Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 14 of 17|Showing 651-700 of 802
showclix.com favicon

ShowClix

showclix.com

54
TechnologyUnited StatesmediumMEDIUM

ShowClix is a full-service event ticketing platform offering online ticket sales, box office solutions, and on-site event operations. It targets event organizers and ticket buyers, providing a comprehensive suite of services including marketing and analytics tools. The company is a subsidiary of Leap Event Technology, indicating a strong market position in the event technology sector. The website is professionally designed with consistent branding and clear navigation, supporting a positive user experience. Technically, the website employs a modern technology stack including Google Tag Manager, Google Analytics, Facebook Pixel, Twitter tracking, and Google Maps API for enhanced user interaction and marketing capabilities. The use of Bootstrap and jQuery indicates a standard responsive design approach, with good mobile optimization and SEO practices. Performance is moderate, with room for improvement in accessibility features. From a security perspective, the site enforces HTTPS and uses secure form inputs, but lacks visible security headers and explicit incident response contacts. The absence of a cookie consent banner despite extensive tracking scripts suggests a gap in privacy compliance. No vulnerabilities or exposed sensitive data were detected, and the site maintains a good security posture overall. Overall, ShowClix presents a trustworthy and professional online presence with minor areas for improvement in privacy compliance and security transparency. The lack of WHOIS data is a concern but is mitigated by the strong business indicators and parent company association.

45
53
2
72
-
80
100
eventticketingonlineticketingboxofficeeventoperationsmarketing+2 more
Google Tag ManagerGoogle AnalyticsFacebook PixelTwitter Universal Website Tag+5

Partner Domains:

leapevent.tech
parent
2025-07-27T00:58:23.075Z
farmfoodcare.org favicon

Farm & Food Care

farmfoodcare.org

55
Non-profitCanadamediumMEDIUM

Farm & Food Care is a Canadian non-profit coalition focused on providing credible information about food and farming to the public. The organization collaborates with farmers, agricultural professionals, government bodies, and related businesses to educate consumers about Canadian agriculture. Their website serves as a hub linking to provincial partner sites and various educational resources such as virtual farm tours, Q&A about farming, recipes, and photo libraries. The site targets Canadian consumers interested in understanding food origins and farming practices. Technically, the website employs a modest but effective technology stack including jQuery, Google Fonts, and Google Analytics, with performance and mobile optimization rated as moderate to good. The site uses HTTPS and modern web standards but lacks some advanced security headers and explicit privacy or cookie policies, which are areas for improvement. The WHOIS data is unavailable due to privacy protection, but the website's content and partner links strongly indicate legitimacy. From a security perspective, the site shows a basic but acceptable posture with no visible vulnerabilities or exposed sensitive data. However, the absence of security headers and privacy compliance mechanisms such as cookie consent banners reduces the overall security and privacy score. No incident response or vulnerability disclosure information is provided, which could be enhanced to improve trust and readiness. Overall, Farm & Food Care presents a professional, trustworthy, and content-rich platform for agricultural education in Canada. Strategic recommendations include implementing comprehensive privacy and cookie policies, enhancing security headers, and publishing incident response and vulnerability disclosure information to strengthen security posture and compliance.

25
35
2
60
62
75
100
agriculturefoodeducationcanadanon-profit+2 more
jQuery 2.2.4Google Fonts (Open Sans)Google Analytics (gtag.js)mod_pagespeed

Partner Domains:

farmfoodcaresk.org
partner
farmfoodcareon.org
partner

+1 more partners

2025-07-26T17:57:12.520Z
R

Realmac Software

realmacsoftware.com

56
TechnologyN/asmallMEDIUM

Realmac Software is a small technology company specializing in Mac software products, primarily known for RapidWeaver, a Mac website builder. Their product portfolio includes RapidWeaver Classic, RapidWeaver Elements, Squash (a batch photo editor), and DevAnt (a licensing and distribution platform for Mac developers). The company has been operating since 2002 and targets Mac users and developers seeking easy-to-use web design tools. The website is professionally designed with consistent branding and clear product focus, supporting a business model based on software sales and developer tools. Technically, the site uses a modern stack including jQuery, Bootstrap, and integrates third-party services like FastSpring for e-commerce and Plausible for analytics. Hosting appears to be via Cloudflare, ensuring good performance and security. Security posture is strong with HTTPS and no visible vulnerabilities, though explicit security headers and policies are missing. Privacy and cookie policies are not found, indicating room for compliance improvement. WHOIS data is unavailable, which is unusual and slightly reduces trustworthiness. Overall, the site is safe, professional, and well-structured, but would benefit from enhanced transparency and security documentation.

