Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156665
Websites
130
Industries
113
Countries
52
Avg Score
Page 1169 of 3134|Showing 58401-58450 of 156665
skoda-auto.de favicon

Škoda Auto Deutschland GmbH

skoda-auto.de

69
TransportationGermanylargeMEDIUM

Škoda Auto Deutschland GmbH operates the official German website for the Škoda automotive brand, providing comprehensive information about their vehicle models, financing options, after-sales services, and electric mobility solutions. The company is a large, well-established player in the transportation sector in Germany, with a strong market presence and a broad portfolio including electric vehicles. The website targets both individual consumers and business customers, offering tools such as vehicle configurators, dealer locators, and financing calculators. Technically, the website employs a modern technology stack including React, Bootstrap, and jQuery, hosted on a reliable infrastructure likely powered by Microsoft Azure. The site is well-optimized for mobile devices, accessible, and SEO-friendly, with extensive use of structured data and meta tags. Performance is moderate, with good loading times and responsive design. From a security perspective, the site enforces HTTPS, implements key security headers, and avoids exposing sensitive data. However, it lacks a public vulnerability disclosure policy and explicit incident response contact details. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. Contact information is transparent and professional, enhancing business credibility. Overall, the website presents a low-risk profile with strong trust indicators and professional digital maturity. Strategic improvements could focus on enhancing security transparency and incident response readiness to further strengthen the security posture.

60
73
17
60
90
65
100
automotivecarsaleselectricvehicleskodagermany+5 more
jQueryBootstrapReactPopper.js+2
2025-10-10T06:29:22.607Z
nutzfahrzeuge-autohaus-ostmann.de favicon

Autohaus Ostmann GmbH & Co. KG

nutzfahrzeuge-autohaus-ostmann.de

70
TransportationGermanymediumMEDIUM

Autohaus Ostmann GmbH & Co. KG is a well-established automotive dealership group operating in the Nordhessen region of Germany, with over 60 years of experience. The company offers a broad portfolio of vehicles from Volkswagen, Volkswagen Nutzfahrzeuge, Audi, SEAT, CUPRA, ŠKODA, and MAXUS, serving both retail and commercial customers. Their services include new and used vehicle sales, servicing, repairs, parts, and fleet management, positioning them as a comprehensive automotive service provider in their regional market. The website reflects a professional and consistent brand presence aligned with Volkswagen's corporate identity. Technically, the website is built on a modern React framework integrated with Volkswagen's proprietary CMS platform, leveraging Adobe Helix RUM for performance monitoring. The site is mobile-optimized and SEO-friendly, with structured data enhancing search engine visibility. Hosting and asset delivery are managed within Volkswagen's corporate infrastructure, ensuring reliability and security. From a security perspective, the site enforces HTTPS with strong SSL configurations and implements key security headers. No critical vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are comprehensive and GDPR compliant, though explicit security policy and incident response information are not publicly detailed. The absence of a vulnerability disclosure policy suggests an area for improvement. Overall, the website demonstrates a strong digital maturity and security posture appropriate for a medium-sized automotive dealership. Strategic recommendations include publishing a dedicated security policy, enhancing incident response transparency, and adopting a vulnerability disclosure framework to further strengthen trust and compliance.

80
73
22
70
70
60
100
automotivevolkswagendealershipservicegermany+1 more
ReactAdobe Helix RUMJavaScriptCSS+1
2025-10-10T06:29:07.567Z
ostmann-wolfhagen.audi favicon

