Skip to main content

Transportation security reports

Browse 7,137 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

148887
Websites
130
Industries
113
Countries
52
Avg Score
Page 63 of 143|Showing 3101-3150 of 7137
tuag.ch favicon

TUAG Triebwerk Unterhalt AG

tuag.ch

52
TransportationSwitzerlandsmallMEDIUM

TUAG Triebwerk Unterhalt AG is a specialized helicopter engine maintenance and repair company based in Geneva, Switzerland. It operates as an official Safran Helicopter Engines approved center, servicing key engine models such as Arriel, Arrius, and Makila. The company is part of the Europavia Group, which provides a broader ecosystem of helicopter sales, maintenance, and spare parts services. TUAG's market position is solid within the European helicopter maintenance sector, serving clients in Switzerland, France, Belgium, and globally. The website reflects a professional business with clear service offerings and certifications, targeting helicopter operators and aviation maintenance providers. Technically, the website is built on Joomla CMS with common web technologies like jQuery and Bootstrap. It features a responsive design with moderate performance and basic SEO and accessibility features. The site uses HTTPS but lacks advanced security headers, which is a notable area for improvement. The contact mechanisms include multiple emails, phone numbers, and a contact form with a simple CAPTCHA, indicating basic data collection practices. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data but misses several security best practices such as security headers and robust CAPTCHA solutions. There is no visible privacy or cookie consent mechanism, which may impact GDPR compliance. The WHOIS data is consistent with the business claims, showing a legitimate and established domain registration. Overall, TUAG's website presents a trustworthy and professional image with room for enhancement in privacy compliance and security hardening. Strategic improvements in these areas would strengthen the company's digital trust and regulatory adherence.

30
35
17
70
90
75
20
helicoptermaintenancesafranaviationrepair+2 more
Joomla CMSjQueryBootstrapOwl Carousel+1

Partner Domains:

europavia.ch
parent
shm-ag.ch
partner

+1 more partners

2025-10-04T04:19:17.552Z
shm-ag.ch favicon

Swiss Helicopter Maintenance AG

shm-ag.ch

50
TransportationSwitzerlandmediumMEDIUM

Swiss Helicopter Maintenance AG is a specialized service provider in the helicopter maintenance sector, holding key certifications such as EASA Part-145 and CAMO approvals. The company operates multiple service centers in Switzerland and Liechtenstein, offering maintenance, avionics, continuing airworthiness management, and logistics services. Their market position is strong within the aviation maintenance niche, supported by authorized partnerships with major helicopter manufacturers and avionics dealers. The website reflects a professional and consistent brand image with clear service offerings targeted at helicopter operators and aviation clients. Technically, the website is built on Joomla CMS using the Astroid framework and SP Page Builder, incorporating modern web technologies such as jQuery and FontAwesome. It is mobile-optimized with good SEO practices and uses Matomo for analytics, indicating a moderate level of digital maturity. Performance is moderate, with no critical technical issues detected. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks explicit security policies and incident response contacts. No critical vulnerabilities or exposed sensitive data were found. The WHOIS data is consistent with the business claims, enhancing trustworthiness. Overall, the security posture is solid but could be improved by adding security headers and formal policies. The overall risk assessment is low, with the website presenting a trustworthy and professional front for its business operations. Strategic recommendations include enhancing security transparency, adding incident response contacts, and continuous monitoring of third-party components to maintain security and compliance.