15
35
2
70
75
75
100
macsoftwarewebsitebuilderrapidweaverphotoeditordevelopertools
jQuery 2.2.4BootstrapTether.jsFastSpring (e-commerce popup)+5

Partner Domains:

realmac.onfastspring.com
partner
elementsapp.io
partner
2025-07-26T14:39:10.560Z
karriereportal-hanau.de favicon

Stadt Hanau

karriereportal-hanau.de

59
GovernmentGermanylargeMEDIUM

Stadt Hanau operates a comprehensive municipal career portal showcasing a wide range of employment opportunities across various city-owned enterprises and public services. The website serves as a central hub for job seekers interested in public sector roles in Hanau, Germany, highlighting subsidiaries in infrastructure, childcare, energy, transportation, healthcare, and more. The portal emphasizes community engagement and career development within the municipal framework. Technically, the website is built on the Imperia CMS platform, leveraging Bootstrap for responsive design and incorporating modern UI components like Swiper and Owl Carousel. The site uses Matomo analytics with a GDPR-compliant cookie consent mechanism, reflecting a mature approach to privacy. However, some outdated libraries (notably jQuery 2.2.4) and minor HTML markup issues suggest areas for technical improvement. From a security perspective, the site enforces HTTPS and employs privacy-respecting analytics but lacks visible security headers and uses an outdated JavaScript library version, which could expose it to known vulnerabilities. No explicit security or incident response policies are published, indicating room for enhanced transparency and preparedness. Overall, the website is professional, trustworthy, and well-aligned with its public sector mission. Strategic improvements in technical modernization and security hardening would further strengthen its posture and user trust.

65
40
2
60
62
60
100
governmentcareermunicipaljobshanau+4 more
Bootstrap 5jQuery 2.2.4Font Awesome 6.6.0Swiper.js+3

Partner Domains:

kita-hanau.de
partner
klinikum-hanau.de
partner

+3 more partners

2025-07-25T04:59:08.132Z
mint-in-hessen.de favicon

HA Hessen Agentur GmbH

mint-in-hessen.de

62
GovernmentGermanymediumMEDIUM

The website www.mint-in-hessen.de is an official platform managed by HA Hessen Agentur GmbH, affiliated with the Hessian Ministry for Economy, Energy, Transport, Housing and Rural Development. It serves as a comprehensive informational hub for MINT (Mathematics, Informatics, Natural Sciences, Technology) educational and orientation activities in the Hessen region of Germany. The platform targets children, youth, educators, and MINT enthusiasts by providing regional and nationwide offers, event listings, and network information. It also allows providers to register and manage their MINT-related offers and events. Technically, the website employs a moderate technology stack including jQuery, Slick Carousel, FontAwesome, and Shoelace CSS, hosted on netcup servers. The site is mobile-optimized, accessible, and uses HTTPS, but lacks some advanced security headers and cookie consent mechanisms. No analytics or tracking scripts were detected, indicating a privacy-conscious approach. From a security perspective, the site shows good baseline practices such as HTTPS and no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy compliance is partially met with a privacy policy page but no visible cookie consent banner. Overall, the website is trustworthy, professionally maintained, and serves a clear public educational purpose. It scores well on business credibility and content quality but could improve in security posture and privacy compliance to enhance user trust and regulatory adherence.

75
28
17
60
72
60
100
minteducationhessengovernmentstem+4 more
jQuery 2.2.4Slick CarouselFontAwesomeShoelace CSS+1
2025-07-24T19:38:45.622Z
dhvseminare.de favicon

Deutscher Hochschulverband

dhvseminare.de

63
EducationGermanymediumMEDIUM

The Deutscher Hochschulverband (DHV) operates a professional seminar and workshop platform targeting academics and scientists in Germany. The website offers over 250 interdisciplinary continuing education events annually, including online, video, in-person, and in-house seminars. The organization is well-established and recognized in the education sector, providing tailored knowledge and career development opportunities for its audience. The platform is professionally designed with consistent branding and clear navigation, supporting a positive user experience. Technically, the website employs a modern tech stack including Bootstrap and jQuery, hosted on INWX name servers. The site is mobile-optimized and performs moderately well. Security posture is solid with HTTPS enabled and no visible vulnerabilities, although security headers and explicit security policies are absent. Privacy compliance is strong, with a clear cookie consent mechanism and a comprehensive privacy policy linked to the parent organization's domain. Overall, the site demonstrates a high level of business credibility and trustworthiness, supported by consistent WHOIS data and transparent contact information. No critical security or privacy issues were detected, and the content is safe for general audiences. Strategic improvements could focus on enhancing security headers and publishing incident response information to further strengthen trust and compliance.

