and students, providing resources and programs to support workforce growth. The organization has a credible market position with a domain age consistent with its operational history. Technically, the website is built on WordPress using the Divi theme and several plugins for enhanced functionality, including event calendars and carousels. It integrates multiple marketing and analytics tools such as Google Analytics, Microsoft Clarity, Marketo, and Fundraise Up for fundraising. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and SEO. From a security perspective, the site uses HTTPS and reCAPTCHA Enterprise for bot mitigation, but lacks visible security headers and DNSSEC. There is no published privacy or cookie policy detected, which is a compliance gap. No incident response or vulnerability disclosure information is provided, limiting transparency in security practices. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance, improved security headers, and clearer contact information to strengthen user trust and regulatory adherence.

65
58
2
65
77
80
100
restauranteducationnon-profitfoundationhospitality+1 more
WordPress 6.8.3Divi Theme 4.27.4DG Divi Carousel PluginDivi Event Calendar Module+7
2025-10-08T22:55:07.828Z
restaurant.org favicon

National Restaurant Association

restaurant.org

60
HospitalityUnited StateslargeMEDIUM

The National Restaurant Association operates as a leading membership organization representing the restaurant and foodservice industry in the United States. Their website provides comprehensive resources including advocacy, education, research, membership benefits, and events. The association targets restaurant industry professionals, suppliers, and stakeholders, positioning itself as a key industry voice with a long-standing history since 1996. The business model centers on membership services and industry support, with multiple partner and subsidiary sites enhancing its ecosystem. Technically, the website is built on the Kentico CMS platform and integrates modern marketing and analytics tools such as Google Tag Manager, Marketo Munchkin, Microsoft Clarity, Facebook Pixel, and LinkedIn Insight Tag. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate. The infrastructure is professionally maintained with HTTPS enforced and secure login mechanisms. From a security perspective, the site shows a solid posture with HTTPS, client transfer prohibited domain status, and no visible vulnerabilities or exposed sensitive data. However, it lacks DNSSEC and explicit security headers, and does not implement a cookie consent mechanism, which are areas for improvement. No incident response or security policy pages were found, indicating potential gaps in transparency. Overall, the website is trustworthy, professional, and well-aligned with its business goals. The domain registration data supports legitimacy with consistent and long-term ownership. Recommendations include enhancing security headers, enabling DNSSEC, adding cookie consent for GDPR compliance, and publishing security policies to strengthen trust and compliance.

15
53
2
85
67
70
100
restaurantassociationfoodserviceadvocacyeducation+3 more
Google Tag ManagerMarketo MunchkinMicrosoft ClarityFacebook Pixel+4

Partner Domains:

chooserestaurants.org
partner
www.nationalrestaurantshow.com
partner

+3 more partners

2025-10-08T21:45:31.842Z
R

RestaurantOwner.com

restaurantowner.com

69
HospitalityUnited StatesmediumMEDIUM

RestaurantOwner.com is a well-established online platform dedicated to supporting independent restaurant owners and their teams through comprehensive business plans, resources, and training solutions. The website offers a subscription-based membership model providing access to a rich library of content including financial guidance, operations checklists, leadership training, marketing strategies, staffing tools, and startup growth advice. The platform also features an AI assistant named RObi to facilitate quick access to resources. With a community of over 76,000 members, RestaurantOwner.com positions itself as a leading resource in the hospitality sector for independent restaurateurs. Technically, the website employs modern web technologies such as Bootstrap, jQuery, Font Awesome, and integrates third-party services including Google Analytics, Microsoft Clarity, Adobe Launch, and Vimeo for video content. The site is built on ColdFusion technology, indicated by .cfm URLs, and uses Cloudflare services for performance and security. The site is mobile-optimized with good SEO and accessibility practices, although some security headers could be enhanced. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks explicit security policy and incident response information. No vulnerabilities or exposed sensitive data were detected in the content. The WHOIS data is unavailable from the queried source, which raises some concerns about domain registration transparency, but the professional presentation and active business presence mitigate these concerns. Overall, RestaurantOwner.com demonstrates a strong business and technical foundation with a good security posture. Strategic improvements in security headers, incident response transparency, and WHOIS data clarity would further enhance trust and compliance.

