Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 10 of 775|Showing 451-500 of 38713
H

Hurricane Electric

tunnelbroker.net

57
TechnologyUnited StateslargeMEDIUM

Hurricane Electric operates a well-established free IPv6 tunnel broker service that enables users to access the IPv6 Internet by tunneling over IPv4 connections. The service is targeted primarily at developers, network engineers, and experimenters who require stable IPv6 connectivity. Hurricane Electric is a large, reputable ISP with a global backbone and multiple tunnel server locations worldwide, positioning it strongly in the IPv6 and networking market. The website content is professional and technically focused, providing clear information about the service and related offerings such as colocation and dedicated servers. The presence of a terms of service page and clear contact information supports business credibility. From a technical perspective, the website uses standard web technologies including HTML, CSS, and JavaScript with jQuery libraries. The hosting appears to be managed by Hurricane Electric itself, reflecting good control over infrastructure. Performance and mobile optimization are moderate, with room for improvement in accessibility and SEO. Security posture shows some gaps: no DNSSEC enabled, no visible security headers, and no explicit HTTPS enforcement in the provided HTML snapshot. Privacy compliance is weak due to the absence of privacy and cookie policies, which is a notable compliance risk. Overall, the security posture is moderate with no critical vulnerabilities detected in the visible content, but improvements are recommended to enhance DNS security, implement security headers, and provide clear privacy and cookie policies. The domain WHOIS data is consistent and supports the legitimacy of the business, with a long domain age and matching registrant information. No WAF or blocking mechanisms were detected, allowing full content access and analysis. Strategic recommendations include enabling DNSSEC, improving HTTPS and security headers, publishing privacy and cookie policies, and adding vulnerability disclosure information to strengthen trust and compliance. These steps will improve the security posture and regulatory compliance, enhancing user trust and business resilience.

60
50
2
40
57
70
100
ipv6tunnelbrokernetworkinginternetserviceshurricaneelectric
HTML5CSSJavaScriptjQuery 1.11.1+1
2025-11-01T10:00:22.611Z
ekosola.si favicon

Društvo DOVES – FEE SLOVENIA

ekosola.si

57
EducationSloveniamediumMEDIUM

Ekošola.si represents a well-established Slovenian non-profit organization focused on environmental education and sustainable development awareness among children, students, and educators. The website serves as a hub for program information, news, projects, and partner engagement, positioning itself as a leading educational network in Slovenia. The business model revolves around educational program delivery, community involvement, and international cooperation under the Foundation for Environmental Education (FEE) umbrella. Technically, the website is built on WordPress using popular plugins such as Slider Revolution and WPBakery Page Builder, with modern web technologies including jQuery and Google reCAPTCHA for form security. The site demonstrates good mobile optimization and moderate performance, with a clean and professional design that supports user engagement and navigation. From a security perspective, the site enforces HTTPS, employs security headers, and integrates CAPTCHA to protect forms, reflecting a mature security posture. However, it lacks explicit security policies, vulnerability disclosure mechanisms, and incident response contacts, which are recommended for enhanced transparency and preparedness. Overall, the website is trustworthy, compliant with GDPR, and safe for general audiences. Strategic recommendations include adding dedicated security and incident response pages, improving accessibility features, and maintaining up-to-date software to mitigate potential vulnerabilities.

35
25
17
70
62
65
100
environmenteducationsustainabilitynon-profitslovenia+2 more
WordPressPHPJavaScriptjQuery+5
2025-11-01T09:59:57.547Z
kendris.com favicon

