Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 192 of 250|Showing 9551-9600 of 12466
M

Malostranská beseda a.s.

malostranska-beseda.cz

50
HospitalityCzech RepublicmediumMEDIUM

Malostranská beseda a.s. operates a multifaceted hospitality venue in Prague, offering club events, restaurant dining, brasserie, café, trick bar, gallery exhibitions, and catering services. The business targets a broad audience including locals and tourists interested in cultural and social events. The website reflects a well-structured digital presence with clear navigation and professional design, supporting the business model of event hosting and hospitality services. Partnerships with local and media entities, as well as municipal funding, reinforce its market position. Technically, the website employs modern web technologies such as Bootstrap, Google Analytics, and Facebook Pixel for analytics and marketing. The site is mobile optimized and provides a cookie consent mechanism, though lacks explicit privacy and terms of service pages. Security headers are not evident, and WHOIS data is unavailable, which limits domain trust verification. The site uses HTTPS, but additional security best practices could be implemented. From a security perspective, the site shows moderate maturity with no visible vulnerabilities or exposed sensitive data. However, the absence of privacy policy and incident response contacts, as well as missing WHOIS data, are gaps that should be addressed to improve compliance and trust. The cookie consent banner and detailed cookie information indicate some GDPR awareness. Overall, the website is professional and trustworthy for its hospitality business purpose, but improvements in security posture, privacy compliance, and domain registration transparency are recommended to enhance risk management and user trust.

45
10
2
65
85
75
40
hospitalityeventsrestaurantcateringculture+3 more
Google AnalyticsFacebook PixelBootstrap (navbar classes)Google Fonts+2
2025-07-10T10:20:26.402Z
ddmpraha.cz favicon

Dům dětí a mládeže hlavního města Prahy

ddmpraha.cz

44
EducationCzech RepubliclargeHIGH

Dům dětí a mládeže hlavního města Prahy is a well-established public institution founded in 1998, providing educational and leisure activities for children and youth in Prague. The organization operates multiple branches offering clubs, camps, events, rentals, and educational programs, targeting children, youth, parents, and educators. It is funded and overseen by the city of Prague, positioning it as a key local educational service provider with a strong community presence. Technically, the website employs a modern tech stack including Bootstrap, jQuery, FontAwesome, and Matomo analytics, ensuring a responsive and user-friendly experience. The site is moderately optimized for performance and mobile devices, with basic accessibility and SEO features. Hosting and domain registration are consistent and reliable, managed by REG-GRANSY since 1998. From a security perspective, the site uses HTTPS and implements a cookie consent mechanism aligned with GDPR requirements. However, explicit security headers and incident response policies are not publicly visible, indicating room for improvement in security posture. The use of Matomo analytics reflects a privacy-conscious approach to user tracking. Overall, the website is professional, trustworthy, and safe for general audiences, with no adult or questionable content. The domain's long history and consistent WHOIS data reinforce its legitimacy. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility and SEO to further strengthen the site's digital maturity and compliance.

20
43
2
62
62
85
-
educationchildrenyouthpragueleisure+3 more
BootstrapjQueryFontAwesomeGoogle Fonts+4
2025-07-10T10:19:21.277Z
A

Atemi s.r.o.

ifotovideo.cz

53
MediaCzech RepublicsmallMEDIUM

iFotoVideo.cz is a Czech media portal operated by Atemi s.r.o., specializing in photography and videography content including news, competitions, technical articles, tutorials, and a magazine publication. The website targets photography enthusiasts and professionals primarily within the Czech Republic, offering a niche but well-established platform with a consistent brand presence and member affiliation with EISA. The business model revolves around media publishing supported by advertising and magazine subscriptions. Technically, the site uses a combination of older JavaScript libraries such as jQuery 1.11 and Prototype.js, Google Fonts, and Google Analytics for tracking. While the site is accessible and content-rich, it shows moderate performance and basic mobile optimization with room for improvement in accessibility and SEO. Security-wise, the site lacks visible security headers and uses an outdated JavaScript library, which could pose risks. Cookie consent is implemented, and a GDPR-related page is present, indicating some privacy compliance. However, the absence of WHOIS data and explicit security or incident response policies reduces trustworthiness. Overall, the site is functional and professional but would benefit from technical and security enhancements to improve its posture and compliance.