50
53
2
70
72
75
-
helicoptermaintenanceaviationeasacertifiedaviationserviceshelicopterlogistics+1 more
Joomla CMSjQueryFontAwesomeGoogle Fonts (Lato, Roboto Condensed)+2
2025-10-04T04:19:12.542Z
airbus.com favicon

Airbus

airbus.com

78
TransportationFranceenterpriseLOW

Airbus is a global aerospace leader specializing in the design, manufacture, and delivery of commercial aircraft, helicopters, military transports, satellites, and launchers. The company positions itself as a pioneer in sustainable aerospace, emphasizing innovation and environmental responsibility. The website reflects a mature digital presence with comprehensive content targeting industry professionals, customers, investors, and the general public interested in aerospace and sustainability. Airbus maintains a strong market position with a broad portfolio of products and services across multiple aerospace sectors. Technically, the website is built on Drupal CMS and leverages modern web technologies including Video.js for multimedia, Piwik PRO for analytics, and OneTrust for cookie consent management. The site is mobile-optimized, accessible, and SEO-friendly, providing a smooth user experience. External integrations include social media platforms and analytics services, all implemented with privacy compliance in mind. From a security perspective, Airbus employs HTTPS with strong SSL configurations and implements key security headers to protect users. The presence of ISO 27001 certification indicates a commitment to information security management. However, the absence of publicly available incident response contacts and vulnerability disclosure policies suggests areas for improvement. No critical vulnerabilities or exposed sensitive data were detected in the website content. Overall, the website is professional, trustworthy, and aligns well with Airbus's corporate stature. The missing WHOIS data is a notable anomaly but likely due to privacy or registry policies rather than malicious intent. Strategic recommendations include enhancing transparency around security incident response and vulnerability reporting to further strengthen trust and security posture.

80
58
47
85
82
85
100
aerospaceaviationmanufacturingtechnologyinnovation+3 more
Drupal CMSVideo.jsPiwik PRO analyticsOneTrust cookie consent+2

Partner Domains:

aircraft.airbus.com
subsidiary
www.acj.airbus.com
subsidiary

+1 more partners

2025-10-04T04:19:07.412Z
jetaviation.com favicon

Jet Aviation

jetaviation.com

63
TransportationN/alargeMEDIUM

Jet Aviation operates as a global business aviation services provider offering a comprehensive range of services including aircraft management, sales, charter, completions, FBO, government programs, maintenance, and staffing. The company targets business and private aviation clients worldwide, positioning itself as a trusted and established player in the transportation sector. The website reflects a professional and consistent brand image with good content quality and clear navigation. Technically, the website is built on WordPress using the GeneratePress theme, integrating modern technologies such as Gravity Forms, Yoast SEO, and analytics tools like HubSpot and Google Tag Manager. The site is mobile optimized and performs moderately well, though some accessibility features are basic. Security posture is solid with HTTPS enforced and no visible vulnerabilities, but lacks some advanced security headers and explicit security policies. The absence of WHOIS data limits domain trust assessment, but the website's professional presentation and contact information support legitimacy. Privacy compliance is partial with a cookie consent mechanism but no explicit privacy or terms of service pages detected. Overall, the site is secure and professional but could improve transparency and security documentation. Strategic recommendations include enhancing security headers, publishing comprehensive privacy and security policies, implementing vulnerability disclosure mechanisms, and improving accessibility and privacy compliance to strengthen trust and regulatory adherence.

15
83
17
70
52
85
100
aviationbusinessaviationaircraftmanagementcharteraircraftsales+3 more
WordPressGravity FormsYoast SEOGoogle Tag Manager+3
2025-10-04T03:57:40.456Z
ihsa.ca favicon

