Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150016
Websites
130
Industries
113
Countries
52
Avg Score
Page 158 of 1026|Showing 7851-7900 of 51300
oikoumene.org favicon

World Council of Churches

oikoumene.org

62
Non-profitSwitzerlandlargeMEDIUM

The World Council of Churches website serves as the digital presence for a large, established non-profit organization dedicated to fostering unity, justice, and peace among global Christian churches. The site offers rich content including news, events, resources, and educational materials, targeting a worldwide ecumenical audience. The organization is well-positioned in its sector with a history dating back to 1948 and a domain registered since 2003, reflecting stability and credibility. Technically, the website is built on Drupal 11, leveraging modern web technologies and hosted with Cloudflare DNS services. It demonstrates good mobile optimization, accessibility, and SEO practices. The presence of Google Analytics and social sharing tools indicates moderate user tracking balanced with privacy compliance, including a clear cookie consent mechanism. From a security perspective, the site enforces HTTPS, employs standard security headers, and restricts domain transfers, contributing to a strong security posture. However, DNSSEC is not enabled, and explicit security policies or incident response contacts are not published, representing areas for improvement. Overall, the website is professional, trustworthy, and safe for general audiences, with no adult or questionable content detected. The domain registration and website content are consistent, supporting a high legitimacy score. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and adding vulnerability disclosure information to enhance transparency and trust.

65
53
2
55
75
60
100
ecumenicalchurchnon-profitfaithunity+4 more
Drupal 11Google Tag ManagerAddToAny sharingCloudflare DNS
2025-10-24T22:24:50.414Z
vivaconagua.ch favicon

Viva con Agua

vivaconagua.ch

54
Non-profitSwitzerlandmediumMEDIUM

Viva con Agua is a non-profit network dedicated to ensuring global access to clean drinking water. The organization operates primarily in Switzerland and targets a general audience interested in charitable causes and sustainability. Their website serves as an information hub and fundraising platform, promoting their water projects and branded mineral water. The site is multilingual, supporting German, French, and English, reflecting their international outreach. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO for optimization, Google Tag Manager for analytics, and multilingual support via WPML. The site demonstrates good mobile optimization and moderate performance, with a clean and professional design that enhances user experience. However, some accessibility features could be improved. From a security perspective, the site uses HTTPS with excellent SSL configuration and employs best practices such as no exposed sensitive data and secure script loading. Nonetheless, it lacks important security headers and formalized security policies such as a security.txt or incident response contacts. Privacy compliance is limited due to the absence of explicit privacy and cookie policies or consent mechanisms. Overall, Viva con Agua's website is a credible and trustworthy platform with strong business credibility and a good security posture. To further enhance their digital maturity and compliance, they should implement comprehensive privacy and cookie policies, add security headers, and provide clear incident response information.

15
70
17
70
67
75
40
non-profitcleanwaterfundraisingcharityenvironment+1 more
WordPressYoast SEOGoogle Tag ManagerWPML (multilingual CMS)+3
2025-10-24T22:24:45.404Z
treezor.com favicon

Treezor

treezor.com

76
FinanceFrancemediumLOW

Treezor is a European leader in Banking-as-a-Service, providing a comprehensive modular platform that enables fintechs and large businesses to embed financial services seamlessly into their customer journeys. The company offers a wide range of services including core banking, payment issuing and acquiring, SEPA payments, KYC/KYB compliance, and credit solutions. Their market position is strong within Europe, supported by a professional website with rich content, multilingual support, and visible trust indicators such as PCI DSS certification and client success stories. Technically, the website is built on WordPress with modern tools like WPBakery, jQuery, and Swiper.js, and integrates Google Analytics and Tag Manager for analytics. The site is mobile-optimized and SEO-friendly, though some accessibility features could be improved. Security posture is solid with HTTPS enforced and PCI DSS certification, but lacks some security headers and explicit incident response contact information. The WHOIS data is missing, which raises some concerns about domain registration transparency, but the professional presentation and business legitimacy mitigate this risk. No blocking or WAF challenges were detected, allowing full content analysis. Overall, the site demonstrates a mature digital presence with good security and compliance practices, suitable for its fintech audience. Recommendations include enhancing security headers, publishing an incident response policy, adding vulnerability disclosure mechanisms, and improving accessibility to further strengthen trust and compliance.

