Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

154699
Websites
130
Industries
113
Countries
52
Avg Score
Page 1824 of 3094|Showing 91151-91200 of 154699
I

Indeed

indeed.co.uk

56
OtherUnited KingdomenterpriseMEDIUM

Indeed is a globally recognized employment-related search engine and recruitment platform, connecting job seekers with employers. The website is a subdomain of indeed.com, targeting primarily UK users. The platform offers services such as job search, company reviews, salary information, resume uploads, and employer job postings. It operates under the parent company Recruit Holdings Co., Ltd., positioning itself as a leading player in the online recruitment industry. Technically, the site is protected by Cloudflare's security infrastructure, including Turnstile CAPTCHA, which currently blocks full content access. This indicates a mature security posture aimed at mitigating automated threats and bots. However, this protection limits the ability to fully assess the website's technical implementation, performance, and content quality. From a security perspective, the presence of Cloudflare WAF and CAPTCHA is a strong defense mechanism. Yet, the lack of visible security headers, privacy policies, and contact information on the challenge page restricts a comprehensive security and compliance evaluation. The WHOIS data for the subdomain is unavailable, which is typical for subdomains managed under a parent domain, but this limits domain legitimacy verification. Overall, the site is safe for general audiences, with no adult or explicit content detected. The blocking by Cloudflare reduces the AI scoring significantly, and strategic recommendations include improving transparency of policies and ensuring accessibility beyond security challenges for better user experience and compliance.

55
35
17
80
57
85
100
jobsearchemploymentrecruitmentcloudflaresecuritychallenge
CloudflareJavaScriptSVGCSS variables+1
2025-07-27T02:09:42.383Z
redcar.io favicon

Redcar

redcar.io

66
TechnologyN/asmallMEDIUM

Redcar is a technology company specializing in AI-powered B2B sales agents designed to automate and scale sales outreach and lead qualification. Their flagship product, the F1 Agent, offers customizable AI-driven research, intent detection, and outreach capabilities tailored to diverse go-to-market strategies. Positioned as a flexible and accurate AI sales solution, Redcar has secured venture funding and demonstrates trustworthiness through SOC 2 Type 2 certification. The website is professionally designed, mobile-optimized, and integrates multiple analytics and tracking tools to monitor user engagement and performance. Technically, Redcar leverages modern web technologies including Webflow CMS, Google Fonts, Google Analytics, Hotjar, and other marketing and tracking platforms. The site is hosted on Webflow, ensuring reliable performance and scalability. While the site is well-optimized for SEO and user experience, there is room for improvement in accessibility and security headers implementation. Privacy compliance is addressed with a comprehensive privacy policy and terms of service, though cookie consent mechanisms are absent. From a security perspective, the site enforces HTTPS and displays SOC 2 certification, indicating a commitment to data security and compliance. However, the absence of explicit security headers and incident response information suggests opportunities to strengthen the security posture. The WHOIS data is privacy protected or unavailable, which is typical for startups but limits external verification of domain ownership. Overall, Redcar presents a credible and professional online presence with strong business and technical foundations. Strategic recommendations include enhancing security headers, implementing cookie consent, publishing security policies, and improving transparency around incident response to further build trust and compliance.

30
53
17
85
72
85
100
aisalesb2bsaassalesautomationaiagent+1 more
Webflow CMSGoogle FontsGoogle Analytics (gtag.js)Hotjar+3

Partner Domains:

jobs.gem.com
partner
trust.delve.co
partner

+1 more partners

2025-07-27T02:09:10.852Z
cplicensing.net favicon

NDCHost, Inc.

cplicensing.net

59
TechnologyN/asmallMEDIUM

The website cplicensing.net operates as an authorized distributor of cPanel licenses and related add-ons, primarily targeting web hosting providers and server administrators. It offers metal and cloud licenses with competitive pricing and additional plugins to enhance server management. The business is closely associated with NDCHost, Inc., which appears to be the parent company and hosting provider. The site demonstrates a professional presence with clear navigation, relevant content, and trust indicators such as authorized distributor badges and customer testimonials. From a technical perspective, the website uses a traditional tech stack including jQuery 1.12.4, Bootstrap, Font Awesome, Google Analytics, and Tawk.to live chat. The site is mobile optimized with good SEO practices but uses an outdated jQuery version which could pose security risks. No CMS or advanced frameworks were detected. Hosting is likely provided by NDCHost, Inc. Security posture is moderate; HTTPS is implied but no explicit security headers were detected in the provided data. No sensitive data exposure or vulnerable libraries were found, but the absence of cookie consent mechanisms and explicit security policies indicates room for improvement. The WHOIS data is missing or unavailable, which reduces trustworthiness and suggests the domain registration status should be verified externally. Overall, the website is functional, professional, and trustworthy from a business perspective but would benefit from enhanced security practices, updated libraries, and improved privacy compliance to strengthen its risk profile and user trust.