55
53
17
85
75
85
100
restaurantbusinesstrainingresourceshospitality+3 more
Bootstrap 5.3.3jQueryFont Awesome 4.7.0Google Fonts (Raleway, Playfair Display)+8
2025-10-08T21:45:26.834Z
N

National Restaurant Association Solutions, LLC

servsafebrands.com

66
HospitalityUnited StateslargeMEDIUM

ServSafe Brands, operated by National Restaurant Association Solutions, LLC, is a leading provider of training, certification, and benefits for professionals in the restaurant and hospitality industry. The website presents a comprehensive portfolio of brands including ServSafe, AHLEI, ServSuccess, and others, targeting career development and safety compliance in hospitality. The company positions itself as a market leader with a strong brand presence and a broad service offering tailored to hospitality professionals. Technically, the website employs modern marketing and analytics technologies such as Google Tag Manager, Microsoft Application Insights, and Marketo forms, built on the Kentico CMS platform. The site is well-structured, mobile-optimized, and demonstrates good SEO and accessibility practices. However, some security best practices like DNSSEC and security headers could be improved. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks explicit published security policies or incident response contacts. Privacy compliance is supported by a comprehensive privacy policy and terms of use, though no cookie consent mechanism was detected despite tracking scripts in use. Overall, the security posture is solid but could benefit from enhancements in security headers and transparency. The domain WHOIS data aligns well with the business claims, showing a consistent registration history and no privacy protection, indicating legitimacy. No blocking or WAF challenges were detected, allowing full content analysis. The site content is safe for general audiences, with no adult or questionable content detected.

50
58
2
85
72
80
100
hospitalityfoodsafetytrainingcertificationrestaurant+2 more
Google Tag ManagerMicrosoft Application InsightsMarketo FormsjQuery 3.5.1+1

Partner Domains:

servsafe.com
partner
ahlei.servsafebrands.com
subsidiary

+3 more partners

2025-10-08T21:45:06.790Z
ahlei.org favicon

American Hotel & Lodging Educational Institute

ahlei.org

72
HospitalityN/aenterpriseMEDIUM

The American Hotel & Lodging Educational Institute (AHLEI) operates a comprehensive hospitality education and certification platform, serving a global audience of hospitality professionals, educators, and students. The website offers a wide range of training programs, certification exams, academic resources, and international partnerships, positioning AHLEI as a leader in the hospitality education sector. The business model is primarily education and certification services supported by e-commerce for training materials and exams. Technically, the website leverages modern technologies including Kentico CMS, Microsoft Application Insights, Google Tag Manager, and marketing automation tools like Marketo, indicating a mature digital infrastructure. The site is well-optimized for mobile and accessibility, with strong SEO practices. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers and a public security policy are absent. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though it could improve transparency around security and incident response. The domain WHOIS data for the subdomain is not separately available, which is typical for subdomains, and does not raise legitimacy concerns. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and compliance.

50
88
17
85
67
85
100
hospitalityeducationtrainingcertificationhotel+3 more
JavaScriptGoogle Tag ManagerMicrosoft Application InsightsMarketo Munchkin+3

Partner Domains:

servsafe.com
partner
servsuccess.com
partner

+3 more partners

2025-10-08T21:45:01.777Z
madebysoma.co favicon

Fatsoma

madebysoma.co

58
HospitalityUnited KingdommediumMEDIUM

SOMA, part of the Fatsoma Group, is a specialized digital marketing agency focused on transforming events businesses by providing websites, apps, paid ads, branding, and enterprise solutions. They leverage their proprietary experience from building the Fatsoma event marketing system, trusted by over 40,000 event organizers, positioning themselves as industry experts with a strong market presence. Their target audience includes event organizers and hospitality businesses seeking to amplify reach and profitability. Technically, the website is built on Webflow, utilizing modern JavaScript libraries such as GSAP, Swiper.js, and analytics tools including Google Analytics, Google Tag Manager, RudderStack, and Facebook Pixel. The site is well-optimized for performance, mobile responsiveness, and SEO, with a clean, professional design and clear navigation. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks explicit security headers and published security or incident response policies. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is supported by a visible privacy policy and cookie consent popup, indicating good adherence to GDPR requirements. Overall, SOMA presents a professional, trustworthy digital presence with strong business credibility and technical maturity. Strategic improvements in security policy transparency and incident response readiness would further enhance their security posture and trustworthiness.

