Skip to main content

Low-risk security reports

Browse 2,880 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 13 of 58|Showing 601-650 of 2880
lidl.de favicon

Lidl

lidl.de

77
RetailGermanyenterpriseLOW

Lidl operates as a major retail supermarket chain in Germany with both physical stores and an online shopping platform. The website reflects a professional retail business model targeting general consumers with a focus on local and online shopping convenience. The company maintains consistent branding and provides comprehensive privacy and cookie policies compliant with GDPR, including consent mechanisms for tracking and personalization. Technically, the website uses modern JavaScript libraries and tracking tools such as Kameleoon and OneTrust, along with YouTube integration for video content. The site is mobile-optimized and accessible, with good SEO practices and structured data for organization information. Performance is moderate, with room for optimization. Security posture is solid with HTTPS enforced and no exposed sensitive data, though the absence of explicit security headers and a public security policy or incident response contact suggests areas for improvement. Privacy compliance is strong, with clear policies and consent management. Overall, the website is trustworthy and professional, suitable for a large enterprise retail business. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and security posture.

85
100
10
75
100
65
100
retaile-commercesupermarketgrocerycookie-consent+2 more
JavaScriptYouTube iframe APIOneTrust cookie consentKameleoon (A/B testing and personalization)+1
2025-10-11T18:53:07.743Z
tryg.no favicon

Tryg Forsikring

tryg.no

76
FinanceNorwaylargeLOW

Tryg Forsikring is a major Norwegian insurance company providing a range of insurance products for individuals and families, including property and personal insurance. The website is professionally designed, with consistent branding and clear content targeting Norwegian customers. It offers online insurance services with benefits such as a 10% online discount. The company maintains a strong market position in the Norwegian finance sector. Technically, the website uses modern web technologies including Drupal CMS, Bootstrap for responsive design, and integrates advanced tag management and analytics tools such as Tealium and Adobe Experience Cloud. The site is hosted on Amazon Web Services, ensuring scalability and reliability. Mobile optimization and accessibility features are well implemented, contributing to a good user experience. From a security perspective, the site enforces HTTPS and implements a comprehensive cookie consent mechanism compliant with GDPR. However, security headers are not explicitly detected, and no public security policy or incident response contact is found. The absence of WHOIS data suggests privacy protection for domain registration, which is justified for a large financial institution. Overall, the security posture is strong but could be enhanced by publishing additional security policies and headers. The overall risk assessment is low, with no critical vulnerabilities or suspicious indicators detected. Strategic recommendations include improving security header implementation, publishing a vulnerability disclosure policy, and enhancing contact information transparency to further build trust and compliance.

65
88
43
70
77
80
100
insurancefinancenorwaycookieconsentprivacy+1 more
JavaScriptBootstrap CSSTealium Tag ManagementCookie Information Consent Management+1
2025-10-11T18:51:47.494Z
tealium.com favicon

Tealium Inc.

tealium.com

81
TechnologyUnited StatesenterpriseLOW

Tealium Inc. is a well-established enterprise founded in 2007, specializing in real-time customer data integration and management through its Customer Data Platform (CDP) and tag management solutions. Positioned as a leader in the market, recognized by Gartner's Magic Quadrant, Tealium serves a global enterprise audience with a comprehensive suite of products designed to unify, activate, and leverage customer data across multiple touchpoints in real-time. Their offerings include advanced AI data streaming, cloud data activation, and privacy-first healthcare solutions, targeting marketing, IT, and data analytics teams. Technically, the website is built on WordPress with a modern tech stack including Google Analytics, Marketo forms, and Tealium's own tag management scripts. The site demonstrates good SEO, accessibility, and mobile optimization, with a moderate performance profile. Hosting and domain registration are consistent with enterprise standards, leveraging Amazon Registrar and AWS DNS infrastructure. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, but lacks explicit security headers and a published security.txt file. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear policies and GDPR adherence. Contact information is transparent, including phone and physical address, enhancing business credibility. Overall, Tealium's website reflects a mature, professional, and trustworthy enterprise with a strong market position in customer data platforms. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure policies, and enabling DNSSEC to further strengthen security posture.