15
53
10
85
62
70
100
cpanelwhmlicensingwebhostingserverlicense+4 more
jQuery 1.12.4Bootstrap CSS/JSFont AwesomeGoogle Analytics+1

Partner Domains:

ndchost.com
partner
customer.ndchost.com
service

+1 more partners

2025-07-27T01:08:00.687Z
A

aurora

auri.gay

55
Non-profitAustriasmallMEDIUM

The website auri.gay represents a personal and community-focused presence for an individual known as ␇-707570 or aurora, a robot-dog entity who actively volunteers at the German non-profit Queer Lexikon and engages with various social platforms. The site serves primarily as a contact and social hub rather than a commercial or corporate business, targeting a general audience interested in queer community and personal expression. Technically, the website is built with basic HTML and CSS, hosted by OVH sas, and shows moderate performance and basic mobile optimization. There is no evidence of advanced frameworks or CMS usage. The site lacks HTTPS status information and security headers, which limits its security posture. No forms or data collection mechanisms are present, reducing privacy risks but also limiting interactivity. From a security perspective, the domain is registered with OVH and protected against unauthorized deletion or transfer, indicating a reasonable level of domain security. However, the absence of HTTPS confirmation and security headers, as well as missing privacy and cookie policies, represent compliance and security gaps. No vulnerabilities or malicious content were detected, and the content is safe for general audiences. Overall, the site is a well-maintained personal presence with good content quality and moderate technical implementation but requires improvements in security and privacy compliance to enhance trust and protection for visitors.

15
50
17
40
75
75
100
personalcommunityqueerrobot-dogvolunteering+1 more
HTML5CSS3
2025-07-27T01:07:50.625Z
S

Sammy Fox

theresnotime.co.uk

60
TechnologyUnited KingdomsmallMEDIUM

The website 'theresnotime.co.uk' serves as a personal professional portfolio and blog for Sammy Fox, a software engineer affiliated with the Wikimedia Foundation. The site targets a general audience interested in technology, open source, and community engagement, showcasing professional projects, social profiles, and personal interests. The business model is individual-centric, focusing on personal branding and community contributions rather than commercial services. Technically, the site employs modern web standards including HTML5, CSS3, JavaScript, and JSON-LD structured data. It references technologies such as Python, Node.js, and PHP through linked projects and packages. Hosting appears to be provided by Mythic Beasts, and the site uses HTTPS with strong SSL configuration. Performance and mobile optimization are good, though accessibility features are basic. SEO is well addressed through meta tags and structured data. From a security perspective, the site benefits from HTTPS and publishes a public PGP key, indicating a commitment to secure communications. However, no explicit security headers were detected, and there is no cookie consent mechanism despite the use of tracking pixels. The WHOIS data is unavailable due to domain naming rules violations, which raises questions about domain registration legitimacy but does not directly impact the website's content quality or security posture. Overall, the website is professional, trustworthy, and safe for general audiences. The main risks relate to privacy compliance and domain registration transparency. Strategic recommendations include implementing security headers, adding a cookie consent mechanism, publishing security and incident response policies, and clarifying domain registration status to enhance trust.

30
50
2
75
65
85
100
softwareengineerpersonalwebsiteportfolioopensourcetechnology+2 more
HTML5CSS3JavaScriptFontAwesome+4
2025-07-27T01:07:40.576Z
P

Private by Design, LLC

sophari.org

42
OtherUnited StatessmallHIGH

Sophari.org is a personal website operated by an individual or small entity registered as Private by Design, LLC in the US. The site serves as a platform for sharing personal projects, blogs, social links, and various interests with an informal and experimental design approach. It targets a general internet audience interested in niche internet culture and personal content. The business model is non-commercial and hobbyist in nature, with no clear market positioning beyond personal expression. Technically, the website is built with basic HTML and CSS, referencing a custom 'infernal-engine' technology. Hosting is provided by Porkbun LLC, with no CMS or advanced frameworks detected. The site shows moderate performance and basic mobile optimization but lacks SEO and accessibility best practices. No analytics or tracking services are employed, reflecting minimal data collection. From a security perspective, the site lacks HTTPS information, security headers, DNSSEC, and any formal security or privacy policies. No contact information or incident response channels are provided, limiting trust and compliance posture. The domain registration is transparent and consistent with the site's personal nature, with no suspicious WHOIS patterns. Overall, the security posture is weak, and privacy compliance is absent. The overall risk is low given the non-commercial, personal nature of the site, but improvements in security, privacy policies, and contact transparency are recommended to enhance trust and compliance.