KENDRIS Ltd

kendris.com

74
FinanceSwitzerlandmediumMEDIUM

KENDRIS Ltd is a Swiss-based international advisory and fiduciary services firm with a strong focus on wealthy individuals, family offices, corporations, and institutional clients. The company emphasizes its Swiss entrepreneurial roots, confidentiality, and independence from banks and financial institutions. With over 110 years of history and a presence in multiple countries, KENDRIS offers a broad range of services including trusts, corporate services, tax and legal advice, family office services, and alternative investment fund solutions through its subsidiary KENDRIS Capital Limited. The website is professionally designed, well-structured, and provides comprehensive information about its services and corporate group. Technically, the website employs modern technologies such as Google Tag Manager, CookieYes for consent management, and Mautic for marketing automation. It is mobile-optimized, accessible, and SEO-friendly. Security posture is strong with HTTPS enforced and secure forms, though it lacks explicit security policy and incident response information. Privacy compliance is well addressed with clear cookie and privacy policies and GDPR adherence. However, the absence of WHOIS data for the domain raises concerns about domain registration legitimacy, which partially impacts the overall trustworthiness score. Despite this, the professional presentation and detailed business information mitigate some risks. Overall, the website represents a credible and mature financial services firm with room for improvement in transparency around security policies and domain registration verification.

85
83
17
75
72
80
100
financefiduciaryadvisorywealthmanagementcorporateservices+5 more
Google Tag ManagerCookieYes Consent ManagementMautic FormsMapbox+2

Partner Domains:

www.kendriscapital.com
subsidiary
2025-11-01T09:44:33.422Z
db-bus-challenge.de favicon

DB Bus Challenge

db-bus-challenge.de

41
TransportationGermanysmallHIGH

The website 'DB Bus Challenge' is an interactive online game designed to engage users by simulating bus transportation challenges, likely related to Deutsche Bahn's bus services in Germany. The site targets a general audience interested in public transportation and casual gaming. The business model appears promotional, aiming to increase engagement and brand awareness rather than direct sales. The website is relatively small in scale with basic content and moderate branding consistency. Technically, the site uses a JavaScript-based frontend with RequireJS and jQuery, implementing device detection and responsive design for mobile optimization. Performance is moderate with basic SEO and accessibility features. No CMS or backend technologies are evident from the HTML content. Hosting details are limited but DNS servers indicate a standard hosting environment. From a security perspective, the site uses HTTPS but lacks visible security headers and formal privacy or cookie policies, which are critical for GDPR compliance given the European audience. No contact or incident response information is provided, limiting transparency and trust. No vulnerabilities or exposed sensitive data were detected in the static content. Overall security posture is average but could be improved with standard best practices. The overall risk is moderate with no critical issues detected. Strategic recommendations include adding privacy and cookie policies, improving security headers, providing clear contact and incident response information, and enhancing SEO and accessibility. These improvements would increase user trust, compliance, and security maturity.

25
25
2
60
72
60
20
gametransportationinteractivebusdeutschebahn+1 more
jQueryRequireJSJavaScript
2025-11-01T09:41:09.539Z
bahnshop.de favicon

cyber-Wear Heidelberg GmbH

bahnshop.de

53
TransportationGermanymediumMEDIUM

bahnshop.de is the official merchandise e-commerce platform for Deutsche Bahn, operated by cyber-Wear Heidelberg GmbH. The website offers a wide range of branded products including collectibles, travel accessories, family and kids items, and other merchandise targeted at Bahn fans, travelers, and families. It holds a strong market position as the official shop for Deutsche Bahn merchandise, leveraging the brand's reputation and customer base. The business model focuses on online retail with customer account management and a comprehensive product catalog. The site is well-branded, consistent, and professionally maintained with a medium-sized operational scale and a founding date around 2014. Technically, the website is built on the Shopware CMS platform, utilizing modern web technologies such as JavaScript, CSS3, and HTML5. It integrates Google Tag Manager and Google Analytics for marketing and analytics purposes, and PayPal Unified for payment processing. Hosting is managed via EuroDNS nameservers, indicating a stable and professional hosting environment. The site demonstrates good mobile optimization, accessibility, and SEO practices, with moderate performance. From a security perspective, the site enforces HTTPS, uses CSRF tokens on forms, and implements cookie consent mechanisms compliant with GDPR. Security headers are present but could be enhanced with additional policies like Content-Security-Policy. No vulnerabilities or exposed sensitive data were detected in the HTML content. However, the site lacks a published security.txt or explicit incident response contact information, which could improve transparency and security posture. Overall, bahnshop.de presents a low-risk profile with strong business credibility, good technical implementation, and solid privacy compliance. Strategic recommendations include publishing a security.txt file, enhancing security headers, and providing incident response contacts to further strengthen trust and security readiness.