80
73
17
83
90
85
100
banking-as-a-serviceembeddedfinancefintechpaymentsolutionskyc+2 more
WordPressWPBakery Page BuilderjQuerySwiper.js+3

Partner Domains:

docs.treezor.com
service
careers.treezor.com
service
2025-10-24T22:24:20.305Z
mosaiq.ch favicon

Mosaiq

mosaiq.ch

51
OtherSwitzerlandsmallMEDIUM

Mosaiq is a Swiss-based full-service marketing and communication agency specializing in integrated brand success. The company offers a broad range of services including consulting, content marketing, creative design, online marketing, and web development. Positioned as a trusted partner for small and medium-sized enterprises in the Mittelland region, Mosaiq emphasizes comprehensive brand identity and multi-channel communication strategies. The website reflects a professional and modern digital presence with strong branding consistency and client testimonials that reinforce trust. Technically, the website is built on WordPress with UIkit framework and leverages modern tools such as Google Tag Manager, Microsoft Clarity, and Brevo for marketing automation. The site is mobile-optimized, accessible, and SEO-friendly, indicating a mature digital infrastructure. Security measures include HTTPS enforcement and use of Google reCAPTCHA, although some security headers could be enhanced. The security posture is solid with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a clear privacy policy, cookie consent mechanism, and GDPR adherence. However, there is no explicit security policy or incident response information publicly available. Overall, the website and domain registration data indicate a legitimate and trustworthy business with a strong online presence. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and improving incident response contact visibility to further strengthen security and trust.

25
68
2
77
72
80
-
marketingcommunicationagencyfullservicebranding+3 more
jQueryGoogle Tag ManagerGoogle reCAPTCHABrevo (Sendinblue) SDK+3
2025-10-24T22:24:09.963Z
B

Bayer AG

bayer.de

65
HealthcareGermanyenterpriseMEDIUM

Bayer AG is a globally recognized enterprise operating primarily in healthcare, agriculture, and related life sciences sectors. The website serves as the German country platform, providing localized content, news, and corporate information. Bayer holds a strong market position as a leader in pharmaceuticals and crop science, supported by a large enterprise scale and multiple subsidiaries such as Monsanto and Covestro. The site reflects a professional and consistent brand image with comprehensive content tailored to a broad audience including customers, investors, and partners. Technically, the website is built on Drupal 11, leveraging modern web technologies and third-party services such as Google Analytics, Hotjar, and OneTrust for cookie compliance. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and employs security best practices including cookie consent mechanisms and security modules. However, explicit security headers like Content-Security-Policy and X-Frame-Options were not confirmed in the HTML and should be verified. No vulnerabilities or exposed sensitive data were detected. The absence of a public incident response or vulnerability disclosure page suggests an area for improvement. Overall, the website is trustworthy, compliant with GDPR, and professionally maintained. The missing WHOIS data is likely due to registry restrictions or privacy protection and does not detract from the site's legitimacy. Strategic recommendations include enhancing security header implementation, publishing incident response policies, and continuous monitoring of third-party libraries for vulnerabilities.

