Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149567
Websites
130
Industries
113
Countries
52
Avg Score
Page 108 of 776|Showing 5351-5400 of 38792
S

Robot Challenge Screen

sefeaimpact.it

36
OtherItalysmallHIGH

The website sefeaimpact.it currently serves a robot challenge screen implementing a proof-of-work captcha mechanism to verify visitors. This indicates the presence of a Web Application Firewall (WAF) or security layer blocking direct access to the actual website content. Due to this, no business-related content, contact information, or policies are accessible for analysis. The domain is registered since 2016 with DNSSEC enabled, suggesting a legitimate registration, but the lack of accessible content limits further trust evaluation. Technically, the site uses custom JavaScript with Web Workers and cryptographic hashing to implement the captcha challenge. The hosting leverages AWS Cloudfront CDN for content delivery. However, no SEO, accessibility, or privacy compliance features are present on the challenge page. Security headers and HTTPS configuration details are not visible in the provided data. The security posture shows some strengths in DNSSEC and captcha usage but lacks visible security headers and privacy compliance mechanisms. The site does not expose forms or inputs, reducing attack surface but also limiting user interaction. Overall, the site is currently inaccessible for normal users without passing the challenge, which impacts usability and trust. Given these factors, the overall risk is moderate due to the blocking mechanism, but the lack of transparency and policies is a concern. Strategic recommendations include implementing visible security headers, publishing privacy and cookie policies, providing contact and incident response information, and improving user experience post-challenge.

20
25
2
85
72
60
-
securitycaptcharobotchallengeblockedwaf
JavaScriptWeb WorkersSHA1 hashingCrypto API
2025-10-24T16:05:31.214Z
one.store favicon

OneStore

one.store

65
TechnologyN/amediumMEDIUM

OneStore is a technology company specializing in AI-powered customer engagement and marketing solutions tailored for e-commerce businesses. Their platform offers a comprehensive suite of tools including abandoned cart recovery, social proof notifications, gamified popups, email and SMS marketing, and integrations with major e-commerce platforms such as Shopify, WooCommerce, and BigCommerce. The company has established a strong market presence with over 150,000 businesses using their services and more than 2,450 five-star reviews on the Shopify App Store, indicating high customer satisfaction and trust. Technically, the website employs a modern technology stack with JavaScript frameworks, analytics tools like Google Analytics and ProfitWell, and customer support integrations such as Crisp chat. The site is hosted behind Cloudflare, ensuring performance and security benefits. The website is well-optimized for mobile devices, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses domain status protections to prevent unauthorized transfers or updates. Cookie consent mechanisms are implemented in compliance with GDPR and CCPA regulations. However, there is no explicit security policy or incident response contact information published, and DNSSEC is not enabled, which could be improved to enhance security posture. Overall, OneStore presents a professional, trustworthy, and technically sound online presence with strong privacy compliance and business credibility. Strategic improvements in security transparency and DNS security would further strengthen their risk profile.

30
68
2
75
75
80
100
ecommercemarketingaicustomerengagementshopify+4 more
JavaScriptjQuerySwiper.jsGoogle Analytics+7
2025-10-24T15:53:53.131Z
O

Omnisend

omnisendlink.com

54
TechnologyN/amediumMEDIUM

Omnisend operates as an omnichannel marketing platform specializing in email and multi-channel messaging services designed to help businesses engage customers effectively and compliantly. The website analyzed is a minimal landing page primarily used for tracking links from emails sent via Omnisend's platform and providing an abuse reporting contact. The business is positioned as a technology provider in the marketing automation space, founded in 2017, with a medium-sized operational scale. Technically, the website is hosted via Cloudflare with basic HTML, CSS, and JavaScript technologies. The site lacks advanced frameworks or CMS indications and shows moderate performance and basic mobile optimization. No analytics or tracking scripts were detected in the provided content, indicating a privacy-conscious minimal landing page. From a security perspective, the domain is registered with a reputable registrar and protected against unauthorized transfers. However, DNSSEC is not enabled, and no security headers were detected, representing areas for improvement. The presence of an anti-abuse contact email demonstrates incident response readiness, but the absence of privacy and cookie policies indicates compliance gaps. Overall, the website is functional for its purpose but limited in content and compliance documentation. Strategic improvements in security headers, privacy policies, and mobile optimization would enhance trust and compliance posture.