30
68
2
40
65
75
100
digitalmarketingeventmarketingwebsitesappspaidads+3 more
Google AnalyticsGoogle Tag ManagerRudderStack AnalyticsFacebook Pixel+4

Partner Domains:

business.fatsoma.com
partner
www.fatsoma.com
partner
2025-10-08T21:43:36.245Z
ahla.com favicon

American Hotel & Lodging Association

ahla.com

69
HospitalityUnited StateslargeMEDIUM

The American Hotel & Lodging Association (AHLA) operates a comprehensive and professionally designed website serving as the central hub for the U.S. hotel industry's advocacy, resources, events, and membership services. The site demonstrates a mature digital presence with extensive content, including policy guides, event calendars, industry initiatives, and partner networks. Technically, the website is built on Drupal 10 with modern front-end libraries and integrates multiple analytics and marketing tools such as Google Tag Manager, HubSpot, and Microsoft Clarity, indicating a data-driven approach to user engagement and marketing. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, though explicit security headers and incident response policies are not clearly published. No critical vulnerabilities or exposed sensitive data were detected in the accessible content. Privacy compliance is well addressed with a comprehensive cookie policy and privacy documentation, supporting GDPR compliance. The absence of WHOIS data limits domain registration transparency, but the website's professional content and industry partnerships strongly support its legitimacy. Overall, AHLA's website reflects a robust and credible industry association platform with strong business credibility, good technical implementation, and a solid security posture. Strategic improvements could include publishing explicit security policies, incident response contacts, and enhancing security headers to further strengthen trust and compliance.

40
68
17
80
85
80
100
hospitalityhotelindustryadvocacyeventsmembership+3 more
Drupal 10jQuery UISlick CarouselTypekit Fonts+4

Partner Domains:

www.ahlafoundation.org
partner
ahlei.servsafebrands.com
partner

+1 more partners

2025-10-08T20:37:41.781Z
solemar.de favicon

Kur- und Bäder GmbH Bad Dürrheim

solemar.de

47
HospitalityGermanymediumHIGH

Kur- und Bäder GmbH Bad Dürrheim operates the Solemar wellness and spa center located in Bad Dürrheim, Germany. The website presents a professional and comprehensive digital presence showcasing their wellness services including the Sole-Therme, Schwarzwald-Sauna, Totes-Meer-Salzgrotte, and WellnessCenter. The company targets general wellness and spa visitors, positioning itself as a regional leader in hospitality and health tourism. The site includes detailed information on services, events, and visitor information, supported by certifications such as ISO 9001 and Wellness Stars, enhancing trust and credibility. Technically, the website is built on WordPress with modern plugins for SEO (Yoast), cookie consent (Borlabs Cookie), and user experience enhancements. The site is mobile-optimized, accessible, and SEO-friendly, with a moderate performance profile. Hosting is via a commercial provider consistent with the domain's WHOIS data. Privacy compliance is well addressed with clear policies and consent mechanisms. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the site lacks explicit security policies or incident response contacts, which could be improved. No WAF or blocking mechanisms are detected, allowing full content access. Overall, the site is trustworthy, professional, and compliant with relevant regulations. Strategic recommendations include enhancing security headers, publishing a security policy, and adding a vulnerability disclosure mechanism to further strengthen security and compliance posture.

