Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 15 of 775|Showing 701-750 of 38713
elektroverband-bayern.de favicon

Landesinnungsverband für das Bayerische Elektrohandwerk

elektroverband-bayern.de

37
EnergyGermanymediumHIGH

The Landesinnungsverband für das Bayerische Elektrohandwerk is a regional trade association representing the Bavarian electrical craft sector. It provides member services including training, certification (E-Marke), public relations, and a platform for news and events. The website targets professionals, trainees, and stakeholders in the electrical industry within Bavaria, positioning itself as an authoritative and trusted organization in this niche. Technically, the site is built on TYPO3 CMS, employs modern JavaScript libraries, and integrates a consent management platform (Usercentrics) alongside analytics tools such as Google Analytics and TikTok Pixel. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a moderate to good digital maturity. Security posture is solid with HTTPS enforced and privacy compliance mechanisms in place; however, there is room for improvement in publishing explicit security policies and implementing additional HTTP security headers. Overall, the domain registration data aligns well with the website content, indicating legitimacy and consistency. The site is free from blocking mechanisms or WAF challenges, enabling full content accessibility.

-
28
2
70
52
60
-
e-checkelektrohandwerke-markeenergiesparensicherheit+4 more
JavaScriptUsercentrics CMPGoogle AnalyticsGoogle Tag Manager+1

Partner Domains:

arge-medien.de
partner
www.zveh.de
partner

+3 more partners

2025-11-01T04:54:45.414Z
fv-eit-bw.de favicon

Fachverband Elektro- und Informationstechnik Baden-Württemberg

fv-eit-bw.de

43
EnergyGermanymediumHIGH

The Fachverband Elektro- und Informationstechnik Baden-Württemberg is a regional industry association focused on the electrical and information technology sectors in Baden-Württemberg, Germany. It provides its members with industry news, training, networking opportunities, and advocacy services. The website reflects a professional and well-structured digital presence, targeting professionals and businesses within the regional energy and technology sectors. The association maintains a strong market position as a trusted regional body with a clear focus on quality and member services. Technically, the website is built on TYPO3 CMS and integrates modern technologies including Usercentrics for consent management, Google Analytics, and TikTok Pixel for analytics and marketing. The site is hosted on a domain controlled by DomainControl, likely GoDaddy, and shows good mobile optimization and SEO practices. Performance is moderate with no critical technical issues detected. From a security perspective, the website uses HTTPS with SSL and implements privacy best practices such as IP anonymization and cookie consent mechanisms. However, it lacks explicit security headers and does not provide visible security or incident response policies. No vulnerabilities or suspicious content were detected. Overall, the security posture is good but could be improved with additional headers and documented policies. The overall risk assessment is low with no signs of malicious activity or content safety concerns. Strategic recommendations include enhancing security headers, publishing incident response information, and maintaining regular audits of third-party scripts to ensure ongoing compliance and security.

-
28
17
85
62
70
-
industryassociationelectricalengineeringinformationtechnologybaden-wrttembergprofessionalservices+3 more
JavaScriptUsercentrics CMPGoogle AnalyticsTikTok Pixel

Partner Domains:

www.mein-ehandwerk.de
partner
www.e-zubis.de
partner

+3 more partners

2025-11-01T04:54:40.400Z
farnostklimkovice.cz favicon

Římskokatolická farnost Klimkovice

farnostklimkovice.cz

56
Non-profitCzech RepublicsmallMEDIUM

The website www.farnostklimkovice.cz represents the Roman Catholic parish of Klimkovice, a small non-profit religious organization serving its local community. The site provides parish news, religious service schedules, historical information, and contact details. It targets local parishioners and visitors interested in the parish's activities and spiritual services. The business model is community and faith-based, with no commercial intent. Technically, the website is built on the Webnode CMS platform and uses Cloudfront CDN for content delivery. It incorporates Google Analytics with IP anonymization for visitor tracking. The site is mobile-optimized and has a moderate performance profile. However, it lacks advanced accessibility features and comprehensive SEO optimization. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks important security headers such as Content-Security-Policy and Strict-Transport-Security. There are no visible vulnerabilities or exposed sensitive data. Privacy compliance is weak due to the absence of privacy and cookie policies. Contact information is clearly presented, enhancing business credibility. Overall, the website is safe, professional, and trustworthy for its intended audience. The lack of WHOIS data suggests privacy protection, which is typical for small non-profits. Strategic improvements in privacy compliance and security headers would enhance the site's security posture and regulatory adherence.