85
83
47
75
82
85
100
customerdataplatformreal-timedataaimarketingtechnologydataprivacy+3 more
Google AnalyticsMarketo FormsCookieConsent v3.1.0jQuery 3.7.1+3

Partner Domains:

aws.amazon.com
partner
2025-10-11T18:51:37.471Z
adb.org favicon

Asian Development Bank

adb.org

78
GovernmentN/aenterpriseLOW

The Asian Development Bank (ADB) is a leading multilateral development bank focused on fostering sustainable, inclusive, and resilient growth across Asia and the Pacific. Founded in 1966, it serves 69 members and provides loans, grants, technical assistance, and equity investments to promote social and economic development. The website reflects a mature, enterprise-level organization with a clear mission and extensive service offerings targeting governments, investors, and development partners. Technically, the website is built on Drupal 10 with modern frameworks like Bootstrap and integrates advanced analytics and tracking tools such as Google Tag Manager, Facebook Pixel, and Microsoft Clarity. The site is mobile-optimized, accessible, and SEO-friendly, demonstrating a high level of digital maturity. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, though explicit security headers could be more visible. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable, likely due to privacy protection, which is justified for an international organization of this nature. Overall, the website is professional, trustworthy, and compliant with privacy regulations, making it a reliable source of information and services related to development banking in the Asia-Pacific region.

65
50
55
85
100
80
100
developmentbankasiapacificloansgrantstechnicalassistance+5 more
Drupal 10jQueryBootstrapGoogle Tag Manager+2
2025-10-11T18:48:47.097Z
diehl.com favicon

Diehl Group

diehl.com

76
TechnologyGermanyenterpriseLOW

Diehl Group is a globally active German technology enterprise headquartered in Nürnberg, Germany, with a diversified product range across multiple industrial sectors including metal processing, electronic systems, defence, aviation, and metering technologies. The company employs approximately 18,700 people worldwide and generates annual sales of 4.7 billion euros, positioning it as a significant player in the technology and manufacturing industry. The website reflects a professional corporate presence with clear branding and structured content aimed at industrial customers, partners, suppliers, and job seekers. Technically, the website employs modern web technologies such as HTMX, lazy loading for images, and Matomo analytics for user tracking, combined with a cookie consent mechanism to ensure privacy compliance. The site is mobile optimized, accessible, and SEO-friendly, indicating a mature digital infrastructure. The CMS appears to be Ibexa (formerly eZ Platform), a robust enterprise content management system. From a security perspective, the site enforces HTTPS and implements cookie consent, with no visible security vulnerabilities or exposed sensitive data. However, explicit security headers like X-Frame-Options and X-Content-Type-Options are not clearly detected and could be improved. The absence of a dedicated security policy or incident response information is noted, as is the lack of a security.txt file for vulnerability disclosure. Overall, the website and business appear legitimate and professionally managed, with a strong security posture and good privacy compliance. The missing WHOIS data for the subdomain is typical and does not detract from the trustworthiness of the site. Strategic recommendations include enhancing security header implementation, publishing security policies, and improving contact information visibility for security and compliance inquiries.

80
88
2
98
72
85
100
technologymanufacturingcorporatecomplianceprivacy+2 more
JavaScriptHTMXMatomo AnalyticsLazySizes (lazy loading images)+1

Partner Domains:

www.diehl.com
parent
2025-10-11T17:42:39.487Z
O

Ovarro

ovarro.com

77
TechnologyUnited KingdommediumLOW

Ovarro is a UK-based technology company specializing in monitoring, control, analytics, and SCADA solutions for critical infrastructure sectors including water, oil & gas, broadcast, transportation, energy, and process industries. The company positions itself as a trusted partner with over 25 years of experience and a global network of certified channel partners. Their business model focuses on providing B2B technology solutions that enhance operational efficiency, safety, and security through data-driven insights. The website reflects a mature digital presence with professional design, clear navigation, and multilingual support, targeting industrial clients worldwide. Technically, the website is built on a custom ASP.NET WebForms platform, leveraging Microsoft Ajax and Bootstrap 4.3.1 for responsive design. Hosting and DNS services are supported by Cloudflare, ensuring reliable performance and security. The site implements GDPR-compliant cookie consent mechanisms and maintains good SEO and accessibility standards, although some accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and uses domain locking statuses to prevent unauthorized changes. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response information. No vulnerabilities or exposed sensitive data were detected in the analysis. Privacy compliance is strong with clear privacy and cookie policies. The absence of a vulnerability disclosure program or security.txt file is noted as an area for improvement. Overall, Ovarro's website demonstrates a high level of professionalism, security awareness, and compliance suitable for its industry and clientele. The risk profile is low, with recommendations to enhance DNS security and publish explicit security policies to further strengthen trust and transparency.