25
50
12
40
75
70
100
marketingemailomnichannelabuse-reportinglink-tracking
HTML5CSS3JavaScript
2025-10-24T15:53:48.109Z
ownbit.net favicon

OWNBIT GmbH

ownbit.net

56
TechnologySwitzerlandsmallMEDIUM

OWNBIT GmbH is a Swiss web agency specializing in custom websites and web applications, with a strong focus on user-centered digital solutions. The company targets Swiss SMEs, corporations, and design agencies, offering tailored WordPress and web development services. With over 12 years of market presence and more than 200 clients, OWNBIT holds a reputable position in the local technology sector. The website reflects a professional and consistent brand image, supported by client testimonials and a 5-star Google rating. Technically, the website is built using modern frameworks such as Vue.js and Gridsome, ensuring fast performance and excellent mobile optimization. The use of WordPress for client projects indicates flexibility in CMS solutions. The site includes cookie consent mechanisms and a comprehensive privacy policy, demonstrating good GDPR compliance. However, explicit security headers and SSL configuration details are not evident from the data, suggesting areas for security enhancement. The security posture is moderate with no visible vulnerabilities or exposed sensitive data, but the absence of detailed security policies and incident response information indicates room for improvement. The WHOIS data is privacy protected, which is justified for this business type, though it limits domain age verification. Overall, the website is trustworthy, professional, and compliant with privacy regulations, with recommendations to strengthen security headers and transparency. Strategically, OWNBIT should focus on enhancing security best practices and publishing vulnerability disclosure policies to further build client trust and compliance readiness.

20
72
80
70
68
35
17
webagencycustomwebsiteswebapplicationswordpressdigitalsolutions+2 more
Vue.jsJavaScriptCSSHTML5
2025-10-24T15:52:27.584Z
offenekirche.ch favicon

Offene Kirche Elisabethen Basel

offenekirche.ch

54
Non-profitSwitzerlandsmallMEDIUM

Offene Kirche Elisabethen Basel operates as a non-profit church organization based in Switzerland, providing community church services and event hosting. The website serves as a platform for event information and booking, leveraging WordPress and the EventPrime plugin for event management. The target audience is the general public interested in church activities and community events. The organization holds a local market position as the first city church in Switzerland, focusing on community engagement rather than commercial activities. Technically, the website is built on a modern CMS with standard plugins, offering moderate performance and good mobile optimization. Security posture is adequate with HTTPS enabled and nonce-based AJAX security, but lacks advanced security headers and explicit privacy and cookie policies, which are areas for improvement. The site does not employ extensive tracking or advertising, indicating a privacy-conscious approach, though GDPR compliance is incomplete due to missing policies. Overall, the domain registration data aligns well with the website's claims, supporting legitimacy. Strategic recommendations include enhancing security headers, publishing privacy and cookie policies, and improving accessibility and compliance to strengthen trust and security.