30
83
2
70
52
60
40
e-commercetransportationmerchandisedeutschebahnshopware+2 more
Shopware CMSGoogle Tag ManagerGoogle AnalyticsPayPal Unified+3

Partner Domains:

mycybergroup.com
partner
2025-11-01T09:40:54.473Z
building-and-automation.de favicon

VDE VERLAG GmbH

building-and-automation.de

59
EnergyGermanymediumMEDIUM

building-and-automation.de is a professional German-language web portal operated by VDE VERLAG GmbH, serving as a comprehensive media platform for electrical professionals focused on building automation, electrical installation, and energy management. The site integrates a magazine, online kiosk, newsletters, and educational content, targeting industry professionals and companies in the energy and building technology sectors. The business model centers on crossmedia publishing and professional education, positioning itself as a trusted source within its niche market. Technically, the website is built on the TYPO3 CMS platform, employing modern web technologies including JavaScript and CSS, with SEO optimizations and mobile responsiveness. Hosting is managed via agenturserver nameservers, and the site uses HTTPS with good SSL configuration. Analytics are conducted through etracker with GDPR-compliant cookie consent mechanisms. Advertising is managed via AdSpirit with integrated consent management. From a security perspective, the site enforces HTTPS and respects privacy preferences, but lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. The site demonstrates good privacy compliance with clear cookie and privacy policies. However, improvements could be made by implementing security headers and publishing a security.txt file. Overall, the website is professional, trustworthy, and well-aligned with its business objectives. It maintains good privacy and security hygiene for its audience, though some enhancements in security transparency and incident response readiness are recommended.

80
80
2
65
72
70
20
gebudetechnikelektrohandwerkgebudeautomationbuildingautomation+6 more
TYPO3 CMSJavaScriptCSSHTML5
2025-11-01T09:40:14.369Z
H

Hottgenroth Software AG

hottgenroth.de

61
EnergyGermanymediumMEDIUM

Hottgenroth Software AG is a German software company specializing in energy and building technology solutions. The company targets professionals and businesses within the energy sector, offering software products and customer support services. Their website is professionally designed, consistent in branding, and primarily in German, reflecting their focus on the German market. The business model centers on providing specialized software tools for energy management and building technology, positioning them as an established player in this niche industry. Technically, the website is built on ASP.NET WebForms and utilizes common web technologies such as jQuery, Bootstrap, Google Tag Manager, and Google reCAPTCHA for security. Cookie consent is managed through Consentmanager.net, indicating a basic level of privacy compliance. The site demonstrates moderate performance and good mobile optimization but lacks advanced accessibility features. SEO optimization is basic but present. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms, which is positive. However, it lacks explicit security headers such as Content Security Policy and HSTS, and there is no publicly available privacy policy, terms of service, or vulnerability disclosure information. Incident response contacts and data protection officer details are also missing, which are important for compliance and trust. Overall, the website is safe and professional but could improve its privacy and security posture by publishing comprehensive policies, implementing security headers, and providing clear incident response channels. These improvements would enhance trustworthiness and compliance with GDPR and other regulations.