Autohaus Ostmann GmbH & Co. KG Wolfhagen

ostmann-wolfhagen.audi

69
TransportationGermanymediumMEDIUM

Autohaus Ostmann GmbH & Co. KG Wolfhagen is an authorized Audi dealership located in Germany, specializing in new and used car sales, customer service, and related automotive offerings. The website serves as a digital portal for customers to explore Audi models, configure vehicles, and access dealership services. The company operates under the umbrella of AUDI AG, leveraging strong brand recognition and a comprehensive service portfolio to maintain a competitive position in the local automotive market. Technically, the website is built on a modern infrastructure utilizing Adobe Experience Manager in a headless CMS configuration, integrated with Audi's Falcon platform and feature apps. The site employs JavaScript frameworks and includes third-party services such as Acquire live chat for customer engagement. Performance and mobile optimization are good, with a clear navigation structure and SEO best practices implemented. From a security perspective, the site enforces HTTPS and includes a robust cookie consent mechanism compliant with GDPR. No critical vulnerabilities or exposed sensitive data were detected. However, security headers could be enhanced, and incident response contact information is not explicitly provided. The WHOIS data is unavailable due to privacy protection or query failure, but the website's professional presentation and consistent contact details support its legitimacy. Overall, the website demonstrates a strong digital presence with good privacy compliance and security posture. Strategic recommendations include improving security headers, publishing a security.txt file, and enhancing accessibility features to further strengthen trust and compliance.

70
73
17
40
95
75
100
automotivedealershipaudicarsalescustomerservice+4 more
JavaScriptAdobe Headless CMSAudi Falcon platformAcquire live chat widget
2025-10-10T06:29:02.012Z
uditis.ch favicon

UDITIS SA

uditis.ch

57
TechnologySwitzerlandmediumMEDIUM

UDITIS SA is a Swiss IT company established in 2000, specializing in cloud and infrastructure services, IT service management, and online solutions. It serves a diverse clientele including SMEs and multinational corporations across sectors such as healthcare, finance, and industry. Since 2022, UDITIS has been part of the Sequotech group, enhancing its technological expertise and market reach. The company offers a broad portfolio of IT services and solutions, positioning itself as a trusted technology partner in Switzerland. The website demonstrates a solid technical infrastructure with modern web technologies including jQuery and a proprietary CMS (WebMaker). It features responsive design and good SEO practices, with integrated cookie consent management and Google Analytics for traffic analysis. The site is well-structured, professionally designed, and provides clear navigation and contact information, reflecting a mature digital presence. From a security perspective, the site enforces HTTPS and implements secure forms with anti-CSRF tokens. Cookie consent mechanisms are in place, supporting GDPR compliance. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. No critical vulnerabilities or suspicious content were detected. Overall, UDITIS presents a trustworthy and professional online presence with a strong business foundation. Strategic enhancements in security transparency and incident readiness would further strengthen its security posture and client trust.

80
35
2
70
-
85
100
cloudinfrastructureitservicemanagementonlinesolutionsswissit+1 more
jQueryGoogle Analytics (GA4)Tarteaucitron cookie consentWebMaker CMS

Partner Domains:

sequotech.ch
parent
2025-10-10T06:28:41.400Z
veysonnaz.ch favicon

Veysonnaz Tourisme

veysonnaz.ch

75
HospitalitySwitzerlandsmallMEDIUM

Veysonnaz.ch is the official tourism website for the Veysonnaz region in Switzerland, providing comprehensive information about accommodation, activities, events, and local services to visitors and tourists. The site targets holidaymakers interested in outdoor and family-friendly experiences in the Alpine region. It operates primarily as a regional tourism promotion platform with a focus on enhancing visitor engagement and facilitating holiday planning. Technically, the website employs a modern tech stack including JavaScript, jQuery, Google Analytics, Google Tag Manager, and Mapbox for mapping services, hosted on a CDN infrastructure. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. Security-wise, the website enforces HTTPS, uses Google reCAPTCHA for form protection, and includes GDPR-compliant cookie consent mechanisms. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure information, which could be improved to enhance trust and compliance. Overall, the site is legitimate, professionally maintained, and aligns well with its business purpose, with a strong presence on social media and partner integrations.

