Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 106 of 1003|Showing 5251-5300 of 50115
fesmcugt.online favicon

SECCIÓN SINDICAL UGT BBVA

fesmcugt.online

49
FinanceSpainmediumHIGH

SECCIÓN SINDICAL UGT BBVA is a union section representing employees of BBVA under the umbrella of the Unión General de Trabajadores (UGT) in Spain. The website serves as an information portal providing updates on labor rights, collective bargaining, union activities, and member services. It targets BBVA employees and union members, offering resources such as circulars, negotiation updates, and affiliation information. The business model is focused on union representation and member engagement within the finance sector. The website is medium-sized, founded in 2018, and maintains consistent branding aligned with UGT standards. Technically, the website is built on WordPress using the GeneratePress theme and several plugins including GDPR Cookie Compliance, Contact Form 7, and The Events Calendar. It employs modern web technologies such as jQuery and Google Tag Manager for analytics. Hosting is provided by Dinahosting SL, a Spanish registrar and hosting provider. The site demonstrates good mobile optimization, accessibility, and SEO practices, though performance is moderate. From a security perspective, the site uses HTTPS with a valid SSL certificate and domain status protections to prevent unauthorized transfers or deletions. However, it lacks advanced security headers and DNSSEC is not enabled. The site includes a GDPR-compliant cookie consent mechanism and privacy policy but does not publish a dedicated security policy or incident response contacts. No vulnerabilities or suspicious content were detected. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. It effectively serves its niche audience with relevant content and functional features. Strategic recommendations include enhancing security headers, enabling DNSSEC, and publishing explicit security and incident response policies to further strengthen trust and compliance.

15
65
2
70
62
75
20
unionlaborugtbbvaspain+3 more
WordPressPHPjQueryGoogle Tag Manager+7
2025-10-30T15:29:38.692Z
childrensalcareers.org favicon

Children's of Alabama

childrensalcareers.org

69
HealthcareUnited StateslargeMEDIUM

Children's of Alabama operates a dedicated career website focused on recruiting healthcare professionals for its pediatric hospital in Birmingham, Alabama. The site highlights the organization's long-standing commitment to pediatric care, emphasizing a compassionate culture and comprehensive employee benefits. The platform targets healthcare job seekers and professionals interested in pediatric healthcare careers, positioning itself as a regional leader with a legacy of over a century. Technically, the website leverages the TalentBrew career site platform, integrating modern JavaScript libraries such as jQuery, Slick Carousel, and Fancybox for enhanced user experience. It employs multiple third-party services for analytics, marketing automation, and accessibility improvements. The site is mobile-optimized and demonstrates good SEO and accessibility practices, although some security headers are not explicitly present. From a security perspective, the site enforces HTTPS and includes cookie consent mechanisms, reflecting compliance with privacy regulations such as GDPR. However, WHOIS data is unavailable due to privacy protection or malformed queries, limiting domain transparency. No critical vulnerabilities or exposed sensitive data were detected. The absence of a published security or incident response policy and security.txt file suggests areas for improvement. Overall, the website presents a professional, trustworthy, and secure platform for healthcare recruitment. Strategic enhancements in security header implementation and transparency could further strengthen its security posture and trustworthiness.

65
95
2
75
52
80
100
healthcarecareerspediatrichospitalemployment+1 more
jQuerySlick CarouselFancyboxTalentBrew platform+3
2025-10-30T15:29:18.652Z
jbl-caraudio.com.au favicon