20
100
2
65
62
85
20
photographymediaczechcompetitionsmagazine+2 more
Google AnalyticsjQuery 1.11Prototype.jsCookieConsent2 plugin+1
2025-07-10T10:19:11.255Z
myintegration.fi favicon

MyIntegration

myintegration.fi

48
OtherFinlandsmallHIGH

MyIntegration is a Finnish-based company with an online presence focused on integration services, as indicated by the website title and branding. The website is built on WordPress and employs a modern technology stack including popular plugins such as Yoast SEO, Smart Slider 3, and Cookiebot for cookie consent management. The site supports multiple languages, indicating a target audience that is international or multilingual. The business appears to be small-sized with a consistent brand image and a moderate level of trust signals, including a Facebook social media presence. Technically, the website is well-structured with proper SEO meta tags and uses HTTPS with an excellent SSL configuration. The use of Matomo analytics shows a commitment to privacy-friendly tracking. However, the site lacks visible security headers and does not publish a privacy policy or terms of service, which are important for compliance and user trust. No direct contact information is found on the homepage, which may affect user confidence. From a security perspective, the site enforces HTTPS and uses a cookie consent mechanism compliant with GDPR. There are no visible vulnerabilities or exposed sensitive data. The absence of a security policy and incident response contacts suggests room for improvement in security transparency and readiness. Overall, the website is functional, moderately secure, and privacy-conscious but would benefit from enhanced compliance documentation and clearer contact information to improve trust and professionalism.

15
83
17
60
62
75
-
integrationmultilingualcookieconsentanalyticswordpress+2 more
WordPressPHPjQueryYoast SEO+6
2025-07-10T09:17:14.992Z
ealys.com favicon

Ealys

ealys.com

41
TechnologyFrancesmallHIGH

Ealys is a French web development agency specializing in the creation, redesign, and maintenance of websites and web applications, primarily serving clients in the North-East region of France including Metz, Nancy, and Strasbourg. With over 20 years of experience, the company targets a diverse clientele ranging from SMEs to large groups and institutional clients. Their service offerings include website creation, web application development, hosting, security, and audits, positioning them as a comprehensive digital solutions provider in their regional market. The website reflects a professional and consistent brand image with clear service descriptions and client references. Technically, the site employs modern web technologies such as HTML5, CSS3, jQuery, and popular plugins like Revolution Slider and Fancybox, ensuring a responsive and user-friendly experience. Google Analytics is used for visitor tracking, and a cookie consent mechanism is implemented, indicating basic privacy compliance. Security-wise, the site uses HTTPS and follows some best practices but lacks advanced security headers and explicit incident response or vulnerability disclosure policies. The domain registration data is consistent with the business claims, showing a long-established presence without privacy protection, which supports legitimacy. Overall, the website is well-structured, professional, and trustworthy, though there is room for improvement in security and compliance documentation.

20
50
2
55
42
80
-
webdevelopmentwebsitecreationwebapplicationsinternetservicesdigitalagency+1 more
HTML5CSS3jQueryMySQL+6
2025-07-10T09:16:34.917Z
S

Sherpas TECH, s.r.o.

sherpas.tech

68
TechnologyCzech RepublicsmallMEDIUM

Sherpas TECH, s.r.o. is a Czech-based technology and marketing company specializing in retention marketing and technology integration services. The company offers a range of services including email marketing strategy, technology implementation for retention marketing, data engineering in CRM systems, and advanced customer analytics. Their website reflects a professional and consistent brand image, targeting B2B clients seeking to optimize marketing performance through technology. The company demonstrates a solid market position supported by client references and a clear business focus. Technically, the website employs modern tools such as Google Analytics, Google Tag Manager, and CookieScript for consent management, indicating a mature digital infrastructure. The site is built likely on the Nette Framework, with responsive design and good SEO practices. Performance is moderate with good mobile optimization and basic accessibility features. From a security perspective, the site uses HTTPS with no visible critical vulnerabilities. Cookie consent is implemented with opt-in mechanisms, and forms include anti-bot measures. However, there is no publicly available security policy or incident response information, which could be improved to enhance trust and compliance. Overall, the website is trustworthy, professionally maintained, and compliant with GDPR cookie consent requirements. Strategic recommendations include publishing security and incident response policies, enhancing security headers, and improving accessibility. The domain WHOIS data aligns well with the website content, supporting legitimacy and trustworthiness.