30
58
17
65
-
85
100
churcheventbookingcommunitynon-profitwordpress+1 more
WordPressEventPrime pluginElementorjQuery+3

Partner Domains:

paypal.com
service
2025-10-24T15:50:33.423Z
caritas-beider-basel.ch favicon

Caritas beider Basel

caritas-beider-basel.ch

11
Non-profitSwitzerlandmediumCRITICAL

Caritas beider Basel is a regional non-profit organization focused on providing social and legal support services, integration assistance, and emergency aid to individuals in the Basel-Landschaft and Basel-Stadt regions of Switzerland. The organization operates multiple service locations and offers a wide range of programs including social counseling, legal advice related to social welfare, secondhand clothing stores, affordable meals, child sponsorships, and support for caregivers. Their market position is strong within the regional social services sector, supported by their ZEWO certification which attests to their trustworthy handling of donations. Technically, the website employs modern web technologies including JavaScript, Google Tag Manager, and SEOmatic for SEO management. The site is well-structured, mobile-optimized, and provides a good user experience with clear navigation and professional design. Privacy and cookie policies are implemented with consent mechanisms, reflecting good compliance with GDPR requirements. Analytics usage is extensive, leveraging Google Analytics and Tag Manager, with transparent cookie consent. From a security perspective, the site uses HTTPS and includes CSRF tokens, but explicit security headers are not clearly visible in the HTML content. No critical vulnerabilities or exposed sensitive data were detected. The domain WHOIS data aligns well with the organization's identity and location, indicating legitimacy and consistency. No WAF or blocking mechanisms interfere with content access. Overall, Caritas beider Basel presents a professional, trustworthy, and well-maintained online presence that supports its mission of social aid and community support. Strategic recommendations include enhancing security headers, publishing a formal security policy, and establishing a vulnerability disclosure process to further strengthen their security posture.

-
-
-
-
-
-
-
socialservicesnon-profitcharitysocialcounselinglegaladvice+4 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsHTMX

Partner Domains:

caritas-shop.ch
partner
zewo.ch
partner

+2 more partners

2025-10-24T15:50:28.378Z
junges-krebsportal.de favicon

Deutsche Stiftung für junge Erwachsene mit Krebs

junges-krebsportal.de

49
HealthcareGermanysmallHIGH

The Deutsche Stiftung für junge Erwachsene mit Krebs operates the Junges Krebsportal, a specialized online platform providing young cancer patients in Germany with direct access to expert advice and support. The portal offers multiple communication channels including online chats, telephone consultations, and in-person meetings, complemented by a Tandem-Beratung program where affected individuals support each other. The foundation is supported by recognized partners and foundations, reinforcing its credibility in the healthcare non-profit sector. Technically, the website is built using modern web standards including HTML5, CSS3, JavaScript, and the UIkit framework, hosted on a reputable German hosting provider. The site is mobile-optimized with good SEO practices and clear navigation, although accessibility features are basic. No major performance or technical issues were detected. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks visible security headers and explicit security or incident response policies. Privacy compliance is good with a comprehensive privacy policy, but no cookie consent mechanism is evident. No analytics or tracking scripts were detected, indicating a privacy-conscious approach. Overall, the website presents a trustworthy, professional, and focused service with a strong business credibility score. Security posture is solid but could be improved with additional headers and policies. The absence of cookie consent mechanisms and incident response information are notable gaps. The domain WHOIS data is limited but consistent with the business purpose. No WAF or blocking mechanisms interfere with content access.

15
28
17
80
77
70
20
healthcarecancernon-profitpatientsupportyoungadults+1 more
HTML5CSS3JavaScriptjQuery

Partner Domains:

junge-erwachsene-mit-krebs.de
partner
metzler-stiftung.de
partner

+1 more partners

2025-10-24T15:34:07.999Z
bewegung-bei-krebs.org favicon

Deutsche Krebshilfe

bewegung-bei-krebs.org

65
HealthcareGermanysmallMEDIUM

The website bewegung-bei-krebs.org is a specialized German-language informational platform focused on the role of sport and physical activity in cancer therapy and rehabilitation. It is supported and funded by the reputable Deutsche Krebshilfe and is part of the IMPLEMENT project. The platform targets cancer patients, their relatives, and healthcare professionals, providing scientifically validated content, therapy offers, and free sports counseling. The site demonstrates a clear mission to support oncological rehabilitation through movement therapy, positioning itself as a trusted resource in this niche healthcare segment. Technically, the website uses modern web technologies including the Scrivito CMS, Bootstrap for styling, and Matomo for privacy-conscious analytics. Hosting appears to be on AWS infrastructure, and the site is mobile-optimized with good SEO practices. However, some security enhancements such as enabling DNSSEC and adding security headers could improve the overall security posture. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. Cookie consent mechanisms are implemented, and privacy policies are present and GDPR compliant. No critical vulnerabilities or suspicious content were detected. The absence of a security policy or incident response contact is noted as an area for improvement. Overall, the website scores well on content quality, business credibility, and privacy compliance, with moderate scores in technical implementation and security posture. It is a professionally maintained, trustworthy platform serving a sensitive healthcare niche with a clear non-profit orientation.

50
83
2
60
77
70
100
krebsbewegungsporttherapieonkologischerehabilitationgesundheitsfrderung+2 more
JavaScriptMatomo AnalyticsScrivito CMSBootstrap CSS+1
2025-10-24T15:34:02.984Z
mein-fahrtwind.de favicon

Sparkassen- und Giroverband Hessen-Thüringen (SGVHT)

mein-fahrtwind.de

55
FinanceGermanylargeMEDIUM

Mein Fahrtwind is a promotional website operated by the Sparkassen- und Giroverband Hessen-Thüringen (SGVHT), a public financial association in Germany. The site hosts a contest offering participants the chance to win one of eight electric scooters, targeting residents of Hessen, Thüringen, and parts of Rheinland-Pfalz. The website is professionally designed with comprehensive legal and privacy documentation, reflecting a strong commitment to GDPR compliance and user data protection. The contest employs a double opt-in mechanism to ensure participant consent and data accuracy. Technically, the site uses modern web technologies including Google Tag Manager, Matomo analytics, Adobe Typekit fonts, and a cookie consent management system. Hosting is managed via DomainControl, indicating a professional infrastructure. The site is mobile-optimized and accessible, with good SEO practices. Security measures include HTTPS and IP masking in analytics, though HTTP security headers are not explicitly detected. From a security perspective, the site demonstrates good practices with no visible vulnerabilities or exposed sensitive data. Privacy policies are detailed and transparent, including a named data protection officer contact. No incident response or vulnerability disclosure policies are found, which could be areas for improvement. Overall, the site presents a low risk profile with strong compliance and trust indicators. Strategically, the site effectively supports the SGVHT's marketing and public engagement goals, leveraging digital tools to promote sustainable mobility. The integration of multiple marketing and tracking tools is balanced with user privacy considerations, positioning the organization as responsible and trustworthy in its digital presence.

15
85
2
65
100
70
20
sparkassengewinnspielmobilitte-schwalbehessen+4 more
HTML5CSS3JavaScriptGoogle Tag Manager+5
2025-10-24T15:33:17.753Z
finanzen-mit-daniel-jung.de favicon

Sparkassen- und Giroverband Hessen-Thüringen (SGVHT)

finanzen-mit-daniel-jung.de

47
FinanceGermanymediumHIGH

The website 'finanzen-mit-daniel-jung.de' is an educational platform focused on financial literacy, primarily targeting students and educators in the Hessen and Thüringen regions of Germany. It is operated under the auspices of the Sparkassen- und Giroverband Hessen-Thüringen, a reputable financial association. The site offers a series of well-structured, easy-to-understand videos and learning materials to enhance financial knowledge. The partnership with Sparkassen and the inclusion of the Sparkassen-SchulService platform reinforce its credibility and regional relevance. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates Google Tag Manager and Matomo for analytics, alongside a GDPR-compliant cookie consent mechanism. The site is hosted on servers indicated by the nameservers 'your-server.de' and related domains, suggesting a professional hosting environment. The site is mobile-optimized and demonstrates good SEO and accessibility practices, though some improvements in accessibility and security headers could be made. From a security perspective, the site uses HTTPS with strong SSL configuration and implements cookie consent for privacy compliance. No critical vulnerabilities or exposed sensitive data were detected. Privacy policies and terms of service are comprehensive and clearly presented, with a designated data protection officer contact provided. The site does not employ a vulnerability disclosure policy, which could be considered for future enhancement. Overall, the website presents a low-risk profile with strong business credibility and compliance posture. It effectively serves its educational mission with professional content and transparent governance. Strategic recommendations include enhancing HTTP security headers, formalizing a vulnerability disclosure process, and improving accessibility features to further strengthen the site's security and user experience.

