Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149319
Websites
130
Industries
113
Countries
52
Avg Score
Page 15 of 27|Showing 701-750 of 1330
neh.gov favicon

National Endowment for the Humanities

neh.gov

67
GovernmentUnited StateslargeMEDIUM

The National Endowment for the Humanities (NEH) is a large, independent federal agency dedicated to supporting humanities research, education, and public programming across the United States. Established in 1965, NEH has a strong market position as the largest public funder of humanities projects, providing over $6 billion in grants to a wide range of cultural and educational institutions. The website reflects a professional and authoritative presence consistent with a government entity, targeting scholars, educators, cultural organizations, and the general public interested in humanities initiatives. Technically, the website is built on Drupal 10, leveraging modern web technologies such as Google Tag Manager, YouTube APIs, and accessibility features. The site demonstrates good performance and mobile optimization, with a clear navigation structure and comprehensive content. Security posture is strong with HTTPS enforcement and content security policies, though there is room for improvement in cookie consent mechanisms and publishing incident response contacts. From a security and compliance perspective, the site maintains privacy and vulnerability disclosure policies, but lacks explicit cookie consent and a security.txt file. WHOIS data is unavailable, which is typical for .gov domains, but this does not detract from the site's legitimacy given its official status and consistent branding. Overall, NEH's website is a trustworthy, well-maintained government resource with excellent content quality and a solid technical foundation. Strategic recommendations include enhancing privacy compliance with cookie consent, publishing incident response contacts, and adding a security.txt file to further improve security transparency.

75
53
35
85
72
30
100
governmenthumanitieseducationgrantsnon-profit+1 more
Drupal 10Google Tag ManagerGoogle AnalyticsSelect2+3
2025-09-05T16:44:41.619Z
profoundlogic.com favicon

Profound Logic

profoundlogic.com

66
TechnologyN/amediumMEDIUM

Profound Logic is a specialized technology company focused on transforming IBM i (AS/400) legacy systems into modern, AI-enhanced platforms. With over 25 years of experience, they provide a comprehensive suite of solutions including transformation tools, AI integration, development services, and API integration. Their market position is that of an established niche player serving IT teams and businesses reliant on IBM i systems, helping them modernize while preserving critical business logic. The website reflects a mature digital presence with professional design, clear messaging, and extensive content about their offerings. Technically, the website is built on WordPress using Elementor and integrates multiple analytics and marketing tools such as Google Analytics, HubSpot, Facebook Pixel, and Hotjar. The site is mobile-optimized, accessible, and SEO-friendly. Security posture is good with HTTPS enforced and no obvious vulnerabilities, though some security headers could be improved. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. The WHOIS data is notably missing or unavailable, which raises some concerns about domain registration transparency. However, the website content and business information appear consistent and professional, mitigating some trust concerns. No WAF or blocking mechanisms were detected, allowing full content access and analysis. Overall, Profound Logic presents a credible and professional business with a strong focus on IBM i modernization and AI futurization, supported by a technically sound and user-friendly website. Some improvements in security headers and domain registration transparency are recommended to enhance trust and security posture.

30
80
17
70
77
75
100
ibmias400legacymodernizationaisoftwaredevelopment+2 more
WordPressElementorYoast SEOGoogle Analytics+6

Partner Domains:

profoundlogicsupport.atlassian.net
service
2025-09-05T09:45:12.058Z
esahubble.org favicon

STScI

esahubble.org

61
GovernmentUnited StatesmediumMEDIUM

ESA/Hubble.org is the official web portal for the European Space Agency's Hubble Space Telescope outreach and educational activities, managed by the Space Telescope Science Institute (STScI). The website provides comprehensive scientific news, stunning images, videos, and educational resources aimed at a broad audience including scientists, educators, and the general public. It holds a strong market position as an authoritative source for Hubble-related content and space science education. The business model is non-commercial, focusing on public outreach and education. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates with major social media platforms and video services such as YouTube and Facebook. It is hosted behind Cloudflare DNS and CDN services, ensuring good performance and availability. The site is mobile-optimized and features clear navigation and professional design, contributing to an excellent user experience. From a security perspective, the site uses HTTPS with proper domain registration locks, but lacks DNSSEC and some recommended security headers. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or GDPR-specific disclosures. The WHOIS data is consistent with the organization's identity and supports the site's legitimacy. Overall, ESA/Hubble.org is a high-quality, trustworthy, and professionally maintained website with strong content and business credibility. Strategic improvements in privacy compliance and security headers would further enhance its posture.