30
45
17
90
67
65
100
energysoftwaregermanybusinesscookie-consent+2 more
JavaScriptjQuery 2.1.4BootstrapGoogle Tag Manager+2
2025-11-01T09:39:54.182Z
trilux.com favicon

TRILUX GmbH & Co. KG

trilux.com

69
EnergyGermanylargeMEDIUM

TRILUX GmbH & Co. KG is a well-established company specializing in innovative and energy-efficient lighting solutions tailored for industries, offices, retail, and outdoor environments. The company positions itself as a leader in sustainable and smart lighting technologies, targeting business clients seeking customized lighting solutions. The website reflects a mature digital presence with a professional design, clear navigation, and comprehensive content that supports its business objectives. Technically, the website is built on TYPO3 CMS, leveraging modern JavaScript libraries and analytics tools such as Matomo and Google Tag Manager. The integration of OneTrust for cookie consent demonstrates a commitment to privacy compliance. The site is mobile-optimized and accessible, with good SEO practices evident in meta tags and structured navigation. From a security perspective, the website enforces HTTPS and employs standard security headers, contributing to a strong security posture. However, the absence of a publicly accessible security policy or vulnerability disclosure page suggests areas for improvement in transparency and incident response readiness. No critical vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, the website presents a low-risk profile with strong business credibility and compliance adherence. The missing WHOIS data is a notable anomaly but does not detract significantly from the trustworthiness given the professional nature of the site and its compliance features.

45
100
2
70
77
75
100
lightingenergy-efficientindustryofficeretail+6 more
TYPO3 CMSJavaScriptMatomo AnalyticsGoogle Tag Manager+1
2025-11-01T09:39:08.996Z
walther-werke.de favicon

WALTHER-WERKE Ferdinand Walther GmbH

walther-werke.de

58
EnergyGermanymediumMEDIUM

WALTHER-WERKE Ferdinand Walther GmbH is a well-established German manufacturer specializing in low-voltage distribution systems, CEE connectors, industrial connectors, and electromobility charging solutions. With a history dating back to 1897 and a medium-sized workforce, the company operates internationally with subsidiaries and a broad partner network. Their product portfolio includes modular power distribution, intelligent charging infrastructure, and robust industrial electrical components, positioning them as a key player in the energy and transportation sectors. The website reflects a professional and consistent brand image, targeting industrial, construction, and electromobility markets. Technically, the site is built on TYPO3 CMS with Bootstrap and includes modern JavaScript libraries, offering a responsive and user-friendly experience. Security posture is solid with HTTPS, anonymized analytics, and spam-protected emails, though explicit security policies and vulnerability disclosure mechanisms are absent. Overall, the site is trustworthy, compliant with GDPR, and provides comprehensive contact and product information.

25
43
2
70
72
70
100
niederspannungsverteilungelektromobilittcee-steckvorrichtungenindustriesteckverbinderstromverteiler+4 more
JavaScriptBootstrapjQueryTwitter Typeahead+1

Partner Domains:

walther-werke.fr
subsidiary
walther-electric.co.uk
subsidiary

+3 more partners

2025-11-01T09:38:58.974Z
L

LEDVANCE

ledvance.de

70
EnergyGermanylargeMEDIUM

LEDVANCE is a globally recognized company specializing in the development and supply of advanced lighting products and solutions for both professional users and end consumers. The website presents a comprehensive portfolio of lighting products including professional lighting, consumer lighting, renewable energy solutions such as photovoltaics, and smart home lighting. The company positions itself as a leading provider in the general lighting market with a strong focus on innovation and efficiency. The website is well-structured, professionally designed, and targets a German-speaking audience primarily in Germany and neighboring countries. Technically, the site employs modern web technologies including Google Tag Manager and Usercentrics for consent management, indicating a moderate level of digital maturity. However, the absence of WHOIS domain registration data raises concerns about domain legitimacy or recent changes in domain ownership. Security posture is moderate with cookie consent implemented but lacking visible security headers and explicit privacy policies. Overall, the website is professional and trustworthy but would benefit from enhanced transparency in domain registration and improved security and privacy disclosures.