80
95
2
70
87
80
100
tourismtravelholidayswitzerlandveysonnaz+5 more
JavaScriptjQuery 2.1.3Google AnalyticsGoogle Tag Manager+3

Partner Domains:

shop.nendazveysonnaz.ch
partner
www.20min.ch
partner

+2 more partners

2025-10-10T06:27:56.023Z
j3l.ch favicon

Jura & Three-Lakes Tourism

j3l.ch

69
HospitalitySwitzerlandmediumMEDIUM

Jura & Three-Lakes Tourism operates a comprehensive regional tourism website promoting outdoor activities, cultural experiences, and accommodations in the Jura & Three-Lakes region of Switzerland. The site serves as both an information portal and an online booking platform, integrating third-party services for marketing automation, analytics, and user engagement. The business targets tourists, families, and outdoor enthusiasts, positioning itself as a key regional destination marketing organization. Technically, the website employs modern JavaScript libraries, Google Tag Manager, Mapbox for geolocation, and Cookiebot for GDPR-compliant cookie management, hosted on a CMS specialized for tourism information. Security posture is strong with HTTPS enforced, standard security headers present, and no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. However, the site lacks explicit security policies and incident response contacts, which could be improved. Overall, the website is professional, trustworthy, and well-optimized for user experience and SEO, making it a reliable resource for visitors planning trips to the region.

55
83
17
70
65
80
100
tourismtravelbookingswitzerlandoutdooractivities+4 more
JavaScriptjQueryGoogle Tag ManagerMapbox+3

Partner Domains:

booking.juratroislacs.ch
partner
mycity.travel
partner
2025-10-10T06:27:51.012Z
maskrosbarn.org favicon

Maskrosbarn

maskrosbarn.org

46
Non-profitSwedenmediumHIGH

Maskrosbarn is a Swedish non-profit organization dedicated to supporting children and youth aged 13-19 who have parents suffering from mental illness, addiction, or who expose them to violence. The organization offers a range of services including chat support, educational materials, activities, and advocacy efforts. It operates regionally in Stockholm, Göteborg, Malmö, and provides nationwide support. The website is well-structured, professionally designed, and targets both youth and adults interested in supporting them. The organization holds recognized certifications such as 90-konto and Tryggt Givande, enhancing its trustworthiness. Technically, the website is built on WordPress with modern technologies including React and jQuery. It uses Yoast SEO for optimization and Cookiebot for cookie consent management. Hosting is provided via Loopiagroup nameservers. The site is mobile-optimized and performs moderately well. Analytics and marketing tools include Google Tag Manager, Snapchat Pixel, and LinkedIn Insight Tag, with moderate user tracking and good privacy compliance. From a security perspective, the site enforces HTTPS with an excellent SSL configuration but lacks DNSSEC and security headers such as Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with a clear privacy policy and cookie consent mechanism. However, there is no visible incident response or vulnerability disclosure information. Overall, the website presents a low-risk profile with a strong business credibility and good technical implementation. Recommendations include enabling DNSSEC, adding security headers, publishing incident response contacts, and providing a terms of service page to further enhance trust and security posture.

15
50
2
55
-
65
100
non-profityouthsupportmentalhealthchildwelfaresweden+3 more
WordPress 6.8.2Yoast SEO pluginjQuery 3.7.1React 18.3.1.1+4

Partner Domains:

press.maskrosbarn.org
partner
2025-10-10T06:27:00.753Z
D

Dynapps

dynapps.eu

73
TechnologyBelgiummediumMEDIUM

Dynapps is a professional and leading Odoo implementation partner specializing in digitalizing business processes through tailored Odoo ERP solutions. The company holds a strong market position as the largest Odoo implementer in Europe and has been recognized as the Best Odoo Partner in Europe 2024. Their services cover a broad range of industries including technology, energy, manufacturing, retail, and healthcare, targeting innovative companies seeking efficient ERP solutions. The website is well-designed, mobile-optimized, and provides comprehensive information about their offerings and certifications. Technically, the website is built on the Odoo CMS platform, leveraging modern web technologies such as Bootstrap, FontAwesome, and integrates analytics and marketing tools like Google Tag Manager, Cookiebot, and Leadinfo. The site demonstrates good performance, accessibility, and SEO practices. Security-wise, Dynapps has achieved ISO 27001 certification, enforces HTTPS, and implements cookie consent mechanisms, reflecting a mature security posture. However, some security headers are not explicitly detected, and incident response contacts are not publicly listed. Overall, the website and business present a trustworthy and professional image with strong compliance and security practices. The domain WHOIS data is privacy protected, which is common and justified for this business type. No critical vulnerabilities or suspicious patterns were found. Strategic recommendations include enhancing security headers, publishing incident response information, and continuous monitoring of third-party scripts to maintain security integrity.