90
28
2
70
72
60
100
seminarprogrammworkshopdhvhochschulverbandseminare+2 more
jQuery 2.2.4Bootstrap CSS and JSBootstrap DatepickerCustom JavaScript
2025-07-24T08:08:29.244Z
splitted-desktop.com favicon

Latest in Cloud Computing, Infrastructure & Security

splitted-desktop.com

46
TechnologyN/asmallHIGH

The website www.splitted-desktop.com serves as an informational resource focused on cloud computing, infrastructure, data centers, and cloud security. It targets IT professionals and technology enthusiasts seeking expert insights in these domains. The site offers a range of articles and blog posts covering foundational and emerging topics in cloud technology. The business model appears to be content publishing without direct commercial transactions or services. The market position is that of a niche technology blog with a small-scale operation. Technically, the website employs modern frontend technologies such as Bootstrap 5.3 and jQuery 2.2.4, ensuring responsive design and a good user experience across devices. The site structure is clear with well-organized navigation and relevant meta tags for SEO. However, there is no detected CMS or hosting provider information. Performance is moderate with basic accessibility features. From a security perspective, the site lacks visible HTTPS/SSL confirmation and security headers, which are critical for protecting user data and ensuring trust. There is no cookie consent mechanism or comprehensive privacy compliance indicators beyond a basic privacy policy page. Contact information is minimal, limited to a single email address, and no incident response or vulnerability disclosure policies are present. The absence of WHOIS registration data raises concerns about domain legitimacy and trustworthiness. Overall, while the website provides valuable content and a professional appearance, the lack of domain registration transparency and security best practices present moderate risks. Strategic improvements in security posture, privacy compliance, and business credibility are recommended to enhance trust and reduce potential vulnerabilities.

15
53
2
65
67
85
20
cloudcomputinginfrastructuredatacenterscloudsecuritytechnologyblog
Bootstrap 5.3.0jQuery 2.2.4
2025-07-22T12:14:18.665Z
mddtransparency.com favicon

User account | MDD Transparency

mddtransparency.com

59
OtherN/asmallMEDIUM

MDD Transparency operates a website primarily serving as a user login portal, likely for a transparency-related service. The site is built on Drupal 7 with jQuery 2.2.4 and integrates Google Analytics for visitor tracking. The domain is well-established, created in 2009, and managed through a reputable registrar with professional DNS configurations. However, the public-facing content is minimal, focusing solely on user authentication without broader informational or marketing content. Technically, the site uses legacy technologies such as Drupal 7 and an older jQuery version, which may pose security and maintenance challenges. The site lacks visible security headers and DNSSEC is not enabled, indicating room for improvement in security hardening. Performance and accessibility are basic, with no advanced SEO or mobile optimization features evident. From a security perspective, the site employs standard form protections like POST method and disables autocomplete on password fields, but lacks comprehensive security policies, incident response information, or vulnerability disclosure mechanisms. No privacy or cookie policies are present, which impacts compliance posture negatively. No contact or business information is publicly available, limiting transparency and trust signals. Overall, the website is functional for its login purpose but lacks comprehensive security, privacy, and business transparency features. Strategic improvements in security headers, policy disclosures, and technical modernization are recommended to enhance trust and compliance.

70
35
2
60
75
70
100
loginuseraccounttransparencydrupalsecurity
jQuery 2.2.4Google AnalyticsDrupal 7
2025-07-15T21:12:26.295Z
P