20
88
2
75
72
80
100
healthcareagriculturecorporategdprdrupal+2 more
Drupal 11jQuery UIGoogle Tag ManagerGoogle Analytics+4

Partner Domains:

monsanto.com
subsidiary
covestro.com
subsidiary

+1 more partners

2025-10-24T22:23:19.515Z
inputinterior.se favicon

Input interior

inputinterior.se

47
HospitalitySwedenlargeHIGH

Input interiör is a leading independent interior design group in the Nordic region, specializing in tailored interior solutions for offices, hospitality, education, and healthcare sectors. The company operates multiple showrooms and offers a broad product range with a strong emphasis on sustainability and functionality. Their market position is strong, supported by certifications and a professional digital presence. Technically, the website is built on WordPress with modern plugins and frameworks, optimized for performance, SEO, and mobile responsiveness. The use of Google Tag Manager and reCAPTCHA indicates a mature digital infrastructure. Security practices are good with HTTPS and cookie consent mechanisms, though some HTTP security headers could be improved. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent. Contact information is clearly presented, enhancing business credibility. Overall, the website and business present a low risk profile with strong trust indicators. The missing WHOIS data for the subdomain is not a significant concern given the overall professionalism and transparency of the site. Strategic recommendations include enhancing HTTP security headers and publishing a vulnerability disclosure policy.

-
25
17
75
-
70
100
interiordesignfurniturenordicsustainabilityb2b+3 more
WordPressYoast SEOWP RocketjQuery+8

Partner Domains:

inputinterior.com
sister
inputinterior.dk
sister

+3 more partners

2025-10-24T22:21:28.565Z
discoverlexus.com favicon

Lexus

discoverlexus.com

60
TransportationN/alargeMEDIUM

DiscoverLexus.com serves as a global lifestyle and brand marketing platform for Lexus, a premium automotive brand. The website focuses on delivering luxury and lifestyle content that aligns with Lexus's market positioning as a leader in the transportation sector. The site targets luxury vehicle enthusiasts and Lexus customers worldwide, providing brand storytelling and vehicle-related information. The business model centers on brand engagement and lifestyle marketing rather than direct sales. The domain age and WHOIS data support the legitimacy and maturity of the brand presence online. Technically, the website employs modern frontend technologies including Vue.js and Nuxt.js, with a CMS likely based on Statamic. Hosting is supported by Microsoft Azure DNS infrastructure. The site demonstrates good mobile optimization and SEO practices, with cookie consent managed by Cookiebot. Performance is moderate, with room for improvement in accessibility and security headers. From a security perspective, the site uses HTTPS and enforces domain transfer protection. However, DNSSEC is not enabled, and security headers are not detected in the provided data. There is no visible privacy policy or terms of service, which are critical for compliance and user trust. No incident response or vulnerability disclosure mechanisms are found. The site integrates Google Tag Manager for analytics and tracking, balanced with a cookie consent mechanism. Overall, the website is professionally designed and trustworthy, with a strong brand presence. To enhance security posture and compliance, it is recommended to publish privacy and terms policies, enable DNSSEC, implement security headers, and provide clear contact information for incident response. These steps will improve user trust, regulatory compliance, and resilience against threats.

15
83
2
60
72
70
100
luxuryautomotivelexustransportationbrand+1 more
Vue.jsNuxt.jsCookiebotYouTube iframe API+1
2025-10-24T22:20:33.280Z
catchthespirit2024.com favicon

WOMEN'S EHF EURO 2024

catchthespirit2024.com

50
OtherHungarysmallMEDIUM

The website catchthespirit2024.com serves as the official digital platform for the Women’s EHF EURO 2024 Handball Championship, providing comprehensive event information including news, schedules, host city details, ticketing links, and multimedia content. It targets handball fans and event attendees, positioning itself as the authoritative source for the championship. The site leverages WordPress CMS with popular plugins such as Elementor and Yoast SEO, and integrates Cookiebot for GDPR-compliant cookie consent management. External partnerships for ticketing and merchandise are clearly linked, enhancing the user journey for event participation. Technically, the site employs modern web technologies including jQuery, Bootstrap, and Google Tag Manager for analytics. The site is mobile-optimized and SEO-friendly, with multilingual support via WPML. Security posture is adequate with HTTPS enforced and domain transfer protections in place, though the absence of DNSSEC and security headers suggests room for improvement. Privacy compliance is partial due to missing explicit privacy and terms of service pages. No direct contact information or incident response details are published, which could impact user trust and compliance. Overall, the website presents a professional and trustworthy front for the event, with good content quality and user experience. However, enhancing privacy disclosures, security headers, and contact transparency would strengthen compliance and security posture. The domain registration is consistent with the event timeline and shows no suspicious patterns, supporting legitimacy.

