Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156862
Websites
130
Industries
113
Countries
52
Avg Score
Page 1093 of 3138|Showing 54601-54650 of 156862
greenstory.ca favicon

Green Story

greenstory.ca

54
ManufacturingCanadamediumMEDIUM

Green Story is a medium-sized company specializing in providing instant environmental footprint calculations and sustainability data solutions for fashion brands and suppliers. Their platform offers digital product passports, impact management, and compliance tools designed to help clients meet regulatory requirements and enhance transparency in their supply chains. The company is positioned as a leader in sustainability data services within the fashion industry, serving a global clientele with a strong emphasis on accuracy and traceability. Technically, the website is built on the Webflow CMS platform, leveraging modern JavaScript libraries and Google Tag Manager for analytics. The site demonstrates excellent design quality, mobile optimization, and SEO practices, contributing to a fast and accessible user experience. However, there is room for improvement in implementing security headers and explicit cookie consent mechanisms to enhance privacy compliance. From a security perspective, the site uses HTTPS and avoids exposing sensitive data, but lacks visible security policies or incident response information. The absence of WHOIS data due to privacy protection limits domain registration trust verification, though this is common and justified for this business type. Overall, the security posture is good but could be strengthened with additional best practices. The overall risk assessment indicates a professional and trustworthy online presence with minor compliance gaps. Strategic recommendations include enhancing security headers, publishing security and incident response policies, implementing cookie consent, and maintaining regular audits of third-party scripts to ensure ongoing security and privacy compliance.

30
53
17
70
-
80
100
sustainabilityfashionenvironmentalfootprintdigitalproductpassportlca+3 more
Google Tag ManagerWebflow CMSJavaScriptjQuery+1
2025-10-12T10:55:48.445Z
oneskyapp.com favicon

Onesky technology Pte. Ltd.

oneskyapp.com

50
TechnologySingaporemediumMEDIUM

OneSky is a professional localization platform specializing in human translation services for web, mobile apps, and games. The company targets developers and businesses seeking to capture global markets through high-quality, context-aware translations. The website demonstrates a solid market position with notable clients such as Airbnb, Microsoft, and Shopify, indicating strong industry trust and relevance. The business model revolves around a SaaS platform combined with professional translation services, catering primarily to technology sector clients. Technically, the website is built on WordPress and leverages a modern tech stack including jQuery, Bootstrap, and multiple analytics and marketing tools such as Google Analytics, Heap, Facebook Pixel, and HubSpot. The site is mobile-optimized with good SEO practices and moderate performance. However, accessibility features are basic and could be improved. The site uses HTTPS with excellent SSL configuration but lacks explicit security headers, which is a recommended enhancement. From a security perspective, the site shows good practices such as HTTPS enforcement and no visible sensitive data exposure. However, the absence of security headers and lack of incident response or vulnerability disclosure information represent areas for improvement. The WHOIS data is missing or unavailable, which raises transparency concerns but does not necessarily indicate malicious intent given the professional site presentation and active domain status. Overall, the website is professional, trustworthy, and well-positioned in its market niche. The main risks relate to WHOIS transparency and some security best practices gaps. Strategic recommendations include improving WHOIS data transparency, implementing security headers, publishing incident response contacts, and enhancing accessibility compliance to strengthen trust and security posture.

15
68
2
65
-
70
100
localizationtranslationprofessionaltranslationapplocalizationgamelocalization+2 more
jQueryBootstrapGoogle Tag ManagerHeap Analytics+5
2025-10-12T10:55:43.436Z
chevere.org favicon

Chevere

chevere.org

64
TechnologyN/asmallMEDIUM

Chevere.org is a website dedicated to providing a high-quality PHP software library aimed at developers building modern server-side applications. The site offers documentation and package installation instructions primarily distributed via Composer, targeting PHP developers. The business model revolves around open source software distribution with a focus on quality and modular packages. The website is well-structured, with consistent branding and a professional design that facilitates easy navigation and usage by its target audience. From a technical perspective, the website employs modern web technologies including JavaScript and CSS, and leverages Cloudflare for DNS services. The site loads quickly and is optimized for mobile devices, though accessibility features are basic. SEO practices are adequately implemented with proper meta tags and Open Graph data. However, no CMS or specific frameworks are detected, indicating a custom or static site approach. Security posture is moderate; the domain is secured with clientTransferProhibited status and uses Cloudflare DNS, but lacks DNSSEC and security headers such as CSP or HSTS. No privacy or cookie policies are present, and no contact or incident response information is published, which limits compliance and trust. No vulnerabilities or exposed sensitive data were detected in the content. The site does not employ tracking or advertising technologies, enhancing privacy but also indicating minimal user data collection. Overall, Chevere.org presents a trustworthy and professional resource for PHP developers but would benefit from enhanced privacy compliance, security headers, and published contact information to improve trust and regulatory adherence. The domain's WHOIS data supports legitimacy with a long registration history and consistent usage. Strategic improvements in security and compliance would elevate the site's credibility and user confidence.

