Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 19 of 22|Showing 901-950 of 1098
mydealz.de favicon

6Minutes Media GmbH

mydealz.de

77
E-commerceGermanylargeLOW

mydealz.de is a leading German e-commerce community platform operated by 6Minutes Media GmbH, a subsidiary of Atolls GmbH. Founded in 2007, it serves as a large-scale shopping community where users share deals, coupons, and discounts. The platform is well-positioned in the market as the largest shopping community worldwide, offering key services such as deal sharing, voucher distribution, community discussions, and deal alerts. The target audience primarily consists of consumers seeking savings and smart shopping decisions. The business model leverages community engagement combined with affiliate marketing and advertising revenue streams. Technically, the website employs modern web technologies including Vue.js, ES modules, and Cloudflare DNS/CDN services, ensuring fast performance and mobile optimization. The site uses structured data (JSON-LD) for enhanced SEO and integrates advertising scripts responsibly. Security posture is strong with HTTPS enforced and Cloudflare protection, though explicit security headers and policies could be more visible. Privacy compliance is basic with cookie consent implemented but lacking explicit privacy and terms of service pages in the analyzed content. Overall, the security posture is good with no detected vulnerabilities or blocking mechanisms. The WHOIS data aligns well with the business claims, showing a consistent and legitimate registration. The site maintains a high level of professionalism, trustworthiness, and user experience, making it a reliable platform for deal seekers. Strategic improvements include publishing comprehensive privacy and security policies and enhancing transparency around incident response and vulnerability disclosures.

95
85
17
85
75
70
100
shoppingdealscouponscommunitye-commerce+2 more
JavaScript ES ModulesCloudflare DNS and likely CDNPrebid.js for advertisingFontFace API for custom fonts

Partner Domains:

atolls.com
parent
2025-07-14T17:37:28.819Z
ruhrkultur.jetzt favicon

ruhrkultur.jetzt

ruhrkultur.jetzt

51
MediaGermanysmallMEDIUM

ruhrkultur.jetzt is a digital cultural guide focused on the Ruhr metropolitan area in Germany, providing users with event calendars, ticket information, and location tips related to the RuhrKunstMuseen and RuhrBühnen networks. The website targets culture enthusiasts, tourists, and local residents interested in arts and cultural events. It operates as a regional informational portal with a small business profile founded in 2017. Technically, the website employs modern web technologies including the Ionic Framework and StencilJS, ensuring good mobile optimization and accessibility. The site is served over HTTPS, enhancing security, but lacks some advanced security headers and DNSSEC is not enabled. No CMS or third-party analytics/tracking scripts were detected, indicating a lightweight and privacy-conscious implementation. From a security perspective, the site has a cookie consent mechanism compliant with GDPR but lacks a published privacy policy, terms of service, and explicit security policies or incident response contacts. The domain registration is consistent and transparent, supporting the legitimacy of the business. No WAF or blocking mechanisms were detected, and no adult or questionable content is present. Overall, ruhrkultur.jetzt presents a trustworthy and professionally designed cultural guide with room for improvement in privacy documentation and security hardening. Strategic recommendations include publishing privacy and terms documents, enabling DNSSEC, adding security headers, and providing clear contact information for security incidents.

25
83
2
40
72
70
40
ruhrgebietkulturmuseentheaterevents+2 more
Ionic FrameworkStencilJSHylo ComponentsJavaScript ES Modules
2025-07-14T13:03:25.746Z
neos.social favicon

Neos Foundation e.V.

neos.social

64
TechnologyGermanysmallMEDIUM

Neos.social is a niche Mastodon instance operated by Neos Foundation e.V., focused on providing a social networking platform for discussions related to Neos and connecting users to the broader Fediverse. The platform leverages the open-source Mastodon software (version 4.4.1) and modern web technologies such as React and JavaScript ES modules, delivering a responsive and user-friendly experience. The website content is well-structured and relevant to its target audience, with a consistent branding approach and clear community focus. From a technical perspective, the site employs modern frameworks and technologies, including WebSockets for real-time communication, and uses CDN resources for media delivery. However, some security best practices such as enabling DNSSEC and implementing security headers are not observed, which could be improved to enhance the overall security posture. The absence of cookie consent mechanisms and limited privacy compliance indicators suggest room for improvement in regulatory adherence. Security-wise, the domain registration is transparent and consistent with the organization's identity, enhancing trustworthiness. The domain is protected against unauthorized transfers, but lacks DNSSEC. No critical vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, the site maintains a moderate security posture but would benefit from enhanced security policies and compliance measures. Strategically, Neos.social serves a small but focused community, positioning itself as a specialized social platform within the Fediverse ecosystem. The lack of commercial advertising and tracking aligns with privacy-conscious user expectations. To strengthen its market position and trust, the platform should consider publishing more comprehensive privacy and security policies, implementing cookie consent, and improving technical security controls.