85
95
17
80
72
85
100
rtusdataloggersleakdetectionscadamonitoring+10 more
ASP.NETMicrosoft AjaxBootstrap 4.3.1Cloudflare DNS

Partner Domains:

citplatform.com
partner
atriumiot.com
partner
2025-10-11T17:38:23.831Z
heycar.com favicon

Mobility Trader UK Limited

heycar.com

78
TransportationUnited KingdommediumLOW

heycar UK, operated by Mobility Trader UK Limited, is a well-established online marketplace specializing in quality checked used cars from trusted dealers across the United Kingdom. Founded in 2019, the company leverages a modern digital platform to provide car buyers with extensive listings, dealer access, car valuation tools, finance information, and expert reviews. The website demonstrates a strong market position within the UK automotive sector, targeting consumers seeking reliable used vehicles with transparent dealer relationships. The technical infrastructure is robust, utilizing Next.js and React frameworks hosted on AWS, integrating multiple third-party services such as Stripe for payments, Google Maps for location services, and advanced analytics platforms including Snowplow and Quantcast. The site is optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital presence. From a security perspective, heycar enforces HTTPS with a solid SSL configuration and employs a comprehensive cookie consent mechanism compliant with GDPR. While explicit security policies and incident response contacts are not publicly found, the domain registration is consistent and trustworthy, with no suspicious indicators. The absence of DNSSEC is a minor security gap. Overall, the security posture is strong but could be enhanced by publishing formal security and vulnerability disclosure policies. The overall risk assessment is low, with the website presenting a professional, secure, and user-friendly experience. Strategic recommendations include enabling DNSSEC, publishing privacy and security policies, and enhancing transparency around incident response to further strengthen trust and compliance.

90
85
17
80
82
85
100
usedcarscarsalesukautomotiveonlinemarketplace+3 more
ReactNext.jsStripeGoogle Maps API+4

Partner Domains:

app.carsale24.com
partner
cmp.inmobi.com
partner

+1 more partners

2025-10-11T15:19:52.631Z
freshservice.com favicon

Freshworks Inc.

freshservice.com

80
TechnologyUnited StatesenterpriseLOW

Freshworks Inc. operates the Freshservice platform, an AI-powered IT service management solution designed for enterprises seeking scalable and efficient ITSM capabilities. Positioned as a leader in the ITSM market, Freshservice emphasizes ease of deployment, AI assistance, and integration with existing technology stacks to improve IT team productivity and employee satisfaction. The company targets IT departments across various industries, offering a SaaS subscription model with enterprise-grade features and certifications such as ISO 27001 and SOC 2. Technically, the website leverages modern frameworks like React and Next.js, integrates multimedia content via Wistia, and employs robust analytics and consent management tools including Google Tag Manager and OneTrust. The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, Freshservice enforces HTTPS, implements comprehensive security headers, and maintains privacy and cookie policies aligned with GDPR requirements. While WHOIS data is unavailable, possibly due to privacy protection, the overall security posture is strong with no evident vulnerabilities or exposed sensitive data. The company also maintains a vulnerability disclosure policy and provides contact for its Data Protection Officer. Overall, Freshservice presents a trustworthy, professional, and secure online presence suitable for enterprise customers. The main risk lies in the lack of publicly available WHOIS data, which should be monitored for legitimacy confirmation. Strategic recommendations include publishing a dedicated security policy page and enhancing incident response contact visibility.

65
100
27
95
77
85
100
itsmaienterprisesoftwareitservicemanagementfreshservice+1 more
ReactNext.jsGoogle Tag ManagerWistia video embed+2
2025-10-11T14:17:44.851Z
gleif.org favicon

Global Legal Entity Identifier Foundation

gleif.org

76
GovernmentSwitzerlandmediumLOW

The Global Legal Entity Identifier Foundation (GLEIF) is a reputable non-profit organization responsible for managing the Global LEI System, which provides unique legal entity identifiers worldwide. The organization operates globally with offices in Switzerland and Germany, targeting financial institutions, regulators, and businesses requiring standardized entity identification. Their website reflects a professional and consistent brand presence, offering clear information about their mission and services. Technically, the website employs a modern technology stack including jQuery, Lodash, MathJax, Cookiebot for consent management, and Piwik Analytics for visitor tracking. The site is well-optimized for mobile devices and includes essential privacy and cookie policies, demonstrating digital maturity and compliance with GDPR requirements. The use of HTTPS and reCAPTCHA enhances security, though some security headers could be improved. From a security perspective, the site shows good practices such as encrypted connections, consent mechanisms, and bot protection. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a published security policy or incident response contact is a minor gap. The WHOIS data is privacy protected or unavailable, which is typical for organizations handling sensitive data, and does not detract from the site's legitimacy. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. Strategic recommendations include enhancing security headers, publishing a security policy, and improving accessibility features to further strengthen the site's security posture and user trust.

