Skip to main content

High-risk security reports

Browse 43,626 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 104 of 873|Showing 5151-5200 of 43626
D

DataCentrum systems & consulting, a.s.

datacentrum.cz

42
TechnologyCzech RepublicmediumHIGH

DataCentrum systems & consulting, a.s. is a Czech Republic based company specializing in outsourcing payroll and HR services, supported by proprietary software solutions for payroll, personnel information systems, and attendance management. The company targets business clients requiring comprehensive HR and payroll management solutions, positioning itself as a specialized service provider in the Czech market. The website reflects a professional and consistent brand image with clear contact information and recent updates, indicating active business operations. Technically, the website is built on WordPress with common plugins such as LayerSlider and Revolution Slider, using jQuery and Google Fonts. The site is moderately optimized for performance and mobile devices, with basic SEO and accessibility features. Security-wise, HTTPS is enabled, but there is a lack of security headers and privacy/cookie policies, which are areas for improvement. The absence of WHOIS data raises concerns about domain registration legitimacy, though the website content and contact details appear credible. Overall, the security posture is moderate with room for enhancements in compliance and security best practices. The site does not exhibit any adult or questionable content and is safe for general audiences. Strategic recommendations include adding privacy and cookie policies, implementing security headers, verifying domain registration status, and maintaining up-to-date software to mitigate vulnerabilities.

15
10
10
85
52
75
20
hrpayrolloutsourcingconsultingtechnology+1 more
WordPress 4.8.27jQuery 1.12.4LayerSlider pluginRevolution Slider plugin+2
2025-10-25T20:00:50.788Z
software-univention.de favicon

Univention GmbH

software-univention.de

38
TechnologyGermanymediumHIGH

Univention GmbH operates a software update repository website for its Univention Corporate Server (UCS) product line, providing downloads of software versions, network installation files, and virtual machine images. The website is primarily targeted at IT professionals and organizations using Univention's enterprise Linux solutions. The business is positioned as an established player in the technology sector, focusing on software development, distribution, and support services. The website content is technical and functional, serving as a resource for software updates rather than marketing or customer engagement. Technically, the website uses basic HTML, CSS, and JavaScript, with Piwik analytics for user tracking. The site lacks advanced frameworks or CMS platforms and shows moderate performance and basic mobile optimization. The presence of PGP signatures for archive keys demonstrates a commitment to software integrity and security. However, the site does not implement advanced security headers or explicit privacy and cookie policies, indicating room for improvement in compliance and security best practices. From a security perspective, the website benefits from HTTPS and cryptographic signatures but lacks visible security headers and formal incident response or vulnerability disclosure information. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data is consistent with the company's identity and domain usage, supporting the legitimacy of the site. Overall, the security posture is moderate but could be enhanced by adopting additional security controls and compliance documentation. The overall risk assessment is low, with the main recommendations focusing on improving privacy compliance, security headers, and user transparency regarding data collection. Enhancing mobile optimization and accessibility would also improve user experience and SEO. The website serves its purpose as a software update portal effectively but would benefit from modernization and stronger security and privacy practices.

15
25
2
45
52
70
20
softwareupdatesuniventionlinuxenterprise+2 more
HTMLCSSJavaScriptPiwik Analytics
2025-10-25T19:59:30.536Z
dlonline.cz favicon

Dobříšské listy Online

dlonline.cz

46
MediaCzech RepublicsmallHIGH

Dobříšské listy Online is a regional news media portal serving Dobříš and its surrounding areas in the Czech Republic. Established in 2017, it provides local news, cultural updates, sports, and community information primarily targeting residents of the region. The website is built on WordPress and leverages popular plugins such as Yoast SEO, Contact Form 7, and Cookie Law Info to enhance SEO, user interaction, and privacy compliance. The site maintains a consistent brand presence with a clear logo and social media integration, notably on Facebook. From a technical perspective, the website uses a modern CMS platform with standard plugins and scripts, including Google Analytics for traffic monitoring. The site is mobile optimized and demonstrates good SEO practices with structured data and meta tags. Performance is moderate, with room for improvement in accessibility and security headers. Security posture is adequate with HTTPS enabled and cookie consent mechanisms in place. However, there is no explicit security policy or incident response information publicly available, and security headers are not detected, which could be improved to enhance protection against common web threats. No vulnerabilities or exposed sensitive data were identified in the analysis. Overall, the website presents a trustworthy and professional regional news service with good content quality and compliance with privacy regulations. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and improving accessibility features to strengthen the site's security and user trust.