Pfotenzeit- Mittelhessen GbR

pfotenzeit-mittelhessen.de

61
OtherGermanysmallMEDIUM

Pfotenzeit- Mittelhessen GbR operates a specialized dog training and care business in the Mittelhessen region of Germany. Their services include dog training school, dog trainer education, dog boarding, dog hotel, dog care, dog walking, daycare, pet food and supplies, and events. The company targets dog owners and aspiring dog trainers, positioning itself as a regional leader with a focus on quality training and care. The website content is well-structured, professionally designed, and provides clear contact information and social media links, enhancing trust and accessibility. Technically, the website is built on the 1&1 IONOS Website Editor platform, utilizing modern web technologies such as jQuery, Skrollr.js for animations, and Snowplow Analytics for tracking. It supports progressive web app features via service workers and is hosted on 1&1 IONOS infrastructure. The site is mobile optimized with good SEO practices, though accessibility features are basic. From a security perspective, the site enforces HTTPS with excellent SSL configuration and implements cookie consent mechanisms compliant with GDPR. However, no explicit security headers or detailed security policies are present, and there is no incident response or vulnerability disclosure information. The domain WHOIS data is minimal but consistent with a legitimate small business, though registrant details are not fully disclosed. Overall, the website presents a trustworthy and professional front for a small regional business with moderate technical sophistication and good privacy compliance. Strategic improvements in security headers, incident response transparency, and enhanced accessibility could further strengthen the security posture and user trust.

50
28
2
70
100
60
100
hundeschulehundetraininghundetrainerausbildunghundepensiondogwalking+5 more
jQuery 2.2.4Skrollr.jsSnowplow AnalyticsMapbox+2
2025-07-15T09:44:34.832Z
fewo-in-bamberg.de favicon

Ferienwohnungen in Bamberg und Umgebung

fewo-in-bamberg.de

52
HospitalityGermanysmallMEDIUM

The website fewo-in-bamberg.de operates as a specialized regional platform offering listings and booking referrals for private holiday apartments, apartments, and houses in Bamberg and its surroundings. It targets tourists and visitors seeking accommodation in this German region, providing a comprehensive directory of over 110 private rental options with detailed contact information and booking links to external platforms such as Booking.com and Airbnb. The platform also offers availability calendars and local tourist tips, enhancing the user experience for vacation planning. Technically, the website is built on Drupal 7 CMS, utilizing jQuery 2.2.4 and Bootstrap 3.4.1 frameworks, along with Flexslider for image carousels. While the site is mobile-optimized and features a professional design with clear navigation, the use of Drupal 7, which is end-of-life, poses potential security risks. The site enforces HTTPS and includes privacy and cookie policies compliant with GDPR, but lacks visible terms of service and incident response contact information. From a security perspective, the site benefits from HTTPS and some security headers but misses critical headers like Content Security Policy and X-Frame-Options. No security.txt or vulnerability disclosure information is present. The absence of updated CMS and some security best practices suggests moderate security posture with room for improvement. Overall, the website is a credible and trustworthy regional hospitality platform with good content quality and user experience. However, it should prioritize upgrading its CMS, enhancing security headers, and adding incident response and vulnerability disclosure information to strengthen its security and compliance posture.

40
28
2
85
85
60
40
holidayrentalsbambergapartmentsvacationbooking+3 more
Drupal 7jQuery 2.2.4Bootstrap 3.4.1Flexslider

Partner Domains:

agil-bamberg.de
partner
2025-07-15T02:48:23.661Z
karriere-hamburg.de favicon

KX Personal GmbH / Karriere Hamburg

karriere-hamburg.de

67
OtherGermanymediumMEDIUM

Karriere Hamburg, operated by KX Personal GmbH, is a well-established online job portal focused on the Hamburg metropolitan region. It offers a comprehensive platform for job seekers and employers, featuring job listings, apprenticeships, dual study programs, internships, and career advice. The site maintains a strong regional presence and partners with reputable local media such as the Hamburger Morgenpost (MOPO), enhancing its market position and trustworthiness. The content is professionally curated, targeting both candidates and employers in Hamburg and surrounding areas. Technically, the website employs a modern yet somewhat dated technology stack including jQuery 2.2.4, Foundation 5.5.3, and Splide.js for UI components. Hosting is provided by SchlundTech, a German hosting provider, ensuring regional compliance and performance. The site is mobile-optimized with good SEO practices and a clear navigation structure, although accessibility features are basic. Cookie consent mechanisms and privacy policies are implemented in compliance with GDPR. From a security perspective, the site uses HTTPS and has implemented cookie consent banners, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The WHOIS data is consistent with the business profile, showing no suspicious patterns or privacy protection that would raise concerns. Overall, Karriere Hamburg presents a secure, professional, and user-friendly platform for regional employment services. Strategic improvements in security headers, incident response transparency, and enhanced accessibility could further strengthen its security posture and user trust.