15
35
2
70
52
75
40
personalinformalexperimentalprojectsblog+1 more
HTML5CSSInfernal-engine (custom)
2025-07-27T01:07:20.478Z
zvava.org favicon

Private by Design, LLC

zvava.org

47
OtherUnited StatessmallHIGH

zvava.org is a personal website and wiki maintained by an individual named Sophia (Sophie). The site serves as a digital brain-out-on-a-table, hosting a variety of personal projects, thoughts, and curated content spanning software, hardware, music, internet culture, and art. It targets a niche audience interested in open source, privacy, and internet subcultures. The business model is primarily personal/hobbyist with donation support. The domain is registered with a privacy-focused entity in the US, consistent with the site's privacy-conscious ethos. Technically, the site uses standard HTML5, CSS3, and JavaScript without major frameworks or CMS. The design is good with clear navigation and mobile optimization. Performance is moderate, and accessibility is basic. No analytics or advertising scripts are present, indicating minimal user tracking. However, the site lacks privacy and cookie policies, security headers, and DNSSEC, which are areas for improvement. From a security perspective, the domain is protected against unauthorized deletion and transfer, but DNSSEC is not enabled. No security headers were detected, and no forms collect user data, reducing attack surface. The site does not provide a security policy or incident response contacts, limiting transparency. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk is low given the personal nature and limited data collection, but compliance gaps exist. Strategic recommendations include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and publishing a security.txt file. These steps would improve trust, compliance, and security posture.

15
35
17
70
52
75
40
personalwikiopensourceprivacytechnology+1 more
HTML5CSS3JavaScript
2025-07-27T01:06:55.366Z
P

Private by Design, LLC

noe.sh

58
TechnologyUnited StatessmallMEDIUM

The website noe.sh is a personal and creative project launched in early 2024 by Private by Design, LLC, a US-based entity. It features a unique chat-like interface with references to 'doll' and 'owner' interactions and links to various creative and technical projects such as dollcode transcoder, shader art, and Planetside 2 population stats. The site targets a general audience interested in niche technology and creative coding projects. The business model and market position are not clearly defined, indicating a small-scale or hobbyist operation. Technically, the site is built with basic HTML and CSS, hosted behind Cloudflare DNS services, but lacks modern frameworks or CMS platforms. Performance is moderate with basic mobile optimization and accessibility. SEO optimization is minimal, and no analytics or advertising tools are detected, indicating limited data collection and tracking. From a security perspective, the site uses HTTPS and has domain status protections to prevent unauthorized changes. However, DNSSEC is not enabled, and no security headers are present, which could be improved. There are no visible privacy, cookie, or incident response policies, and no contact information is provided, limiting compliance and trust signals. Overall, the site is safe with no adult or explicit content, but it lacks professional business and security practices. The domain registration is transparent and consistent with the site's nature. Strategic improvements in privacy compliance, security headers, and contact information would enhance trust and security posture.

15
50
17
70
75
75
100
personalcreativetechnologychatdollcode+2 more
HTML5CSS3Cloudflare DNS
2025-07-27T01:06:50.358Z
testsieger.de favicon

Testsieger.de Vergleichsportal GmbH

testsieger.de

57
RetailGermanymediumMEDIUM

Testsieger.de Vergleichsportal GmbH operates a comprehensive German-language product comparison and review website, offering over 700,000 test reports across numerous product categories. The platform targets German-speaking consumers seeking reliable product information and price comparisons to aid purchasing decisions. The business model is primarily based on affiliate marketing and advertising, supported by extensive content and user reviews. Technically, the website employs modern JavaScript frameworks (likely Vue.js), modular scripts, and integrates major analytics and advertising platforms such as Google Tag Manager, Microsoft Clarity, and Bing Ads. The site is well-optimized for SEO, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. Security posture is strong with HTTPS enforced and consent management for GDPR compliance, though explicit security policies and incident response contacts are not publicly available. Overall, the domain and hosting setup are consistent with a legitimate, professional business. Strategic recommendations include publishing dedicated security and incident response policies, implementing a vulnerability disclosure program, and enhancing transparency around data retention. The website is safe for general audiences and demonstrates high professionalism and trustworthiness.