40
68
47
88
72
85
100
odooerpbusinessautomationiso27001odoogoldpartner+1 more
OdooBootstrapFontAwesomeGoogle Tag Manager+3
2025-10-10T06:26:44.490Z
gastrosuisse.ch favicon

GastroSuisse

gastrosuisse.ch

62
HospitalitySwitzerlandlargeMEDIUM

GastroSuisse is the largest hospitality employer association in Switzerland, representing approximately 20,000 members. The organization provides a broad range of services including membership benefits, education and training programs, legal advice, and industry representation. Their website is professionally designed and targets hospitality professionals and businesses within Switzerland. The business model centers on membership and service provision to the hospitality sector, positioning GastroSuisse as a key industry player in the Swiss market. Technically, the website is built on Silverstripe CMS 5.3 and integrates modern tools such as Google Tag Manager and CookieYes for consent management. The site demonstrates good mobile optimization and SEO practices, with a moderate performance profile. Accessibility is basic but functional. The use of reCAPTCHA and cookie consent mechanisms indicates a mature approach to user privacy and security. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes important security headers. There is no evidence of exposed sensitive data or vulnerable libraries. However, the absence of a dedicated security policy or incident response contact information suggests room for improvement in transparency and preparedness. GDPR compliance is well addressed through comprehensive privacy and cookie policies. Overall, GastroSuisse presents a trustworthy and professional online presence with a solid security posture and good privacy compliance. Strategic enhancements in security policy publication and incident response readiness would further strengthen their position.

70
83
17
65
85
90
-
hospitalityassociationeducationlegaltraining+1 more
Silverstripe CMS 5.3Google Tag ManagerCookieYes consent managementFontAwesome 6 Pro+2

Partner Domains:

member.gastrosuisse.ch
service
www.hfz.swiss
partner

+1 more partners

2025-10-10T06:26:39.428Z
lakridsbybulow.us favicon

Lakrids by Johan Buelow A/S

lakridsbybulow.us

69
E-commerceDenmarkmediumMEDIUM

Lakrids by Bülow is a premium confectionery company specializing in luxury licorice and chocolate products. Established in 2007, the company has positioned itself as a niche leader in the gourmet confectionery market with a strong emphasis on quality, craftsmanship, and sustainability, as evidenced by its B Corp certification. The US-specific domain lakridsbybulow.us supports their international e-commerce presence, targeting consumers seeking high-end confectionery gifts and indulgences. Technically, the website is built on the BigCommerce platform using the Stencil framework, integrating modern marketing and analytics tools such as Google Tag Manager, Facebook Pixel, TikTok Pixel, and Microsoft Clarity. Cookie consent is managed via Cookiebot, ensuring GDPR compliance and user privacy controls. The site demonstrates good mobile optimization, SEO practices, and a professional design, although some accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and employs domain transfer protection. However, DNSSEC is not enabled, and some recommended security headers are not explicitly detected. No security policy or incident response contacts are published, which could be improved to enhance trust and readiness. No vulnerabilities or exposed sensitive data were found in the analysis. Overall, the website presents a trustworthy and professional e-commerce presence with moderate to good security and privacy compliance. Strategic improvements in security headers, explicit privacy policies, and incident response disclosures would further strengthen their posture and customer confidence.