30
50
2
80
95
80
100
phpsoftwarelibraryopensourcedeveloper+1 more
PHPJavaScriptCSS
2025-10-12T10:55:33.416Z
gocadmium.com favicon

Cadmium

gocadmium.com

58
TechnologyN/amediumMEDIUM

Cadmium is a well-established technology provider specializing in event management and continuing education solutions, boasting over 25 years of industry experience. The company offers a suite of integrated products including Eventscribe for event management, EthosCE and Elevate for learning management, and Warpwire for content management and media streaming. Their target audience primarily includes associations, higher education institutions, medical organizations, and event professionals. The website reflects a mature market position with strong branding, client testimonials, and active engagement through webinars and support portals. Technically, the website is built on Webflow CMS and leverages modern marketing and analytics tools such as HubSpot, Google Tag Manager, Microsoft Clarity, and AdRoll. It employs Google reCAPTCHA Enterprise for form security and demonstrates good mobile optimization, accessibility, and SEO practices. Performance is fast, and the site is professionally designed with clear navigation and comprehensive content. From a security perspective, the site enforces HTTPS and uses secure form handling with reCAPTCHA. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not clearly present in the HTML source, which could be improved. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear privacy and cookie policies and consent mechanisms. The absence of WHOIS domain registration data is a notable concern, potentially indicating privacy protection or registration inconsistencies, which slightly impacts trustworthiness. Overall, Cadmium's website presents a professional, secure, and user-friendly platform suitable for its business model. The main risk lies in the lack of transparent domain registration data, which should be addressed to enhance trust and legitimacy.

60
68
2
65
-
85
100
eventmanagementlearningmanagementsystemcontinuingeducationtechnologysaas+1 more
WebflowHubSpot FormsGoogle Tag ManagerGoogle reCAPTCHA Enterprise+3
2025-10-12T10:55:28.407Z
E

eventrebels.com

eventrebels.com

54
OtherN/asmallMEDIUM

The website eventrebels.com currently presents extremely minimal content, consisting solely of a simple 'Hello, world!' message with no additional metadata, structured data, or business information. The domain is well-established, registered since 2000 with a reputable registrar and Cloudflare DNS hosting, indicating a legitimate registration history. However, the lack of substantive website content, absence of privacy and cookie policies, and no visible contact or business information significantly limit the site's digital maturity and user trust. Technically, the site lacks modern SEO, accessibility, and security best practices. No security headers or DNSSEC are enabled, and no analytics or advertising technologies are detected. The site is accessible without WAF or security challenges, but the minimal content and lack of technical sophistication suggest a very basic or placeholder web presence. From a security perspective, the site uses HTTPS but does not implement additional security headers or privacy compliance mechanisms. No vulnerabilities or exposed sensitive data were detected, but the absence of privacy policies and contact information represents compliance gaps. The domain registration is consistent and trustworthy, but the website itself does not provide sufficient information to assess business credibility or security posture comprehensively. Overall, the website scores low on content quality, technical implementation, privacy compliance, and business credibility, resulting in an overall AI score of 38 out of 100. Strategic recommendations include enhancing website content and metadata, implementing privacy and cookie policies, enabling DNSSEC, adding security headers, and improving accessibility and mobile optimization to build trust and compliance.