Infrastructure Health and Safety Association

ihsa.ca

68
TransportationCanadalargeMEDIUM

Infrastructure Health and Safety Association (IHSA) is a leading non-profit organization in Ontario dedicated to occupational health and safety across multiple sectors including construction, transportation, electrical utilities, and aggregates. The website serves as a comprehensive resource hub offering training, consulting, certification programs, and safety products. IHSA maintains a strong market position as a trusted authority in workplace safety, supported by official certifications and government partnerships. The digital presence is professional, well-branded, and targets workers and employers in Ontario's industrial sectors. Technically, the website is built on ASP.NET WebForms with a mature technology stack including jQuery, Google Analytics, Heap Analytics, and multiple marketing and tracking tools. The site is moderately performant, mobile-optimized, and includes accessibility features, though there is room for improvement in accessibility compliance. Security posture is strong with HTTPS, session management, and security cookies, but explicit security headers and incident response information are not publicly documented. Privacy compliance is robust with a comprehensive privacy policy, cookie consent mechanisms, and GDPR considerations. Contact information is clearly provided with verified company emails and phone numbers. No critical vulnerabilities or suspicious patterns were detected. The WHOIS data is unavailable likely due to privacy protection, but the website's professionalism and trust indicators strongly support its legitimacy. Overall, IHSA's website reflects a mature, secure, and user-focused digital platform that effectively supports its mission to improve workplace health and safety in Ontario.

65
70
53
100
17
75
82
healthandsafetyoccupationalsafetytrainingontarioconstruction+5 more
ASP.NETjQuery 2.1.1Google AnalyticsGoogle Tag Manager+5

Partner Domains:

threadsoflife.ca
partner
www.theloc.ca
partner

+2 more partners

2025-10-04T03:31:26.525Z
mhcaworksafely.ca favicon

Manitoba Heavy Construction Association

mhcaworksafely.ca

58
TransportationCanadamediumMEDIUM

The Manitoba Heavy Construction Association (MHCA) operates the WorkSafely program, serving as a trusted safety partner for Manitoba’s heavy construction industry. The website presents MHCA as a recognized leader offering tailored safety training, COR® certification, expert consulting, and resources to empower companies to build safer worksites. The target audience primarily includes companies within Manitoba's heavy construction sector. The business model is that of a membership association providing education, certification, and advisory services to enhance workplace safety and compliance. Technically, the website is built on WordPress with a modern tech stack including WooCommerce for e-commerce capabilities, Gravity Forms for data collection, and Kadence Blocks for layout. It uses Cloudflare for DNS and integrates Google Analytics and Tag Manager for analytics. The site is mobile-optimized with good SEO practices and structured data, though accessibility features are basic. Performance is moderate, with room for improvement in security headers and DNSSEC. From a security perspective, the site uses HTTPS and has domain-level protections such as clientDeleteProhibited status. However, DNSSEC is not enabled, and no explicit security headers were detected. There is no published privacy policy, cookie policy, or incident response information, which are gaps in compliance and transparency. The site collects user data via a contact form but lacks visible cookie consent mechanisms. Overall, the website is professional, trustworthy, and content-rich, serving its industry well. Security posture is adequate but could be enhanced with better DNS security and published policies. Privacy compliance needs improvement to meet GDPR and related standards. Strategic recommendations include enabling DNSSEC, adding security headers, publishing privacy and cookie policies, and implementing consent mechanisms to improve compliance and user trust.

15
58
2
60
75
75
100
heavyconstructionsafetytrainingcorcertificationmanitobaworksafely+3 more
WordPressWooCommerceGravity FormsKadence Blocks+3
2025-10-04T03:29:35.708Z
focus-ebike.de favicon

FOCUS E-Bike & FOCUS-Mobility - Experten für nachhaltige Mobilität

focus-ebike.de

48
TransportationGermanymediumHIGH

The website focus-mobility.de serves as an expert platform dedicated to sustainable mobility, primarily focusing on E-Bikes and related electric mobility solutions. It offers comprehensive news, expert reports, and product testing to inform and guide consumers interested in the evolving transportation landscape. The site targets environmentally conscious individuals and mobility enthusiasts in Germany, positioning itself as a trusted source for mobility-related content and product evaluations. Technically, the website employs modern JavaScript frameworks, likely Vue.js, and integrates multiple third-party services including Google Tag Manager and INFOnline Measurement Manager for analytics and consent management. Hosting is provided via Amazon AWS infrastructure, ensuring reliable performance and scalability. The site is mobile-optimized and demonstrates good SEO and accessibility practices, although some accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and includes a Content Security Policy header, reflecting a good baseline security posture. GDPR compliance is actively managed through consent mechanisms, although explicit privacy policies and security incident response information are not evident in the provided content. No critical vulnerabilities or WAF protections were detected, indicating open and accessible content. Overall, the website presents a professional and trustworthy front for its business domain, with solid technical implementation and moderate privacy compliance. Strategic improvements in explicit privacy documentation, security headers, and incident response transparency would further enhance its security and compliance stature.