15
68
17
70
62
70
20
sportshandballeventwomeneuropeanchampionship+4 more
jQuery 3.6.0BootstrapYoast SEO pluginEasy Fancybox+3

Partner Domains:

merch.eurohandball.com
partner
tickets.eurohandball.com
partner

+3 more partners

2025-10-24T22:09:41.403Z
apobank.de favicon

Deutsche Apotheker- und Ärztebank

apobank.de

70
FinanceGermanylargeMEDIUM

Deutsche Apotheker- und Ärztebank (apoBank) is a specialized financial institution serving healthcare professionals and their organizations in Germany. The website clearly communicates its banking and financial services tailored to this niche, including accounts, financing, asset management, and insurance products. The bank positions itself as the leading financial service provider in the healthcare sector, targeting professionals such as pharmacists, doctors, and related entities. The business model focuses on specialized banking solutions with a strong emphasis on customer service and sector expertise. Technically, the website is built on a modern infrastructure using Magnolia CMS, jQuery UI, and integrates consent management via Usercentrics and CAPTCHA protection through FriendlyCaptcha. The site is hosted on UltraDNS name servers and employs HTTPS with proper security headers, ensuring secure and reliable access. The design is professional, mobile-optimized, and accessible, providing a positive user experience. From a security perspective, the site demonstrates good practices including HTTPS enforcement, CAPTCHA on forms, and privacy compliance with GDPR. However, there is room for improvement by adding additional security headers and publishing incident response contacts or a security.txt file. No vulnerabilities or suspicious content were detected. Overall, the apoBank website is a trustworthy, professional, and secure platform that aligns well with its business goals and regulatory requirements. It effectively serves its target audience with clear communication and robust technical implementation.

85
73
2
65
77
70
100
bankinghealthcarefinanceonlinebankingprivacy+3 more
JavaScriptjQuery UIGoogle Tag ManagerUsercentrics CMP+1
2025-10-24T21:59:47.204Z
sciarc.edu favicon

Southern California Institute of Architecture

sciarc.edu

64
EducationUnited StatesmediumMEDIUM

The Southern California Institute of Architecture (SCI-Arc) is a well-established independent architecture school located in Los Angeles, offering undergraduate, graduate, and postgraduate programs. The institution is recognized for its innovative approach to architectural education and is NAAB accredited. The website reflects a professional educational institution with a clear focus on architecture students and prospective applicants. The site provides comprehensive information about programs, events, and admissions, supported by rich multimedia content and consistent branding. Technically, the website employs modern tracking and analytics tools including Google Analytics, Google Tag Manager, and Facebook Pixel, alongside video hosting via Wistia and smart form integration from HeyHalda. The site is hosted with assets served from Google Cloud Storage, ensuring reliable performance. The website is mobile-optimized, accessible, and SEO-friendly, though some improvements in security headers and cookie consent mechanisms are recommended. From a security perspective, the site uses HTTPS with good SSL configuration but lacks visible security headers and cookie consent banners, which are important for compliance and security best practices. The WHOIS data for the domain is unavailable, which is common for .edu domains but slightly reduces transparency. Overall, the security posture is solid but could be enhanced by adding security policies and incident response contacts. The overall risk assessment is low with a high degree of trustworthiness based on content quality, business credibility, and technical implementation. Strategic recommendations include implementing cookie consent, enhancing security headers, and publishing security and incident response policies to further strengthen compliance and trust.