JBL CAR AUDIO

jbl-caraudio.com.au

52
RetailAustraliasmallMEDIUM

JBL Car Audio Australia operates as a specialized e-commerce retailer offering a range of JBL branded car audio products including speakers, subwoofers, and amplifiers. The website targets vehicle owners and audio enthusiasts within Australia, positioning itself as a trusted source for high-quality car audio equipment. The site features professional branding consistent with JBL's global identity and integrates social media channels linked to official JBL accounts, enhancing credibility. Technically, the website is built on the Magento platform, utilizing common web technologies such as jQuery, Owl Carousel, and Revolution Slider. It employs HTTPS for secure communications and integrates Google Analytics and Facebook Pixel for user tracking and marketing purposes. The site is mobile-optimized with a good user experience and clear navigation, although accessibility features are basic. From a security perspective, the site enforces HTTPS but lacks visible security headers which could improve protection against common web attacks. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial; while a privacy policy and terms of service are present, there is no cookie consent mechanism, which may impact GDPR compliance. Contact information is limited to a support ticket system without direct emails or phone numbers. Overall, the website presents a moderate risk profile with good business credibility but opportunities exist to enhance security posture and privacy compliance. Strategic improvements in security headers, cookie consent, and incident response transparency are recommended to strengthen trust and regulatory adherence.

35
58
2
70
72
60
40
caraudiojblcarspeakerssubwoofersamplifiers+2 more
jQueryGoogle AnalyticsFacebook PixelOwl Carousel+1

Partner Domains:

zerox.com.au
partner
jbhifi.com.au
partner
2025-10-30T15:28:48.584Z
datagrail.io favicon

DataGrail, Inc.

datagrail.io

72
TechnologyN/aenterpriseMEDIUM

DataGrail, Inc. operates a sophisticated AI-powered data privacy management platform designed to help businesses comply with GDPR, CCPA, and other data privacy regulations. Positioned as an enterprise-grade SaaS provider, DataGrail offers key services including live data mapping, consent management, request handling, privacy assessments, and risk management. The platform integrates with a broad ecosystem of partners such as Salesforce, Okta, Shopify, Zendesk, and Webflow, enhancing its market reach and functionality. Technically, the website is built on WordPress with modern technologies including jQuery, Google Tag Manager, Matomo analytics, and HubSpot forms. It demonstrates excellent performance, mobile optimization, and SEO practices. Security measures include HTTPS enforcement and reCAPTCHA on forms, though explicit security headers and policies could be improved. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with comprehensive privacy and cookie policies and consent mechanisms. However, the site lacks explicit incident response and vulnerability disclosure information, which could be enhanced to build further trust. Overall, the website and business present a high level of professionalism and trustworthiness. The lack of WHOIS data is consistent with privacy protection practices common in this industry. Strategic recommendations include enhancing security headers, publishing security policies, and establishing a vulnerability disclosure program to further strengthen security and compliance posture.

60
80
27
75
57
90
100
dataprivacygdprccpacompliancesaas+2 more
jQueryGoogle Tag ManagerMatomo AnalyticsHubSpot Forms+3

Partner Domains:

salesforce.com
partner
okta.com
partner

+3 more partners

2025-10-30T15:27:28.408Z
childrensal.org favicon

Children's of Alabama

childrensal.org

67
HealthcareUnited StateslargeMEDIUM

Children's of Alabama is a well-established pediatric healthcare provider based in Birmingham, Alabama, recognized nationally for excellence in multiple specialties. The organization offers a comprehensive range of pediatric services including emergency care, outpatient centers, behavioral health, and patient support through a secure online portal. Their market position is strong, supported by numerous awards and recognitions, reflecting a trusted brand in pediatric healthcare. The website targets parents, patients, healthcare professionals, and donors, providing extensive resources and easy access to services. Technically, the website is built on Drupal CMS with integration of modern analytics and marketing tools such as Google Analytics, Facebook Pixel, and Crazy Egg. The site demonstrates good performance, mobile optimization, and accessibility features, reflecting a mature digital infrastructure. The use of secure patient portals and cookie consent mechanisms indicates attention to user privacy and data protection, although explicit security policies and incident response information are not publicly disclosed. From a security perspective, the site enforces HTTPS and employs standard best practices, but could improve by publishing explicit security headers and vulnerability disclosure information. The WHOIS data is unavailable due to privacy protection, which is common and justified for healthcare entities. Overall, the domain and website appear legitimate and trustworthy with a high level of professionalism and compliance. The overall risk assessment is low, with recommendations focusing on enhancing transparency around security policies and incident response, and ensuring all third-party scripts remain secure and up to date. The website serves as a reliable and professional digital presence for Children's of Alabama, supporting its mission to provide exceptional pediatric care.