15
25
17
65
42
85
40
regionalnewsmediaczechrepublicwordpresslocalnews+1 more
WordPress 6.8.3Yoast SEO pluginSlider RevolutionContact Form 7+4
2025-10-25T19:59:20.509Z
jidlo.eu favicon

Rozvoz jídel v Praze

jidlo.eu

44
HospitalityCzech RepublicsmallHIGH

The website jidlo.eu serves as a simple landing page for a food delivery service based in Prague, Czech Republic. It offers home-cooked meals prepared with fresh ingredients using the SOUS VIDE method. However, the site redirects users to the partner restaurant The PUB Praha 6 for placing orders, indicating a business model reliant on partnership rather than direct sales. The site content is minimal but relevant to the hospitality industry, targeting general consumers seeking food delivery services. The business appears small and localized with no explicit corporate information disclosed on the site. Technically, the website uses a moderate technology stack including jQuery, Foundation framework, Font Awesome, and Google Analytics for tracking. The site is mobile optimized and uses HTTPS, but lacks advanced SEO and accessibility features. Security posture is basic with no visible security headers and no forms collecting user data on the landing page, reducing attack surface but also limiting user engagement. Privacy and cookie policies are absent, which is a compliance gap. WHOIS data is unavailable due to EURid privacy restrictions, but the domain appears legitimate with no suspicious indicators. Overall, the site is functional but basic, with room for improvement in transparency, security, and compliance.

20
10
2
85
72
80
20
fooddeliveryrestaurantonlineorderingczechrepublichospitality
jQuery 3.1.1Foundation 6.3.1Font AwesomeGoogle Fonts (Open Sans)+2

Partner Domains:

www.thepub.cz
partner
www.networm.cz
partner
2025-10-25T19:59:10.484Z
V

Výkup ojetých aut, výkup aut za hotové, výkup ojetých aut

vykup-aut.cz

47
TransportationCzech RepublicsmallHIGH

The website vykup-aut.cz operates as a service provider specializing in the purchase of used cars for cash across the Czech Republic. It positions itself as an experienced player with over 10 years in the market, targeting individuals and businesses seeking to sell their vehicles quickly and professionally. The business model is straightforward, focusing on offering competitive prices and a professional approach to car buying. The website content is primarily in Czech and tailored to the local market. Technically, the site is built on WordPress, utilizing common plugins such as Contact Form 7, Cookie Notice, and Slider Revolution. The site is served over HTTPS with a good SSL configuration, but lacks some advanced security headers. Performance is moderate, with good mobile optimization and basic accessibility features. SEO is supported by the All in One SEO plugin, and cookie consent mechanisms are in place, indicating some level of privacy compliance. From a security perspective, the site benefits from HTTPS and cookie consent but lacks visible security headers and detailed privacy policies. No direct contact information or incident response contacts are found, which could impact user trust and compliance. The WHOIS data is unavailable, suggesting privacy protection or lack of public registration details, which reduces transparency and trustworthiness. Overall, the website presents a professional and functional platform for used car buying in the Czech Republic but would benefit from enhanced transparency, security policies, and contact information to improve trust and compliance.