30
40
17
60
62
65
100
productreviewspricecomparisonconsumeradvicegermanmarkete-commerce+3 more
JavaScript ES ModulesGoogle Tag ManagerMicrosoft ClarityBing Ads+2
2025-07-27T01:06:05.151Z
alternate-b2b.de favicon

Alternate GmbH

alternate-b2b.de

52
TechnologyGermanylargeMEDIUM

Alternate GmbH operates the ALTERNATE B2B online shop, a professional e-commerce platform targeting businesses and government agencies in Germany. The company offers a broad range of electronics and technology products, supported by personal service and efficient logistics. The website emphasizes sustainability with CO2-neutral shipping and features a comprehensive product catalog with energy efficiency labels. The platform includes tools such as PC configurators and streamlined returns management, positioning it as a market leader in the B2B electronics retail sector. Technically, the website leverages Jakarta Faces (JSF) framework, Bootstrap 4, FontAwesome, and integrates Usercentrics for cookie consent management. Hosting and DNS are managed via Cloudflare, ensuring good performance and security. The site is mobile-optimized and includes SEO best practices, although accessibility features are basic. Analytics are implemented through Google Tag Manager, with moderate user tracking and good privacy compliance. Security posture is strong with HTTPS enforced, security headers present, and no visible vulnerabilities or exposed sensitive data. However, the site lacks a dedicated security policy or incident response contact information, and does not publish a security.txt file. Cookie consent and GDPR compliance are well managed. The domain WHOIS data is limited but consistent with the brand, and no WAF or blocking mechanisms interfere with content access. Overall, ALTERNATE B2B presents a trustworthy, professional, and secure platform for B2B electronics sales. Strategic improvements could include publishing detailed security policies and enhancing accessibility. The site’s sustainability focus and comprehensive product offerings strengthen its market position.

55
80
2
75
75
50
-
b2belectronicse-commercetechnologysustainability+4 more
Jakarta Faces (JSF)Bootstrap 4FontAwesomeUsercentrics CMP+2
2025-07-27T01:05:55.080Z
drying-little-tears.org favicon

Regine Sixt Children’s Aid Foundation - Drying Little Tears

drying-little-tears.org

62
Non-profitGermanymediumMEDIUM

The Regine Sixt Children’s Aid Foundation, operating under the domain drying-little-tears.org, is a German non-profit organization focused on child welfare projects worldwide. Established in 2019 and backed by the parent company Sixt SE, the foundation runs over 400 projects in more than 65 countries, emphasizing education, healthcare, emergency aid, and social care. The website reflects a professional and consistent brand image, targeting donors, partners, and beneficiaries interested in charitable child aid initiatives. Technically, the website is built on WordPress with Elementor and uses modern tools such as Smart Slider 3, Google Analytics, and Usercentrics for consent management. Hosting is via Amazon AWS infrastructure, ensuring reliable performance and availability. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Security posture is good with HTTPS enforced and domain transfer protection, but lacks advanced security headers and explicit security policies. From a security and compliance perspective, the site does not expose sensitive data and implements cookie consent mechanisms, but lacks visible privacy and terms of service pages. WHOIS data is consistent with the business claims, enhancing trustworthiness. No WAF or blocking mechanisms were detected, allowing full content access. Overall, the site is safe, professional, and trustworthy, with room for improvement in security headers and privacy documentation. Strategic recommendations include enabling DNSSEC, adding comprehensive privacy and security policies, implementing security headers, and conducting regular security audits to maintain and enhance trust and compliance.

15
58
2
85
100
55
100
charitynon-profitchildwelfareeducationhealthcare+3 more
WordPress 6.8.1Elementor 3.27.2Smart Slider 3Google Analytics+2