70
58
2
70
62
85
100
healthcarepediatricshospitalpatientportalnon-profit+2 more
Drupal CMSGoogle Tag ManagerGoogle AnalyticsCrazy Egg+7

Partner Domains:

mychart.childrensal.org
service
kidshealth.org
partner

+3 more partners

2025-10-30T15:07:14.499Z
hfm-weimar.de favicon

Hochschule für Musik FRANZ LISZT Weimar

hfm-weimar.de

56
EducationGermanymediumMEDIUM

The Hochschule für Musik FRANZ LISZT Weimar is a specialized higher education institution focused on music education, research, and cultural events. It serves students, faculty, researchers, and the broader community interested in music and related disciplines. The institution offers a variety of academic programs, research projects, and cultural activities, positioning itself as a reputable music university in Germany with a tradition dating back to 1872. Technically, the website is built on the TYPO3 CMS platform, leveraging modern web technologies such as Bootstrap, jQuery, and Matomo for analytics. The site demonstrates good mobile optimization and a structured navigation system, providing a positive user experience. Hosting appears to be managed by university-related infrastructure, ensuring alignment with the institution's academic nature. From a security perspective, the website employs HTTPS and asynchronous script loading, contributing to a secure and performant environment. However, explicit security headers are not detected, and no visible privacy or cookie policies are present in the analyzed content, indicating areas for improvement in compliance and security best practices. Overall, the website is trustworthy and professional, with a strong business credibility score. The absence of explicit privacy and cookie policies and contact information slightly lowers the privacy compliance and content quality scores. There are no indications of adult or unsafe content, and no WAF or blocking mechanisms interfere with content accessibility.

25
28
17
60
67
65
100
educationmusicuniversitycultureresearch
TYPO3 CMSBootstrapjQueryJWPlayer+3
2025-10-30T15:00:48.424Z
teledataost.no favicon

Minel Teledata Øst Lillehammer AS

teledataost.no

39
TelecommunicationsNorwaysmallHIGH

Minel Teledata Øst Lillehammer AS is a small regional business based in Norway specializing in providing technical solutions for enterprises, including security and camera surveillance, fiber and cabling solutions, meeting room and videoconferencing setups, and telecom and IT services. The company operates under the parent company Minel and targets business customers requiring telecom and IT infrastructure support. The website reflects a professional and consistent brand presence with clear contact information and service offerings. Technically, the site is built on WordPress with WooCommerce and uses modern plugins and tracking tools such as HubSpot and Google Analytics, indicating a moderate level of digital maturity. Security posture is adequate with HTTPS enforced and no visible sensitive data exposure, but lacks advanced security headers and incident response information. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. The absence of WHOIS data reduces domain registration trustworthiness, but the website content and business information appear legitimate. Overall, the site presents a trustworthy and professional business presence with room for improvement in security and privacy practices.

25
50
2
85
-
75
-
telecomitservicesfibersolutionssecuritycamerasvideoconferencing+2 more
WordPressWooCommerceColibri Page Builder ProjQuery+2

Partner Domains:

minel.no
parent
2025-10-30T14:21:35.181Z
sas.org.uk favicon

Surfers Against Sewage

sas.org.uk

64
Non-profitUnited KingdommediumMEDIUM

Surfers Against Sewage is a UK-based grassroots environmental charity dedicated to protecting oceans, rivers, and beaches from pollution, particularly sewage and plastic pollution. The organization operates through community engagement, campaigning, data collection, and education, positioning itself as a leading voice in ocean activism within the UK. Their website reflects a mature digital presence with comprehensive content, active campaigns, and multiple avenues for public involvement including membership, fundraising, and volunteering. Technically, the website is built on WordPress with modern plugins such as Gravity Forms and Popup Maker, integrating analytics tools like Google Analytics and Facebook Pixel. The site is mobile-optimized, accessible, and SEO-friendly, with a cookie consent mechanism compliant with GDPR. Security measures include HTTPS enforcement and CAPTCHA on forms, though explicit security headers could be improved. The security posture is solid with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear policies and consent mechanisms. However, WHOIS data for the domain is unavailable due to a domain naming rules error, which does not impact the legitimacy given the charity registration and consistent branding. Overall, the website demonstrates a strong commitment to transparency, user engagement, and compliance, making it a trustworthy platform for its audience and stakeholders.