15
25
17
85
62
80
20
vkupautvkupautzahotovusedcarscarbuyingczechrepublic
WordPressPHPjQuerySlider Revolution+3
2025-10-25T19:59:05.472Z
A

Autocentrum RK cb s.r.o.

pujcovnark.cz

45
TransportationCzech RepublicsmallHIGH

Půjčovna RK, operated by Autocentrum RK cb s.r.o., is a small vehicle rental business based in České Budějovice, Czech Republic. The company specializes in renting personal cars and motorhomes for both business and recreational purposes. Their offerings include short-term and long-term rentals with additional customer benefits such as free parking during rental periods. The website is professionally designed, providing clear vehicle listings and contact information, targeting local customers seeking reliable vehicle rental services. Technically, the website is built on WordPress CMS using common plugins such as Contact Form 7 and Responsive Lightbox, styled with the Foundation CSS framework. It employs Google Analytics and Google Tag Manager for visitor tracking. The site is mobile-optimized and loads with moderate performance. However, it lacks advanced SEO and accessibility features and does not implement security headers, which could be improved. From a security perspective, the site uses HTTPS with a valid SSL certificate and includes CAPTCHA protection on its contact form, indicating basic security awareness. However, the absence of security headers and privacy/cookie policies indicates gaps in compliance and security best practices. The WHOIS data for the domain is unavailable, which raises concerns about domain legitimacy and trustworthiness. Overall, the website presents a trustworthy and professional front for a local vehicle rental business but would benefit from enhanced security measures, privacy compliance, and domain registration transparency to improve its risk profile and customer trust.

15
10
2
85
72
80
20
carrentalmotorhomerentaltransportationczechrepublicwordpress+1 more
WordPressjQueryGoogle AnalyticsContact Form 7+2
2025-10-25T19:58:20.357Z
hpfyzioclinic.cz favicon

HP Fyzioclinic s.r.o.

hpfyzioclinic.cz

43
HealthcareCzech RepublicsmallHIGH

HP Fyzioclinic s.r.o. operates a specialized physiotherapy and rehabilitation center primarily serving athletes and patients requiring musculoskeletal therapy in the Czech Republic. The website presents a professional image with detailed team profiles and service descriptions, positioning itself as a local healthcare provider. The business model focuses on delivering specialized health services with a small-scale operation. Technically, the website is built on WordPress with a modern tech stack including jQuery, Slick Carousel, and Foundation framework. It uses HTTPS and integrates Google Analytics and Tag Manager for visitor tracking. The site is moderately optimized for performance and mobile devices but lacks advanced SEO and accessibility features. From a security perspective, the site enforces HTTPS and uses nonce tokens in AJAX calls, but it lacks important security headers such as Content-Security-Policy and HSTS. There is no visible privacy or cookie policy, which raises compliance concerns especially under GDPR. The absence of WHOIS data for the domain reduces trust and raises questions about domain legitimacy. Overall, the website is functional and professional but would benefit from improved privacy compliance, enhanced security headers, and transparent domain registration information to strengthen trust and security posture.

15
10
2
85
62
80
20
healthcarephysiotherapyrehabilitationwordpressczech
WordPressjQuerySlick CarouselFlatpickr+2
2025-10-25T19:57:50.275Z
meuse.fr favicon

Département de la Meuse

meuse.fr

48
GovernmentFrancemediumHIGH

The Département de la Meuse website serves as the official digital presence of the regional government authority for the Meuse department in France. It provides comprehensive public service information, news, event listings, and resources for residents and local partners. The site is well-structured, primarily targeting local citizens and stakeholders, and offers services such as social support, cultural activities, tourism, and administrative procedures. The business model is governmental, focusing on public administration and community engagement. Technically, the website is built on TYPO3 CMS, a robust open-source content management system, supplemented by modern JavaScript libraries like jQuery, Parsley.js for form validation, and Tarteaucitron.js for cookie consent management. The site demonstrates good mobile optimization, accessibility, and SEO practices, though performance is moderate. The presence of a cookie consent mechanism and a comprehensive privacy policy indicates a mature approach to GDPR compliance. From a security perspective, the site enforces HTTPS and employs cookie consent controls, but lacks explicit HTTP security headers and a published security.txt file. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The absence of WHOIS registration data slightly reduces trust but is mitigated by the official nature of the domain and consistent branding. Overall, the security posture is solid but could be improved with additional headers and incident response information. The overall risk assessment is low, with the site appearing trustworthy and professionally maintained. Strategic recommendations include enhancing HTTP security headers, publishing a security.txt file, providing incident response contacts, and adding a terms of service page to improve legal clarity and user trust.