Partner Domains:

sixt.com
parent
2025-07-27T01:05:40.021Z
P

pkgin, a binary package manager for pkgsrc

pkgin.net

54
TechnologyN/asmallMEDIUM

The website pkgin.net serves as the official project page for pkgin, a binary package manager designed for pkgsrc-based systems such as NetBSD. It provides detailed documentation, usage instructions, and links to the open source code repository on GitHub. The project targets system administrators and users seeking a convenient apt/yum-like tool for managing binary packages on various Unix-like platforms. The site content is technical and focused on software utility rather than commercial business operations. From a technical perspective, the website is simple and functional, relying on static HTML content with minimal external dependencies. The technology stack includes C language for the software, SQLite for package database management, and GitHub for source code hosting. The site is hosted with some assets on Amazon S3 and references official NetBSD documentation. Performance is expected to be fast given the minimalistic design, though mobile optimization and accessibility are basic. Security posture is moderate; no explicit HTTPS or security headers information was found in the provided data, and DNSSEC is not enabled for the domain. No forms or user data collection mechanisms are present, reducing attack surface. However, the absence of privacy, cookie, or terms of service policies indicates compliance gaps. Contact information is limited to IRC channels, with no direct email or phone contacts provided. Overall, the website is a trustworthy and legitimate resource for the pkgin project, with a consistent domain registration history and clear technical focus. Strategic improvements in security configuration, privacy compliance, and contact transparency would enhance trust and user confidence.

15
50
2
60
62
70
100
opensourcepackagemanagernetbsdpkgsrcsoftware+1 more
C languageSQLite3pkg_summary(5)Git+1
2025-07-27T01:05:19.921Z
joeyh.name favicon

Joey Hess

joeyh.name

53
TechnologyN/asmallMEDIUM

The website joeyh.name is a personal technical portfolio and blog belonging to Joey Hess, a free software developer and technologist. The site features a variety of personal and technical content including blog posts, code repositories, talks, and podcasts. The business model is primarily personal branding and knowledge sharing, targeting a general audience interested in technology and free software. The site is positioned as an individual contributor's platform rather than a commercial enterprise. Technically, the site is built using the ikiwiki static site generator, with a simple HTML, CSS, and JavaScript stack. Hosting is under a domain registered with Gandi SAS, a reputable registrar. The site shows moderate performance and basic mobile optimization. SEO and accessibility are basic but functional. No advanced analytics or tracking technologies are detected, indicating a privacy-conscious approach. From a security perspective, the domain status clientTransferProhibited is a positive indicator against unauthorized domain transfers. However, the site lacks security headers, privacy and cookie policies, and vulnerability disclosure mechanisms. No HTTPS status was explicitly detected in the provided data, so SSL configuration is unknown. The site does not appear to use any WAF or security challenge mechanisms, and no vulnerabilities or suspicious patterns were found. Overall, the site is safe, trustworthy, and professionally maintained as a personal technical resource. The main risks relate to lack of formal privacy and security policies, which could be improved to enhance compliance and user trust.

15
50
2
85
85
75
40
personaltechnicalblogfreesoftwareportfolio
HTML5CSSJavaScript
2025-07-27T01:05:09.867Z
S

Student Aid Alliance

studentaidalliance.org

60
EducationUnited StatesmediumMEDIUM

Student Aid Alliance is a well-established coalition of over 40 higher education organizations advocating for increased federal student aid funding in the United States. Their website serves as an informational and advocacy platform, providing policy priorities, updates on funding requests, and calls to action aimed at students, educators, and policymakers. The organization positions itself as a key player in the education advocacy sector, focusing on improving college affordability through federal programs such as Pell Grants and Federal Work-Study. Technically, the website is built on WordPress using common plugins like Yoast SEO and frameworks such as Social Driver. It employs modern web technologies including jQuery and FontAwesome, and is optimized for mobile devices with good SEO practices. The site loads with moderate performance and offers a professional user experience with clear navigation and relevant content. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. However, it lacks DNSSEC and does not implement common security headers, which are recommended to enhance security posture. No privacy or cookie policies are explicitly presented, and no contact information such as emails or phone numbers are directly visible, which may impact user trust and compliance with privacy regulations. Overall, the website is credible and trustworthy with a strong business presence and clear mission. To improve, the organization should consider publishing comprehensive privacy and cookie policies, implementing security headers, enabling DNSSEC, and providing clear contact information to enhance compliance and user confidence.