80
83
17
70
85
85
100
legalentityidentifierfinancialcompliancenon-profitglobalregistrydataprivacy+2 more
jQueryLodashMathJaxCookiebot+3
2025-10-11T11:57:40.563Z
moodle.com favicon

Moodle Pty Ltd

moodle.com

77
EducationN/alargeLOW

Moodle Pty Ltd operates the website moodle.com, providing the world's most popular Learning Management System (LMS) and related educational technology solutions. The company targets educators, trainers, and institutions across K-12, higher education, and workplace learning sectors. Moodle offers a range of products including Moodle LMS, Moodle Workplace, MoodleCloud, and the Moodle App, supported by a global network of certified partners and integrations. The website reflects a mature, well-established business with a strong market position and a commitment to open source principles and educational equity. Technically, the website is built on WordPress with modern web technologies such as jQuery, Google Tag Manager, and Intercom for customer engagement and analytics. Hosting and DNS services leverage Cloudflare, ensuring reliable performance and security. The site is mobile-optimized, accessible, and SEO-friendly, with comprehensive metadata and structured data enhancing search visibility. From a security perspective, the site enforces HTTPS, employs domain transfer and update protections, and integrates cookie consent mechanisms compliant with GDPR. However, DNSSEC is not enabled, and explicit security policies or incident response contacts are not published, representing areas for improvement. No vulnerabilities or exposed sensitive data were detected. Overall, moodle.com demonstrates a high level of professionalism, trustworthiness, and compliance, making it a reliable platform for educational technology services. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and providing clearer security policy disclosures to further enhance trust and security posture.

50
88
47
82
75
85
100
lmseducationopensourcee-learningtraining+3 more
jQueryGoogle Tag ManagerIntercomCloudflare DNS+1
2025-10-11T09:38:02.261Z
axelspringer.de favicon

Axel Springer SE

axelspringer.de

76
MediaGermanyenterpriseLOW

Axel Springer SE is a leading German media and technology company with a strong focus on AI-driven journalism and digital innovation. The company aims to shape the future of journalism in the free world, continuing its legacy since its founding approximately 80 years ago. The website reflects a professional corporate presence with comprehensive content, including corporate blogs, press releases, and stories highlighting company initiatives and values. The target audience is broad, encompassing general users interested in media and technology news. Technically, the website is built on WordPress with modern JavaScript and CSS, integrating a consent management platform (Sourcepoint) and Tealium tag management for analytics and marketing. The site is mobile-optimized and performs moderately well, with good SEO and accessibility features. However, some security headers are not explicitly detected, and no dedicated security or incident response policies are published. Security posture is strong with HTTPS enforced and GDPR compliance evident through consent mechanisms. No critical vulnerabilities or exposed sensitive data were found. The absence of WHOIS data for the domain suggests privacy protection or alternative registration, but the website's branding and social media presence strongly support its legitimacy. Overall, the website is trustworthy, professional, and compliant with privacy regulations, though improvements in security header implementation and transparency around security policies could enhance its posture.

85
70
2
85
100
85
100
mediatechnologyjournalismaicorporate+2 more
JavaScriptHTML5CSS3Sourcepoint CMP+1

Partner Domains:

queer.axelspringer.com
subsidiary
career.axelspringer.com
subsidiary
2025-10-11T09:37:06.576Z
J