35
10
2
85
72
75
100
religioncommunityparishcatholicchurch+2 more
Google AnalyticsWebnode CMSJavaScriptCloudfront CDN
2025-11-01T04:36:17.819Z
rheinzink.de favicon

RHEINZINK

rheinzink.de

55
ManufacturingGermanylargeMEDIUM

RHEINZINK is a globally recognized manufacturer specializing in titanium zinc products, primarily serving the construction and architectural sectors. The company positions itself as a market leader with a strong emphasis on quality, sustainability, and innovative solutions for roofing, facades, and drainage systems. Their website reflects a mature digital presence with comprehensive product information, localized domains for international markets, and a professional design tailored to architects, craftsmen, distributors, and builders. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies and includes performance optimizations and mobile responsiveness. Security measures such as HTTPS, security headers, and cookie consent mechanisms are in place, indicating a solid security posture. However, explicit security policies and incident response contacts are not prominently published. Overall, the site demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations such as GDPR. The absence of blocking mechanisms or WAF challenges allows full content accessibility and analysis. Strategic recommendations include enhancing security transparency and publishing vulnerability disclosure information to further strengthen trust.

15
83
2
75
72
65
40
manufacturingconstructionarchitecturebuildingmaterialstitaniumzinc+3 more
TYPO3 CMSJavaScriptCSSHTML5+1

Partner Domains:

rheinzink.at
subsidiary
rheinzink.ch
subsidiary

+3 more partners

2025-11-01T04:36:02.782Z
mogginn.is favicon

Árvakur hf.

mogginn.is

59
MediaIcelandlargeMEDIUM

Árvakur hf. operates the www.mbl.is website, a leading Icelandic news media platform offering a broad range of news content including domestic, international, business, sports, and cultural news. The site supports multiple content formats such as PDF newspapers, text articles, audio summaries, and daily podcasts, targeting the general Icelandic-speaking public and subscribers. The business model is subscription-based with additional free content, positioning it as a major player in Iceland's media landscape. Technically, the website employs a modern tech stack including JavaScript frameworks, Google Analytics, Microsoft Clarity, and the Piano paywall system for subscription management. The site is mobile-optimized and uses responsive design principles, with good SEO and accessibility features. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and uses secure forms and cookie consent mechanisms. However, explicit security headers like Content-Security-Policy are not evident, and no public security or incident response policies are published. The absence of WHOIS data limits domain registration transparency, though the site content and branding strongly support legitimacy. Overall, the website presents a professional, trustworthy, and user-friendly platform with extensive analytics and advertising integrations. Strategic improvements in security policy transparency and domain registration visibility would enhance trust and compliance.

30
35
2
70
67
85
100
newsmediaicelandsubscriptionjournalism+1 more
JavaScriptGoogle AnalyticsCxensePiano (subscription/paywall)+2

Partner Domains:

auglysendur.mbl.is
partner
www.arvakur.is
parent

+3 more partners

2025-11-01T04:31:18.079Z
bsw-solar-shop.de favicon

Bundesverband Solarwirtschaft (BSW-Solar) e.V.