75
58
17
60
52
75
100
socialnetworkmastodonfediverseneoscommunity+2 more
Mastodon 4.4.1ReactJavaScript ES ModulesSVG icons+2
2025-07-13T23:17:52.022Z
smart-network.cz favicon

Smart Network Business Center s.r.o.

smart-network.cz

56
OtherCzech RepublicsmallMEDIUM

Smart Network Business Center s.r.o. operates a well-established business networking club in the Czech Republic, focusing on connecting entrepreneurs through various event types and membership models. The company has been active since 2013 and hosts hundreds of networking events annually, targeting a broad audience from small business owners to CEOs. Their business model revolves around paid memberships and event participation fees, leveraging personal recommendations and community building as core value propositions. The website is professionally designed, mobile-optimized, and rich in content, including multimedia and educational podcasts, enhancing user engagement and trust. Technically, the website employs modern JavaScript modules, integrates Google Tag Manager, Google Analytics, and Smartlook for analytics and user behavior tracking, and uses CookieHub for cookie consent management. The site is served over HTTPS with good SSL configuration, though explicit security headers could be improved. The presence of a cookie consent mechanism and privacy policy indicates a good level of privacy compliance, though no explicit terms of service or incident response contacts were found. Security posture is solid with HTTPS and no visible vulnerabilities or exposed sensitive data. However, the absence of WHOIS data for the domain reduces trust slightly, as it prevents verification of domain ownership and registration details. Overall, the website presents a trustworthy and professional front for the business networking club, with minor recommendations for enhancing security headers and incident response transparency.

60
73
2
70
62
80
20
businessnetworkingeventspodnikatelreferennmarketing+3 more
JavaScript ES ModulesGoogle Tag ManagerGoogle AnalyticsSmartlook+3

Partner Domains:

networkerka.cz
partner
doubleacademy.cz
partner

+2 more partners

2025-07-13T14:02:02.503Z
stihl-sso.com favicon

ANDREAS STIHL AG & Co. KG

stihl-sso.com

67
ManufacturingGermanyenterpriseMEDIUM

The website analyzed is the official STIHL dealer portal login page, designed to provide authorized dealers and partners access to account management and related services. STIHL, a well-established German manufacturer of power tools and equipment, uses this portal to facilitate secure Single Sign-On (SSO) authentication for its dealer network. The site is professionally branded, consistent with the corporate identity, and targets a B2B audience. The portal includes essential features such as login, password reset, and registration completion links, with clear references to privacy and terms documents hosted on trusted cloudfront URLs. Technically, the site employs modern web technologies including JavaScript ES modules and likely a SPA framework such as Vue.js, hosted on AWS infrastructure. The site is mobile optimized with a responsive design and uses HTTPS to secure communications. However, some security best practices such as DNSSEC and security headers are not enabled or visible in the provided data. The site lacks a cookie consent mechanism, which is a minor compliance gap. From a security perspective, the portal demonstrates a solid baseline with encrypted login forms and no exposed sensitive data. The domain registration is consistent with the business, and the domain age is appropriate for a corporate SSO service. No signs of phishing, malware, or blocking by WAFs were detected. Privacy policies and terms of service are clearly linked, supporting GDPR compliance. Overall, the site is trustworthy and professionally maintained. The overall risk is low, but improvements in security headers, DNSSEC, and cookie consent would enhance the security posture and compliance. Strategic recommendations include implementing these controls and publishing explicit security and incident response policies to strengthen trust and readiness.