Jscrambler

jscrambler.com

84
TechnologyN/amediumLOW

Jscrambler is a technology company specializing in client-side protection platforms, offering advanced JavaScript obfuscation and third-party tag protection solutions. Established in 2010, it serves enterprises and businesses seeking to secure their web applications and comply with regulations such as PCI DSS. The company positions itself as a leader in client-side security with a comprehensive suite of services tailored to various industries including finance, e-commerce, and healthcare. The website reflects a professional and consistent brand image with detailed product information and resources to support customer engagement. Technically, the website leverages modern web technologies including JavaScript frameworks, HubSpot for marketing and analytics, and Cloudflare for DNS and security. The site is mobile-optimized and demonstrates good SEO practices, although accessibility features are basic. Performance is moderate, with multiple third-party scripts for analytics and marketing, indicating a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses Cloudflare DNS, but lacks visible advanced security headers and explicit security policies on the site. No vulnerability disclosure or incident response information is provided, which could be improved to enhance trust. The domain WHOIS data is consistent and transparent, supporting the legitimacy of the business. Overall, Jscrambler presents a secure and professional online presence with room for improvement in privacy compliance transparency and security policy disclosures. The risk profile is low, with no critical vulnerabilities detected in the analysis.

50
95
65
98
100
85
100
javascriptobfuscationpcidsscompliancesecuritycompliancetechnology
JavaScriptHubSpot analyticsGoogle Tag ManagerHotjar+1
2025-10-11T09:36:27.609Z
bosch-home.com favicon

BSH Hausgeräte GmbH

bosch-home.com

77
ManufacturingN/aenterpriseLOW

Bosch Home Appliances International operates as a global leader in manufacturing and retailing high-quality home appliances. The website serves as a global portal directing users to localized country-specific sites, targeting both consumers and builders. The company offers a comprehensive range of services including product sales, customer support, and builder business solutions. The brand is well-established with a consistent and professional online presence, reflecting its enterprise scale and global market position. Technically, the website employs a modern infrastructure leveraging Adobe Experience Platform Launch for tag management, consent management solutions for GDPR compliance, and optimized media formats such as WebP and SVG for performance and visual quality. The site is mobile-optimized, accessible, and SEO-friendly, indicating a mature digital strategy. From a security perspective, the site enforces HTTPS and integrates consent management for cookies and tracking, demonstrating compliance with privacy regulations. While explicit security headers are not clearly visible in the HTML, the presence of a vulnerability reporting mechanism and privacy policies indicates a proactive security posture. No vulnerabilities or suspicious activities were detected in the content or scripts. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. The main concern is the absence of publicly available WHOIS data, which is unusual for a major brand but likely due to privacy policies. Strategic recommendations include enhancing transparency with explicit security headers, publishing a dedicated security policy, and providing clear contact information for data protection officers.

75
85
17
90
80
85
100
homeappliancesboschglobalconsumerelectronicsmanufacturing+5 more
Adobe DTM/LaunchConsent Manager (consentmanager.net)ModernizrjQuery (implied by vendor scripts)+2
2025-10-11T09:36:12.540Z
youtube.de favicon

Google LLC

youtube.de

79
TechnologyUnited StatesenterpriseLOW

YouTube, owned by Google LLC, is the world's leading online video sharing and streaming platform, offering a vast array of user-generated and professional content. It serves a global audience with a business model primarily based on advertising revenue complemented by premium subscription services. The platform is highly recognized for its extensive content library and user engagement features. Technically, YouTube employs a modern web technology stack including Polymer framework, web components, and extensive use of Google APIs. The site is optimized for performance, accessibility, and mobile responsiveness, hosted on Google Cloud infrastructure ensuring scalability and reliability. From a security perspective, YouTube enforces HTTPS, employs strong security headers, and integrates advanced bot protection mechanisms. Privacy policies and cookie consent mechanisms are comprehensive and GDPR compliant, reflecting a mature approach to data protection and user privacy. Overall, YouTube demonstrates a high level of digital maturity, security posture, and business credibility. The domain is well-established and consistent with the company's history. No critical vulnerabilities or compliance gaps were detected in the accessible content. Strategic recommendations include maintaining continuous security audits and enhancing incident response transparency.

90
73
25
85
75
90
100
videostreamingmediasocialentertainment+1 more
JavaScriptPolymerWeb ComponentsHTML5+3

Partner Domains:

google.com
parent
2025-10-11T07:56:37.471Z
monotype.com favicon

Monotype

monotype.com

77
TechnologyUnited StatesenterpriseLOW

Monotype is a leading enterprise technology company specializing in global font licensing and scalable typography solutions. The company serves global brands and designers by providing trusted font licensing services and brand consistency tools. Their market position is strong, supported by a professional and content-rich website that highlights their key services and iconic typefaces. The technical infrastructure includes modern web technologies such as Adobe DTM and Visual Website Optimizer, indicating a mature digital marketing and analytics capability. The website is built on Drupal CMS and optimized for mobile devices, providing a good user experience. Security posture is robust with HTTPS enforcement and security headers, though explicit security policies and incident response information are not publicly detailed. Privacy and cookie policies are comprehensive and GDPR compliant, with consent mechanisms in place. Overall, the website reflects a high level of professionalism and trustworthiness, though the absence of WHOIS data limits domain registration transparency. Strategic recommendations include publishing detailed security policies, vulnerability disclosure information, and enhancing accessibility compliance to further strengthen trust and compliance.