30
68
17
50
62
80
-
governmentpublicservicesregionalfrenchtypo3+2 more
TYPO3 CMSjQueryParsley.jsTarteaucitron.js

Partner Domains:

www.stratis.fr
partner
demarches.meuse.fr
partner

+3 more partners

2025-10-25T19:56:09.225Z
domacinasili.cz favicon

Bílý kruh bezpečí, z.s.

domacinasili.cz

43
Non-profitCzech RepublicmediumHIGH

The website www.domacinasili.cz serves as an informational and support platform dedicated to victims of domestic violence in the Czech Republic. It is operated by the non-profit organization Bílý kruh bezpečí, z.s., which provides crisis telephone help, psychological support, legal and social counseling, and public awareness resources. The site is well-branded and targets individuals affected by or concerned about domestic violence, offering practical advice and contact information for assistance. Technically, the website is built on WordPress and uses modern web technologies including jQuery and Google Analytics for tracking. It employs HTTPS for secure communications and includes a cookie consent banner to comply with basic privacy regulations. The site is mobile-optimized and presents a clear navigation structure, although some accessibility features could be improved. From a security perspective, the site benefits from HTTPS but lacks visible security headers and a published privacy policy page, which are important for compliance and user trust. No WHOIS data was retrievable, which limits domain registration trust analysis. No forms collecting personal data were found on the homepage, reducing immediate data protection concerns. Overall, the security posture is moderate but could be enhanced with additional best practices. The overall risk assessment indicates a trustworthy and professional non-profit website with some gaps in privacy compliance and domain transparency. Strategic recommendations include publishing a comprehensive privacy policy, implementing security headers, providing incident response contacts, and verifying domain registration details to improve trust and compliance.

15
10
2
70
72
80
20
domcnsildomesticviolencecrisishelpnon-profitczechrepublic+1 more
WordPressjQueryGoogle AnalyticsNetworm Cookies plugin+1

Partner Domains:

www.bkb.cz
partner
2025-10-25T19:55:38.340Z
O

Optimus

optimus.pl

41
TechnologyPolandmediumHIGH

Optimus is a Polish technology company specializing in IT hardware manufacturing and distribution, with a focus on business IT solutions and gaming computers. The website presents two main segments: business IT services and gaming computers, targeting both corporate clients and gamers. The company appears established, with a domain dating back to 1996, indicating a mature market presence in Poland. The business model revolves around a network of local partners providing IT services and hardware supply, alongside direct manufacturing of computers, including a gaming series designed for various skill levels. Technically, the website uses basic HTML5 and CSS3 with video elements to showcase its offerings. The site is moderately optimized for mobile devices but lacks advanced SEO and accessibility features. No CMS or advanced frameworks are detected, suggesting a simple custom-built site. Performance is moderate, with no evident use of analytics or tracking technologies. From a security perspective, the site lacks visible security headers and does not provide privacy or cookie policies, which are critical for GDPR compliance. No contact information or incident response details are available, limiting transparency and trust. The WHOIS data confirms the domain's legitimacy and long-term registration but shows no DNSSEC or advanced security features. Overall, the security posture is basic and requires improvements to meet modern standards. The overall risk is moderate due to the absence of privacy and security policies and lack of contact information. Strategic recommendations include implementing HTTPS with proper SSL, adding privacy and cookie policies, enhancing security headers, and providing clear contact and incident response information to improve trust and compliance.

15
25
2
85
72
75
-
ithardwaregamingcomputersbusinessitsolutionspolandtechnology
HTML5CSS3Video HTML elementCustom fonts (Open Sans)
2025-10-25T19:55:28.310Z
M