80
53
2
70
72
80
100
logindealerportalstihlssocorporate
JavaScript ES ModulesAWS DNS hostingModern CSS
2025-07-13T14:01:47.416Z
wikis.world favicon

Private by Design, LLC

wikis.world

67
TechnologyUnited StatessmallMEDIUM

Wikis World operates as a niche Mastodon social media instance targeting wiki enthusiasts and general users interested in decentralized social networking. The platform is community-driven, emphasizing open content licensed under Creative Commons and governed by clear moderation policies. The business is small, US-based, and founded in 2022, with transparent administration and no commercial advertising, positioning itself as a trusted community hub within the fediverse. Technically, the website leverages Mastodon 4.4.1 with modern JavaScript modules and React components, hosted by masto.host in the EU. The infrastructure is adequate with moderate performance and good mobile optimization, though some accessibility and SEO features are basic. The absence of DNSSEC and security headers suggests room for security enhancements. Security posture is solid with HTTPS enforced and domain status locks, but lacks published security policies or incident response contacts. Privacy compliance is basic with a privacy policy present but no cookie consent or GDPR-specific details. No vulnerabilities or malicious indicators were detected. Overall, the website presents a trustworthy, well-maintained community platform with good business credibility and technical foundation but could improve in security hardening and privacy compliance to enhance user trust and resilience.

75
58
17
55
75
80
100
mastodonfediversewikisocialmediacommunity
Mastodon 4.4.1JavaScript ES ModulesReactRails (implied by asset naming)+1
2025-07-13T12:52:18.422Z
oldrichskacha.cz favicon

Galerie kulturních osobností Oldřicha Škáchy

oldrichskacha.cz

59
OtherCzech RepublicsmallMEDIUM

The website oldrichskacha.cz/galerie-osobnosti serves as a cultural gallery dedicated to Oldřich Škácha and other prominent Czech cultural figures, with a strong emphasis on photographic documentation of Czech history and personalities such as Václav Havel. It targets cultural enthusiasts, historians, and the general public interested in Czech cultural heritage. The site is associated with the Václav Havel Library, enhancing its cultural credibility. Technically, the site employs modern JavaScript modules including PhotoSwipe for image galleries, jQuery, and Selectize.js for search functionality, hosted by cesky-hosting.eu. The site is moderately optimized for mobile and performance, with basic SEO and accessibility features. Security posture is moderate with HTTPS implied but no detected security headers or explicit security policies. Privacy compliance is weak due to absence of privacy and cookie policies or consent mechanisms. WHOIS data reveals a very recent domain registration date inconsistent with the historical nature of the content, which may affect trust. Overall, the site is professionally designed and trustworthy for cultural content but requires improvements in privacy, security, and transparency to enhance compliance and credibility.

60
10
17
60
85
75
100
culturephotographyczechrepublichistoricalgallery+2 more
JavaScript ES ModulesPhotoSwipe LightboxjQuerySelectize.js
2025-07-13T06:05:54.894Z
cerpajteplo.sk favicon

Slovenský zväz pre chladenie, klimatizáciu a tepelné čerpadlá (SZ CHKT)

cerpajteplo.sk

54
EnergySlovakiasmallMEDIUM

The website www.cerpajteplo.sk serves as an informational platform dedicated to heat pump technology and subsidies in Slovakia. It is backed by a partnership of 11 companies and affiliated with the Slovak Association for Refrigeration, Air Conditioning, and Heat Pumps (SZ CHKT). The site targets Slovak homeowners and individuals interested in energy-efficient heating solutions, providing educational content, subsidy guidance, cost calculators, and case studies. The business model focuses on education and promotion rather than direct sales, positioning itself as a trusted industry resource. Technically, the site employs modern web technologies including Bootstrap 5, JavaScript ES modules, and Google Tag Manager for analytics. It is mobile-optimized with good SEO practices and a clear navigation structure. Performance is moderate, with embedded multimedia content enhancing user engagement. Security measures include HTTPS enforcement and a cookie consent mechanism, though additional security headers and formal policies are absent. From a security perspective, the website demonstrates a solid baseline with encrypted connections and CSRF token usage. However, the lack of explicit privacy policies, terms of service, and security headers suggests room for improvement in compliance and defense-in-depth. No vulnerabilities or suspicious content were detected, and the WHOIS data aligns well with the business claims, supporting legitimacy. Overall, the site is a credible, well-maintained resource with good content quality and business credibility. Strategic enhancements in privacy compliance, security policies, and accessibility would further strengthen its posture and trustworthiness.