bsw-solar-shop.de

49
EnergyGermanysmallHIGH

The website www.bsw-solar-shop.de serves as the official online shop for the Bundesverband Solarwirtschaft (BSW-Solar) e.V., a German solar industry association. It offers publications, guides, and studies related to solar thermal energy, photovoltaics, and energy storage. The platform targets investors, members of the association, and other stakeholders interested in solar energy solutions. The business model is primarily e-commerce focused on niche solar energy content, supported by member discounts and campaign information. The site holds a strong position within the German solar energy sector as a trusted source of industry publications. Technically, the website is built on the Magento CMS platform, utilizing standard web technologies such as HTML5, CSS, and JavaScript. The site demonstrates good mobile responsiveness and basic accessibility features. Hosting is provided by a German hosting provider (kasserver.com), and the site structure supports clear navigation and SEO best practices. However, some modern security headers and cookie consent mechanisms are missing, which could be improved to enhance compliance and security. From a security perspective, the site uses HTTPS (assumed though not explicitly confirmed), does not expose sensitive data, and avoids vulnerable libraries in the visible code. However, it lacks explicit security headers and published security policies or incident response information. No vulnerability disclosure or security.txt files are present. The site does not appear to use tracking or advertising scripts, which reduces privacy risks but also indicates limited marketing automation. Overall, the website is professional, trustworthy, and focused on its niche market. Security posture is moderate with room for improvement in headers and compliance mechanisms. Privacy compliance is basic, with a privacy policy present but no cookie consent banner. The risk level is low, but strategic improvements in security and privacy transparency are recommended to maintain trust and compliance.

30
28
2
55
52
50
100
solarenergiephotovoltaiksolarthermieenergiebsw-solar+1 more
JavaScriptCSSHTML5
2025-11-01T04:25:02.376Z
T

The Local Europe AB

thelocal.com

66
MediaSwedenmediumMEDIUM

The Local Europe AB operates a professional English-language news website focused on European news, travel, politics, and practical guides. Established in 2010 and headquartered in Stockholm, Sweden, it targets English-speaking residents and expatriates across Europe. The business model combines advertising, membership subscriptions, and job listings, positioning it as a reputable media outlet in its niche. The website features a modern, responsive design with comprehensive content and clear navigation, supported by a robust technical infrastructure including CMS, analytics, and membership management platforms. Technically, the site employs a variety of modern web technologies such as Google Tag Manager, Piano.io for membership/paywall, Cxense for content personalization, and MailerLite for newsletters. The site is well-optimized for mobile devices and SEO, though some accessibility features could be enhanced. Security posture is strong with HTTPS enforced and cookie consent mechanisms in place, but explicit security headers and incident response information are not publicly detailed. The absence of WHOIS domain registration data is a notable anomaly that impacts domain trustworthiness, although the website content and business information appear legitimate and professional. Privacy policies and cookie consent comply with GDPR, reflecting a commitment to user data protection. Overall, the site presents a low risk profile but would benefit from improved transparency in domain registration and security policies.

15
100
17
80
57
80
100
newsmediaeuropeenglishtravel+3 more
JavaScriptGoogle Tag ManagerPiano.io (paywall/membership)Cxense (content personalization)+4

Partner Domains:

buy.tinypass.com
partner
id.piano.io
partner

+1 more partners

2025-11-01T04:24:07.213Z
h2g.ch favicon

H2G Internetagentur AG

h2g.ch

46
TechnologySwitzerlandsmallHIGH

H2G Internetagentur AG is a Swiss-based web agency located in Aarau, specializing in consulting, design, development, and hosting of websites and web applications. The company targets businesses and institutions seeking innovative and user-centric digital solutions. Their market position is that of a reputable regional agency with a diverse client base, including international companies and local institutions. The website reflects a professional and modern digital presence with clear service offerings and client references. Technically, the website employs modern web technologies including JavaScript, SVG graphics, and Matomo for privacy-conscious analytics. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices. Hosting appears to be managed internally or via trusted providers, with HTTPS enforced and minimal tracking. From a security perspective, the site uses HTTPS and respects user privacy by disabling cookies in analytics and honoring Do Not Track signals. However, it lacks some advanced security headers and explicit security or incident response policies. No vulnerabilities or suspicious activities were detected. Overall, the website is trustworthy, professional, and compliant with GDPR requirements. The risk profile is low, with recommendations to enhance security headers and add explicit cookie consent mechanisms to further improve privacy compliance and security posture.