65
35
17
70
42
70
100
studentaideducationadvocacyfederalfundingnon-profit+2 more
WordPressYoast SEO pluginjQuerySocial Driver Framework+3
2025-07-27T01:02:11.823Z
faustball-liga.de favicon

Faustball Deutschland e.V.

faustball-liga.de

44
OtherGermanymediumHIGH

Faustball Deutschland e.V. operates as the official governing body for the sport of Faustball in Germany, providing comprehensive information on leagues, national and international competitions, training, and community engagement. The website serves players, coaches, fans, and the broader Faustball community with news, event details, and resources. It maintains a strong market position as the authoritative source for Faustball in Germany. Technically, the website is built on WordPress with a modern tech stack including jQuery, WooCommerce, NextGEN Gallery, and Jetpack. Hosting is provided by IONOS, and the site demonstrates good mobile optimization and moderate performance. Privacy compliance is well addressed with GDPR-compliant privacy and cookie policies, including a consent mechanism. From a security perspective, the site uses HTTPS with excellent SSL configuration and implements cookie consent. However, it lacks explicit security headers and published security or incident response policies. No critical vulnerabilities or exposed sensitive data were detected. The site integrates analytics tools such as Google Analytics and Jetpack Stats with moderate user tracking. Overall, the website is professional, trustworthy, and well-maintained, with good content quality and user experience. Strategic improvements could focus on enhancing security headers, publishing security policies, and expanding contact information transparency.

15
60
2
70
62
60
-
sportsfaustballgermanyfaustballdeutschlandfaustballliga+4 more
jQueryWooCommerceNextGEN GalleryJetpack+3
2025-07-27T01:02:01.799Z
sportastic.com favicon

Sportastic

sportastic.com

60
RetailAustriamediumMEDIUM

Sportastic is an Austrian e-commerce retailer specializing in sports equipment for schools, clubs, and leisure activities. The company offers a wide range of over 3,500 sports articles and emphasizes full-service consultation, partnering with public institutions such as BBG and various ministries. The website is professionally designed, mobile-optimized, and provides comprehensive legal and privacy documentation, reflecting a mature digital presence. Technically, the site employs modern JavaScript libraries and integrates multiple marketing and analytics tools including Google Tag Manager, Bing Ads, Mouseflow, and Doofinder search. While the site is performant and well-structured, there is no explicit evidence of advanced security headers or a published security policy, which could be improved. The cookie consent mechanism is robust and GDPR compliant, indicating good privacy practices. Security posture is moderate; HTTPS is used, and CSRF tokens are present, but the absence of WHOIS domain registration data raises concerns about domain legitimacy. No WAF or blocking mechanisms were detected, and the site content is safe for general audiences. Overall, the site scores well on content quality and privacy compliance but should address domain registration transparency and enhance security headers. Strategic recommendations include verifying domain registration details, implementing comprehensive security headers, publishing a security policy and incident response contacts, and auditing third-party scripts regularly to mitigate vulnerabilities.

60
83
17
70
72
60
40
sportse-commerceretailschoolclub+2 more
JavaScriptGoogle Tag ManagerDoofinder searchMouseflow+5
2025-07-27T01:01:40.311Z
kammachi.com favicon

KAMMACHI Consulting GmbH

kammachi.com

51
ManufacturingGermanymediumMEDIUM

KAMMACHI Consulting GmbH is a medium-sized German company specializing in SAP consulting, development, and smart SAP add-ins, primarily serving the construction and manufacturing sectors. Established in 1999 and part of the KIAG Unternehmensgruppe, it serves over 600 clients ranging from mid-sized businesses to multinational corporations. The company emphasizes human-centric consulting alongside technical expertise, offering tailored SAP solutions including integration with Lotus Notes and mobile devices. Their website reflects a professional and consistent brand image with clear navigation and relevant content for their target audience. Technically, the website is built on TYPO3 CMS with modern JavaScript libraries such as jQuery and Swiper.js. It is hosted with a reputable registrar and DNS provider linked to their parent group. The site is mobile-optimized and implements GDPR-compliant cookie consent mechanisms. SEO and accessibility are adequately addressed, though some improvements in accessibility could be made. From a security perspective, the site enforces HTTPS and uses domain transfer protection. However, it lacks DNSSEC and explicit security headers, and does not publish a security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is consistent with the business claims, indicating a legitimate and stable domain. Overall, the website presents a trustworthy and professional digital presence with moderate to good security posture. Strategic improvements in security headers, DNSSEC, and publishing security policies would enhance their security maturity and compliance posture.