15
10
2
85
95
45
100
energyheatpumpssubsidiesslovakiaeducation+1 more
JavaScript ES ModulesBootstrap 5Google Tag ManagerFontAwesome+1

Partner Domains:

szchkt.org
partner
2025-07-12T14:04:29.050Z
V

vis.social

vis.social

66
TechnologyUnited StatessmallMEDIUM

vis.social is a niche Mastodon instance serving a community of creative professionals and researchers in scientific art, science communication, data visualization, and creative coding. It operates as a decentralized social media platform leveraging the open-source Mastodon software, providing a welcoming environment with a focus on inclusion and community engagement. The platform encourages sharing, discussion, and critique among its members, primarily English-speaking users interested in scientific and artistic topics. The business model is community-driven with free registration and optional donations to support the instance's operation. Technically, vis.social employs a modern web stack centered around Mastodon version 4.4.1, utilizing JavaScript ES modules, CSS with integrity checks, and SVG assets for UI elements. The site is mobile-optimized and demonstrates good SEO practices. Hosting details are partially inferred from the registrar (Gandi SAS), with no explicit CMS detected. Performance is moderate, with no major technical debt or errors observed. From a security perspective, the site enforces HTTPS and uses domain transfer protection. However, DNSSEC is not enabled, and security headers are not explicitly present in the analyzed content. There is no published security policy or incident response contact information. Privacy compliance is partial, with a basic privacy policy available but lacking cookie consent mechanisms and terms of service. No vulnerabilities or exposed sensitive data were detected. Overall, vis.social presents a trustworthy and professional community platform with a solid technical foundation and good business credibility. Strategic improvements in security headers, DNSSEC, privacy compliance, and incident response transparency would enhance its security posture and user trust.

75
58
17
70
75
55
100
mastodonsocialmediacommunitysciartscicomm+2 more
Mastodon 4.4.1Ruby on Rails (implied by mastodon)JavaScript ES ModulesCSS with integrity hashes+1
2025-07-12T08:19:04.212Z
applemusic.com favicon

Apple Music

applemusic.com

79
MediaUnited StatesenterpriseLOW

Apple Music is a leading global digital music streaming service operated by Apple Inc., offering millions of songs, music videos, and live performances accessible via web, app, and Android platforms. The service targets a broad general audience with a subscription-based business model, positioning itself as a major player in the media and entertainment industry. The website demonstrates a high level of digital maturity, employing modern web technologies such as AMP and Svelte for optimized performance and mobile responsiveness. The branding is consistent and professional, reinforcing trust and market leadership. From a security perspective, the website enforces HTTPS and employs strict referrer policies, though explicit security headers are not visible in the provided HTML content. No vulnerabilities or suspicious elements were detected. However, the absence of visible privacy and cookie policies and incident response contacts suggests areas for improvement in compliance and transparency. The WHOIS data for the domain is unavailable due to registry restrictions, which is typical for large enterprises like Apple and does not detract from the domain's legitimacy. Overall, Apple Music's web presence is robust, secure, and user-friendly, with excellent content quality and business credibility. Strategic enhancements in privacy disclosures and security header implementation would further strengthen its compliance posture and user trust.

80
68
17
97
95
90
100
musicstreamingapplemediaentertainment+1 more
JavaScript ES ModulesAMP (Accelerated Mobile Pages) componentsSVG iconsModern CSS variables+1
2025-07-11T17:22:58.211Z
studyinaustria.at favicon

OeAD - Austria's Agency for Education and Internationalisation

studyinaustria.at

53
EducationAustriamediumMEDIUM

The website studyinaustria.at is an official educational portal managed by OeAD, Austria's Agency for Education and Internationalisation, a government-owned non-profit entity. It provides comprehensive information and services for international students interested in studying in Austria, including study programmes, institutions, scholarships, and visa guidance. The site is well-positioned as an authoritative source in the education sector, targeting prospective students globally. Technically, the website is built on TYPO3 CMS, leveraging modern JavaScript modules, a consent management platform (Usercentrics), and Matomo analytics for privacy-conscious tracking. The site demonstrates good mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, employs security headers, and integrates privacy-compliant cookie consent. No vulnerabilities or exposed sensitive data were detected. However, the site could improve by publishing explicit terms of service, vulnerability disclosure policies, and direct security contact information. Overall, the website presents a low-risk profile with strong trust indicators, professional content, and compliance with GDPR. Strategic recommendations include enhancing transparency around security incident response and expanding legal documentation to further bolster user trust.

