Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

150477
Websites
130
Industries
113
Countries
52
Avg Score
Page 235 of 780|Showing 11701-11750 of 38955
atelier-bruno.fr favicon

Atelier Bruno

atelier-bruno.fr

50
TransportationFrancesmallMEDIUM

Atelier Bruno is a French company specializing in vehicle branding, signage, and adhesive printing services since 1988. The company offers comprehensive in-house design, production, and installation services targeting businesses seeking to promote their image through mobile and static advertising media. Their website reflects a professional and consistent brand image with clear service offerings and client testimonials, positioning them as an established local player in the transportation and manufacturing sectors. Technically, the website is built on the Webflow platform, leveraging modern JavaScript libraries and hosted on a CDN for fast performance. It is mobile-optimized with good accessibility and SEO practices. Google Analytics is integrated via Google Tag Manager for user tracking, although privacy compliance could be improved with cookie consent mechanisms. Security posture is generally good with HTTPS enabled and no visible vulnerabilities or exposed sensitive data. However, the absence of security headers and lack of published security policies or incident response contacts are areas for improvement. The missing WHOIS data reduces domain trustworthiness and should be investigated to confirm domain registration legitimacy. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing privacy compliance, implementing security headers, and verifying domain registration details to strengthen trust and security posture.

30
10
2
70
52
60
100
coveringvehiclebrandingsignageadhesiveprintingwebflow+1 more
JavaScriptjQueryWebflowFinsweet Attributes SliderDots
2025-10-11T21:09:14.793Z
nordeafinance.fi favicon

Nordea Rahoitus Suomi Oy

nordeafinance.fi

64
FinanceFinlandlargeMEDIUM

Nordea Rahoitus Suomi Oy operates the website www.nordeafinance.fi, providing a range of financial services primarily focused on personal customers in Finland. As part of the Nordea Group, it offers auto financing, credit cards, consumer loans, and digital banking services. The website is professionally designed, multilingual, and targets Finnish consumers seeking flexible financing solutions. The company maintains a strong market position as a reputable financial institution within the Nordic region. Technically, the website employs modern web technologies including JavaScript, SVG graphics, and a proprietary CMS (dotXX2017). It is mobile-optimized, accessible, and SEO-friendly. The infrastructure appears robust with good performance and secure hosting likely managed internally by Nordea. Analytics and marketing tools such as Tealium and CookieReports are used for user tracking and consent management. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes standard security headers. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response contacts are not publicly available, which could be improved to enhance transparency and trust. Overall, the website demonstrates a high level of professionalism, security, and compliance with privacy regulations such as GDPR. The absence of direct contact emails and phone numbers on the site is typical for large financial institutions that prefer controlled communication channels. Strategic recommendations include publishing a dedicated security policy, incident response information, and vulnerability disclosure details to further strengthen security posture and customer trust.

80
10
2
70
82
85
100
financebankingautofinancingconsumerloansnordea+1 more
JavaScriptSVGCSSHTML5

Partner Domains:

nffleet.fi
subsidiary
tukirahoitus.fi
subsidiary

+3 more partners

2025-10-11T21:08:29.638Z
nordeapension.dk favicon

Nordea Pension

nordeapension.dk

75
FinanceDenmarklargeMEDIUM

Nordea Pension is a well-established Danish financial services provider specializing in pension and insurance products. The company offers a broad range of services including pension savings, health insurance, life insurance, and investment funds, targeting both private individuals and businesses. The website reflects a professional and consistent brand presence with clear navigation and relevant content tailored to its audience. Technically, the website employs modern JavaScript libraries such as jQuery and Bootstrap, integrates Microsoft Application Insights and Google Tag Manager for analytics and monitoring, and uses a comprehensive cookie consent management system from CookieInformation.com. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. However, explicit security headers are missing, and there is no publicly available security policy or incident response information. The WHOIS data is unavailable or privacy protected, which limits domain trust verification but is common for financial institutions. Overall, the website demonstrates a strong security posture and compliance with privacy regulations, with minor technical and transparency improvements recommended. The risk level is low, and the site is suitable for its intended audience.