15
45
17
70
100
45
-
financeeducationfinancialliteracysparkassevideos+2 more
HTML5CSS3JavaScriptGoogle Tag Manager+2

Partner Domains:

sparkassen-schulservice.de
partner
sfg-ht.de
partner
2025-10-24T15:33:02.574Z
gmstiftung.ch favicon

Geschwister Meier Stiftung

gmstiftung.ch

61
Non-profitSwitzerlandsmallMEDIUM

The Geschwister Meier Stiftung is a Swiss non-profit foundation dedicated to supporting music and cultural activities ranging from traditional folk music to avant-garde experimental sounds. The website serves as an informational platform to present the foundation's mission and activities, targeting a general audience interested in arts and culture within Switzerland. The foundation operates in a niche cultural sector with a small organizational size and a focused business model centered on cultural funding and promotion. Technically, the website is built on the Wix platform, utilizing Wix's standard JavaScript libraries and hosting infrastructure. The site demonstrates moderate performance and good mobile optimization, with basic accessibility and SEO features. The technical stack is modern but limited to Wix's ecosystem, which simplifies maintenance but may restrict advanced customization. From a security perspective, the site benefits from HTTPS and a good SSL configuration. However, it lacks several security best practices such as security headers and explicit privacy and cookie policies, which are critical for GDPR compliance and user trust. No incident response or vulnerability disclosure information is provided, indicating room for improvement in security transparency and readiness. Overall, the website is professionally designed and consistent with the foundation's branding and mission. The absence of contact details and privacy-related policies slightly diminishes trust and compliance posture. Strategic enhancements in privacy compliance, security headers, and contact transparency would strengthen the foundation's digital presence and user confidence.

35
50
2
75
72
80
100
non-profitculturemusicfoundationswitzerland+1 more
Wix.com Website BuilderJavaScriptCSSHTML5
2025-10-24T15:32:06.964Z
A

Avadis Vorsorge AG

avadis.ch

55
FinanceSwitzerlandmediumMEDIUM

Avadis Vorsorge AG is a Swiss financial services company specializing in pension fund management and investment solutions for institutional and private clients. The company offers a range of services including pension fund administration, private equity investments, real estate investments, and financial planning. With over 450 institutional clients and a strong presence in Switzerland, Avadis positions itself as a reliable and independent partner in the financial sector. The website reflects a professional and consistent brand image, targeting institutional investors and private individuals seeking investment opportunities and pension solutions. Technically, the website employs modern JavaScript frameworks, Google Analytics, and OneTrust for cookie consent, indicating a mature digital infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, providing a good user experience. Security-wise, the site uses HTTPS with strong SSL configuration and appropriate security headers, but lacks publicly available security policies or incident response contacts. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism. Overall, the website demonstrates a high level of professionalism and trustworthiness, with minor recommendations to enhance security transparency and incident response readiness.