75
33
17
40
52
75
40
educationstudyabroadaustriahighereducationgovernment+1 more
TYPO3 CMSJavaScript ES ModulesUsercentrics CMPMatomo Analytics
2025-07-11T09:21:42.717Z
shiftyouragency.com favicon

Shift Your Branding Agency

shiftyouragency.com

55
OtherN/asmallMEDIUM

Shift Your Branding Agency is a newly established creative and strategic branding agency founded in 2023. The company focuses on transforming brands through services such as branding, design, rebranding, consulting, and communication campaigns. Their market position is that of a specialized boutique agency targeting businesses seeking comprehensive brand identity and digital presence enhancements. The website showcases multiple case studies demonstrating their expertise across various branding and design projects. Technically, the website employs modern web technologies including Google Tag Manager, Google Analytics, and Bing Ads for marketing and analytics purposes. The site is hosted on Amenworld servers and uses Statamic CMS inferred from HTML attributes. Performance and mobile optimization are good, with responsive images and modern JavaScript modules. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks DNSSEC and security headers such as Content-Security-Policy or X-Frame-Options. No privacy or cookie policies are present, indicating gaps in privacy compliance. No incident response or vulnerability disclosure information is available, which could be improved to enhance trust and security posture. Overall, the website is professional and functional but would benefit from adding privacy and cookie policies, improving security headers, and publishing incident response details. The domain registration is consistent with the business age and shows no suspicious patterns, supporting legitimacy. The risk level is moderate with recommendations to enhance privacy compliance and security best practices.

50
68
2
70
52
85
40
brandingdesigncreativeagencyrebrandingconsulting
Google Tag ManagerGoogle AnalyticsBing AdsGoogle Fonts+1
2025-07-11T08:15:27.495Z
tech.lgbt favicon

tech.lgbt Moderators

tech.lgbt

60
TechnologyIcelandsmallMEDIUM

tech.lgbt operates as a niche Mastodon instance providing a federated social networking platform primarily for LGBTQIA+ individuals and allies interested in technology and academic topics. The platform fosters community engagement through posts, hashtags, and news aggregation from across the fediverse, positioning itself as a trusted space for marginalized identities within the tech sector. The website's content and user base reflect a focused community with approximately 2.7K active users, indicating a small but engaged audience. The business model centers on community-driven social networking without commercial advertising or tracking, emphasizing privacy and inclusivity. From a technical perspective, the site leverages modern web technologies including React and JavaScript ES modules, hosted on DigitalOcean with domain registration via NameCheap. The platform runs Mastodon version 4.4.0-alpha.5+glitch, indicating active maintenance and use of open-source social networking software. The website demonstrates good mobile optimization and basic accessibility features, though SEO and performance optimizations are moderate. The absence of cookie consent mechanisms and some security headers suggests areas for improvement in compliance and security hardening. Security posture is solid with HTTPS enforced and no exposed sensitive data detected. However, the lack of DNSSEC and security headers such as CSP or HSTS represents potential vulnerabilities. The WHOIS data shows privacy protection for the domain registrant, which is justified given the community nature of the platform. No incident response or vulnerability disclosure policies are publicly available, which could be enhanced to improve trust and security readiness. Overall, tech.lgbt presents a professional, trustworthy, and community-focused platform with a strong emphasis on privacy and inclusivity. Strategic recommendations include enabling DNSSEC, implementing comprehensive security headers, adding cookie consent and vulnerability disclosure policies, and providing clearer contact information for security incidents. These steps would enhance compliance, security posture, and user trust, supporting sustainable growth and resilience in the federated social networking space.