15
53
2
75
67
70
-
webdevelopmentinternetagencyconsultingdesignhosting+2 more
JavaScriptMatomo AnalyticsSVG graphicsCSS3+1
2025-11-01T04:23:27.117Z
mingor.hr favicon

Ministarstvo gospodarstva i održivog razvoja Republike Hrvatske

mingor.hr

65
GovernmentCroatiamediumMEDIUM

The website mingor.hr/login serves as a secure login portal for the Nextcloud platform used by the Ministry of Economy and Sustainable Development of the Republic of Croatia. It provides government employees and authorized users with a safe environment for data storage and collaboration. The site leverages modern web technologies including Vue.js and Nextcloud version 30, hosted by CARNET, the Croatian Academic and Research Network. The domain registration data aligns well with the government entity, confirming legitimacy and trustworthiness. Technically, the site demonstrates good security practices such as HTTPS enforcement, Content Security Policy with nonce, and session management. However, it lacks publicly accessible privacy, cookie, and terms of service policies, as well as contact or incident response information, which are important for compliance and user trust. The site is minimalistic as expected for a login page, with no advertising or tracking scripts detected, indicating a focus on privacy and security. Overall, the security posture is strong with no obvious vulnerabilities detected in the provided content. The site is well-optimized for mobile and has a professional design consistent with government branding. The main risks relate to the absence of visible privacy and compliance documentation, which should be addressed to improve transparency and regulatory adherence.

75
25
25
70
72
75
100
governmentnextcloudloginsecurecroatia
Nextcloud 30.0.17Vue.jsJavaScriptCSS+1
2025-11-01T04:21:16.725Z
fzoeu.hr favicon

Fond za zaštitu okoliša i energetsku učinkovitost

fzoeu.hr

56
GovernmentCroatiamediumMEDIUM

Fond za zaštitu okoliša i energetsku učinkovitost is a Croatian governmental fund dedicated to environmental protection and energy efficiency. Established in 2004, it serves as a national authority providing funding, regulatory oversight, and public information related to waste management, renewable energy, and environmental sustainability. The website offers comprehensive resources including public tenders, announcements, and educational content targeting Croatian citizens, businesses, and public institutions. The organization maintains a consistent and professional online presence aligned with its governmental role. Technically, the website employs modern web technologies including JavaScript, CSS, and HTML5, with Google Analytics integrated for user tracking under a compliant cookie consent mechanism. Hosting and DNS services are supported by Cloudflare, ensuring reliable performance and security. The site is mobile optimized and includes accessibility features enhancing usability for diverse users. From a security perspective, the website enforces HTTPS and implements cookie consent, but lacks visible security policy documentation and incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. The domain registration is consistent with the organization's Croatian governmental identity, enhancing trustworthiness. Overall, the website presents a secure, professional, and informative platform supporting the fund's mission. Strategic improvements include publishing explicit security policies, incident response information, and enhancing security headers to further strengthen the security posture.

40
10
17
75
47
80
100
environmentenergyefficiencygovernmentpublicfundcroatia+2 more
JavaScriptCSSHTML5Google Analytics+1