75
88
17
85
82
70
100
financepensioninsurancedanishcookieconsent+3 more
JavaScriptjQuery 3.7.1BootstrapMicrosoft Application Insights+2

Partner Domains:

topdanmarkliv.dk
partner
cookieinformation.com
partner
2025-10-11T21:08:09.460Z
africa50.com favicon

Africa50 Infrastructure Investment Platform

africa50.com

60
EnergyMoroccomediumMEDIUM

Africa50 Infrastructure Investment Platform is a pan-African infrastructure investment and asset management entity focused on bridging Africa's infrastructure funding gap by developing bankable projects, mobilizing public and private sector capital, and investing in infrastructure projects across the continent. The platform has a significant footprint with investments in over 30 African countries and an aggregated project value exceeding USD 8 billion. Their key services include project development, funding mobilization, and equity investments alongside strategic partners, targeting sectors such as energy, transportation, real estate, and technology. Technically, the website is built on the TYPO3 CMS platform, leveraging modern web technologies including service workers and Google Analytics for tracking. The site demonstrates good performance, mobile optimization, and accessibility, with a professional design and clear navigation. Privacy and cookie policies are present and indicate GDPR compliance. However, no explicit security policy or incident response information is published. From a security perspective, the site enforces HTTPS and uses secure forms, but lacks some security headers and a vulnerability disclosure policy. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS registration data is a concern but does not detract significantly from the overall trustworthiness given the professional presentation and social media presence. Overall, Africa50.com presents a credible and professional digital presence consistent with its business objectives. Strategic recommendations include publishing a security policy, adding security headers, and providing incident response contacts to enhance trust and compliance.

80
68
17
60
72
80
20
infrastructureinvestmentafricafinancesustainability+3 more
TYPO3 CMSGoogle AnalyticsGoogle Tag ManagerJavaScript+1
2025-10-11T21:07:02.906Z
africafc.org favicon

Africa Finance Corporation

africafc.org

69
FinanceNigerialargeMEDIUM

Africa Finance Corporation (AFC) is a leading multilateral financial institution established by African sovereign states to address the continent's infrastructure deficit through pragmatic investment and financing solutions. The organization holds a strong market position as a trusted infrastructure solutions provider with an investment grade rating and a pan-African footprint spanning 45 member countries. Key services include principal investing, project development, financial advisory, and syndications, targeting governments, investors, and project partners across Africa. Technically, the website is built on modern web technologies including Craft CMS, Bootstrap, jQuery, and HTMX, with good mobile optimization and SEO practices. The site is well-structured, professionally designed, and supports multiple languages, reflecting a mature digital presence. Security posture is solid with HTTPS enforced and secure forms, though some security headers could be enhanced for improved protection. The security evaluation reveals no critical vulnerabilities or exposed sensitive data. Privacy and cookie policies are present with consent mechanisms, indicating compliance with GDPR and related regulations. Contact information is clearly provided, including email, phone, and physical address, supporting business credibility. Overall, AFC's website demonstrates a high level of professionalism, trustworthiness, and operational maturity. The lack of WHOIS data limits domain registration insights but does not detract from the evident legitimacy and strong market presence of the organization. Strategic recommendations include enhancing security headers, improving accessibility features, and maintaining regular security audits to sustain and improve the security posture.

80
68
25
70
52
75
100
financeinfrastructureinvestmentafricamultilateral+2 more
HTML5CSS3JavaScriptjQuery+5

Partner Domains:

afccapital.org
subsidiary
brandcommsgroup.com
partner
2025-10-11T21:06:57.896Z
ortto.app favicon

Ortto

ortto.app

63
TechnologyN/amediumMEDIUM

Ortto is a technology company specializing in marketing automation solutions, offering a SaaS platform that integrates with various e-commerce and CRM systems. The website analyzed is primarily a login page, indicating a mature digital presence with a focus on customer engagement and campaign management. The platform supports multiple integrations, reflecting a comprehensive service offering for business clients seeking marketing automation. Technically, the website employs modern JavaScript frameworks, likely React, and uses several third-party analytics and tracking services including Google Tag Manager, Facebook Pixel, and Mouseflow. The site is hosted on secure infrastructure with HTTPS enforced, and the design is responsive and professional. However, there is a lack of visible privacy and cookie policies on the login page, which may impact compliance perceptions. From a security perspective, the site demonstrates good practices such as HTTPS usage and no exposed sensitive data in the HTML. However, the absence of explicit security headers and incident response information suggests room for improvement. The extensive use of tracking scripts without clear privacy disclosures may also pose compliance risks under regulations like GDPR. Overall, the website is functional, professional, and secure at a basic level but would benefit from enhanced transparency regarding privacy, security policies, and compliance measures to improve trust and regulatory adherence.