75
58
17
65
95
55
40
mastodonlgbtqiatechnologysocialnetworkfediverse
Mastodon 4.4.0-alpha.5+glitchReactJavaScript ES ModulesCSS+2
2025-07-10T05:47:50.953Z
propositions.lu favicon

Chambre des Députés

propositions.lu

62
GovernmentLuxembourgmediumMEDIUM

The website propositions.lu is an official government platform managed by the Chambre des Députés of Luxembourg. It serves as a digital interface for citizens to participate in the legislative process by submitting and supporting Propositions Motivées aux Fins de Légiférer (PML). The platform is well-structured, primarily in French, and offers clear guidance and resources for legislative participation. The site targets Luxembourgish voters aged 18 and above, providing a transparent and accessible channel for democratic engagement. Technically, the site is built on a modern Angular framework with a responsive design optimized for mobile devices. It employs standard web technologies including Font Awesome and Bootstrap CSS variables. The site uses HTTPS with strong SSL configuration, but lacks some security headers and a cookie consent mechanism, which are recommended for enhanced security and privacy compliance. Accessibility is addressed but with some noted deficiencies. From a security perspective, the site demonstrates good practices such as encrypted data transmission and no visible vulnerabilities or exposed sensitive data. However, the absence of WHOIS data limits the ability to fully verify domain registration legitimacy. The site includes comprehensive privacy and legal notices, with a clearly identified Data Protection Officer contact. Overall, the platform presents a trustworthy and professional government service with room for minor improvements in security headers and privacy mechanisms. Strategically, the site supports Luxembourg's democratic processes by enabling direct citizen involvement in lawmaking. It is positioned as a key digital government service with high trustworthiness and professional content quality.

65
10
47
40
77
75
100
governmentlegislationdemocracyluxembourgpml+1 more
Angular 15.1.5Font Awesome 6Bootstrap CSS variablesTypeScript+1
2025-07-10T04:36:21.761Z
kr-kralovehradecky.cz favicon

Královehradecký kraj

kr-kralovehradecky.cz

63
GovernmentCzech RepublicmediumMEDIUM

Královehradecký kraj operates an official regional government website providing comprehensive information about the regional administration, public services, news, and community resources. The site targets residents and stakeholders within the Královéhradecký region of the Czech Republic, offering key services such as contact directories, grant information, and cultural portals. The website is built on a modern Drupal 10 CMS platform, utilizing contemporary web technologies including Bootstrap and Google Tag Manager, ensuring a responsive and accessible user experience. From a security perspective, the website enforces HTTPS and implements cookie consent mechanisms compliant with GDPR, reflecting a mature privacy posture. However, the absence of security headers and a security.txt file indicates room for improvement in security best practices. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The lack of WHOIS data is unusual but likely due to registry or query limitations rather than malicious intent, given the official nature of the site. Overall, the website demonstrates a solid technical infrastructure and professional presentation consistent with government standards. It maintains good privacy compliance and user trust indicators, including clear contact information and social media engagement. Strategic recommendations include enhancing security headers, publishing incident response contacts, and adding a vulnerability disclosure policy to further strengthen security posture.

55
25
2
85
72
85
100
governmentregionalpublicservicesczechrepublicdrupal+2 more
Drupal 10BootstrapSlick CarouselGoogle Tag Manager+3
2025-07-09T18:26:13.693Z
lagranescapada.com.mx favicon

La Gran Escapada

lagranescapada.com.mx

55
HospitalityMexicosmallMEDIUM

La Gran Escapada is a government-supported Mexican tourism promotion platform aimed at boosting national tourism through special discounts and offers on hotels, restaurants, and experiences. The website targets a general audience interested in domestic travel and leverages modern web technologies such as Angular and Bootstrap to deliver a responsive and visually appealing user experience. The platform positions itself as a trusted source for tourism promotions backed by official government entities, enhancing its credibility in the hospitality sector. Technically, the website employs a modern frontend stack with Angular 13 and Bootstrap 5.3, ensuring good mobile optimization and a clean design. However, there is room for improvement in accessibility and SEO optimization. The site loads external resources from reputable CDNs but lacks advanced analytics or tracking tools, indicating minimal user tracking. From a security perspective, the site uses HTTPS but lacks visible security headers and published security policies or incident response contacts. No vulnerability disclosure or security.txt files were found. The absence of cookie consent mechanisms and limited privacy compliance indicators suggest the site could improve its adherence to data protection regulations. No suspicious or vulnerable scripts were detected, and no exposed sensitive data was found. Overall, the website presents a moderate risk profile with good business credibility but some gaps in privacy compliance and security best practices. Strategic improvements in security headers, privacy notices, and incident response transparency would enhance trust and compliance.

45
35
2
40
72
75
100
tourismpromotionmexicogovernmenttravel+1 more
Angular 13Bootstrap 5.3Font AwesomeJavaScript ES Modules
2025-07-09T13:50:23.916Z