20
58
17
80
72
85
100
sci-arcarchitectureeducationuniversitygraduate+4 more
Google AnalyticsGoogle Tag ManagerFacebook PixelWistia video player+2

Partner Domains:

apply.sciarc.edu
service
my.sciarc.edu
service
2025-10-24T21:59:15.331Z
billwalleurope.com favicon

Metropol Kurier GmbH

billwalleurope.com

53
RetailSwitzerlandsmallMEDIUM

Bill Wall Europe operates as the official European distributor for Bill Wall Leather, specializing in artwork, leather goods, and jewelry that have been recognized since 1985. The company targets collectors, retailers, and enthusiasts within Europe, positioning itself as a niche distributor with a strong brand association to Bill Wall Leather. The business model focuses on distribution and retail, supported by a professional website that provides product impressions, contact information, and retail locations. The company is based in Switzerland and operates under the legal entity Metropol Kurier GmbH. Technically, the website is built on WordPress using the Elementor page builder and several premium plugins, including Google Analytics and Google Maps integrations. The hosting is likely provided by Hostpoint AG, inferred from the DNS nameservers. The site demonstrates moderate performance with good mobile optimization and basic accessibility features. SEO is well addressed with proper meta tags, Open Graph, and structured data. From a security perspective, the site uses HTTPS and Google reCAPTCHA v3 on its contact form, which are positive indicators. However, it lacks DNSSEC and advanced security headers, which could enhance its security posture. No incident response or vulnerability disclosure policies are present, and cookie consent mechanisms are missing, indicating partial GDPR compliance. Overall, the security posture is moderate but could be improved. The overall risk assessment suggests a trustworthy and professional online presence with minor compliance and security gaps. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent, and publishing incident response information to strengthen trust and compliance.

15
65
17
70
95
60
20
artworkleatherjewelrydistributionretail+5 more
WordPressElementorGoogle AnalyticsGoogle Tag Manager+3

Partner Domains:

billwallleather.com
partner
lunique-foundation.org
partner
2025-10-24T21:58:52.050Z
tennisimnorden.de favicon

Deutscher Tennis Bund (DTB)

tennisimnorden.de

71
OtherGermanylargeMEDIUM

The website tennis.de serves as the official platform for the Deutscher Tennis Bund (DTB), focusing on providing comprehensive information about the Regionalliga Nord-Ost and related tennis leagues in Germany. It offers league results, official documents, contact details for league officials, and integrates with the nuLiga platform for result entry. The site targets tennis players, clubs, officials, and fans primarily in northern and eastern Germany. The business model revolves around sports federation services and information dissemination. Technically, the site is built on Adobe Experience Manager (AEM) with modern JavaScript frameworks including ZK Framework and Litepicker. It is hosted on Adobe's cloud infrastructure, ensuring reliable performance and scalability. The site is mobile-optimized, accessible, and SEO-friendly, with a moderate performance profile. Cookie consent is managed via Cookiebot, and Google Tag Manager is used for analytics and marketing. From a security perspective, the site enforces HTTPS and uses consent management for cookies, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or suspicious content were detected. The domain WHOIS data indicates professional management consistent with a reputable organization. Overall, the website is a trustworthy, well-maintained official sports federation site with good content quality and technical implementation. Strategic improvements could include enhanced security headers and publishing a security policy to further strengthen trust and compliance.