25
100
17
85
42
55
100
environmentcharityoceancampaignplasticpollution+3 more
WordPressGravity FormsGoogle AnalyticsGoogle Tag Manager+5

Partner Domains:

sasshop.org.uk
partner
donate.sas.org.uk
partner

+1 more partners

2025-10-30T14:21:20.074Z
deltareisen.cz favicon

Delta Reisen s.r.o.

deltareisen.cz

58
HospitalityCzech RepublicmediumMEDIUM

Delta Reisen s.r.o. is a Czech travel agency specializing in offering vacations through German and Austrian travel agencies, providing a wide range of travel packages with over one million available dates. The company targets Czech customers seeking high-quality travel experiences with trusted German and Austrian partners. Their business model focuses on travel package brokerage, online booking, and customer support with a medium-sized market presence since 2016. The website reflects a professional and consistent brand image with good content quality and customer trust signals such as reviews and certifications. Technically, the website uses a modern tech stack including jQuery, Bootstrap, Google Tag Manager, and Matomo analytics, integrated with a specialized travel system (CeSYS). The site is mobile optimized and performs moderately well, with good SEO and accessibility basics. Security posture is solid with HTTPS enforcement and cookie consent mechanisms, though some security headers are not explicitly detected. No WHOIS data is available, which impacts transparency and trust. Security-wise, the site shows good practices such as reCAPTCHA on forms and no exposed sensitive data, but lacks a public security policy or incident response information. Privacy compliance is good with GDPR-aligned cookie consent and privacy notices. Overall, the risk is moderate with recommendations to improve WHOIS transparency, security headers, and incident response disclosures. Strategically, Delta Reisen should focus on enhancing security transparency, maintaining up-to-date technology, and expanding trust signals to strengthen market position and customer confidence.

15
25
17
75
72
80
100
traveltourismvacationgerman-travel-agencyaustrian-travel-agency+4 more
jQueryjQuery UIBootstrapGoogle Tag Manager+5

Partner Domains:

travelio.sk
subsidiary
luxusni-exotika.cz
subsidiary

+2 more partners

2025-10-30T14:20:44.981Z
M

Mateřská škola Borohrádek

msboro.cz

44
EducationCzech RepublicsmallHIGH

Mateřská škola Borohrádek operates as a local preschool educational institution in the Czech Republic, providing early childhood education services with a focus on a natural environment. The website serves primarily parents and guardians seeking information about the school, its classes, events, and admission procedures. The business model is community-focused education with a small organizational size and a founding date around 2010. Technically, the website is built using standard web technologies including HTML5, CSS, JavaScript, and jQuery, likely managed via the WebConfig CMS platform. The site is moderately optimized for mobile devices and offers a clear navigation structure. However, performance and accessibility are basic, and there is room for improvement in SEO and technical modernization. From a security perspective, the site uses HTTPS (inferred but not explicitly confirmed), includes cookie consent mechanisms, and employs common tracking tools such as Google Analytics and Facebook Pixel. There is a lack of advanced security headers and no visible incident response or security policy pages. WHOIS data is missing, which reduces domain trustworthiness, though the website content and structure suggest a legitimate educational entity. Overall, the website is functional and provides relevant content for its audience but would benefit from enhanced security practices, improved transparency in contact information, and better technical optimization to strengthen trust and compliance.

20
25
2
70
72
75
20
educationpreschoolczechrepublicchildrenschool+1 more
HTML5CSSJavaScriptjQuery
2025-10-30T14:20:19.928Z
cermna-n-orl.cz favicon