15
45
2
70
77
-
100
e-bikesustainablemobilitytransportationproductreviewsnews+2 more
JavaScriptVue.js (implied by vue-slider classes)Google Tag ManagerINFOnline Measurement Manager+1
2025-10-04T02:40:57.458Z
sbb.ch favicon

Schweizerische Bundesbahnen SBB

sbb.ch

77
TransportationSwitzerlandenterpriseLOW

The website www.sbb.ch serves as the official online portal for the Swiss Federal Railways (SBB), providing comprehensive travel information, ticketing services, and customer support for public transportation in Switzerland. It holds a strong market position as the national railway operator, offering services to a broad audience including daily commuters, tourists, and business travelers. The site is well-branded, multilingual, and professionally maintained, reflecting the enterprise scale and public sector nature of the organization. Technically, the site leverages modern web technologies including React and Next.js frameworks, supported by performance and monitoring tools such as New Relic and Adobe Launch. The infrastructure is optimized for fast loading, mobile responsiveness, and accessibility, ensuring a high-quality user experience. SEO and metadata are well implemented, enhancing discoverability and usability. From a security perspective, the website enforces HTTPS, employs multiple security headers, and integrates cookie consent mechanisms compliant with GDPR. While no explicit security policy or incident response information is published, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. The domain registration is consistent with the official entity, reinforcing trust and legitimacy. Overall, the website demonstrates a high level of professionalism, security, and compliance, suitable for a critical national transportation service. Strategic recommendations include publishing dedicated security and incident response policies and enhancing transparency around vulnerability disclosures to further strengthen trust and security culture.

90
50
2
98
97
85
100
transportationrailwaypublictransportticketingtravelinformation+1 more
ReactNext.jsNew RelicAdobe Launch+1

Partner Domains:

company.sbb.ch
partner
business.sbb.ch
partner

+2 more partners

2025-10-04T01:29:15.561Z
hz-containers.com favicon

HZ CONTAINERS.com

hz-containers.com

60
TransportationCzech RepublicmediumMEDIUM

HZ CONTAINERS.com is an established online business specializing in the sale and rental of new and used shipping containers worldwide. The company offers a broad range of container types, sizes, and accessories, targeting businesses and individuals requiring container logistics solutions. The website supports multiple languages, enhancing its global reach and customer accessibility. The business model focuses on e-commerce combined with logistics services, positioning itself as a reliable provider in the transportation sector. Technically, the website is built on WordPress with Yoast SEO and Google Tag Manager integration, hosted with Cloudflare DNS services. The site demonstrates good digital maturity with responsive design, SEO optimization, and cookie consent mechanisms compliant with GDPR. Performance is moderate, with room for improvement in accessibility and security headers. From a security perspective, the site uses HTTPS with a valid SSL configuration and domain transfer/update protections. However, DNSSEC is not enabled, and security headers are not explicitly detected. There is no published security policy or incident response contact information, which could be improved to enhance trust and compliance. No vulnerabilities or suspicious activities were detected in the content or technical setup. Overall, the website presents a professional and trustworthy front for its business, with good content quality and user experience. Strategic recommendations include enabling DNSSEC, adding security headers, publishing a security policy, and providing incident response contacts to strengthen security posture and compliance. These improvements will support the company’s credibility and protect customer data more effectively.