15
53
17
70
65
80
100
astronomyspaceesahubblescience+2 more
HTML5CSS3JavaScriptjQuery+4
2025-09-05T08:40:38.744Z
ibi.com favicon

ibi

ibi.com

75
TechnologyUnited StatesenterpriseMEDIUM

ibi is a well-established software company specializing in modern data and analytics platforms that empower organizations to make informed decisions. With a legacy spanning 50 years and as a subsidiary of Cloud Software Group, ibi targets enterprise clients requiring scalable data management, business intelligence, and mainframe modernization solutions. The website reflects a mature digital presence with comprehensive content, customer testimonials, and a clear focus on enterprise-grade analytics and cloud capabilities. Technically, the site leverages Adobe Experience Manager CMS, integrates modern JavaScript libraries, and employs industry-standard analytics and consent management tools. Security posture is solid with HTTPS enforcement and cookie consent mechanisms, though explicit security policies and incident response contacts are not publicly disclosed. WHOIS data is unavailable, likely due to privacy protection, but the overall business legitimacy is supported by consistent branding, parent company association, and professional content. The site is free from adult or questionable content and demonstrates good privacy compliance. Strategic recommendations include enhancing security header implementation, publishing security policies, and adding vulnerability disclosure information to further strengthen trust and compliance.

85
68
17
85
72
85
100
dataanalyticsbusinessintelligencemainframemodernizationenterprisesoftwarecloud+1 more
JavaScriptAdobe DTMGoogle Tag ManagerYouTube iframe API+2

Partner Domains:

www.cloud.com
parent
www.tibco.com
partner
2025-09-05T06:23:23.670Z
jaspersoft.com favicon

Jaspersoft

jaspersoft.com

72
TechnologyUnited StatesenterpriseMEDIUM

Jaspersoft is a mature enterprise software platform specializing in embedded analytics and reporting solutions. It offers pixel-perfect reporting, ad hoc reporting, and embedded analytics designed for integration within other applications. The company positions itself as a leader in embedded business intelligence, supported by a large global customer base and a parent company, Cloud Software Group, Inc. The website reflects a professional and consistent brand image with comprehensive content and strong trust signals such as customer logos and industry awards. Technically, the site is built on Adobe Experience Manager and integrates multiple analytics and consent management tools, indicating a modern and mature digital infrastructure. Security posture is solid with HTTPS and consent mechanisms, though explicit security headers and incident response information are not clearly disclosed. The WHOIS data is unavailable or obscured, which slightly reduces transparency but does not negate the overall legitimacy given the business context and parent company association. Overall, the website is well-designed, secure, and compliant with privacy regulations, targeting enterprise customers and developers seeking embedded BI solutions.

85
88
2
70
82
70
100
embeddedanalyticsbusinessintelligencereportingplatformenterprisesoftwaredatavisualization+3 more
Adobe Experience Manager (AEM)jQueryHubSpot analytics and messagingGoogle Tag Manager+3

Partner Domains:

www.cloud.com
parent
www.citrix.com
partner
2025-09-05T06:22:48.601Z
kapsch.net favicon

Kapsch TrafficCom AG

kapsch.net

70
TransportationAustrialargeMEDIUM

Kapsch TrafficCom AG is a well-established Austrian company specializing in digitalization and intelligent mobility solutions, with a history dating back to 1892. The company positions itself as a leading partner in the transportation technology sector, offering advanced digital and traffic management services primarily targeting businesses and government entities. Their website reflects a mature digital presence with professional design, comprehensive content, and clear branding consistent with their market position. Technically, the website employs modern web technologies including JSON-LD structured data for SEO, custom fonts, and integration with YouTube APIs. The site is mobile-optimized, fast-loading, and accessible, indicating a high level of digital maturity. Privacy compliance is well addressed with visible privacy and cookie policies and consent management mechanisms. From a security perspective, the site uses HTTPS with strong SSL configuration and appropriate security headers. However, there is a lack of publicly available security policies or incident response information, and no vulnerability disclosure program is evident. The absence of WHOIS data for the domain www.kapsch.net is a notable gap, reducing transparency and slightly impacting trustworthiness. Overall, the website presents a low risk profile with strong business credibility and technical implementation. Strategic recommendations include publishing explicit security and incident response policies, establishing a vulnerability disclosure channel, and clarifying domain registration details to enhance trust.