50
73
2
90
62
85
100
technologymarketingemailmarketingretentionmarketingcrm+3 more
Google AnalyticsGoogle Tag ManagerGoogle FontsjQuery (implied by scripts)+2

Partner Domains:

www.sherpas.cz
partner
www.dobryweb.cz
partner

+1 more partners

2025-07-10T09:13:59.494Z
antifurcoalition.org favicon

International Anti-Fur Coalition

antifurcoalition.org

56
Non-profitN/asmallMEDIUM

The International Anti-Fur Coalition (IAFC) operates as a global non-profit animal rights advocacy group focused on ending the fur trade through activism, education, and legislative efforts. Founded in 2006, it unites over 50 organizations worldwide to organize campaigns and promote anti-fur legislation. The website serves as an informational and campaign platform, targeting animal rights supporters and the general public concerned with ethical fashion. Technically, the website is built on the Shopify platform, leveraging standard web technologies such as jQuery, Facebook SDK, and embedded YouTube content. The site is mobile-optimized with moderate performance and basic SEO and accessibility features. Analytics and tracking are implemented via Shopify Analytics and Facebook Pixel, indicating moderate user tracking. From a security perspective, the site enforces HTTPS and uses hCaptcha for form protection, but lacks explicit security headers and detailed privacy or cookie policies. WHOIS data is unavailable, likely due to privacy protection, which is common for non-profit organizations. No critical vulnerabilities or malicious content were detected. Overall, the website presents a moderate risk profile with good content quality and business credibility but requires improvements in privacy compliance and security best practices to enhance trust and regulatory adherence.

75
35
17
70
-
75
100
animalrightsanti-furnon-profitadvocacyshopify
ShopifyjQueryFacebook SDKYouTube embed+1
2025-07-10T08:05:45.418Z
tilaajavastuu.fi favicon

Vastuu Group

tilaajavastuu.fi

65
TechnologyFinlandlargeMEDIUM

Vastuu Group is a Finnish technology service provider specializing in digital solutions that facilitate employee data management, compliance with labor laws, and reporting obligations primarily for the construction sector and related industries. The company offers a broad portfolio of services including Valtti+, Valttikortti, and electronic signature solutions, positioning itself as a key enabler of digital transformation and regulatory compliance in its market. Recent acquisitions such as Linnunmaa Lex indicate strategic growth and expansion of service offerings. Technically, the website is built on the HubSpot CMS platform, leveraging modern web technologies and integrating analytics and marketing tools such as Google Tag Manager and Facebook Pixel. The site demonstrates good performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. From a security perspective, Vastuu Group maintains a strong posture with HTTPS enforcement, ISO 27001 certification, and comprehensive privacy and cookie policies. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a public incident response policy and security.txt file suggests areas for improvement in transparency and vulnerability management. Overall, Vastuu Group presents a professional, trustworthy, and compliant digital presence aligned with its business objectives. The company is well-positioned in its sector with a clear focus on compliance, digital services, and customer support.

45
25
17
85
75
85
100
digitalservicesemployeemanagementconstructioncomplianceiso27001+2 more
HubSpot CMSGoogle Tag ManagerGoogle FontsMaterial Symbols+3

Partner Domains:

support.vastuugroup.fi
service
signspace.vastuugroup.fi
service

+1 more partners

2025-07-10T08:04:09.799Z
paimio.fi favicon

Paimio

paimio.fi

60
GovernmentFinlandmediumMEDIUM

Paimio.fi is the official website of the city of Paimio, a modern municipality in southwestern Finland. The site serves residents, local businesses, and visitors by providing comprehensive municipal services and information. The website is well-positioned as a local government authority, focusing on public service delivery and community engagement. The content is professionally presented, with clear descriptions of the city's offerings and a consistent branding approach. Technically, the website is built on WordPress and utilizes common web technologies such as jQuery, DustPress, and Cookiebot for cookie consent management. It integrates Google Tag Manager and Google Analytics for visitor tracking and performance monitoring. The site demonstrates good SEO practices, mobile optimization, and basic accessibility features, contributing to a positive user experience. From a security perspective, the website enforces HTTPS and includes several security headers, reflecting a good security posture. The cookie consent mechanism complies with GDPR requirements, although explicit privacy and terms of service policies are not found in the provided content. No vulnerabilities or suspicious activities were detected, indicating a secure and trustworthy platform. Overall, Paimio.fi presents a reliable and professional municipal website with moderate technical sophistication and a solid security foundation. Strategic improvements include publishing comprehensive privacy and terms of service policies and enhancing accessibility and contact information transparency.