45
40
17
70
75
45
100
2025-10-12T10:55:23.400Z
ipfs.io favicon

IPFS Foundation

ipfs.io

64
TechnologyN/amediumMEDIUM

The IPFS.io Public Gateway website serves as a critical public utility enabling users to access decentralized web content via the IPFS protocol without requiring specialized software. Maintained by Interplanetary Shipyard on behalf of the IPFS Foundation, it positions itself as a free, open, and reliable bridge between traditional HTTP and IPFS networks. The site provides comprehensive information about the gateway's purpose, acceptable use policies, abuse reporting mechanisms, and technical FAQs, targeting a broad audience interested in decentralized web technologies. Technically, the website is built using the Hugo static site generator and leverages modern web standards with good mobile optimization and SEO practices. The gateway itself uses the Rainbow implementation of the IPFS HTTP Gateway API, with implied Cloudflare CDN usage for content delivery. Security posture is strong with HTTPS enforced and content verification mechanisms in place, though explicit security headers and vulnerability disclosure mechanisms could be improved. From a security and compliance perspective, the site offers clear abuse reporting channels and takedown policies, but lacks explicit privacy and cookie policies, which impacts privacy compliance scoring. No adult or questionable content is present, and the site maintains a trustworthy and professional appearance aligned with the IPFS community ethos. WHOIS data is unavailable due to privacy protection, but the domain and website content align with legitimate public infrastructure projects. Overall, the IPFS.io Public Gateway website demonstrates a mature technical infrastructure, solid security practices, and a clear mission as a public good in the decentralized web ecosystem. Strategic improvements in privacy transparency and security header implementation would further enhance trust and compliance.

15
35
12
85
95
85
100
ipfsdecentralizedwebpublicgatewaycontentaddressingdweb
Hugo 0.124.1Rainbow (IPFS HTTP Gateway API implementation)JavaScriptCSS

Partner Domains:

ipshipyard.com
partner
ipfs.tech
partner
2025-10-12T10:55:08.376Z
resource.fyi favicon

Products, Tools and Resources for Developers & Designers | Resource.fyi

resource.fyi

53
TechnologyN/asmallMEDIUM

Resource.fyi is a curated online platform offering a wide range of free tools, products, and resources primarily targeted at developers, designers, marketers, and tech professionals. The website serves as a discovery and submission portal where users can explore, bookmark, upvote, and submit various tech-related resources. The platform positions itself as a niche aggregator in the technology sector, focusing on providing handpicked and categorized content to its audience. Technically, the site is built using modern web technologies including React, Next.js, and Tailwind CSS, hosted on Vercel, ensuring fast performance and mobile optimization. The presence of analytics tools like Google Tag Manager and Vercel Analytics indicates a moderate level of user tracking and data collection. Security-wise, the website enforces HTTPS and implements standard security headers, reflecting a good security posture. However, the absence of explicit privacy and cookie policies, as well as lack of clear contact information, suggests areas for improvement in privacy compliance and transparency. The WHOIS data is privacy protected or unavailable, which is common for small technology platforms, and does not raise immediate legitimacy concerns. Overall, Resource.fyi presents as a professional and useful resource platform with solid technical foundations but could enhance its privacy and compliance disclosures to strengthen trust.

15
65
17
70
62
75
40
developertoolsdesignresourcesaitoolsproductivitymarketing+2 more
ReactNext.jsTailwind CSSVercel Analytics+1
2025-10-12T10:54:43.231Z
saasbold.com favicon

SaaSBold

saasbold.com

56
TechnologyN/asmallMEDIUM

SaaSBold is a newly launched SaaS boilerplate and starter kit designed to accelerate the development and deployment of SaaS applications using Next.js and modern technologies. The company targets developers, founders, and makers seeking a comprehensive, production-ready solution with essential integrations such as payments, authentication, and newsletters. The website demonstrates a strong market position within the SaaS development niche, offering a polished product with live demos and transparent update logs. Technically, the site leverages a modern tech stack including Next.js, Tailwind CSS, Prisma, and PostgreSQL, hosted with Cloudflare DNS and registrar services. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. Analytics and marketing tools like Google Tag Manager and MailChimp are integrated with moderate user tracking. From a security perspective, the site enforces HTTPS, employs standard security headers, and uses clientTransferProhibited domain status to prevent unauthorized transfers. However, DNSSEC is not enabled, and no explicit security policy or incident response information is published, which could be improved. No vulnerabilities or exposed sensitive data were detected. Overall, SaaSBold presents a trustworthy and professional online presence with a solid technical foundation and good privacy compliance. The main risks relate to the newness of the domain and lack of published security policies. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and adding vulnerability disclosure mechanisms to enhance trust and compliance.