55
100
2
55
75
80
100
licoricechocolategourmetluxurye-commerce+2 more
BigCommerce StencilCloudflare DNSGoogle Tag ManagerCookiebot+5

Partner Domains:

lakridsbybulow.com
partner
lakridsbybulow.dk
partner

+3 more partners

2025-10-10T06:26:19.242Z
lakridsbybulow.co.uk favicon

Lakrids by Bülow Ltd.

lakridsbybulow.co.uk

71
E-commerceUnited KingdommediumMEDIUM

Lakrids by Bülow Ltd. is a premium luxury confectionery brand specializing in high-quality liquorice and chocolate products. The company operates an e-commerce platform targeting general consumers seeking gourmet confectionery, with a strong international presence indicated by multiple country-specific domains. Their website is professionally designed, consistent in branding, and offers a seamless shopping experience with fast and secure transactions. The business is medium-sized, founded in 2007, and maintains active social media engagement to support brand awareness and customer interaction. Technically, the website is built on the BigCommerce platform using the Stencil framework, integrating modern technologies such as Google Tag Manager, Cookiebot for consent management, Microsoft Clarity for analytics, and Wistia for video content. The site demonstrates good mobile optimization and SEO practices, although there is room for improvement in accessibility and explicit security header implementation. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms aligned with GDPR requirements. However, it lacks a publicly accessible privacy policy, terms of service, security policy, and incident response contacts, which are critical for compliance and trust. No vulnerabilities or suspicious patterns were detected, and the domain registration is consistent with the business profile, enhancing legitimacy. Overall, the website presents a low-risk profile with a solid business foundation and technical infrastructure. Strategic improvements in privacy documentation, security headers, and accessibility would further enhance compliance and user trust.

55
100
17
70
75
65
100
liquoricechocolateluxurye-commercebigcommerce+3 more
BigCommerceGoogle Tag ManagerCookiebotMicrosoft Clarity+1

Partner Domains:

lakridsbybulow.com
related
lakridsbybulow.dk
related

+3 more partners

2025-10-10T06:26:14.223Z
lakridsbybulow.com favicon

Lakrids by Johan Bülow A/S

lakridsbybulow.com

70
E-commerceDenmarkmediumMEDIUM

Lakrids by Johan Bülow A/S operates a premium e-commerce platform specializing in luxury liquorice and chocolate products. The company has established a strong market position with a focus on quality and gifting, targeting a general audience interested in gourmet confectionery. Their website leverages the BigCommerce platform, integrating modern marketing and analytics tools such as Google Tag Manager, Cookiebot for consent management, and Microsoft Clarity for user behavior insights. The technical infrastructure is robust, hosted behind Cloudflare with secure HTTPS enforcement and a responsive design optimized for mobile users. Security posture is solid with standard best practices observed, though there is room for improvement in DNSSEC adoption and explicit security headers. Privacy compliance is addressed through a cookie consent mechanism, but the absence of a visible privacy policy and terms of service on the homepage suggests an area for enhancement. Overall, the domain registration data aligns well with the business claims, indicating legitimacy and consistency. Strategic recommendations include enhancing transparency with published security policies, improving DNS security, and expanding privacy documentation to strengthen trust and compliance.

55
85
2
80
75
80
100
liquoricechocolatee-commerceluxurybigcommerce+2 more
BigCommerceGoogle Tag ManagerCookiebotMicrosoft Clarity+1

Partner Domains:

lakridsbybulow.co.uk
subsidiary
lakridsbybulow.dk
subsidiary

+3 more partners

2025-10-10T06:25:49.070Z
orange-one.de favicon

Top Light GmbH & Co.KG

orange-one.de

41
EnergyGermanymediumHIGH

Orange One is a German-based lighting brand operating under the parent company Top Light GmbH & Co.KG. The company specializes in high-quality, innovative lighting solutions primarily targeting B2B customers such as architects, light planners, and retailers. Their product portfolio includes architectural and indoor lighting designed for both private and commercial applications. The website reflects a professional and consistent brand image with clear business contact information and a partner program to support business customers. Technically, the website uses a modern frontend stack including Bootstrap, jQuery, and slick slider for UI elements. It is mobile responsive and provides a good user experience with clear navigation and relevant content. However, no CMS or hosting provider details are explicitly detected. Performance is moderate with room for optimization. From a security perspective, the site uses HTTPS (implied by domain and external links), but no explicit security headers were detected in the provided HTML content. Cookie consent is implemented, supporting GDPR compliance. No incident response or security policy pages were found. The WHOIS data is consistent and supports the legitimacy of the domain and business. Overall, the website presents a trustworthy and professional business presence with moderate technical maturity and basic privacy compliance. Security posture can be improved by implementing recommended HTTP headers and formalizing security policies.