65
83
2
60
72
70
100
jobscareerhamburgeducationinternship+4 more
jQuery 2.2.4Foundation 5.5.3Font Awesome 4.7.0 and 5.12.0 iconsSplide.js 3.3.0+3
2025-07-14T23:20:16.884Z
frauenrat.de favicon

Deutscher Frauenrat e.V.

frauenrat.de

57
Non-profitGermanymediumMEDIUM

The Deutscher Frauenrat e.V. is a prominent non-profit umbrella organization representing approximately 60 women’s organizations across Germany. It serves as the largest political advocacy group for women's rights and gender equality in the country, actively engaging at national, European, and United Nations levels. The website reflects a professional and comprehensive digital presence, offering detailed information about their advocacy work, campaigns, publications, and events. The organization targets a broad audience including civil society, policymakers, and the general public interested in gender equality issues. Technically, the website is built on WordPress with a modern tech stack including Bootstrap, jQuery, and FontAwesome. It employs Cloudflare for DNS and security, and uses Borlabs Cookie for GDPR-compliant cookie consent management. The site is mobile-optimized, accessible, and SEO-friendly, with moderate performance characteristics. Analytics are handled via Matomo, ensuring privacy-conscious tracking. From a security perspective, the site enforces HTTPS with secure cookie attributes and a robust cookie consent mechanism. However, it lacks explicit HTTP security headers and published security policies or incident response contacts. No vulnerabilities or suspicious content were detected. The WHOIS data is consistent with the organization’s identity and domain usage, enhancing trustworthiness. Overall, the website demonstrates a strong security posture, excellent content quality, and good privacy compliance. It effectively supports the organization's mission and provides a trustworthy platform for stakeholders. Strategic improvements could include adding security headers and publishing a formal security policy to further enhance trust and compliance.

80
68
17
70
77
60
-
deutscherfrauenratfrauenrechtegleichstellungnon-profitgenderequality+2 more
WordPress 6.7.2Bootstrap 3.3.7jQuery 2.2.4FontAwesome 4.2.0+3

Partner Domains:

geschichte.frauenrat.de
partner
jahresbericht.frauenrat.de
partner

+1 more partners

2025-07-14T18:41:59.550Z
abschlussmachen.de favicon

VHS – Deutscher Volkshochschul-Verband Herten

abschlussmachen.de

47
EducationGermanymediumHIGH

The website 'abschlussmachen.de' is an educational platform operated by the VHS – Deutscher Volkshochschul-Verband Herten, targeting individuals seeking to complete their school leaving certificates in several German cities. It offers information, consultation, and contact options including phone and WhatsApp, positioning itself as a regional adult education provider. The site is well-branded, consistent, and provides relevant content tailored to its audience. Technically, the site is built using RapidWeaver with UIkit framework, leveraging modern JavaScript libraries and Google Analytics for tracking. Hosting is likely provided by 1&1 IONOS. The site is mobile-optimized and performs moderately well, with good SEO and accessibility basics. From a security perspective, the site uses HTTPS and a GDPR-compliant cookie consent mechanism (Usercentrics). However, it lacks explicit security headers, a published security policy, and incident response contacts. No vulnerabilities or suspicious content were detected. Overall, the site presents a low-risk profile with good business credibility and privacy compliance. Strategic improvements could include adding security headers, a terms of service page, and a vulnerability disclosure policy to enhance trust and security posture.

20
28
2
65
90
70
20
educationadulteducationschoolcompletionvhsgermany+4 more
jQuery 2.2.4UIkit 3Usercentrics CMPGoogle Tag Manager+5
2025-07-14T12:57:44.428Z
dwa-digital.de favicon

Deutsche Vereinigung für Wasserwirtschaft, Abwasser und Abfall e.V. (DWA)