25
68
2
70
62
75
20
sapconsultingerpcrmbauwirtschaft+2 more
TYPO3 CMSjQuerySwiper.js

Partner Domains:

kiagdomain.de
partner
2025-07-27T01:01:35.128Z
diefinals.de favicon

Die Finals GmbH

diefinals.de

56
OtherGermanymediumMEDIUM

DieFinals.de is the official website for Die Finals 2025, a major multi-sport event held in Dresden, Germany. The site provides comprehensive information about the event including sports disciplines, venues, schedules, news, and ticketing. It targets sports fans, athletes, media, and the general public interested in German national championships. The business model centers on event organization and promotion with strong media partnerships and government support, positioning it as a key national sports event organizer. Technically, the website employs modern web technologies such as Font Awesome for icons, Flickity for carousels, and Usercentrics for GDPR-compliant cookie consent management. It is hosted behind Cloudflare, ensuring good performance and security. The site is mobile-optimized and offers a professional user experience with clear navigation and relevant content. From a security perspective, the site uses HTTPS and Cloudflare DNS/CDN services, enhancing security and availability. However, explicit security headers and policies are not detected, and there is no public incident response or vulnerability disclosure information. Privacy compliance is well addressed through Usercentrics consent management and a privacy policy page. No critical vulnerabilities or suspicious content were found. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. Strategic improvements include adding security headers, publishing security policies, and providing incident response contacts to enhance security posture and user trust.

15
28
17
70
75
60
100
sportseventmulti-sportgermanydresden+3 more
Font Awesome 6Flickity carouselUsercentrics consent managementCloudflare hosting and DNS
2025-07-27T01:00:19.771Z
randstadgroep.nl favicon

Randstad Groep Nederland

randstadgroep.nl

55
OtherNetherlandsmediumMEDIUM

Randstad Groep Nederland operates as a service organization providing internal support services such as marketing, HR, legal, ICT, and administrative assistance to affiliated Randstad group companies including Randstad Nederland, Tempo-Team, and Yacht. The website serves primarily as an informational portal with minimal content and no direct customer-facing services. The business is positioned as an internal service provider within the Dutch market, founded in 2014, and maintains a moderate size and presence. Technically, the website is basic with minimal modern technologies detected. There is no evidence of advanced CMS, analytics, or tracking tools. The site lacks security headers and DNSSEC, and no privacy or cookie policies are published, indicating a low level of digital maturity and compliance readiness. Performance and mobile optimization are basic but functional. From a security perspective, the site uses HTTPS (assumed from canonical link), but no additional security headers or incident response information is provided. The WHOIS data is consistent and legitimate, with no privacy protection or suspicious patterns. However, the absence of privacy and cookie policies and contact information reduces trust and compliance posture. Overall, the website presents a low-risk profile but requires improvements in privacy compliance, security best practices, and transparency to enhance trustworthiness and regulatory adherence.

45
15
17
70
67
70
100
randstadserviceorganizationhrservicesnetherlandsbusinessservices

Partner Domains:

randstad.nl
partner
tempo-team.nl
partner

+1 more partners

2025-07-27T00:59:39.404Z
jaarverslag2024.kpn favicon

Koninklijke KPN N.V.

jaarverslag2024.kpn

72
TelecommunicationsNetherlandsenterpriseMEDIUM

Koninklijke KPN N.V. is a leading telecommunications company based in the Netherlands, operating at an enterprise scale. The website hosts the 2024 integrated annual report and related sustainability and financial documents, targeting investors and stakeholders interested in corporate transparency and performance. The company provides telecommunications, network operations, and IT services, positioning itself as a major player in the Dutch telecom market. The website is professionally designed with excellent content quality, clear navigation, and mobile optimization, reflecting a mature digital presence. Technically, the site uses modern JavaScript modules and is hosted on AWS infrastructure, ensuring fast performance and good SEO practices. Security posture is solid with HTTPS enforced and secure forms, though DNSSEC is not enabled and security headers are not evident, indicating room for improvement. Privacy compliance is good with clear privacy and cookie policies linked from the main domain, though no explicit consent mechanism is detected on this site. Overall, the domain registration data is consistent with the company except for an anomalous future creation date, likely a data error. The site is free from blocking or WAF challenges and contains no adult or questionable content, making it safe for general audiences.