75
80
2
70
82
80
100
lightingledprofessionallightingconsumerlightingenergy+3 more
Google Tag ManagerUsercentrics CMPJavaScriptCSS

Partner Domains:

shop.ledvance.com
partner
www.myledvance.com
partner
2025-11-01T09:38:03.809Z
alphatec-systeme.de favicon

Alphatec Schaltschranksysteme GmbH

alphatec-systeme.de

47
EnergyGermanymediumHIGH

Alphatec Schaltschranksysteme GmbH is a German-based manufacturer and supplier specializing in energy distribution systems, including meter cabinets, automatic distributors, transformer cabinets, and switch cabinets for renewable energy. The company operates with a strong focus on in-house manufacturing capabilities such as metal processing, powder coating, electrical assembly, wiring, and electromobility solutions. Their market position is solidified by a comprehensive product portfolio, an online shop, and a configurator tool, targeting primarily business customers in the energy sector. The website is professionally designed, content-rich, and well-structured, supporting effective customer engagement and product information dissemination. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies with good mobile optimization and SEO practices. The site employs HTTPS with excellent SSL configuration and integrates Matomo analytics for user tracking with GDPR-compliant cookie consent mechanisms. However, some security best practices like security headers and a published security policy are absent. From a security perspective, the site shows a mature posture with no evident vulnerabilities or exposed sensitive data. The cookie consent and privacy policies are comprehensive and GDPR compliant. The WHOIS data, while limited, aligns with the website's operational details, indicating legitimacy. Social media presence across multiple platforms enhances brand visibility and trust. Overall, Alphatec's digital presence reflects a trustworthy, professional business with a good balance of technical maturity and compliance. Strategic improvements in security headers and incident response disclosures could further enhance their security posture and customer trust.

40
43
2
70
62
60
20
energyschaltschranksystemeindustrialmanufacturingelectromobility+2 more
TYPO3 CMSJavaScriptCSS

Partner Domains:

shop.alphatec-systeme.de
partner
www.zveh.de
partner

+1 more partners

2025-11-01T09:37:58.794Z
fcaarau.ch favicon

FC Aarau

fcaarau.ch

45
OtherSwitzerlandmediumHIGH

FC Aarau is a Swiss football club with a long history dating back to 1902, competing in the Swiss Challenge League. The website serves as the official digital presence for the club, providing information about matches, teams, ticketing, membership, and merchandising. It targets football fans and supporters primarily in Switzerland. The business model revolves around sports entertainment, fan engagement, sponsorships, and merchandise sales. The club maintains a solid market position within Swiss football and leverages digital channels effectively to engage its audience. Technically, the website is built on WordPress with modern web technologies including SVG graphics, responsive design, and Matomo analytics for privacy-conscious tracking. The site is hosted by a Swiss provider (h2g.ch) and demonstrates good performance and accessibility standards. SEO and content structure are well implemented, supporting discoverability and user experience. From a security perspective, the site uses HTTPS and disables cookies for analytics, showing a privacy-aware approach. However, it lacks some security headers like Content-Security-Policy and X-Frame-Options, and does not provide explicit security policies or incident response information. No vulnerabilities or exposed sensitive data were detected. Overall, the security posture is good but could be improved with additional headers and transparency. The overall risk assessment is low, with the site being trustworthy and professionally maintained. Strategic recommendations include implementing a cookie consent mechanism, enhancing security headers, and publishing security and incident response policies to improve compliance and user trust.

15
35
2
75
72
80
-
footballsportsclubswitzerlandchallengeleague+3 more
WordPressPHPJavaScriptCSS+2