80
95
2
85
92
80
40
kapschtrafficcomdigitalizationintelligentmobilitytechnology+1 more
YouTube iframe APIJSON-LD structured dataCustom fonts (Avenir)CSS3+1
2025-08-14T16:39:10.734Z
axpo.com favicon

Axpo Finland Oy

axpo.com

57
EnergyFinlandmediumMEDIUM

Axpo Finland Oy operates as a key player in the Nordic energy market, specializing in trading and developing tailored energy products and services for retailers, energy-intensive industries, and energy producers. As part of the larger Axpo Group, it leverages a pan-European network to provide comprehensive energy solutions including power, green certificates, wind development, gas products, and fuels. The company positions itself as a trusted partner with a strong focus on risk management and customer-centric product development. Technically, the website is built on Adobe Experience Manager, utilizing modern web technologies such as Google Tag Manager, YouTube APIs, and cookie consent frameworks to ensure a responsive, accessible, and SEO-optimized user experience. The site demonstrates good mobile optimization and professional design, supporting a seamless user journey. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms aligned with GDPR requirements. However, it lacks explicit security headers and published security policies or incident response information, which are recommended for enhanced security posture. The absence of WHOIS data reduces transparency but does not significantly detract from the overall legitimacy given the professional presentation and corporate branding. Overall, Axpo Finland's digital presence reflects a mature, professional energy sector business with solid technical infrastructure and privacy compliance. Strategic improvements in security transparency and WHOIS data availability would further strengthen trust and security assurance.

40
53
2
85
-
90
100
energyrenewabletradingnordiccorporate+1 more
YouTube iframe APIGoogle Tag ManagerGoogle Analytics (gtag.js)Cookielaw.org cookie consent+1

Partner Domains:

axpo.com
parent
portal.axpo.com
service

+1 more partners

2025-08-04T14:51:17.431Z
ecs-org.eu favicon

ECSO

ecs-org.eu

55
EnergyEuropean UnionmediumMEDIUM

ECSO operates as a cybersecurity organization focusing on the energy and transportation sectors within the European Union. The website presents a professional image with clear branding and industry-relevant content, targeting stakeholders and professionals in critical infrastructure cybersecurity. The business model aligns with a non-profit or industry association, emphasizing collaboration and security initiatives. Technically, the website is built on the Wix platform using Elementor for content management and layout. It employs modern web technologies such as lazy loading scripts and integrates YouTube APIs for media content. Hosting is provided by OVH SAS, a reputable provider. The site demonstrates moderate performance and good mobile optimization but lacks advanced accessibility features. From a security perspective, the site uses HTTPS but lacks explicit security headers and does not provide visible privacy or cookie policies, incident response contacts, or vulnerability disclosure mechanisms. No signs of WAF or blocking mechanisms were detected, indicating full accessibility. The absence of contact information and compliance documentation reduces trust and privacy compliance scores. Overall, ECSO's website is a moderately mature digital presence with room for improvement in security best practices, privacy compliance, and transparency. Strategic enhancements in these areas would strengthen trust and regulatory alignment.

15
45
60
80
59
85
20
cybersecurityenergytransportationindustryeuropeanunion+2 more
Wix.com Website BuilderYouTube iframe APIRocket Lazy Load ScriptsElementor+3
2025-08-04T12:58:58.642Z
sigenergy.com favicon

Sigenergy Technology Co., Ltd.

sigenergy.com

62
EnergyN/alargeMEDIUM

Sigenergy Technology Co., Ltd. is a prominent company specializing in home battery storage and energy solutions for residential and commercial applications. The company positions itself as a leader in the energy storage sector, offering a broad portfolio of products including home battery systems, commercial inverters, energy gateways, and cloud-based energy management platforms. Their website demonstrates a strong market presence with multi-language support and active engagement through social media and news updates. Technically, the website employs modern JavaScript libraries and frameworks such as jQuery, GSAP, and Swiper, ensuring a smooth and interactive user experience. The site is mobile-optimized and features comprehensive navigation and content relevant to its target audience of homeowners, businesses, installers, and partners. Security-wise, the site enforces HTTPS and includes cookie consent mechanisms, though it lacks explicit security headers and published security policies. The absence of WHOIS registration data reduces domain trust slightly, but the professional presentation and active digital footprint support the company's legitimacy. Overall, the website reflects a mature digital infrastructure aligned with industry standards, though improvements in security transparency and incident response disclosures are recommended.