15
43
2
70
62
60
-
lightingb2benergygermanypartnerprogram+2 more
jQueryBootstrapFont AwesomeSlick Slider+1

Partner Domains:

top-light.de
parent
top-light.shop
partner
2025-10-10T06:25:34.040Z
A

Algarve 2020

algarve2020.eu

53
OtherN/asmallMEDIUM

Algarve 2020 is a travel-focused website providing content about the Algarve region in Portugal and other travel destinations. The site offers travel articles, guides, and tourism information targeting travel enthusiasts and tourists interested in this region. The business model is content publishing through a WordPress platform, with a niche focus on travel and tourism. The website demonstrates good content quality and consistent branding but lacks formal business contact information and privacy-related policies. Technically, the site is built on WordPress using the Blocksy theme and Yoast SEO plugin, with lazy loading for images to improve performance. The site is mobile optimized and uses HTTPS with good SSL configuration. However, it lacks advanced security headers and formal privacy and cookie policies, which are important for compliance and trust. From a security perspective, the site has a solid foundation with HTTPS and no visible vulnerabilities or exposed sensitive data. The absence of security policies, incident response contacts, and vulnerability disclosure mechanisms indicates room for improvement in security maturity. No WAF or blocking mechanisms were detected, and the site is fully accessible. Overall, the website is a legitimate travel content platform with moderate technical and security posture. Strategic improvements in privacy compliance, security headers, and contact transparency would enhance trust and compliance.

15
25
2
60
75
75
100
travelalgarvetourismblogwordpress
WordPressYoast SEO pluginBlocksy themeLazy loading script
2025-10-10T06:25:23.992Z
F

Facebook

fb.com

77
TechnologyN/aenterpriseLOW

Facebook, operated by Meta Platforms, Inc., is a leading global social networking platform that enables users to connect, share content, and engage with communities worldwide. The platform offers a variety of services including messaging, video content, business pages, and advertising solutions, positioning itself as a dominant player in the technology and social media industry. The website's design and content reflect a mature, enterprise-level digital presence with a focus on user engagement and monetization through advertising. Technically, Facebook employs a modern and robust infrastructure leveraging advanced JavaScript frameworks, asynchronous loading techniques, and secure HTTPS protocols to ensure fast, reliable, and secure user experiences across devices. The platform demonstrates strong security practices including HSTS, secure cookies, and CSRF protections on login forms, although explicit incident response and vulnerability disclosure information is not publicly detailed on the main site. Privacy compliance is well addressed with comprehensive policies and cookie consent mechanisms, reflecting adherence to GDPR and other regulations. Overall, Facebook's website exhibits high professionalism, security, and compliance, supporting its reputation as a trusted and influential technology enterprise.

85
88
2
98
65
90
100
socialnetworkingtechnologyprivacysecurityadvertising+2 more
JavaScriptReact (implied by Facebook's known stack)BigPipeHasteSupportData+4

Partner Domains:

instagram.com
subsidiary
threads.com
subsidiary

+2 more partners

2025-10-10T06:25:08.958Z
shoplazzastatus.com favicon

Shoplazza

shoplazzastatus.com

61
E-commerceN/amediumMEDIUM

Shoplazza Status is a dedicated status page for the Shoplazza e-commerce platform, providing real-time and historical system performance data. The website is professionally designed, mobile-optimized, and leverages Atlassian Statuspage technology to deliver transparent operational status updates. The platform targets e-commerce merchants and users who rely on Shoplazza's services for storefront, checkout, API, reporting, and third-party integrations. The business model is SaaS-based, focusing on providing reliable e-commerce infrastructure and transparency to its customers. Technically, the site uses modern web technologies including jQuery, Google reCAPTCHA Enterprise for form security, and is hosted on Amazon Cloudfront CDN ensuring fast performance and global availability. The site is well-structured with good SEO and accessibility features, though it lacks some advanced security headers. The forms for subscription to incident updates are secured with reCAPTCHA, indicating a focus on preventing abuse. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms, but lacks visible security headers such as CSP or HSTS. No exposed sensitive data or vulnerabilities were detected in the HTML content. However, the absence of WHOIS registration data for the domain raises concerns about domain legitimacy and trustworthiness. The privacy policy is present and indicates GDPR compliance, but cookie policy and terms of service are missing. Contact information and incident response details are not provided, limiting transparency in security and compliance. Overall, the website presents a professional and secure front for status reporting but would benefit from enhanced transparency in domain registration, security policies, and contact information. Strategic improvements in security headers, cookie consent, and incident response contact details would strengthen trust and compliance posture.

50
58
2
60
72
70
100
statuse-commerceshoplazzasystemperformanceoperationaltransparency
jQuery 3.5.1Atlassian StatuspageGoogle reCAPTCHA EnterprisePolyfill.io
2025-10-10T06:25:03.933Z
T

Tribunal Constitucional

tribunalconstitucional.es

40
GovernmentSpainlargeHIGH

The website for www.tribunalconstitucional.es represents the Spanish Constitutional Court, a key government judicial institution. However, the current accessible content is minimal and appears to be a security or anti-bot challenge page, preventing access to substantive information. The domain WHOIS data is not accessible due to Red.es restrictions, which is typical for official Spanish government domains. The site lacks visible privacy, cookie, or terms of service policies, and no contact information or social media links are present. This limits the ability to fully assess the website's digital maturity and user engagement capabilities. From a technical perspective, the site uses basic JavaScript and minimal HTML content, likely as part of a security verification process. There is no evidence of modern CMS, analytics, or advertising technologies. The security posture is difficult to evaluate fully due to the blocking mechanism, but the presence of a WAF or similar protection is indicated. No security headers or SSL details were available for review. Overall, the website's security posture appears cautious with protective measures in place, but the lack of accessible content and policies reduces transparency and user trust. The domain is likely legitimate and government-owned, but the inability to access full content or WHOIS data limits comprehensive analysis. Strategic recommendations include improving transparency by providing accessible privacy and cookie policies, contact information, and ensuring security headers and HTTPS are properly configured once the security challenge is passed. Given the current blocking, the risk assessment is moderate with no indications of malicious activity but with significant limitations on content and compliance visibility.

-
25
17
75
100
80
-
governmentconstitutionalcourtsecuritychallengewafspain
JavaScript
2025-10-10T06:24:48.584Z
heg-fr.ch favicon

Haute école de gestion Fribourg

heg-fr.ch

63
EducationSwitzerlandmediumMEDIUM

Haute école de gestion Fribourg (HEG-FR) is a reputable Swiss higher education institution specializing in business and management education. The website clearly presents its offerings including Bachelor and Master degree programs, executive education such as the Executive MBA, continuing education certificates, and applied research services. The institution targets students, working professionals, and the business community, positioning itself as a regional leader in management education. The site is well-branded, professionally designed, and provides comprehensive information about its academic and research activities. Technically, the website uses modern technologies including Umbraco CMS, Google Tag Manager, Microsoft Clarity, and Axeptio for cookie consent management. It is mobile-optimized, accessible, and SEO-friendly. Security posture is strong with HTTPS enforced and no visible vulnerabilities, although security headers could be improved. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR indicators. Contact information is complete and trustworthy, including official emails, phone numbers, and physical address. Overall, the website reflects a mature digital presence consistent with a credible educational institution.

75
35
17
60
62
70
100
educationhighereducationbusinessschoolcontinuingeducationexecutivemba+3 more
Google Tag ManagerMicrosoft ClarityAxeptio cookie consentUmbraco Forms+2
2025-10-10T06:24:33.537Z