95
73
2
60
100
60
100
annualreportkpntelecommunicationscorporatesustainability+1 more
JavaScript ES ModulesVite (build tool)AWS DNS hosting
2025-07-27T00:59:29.276Z
appfutura.com favicon

Appfutura

appfutura.com

58
TechnologyN/amediumMEDIUM

Appfutura.com is a website that has been acquired and integrated into Clutch.co, a leading global marketplace for B2B business service providers. The site currently serves as a redirect or informational placeholder directing users to Clutch's platform for finding and listing business service providers. The business model focuses on connecting buyers with providers in a global marketplace environment. The website content is minimal and primarily serves to inform visitors of the acquisition and redirect them accordingly. From a technical perspective, the site uses Google Tag Manager for analytics and Google Fonts for typography, with DNS hosted on Cloudflare. The website lacks advanced SEO optimization and accessibility features, and the content is minimal with no interactive forms or direct contact information. The site uses a meta robots tag to prevent indexing, indicating it is not intended for organic search traffic. Security posture is basic; the domain is registered with GoDaddy and uses Cloudflare DNS but does not have DNSSEC enabled. No security headers or explicit security policies are present on the page. The site uses HTTPS (implied by Cloudflare DNS and modern standards) but lacks visible cookie consent mechanisms despite using tracking scripts. No incident response or vulnerability disclosure information is available. Overall, the website is low risk but limited in content and security maturity. It functions primarily as a redirect to the parent company Clutch.co. Strategic recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, and improving transparency with contact and security policies.

30
53
2
70
75
75
100
b2bmarketplacebusinessservicesclutchappfutura
Google Tag ManagerGoogle FontsCloudflare DNS

Partner Domains:

clutch.co
parent
2025-07-27T00:59:19.222Z
goodfirms.co favicon

GoodFirms

goodfirms.co

68
TechnologyN/amediumMEDIUM

GoodFirms is a reputable B2B review and rating platform that helps businesses and buyers identify and select trusted service providers across various technology and marketing sectors. The platform offers extensive listings of software development, web and app development, design, marketing, and emerging technology companies, supported by over 70,000 verified user reviews. The website is professionally designed with clear navigation and is optimized for mobile devices, providing a seamless user experience for its target B2B audience. From a technical perspective, GoodFirms employs modern web standards including HTML5, CSS3, and JavaScript, with performance optimizations such as lazy loading images and responsive design. The site uses HTTPS with valid SSL certificates and includes security measures like CSRF tokens, although additional security headers could enhance its posture. Privacy and cookie policies are comprehensive and indicate GDPR compliance, reflecting a mature approach to data protection. Security-wise, the platform demonstrates good practices with encrypted communications and no visible vulnerabilities or exposed sensitive data. However, the absence of a public security policy, incident response contacts, or a security.txt file suggests room for improvement in transparency and readiness. The WHOIS data is fully redacted, typical for privacy protection, and does not raise immediate concerns given the professional nature of the site. Overall, GoodFirms presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing security headers, publishing incident response information, and maintaining transparency around data protection to further build trust and compliance.

65
53
17
70
75
80
100
b2breviewsratingssoftwaredevelopmentwebdevelopment+3 more
HTML5CSS3JavaScriptSVG+2
2025-07-27T00:59:14.202Z
funraise.io favicon

Funraise

funraise.io

79
Non-profitN/amediumLOW

Funraise is a SaaS company providing a comprehensive nonprofit fundraising platform designed to simplify donor management and fundraising activities. Their platform includes a wide array of features such as donation forms, peer-to-peer fundraising, event ticketing, donor CRM, automated communications, and AI-powered tools. Positioned as an easy-to-use and innovative solution, Funraise targets nonprofit organizations seeking to enhance their fundraising capabilities and donor engagement. The website reflects a mature digital presence with professional design, clear navigation, and extensive content tailored to nonprofit users. Technically, the website is built on Webflow CMS and leverages modern web technologies including Google Tag Manager, Facebook Pixel, HubSpot, Microsoft Clarity, and reCAPTCHA for analytics, marketing, and security. The site is well-optimized for performance and mobile responsiveness, with strong SEO and accessibility considerations. Security best practices are observed with HTTPS enforcement, security headers, and cookie consent mechanisms. From a security standpoint, Funraise demonstrates a solid posture with no visible vulnerabilities or exposed sensitive data. However, the absence of a public vulnerability disclosure policy and incident response contact information suggests areas for improvement in transparency and readiness. Privacy compliance is strong, with a comprehensive privacy policy and GDPR-aligned cookie consent. Overall, Funraise presents a trustworthy and professional online presence suitable for its nonprofit audience. The lack of WHOIS data due to privacy protection does not detract from the legitimacy indicated by the website's quality and security measures. Strategic recommendations include enhancing security transparency and incident response communications to further build trust.

60
85
17
100
100
85
100
nonprofitfundraisingdonormanagementsaascrm+4 more
WebflowGoogle FontsGoogle Tag ManagerGoogle Analytics+7
2025-07-27T00:58:59.143Z