30
35
2
55
62
80
100
saasnextjsboilerplatestarterkitdevelopertools+5 more
Next.jsReactTailwind CSSPrisma+6

Partner Domains:

pimjo.com
partner
lemonsqueezy.com
partner
2025-10-12T10:54:28.205Z
uideck.com favicon

UIdeck

uideck.com

50
TechnologyN/asmallMEDIUM

UIdeck is a technology company specializing in providing free and premium handcrafted HTML landing page templates, Bootstrap themes, React templates, Tailwind CSS templates, and UI kits. Established in 2016, the company targets web developers, startups, and businesses seeking high-quality website templates to accelerate their web presence without coding from scratch. UIdeck positions itself as a reliable provider of modern, visually appealing, and functional web templates with a consistent brand identity and a moderate market presence. The website infrastructure is built on modern web technologies including React, Next.js, Tailwind CSS, and Bootstrap, hosted and registered through Cloudflare. The site demonstrates good performance, mobile optimization, and basic accessibility features. Integration with Google Tag Manager and Paddle indicates usage of analytics and payment processing tools, reflecting a mature digital infrastructure. From a security perspective, UIdeck employs HTTPS with a valid SSL configuration and domain transfer protection. However, DNSSEC is not enabled, and security headers are absent, indicating room for improvement. The absence of privacy and cookie policies, as well as lack of explicit contact information and incident response channels, suggests gaps in privacy compliance and security transparency. Overall, UIdeck presents a professional and trustworthy web presence with safe content suitable for general audiences. Strategic enhancements in privacy compliance, security headers, and contact transparency would strengthen its security posture and user trust.

15
53
2
70
-
80
100
htmltemplatesbootstrapthemesreacttemplatestailwindcssuikits+2 more
ReactNext.jsTailwind CSSBootstrap+3

Partner Domains:

graygrids.com
partner
ayroui.com
partner

+3 more partners

2025-10-12T10:54:23.197Z
nextjstemplates.com favicon

Next.js Templates

nextjstemplates.com

63
TechnologyN/asmallMEDIUM

Next.js Templates is a small technology-focused business specializing in providing free and premium Next.js boilerplates, templates, starter kits, and landing pages. Their market position is niche, targeting developers and businesses looking to accelerate Next.js project development with high-quality, SEO-friendly templates. The website demonstrates a modern technical infrastructure leveraging Next.js, React, Tailwind CSS, and Cloudflare DNS, with hosting components on DigitalOcean for chatbot services. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital presence for a small enterprise. Security posture is generally good with HTTPS enforced and domain registration protections in place; however, improvements can be made by enabling DNSSEC and adding additional security headers. Privacy compliance is basic, with a privacy policy and terms of service present but lacking a cookie consent mechanism and GDPR compliance indicators. Overall, the website is professional and trustworthy, though it would benefit from enhanced privacy and security practices. Strategic recommendations include implementing a cookie consent banner, improving security headers, and providing clearer contact and security policy information to enhance user trust and compliance.

15
53
17
80
75
85
100
nextjstemplatesboilerplatesreacttailwindcss+1 more
Next.jsReactTailwind CSSGoogle Fonts+1

Partner Domains:

pimjo.com
partner
2025-10-12T10:54:08.168Z
tailgrids.com favicon

TailGrids

tailgrids.com

60
TechnologyN/asmallMEDIUM

TailGrids is a specialized provider of Tailwind CSS UI components, blocks, and templates designed for web applications, marketing sites, e-commerce platforms, and dashboards. Founded in 2021, the company offers a comprehensive library of over 600 components available for HTML, React.js, Vue.js, and Figma, targeting developers and designers seeking to accelerate UI development without coding from scratch. The business maintains a strong market presence, evidenced by its Product Hunt recognition and active social media channels. Technically, the website leverages modern frameworks such as Next.js and Tailwind CSS, hosted on Vercel, ensuring fast performance and excellent mobile optimization. The integration of payment processing via Paddle and analytics tools like Vercel Analytics and Facebook Pixel reflects a mature digital infrastructure. Security-wise, the site uses HTTPS and domain protection mechanisms but lacks DNSSEC and explicit security headers, indicating room for improvement. Privacy compliance is minimal, with no visible privacy or cookie policies, which could pose regulatory risks. Overall, TailGrids presents a professional and trustworthy front with solid technical foundations but should enhance its privacy and security disclosures to align with best practices.