30
50
17
55
65
80
100
shippingcontainerslogisticscontainersalescontainerrentalmultilingual+1 more
WordPressYoast SEO pluginGoogle Tag ManagerCloudflare DNS
2025-10-03T22:01:34.143Z
gmrvisakhapatnamairport.com favicon

GMR Visakhapatnam International Airport Limited

gmrvisakhapatnamairport.com

69
TransportationIndiamediumMEDIUM

GMR Visakhapatnam International Airport Limited is a subsidiary of GMR Airports Limited focused on developing a Greenfield international airport in Bhogapuram, Andhra Pradesh, India. The website presents corporate information, policies, annual reports, and highlights the airport project and its social responsibility initiatives. The company is positioned as a medium-sized transportation infrastructure entity within the GMR Group portfolio, targeting travelers, investors, and stakeholders. Technically, the website uses a modern tech stack including Bootstrap, jQuery, and Google Tag Manager, hosted behind Cloudflare DNS. The site is mobile optimized with good navigation and SEO practices, though accessibility features are basic. Performance is moderate with no critical technical issues detected. Security posture is adequate with HTTPS enforced and domain locks in place, but lacks DNSSEC and explicit security headers. No cookie consent mechanism or incident response contacts are published, indicating room for improvement in privacy compliance and security transparency. No vulnerabilities or malware indicators were found. Overall, the website is professional and trustworthy with a good business credibility score. Strategic improvements in security headers, DNSSEC, privacy compliance, and incident response disclosures would enhance the security posture and regulatory compliance.

85
53
17
60
82
75
100
airportaviationinfrastructurecorporateindia+2 more
jQueryBootstrapSlick CarouselGoogle Tag Manager+1

Partner Domains:

gmraero.com
partner
gmrgroup.in
parent

+2 more partners

2025-10-03T20:49:27.047Z
dpworld.com favicon

DP World

dpworld.com

69
TransportationUnited Arab EmiratesenterpriseMEDIUM

DP World is a globally recognized leader in end-to-end supply chain solutions, specializing in port operations, logistics, and integrated services that facilitate international trade and community prosperity. The company operates at an enterprise scale with a strong market position in the transportation sector, offering a comprehensive portfolio of services including freight forwarding, contract logistics, marine services, and economic zones. Their digital presence reflects a mature and professional organization with a focus on user experience and accessibility. Technically, the website leverages modern frameworks such as Next.js and React, hosted on Vercel with content delivery via AWS Cloudfront, ensuring fast performance and mobile optimization. The use of Google Tag Manager and Usercentrics CMP indicates a commitment to analytics and privacy compliance. The site is well-structured with SEO best practices and accessibility considerations. From a security perspective, the site enforces HTTPS, implements key security headers, and uses a consent management platform, reflecting a strong security posture. However, the absence of explicit security policies, incident response information, and vulnerability disclosure mechanisms suggests areas for improvement in transparency and readiness. The missing WHOIS data introduces some uncertainty about domain registration legitimacy, though the website content and branding strongly support authenticity. Overall, DP World’s website demonstrates a high level of professionalism, technical sophistication, and compliance with privacy standards, positioning it as a trustworthy and authoritative source in the global logistics industry. Strategic enhancements in security transparency and domain registration clarity would further strengthen its risk profile.

30
68
17
75
100
80
100
logisticssupplychainglobaltradeportstransportation+1 more
ReactNext.jsGoogle Tag ManagerUsercentrics CMP+2