70
83
2
65
62
80
40
municipalgovernmentpublicservicesfinlandcookieconsent+2 more
jQueryDustPressCookiebotGoogle Tag Manager+2
2025-07-10T08:02:38.451Z
cswl.lu favicon

Luxembourg House of Cybersecurity g.i.e.

cswl.lu

58
TechnologyLuxembourgsmallMEDIUM

The website represents the CYBERSECURITY Week Luxembourg 2025, a national campaign coordinated by the Luxembourg House of Cybersecurity. It aims to promote cybersecurity awareness and foster collaboration within the Luxembourg cybersecurity ecosystem through key events such as the Luxembourg GRC Conference and hack.lu. The campaign targets cybersecurity professionals and the wider community interested in cybersecurity topics. The website content is well-structured, professionally designed, and consistent with the organization's branding. Technically, the site uses modern web technologies including React, Bootstrap, and FontAwesome, with good mobile optimization and moderate performance. The site is served over HTTPS with no visible security vulnerabilities or exposed sensitive data. However, some security best practices like security headers and cookie consent mechanisms are missing or not visible in the provided content. From a security posture perspective, the site demonstrates a good baseline with HTTPS and no evident vulnerabilities. The presence of legal and data protection notices in PDF format indicates attention to compliance, though explicit security policies and incident response information are absent. The WHOIS data aligns well with the website's claims, showing consistent registration and no privacy protection, enhancing trustworthiness. Overall, the website is a credible, professional platform for cybersecurity awareness events in Luxembourg, with room for improvement in privacy compliance and security policy transparency.

15
10
55
60
72
75
100
cybersecurityeventawarenessluxembourgcommunity+1 more
ReactBootstrapFontAwesomeGoogle Fonts

Partner Domains:

lhc.lu
partner
hack.lu
partner

+2 more partners

2025-07-10T06:55:50.818Z
istra-istria.hr favicon

Istarska županija

istra-istria.hr

67
GovernmentCroatiamediumMEDIUM

The website www.istra-istria.hr serves as the official online presence of the Region of Istria, a Croatian regional government entity. It provides comprehensive information about the region's governance, geography, culture, economy, and contact details. The site targets residents, tourists, and stakeholders interested in regional affairs. The business model is focused on public administration and information dissemination, positioning itself as a trusted government resource with certifications such as ISO 9001 and membership in the Assembly of European Regions. Technically, the site is built on Django CMS and leverages modern web technologies including jQuery, Google Analytics, and Slider Revolution. It demonstrates good mobile optimization, accessibility, and SEO practices. Hosting and domain registration are consistent with a Croatian government entity, registered with CARNET since 2001. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism, but lacks published security policies, incident response information, and security headers. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic, with no dedicated privacy policy page but a functional cookie banner and settings modal. Overall, the website is professional, trustworthy, and safe for general audiences. Strategic improvements include publishing a privacy policy, security policy, and incident response details, enhancing security headers, and adding a security.txt file to improve transparency and security posture.

60
95
17
85
72
85
40
governmentregionalistriacroatiaofficial+3 more
jQueryGoogle AnalyticsGoogle Tag ManagerSlider Revolution+3
2025-07-10T05:47:10.874Z
pinoys.cz favicon

Pinoys.cz

pinoys.cz

52
RetailCzech RepublicsmallMEDIUM

Pinoys.cz is a specialized e-commerce retailer focused on Asian food products, primarily serving customers in Prague and the Czech Republic. The website offers a variety of Asian groceries including instant noodles, spices, and fresh products, targeting consumers interested in exotic and authentic Asian cuisine. The business operates a niche online store with a clear product categorization and customer loyalty programs, positioning itself as a trusted local supplier in its market segment. Technically, the website is built on the Upgates e-commerce platform, leveraging modern web technologies such as Google Tag Manager, Facebook Pixel, and live chat services to enhance customer engagement and marketing effectiveness. The site is mobile-optimized with good navigation and SEO practices, although accessibility features are basic. Security posture is adequate with HTTPS enforced and cookie consent implemented, but lacks explicit security headers and published security policies. The absence of WHOIS data reduces domain registration transparency, which slightly impacts trustworthiness. Overall, the site is professional and functional with moderate risk, suitable for its business purpose.