Merck GmbH

livingms.at

48
HealthcareAustrialargeHIGH

Living MS is a healthcare information website focused on Multiple Sclerosis, providing educational content, support resources, and service information for MS patients and their families. The site is branded and operated by Merck GmbH, a pharmaceutical company, indicating a strong market position in healthcare and patient support. The platform targets German-speaking users in Austria and offers comprehensive information on MS symptoms, diagnosis, therapies, and living with the disease. It also provides a dedicated service line for medication injection device replacement. Technically, the website is built on WordPress using Elementor and Yoast SEO plugins, supported by modern analytics tools like Google Tag Manager and Adobe Analytics. The site demonstrates good digital maturity with mobile optimization, accessibility features, and SEO best practices. Cookie consent and privacy compliance are well implemented, reflecting adherence to GDPR requirements. From a security perspective, the site uses HTTPS with good SSL configuration and employs cookie consent mechanisms. However, explicit security headers such as Content-Security-Policy and X-Frame-Options are not detected, and no security.txt or incident response contacts are provided. No vulnerabilities or exposed sensitive data were found in the analysis. Overall, the website presents a professional, trustworthy, and compliant digital presence for a healthcare information service. The lack of WHOIS data limits domain trust verification, but the strong branding and external partnerships support legitimacy. Strategic recommendations include enhancing security headers, adding vulnerability disclosure information, and maintaining regular security audits.

-
85
2
70
-
45
100
multiplesclerosishealthcaremsinformationmerckgdpr+4 more
WordPressElementorYoast SEOjQuery+5

Partner Domains:

www.oemsg.at
partner
www.msges-bgld.at
partner

+3 more partners

2025-10-25T18:54:17.770Z
G

GoDaddy, LLC

autostore.com

40
OtherN/alargeHIGH

The analyzed website autostore.com is a parked domain page managed by GoDaddy, LLC, a well-known domain registrar and parking service provider. The page contains no active business content, products, or services, and is primarily designed to offer the domain for sale. The presence of a Trustpilot widget and TrustArc cookie consent banner indicates some level of trust and privacy compliance, but the overall content is minimal and targeted at domain buyers rather than end consumers. Technically, the site uses standard web technologies including JavaScript, CSS, and third-party widgets for consent management and reviews. It is hosted on GoDaddy's infrastructure and shows basic mobile optimization and accessibility features. However, no advanced CMS or frameworks are detected, and SEO optimization is poor due to lack of meaningful content. From a security perspective, the site lacks visible security headers and detailed security or incident response policies. The domain is registered with Tucows Domains Inc. and managed by GoDaddy, with no suspicious WHOIS patterns. DNSSEC is not enabled, which is a minor security gap. Overall, the security posture is basic but acceptable for a parked domain. The overall risk is low given the lack of active content or user interaction, but the site offers limited business credibility or user engagement. Strategic recommendations include improving security headers, enabling DNSSEC, and providing clearer business or contact information if the domain is to be developed into an active site.

25
68
2
60
62
55
-
domainparkinggodaddycookieconsenttrustarctrustpilot
JavaScriptCSSTrustArc Consent ManagementTrustpilot Widget
2025-10-25T18:48:56.987Z
global-sign.com favicon

Global Sign and Design, Inc.

global-sign.com

47
RetailUnited StatessmallHIGH

Global Sign and Design, Inc. is a small business specializing in digital signage and LED display solutions primarily serving the Pennsylvania region. The company acts as a premier distributor and installer for top manufacturers in the visual communication industry, offering products such as outdoor and indoor LED displays, scoreboards, and custom signage. Their market position is regional with a focus on retail and manufacturing sectors requiring digital signage solutions. Technically, the website infrastructure is outdated, relying on deprecated Flash technology and lacking modern security features such as HTTPS enforcement and security headers. The site is hosted by Bluehost Inc. and uses basic JavaScript and CSS without modern frameworks or CMS. Performance and mobile optimization are poor, and accessibility features are minimal. From a security perspective, the website shows significant gaps including absence of privacy and cookie policies, no visible security headers, and no DNSSEC enabled on the domain. The use of Flash presents security and compatibility risks. Contact information is provided but limited, and no incident response or security policies are disclosed. Analytics tools like StatCounter and Google Analytics are used without clear privacy compliance disclosures. Overall, the website presents moderate business credibility but requires urgent technical and security improvements to enhance user experience, compliance, and trustworthiness. Strategic recommendations include modernizing the website technology stack, implementing HTTPS and security headers, adding privacy and cookie policies, and removing deprecated Flash content.