30
53
2
60
72
80
100
tailwindcssuicomponentstemplatesreactvue+4 more
Tailwind CSSReact.jsVue.jsFigma+6

Partner Domains:

paddle.com
partner
pimjo.com
partner

+1 more partners

2025-10-12T10:54:03.158Z
thewpminute.com favicon

The WP Minute

thewpminute.com

56
TechnologyN/asmallMEDIUM

The WP Minute is a specialized content platform serving WordPress professionals through a community news podcast and newsletter. Founded in 2021, it provides educational tutorials, industry news, and podcasts targeting freelancers, agencies, and developers within the WordPress ecosystem. The business operates a membership model offering subscriptions to its newsletter and podcast content, positioning itself as a niche authority in the WordPress community space. Technically, the website is built on WordPress 6.8.3 using the Kadence theme and several plugins including Kadence Blocks, LifterLMS, and Advanced Ads. Hosting appears to be on AWS infrastructure, with DNS managed via AWS Route 53. The site employs HTTPS with a valid SSL certificate and uses modern web technologies such as jQuery and MediaElement.js. Performance is moderate with good mobile optimization and basic accessibility features. SEO is supported by structured data and proper meta tags. From a security perspective, the site uses HTTPS and has domain transfer protections enabled. However, DNSSEC is not enabled and no security headers were detected in the provided data, which are areas for improvement. There is no visible privacy policy, cookie policy, or terms of service on the homepage content, which impacts privacy compliance. No incident response or security contact information is provided. Analytics are handled via Fathom Analytics, indicating minimal user tracking. Overall, the website presents a professional and trustworthy front for its niche audience but would benefit from enhanced privacy compliance, security headers, and explicit contact information to improve trust and security posture. Strategic recommendations include enabling DNSSEC, adding comprehensive privacy and cookie policies with consent mechanisms, implementing security headers, and publishing security and incident response policies.

35
35
2
75
52
75
100
wordpresspodcastnewslettertechnologycommunity+3 more
WordPress 6.8.3Kadence ThemeKadence BlocksLifterLMS+4
2025-10-12T10:53:53.136Z
texasattorneygeneral.gov favicon

Office of the Attorney General

texasattorneygeneral.gov

54
GovernmentUnited StateslargeMEDIUM

The Texas Office of the Attorney General operates as the primary legal and law enforcement authority for the state of Texas, led by Attorney General Ken Paxton. The website serves as a comprehensive portal offering services such as child support enforcement, crime victim assistance, consumer protection, and open government initiatives. It targets Texas residents, government entities, and legal professionals, positioning itself as a trusted government resource with a large organizational footprint and extensive public service offerings. Technically, the website is built on Drupal 10, leveraging modern web technologies including Google Analytics, Google Tag Manager, and Cludo search services. The site is mobile optimized, accessible, and demonstrates good SEO practices, although performance is moderate. Security posture is solid with HTTPS enforced and domain transfer protections in place, but could be improved by enabling DNSSEC and implementing explicit security headers. Privacy compliance is partial, with a clear privacy policy but lacking a cookie consent mechanism. Overall, the domain and website content align well, confirming legitimacy despite WHOIS privacy protection. The site is safe for general audiences and maintains a high level of professionalism and trustworthiness.

55
53
17
60
-
60
100
governmentlegaltexasattorneygeneralconsumerprotection+3 more
Google AnalyticsGoogle Tag ManagerCludo SearchDrupal 10+2
2025-10-12T10:53:08.047Z
irs.gov favicon

Internal Revenue Service

irs.gov

70
GovernmentUnited StatesenterpriseMEDIUM

The Internal Revenue Service (IRS) website serves as the official digital platform for the U.S. federal tax authority, providing comprehensive resources for tax filing, payment, refunds, and taxpayer assistance. It targets a broad audience including individuals, businesses, nonprofits, and tax professionals. The site is well-branded, consistent, and offers extensive content relevant to its mission. Technically, the site is built on Drupal 10, leveraging modern web technologies and standard analytics tools such as Google Analytics and Google Tag Manager. The website demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate likely due to the complexity and volume of content. From a security perspective, the site enforces HTTPS and employs secure form practices. However, explicit security headers are not evident in the HTML content, and no vulnerability disclosure or incident response contacts are published. The WHOIS data is minimal, typical for .gov domains, but this limits domain registration transparency. Overall, the IRS website is a high-quality, trustworthy government resource with strong business credibility and content quality. Strategic improvements include enhancing privacy compliance with cookie consent mechanisms, publishing security policies and incident response contacts, and implementing additional security headers to strengthen the security posture.