65
25
2
70
72
85
20
asianfoode-commerceretailczechrepubliconlinestore+3 more
Google Tag ManagerFacebook PixelSmartsupp Live ChatFoxentry+5

Partner Domains:

pinoystore.searchready.cz
partner
my-pinoy-store.s3.cdn-upgates.com
partner

+1 more partners

2025-07-10T04:41:41.034Z
pikavuorot.fi favicon

Aittakoodi Oy

pikavuorot.fi

47
TransportationFinlandsmallHIGH

Pikavuorot.fi is a Finnish transportation price comparison website operated by Aittakoodi Oy, founded in 2015. The platform aggregates and compares prices and schedules for bus and train travel across multiple Finnish transportation providers, including major companies such as VR, Matkahuolto, Onnibus, and airlines like Finnair and Norwegian. It serves a general audience seeking convenient travel planning and ticket purchasing options within Finland. The website enjoys a moderate market position as a leading price comparison tool in its niche. Technically, the site employs a modern but somewhat dated technology stack including Bootstrap 3, jQuery, DataTables, and Socket.io for real-time data updates. It integrates multiple third-party services for fonts, advertising, and analytics, including Google Adsense and Facebook SDK. The site is mobile-optimized with good navigation and SEO practices, though accessibility features are basic. From a security perspective, HTTPS is used, but explicit security headers are not detected in the provided data. No critical vulnerabilities or exposed sensitive data were found. Privacy compliance is basic, with a cookie consent banner and a privacy policy page present, but no detailed security or incident response policies are published. Contact information is limited to an email address, with no phone or physical address provided. Overall, Pikavuorot.fi presents a trustworthy and functional service with room for improvement in security hardening, privacy transparency, and expanded contact options. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include enhancing security headers, publishing comprehensive policies, and improving user trust signals.

15
25
17
60
72
75
40
transportationpricecomparisonbusticketstrainticketsfinland+2 more
jQueryBootstrap 3DataTablesMoment.js+4

Partner Domains:

onnibus.fi
partner
vr.fi
partner

+3 more partners

2025-07-10T04:40:20.613Z
saaristolautat.fi favicon

Saaristolautat.fi

saaristolautat.fi

43
TransportationFinlandsmallHIGH

Saaristolautat.fi is a specialized informational website providing ferry routes and schedules for the Finnish archipelago, including the Turku archipelago and Åland Islands. The site targets travelers and residents needing up-to-date ferry information for over 40,000 islands serviced by approximately 50 ferries and 200 docks. The business model is primarily informational, serving as a public utility platform rather than a commercial enterprise. The website is relatively small in scale, founded in 2017, and operates with a niche focus on regional transportation. Technically, the website employs a modern web stack including HTML5, CSS3, JavaScript with jQuery, Bootstrap for responsive design, FontAwesome for icons, and integrates Google Maps API for route visualization. Hosting appears to be provided by Domainhotelli, a Finnish hosting provider. The site is mobile optimized and has good SEO practices, though accessibility features are basic. Performance is moderate, with no major technical issues detected. From a security perspective, the site lacks visible security headers and does not provide privacy or cookie policies, which are important for GDPR compliance given its European audience. No contact information or incident response details are provided, limiting transparency and trust. The WHOIS data shows the domain is registered to a private person rather than an organization, which is somewhat inconsistent with the public service nature of the site but not necessarily suspicious. No WAF or blocking mechanisms are detected, and the site content is fully accessible. Overall, the website is functional and provides valuable regional transportation information but would benefit from improved security practices, privacy compliance, and clearer business contact details to enhance trust and regulatory adherence.