Partner Domains:

gov.hr
partner
mingo.gov.hr
partner

+3 more partners

2025-11-01T04:20:51.630Z
government.nl favicon

Ministerie van Algemene Zaken

government.nl

60
GovernmentNetherlandsenterpriseMEDIUM

The website government.nl serves as the official online portal for the Government of the Netherlands, managed by the Ministerie van Algemene Zaken. It provides comprehensive information on government services, policies, immigration, housing benefits, citizenship, and current news. The site targets a broad audience including residents, expatriates, and businesses interacting with Dutch government entities. It holds a strong market position as the authoritative source of government information in the Netherlands. Technically, the website employs modern JavaScript libraries such as jQuery UI and integrates Piwik PRO analytics and Pastease survey tools, indicating a mature digital infrastructure. The site is mobile-optimized, accessible, and performs well with fast loading times. The CMS is not explicitly identified but appears to be a custom or government-specific platform. From a security perspective, the site enforces HTTPS and employs secure forms without visible vulnerabilities. However, explicit security headers and a dedicated security policy page are absent, and no incident response contacts are provided. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. No vulnerabilities or suspicious domains were detected. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance suitable for a government entity. Strategic recommendations include enhancing security headers, publishing a security policy, and providing incident response contacts to further strengthen the security posture.

85
68
17
65
-
60
100
governmentnetherlandspublicservicesimmigrationhousing+3 more
JavaScriptjQuery UIPiwik PRO analyticsPastease survey platform

Partner Domains:

www.rijksoverheid.nl
partner
2025-11-01T04:17:56.144Z
nordplusonline.org favicon

Swedish Council for Higher Education

nordplusonline.org

60
EducationSwedenmediumMEDIUM

Nordplusonline.org is the official platform for Nordic-Baltic educational collaboration, administered by the Swedish Council for Higher Education on behalf of the Nordic Council of Ministers. The website facilitates funding applications, project management, and dissemination of educational projects and events within Nordic and Baltic countries. It targets educational institutions and project coordinators seeking collaboration and funding opportunities. The platform holds a strong market position as an official government-backed initiative with a clear focus on education and regional cooperation. Technically, the website employs modern web technologies including Bootstrap for responsive design, privacy-friendly Plausible Analytics for user insights, and Klaro for cookie consent management. The CMS appears to be Episerver, indicating a mature content management infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, with moderate performance. Hosting and domain registration are consistent with a legitimate government-related entity. From a security perspective, the site uses HTTPS with a good SSL configuration and enforces clientTransferProhibited status on the domain. Cookie consent mechanisms and privacy policies are in place, reflecting GDPR compliance. However, DNSSEC is not enabled, and security headers are not explicitly detected, suggesting room for improvement. No critical vulnerabilities or exposed sensitive data were found. Overall, the website presents a low-risk profile with strong business credibility and good privacy compliance. Strategic recommendations include enabling DNSSEC, publishing explicit security policies, and adding terms of service to enhance transparency and trust.

15
65
17
50
77
75
100
educationnordicbalticcollaborationfunding+3 more
JavaScriptBootstrapPlausible AnalyticsKlaro Cookie Consent
2025-11-01T04:17:46.113Z
immersive.cz favicon

Brainz Immersive s. r. o.

immersive.cz

42
TechnologyCzech RepublicsmallHIGH

Brainz Immersive s. r. o. is a Prague-based immersive creative studio specializing in virtual and augmented reality experiences. Founded in 2019 and part of the BRAINZ STUDIOS group, the company offers a comprehensive suite of services including AR/VR creative development, 360° video production, multi-platform app development, and immersive installations. Their client portfolio includes notable brands such as ŠKODA AUTO, Vogue, and Czech Radio, positioning them as a niche leader in immersive technology solutions for brands and entertainment. The website reflects a professional and modern digital presence with rich multimedia content and clear navigation. Technically, the site uses modern web technologies and frameworks, with good mobile optimization and SEO practices. Security posture is adequate with HTTPS enabled, but lacks advanced security headers and formal privacy or cookie policies, indicating room for compliance improvement. Analytics and marketing tracking are implemented via Google Analytics and Facebook Pixel, but without explicit cookie consent mechanisms. WHOIS data confirms domain legitimacy and consistency with the business claims. Overall, Brainz Immersive demonstrates a strong market position in immersive technology with a professional online presence but should enhance privacy compliance and security best practices to further strengthen trust and regulatory adherence.