30
55
2
70
77
60
-
wellnessspatourismhealthgermany+2 more
WordPressYoast SEO pluginBorlabs Cookie pluginjQuery+3

Partner Domains:

kurundbaeder.de
partner
bad-duerrheim.info
partner

+3 more partners

2025-10-08T17:11:50.115Z
wund.de favicon

Thermengruppe Josef Wund

wund.de

54
HospitalityGermanymediumMEDIUM

Thermengruppe Josef Wund is a leading German company specializing in the development, planning, and operation of unique thermal and bathing experience worlds. With a history spanning over half a century, the company operates multiple locations attracting millions of visitors annually. Their business model focuses on delivering exceptional architectural and experiential bathing facilities, positioning them as a market leader in the hospitality sector within Germany. The website reflects a professional digital presence with good content quality and user experience, targeting end consumers interested in wellness and bathing experiences. Technically, the website employs modern JavaScript technologies, integrates HubSpot for analytics and marketing, and uses Cookiebot for GDPR-compliant cookie consent management. The site is mobile-optimized and demonstrates moderate performance. However, no explicit CMS or hosting provider information is discernible. SEO and accessibility are adequately addressed. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks visible security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is consistent and supports the legitimacy of the domain and business. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance. Strategic recommendations include enhancing security posture by adding security headers, publishing security and incident response policies, and considering a vulnerability disclosure program to further strengthen trust and resilience.

25
83
2
80
72
70
20
thermalbathingexperiencehospitalitygermany+4 more
JavaScriptHubSpotGoogle Tag ManagerCookiebot
2025-10-08T16:40:12.063Z
cransmontana2027.ch favicon

Crans-Montana 2027

cransmontana2027.ch

57
HospitalitySwitzerlandsmallMEDIUM

Crans-Montana 2027 is the official organizing committee and promotional website for the FIS Alpine World Ski Championships scheduled for February 2027 in Crans-Montana, Switzerland. The website serves as a comprehensive information hub for event details, news, ambassadors, volunteer opportunities, and partner information. It targets ski enthusiasts, sports fans, tourists, and local communities, providing a professional and engaging digital presence for this major international sporting event. The business model revolves around event promotion, community engagement, and official merchandise sales through partner channels. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies including responsive design, Google Tag Manager for analytics and marketing, and a cookie consent mechanism ensuring GDPR compliance. The site demonstrates good mobile optimization, clear navigation, and professional content presentation, reflecting a mature digital infrastructure suitable for its audience and purpose. From a security perspective, the site enforces HTTPS and implements cookie consent management, though some security headers could be improved. No vulnerabilities or exposed sensitive data were detected. Privacy policies are comprehensive and clearly accessible, supporting GDPR compliance. The domain registration details align well with the website's claims, enhancing trustworthiness. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing security headers, publishing a security policy or incident response contact, and continuous monitoring of third-party scripts to maintain security posture.

65
68
17
75
62
80
-
sportsskiingeventswitzerlandalpine+3 more
TYPO3 CMSGoogle Tag ManagerJavaScriptCSS+1

Partner Domains:

swiss-ski.store
partner
skiworldcup-cransmontana.ch
partner

+1 more partners

2025-10-08T16:37:36.070Z
badduerrheim.de favicon

Kur- und Bäder GmbH Bad Dürrheim

badduerrheim.de

47
HospitalityGermanymediumHIGH

Kur- und Bäder GmbH Bad Dürrheim operates a comprehensive tourism and wellness website promoting Bad Dürrheim as a health resort and leisure destination in the Black Forest region of Germany. The site offers detailed information on accommodations, gastronomy, events, and wellness services, targeting tourists and visitors seeking health and leisure experiences. The business positions itself as a regional tourism authority with a focus on wellness and sustainable tourism, supported by certifications such as ISO 9001 and Wellness Stars. Technically, the website is built on WordPress with modern plugins like Yoast SEO and Borlabs Cookie for GDPR compliance, and uses frameworks such as Foundation for responsive design. The site demonstrates good performance, accessibility, and SEO optimization. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, though some security headers could be improved. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, trustworthy, and compliant with privacy regulations, making it a reliable source for tourism information. Strategic recommendations include enhancing security headers, publishing a security policy, and adding a vulnerability disclosure mechanism.

30
55
2
70
77
60
-
tourismwellnesshealtheventsblackforest+3 more
WordPressYoast SEO pluginBorlabs Cookie pluginjQuery+3

Partner Domains:

kurundbaeder.de
partner
bad-duerrheim.info
partner

+3 more partners

2025-10-08T16:04:40.943Z