55
58
17
70
95
80
100
governmenttaxirsfederalforms+3 more
Drupal 10Google Tag ManagerGoogle AnalyticsAddToAny sharing+1

Partner Domains:

home.treasury.gov
partner
treasury.gov
partner

+3 more partners

2025-10-12T10:53:03.040Z
govmind.de favicon

GovMind GmbH

govmind.de

60
GovernmentGermanysmallMEDIUM

GovMind GmbH operates a specialized SaaS platform focused on digital and innovative procurement solutions for the public sector in Germany. Their platform supports public procurement offices and departments in preparing tenders and market research, offering modules such as a requirements assistant, a database of innovative products, and sustainability checks. The company targets public authorities, municipalities, and related organizations, providing cloud-based licenses with tiered pricing. The website is professionally designed, well-branded, and includes comprehensive legal and privacy information, reflecting a mature digital presence. Technically, the website is built on WordPress with modern plugins including Yoast SEO, Slider Revolution, and Contact Form 7 enhanced with drag-and-drop file upload and date-time pickers. It uses Google reCAPTCHA v3 for bot protection and cookie consent management via a third-party tool. Hosting is provided by rzone.de, a professional German hosting provider. The site is mobile-optimized and SEO-friendly, with structured data and Open Graph metadata implemented. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms. However, it lacks explicit security headers and a published security policy or incident response contact. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is strong, with clear cookie consent and privacy policies aligned with GDPR. The WHOIS data is minimal but consistent with the business claims, showing no suspicious patterns. Overall, GovMind GmbH presents a trustworthy, professional, and secure online presence suitable for its public sector clientele. Strategic improvements include enhancing HTTP security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and compliance.

15
80
17
45
67
70
100
governmentprocurementsaaspublicsectordigitalinnovation+3 more
WordPress 6.8.3PHP (implied by WordPress)jQuerySlider Revolution+5
2025-10-12T10:52:37.995Z
ebilanzonline.de favicon

eBilanz-Online

ebilanzonline.de

63
FinanceGermanymediumMEDIUM

eBilanz-Online is a specialized service provided by Bundesanzeiger Verlag GmbH, focused on enabling businesses and tax professionals in Germany to comply with current tax and commercial law requirements through electronic balance sheet submissions. The website presents a professional and consistent brand image aligned with its parent company, targeting medium-sized enterprises and professionals in the finance sector. The business model is primarily SaaS-based, offering compliance solutions under a trusted German publishing brand. Technically, the website is built on WordPress with a modern theme and uses a variety of analytics and marketing tools such as Matomo, Mouseflow, LinkedIn Insight, and Google Tag Manager, all integrated with GDPR-compliant cookie consent mechanisms. Hosting is provided by PlusServer, a reputable German hosting provider, ensuring reliable infrastructure. The site is mobile-optimized and SEO-friendly, though accessibility could be improved. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes standard security headers. However, it lacks a publicly available security policy or incident response information, which could enhance trust and preparedness. No vulnerabilities or exposed sensitive data were detected in the analysis. Privacy compliance is well addressed with comprehensive privacy and cookie policies and active consent management. Overall, eBilanz-Online demonstrates a solid digital presence with good security and privacy practices suitable for its business domain. Strategic improvements in security transparency and accessibility would further strengthen its posture and user trust.

30
83
2
60
80
70
100
financetaxcomplianceebilanzbundesanzeiger+2 more
WordPress 6.8.3PHPjQuery 3.5.1FontAwesome 6.4.2+4
2025-10-12T10:52:27.978Z
bgbl.de favicon