85
70
17
80
95
85
100
fontlicensingtypographybrandingdigitalfontsenterprise+1 more
Adobe DTM (Dynamic Tag Manager)Visual Website Optimizer (VWO)Google Fonts CDNCustom CSS and JavaScript+2
2025-10-11T07:53:13.997Z
T

Thuisbezorgd

thuisbezorgd.nl

76
E-commerceNetherlandslargeLOW

Thuisbezorgd.nl is a leading Dutch online food and grocery delivery platform, founded in 2000 and operating under the parent company Just Eat Takeaway.com. The website offers a comprehensive range of services including takeaway food ordering, grocery deliveries, corporate ordering, and courier recruitment. It targets consumers in the Netherlands seeking convenient delivery options from over 15,000 restaurants and stores. The platform is well-positioned in the market with a strong brand presence and extensive service offerings. Technically, the website employs modern web technologies such as React and Next.js, supported by robust infrastructure likely hosted on cloud platforms. It integrates advanced analytics and marketing tools including Google Tag Manager, Snowplow, and Braze, reflecting a mature digital ecosystem. The site is optimized for performance, mobile responsiveness, accessibility, and SEO, providing an excellent user experience. From a security perspective, the site enforces HTTPS, implements key security headers, and follows best practices in form security and data protection. While no critical vulnerabilities were detected, the absence of a dedicated security policy page and security.txt file suggests room for improvement in transparency and incident response readiness. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. Overall, Thuisbezorgd.nl demonstrates a high level of professionalism, security, and compliance, making it a trustworthy platform for users. Strategic recommendations include enhancing security transparency, publishing a security.txt file, and maintaining vigilant third-party script management to sustain its strong security posture.

70
88
35
72
82
70
100
fooddeliverygrocerydeliverye-commercenetherlandsthuisbezorgd+1 more
ReactNext.jsJavaScriptCloudinary+5

Partner Domains:

justeattakeaway.com
parent
convercent.com
partner

+2 more partners

2025-10-11T04:25:42.097Z
B

Boston Consulting Group

bcg.com

77
OtherN/aenterpriseLOW

Boston Consulting Group (BCG) is a globally recognized management consulting firm specializing in strategic management consulting and business transformation services. The website reflects BCG's market position as a leader in consulting, targeting business leaders and organizations seeking to address complex challenges. The site content is professionally crafted, emphasizing BCG's expertise and global reach. Technically, the website employs modern web technologies including Adobe Analytics, TrustArc for consent management, and SVG-based iconography. The site is well-optimized for mobile devices and accessibility, with good SEO practices and performance. The use of advanced analytics and consent frameworks indicates a mature digital infrastructure. From a security perspective, the site enforces HTTPS and integrates consent management for privacy compliance. However, explicit security headers are not evident in the provided data, and no public security policy or incident response information is available. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, the website presents a low risk profile with strong business credibility and privacy compliance. The absence of WHOIS data limits domain trust assessment but does not detract from the site's professional presentation and operational maturity. Strategic recommendations include enhancing security headers, publishing security policies, and establishing a vulnerability disclosure program to further strengthen trust and security posture.

30
83
73
85
79
85
100
consultingmanagementbusinessstrategyprivacy+2 more
Adobe AnalyticsTrustArc Consent ManagementModernizrWeb Components+3
2025-10-11T04:21:35.834Z
dematic.com favicon