50
88
2
85
-
85
100
energysolarbatterystoragehomeenergycommercialenergy+3 more
jQueryGSAPSwiperLocomotive Scroll+2

Partner Domains:

business.sigencloud.com
partner
support.sigenergy.com
partner

+3 more partners

2025-08-04T12:28:57.038Z
automationanywhere.com favicon

Automation Anywhere, Inc.

automationanywhere.com

79
TechnologyUnited StatesenterpriseLOW

Automation Anywhere, Inc. is a leading enterprise software company specializing in agentic process automation systems that integrate AI, RPA, and intelligent automation to streamline mission-critical workflows. Founded in 2003 and headquartered in California, USA, the company holds a strong market position as a Gartner Magic Quadrant Leader and is trusted by top global enterprises across finance, healthcare, manufacturing, and banking sectors. Their cloud-native platform offers a comprehensive suite of automation tools including AI Agent Studio, Process Reasoning Engine, and Automation Co-Pilot, enabling organizations to enhance productivity and operational efficiency. Technically, the website is built on Drupal CMS with modern JavaScript libraries and integrates advanced tracking and consent management tools such as Google Tag Manager and OneTrust. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure. Hosting is managed via Akamai, ensuring robust performance and security. From a security perspective, the site enforces HTTPS, implements key security headers, and utilizes cookie consent mechanisms, indicating a strong security posture. However, the absence of a dedicated security policy page and vulnerability disclosure mechanism suggests areas for improvement in transparency and incident response readiness. No vulnerabilities or exposed sensitive data were detected. Overall, Automation Anywhere's website reflects a high level of professionalism, trustworthiness, and compliance with privacy regulations such as GDPR. The domain registration data aligns well with the company's identity and history, supporting legitimacy. Strategic recommendations include publishing explicit security policies, incident response contacts, and vulnerability disclosure information to further enhance trust and security posture.

85
58
35
85
95
85
100
rpaautomationaienterpriseagenticprocessautomation+2 more
Drupal CMSJavaScriptjQuerySlick Carousel+3
2025-08-04T07:11:43.109Z
sendloop.com favicon

Sendloop

sendloop.com

59
TechnologyN/asmallMEDIUM

Sendloop is a specialized email marketing and delivery platform tailored for high-volume marketers, digital agencies, and corporations. Founded in 2003, the company offers a SaaS solution that emphasizes custom-built features, automation, segmentation, and extensive integrations to optimize email campaign performance. The platform targets businesses needing scalable and efficient email marketing tools, positioning itself as a niche provider with dedicated services for large senders. Technically, the website is built on WordPress using Elementor and Yoast SEO, integrating modern web technologies such as jQuery and third-party services like Stripe for payments, Calendly for scheduling, and Fathom Analytics for privacy-focused tracking. The site demonstrates good SEO practices, mobile optimization, and moderate performance. From a security perspective, the site enforces HTTPS with a good SSL configuration and uses Cloudflare DNS, but lacks explicit security headers and published security policies or incident response contacts. Domain WHOIS data is consistent and trustworthy, with domain age appropriate for the business history. Privacy and cookie policies are present with consent mechanisms, indicating GDPR compliance. Overall, Sendloop presents a professional and credible online presence with a solid technical foundation and privacy compliance. Security posture is good but could be enhanced by adding security headers and incident response information. No critical vulnerabilities or suspicious content were detected.

35
95
2
100
72
85
-
emailmarketingemaildeliverymarketingautomationhigh-volumeemaildigitalagencies+5 more
WordPressElementorYoast SEOjQuery+4
2025-08-02T17:15:40.255Z
smc.eu favicon

SMC

smc.eu

79
ManufacturingN/aenterpriseLOW

SMC Europe operates as a large multinational enterprise specializing in manufacturing and distributing industrial automation products, including pneumatic and electric actuators, valves, sensors, and related equipment. The company targets industrial and manufacturing sectors with a B2B business model, emphasizing engineering solutions and product innovation. Their website reflects a mature digital presence with comprehensive product catalogs and engineering tools. Technically, the website employs a modern technology stack including jQuery, Google Tag Manager, OneTrust for cookie consent, and Visual Website Optimizer for A/B testing. The site is mobile-optimized and SEO-friendly with structured data and Open Graph metadata. Performance is moderate, with room for improvement in accessibility features. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms aligned with GDPR. While explicit security headers are not fully confirmed, no critical vulnerabilities or exposed sensitive data were detected. The absence of a security policy or vulnerability disclosure page suggests an opportunity for enhanced transparency. Overall, the website is professional, trustworthy, and compliant with privacy regulations. The lack of WHOIS data due to privacy protection is justified for this business type. Strategic recommendations include enabling comprehensive security headers, activating error monitoring tools, and publishing a vulnerability disclosure policy to strengthen security posture and trust.