15
35
2
85
42
45
100
digitalsignageledsignselectronicdisplaysscoreboardsvisualcommunication
JavaScriptFlash (deprecated technology)CSSHTML
2025-10-25T18:48:41.940Z
guiaquimica.mx favicon

Guía de la Industria Química

guiaquimica.mx

48
ManufacturingMexicomediumHIGH

Guía de la Industria Química is a specialized online platform focused on providing comprehensive information, business directories, and advertising opportunities for the chemical industry and related sectors in Mexico. Established in 2011, it serves industry professionals and companies by offering detailed articles, supplier listings, and sector-specific insights. The website positions itself as an important resource within the Mexican chemical manufacturing sector, supporting business decision-making and networking. Technically, the website employs modern front-end technologies including Bootstrap, FontAwesome, Google Fonts, and interactive libraries such as Swiper and AOS for animations. It integrates Google Analytics, Google Tag Manager, and Mouseflow for user behavior tracking and performance monitoring. The site is mobile-optimized and demonstrates good SEO practices, though accessibility features are basic. Hosting details are limited but the domain registrar is consistent with the business location. From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA on forms to mitigate spam. However, it lacks visible security headers such as Content-Security-Policy or X-Frame-Options, which could enhance protection against common web attacks. No privacy or cookie policies are published, indicating compliance gaps with GDPR and other privacy regulations. No incident response or vulnerability disclosure information is provided, which could be improved to strengthen trust. Overall, the website is professional, content-rich, and trustworthy for its target audience but would benefit from enhanced privacy compliance and security hardening. Strategic recommendations include publishing privacy and cookie policies, implementing security headers, and providing clear incident response contacts to improve compliance and security posture.

15
35
17
85
72
60
20
chemicalindustrymexicobusinessdirectoryindustryinformationmanufacturing+2 more
BootstrapFontAwesomeGoogle FontsSwiper+5
2025-10-25T18:48:26.902Z
C

Chuchle Arena Praha, s.r.o.

chuchlearena.cz

49
HospitalityCzech RepublicmediumHIGH

Chuchle Arena Praha, s.r.o. operates a historic and prominent horse racing and equestrian sports venue located in Prague, Czech Republic. The company offers a multifaceted business model including horse racing events, show jumping competitions, event space rental, accommodation services, and a riding academy. The website reflects a well-established business with a strong market position in the Czech equestrian and sports hospitality sector. The target audience includes horse sports enthusiasts, families, tourists, and event organizers. Technically, the website uses a combination of legacy and modern web technologies including jQuery, Google Tag Manager, Google Analytics, Matomo, and Google reCAPTCHA. The site is built on the IPO CMS platform and demonstrates good mobile optimization and SEO practices. However, some technical debt is noted with the use of older JavaScript libraries and missing security headers. From a security perspective, the site enforces HTTPS and implements user consent mechanisms for cookies and tracking, aligning with GDPR requirements. The absence of WHOIS data reduces domain trustworthiness, and the lack of security headers and outdated libraries present moderate security risks. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, content-rich, and compliant with privacy regulations, but improvements in security headers, updated libraries, and domain registration transparency are recommended to enhance trust and security posture.

65
25
2
85
62
75
-
horseracingequestriansportseventsaccommodationczechrepublic+3 more
jQuery 3.0.0jQuery UI 1.8.20Google Tag ManagerGoogle Analytics+3

Partner Domains:

www.conseq.cz
partner
www.leram.cz
partner

+3 more partners

2025-10-25T18:46:56.660Z
gsg.de favicon

GSG Berlin GmbH

gsg.de

46
Real EstateGermanylargeHIGH

GSG Berlin GmbH is a well-established real estate company specializing in leasing office, commercial, and warehouse spaces primarily in Berlin. With over 60 years of experience and a portfolio exceeding 1 million square meters, it serves a diverse clientele including startups, craftsmen, and SMEs. The company emphasizes flexibility in space usage and offers value-added services such as highspeed fiber internet and electric vehicle charging stations. The website reflects a strong market position with multiple locations and a broad tenant network. Technically, the website is built on WordPress using modern plugins and frameworks, optimized for performance and mobile responsiveness. It integrates analytics and marketing tools like Google Tag Manager and HubSpot, and employs a cookie consent mechanism compliant with GDPR. Security best practices are observed with HTTPS, security headers, and no visible vulnerabilities, though a dedicated security policy and incident response information are absent. Overall, the site demonstrates a mature digital presence with good privacy compliance and professional content. The domain registration data is minimal but consistent with the business claims. No WAF or blocking mechanisms were detected, allowing full content access and analysis. Strategic recommendations include publishing a formal security policy, incident response contacts, and vulnerability disclosure information to enhance trust and compliance. Regular security audits of third-party scripts and further accessibility improvements would strengthen the security posture and user experience.

25
43
2
55
72
65
20
realestateofficerentalcommercialspaceberlinbusiness+2 more
WordPressjQueryKadence BlocksBorlabs Cookie+5

Partner Domains:

www.berlin-partner.de
partner
www.hofnetz.de
partner
2025-10-25T18:43:36.102Z
afmproductions.fr favicon

AFM Productions

afmproductions.fr

49
MediaFrancesmallHIGH

AFM Productions is a specialized audiovisual production company founded in 1997 by the AFM-Téléthon association, focusing on creating documentaries and educational content about rare genetic diseases and medical research. The company targets a general audience interested in health, science, and social issues, leveraging storytelling to raise awareness and inform the public. The website reflects a professional and consistent brand identity aligned with its mission. Technically, the website is built on Drupal 10 with Bootstrap and uses modern libraries such as Swiper.js for UI components. It integrates Google Analytics and a GDPR-compliant cookie consent mechanism via CookieYes, indicating a mature digital infrastructure. The site is mobile-optimized and accessible, with good SEO practices. From a security perspective, the site uses HTTPS and has implemented cookie consent but lacks explicit security headers and dedicated security or incident response policies. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data limits domain legitimacy verification, but the website content and contact information suggest a trustworthy entity. Overall, the site presents a low-risk profile with good compliance and technical standards, though improvements in security headers and transparency policies are recommended.

40
25
2
55
72
75
40
audiovisualrarediseasesmedicalresearchdocumentariesnon-profit+3 more
Drupal 10BootstrapSwiper.jsGoogle Analytics+1
2025-10-25T18:43:06.040Z
istem.eu favicon

Institut des cellules Souches pour le Traitement et l'Étude des maladies Monogéniques

istem.eu

47
HealthcareFrancemediumHIGH

I-Stem is a French research institute specializing in stem cell therapy and the study of rare and ultra-rare monogenic diseases. It operates as a medium-sized organization with approximately 80 staff members, including scientists and support personnel. The institute is well-positioned in the European healthcare research sector, collaborating with notable partners such as AFM-Telethon and Genethon. Their key services include fundamental and clinical research, clinical trial sponsorship, and providing advanced technological platforms to support their scientific endeavors. Technically, the website is built on WordPress with modern plugins for SEO, search, and form management. It employs Google reCAPTCHA for security and Tarteaucitron for cookie consent management, reflecting a mature digital infrastructure. The site is optimized for mobile and accessibility, with good SEO practices and moderate performance. From a security perspective, the site uses HTTPS with strong SSL configuration and includes security headers. It integrates anti-bot measures and cookie consent mechanisms, but lacks a dedicated security policy or incident response contact details. No vulnerabilities or exposed sensitive data were detected, indicating a solid security posture. Overall, the website is professional, trustworthy, and compliant with GDPR requirements. The absence of direct contact emails or phone numbers suggests a preference for controlled communication via contact forms. Strategic recommendations include publishing explicit security and incident response policies and considering a vulnerability disclosure program to enhance transparency and trust.

40
28
17
40
72
75
20
stemcellsmonogenicdiseasesresearchclinicaltrialsbiotherapy+3 more
WordPress 6.7.1Yoast SEO pluginContact Form 7Autocomplete for Relevanssi+4

Partner Domains:

afm-telethon.fr
partner
genethon.com
partner

+2 more partners

2025-10-25T18:42:56.020Z