Dematic

dematic.com

77
ManufacturingUnited StatesenterpriseLOW

Dematic is a global leader in supply chain automation, providing advanced intralogistics systems, software, and consulting services to manufacturing, warehousing, and distribution sectors. The company operates as a B2B solutions provider with a strong market position supported by extensive experience and a comprehensive portfolio of services including lifecycle support, technical assistance, and modernizations. The website reflects a mature enterprise with consistent branding and professional content tailored to supply chain professionals and businesses. Technically, the website is built on Adobe Experience Manager with React and integrates modern marketing and analytics tools such as Adobe Helix RUM, Marketo, and Google Tag Manager. The site is mobile-optimized, accessible, and SEO-friendly, demonstrating a high level of digital maturity. Performance is moderate with good technical implementation. Security posture is solid with HTTPS enforced, consent management for cookies, and secure form handling. However, explicit security headers are not clearly visible in the HTML, and no vulnerability disclosure or incident response contacts are published, indicating areas for improvement. No vulnerabilities or exposed sensitive data were detected. Overall, the website is trustworthy and professional, with strong privacy compliance and clear contact mechanisms. The lack of WHOIS data limits domain registration insights but does not detract from the site's legitimacy. Strategic recommendations include enhancing security header implementation, publishing vulnerability disclosure policies, and improving transparency on data retention.

65
80
17
85
95
85
100
supplychainautomationwarehousemanagementlogisticsintralogistics+3 more
Adobe Helix RUMAdobe DTM (Dynamic Tag Manager)Marketo FormsjQuery+5
2025-10-11T03:15:38.713Z
raygun.io favicon

Raygun

raygun.io

77
TechnologyN/amediumLOW

Raygun is a well-established technology company specializing in application monitoring solutions for web and mobile applications. Their platform offers comprehensive services including crash reporting, real user monitoring, application performance monitoring, and AI-driven error resolution. The company targets developers, CTOs, product managers, and performance engineers, positioning itself as a trusted partner for businesses ranging from startups to Fortune 500 companies. The website reflects a mature SaaS business model with a strong focus on customer experience and technical excellence. Technically, the website is built on modern frameworks and technologies including Webflow CMS, JavaScript libraries, and integrates with multiple analytics and marketing platforms such as Google Tag Manager, HubSpot, and Snowplow. Hosting is provided via Amazon AWS, ensuring scalability and performance. The site is well-optimized for mobile devices and accessibility, with fast loading times and clear navigation. From a security perspective, the site enforces HTTPS, employs clientTransferProhibited domain status, and claims compliance with major regulations such as HIPAA, GDPR, CCPA, and PCI. However, DNSSEC is not enabled, and no explicit security.txt or incident response contacts were found. The privacy and cookie policies are comprehensive and include consent mechanisms, supporting GDPR compliance. Overall, Raygun's website demonstrates a high level of professionalism, technical maturity, and security awareness. The domain's long registration history and consistent WHOIS data further reinforce the company's legitimacy. Minor improvements could be made in DNS security and incident response transparency to enhance trust and security posture.

60
80
47
75
82
80
100
applicationmonitoringcrashreportingrealusermonitoringaierrorresolutionsaas+3 more
JavaScriptjQueryGoogle Tag ManagerSnowplow Analytics+2
2025-10-11T03:14:08.571Z
D

Diligent Corporation

diligent.com

77
TechnologyN/aenterpriseLOW

Diligent Corporation is a leading enterprise software provider specializing in governance, risk management, and compliance (GRC) solutions. Positioned as a leader in the 2025 GRC MarketScape by IDC, Diligent offers a comprehensive AI-powered platform that centralizes board management, risk, audit, and compliance reporting. Their target audience includes corporate boards, governance professionals, and enterprise leaders seeking to elevate governance and clarify risk through modern technology. The company operates a sophisticated SaaS business model with a strong emphasis on security, privacy, and customer trust. Technically, the website is built on a modern stack including React, Next.js, and Material UI, hosted on Netlify. It integrates multiple analytics and marketing tools such as Google Tag Manager, Facebook Pixel, RudderStack, and Marketo, reflecting a mature digital marketing and data collection strategy. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO, providing an excellent user experience. From a security perspective, the site enforces HTTPS and maintains dedicated trust and security pages, including a vulnerability disclosure program. However, explicit security headers and a security.txt file are not detected, representing areas for improvement. The absence of WHOIS data is unusual but does not detract from the overall legitimacy given the professional presentation and trust signals. Overall, Diligent demonstrates a strong security posture and business credibility with comprehensive privacy compliance. The risk assessment indicates a low risk profile with recommendations to enhance transparency and security best practices further.

70
68
43
85
75
90
100
governanceriskmanagementcompliancegrcai+4 more
ReactNext.jsMaterial UIGoogle Tag Manager+6
2025-10-11T03:13:58.537Z