15
10
2
80
62
85
-
vrarimmersivecreativestudiotechnology+4 more
HTML5CSS3JavaScriptGoogle Analytics+4

Partner Domains:

brainzstudios.cz
parent
disruptive.cz
sister
2025-11-01T04:04:52.391Z
kiwis-and-brownies.de favicon

Christian Kiewaldt & Benjamin Braun GbR

kiwis-and-brownies.de

45
TechnologyGermanysmallHIGH

KIWIS & BROWNIES is a small German software development company specializing in custom enterprise software, eCommerce solutions using Magento, and promotional applications to increase reach and lead generation. The company operates primarily in the Gummersbach and Oberberg regions of Germany, targeting local businesses seeking digital transformation and marketing services. Their website reflects a professional and modern digital presence with a focus on clear communication and customer engagement via WhatsApp and downloadable informational materials. Technically, the website employs standard modern web technologies including HTML5, CSS, JavaScript with jQuery, and Google Fonts. The hosting is managed via DomainControl nameservers, and Magento is indicated as the eCommerce platform. The site is moderately optimized for performance and mobile devices, though accessibility features are basic. SEO practices are adequately implemented with meta tags and structured content. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and a formal security policy or incident response contacts. The privacy policy is comprehensive and GDPR compliant, but no cookie consent mechanism is present, which is a compliance gap. No vulnerability disclosure or security.txt files are found, limiting transparency in security practices. Overall, the website presents a trustworthy and professional image suitable for its business scope. The risk level is moderate with recommendations to enhance security headers, implement cookie consent, and publish security policies to improve compliance and trust. The domain registration aligns with the business identity, supporting legitimacy.

15
40
2
70
72
65
20
softwareherstellerdigitalisierungcrmerpgummersbach+12 more
HTML5CSSJavaScriptjQuery+2
2025-11-01T04:04:42.371Z
M

Ministarstvo zaštite okoliša i zelene tranzicije

haop.hr

48
GovernmentCroatiamediumHIGH

The website 'Crveni popis Hrvatske' is an official Croatian government portal managed by the Ministry of Environment and Green Transition, specifically the Institute for Environmental Protection and Nature. It serves as a comprehensive resource for data on endangered wild species in Croatia, providing risk assessments, conservation information, and public education. The portal targets a broad audience including researchers, policymakers, and the general public interested in biodiversity and environmental protection. Technically, the site employs modern web technologies such as HTML5, CSS3, JavaScript, Chart.js for data visualization, and Leaflet.js for mapping. The presence of a CSRF token and HTTPS indicates a secure infrastructure, although some security headers are missing. Accessibility is addressed but with room for improvement, particularly in image alt attributes and text scaling. The site is moderately performant and mobile-optimized. From a security perspective, the portal demonstrates good practices including GDPR compliance, cookie consent mechanisms, and secure form handling. However, it lacks explicit incident response contact details and a published vulnerability disclosure policy. No critical vulnerabilities or suspicious activities were detected. WHOIS data confirms the domain's legitimacy and alignment with the governmental nature of the site. Overall, the website is trustworthy, professionally maintained, and fulfills its mission effectively. Strategic improvements in security headers, accessibility, and incident response transparency would further enhance its posture.

15
25
17
70
62
75
40
environmentconservationgovernmentbiodiversityendangeredspecies+1 more
HTML5CSS3JavaScriptChart.js+1
2025-11-01T04:03:17.159Z
poukz.hr favicon