40
88
2
80
62
85
-
financepensionskassenprivateequityinvestmentinstitutionelleanleger+3 more
JavaScriptGoogle AnalyticsGoogle Tag ManagerOneTrust Cookie Consent
2025-10-24T15:31:41.858Z
mediacampus-frankfurt.de favicon

mediacampus-frankfurt

mediacampus-frankfurt.de

66
EducationGermanymediumMEDIUM

Mediacampus Frankfurt is an established educational institution specializing in seminars, training, and educational programs for the book trade and media industry in Germany. The website presents a professional and well-structured platform offering a variety of courses, webinars, and training sessions targeting professionals, newcomers, and specialists in publishing and media sectors. The institution maintains a strong social media presence and provides detailed event information, enhancing its market position as a key player in media education. Technically, the website employs modern web technologies including JavaScript, Algolia Search for site search functionality, and Google Tag Manager for analytics, which is loaded conditionally upon cookie consent. The site is hosted on Anexia servers, uses HTTPS with good SSL configuration, and is optimized for mobile devices with good accessibility and SEO practices. However, some security headers are not explicitly detected, and no explicit security or incident response policies are published. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and privacy-aware analytics loading. No vulnerabilities or exposed sensitive data were found in the provided content. The WHOIS data aligns with the business claims, showing consistent domain registration and hosting. Privacy and cookie policies are not explicitly found in the provided content, which is a compliance gap. Overall, the site is safe, professional, and trustworthy with room for improvement in privacy disclosures and security policy transparency.

40
83
2
85
77
60
100
educationseminarstrainingmediabooktrade+1 more
JavaScriptAlgolia SearchGoogle Tag ManagerSVG icons
2025-10-24T15:31:36.829Z
alalyonnaise.fr favicon

À la lyonnaise

alalyonnaise.fr

61
MediaFrancesmallMEDIUM

À la lyonnaise is a French lifestyle media company focusing on the city of Lyon, offering content related to food, shopping, cultural discoveries, and leisure activities. The website serves as a digital platform complementing their print magazine editions, targeting residents and visitors interested in Lyon's local culture and lifestyle. Their market position is that of a niche local media outlet with a consistent brand presence and active social media engagement. Technically, the website employs modern JavaScript libraries, Matomo and Google Analytics for tracking, and uses HTTPS with cookie consent mechanisms, indicating a moderate level of digital maturity. The site is mobile optimized and provides a good user experience with clear navigation and relevant content. Security-wise, the site uses HTTPS and cookie consent but lacks explicit security headers and public security policies, suggesting room for improvement in security posture. No critical vulnerabilities or blocking mechanisms were detected. Overall, the website is professional, trustworthy, and compliant with GDPR requirements, though it could enhance transparency around terms of service and incident response. Strategic recommendations include implementing security headers, publishing security policies, and improving SEO and accessibility compliance.

65
40
2
70
65
60
100
medialifestylefoodshoppingculture+2 more
JavaScriptjQueryMatomo AnalyticsGoogle Tag Manager+1
2025-10-24T15:31:26.742Z
visiterlyon.com favicon

Office du Tourisme et des Congrès de la métropole de Lyon

visiterlyon.com

69
HospitalityFrancelargeMEDIUM

The website www.visiterlyon.com serves as the official tourism portal for Lyon and its metropolitan area, operated by the Office du Tourisme et des Congrès de la métropole de Lyon. It provides comprehensive tourism information, online booking services for hotels, restaurants, leisure activities, and city passes such as the Lyon City Card. The site targets tourists, families, business travelers, and groups, positioning itself as an authoritative and trusted source for visiting Lyon. The content is rich, professionally presented, and available in multiple languages, enhancing accessibility and user experience. Technically, the website employs modern web technologies including Alpine.js for interactivity, Swiper.js for sliders, and MapLibre GL for mapping. It integrates Google Tag Manager and Google reCAPTCHA for analytics and security. The site is mobile-optimized, accessible, and SEO-friendly, with good performance metrics. Security best practices are observed with HTTPS enforcement, security headers, and secure forms, although explicit security policy and incident response information are not published. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, GDPR adherence, and consent mechanisms. However, WHOIS data for the domain is missing or unavailable, which is unusual for an official entity and slightly impacts trustworthiness. Despite this, the website's certifications, social media presence, and comprehensive content support its legitimacy. Overall, the website is a high-quality, secure, and user-friendly platform for promoting tourism in Lyon. Strategic recommendations include publishing a dedicated security policy, incident response contacts, and a vulnerability disclosure policy to further enhance trust and transparency.