Partner Domains:

foundation.dpworld.com
subsidiary
2025-10-03T17:04:34.554Z
gmrinfra.com favicon

GMR Aero

gmrinfra.com

64
TransportationIndialargeMEDIUM

GMR Aero is a prominent global aviation infrastructure developer and operator, primarily focused on airport development, operations, and related services in India and Southeast Asia. The company operates multiple major airports, including Delhi, Hyderabad, Goa, and international locations such as Crete and the Philippines. It offers a broad range of services including retail, cargo, MRO, and real estate development through its Aerotropolis concept. The company is positioned as the largest private airport operator in Asia and second largest globally, with a strong market presence and strategic partnerships such as with Groupe ADP. Technically, the website employs modern web technologies including jQuery, FontAwesome, Google Tag Manager, and Google Analytics, hosted behind Cloudflare DNS. The site is mobile optimized with good SEO practices and structured data for enhanced search visibility. However, DNSSEC is not enabled, and no cookie consent mechanism is present, indicating areas for improvement in security and privacy compliance. From a security perspective, the site uses HTTPS with domain locks to prevent unauthorized changes, but lacks advanced security headers and published security policies or incident response contacts. No vulnerabilities or malicious content were detected. Privacy compliance is basic, with a privacy policy and terms of use present but no explicit GDPR consent mechanisms. Overall, the website is professional, trustworthy, and well-maintained, reflecting a mature business with a strong digital presence. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing security policies, and enhancing security headers to improve the security posture and compliance.

75
58
2
60
62
75
100
airportaviationinfrastructureairportoperationsairportdevelopment+5 more
jQuery 3.7.1FontAwesome 5.8.1Google Fonts (Red Hat Display, Space Grotesk)Google Tag Manager+3

Partner Domains:

gmrgroup.in
parent
gmraerocity.com
subsidiary

+3 more partners

2025-10-03T17:03:39.231Z
catrentalstore.com favicon

The Cat Rental Store

catrentalstore.com

71
TransportationN/aenterpriseMEDIUM

The Cat Rental Store website represents a major enterprise-level business specializing in construction equipment and tool rental services. The site is professionally designed, leveraging Adobe Experience Manager CMS and modern technologies such as Google Tag Manager and Microsoft Authentication Library. The business is positioned as a leading global provider with a strong brand association to Caterpillar Inc., targeting construction and industrial sectors worldwide. The website content is comprehensive, well-structured, and optimized for accessibility and SEO, providing a positive user experience. From a technical perspective, the site employs modern JavaScript libraries and asynchronous loading for performance optimization. The presence of cookie consent mechanisms indicates some level of privacy compliance, although explicit privacy policies and terms of service are not clearly found in the scanned content. Security posture is generally good with HTTPS enforced and no visible vulnerabilities, but the absence of security headers and incident response information suggests room for improvement. A significant concern is the lack of WHOIS data for the domain, which is unusual for a commercial enterprise and may indicate privacy protection or data source limitations. This reduces the domain registration trustworthiness score despite the strong brand presence and professional website. Overall, the site is low risk but would benefit from enhanced transparency and security best practices. Strategic recommendations include publishing clear privacy and security policies, adding security headers, providing incident response contacts, and improving WHOIS transparency to strengthen trust and compliance.

60
73
22
50
100
85
100
constructionequipmentrentaltoolrentalcaterpillarindustrial+1 more
Google Tag ManagerGoogle Maps APIMicrosoft Authentication Library (msal-browser)jQuery+1

Partner Domains:

cat.com
parent
catcrm.my.site.com
service
2025-10-03T16:31:23.778Z
prattwhitney.com favicon

Pratt & Whitney

prattwhitney.com

60
TransportationN/aenterpriseMEDIUM

Pratt & Whitney is a globally recognized aerospace company specializing in the design, manufacture, and servicing of aircraft engines and auxiliary power units. As a subsidiary of Raytheon Technologies, it holds a strong market position in commercial, military, business, and general aviation sectors. The website reflects a mature digital presence with comprehensive product and service offerings, targeting aerospace industry professionals and customers worldwide. The company emphasizes innovation and sustainability, as evidenced by its Future of Flight initiatives and extensive maintenance and digital health management services. Technically, the website is built on a modern CMS platform (Sitecore) and employs advanced web technologies including asynchronous JavaScript loading, Google Tag Manager, and Cloudflare CDN for performance and security. The site is mobile-optimized, accessible, and SEO-friendly, providing a seamless user experience. The presence of multiple customer portals and integration with social media platforms further enhances its digital maturity. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR compliance. However, explicit security policies, incident response information, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. No critical vulnerabilities or exposed sensitive data were detected in the analysis. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance, supporting Pratt & Whitney's reputation as a leading aerospace manufacturer. Strategic recommendations include publishing detailed security and incident response policies, establishing a vulnerability disclosure program, and enhancing transparency around data protection roles.