Bundesanzeiger Verlag GmbH

bgbl.de

50
GovernmentGermanymediumMEDIUM

The website www.bgbl.de serves as the official online archive for the Bundesgesetzblatt (Federal Law Gazette) of Germany, covering issues from 1949 to 2022. Operated by Bundesanzeiger Verlag GmbH, it provides authoritative access to legal documents, including laws, ordinances, and official announcements. The platform targets legal professionals, government officials, researchers, and the general public interested in German federal legislation. The business model is focused on public archival and dissemination of legal information, positioning itself as a trusted government resource. Technically, the website employs the Dojo Toolkit and a custom Xaver document management system to deliver a structured and searchable interface. Hosting is provided by plusserver.com, indicating a professional hosting environment. The site demonstrates moderate performance and basic mobile optimization, with a clear navigation structure and consistent branding. However, some modern security best practices such as security headers and cookie consent mechanisms are not evident. From a security perspective, the site uses HTTPS (implied by the URL) but lacks visible security headers and explicit security policies. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is partial, with a privacy policy page available but no cookie consent banner or detailed GDPR compliance indicators. Contact information and incident response details are not explicitly provided, which could be improved to enhance trust and compliance. Overall, the website is a reliable and professional government archival resource with good content quality and business credibility. Strategic improvements in security headers, privacy compliance, and contact transparency would further strengthen its security posture and user trust.

75
28
2
60
-
60
100
bundesgesetzblattbgblgesetzeverordnungenonline-archiv+4 more
Dojo ToolkitXaver Document ManagerJavaScriptCSS
2025-10-12T10:52:22.968Z
L

LSEG

lseg.com

60
FinanceN/aenterpriseMEDIUM

LSEG is a globally recognized financial markets infrastructure and data provider, offering a broad range of services including data analytics, indices via FTSE Russell, trading and listings through the London Stock Exchange, FX trading, post-trade services, and risk intelligence. The company targets financial institutions, asset managers, corporates, and investors, positioning itself as a leader in the financial services industry with a strong emphasis on sustainability and innovation. The website reflects a mature digital presence with professional design, clear navigation, and comprehensive content that supports its market position. Technically, the website leverages modern technologies such as Adobe Experience Manager CMS, Adobe DTM for tag management, and cloud-based hosting infrastructure, ensuring fast performance and mobile optimization. The presence of cookie consent mechanisms and privacy policies indicates attention to privacy compliance. However, explicit security policies and incident response information are not published, which could be improved. Security posture is strong with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data reduces transparency but does not detract significantly from the overall trustworthiness given the professional branding and content. The site integrates analytics and marketing tools responsibly, maintaining a balance between user tracking and privacy. Overall, LSEG's website demonstrates a high level of professionalism, technical maturity, and business credibility, suitable for its enterprise scale and industry. Strategic recommendations include enhancing transparency around security policies and incident response, and improving WHOIS data availability to bolster trust further.

70
68
17
80
-
65
100
financefinancialmarketsdataanalyticsstockexchangesustainability+4 more
Adobe DTMOneTrust Cookie ConsentReactElasticSearch+2

Partner Domains:

www.londonstockexchange.com
subsidiary
ftserussell.com
subsidiary

+2 more partners

2025-10-12T10:52:12.950Z
smartcountry.berlin favicon

Smart Country Convention - 13.10. – 15.10.2026

smartcountry.berlin

69
GovernmentGermanymediumMEDIUM

The website smartcountry.berlin serves as the official platform for the Smart Country Convention, a leading event in Germany focused on digital government and public services. It offers a comprehensive program including congresses, expos, workshops, and networking opportunities targeted at public sector professionals and technology providers. The platform is well-branded and professionally designed, reflecting its position as a key event in the digital transformation of public administration. Technically, the site is built using modern web technologies such as Next.js and React, with content managed via e-Spirit's CaaS API. It employs HTTPS and security headers to ensure secure communications and integrates Usercentrics for consent management, demonstrating a commitment to privacy compliance. Performance and mobile optimization are good, though accessibility could be improved. From a security perspective, the site shows strong fundamentals with no detected vulnerabilities or blocking mechanisms. However, it lacks explicit privacy policy and terms of service pages, and no direct contact emails or phone numbers are publicly available, which could impact user trust and compliance transparency. Overall, the site is legitimate and professionally maintained, but it would benefit from enhanced privacy disclosures and clearer contact information to improve compliance and user confidence. Strategic recommendations include publishing detailed privacy and terms documents, providing security incident contacts, and enhancing accessibility features.