Partner Domains:

shop.fcaarau.ch
partner
h2g.ch
partner

+1 more partners

2025-11-01T09:15:29.095Z
bnro.ro favicon

Banca Națională a României

bnro.ro

70
FinanceRomanialargeMEDIUM

The website www.bnr.ro represents the official online presence of the National Bank of Romania (BNR), the country's central bank. It provides comprehensive information about the bank's functions, currency issuance, statistics, publications, and contact points, targeting a broad audience including the general public, financial institutions, and government entities. The site is professionally designed with consistent branding and clear navigation, reflecting its authoritative role in Romania's financial sector. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with integration of Google Tag Manager and Cookiebot for analytics and cookie consent management. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and SEO metadata completeness. From a security perspective, the site enforces HTTPS and implements a GDPR-compliant cookie consent mechanism. However, explicit security headers are not evident in the provided data, and no public security or incident response policies are published. The WHOIS data is not publicly available due to ROTLD privacy policies, which is typical for .ro domains and justified for a government entity. Overall, the website demonstrates a strong business credibility and privacy compliance posture, with moderate technical and security maturity. There are no indications of malicious activity or content safety concerns. Strategic recommendations include enhancing security headers, improving accessibility, and publishing explicit security policies to further strengthen trust and compliance.

75
83
17
70
72
60
100
centralbankfinancegovernmentromaniabnr+3 more
HTML5CSS3JavaScriptGoogle Tag Manager+1
2025-11-01T09:13:43.836Z
rottentomatoes.com favicon

Rotten Tomatoes

rottentomatoes.com

69
MediaUnited StateslargeMEDIUM

Rotten Tomatoes is a leading entertainment media website specializing in movie and TV show reviews, trailers, showtimes, and ticketing information. Owned by Fandango Media, a subsidiary of NBCUniversal, it holds a prominent market position as a trusted source for quality measurement in the entertainment industry. The site targets a broad general audience interested in film and television content. Technically, the website employs a modern technology stack including JavaScript frameworks, JWPlayer for video content, Google Publisher Tags for advertising, and robust cookie consent management via OneTrust. Hosting and ad services are provided by NBCUniversal's infrastructure, ensuring reliable performance and scalability. Security-wise, the site enforces HTTPS, uses multiple security headers, and integrates ad verification and tracking services responsibly. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. However, no explicit security policy or incident response contact is publicly available. Overall, the site demonstrates a mature digital presence with excellent content quality, good technical implementation, and a solid security posture, making it a trustworthy platform for users and advertisers alike.

55
88
17
60
62
85
100
moviestvshowsreviewstrailersentertainment+3 more
JavaScriptJWPlayerGoogle Publisher Tags (GPT)OneTrust Cookie Consent+3

Partner Domains:

fandango.com
parent
movietickets.com
partner
2025-11-01T09:08:18.050Z
advisible.com favicon

Advisible

advisible.com

63
TechnologyN/asmallMEDIUM

Advisible operates as a modern online advertising platform providing cloud-based digital advertising and marketing technology tailored for publishers, advertisers, and agencies. Their key offerings include a Development Kit for ad integration, native advertising solutions, content display services, and source hosting for ad code. The business model is pay-as-you-go with monthly billing and no upfront fees, positioning them as a developer-friendly and scalable solution in the advertising technology sector. The website is professionally designed with good content quality and clear navigation, targeting a specialized audience in the digital advertising space. Technically, the website employs modern web technologies such as Javascript and Google Fonts, with SVG graphics for branding. The site is mobile optimized and SEO friendly, though no CMS or specific hosting provider information is evident. Performance is moderate with room for improvement in accessibility and security headers. The cookie consent mechanism is implemented, indicating attention to privacy compliance, and privacy and cookie policies are present and accessible. From a security perspective, the site uses HTTPS but lacks visible security headers and explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data for the domain is a notable concern, as it reduces transparency and trustworthiness despite the professional appearance of the website. No direct company contact emails or phone numbers were found, with contact primarily via web form. Overall, the website presents a credible and professional front for a niche advertising technology business but would benefit from enhanced security practices, clearer business contact information, and resolution of WHOIS data transparency to improve trust and compliance posture.

30
83
2
85
52
75
100
advertisingnativeadsdigitalmarketingadplatformtechnology+3 more
JavascriptGoogle Fonts (Poppins)SVG graphics
2025-11-01T08:59:24.816Z