55
80
2
70
-
85
100
aerospaceaircraftenginesmanufacturingmilitarycommercialaviation+3 more
JavaScriptYouTube iframe APIGoogle Tag ManagerCrazy Egg+2

Partner Domains:

www.rtx.com
parent
www.collinsaerospace.com
sister

+2 more partners

2025-10-03T16:21:49.341Z
lsvcarinsurance.com.au favicon

Lumley Special Vehicles Insurance

lsvcarinsurance.com.au

62
TransportationAustraliamediumMEDIUM

Lumley Special Vehicles Insurance operates as a specialized insurer for classic and vintage vehicles in Australia, offering tailored insurance products for classic cars and motorcycles. The business is currently transitioning new policy offerings to larger partner insurers NRMA Insurance and RACV Insurance, while continuing to service existing customers. The website reflects this transition clearly with calls to action directing new customers to partner sites and detailed information for existing policyholders. The company is a trading name of Insurance Australia Limited, a well-established insurer in the region. Technically, the website is built on Adobe Experience Manager, leveraging modern web technologies including Adobe Helix RUM for performance monitoring and Vidyard for video content. The site is well-optimized for mobile devices, has good SEO practices, and provides a professional user experience. However, some security best practices such as explicit security headers and cookie consent mechanisms are missing. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. The absence of WHOIS data limits domain trust verification, but the presence of official insurer names, ABNs, and regulatory references supports legitimacy. No security policy or incident response information is published, which could be improved to enhance trust. Overall, the website is professional, secure, and trustworthy with minor gaps in privacy compliance and security headers. The business is credible and well-positioned in its niche market, with clear communication about its operational changes and partner relationships.

25
58
57
40
70
65
100
insuranceclassiccarvintagevehicleaustralialumley+2 more
Adobe Helix RUMChromed Design System assetsVidyard video embedBoomerang performance monitoring

Partner Domains:

www.nrma.com.au
partner
www.racv.com.au
partner
2025-10-03T16:01:39.692Z
metalsa.com favicon

Metalsa

metalsa.com

63
TransportationMexicolargeMEDIUM

Metalsa is a well-established global supplier specializing in structural products and integrated chassis systems for the automotive industry, with over 60 years of experience. The company emphasizes innovation, sustainability, and engineering excellence to deliver lightweight vehicle structures. Their market position is strong, supported by numerous industry awards and certifications, reflecting a commitment to quality and corporate responsibility. The website presents a professional and consistent brand image targeting automotive manufacturers and partners. Technically, the website is built on WordPress using modern plugins such as Jetpack and WPML for multilingual support. It incorporates multimedia content including videos and interactive sliders, providing a good user experience with mobile optimization. However, some technical improvements could enhance performance and security, such as enabling DNSSEC and adding security headers. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks visible security headers and explicit security policies. There is no public vulnerability disclosure or incident response information, which could be improved to enhance trust and compliance. Privacy compliance is weak due to the absence of privacy and cookie policies, which is a notable gap given GDPR and other regulations. Overall, the website is trustworthy and professional but would benefit from enhanced privacy disclosures, security policies, and technical security measures to improve its security posture and compliance standing.

65
68
17
70
42
60
100
automotivemanufacturingsustainabilitychassisengineering+1 more
WordPressVideo.jsSwiper.jsjQuery+2
2025-10-03T15:59:05.078Z