Pučko otvoreno učilište Katarina Zrinska – Ozalj

poukz.hr

54
EducationCroatiasmallMEDIUM

Pučko otvoreno učilište Katarina Zrinska – Ozalj is a small educational institution based in Croatia, founded in 2022. The organization offers a variety of educational and creative programs targeting children, youth, retirees, and adults, focusing on lifelong learning and community engagement. The website reflects a local community-oriented business model with clear contact information and social media presence, positioning itself as a trusted local educational provider. Technically, the website employs modern front-end technologies including Bootstrap, jQuery, and various JavaScript libraries to provide a responsive and visually appealing user experience. While the site is mobile-optimized and well-structured, there is room for improvement in accessibility and SEO optimization. Hosting and domain registration are consistent with the business location, enhancing trustworthiness. From a security perspective, the website implements a cookie consent mechanism compliant with GDPR, but lacks visible advanced security headers and incident response information. No critical vulnerabilities or exposed sensitive data were detected in the provided content. The absence of terms of service and security policies suggests an opportunity to strengthen compliance and user trust. Overall, the website is functional, professional, and safe for general audiences. The risk level is low, but strategic improvements in security posture and privacy transparency would enhance the institution's digital maturity and trustworthiness.

15
40
2
60
62
75
100
educationcommunityworkshopscroatiapoukz+1 more
HTML5CSS3JavaScriptBootstrap+7
2025-11-01T04:01:11.504Z
A

APIS IT d.o.o.

kulturnadobra.hr

61
GovernmentCroatiamediumMEDIUM

APIS IT d.o.o. operates as an IT service provider specializing in identity federation and authentication services primarily for Croatian government entities such as Grad Zagreb and the Ministry of Culture. The website analyzed is a Home Realm Discovery page facilitating user authentication selection among trusted identity providers. The business targets organizational users within government and affiliated institutions, leveraging Microsoft Active Directory Federation Services (ADFS) technology to provide secure access management. The company holds a moderate market position as a government IT service provider with a medium-sized organizational footprint in Croatia. Technically, the site employs standard web technologies including HTML5, JavaScript, and CSS, integrated with Microsoft ADFS frameworks. The site is functional with basic mobile optimization and accessibility features but lacks advanced SEO and performance optimizations. The infrastructure appears stable but could benefit from enhanced security headers and improved user experience elements. From a security perspective, the site uses HTTPS and implements basic input validation on forms. However, it lacks explicit security headers such as Content-Security-Policy and Strict-Transport-Security, which are recommended for modern secure web applications. No privacy or cookie policies are present, indicating gaps in compliance and user transparency. No contact or incident response information is provided, limiting user support and security communication channels. Overall, the website is safe and professional for its intended government audience but requires improvements in privacy compliance, security hardening, and user support to enhance trust and regulatory adherence.

80
25
17
70
77
55
100
authenticationidentityfederationgovernmentadfscroatia+1 more
JavaScriptHTML5CSS

Partner Domains:

sts.zagreb.hr
partner
sts.min-kulture.hr
partner

+1 more partners

2025-11-01T03:59:50.677Z
D

DVD Novalja

dvd-novalja.hr

31
GovernmentCroatiasmallHIGH

DVD Novalja is a small, local volunteer firefighting organization based in Novalja, Croatia, serving the community on the island of Pag. The website provides information about their firefighting activities, technical interventions, and community safety efforts. The organization appears to be well-established with a domain age dating back to 2005, consistent with their operational history. The site targets local residents and visitors needing emergency and safety information. Technically, the website uses older web technologies such as jQuery 1.4.2 and lacks modern security features like HTTPS and security headers. The site is basic in design and functionality, with limited mobile optimization and no visible analytics or tracking tools. Contact information is clearly presented, but there are no privacy or cookie policies, which is a compliance gap. From a security perspective, the absence of HTTPS and use of outdated libraries pose risks. No advanced security policies or incident response contacts are provided. The site does not appear to collect user data via forms, reducing exposure but also limiting engagement. Overall, the security posture is weak and requires improvements to protect users and enhance trust. The overall risk is moderate due to the lack of encryption and outdated technology, but the site content is safe and non-malicious. Strategic recommendations include implementing HTTPS, updating libraries, adding privacy and cookie policies, and enhancing security headers to improve compliance and user trust.

15
-
-
85
-
75
20
firefightingvolunteercommunitycroatianovalja+2 more
jQuery 1.4.2CSSJavaScript
2025-11-01T03:58:15.410Z