65
65
17
75
65
80
100
tourismlyontravelcultureevents+3 more
HTML5CSS3JavaScriptAlpine.js+4

Partner Domains:

boutique.visiterlyon.com
partner
pro.lyon-france.com
partner

+3 more partners

2025-10-24T15:31:21.732Z
finom.co favicon

Finom

finom.co

80
FinanceNetherlandsmediumLOW

Finom is a fintech company founded in 2019, providing online business banking and financial management solutions tailored for SMEs, freelancers, and entrepreneurs across multiple European countries. The platform offers business accounts with local IBANs, cashback rewards, electronic invoicing, and accounting integrations, leveraging partnerships with licensed banks SolarisBank and Treezor. Finom positions itself as a fast, reliable, and secure financial platform with multilingual support and regulatory compliance under De Nederlandsche Bank (DNB). Technically, the website is built on modern frameworks such as Next.js and React, hosted on Amazon Cloudfront CDN, and optimized for mobile and SEO. The site employs TLS encryption and security best practices, including strong security headers and GDPR compliance. The user experience is professional, with clear navigation, comprehensive content, and trust signals like awards and customer reviews. Security posture is strong, with encrypted data transfers, no exposed sensitive information, and deposit insurance coverage. However, the site lacks a dedicated security policy and incident response contact details, which could enhance transparency and trust. Overall, the domain registration aligns well with the business claims, supporting legitimacy and credibility. The website is safe for general audiences, contains no adult or questionable content, and provides clear contact channels primarily via email and web forms. Strategic recommendations include publishing explicit security and incident response policies, enhancing vulnerability disclosure, and maintaining rigorous third-party script audits to sustain security and compliance.

80
80
25
80
100
85
100
fintechbusinessbankingonlinepaymentsinvoicingaccountingintegration+2 more
ReactNext.jsJavaScriptWebP images+1

Partner Domains:

solarisbank.com
partner
treezor.com
partner
2025-10-24T15:29:50.507Z
bluecommunity.ch favicon

blue-community.ch

bluecommunity.ch

48
Non-profitSwitzerlandsmallHIGH

Blue Community is a Swiss non-profit organization dedicated to advocating for water as a human right and promoting sustainable water management practices. The website serves as a community platform for municipalities, educational institutions, technical enterprises, church communities, and companies to demonstrate responsibility locally and globally. The organization positions itself as a niche player in the environmental non-profit sector with a focus on water resource protection and international partnerships. Technically, the website is built on WordPress using modern Gutenberg blocks, enhanced with Matomo analytics and Mautic marketing automation tools. It employs a cookie consent mechanism compliant with GDPR, ensuring user privacy and transparency. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses cookie consent best practices but lacks explicit security headers and published security policies. No vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms domain legitimacy and consistency with the organization's Swiss non-profit identity. Overall, the website presents a trustworthy, professional, and privacy-conscious platform with room for improvement in formal security documentation and incident response readiness.

15
65
2
70
72
75
-
waternon-profitcommunitysustainabilityswitzerland+2 more
WordPressPHPJavaScriptMatomo Analytics+1
2025-10-24T15:29:40.255Z
vlb.de favicon

MVB GmbH

vlb.de

46
MediaGermanymediumHIGH

MVB GmbH operates the VLB (Verzeichnis Lieferbarer Bücher), a central platform for automated exchange of product information in the German-speaking book industry. The website serves key stakeholders including bookstores, publishers, self-publishers, and service providers, offering services such as order clearing (IBU), reference databases, and subscription discounts. The platform holds a strong market position as an authoritative source in its sector. Technically, the website employs modern web technologies including Bootstrap, Owl Carousel, and Google Tag Manager, hosted on Anexia infrastructure. It features responsive design, good SEO, and accessibility standards, with a cookie consent mechanism ensuring privacy compliance. The site is well-structured and professionally designed, providing a positive user experience. From a security perspective, the site uses HTTPS with good SSL configuration and no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security policy pages, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for enhanced security posture. Overall, the website is trustworthy, professionally maintained, and compliant with GDPR. The WHOIS data aligns with the business entity, reinforcing legitimacy. Strategic improvements in security transparency and incident response readiness would further strengthen the platform's reliability.