85
95
25
85
77
85
100
industrialmanufacturingautomationpneumaticsengineering+6 more
jQueryGoogle Tag ManagerYouTube iframe APILinkedIn Insight Tag+5
2025-08-01T07:56:54.105Z
U

U.S. Department of Agriculture

usda.gov

55
GovernmentUnited StatesenterpriseMEDIUM

The U.S. Department of Agriculture (USDA) website serves as an authoritative federal government portal providing extensive resources and support related to food, agriculture, natural resources, rural development, nutrition, and related policy areas. The site targets a broad audience including American citizens, farmers, ranchers, agricultural stakeholders, and government employees. It offers comprehensive information on food safety, farming and ranching, forestry, sustainability, trade, and disaster assistance programs, positioning itself as a critical resource in the agricultural sector. Technically, the website is built on Drupal 10, a modern and robust content management system, and integrates multiple analytics tools including Google Analytics, Google Tag Manager, and the U.S. government's Digital Analytics Program. The site demonstrates good performance, excellent mobile optimization, and strong accessibility features, ensuring a positive user experience across devices. The presence of HTTPS and secure cookie consent mechanisms further enhance its technical maturity. From a security perspective, the USDA website employs HTTPS with excellent SSL configuration and follows best practices such as secure forms and no visible vulnerabilities in third-party libraries. While explicit security headers are not fully confirmed, the overall posture is strong. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR considerations. Incident response mechanisms are partially visible through a lawfare complaint portal, though more explicit security contact channels could improve readiness. Overall, the website is highly trustworthy, professionally designed, and consistent with its government identity. The lack of WHOIS data is expected due to the .gov domain restrictions, and no suspicious patterns were detected. The site is safe for general audiences with no adult or questionable content. Strategic recommendations include enhancing security header implementation, increasing transparency around incident response, and maintaining up-to-date CMS and third-party components to sustain security and compliance.

-
53
43
80
-
80
100
governmentagriculturefoodsafetynutritionforestry+5 more
Drupal 10Google AnalyticsGoogle Tag ManagerYouTube iframe API+1
2025-08-01T05:35:26.915Z
iteris.com favicon

Iteris, Inc.

iteris.com

65
TransportationUnited StateslargeMEDIUM

Iteris, Inc. is a leading technology company specializing in smart mobility infrastructure management. Their flagship ClearMobility® Platform offers cloud-enabled, end-to-end solutions that monitor, visualize, and optimize transportation infrastructure globally. Serving over 10,000 public agencies and commercial enterprises, Iteris positions itself as a trusted partner in advancing safer, more efficient, and sustainable mobility. The company recently joined Almaviva, signaling strategic growth and enhanced capabilities. Technically, Iteris employs a modern web stack including Alpine.js for frontend interactivity, Laravel Vapor for backend cloud deployment, and leverages AWS Cloudfront CDN for hosting and performance. The site is well-optimized for mobile and accessibility, with comprehensive SEO and user experience design. Marketing and analytics integrations include HubSpot, Google Tag Manager, LinkedIn Insight, and Facebook Pixel, enabling robust data-driven insights. From a security perspective, the website enforces HTTPS, uses cookie consent mechanisms, and implements external link warnings. However, explicit security headers like CSP and X-Frame-Options are not clearly visible and could be improved. The absence of WHOIS data is a notable anomaly but does not detract from the overall legitimacy given the professional presentation and extensive trust signals. Overall, Iteris demonstrates a mature digital presence with strong business credibility and technical infrastructure. Strategic recommendations include enhancing security header implementation, publishing dedicated security and incident response policies, and maintaining transparency in domain registration details to further strengthen trust.

15
83
2
80
77
80
100
smartmobilitytransportationtechnologycloudplatformtrafficmanagementconsulting+3 more
Alpine.jsLaravel VaporHubSpot Analytics and Marketing ScriptsGoogle Tag Manager+3

Partner Domains:

connect.iteris.com
partner
us241.dayforcehcm.com
partner

+2 more partners

2025-08-01T04:29:38.729Z
callbell.eu favicon

Callbell S.A.S.