dwa-digital.de

59
GovernmentGermanymediumMEDIUM

The Deutsche Vereinigung für Wasserwirtschaft, Abwasser und Abfall e.V. (DWA) operates the website dwa-digital.de as a platform dedicated to the digital transformation of the water management sector in Germany and Europe. The organization is a leading non-profit association with approximately 14,000 members from diverse sectors including municipalities, academia, industry, and government. The website offers expert knowledge, educational programs such as the Digitale Akademie, and events like the Digitaler Dienstag to foster digital innovation and skills development in water and wastewater management. Technically, the website is built using RapidWeaver with Foundation framework and various stacks plugins, leveraging Matomo for analytics and CookieHub for consent management. The site is well-structured, mobile-optimized, and employs HTTPS with a good security posture. Privacy compliance is strong with clear cookie consent and a comprehensive privacy policy. However, formal security policies and incident response contacts are not publicly disclosed. Security-wise, the site shows good practices including encrypted connections and no visible vulnerabilities or exposed sensitive data. The use of privacy-respecting analytics and cookie management tools further supports compliance. No WAF or blocking mechanisms interfere with content access, ensuring full transparency and accessibility. Overall, the website represents a credible, professional, and trustworthy digital presence for the DWA, effectively supporting its mission to lead digital transformation in water management. Strategic improvements could include publishing explicit security policies and vulnerability disclosure information to enhance trust and preparedness.

15
68
2
70
72
60
100
digitalisierungwasserwirtschaftcybersicherheitdigitaletransformationdigitaleakademie+2 more
Matomo AnalyticsCookieHub Consent ManagementjQuery 2.2.4Font Awesome 4.0.3+3
2025-07-14T04:56:07.991Z
sopraconnect.com favicon

SOPREMA

sopraconnect.com

50
EnergyUnited StatesmediumMEDIUM

SopraConnect is a corporate login portal for SOPREMA, a company operating in the energy sector. The website provides a user authentication interface for customers or partners to access account-related services. The domain is well-established, registered since 2007, indicating a mature business presence. The site uses legacy ASP.NET WebForms technology with common JavaScript libraries such as jQuery and Moment.js, and Telerik UI components for enhanced user interface elements. However, the site lacks modern CMS or advanced web frameworks and shows basic mobile and accessibility support. From a security perspective, the website does not display advanced security headers or DNSSEC, and no privacy or cookie policies are present, indicating gaps in compliance and security best practices. The login form includes client-side validation but lacks visible incident response or vulnerability disclosure information. The domain registration data is consistent and trustworthy, with no privacy protection masking registrant details. Overall, the site is functional for its purpose but requires improvements in privacy compliance, security headers, and modern web practices to enhance trust and security posture. There are no signs of malicious content or blocking mechanisms, and the content is safe for general audiences.

15
35
2
40
67
75
100
logincorporateportalenergybusiness
ASP.NET WebFormsjQuery 2.2.4jQuery UI 1.12.1Moment.js 2.20.1+2
2025-07-13T19:45:46.964Z
aquapalace.cz favicon

GMF Aquapark Prague, a.s.

aquapalace.cz

64
HospitalityCzech RepubliclargeMEDIUM

Aquapalace Praha operates the largest aquapark in the Czech Republic and Central Europe, offering a comprehensive leisure complex including water parks, sauna worlds, fitness centers, spa and wellness services, medical balneo treatments, and hotel accommodations. The business targets families, tourists, and wellness enthusiasts, positioning itself as a premier destination for active recreation and relaxation. The website is professionally designed with multilingual support, clear navigation, and integrated e-commerce for ticket sales and reservations. Technically, the site uses modern web technologies such as jQuery, Owl Carousel, and Bootstrap, with good mobile optimization and accessibility features. Security posture is moderate with HTTPS usage and secure forms, though HTTP security headers are not explicitly detected. Privacy compliance is strong, with clear GDPR and cookie policies and consent mechanisms. The WHOIS data is missing, which limits domain trust assessment, but the overall business credibility and online presence are high. Strategic recommendations include improving security headers, publishing a security policy, and verifying domain registration details to enhance trust.

80
25
2
70
72
80
100
aquaparkwellnesssaunafitnessspa+4 more
jQuery 2.2.4Owl CarouselBootstrap (dropdowns, collapse)SVG icons+4

Partner Domains:

www.aquapalacehotel.cz
partner
vp.aquapalace.cz
partner

+3 more partners

2025-07-13T11:50:11.595Z
drk-intern.de favicon

Deutsches Rotes Kreuz

drk-intern.de

58
Non-profitGermanylargeMEDIUM

The website www.drk-intern.de serves as an internal portal for the Deutsches Rotes Kreuz (German Red Cross), a large non-profit humanitarian organization in Germany. It provides access to various internal services such as knowledge databases, user management, service databases, and other organizational resources. The platform targets employees and members of the DRK, facilitating operational efficiency and information sharing within the organization. The site is well-branded with consistent use of official logos and links to subsidiary and partner domains, reinforcing its legitimacy and trustworthiness. Technically, the site is built on TYPO3 CMS and employs modern frontend libraries including jQuery, Foundation, and LightGallery. Hosting appears stable with dedicated nameservers, and the site uses HTTPS with a cookie consent mechanism powered by CCM19, indicating compliance with privacy regulations. Performance and mobile optimization are moderate to good, though accessibility and SEO could be improved further. From a security perspective, the site enforces HTTPS and uses secure login portals for internal services. However, explicit security headers and published security policies or incident response information are absent. No vulnerabilities or exposed sensitive data were detected in the content. The domain WHOIS data aligns well with the organization, supporting a high legitimacy score. Overall, the website is professional, secure, and compliant with GDPR, serving its internal audience effectively. Recommendations include enhancing security headers, publishing security and incident response policies, improving accessibility, and expanding SEO metadata to further strengthen the platform's security posture and user experience.

50
28
2
65
85
55
100
non-profithumanitarianinternalportaltypo3germanredcross+3 more
TYPO3 CMSjQuery 2.2.4LightGalleryFoundation Framework+3

Partner Domains:

drkservice.de
subsidiary
drk-db.de
partner

+1 more partners

2025-07-12T19:40:03.537Z
D

Deutscher Akademischer Austauschdienst e.V. (DAAD)

erasmusplus.de

64
EducationGermanylargeMEDIUM

The Erasmus+ website serves as the official German national portal for the European Union's Erasmus+ program, focusing on education, youth, and sport. It is operated by four National Agencies under the Deutscher Akademischer Austauschdienst e.V. (DAAD). The site provides comprehensive information on project support, application processes, and program details, targeting educational institutions, youth organizations, and project participants. The website is well-positioned as a trusted government-backed resource with strong partnerships and funding from EU and German federal ministries. Technically, the site is built on TYPO3 CMS with modern frontend libraries such as jQuery and Bootstrap, ensuring good mobile responsiveness and accessibility. It employs a robust cookie consent mechanism that blocks analytics scripts until user consent is given, demonstrating strong privacy compliance. Hosting is managed via INWX, a reputable provider, and the site uses HTTPS with anonymized IP tracking for analytics. From a security perspective, the site shows good practices including consent-based tracking, anonymization, and no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security headers and a published security or incident response policy, which could be improved. The domain registration is consistent with the official nature of the site, enhancing trustworthiness. Overall, the website is professional, secure, and compliant with GDPR, serving its educational and governmental mission effectively. Strategic improvements in security policy transparency and header implementation would further strengthen its posture.

55
95
17
70
42
45
100
erasmuseducationeuprogramyouthsport+3 more
TYPO3 CMSjQuery 2.2.4BootstrapSlicknav+4

Partner Domains:

kmk-pad.org
partner
bmfsfj.de
partner

+2 more partners

2025-07-11T22:02:45.476Z
G

GHH-BONATRANS

ghh-bonatrans.com

52
TransportationCzech RepubliclargeMEDIUM

GHH-BONATRANS is a leading global manufacturer specializing in wheelsets, wheels, axles, and related components for rolling stock including high-speed trains, metros, trams, locomotives, and freight wagons. The company serves over 80 countries worldwide and is recognized for its technological innovation, comprehensive product portfolio, and commitment to quality and customer service. The website reflects a mature business with a professional online presence, showcasing news, certifications, and career opportunities. Technically, the website employs a modern but somewhat dated technology stack including jQuery, Bootstrap, and Font Awesome, with integrations for Google Analytics, reCAPTCHA, and social sharing tools. The site is mobile optimized and provides a good user experience with clear navigation and structured content. However, some improvements could be made in accessibility and security headers to enhance overall robustness. From a security perspective, the site uses HTTPS and includes cookie consent mechanisms aligned with GDPR requirements. The presence of Google reCAPTCHA on forms adds protection against automated abuse. No critical vulnerabilities or exposed sensitive data were detected, but the absence of explicit security headers and incident response information suggests room for improvement in security posture. Overall, the website is trustworthy and professional, though the lack of WHOIS registration data introduces some uncertainty regarding domain legitimacy. Strategic recommendations include enhancing security headers, publishing incident response contacts, and verifying domain registration details to strengthen trust and compliance.

30
83
2
70
65
70
20
wheelsetstransportationmanufacturingrollingstockrailindustry+2 more
jQuery 2.2.4Bootstrap 3.3.6Font Awesome 4.0.3Google reCAPTCHA+2
2025-07-11T20:52:15.892Z