15
10
2
85
72
75
20
ferryarchipelagotransportationschedulesfinland+3 more
HTML5CSS3JavaScriptjQuery+4
2025-07-10T04:39:50.418Z
L

Liikenteen asiakaspalvelun Palauteväylä

palautevayla.fi

61
TransportationFinlandmediumMEDIUM

The website www.palautevayla.fi serves as a customer service and feedback platform for transportation services in Finland. It targets Finnish-speaking users seeking to provide feedback or obtain information related to public transportation. The site is positioned as an essential public sector service portal, offering key services such as customer feedback submission and information search. The business model is focused on public service facilitation rather than commercial activities. Technically, the website employs AngularJS and Bootstrap frameworks, indicating a moderately modern frontend infrastructure. The site is hosted securely with HTTPS and demonstrates good SSL configuration. Performance and mobile optimization are adequate, though accessibility features could be improved. SEO is basic but functional. From a security perspective, the site enforces HTTPS and includes some security headers, but lacks advanced headers like CSP and HSTS. No vulnerabilities or exposed sensitive data were detected. However, the absence of a security.txt file and explicit privacy or cookie policies indicates room for compliance improvement. Overall, the website is trustworthy and professionally maintained, but would benefit from enhanced privacy compliance and clearer contact information to improve user trust and regulatory adherence.

60
25
17
60
72
75
100
transportationcustomerservicefeedbackpublicservicefinland
AngularJSBootstrapFontAwesomeGoogle Fonts
2025-07-10T03:27:14.314Z
O

Oy Suomen Tietotoimisto

sttinfo.fi

67
MediaFinlandmediumMEDIUM

Oy Suomen Tietotoimisto operates the STT Info platform, a Finnish press release distribution service targeting media professionals and companies. The website facilitates the dissemination of over 17,000 press releases annually, positioning itself as a key player in the Finnish media communication sector. The business model centers on subscription and one-time purchase of press releases, serving a professional audience seeking timely and relevant news content. The company maintains a consistent brand presence and provides comprehensive contact and privacy information, reinforcing trust and professionalism. Technically, the website employs modern web technologies including React, Google Fonts, and Cloudflare for content delivery and security. It integrates Google Analytics and social media tracking tools while implementing a robust cookie consent mechanism compliant with GDPR. The site demonstrates good mobile optimization and basic accessibility features, with a moderate performance profile. From a security perspective, the site enforces HTTPS, employs standard security headers, and manages session cookies securely. However, explicit security policies and incident response information are not published, representing an area for improvement. No vulnerabilities or suspicious patterns were detected, and WHOIS data confirms the legitimacy and consistency of the domain registration with the business identity. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance. Strategic recommendations include publishing detailed security and incident response policies, enhancing accessibility, and maintaining vigilance on third-party scripts to sustain security posture.

35
83
17
70
72
75
100
pressreleasemedianewsdistributioncookieconsentprivacypolicy+2 more
ReactGoogle FontsCloudflare (for CDN and security)Google Analytics+2

Partner Domains:

viestintapalvelut.fi
partner
2025-07-10T03:26:14.143Z
onfa.org favicon

Opera Nazionale per i Figli degli Aviatori

onfa.org

44
GovernmentItalysmallHIGH

ONFA (Opera Nazionale per i Figli degli Aviatori) is an Italian non-profit organization dedicated to providing social assistance and support to the children of aviators. The website serves as an informational and community platform targeting families connected to the aviation sector in Italy. The organization operates with a focused mission in the government and non-profit sectors, maintaining a small organizational size and a niche market position. The website is built on WordPress using the Divi theme, with integration of Iubenda for cookie consent management, reflecting a moderate level of digital maturity and compliance with privacy regulations such as GDPR. Technically, the website is hosted on a provider using Host Anycast DNS servers, secured with HTTPS, and employs modern web fonts and cookie consent scripts. Performance and mobile optimization are rated as moderate to good, with basic accessibility features. SEO practices appear adequate with proper meta tags and structured data. Security posture is decent with HTTPS enforced and domain transfer protections enabled, but could be improved by enabling DNSSEC and adding more comprehensive security headers and vulnerability disclosure mechanisms. Overall, the security posture is solid for a small non-profit, with no critical vulnerabilities detected. Privacy compliance is strong, supported by a comprehensive privacy and cookie policy with explicit consent mechanisms. However, the absence of terms of service, security policy, and incident response contact details indicates areas for improvement. The website content is safe and appropriate for a general audience, with no adult or questionable content. Strategically, ONFA should focus on enhancing security headers, publishing a security.txt file, and providing clearer contact information to improve trust and compliance. These steps will strengthen their security culture and better protect their community members.

20
68
17
70
32
70
-
non-profitaviationsocialassistanceitalianwordpress+2 more
WordPressDivi ThemeGoogle FontsIubenda Cookie Consent
2025-07-10T01:16:17.347Z