callbell.eu

66
TechnologyFrancemediumMEDIUM

Callbell S.A.S. is a technology company founded in 2019, offering a SaaS omnichannel customer communication platform that integrates popular messaging apps such as WhatsApp, Facebook Messenger, Instagram, and Telegram. The platform targets businesses seeking to centralize and optimize customer support and sales communications through a multi-agent chat system, chatbot automation, and broadcast messaging. Positioned as a Meta Business Partner and trusted by over 75,000 companies worldwide, Callbell demonstrates a strong market presence and a comprehensive suite of services tailored for modern customer engagement. Technically, the website is built on WordPress using the Divi theme, leveraging modern JavaScript libraries and integrations such as Google Analytics, TikTok Pixel, and Zapier SDK. The site is well-optimized for mobile devices, features good SEO practices, and employs GDPR-compliant privacy and cookie policies with consent mechanisms. Performance is moderate with room for improvement in accessibility features. From a security perspective, the site enforces HTTPS with excellent SSL configuration and uses privacy tools like Iubenda for cookie consent. However, explicit security headers are not detected, and there is no published security policy or incident response contact, which are areas for enhancement. No vulnerabilities or suspicious content were found, and the domain registration is consistent and legitimate. Overall, Callbell's website reflects a professional, trustworthy, and business-focused platform with strong branding and user experience. Strategic recommendations include enhancing security header implementation, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and compliance.

45
68
2
65
75
85
100
customersupportmessagingappswhatsappfacebookmessengerinstagram+5 more
jQueryGoogle AnalyticsGoogle Tag ManagerYouTube Iframe API+3
2025-07-31T20:18:43.802Z
resortvitality.cz favicon

Resort Vitality

resortvitality.cz

9
HospitalityCzech RepublicmediumCRITICAL

Resort Vitality is a hospitality and leisure complex located in the Beskydy mountains of the Czech Republic. It offers a broad range of services including luxury accommodation at Hotel Vitality, family atmosphere lodging at Penzion Ovečka, and a unique mountain hotel Mikulášská chata. The resort also provides extensive sports and relaxation facilities, gastronomy options, and event hosting capabilities, targeting both leisure visitors and corporate clients. The website reflects a professional and consistent brand image with clear navigation and relevant content for its audience. Technically, the website employs a mix of modern and legacy technologies including Google Analytics, Google Tag Manager, YouTube iframe API, and Google Maps API. It uses jQuery 1.7.1, which is outdated and may pose security risks. The site is mobile optimized and includes cookie consent mechanisms, but lacks visible privacy and terms of service pages, which are important for compliance. Performance is moderate, and SEO practices are adequately implemented. From a security perspective, the site uses HTTPS and has a cookie consent banner, but lacks explicit security headers and updated libraries. No WHOIS data was found, which raises concerns about domain legitimacy and trustworthiness. Contact information is comprehensive, but no formal security or incident response policies are published. Overall, the security posture is moderate but could be improved with better compliance documentation and technical hardening. The overall risk is moderate with recommendations to improve privacy compliance, update technical components, and enhance security headers. The business appears legitimate based on content and partner relationships, but domain registration opacity warrants further verification.

-
-
-
-
-
-
-
hospitalityleisuresportsgastronomywellness+3 more
Google AnalyticsGoogle Tag ManagerYouTube iframe APIGoogle Maps API+3

Partner Domains:

beskydgolf.com
partner
steelring.cz
partner

+3 more partners

2025-07-31T03:24:27.771Z
S

Saint-Gobain Construction Products CZ a.s.

weber-terranova.cz

66
ManufacturingCzech RepubliclargeMEDIUM

Saint-Gobain Construction Products CZ a.s., operating the website www.cz.weber, is a leading manufacturer and supplier of building materials in the Czech Republic, specializing in facades, plasters, insulation, flooring, adhesives, and sealants. The website targets professionals such as architects, developers, investors, and end consumers, offering comprehensive product information, technical support, online tools, and educational resources. The company benefits from strong brand recognition as part of the Saint-Gobain group. Technically, the website is built on Drupal CMS with modern web technologies including Google Tag Manager, YouTube integration, and OneTrust for cookie consent, providing a good user experience with mobile optimization and accessibility features. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though explicit security headers and published security policies are absent. WHOIS data is incomplete and malformed, limiting domain registration trust verification, but the website's professional content and official company information support legitimacy. Overall, the site is well-maintained, secure, and compliant with privacy regulations, serving as a reliable digital presence for the company.

70
50
17
70
65
70
100
constructionbuildingmaterialsfacadesinsulationplaster+4 more
Google Tag ManagerYouTube iframe APIOneTrust Cookie ConsentDrupal CMS+5

Partner Domains:

www.weber-kalkulator.cz
partner
www.navrhni-si-fasadu.cz
partner

+2 more partners

2025-07-31T02:17:42.969Z