80
83
7
70
82
65
100
tennissportsregionalligagermanyleague+3 more
Adobe Experience Manager (AEM)JavaScriptZK Framework (ZKau)Litepicker (date picker)+1

Partner Domains:

dunlopsports.com
partner
2025-10-24T21:57:32.554Z
naturenergie-netze.de favicon

naturenergie netze

naturenergie-netze.de

74
EnergyGermanymediumMEDIUM

naturenergie netze is a regional energy network operator based in Südbaden, Germany, providing essential utility services including electricity, water, lighting, communication technology, and training. The company operates as part of the Energiedienst-Gruppe, positioning itself as a key regional player in energy distribution and infrastructure services. The website reflects a professional and consistent brand presence targeting customers and partners within the energy sector in the region. Technically, the site is built on TYPO3 CMS, hosted on Azure DNS infrastructure, and integrates modern web technologies including Cookiebot for GDPR-compliant cookie management, Google Analytics, and social media tracking tools. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. Security posture is solid with HTTPS enforced and use of reputable third-party scripts, although explicit security headers and incident response information are not clearly published. Privacy compliance is well addressed through a comprehensive privacy policy and granular cookie consent mechanisms. Overall, the website is trustworthy, professional, and compliant with relevant regulations, supporting the company's business credibility and digital maturity.

55
83
17
85
100
70
100
energynetworkoperatorutilitiesgdprcookieconsent+2 more
TYPO3 CMSJavaScriptCSSCookiebot+4
2025-10-24T21:43:29.054Z
transports-allemand.fr favicon

Transports Allemand

transports-allemand.fr

46
TransportationFrancemediumHIGH

Transports Allemand is a well-established French transportation and logistics company specializing in road freight, storage, and freight forwarding services. Founded in 1942, it operates primarily in the regional, national, and international transport sectors and is a member of the ASTRE European transport group. The company emphasizes reliability, rapid delivery, and sustainable practices, including a fully Euro 6 compliant vehicle fleet and an ongoing RSE commitment. Their website reflects a professional business presence with clear service offerings and contact information. Technically, the website is built on WordPress using Elementor and Yoast SEO, hosted by OVH, and incorporates modern web technologies including Google Tag Manager and Facebook SDK for analytics and marketing. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Security posture is good with HTTPS enforced and cookie consent implemented, but lacks advanced security headers and explicit security policies. Overall, the security posture is solid with no visible vulnerabilities or exposed sensitive data. The domain registration data aligns well with the company's history and business claims, supporting legitimacy. The site complies with GDPR through cookie consent and privacy policy presence. No WAF or blocking mechanisms were detected, allowing full content access. Strategically, the company should enhance its security transparency by publishing security policies and incident response contacts, improve accessibility, and maintain regular audits of third-party scripts. These steps will strengthen trust and compliance in an increasingly regulated environment.

30
40
2
70
65
60
20
transportlogisticsfreighttransportroutieraffrtement+4 more
WordPressElementorYoast SEOGoogle Tag Manager+1

Partner Domains:

astre.fr
partner
2025-10-24T21:42:08.836Z
manitou.com favicon

Manitou

manitou.com

64
ManufacturingFrancelargeMEDIUM

Manitou is a well-established French manufacturing company specializing in handling, lifting, and earthmoving equipment for diverse sectors including agriculture, construction, and industries. With over 60 years of experience, the company offers a broad range of machinery such as telehandlers, forklift trucks, and aerial work platforms, complemented by attachments and services like financing and maintenance. The website reflects a mature global brand with extensive multilingual support and a professional digital presence. Technically, the website is built on Drupal 10, leveraging modern web technologies including Google Tag Manager and Matomo for analytics. The site is mobile-optimized, accessible, and SEO-friendly, providing a good user experience. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, though there is room for improvement in security headers and incident response transparency. The WHOIS data is notably missing, which reduces transparency but is likely due to privacy protection services. Despite this, the website's professional content, structured data, and social media presence support its legitimacy. No WAF or blocking mechanisms were detected, allowing full content access. Overall, Manitou's website demonstrates strong business credibility and technical maturity, with minor security and transparency gaps that can be addressed to enhance trust and compliance.

40
35
17
85
75
80
100
manufacturinghandlingequipmenttelehandlersforklifttrucksconstruction+2 more
Drupal 10Google Tag ManagerMatomo AnalyticsSlick Slider+1
2025-10-24T21:41:42.713Z