Čermná nad Orlicí

cermna-n-orl.cz

39
GovernmentCzech RepublicsmallHIGH

The website www.cermna-n-orl.cz serves as the official online presence for the municipality of Čermná nad Orlicí in the Czech Republic. It provides residents and visitors with information about local government, community events, public announcements, and municipal projects. The site is designed to support the local population with relevant news and administrative resources, reflecting a small government entity focused on community engagement. Technically, the site uses standard web technologies including HTML5, CSS3, JavaScript, and jQuery, with additional integration of a Smart App Banner to promote a mobile application. The CMS appears to be WebConfig, a platform commonly used for municipal websites in the region. The site is moderately optimized for performance and mobile devices, with a clear navigation structure and good content relevance. From a security perspective, the site lacks visible security headers and does not provide privacy or cookie policies, which are important for GDPR compliance and user trust. The WHOIS data for the domain is unavailable, which raises concerns about domain registration transparency and legitimacy. No forms or direct contact information are present on the site, limiting user interaction and support channels. Overall, the website is functional and serves its purpose as a municipal information portal but requires improvements in security posture, privacy compliance, and domain registration transparency to enhance trust and regulatory adherence.

20
10
2
60
62
75
20
municipalitygovernmentcommunityczechrepubliclocalnews+2 more
HTML5CSS3JavaScriptjQuery+1
2025-10-30T14:19:24.785Z
learnlasers.com favicon

World Clinical Laser Institute

learnlasers.com

57
HealthcareUnited StatesmediumMEDIUM

The World Clinical Laser Institute (WCLI) is a well-established professional organization specializing in dental laser technology education, certification, and events. Founded in 2000, it has grown to become the largest dental laser organization globally with over 19,000 members. The website reflects a professional and consistent brand presence targeting dental professionals and researchers interested in advancing dental care through laser technologies. The business model centers on membership, training, certification, and knowledge sharing through symposiums and webinars. Technically, the website is built on WordPress using the Elementor page builder, hosted with GoDaddy as registrar and DNS managed via Cloudflare. The site is mobile optimized with good navigation and content quality. However, performance is moderate and accessibility is basic. No advanced analytics or tracking scripts were detected, indicating minimal user tracking. From a security perspective, the site uses HTTPS with a valid SSL certificate and domain registration protections. However, DNSSEC is not enabled and no security headers were detected, which are areas for improvement. Privacy compliance is weak due to the absence of privacy and cookie policies or consent mechanisms. Contact information is clearly provided, enhancing business credibility. Overall, the site is trustworthy and professional but would benefit from enhanced security headers, privacy compliance improvements, and DNSSEC implementation to strengthen its security posture and regulatory adherence.

25
35
17
60
57
80
100
healthcaredentallasertechnologyeducationcertification+1 more
WordPressElementorPHPjQuery+2

Partner Domains:

learnlasers.com
partner
2025-10-30T14:19:14.759Z
dabpumps.id favicon

Dab Pumps Spa

dabpumps.id

10
EnergyIndonesialargeCRITICAL

Dab Pumps Spa is a well-established manufacturer specializing in efficient water movement and management technologies. The company operates internationally with localized websites such as the Indonesian version analyzed here. Their business model focuses on manufacturing, after-sales services, training, and digital product support, positioning them as a key player in the energy and manufacturing sectors. The website reflects a professional and consistent brand image targeting industrial clients, professionals, and end users interested in water pump solutions. Technically, the website is built on Drupal 9 CMS with modern front-end technologies including jQuery, Bootstrap, Owl Carousel, and Selectric for enhanced user experience. The site is mobile-optimized, accessible, and SEO-friendly, though performance is moderate. Security is implemented with HTTPS and secure forms, but lacks explicit security headers and incident response disclosures. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is good with clear privacy and cookie policies, though a cookie consent mechanism is absent. The WHOIS data aligns well with the business claims, indicating legitimacy and consistency. Social media and partner domains are well integrated, enhancing trust and outreach. Overall, the website is professional, secure, and business credible with room for improvement in security headers and privacy mechanisms. The risk level is low, and the site effectively supports the company's market presence and customer engagement.