15
73
17
80
100
85
100
digitalgovernmentpublicserviceseventexpoworkshops+4 more
ReactNext.jsUsercentrics (Consent Management)JavaScript+1
2025-10-12T10:51:52.914Z
validatis.de favicon

Validatis

validatis.de

73
FinanceGermanysmallMEDIUM

Validatis is a German-based company specializing in providing data-driven knowledge and compliance solutions primarily for financial institutions and related sectors such as auditing, real estate, legal, and tax consulting. Their services focus on KYC compliance, PEP and sanctions list checks, and industry-specific compliance tools, supported by educational content like whitepapers and webinars. The website positions Validatis as a niche player in the compliance and risk management market with a clear B2B focus. Technically, the website is built on TYPO3 CMS and integrates modern tools such as Cookiebot for cookie consent management, Google Tag Manager, and Google Optimize for analytics and optimization. The site demonstrates good digital maturity with responsive design and structured navigation, although some accessibility features could be improved. Performance is moderate, with a well-implemented cookie consent mechanism ensuring GDPR compliance. From a security perspective, the site uses HTTPS and cookie consent with blocking mode, but lacks visible security headers such as Content-Security-Policy or X-Frame-Options. No critical vulnerabilities or exposed sensitive data were detected. The absence of a published security policy or incident response contacts suggests room for improvement in transparency and readiness. The domain registration data aligns well with the website's business claims, indicating legitimacy. Overall, Validatis presents a professional and trustworthy online presence with good privacy compliance and business credibility. Strategic recommendations include enhancing security headers, publishing terms of service and security policies, and improving accessibility to further strengthen their security posture and user trust.

80
83
2
85
95
60
100
compliancekycdatafinancecookieconsent+2 more
TYPO3 CMSCookiebotGoogle Tag ManagerGoogle Optimize+1
2025-10-12T10:51:42.898Z
guidecom.de favicon

GuideCom AG

guidecom.de

52
TechnologyGermanymediumMEDIUM

GuideCom AG is a German-based technology company specializing in software solutions for banking, human resources, and organizational management. The company positions itself as a digital transformation partner for over 750 customers, ranging from medium-sized enterprises to large DAX-listed corporations. Their key offerings include the GuideCom HR Suite, Sales & Service Cloud tailored for banking, and digital meeting management software. The website reflects a professional and modern digital presence, leveraging TYPO3 CMS and integrating advanced marketing and analytics tools such as Google Tag Manager, Marketo, and Usercentrics for GDPR-compliant consent management. Technically, the website is well-structured with good mobile optimization, accessibility, and SEO practices. Security measures include HTTPS enforcement, appropriate security headers, and consent-based tracking scripts, indicating a mature security posture. No critical vulnerabilities or exposed sensitive data were detected. However, the site could improve by publishing explicit incident response contacts and a vulnerability disclosure policy. Overall, GuideCom AG demonstrates a strong business credibility and digital maturity, with a secure and compliant online presence. The domain registration data aligns with the business claims, reinforcing trustworthiness. The site is safe for general audiences and does not contain any adult or questionable content.

25
95
2
60
65
65
20
hrsuitesalesserviceclouddigitalizationbankingsoftwaremeetingmanagement+4 more
TYPO3 CMSGoogle Tag ManagerUsercentrics CMPMarketo+4
2025-10-12T10:51:37.891Z
lexview.de favicon

LexView

lexview.de

55
GovernmentGermanysmallMEDIUM

LexView is a German legal database platform targeting legal professionals, notaries, companies, authors, associations, and public administrations. Founded in 2022, it offers a subscription or access-based service providing comprehensive legal information and research tools. The website is professionally designed using WordPress with the Divi theme and integrates modern cookie consent mechanisms to comply with GDPR. The platform positions itself as a niche provider in the German legal information market, focusing on clarity and usability for its target audience. Technically, the website is built on a mature CMS platform (WordPress) with a well-known theme and uses several third-party analytics and marketing tools such as Google Analytics, Matomo, Mouseflow, HubSpot, and LinkedIn tracking pixels. Hosting is provided by OVH, a reputable provider. The site shows good mobile optimization and SEO practices, although accessibility features are basic. From a security perspective, the site enforces HTTPS with good SSL configuration and employs cookie consent with granular user controls. However, it lacks explicit security headers like Content-Security-Policy and does not publish a dedicated security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data is consistent with the website's business claims, indicating legitimacy. Overall, LexView presents a secure, compliant, and professional online presence suitable for its legal services market. Strategic improvements include enhancing security headers, publishing security policies, and adding clearer contact information to strengthen trust and compliance further.

15
83
17
70
72
60
40
legallawdatabasegdprcookieconsent+3 more
WordPress 6.8.3Divi ThemejQueryCookiebot+2
2025-10-12T10:51:32.882Z