20
28
2
85
67
60
20
vlbbuchbranchemvbgmbhbuchhandelverlage+2 more
JavaScriptBootstrapFont AwesomeOwl Carousel+2

Partner Domains:

vlbtix.de
partner
mvb-online.de
parent

+1 more partners

2025-10-24T15:28:29.779Z
nationalgeographic.es favicon

National Geographic España

nationalgeographic.es

55
MediaSpainlargeMEDIUM

National Geographic España operates as a prominent media brand delivering high-quality content focused on science, nature, history, and travel. The website serves a broad general audience with a mix of free and subscription-based content, supported by advertising partnerships and e-commerce through affiliated domains. The brand is well-established in Spain, leveraging multimedia content and digital subscriptions to maintain market relevance. Technically, the website employs a modern tech stack including advanced advertising technologies, consent management via Didomi, and multimedia delivery through JWPlayer. The site is mobile-optimized and uses HTTPS with appropriate security headers, reflecting a mature digital infrastructure. However, some areas such as explicit privacy policy publication and accessibility could be improved. Security posture is solid with HTTPS enforcement and consent mechanisms, but lacks visible vulnerability disclosure or incident response contacts. The absence of WHOIS data limits domain trust verification, though the website's professional presentation and branding strongly indicate legitimacy. Overall, the site presents a low-risk profile with good content quality and technical implementation, but should enhance transparency around privacy, contact information, and security disclosures to strengthen trust and compliance.

45
25
17
60
72
45
100
sciencenaturehistorytravelmedia+4 more
JavaScriptPrebid.jsGoogle Tag ManagerDidomi Consent SDK+5

Partner Domains:

tienda.rba.es
partner
historia.nationalgeographic.com.es
subsidiary

+2 more partners

2025-10-24T15:27:29.610Z
netgroupcloud.ch favicon

zurichnetgroup ag

netgroupcloud.ch

56
TechnologySwitzerlandmediumMEDIUM

Zurichnetgroup ag is a Swiss ICT service provider specializing in cloud solutions tailored for small and medium-sized enterprises (KMU). The company leverages strong partnerships with Microsoft and Swisscom to offer a range of cloud services including private, public, hybrid clouds, and Microsoft 365 cloud solutions. Their market position is solidified by certifications such as ISO 9001, 14001, and 27001, and their focus on Swiss data protection standards appeals to privacy-conscious KMU clients. Technically, the website demonstrates a mature digital infrastructure with modern web technologies, responsive design, and good SEO practices. The use of JSON-LD structured data and lazy loading images enhances performance and search engine visibility. Hosting is implied to be with Swisscom, aligning with their service offerings. From a security perspective, the site enforces HTTPS, employs multiple security headers, and benefits from the robust encryption standards of their cloud partners. No critical vulnerabilities or exposed sensitive data were detected. However, explicit incident response and vulnerability disclosure policies are not publicly available, representing an area for improvement. Overall, the website and business present a trustworthy, professional image with strong compliance to privacy regulations and security best practices. The company is well-positioned in the Swiss KMU market with a comprehensive portfolio of cloud and IT services.

60
68
10
70
72
80
-
cloudcloud-lsungenkmuit-servicesswisscompartner+4 more
HTML5CSS3JavaScriptSVG+2

Partner Domains:

microsoft.com
partner
swisscom.ch
partner

+1 more partners

2025-10-24T14:51:41.521Z