-
-
-
-
-
-
-
waterpumpsindustrialtechnologymanufacturingindonesiadrupal+1 more
jQueryBootstrap 3.3.5Drupal 9Owl Carousel+1

Partner Domains:

internetofpumps.com
partner
evosta.dabpumps.com
partner

+3 more partners

2025-10-30T14:17:09.432Z
blueskytravel.hu favicon

Blue Sky Travel

blueskytravel.hu

47
HospitalityHungarymediumHIGH

Blue Sky Travel is a Hungarian travel agency established in 2018, specializing in air and bus travel packages primarily to Greek islands and various exotic destinations. The company offers competitive pricing, last-minute deals, and comprehensive travel organization services targeting Hungarian-speaking travelers. Their website features a professional design with clear navigation, mobile optimization, and integrated booking forms, reflecting a medium-sized business with a solid market presence. Technically, the website leverages modern web technologies including Bootstrap, jQuery, and popular analytics and marketing tools such as Google Tag Manager, Hotjar, Microsoft Clarity, and Tawk.to live chat. Hosting is provided via a CDN, ensuring moderate performance and good mobile responsiveness. SEO and accessibility are adequately addressed, though some improvements are possible. From a security perspective, the site enforces HTTPS and employs consent-based loading of tracking scripts, demonstrating a privacy-aware approach. However, it lacks several important security headers and does not publish a security policy or incident response contacts. No critical vulnerabilities or suspicious activities were detected, and WHOIS data confirms domain legitimacy and consistency with the business claims. Overall, the website presents a trustworthy and professional travel service with room for improvement in privacy policy transparency and security hardening. The risk level is moderate with no immediate threats identified.

20
25
2
85
72
75
20
travelholidayvacationpackagetoursgreekislands+3 more
BootstrapjQuerySlick CarouselGoogle Fonts+4
2025-10-30T14:15:44.112Z
indyalabama.com favicon

Children's of Alabama Indy Grand Prix

indyalabama.com

56
TransportationUnited StatesmediumMEDIUM

The Children’s of Alabama Indy Grand Prix website represents a well-established motorsports event held annually at Barber Motorsports Park in Birmingham, Alabama. The event supports the Children’s of Alabama hospital and is powered by AmFirst, indicating a strong charitable and community focus. The website provides comprehensive information about the event, ticketing, hospitality, fan activities, and sponsorship opportunities, targeting motorsports enthusiasts and local supporters. The site is professionally branded and maintains consistent messaging aligned with its charitable mission. Technically, the website is built on WordPress using the Total theme, incorporating modern web technologies such as jQuery, Revolution Slider, and Gravity Forms. It integrates Google Analytics, Google Tag Manager, and Facebook Pixel for analytics and marketing purposes. The site is mobile-optimized and accessible, with a user-friendly design and clear navigation. However, it lacks an explicit cookie consent mechanism, which may impact privacy compliance. From a security perspective, the site enforces HTTPS and uses standard tracking and marketing scripts. There is no evidence of exposed sensitive data or vulnerabilities in the visible content. Security headers are not explicitly detected but HTTPS presence suggests a baseline security posture. The absence of WHOIS registration data is a concern for domain legitimacy, although the site content and branding appear trustworthy. No WAF or blocking mechanisms were detected, indicating full accessibility. Overall, the website demonstrates a solid digital presence with good content quality and technical implementation. Privacy compliance could be improved by adding cookie consent and GDPR indicators. The lack of WHOIS data reduces trustworthiness slightly but does not outweigh the professional presentation and clear business purpose. Strategic recommendations include enhancing security headers, implementing a vulnerability disclosure policy, and improving privacy compliance to strengthen trust and security posture.

25
53
2
60
57
75
100
motorsportscharityeventbirminghamalabama+3 more
WordPressPHPjQueryRevolution Slider+5

Partner Domains:

cuetoems.com
partner
childrensal.org
partner

+3 more partners

2025-10-30T14:15:19.043Z
fittkau-metallbau.de favicon

fittkau metallgestaltung gmbh

fittkau-metallbau.de

54
ManufacturingGermanysmallMEDIUM

Fittkau Metallgestaltung GmbH is a German small-sized manufacturing company specializing in metalworking, forge, and artistic metal structures. The company presents a professional website built on Joomla! CMS, showcasing a portfolio of projects and providing essential contact information. The website targets architects, construction firms, and clients seeking specialized metal fabrication services. The business holds a reputable market position with recent award recognition, indicating industry credibility. Technically, the website employs legacy JavaScript libraries such as jQuery and MooTools, with moderate performance and basic mobile optimization. The absence of advanced analytics and tracking tools suggests a privacy-conscious approach. However, the lack of visible security headers and outdated libraries indicate areas for technical improvement. From a security perspective, the site uses HTTPS (assumed from base URL), includes a cookie consent mechanism, and provides a privacy policy compliant with GDPR. No incident response or security policy pages are found, and no phone contact is provided, which could limit user trust. No critical vulnerabilities or blocking mechanisms are detected, but updating security practices and technical stack is recommended. Overall, the website is professional and trustworthy with good business credibility but could benefit from technical modernization and enhanced security measures to improve resilience and compliance.

60
70
28
100
2
20
77
metalworkingmanufacturingforgejoomlagerman+1 more
jQueryMooToolsWidgetkitjQuery UI+1
2025-10-30T14:13:11.474Z
valfrigo.com favicon

Valfrigo

valfrigo.com

43
EnergyKosovosmallHIGH

Valfrigo is a Kosovo-based company specializing in the sale of thermal pumps for central heating, ventilation, air conditioning, and related services such as filtering and degassing of oil transformers. The company markets products from well-known brands like NIBE, TOSHIBA, CARRIER, and CLIVET, positioning itself as a specialized provider in the green energy sector. The website reflects a small-sized business with a clear focus on green energy heating solutions, targeting both businesses and consumers interested in sustainable energy technologies. The domain age of 20 years supports a mature business presence. Technically, the website is built on WordPress using popular plugins such as WPBakery Page Builder and Slider Revolution. It employs modern web technologies including jQuery and Google Fonts, and integrates Google Maps API. The site is mobile optimized with good design quality and navigation clarity, although SEO and accessibility features are basic. Hosting appears to be managed via Name.com, consistent with the domain registrar information. From a security perspective, the site uses HTTPS, ensuring encrypted communications. However, no DNSSEC is enabled, and no security headers were detected in the provided data, which are areas for improvement. The absence of privacy and cookie policies, as well as incident response contacts, indicates gaps in compliance and security transparency. No evidence of tracking or advertising scripts was found, suggesting minimal user tracking. Overall, the website is professional and trustworthy with moderate security posture and limited privacy compliance. Strategic improvements in security headers, DNSSEC, and privacy documentation would enhance the site's security and compliance standing.

15
35
2
70
62
70
20
greenenergythermalpumpsheatingventilationairconditioning+2 more
WordPressWPBakery Page BuilderSlider RevolutionjQuery+2
2025-10-30T14:12:41.402Z
V

VTD

vtd.se

41
TransportationSwedenmediumHIGH

VTD is a Swedish logistics and distribution company specializing in parcel, newspaper, and mail delivery services primarily in the Västsverige region. Established in 2001, the company operates a strong distribution chain reaching approximately 700,000 to 800,000 households daily. Their business model focuses on sustainable and reliable delivery using various transport modes including walking, cycling, mopeds, and cars. The website reflects a medium-sized regional player with a clear market position and a professional digital presence. Technically, the website is built on WordPress using the Divi theme and leverages Yoast SEO for optimization. Hosting appears to be on Oracle Cloud infrastructure. The site is moderately performant with good mobile optimization and basic accessibility features. SEO practices are well implemented with proper meta tags and structured data. However, some technical improvements such as enabling DNSSEC and adding security headers could enhance security posture. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks advanced security headers and explicit security policies. No incident response or vulnerability disclosure information is publicly available. Privacy compliance is partially met with a privacy policy present, but no cookie consent mechanism was detected, which is a GDPR compliance gap. Contact information is clearly provided, enhancing business credibility. Overall, VTD's website is professional, trustworthy, and business-focused with room for improvement in privacy compliance and security best practices. The risk profile is low with no critical vulnerabilities detected. Strategic recommendations include implementing cookie consent, enabling DNSSEC, adding security headers, and publishing security policies to strengthen trust and compliance.

15
10
17
70
72
65
-
logisticsdistributionswedentransportationparceldelivery+2 more
WordPressDivi ThemejQueryMediaElement.js
2025-10-30T14:12:36.392Z