50
35
2
85
77
75
100
saasmarketingautomationlogintechnologycustomerengagement
JavaScriptGoogle Tag ManagerFacebook PixelMouseflow+3
2025-10-11T21:06:47.589Z
icons8.com favicon

Icons8

icons8.com

61
TechnologyN/alargeMEDIUM

Icons8 is a well-established technology company founded in 2011 that provides a comprehensive suite of design assets including icons, illustrations, photos, music, and AI-powered design tools. The website targets creatives and developers seeking high-quality, consistent design elements and tools to enhance their projects. Icons8 maintains a strong market position with a professional and consistent brand presence, supporting multiple languages and offering a variety of services that cater to a global audience. Technically, the website leverages modern web technologies such as Vue.js and Nuxt.js, hosted on AWS infrastructure, ensuring fast performance and excellent mobile optimization. The site demonstrates good SEO and accessibility practices, although some security headers and privacy compliance elements are missing. The domain is long-standing and registered with clear and consistent WHOIS data, indicating a legitimate and trustworthy business. From a security perspective, the site uses HTTPS and has domain status protections but lacks DNSSEC and visible security headers. There is no public security policy, incident response information, or vulnerability disclosure program, which are areas for improvement. Privacy compliance is weak due to the absence of privacy and cookie policies and consent mechanisms. Overall, Icons8 presents a low-risk profile with a strong business and technical foundation but should enhance its privacy and security posture to align with best practices and regulatory requirements.

40
53
2
85
62
65
100
iconsillustrationsphotosmusicdesign+2 more
Vue.jsNuxt.jsJavaScriptCSS+2

Partner Domains:

igoutu.cn
partner
icones8.fr
partner

+3 more partners

2025-10-11T21:06:42.576Z
gjensidige.dk favicon

Gjensidige

gjensidige.dk

68
FinanceDenmarklargeMEDIUM

Gjensidige.dk is a well-established Danish insurance provider serving over 500,000 customers with a broad portfolio of insurance products including car, travel, home, health, accident, business, and agricultural insurance. The company positions itself as a trusted insurer with a strong customer focus, supported by positive Trustpilot reviews and comprehensive online services. The website is professionally designed, mobile-optimized, and provides clear navigation and relevant content tailored to private individuals, businesses, and agricultural clients. Technically, the site employs modern web technologies including JavaScript frameworks, consent management via Usercentrics, and analytics through Piwik PRO and Tealium. The site is served over HTTPS with good SSL configuration, though explicit security headers are not evident in the HTML source. The site demonstrates good privacy compliance with accessible privacy and cookie policies and a consent mechanism. From a security perspective, the site shows a mature posture with secure forms and no visible vulnerabilities or exposed sensitive data. However, it lacks published security policies, incident response contacts, and vulnerability disclosure programs, which are recommended for enhanced transparency and trust. The WHOIS data is unavailable due to privacy protection, which is common and justified for this business type. Overall, Gjensidige.dk presents a secure, professional, and trustworthy online presence suitable for its market. Strategic improvements in security transparency and header implementation would further strengthen its posture.

75
25
2
85
100
75
100
insurancefinanceprivacycustomerservicedanish+2 more
JavaScriptCSSHTML5Usercentrics (consent management)+2

Partner Domains:

www.gouda.dk
partner
www.gjensidige.com
related
2025-10-11T20:02:32.873Z
iris-rail.org favicon

International Railway Industry Standard (IRIS)

iris-rail.org

63
TransportationN/amediumMEDIUM

The IRIS Portal website represents the International Railway Industry Standard, a globally recognized certification system for rail sector companies. The organization provides certification, audit, and training services aligned with ISO/TS 22163 standards. The website targets rail industry companies and certification bodies, offering resources such as certificate searches, news updates, and membership applications. The business is well-established, with a domain age dating back to 2005, indicating a mature presence in the railway certification market. Technically, the website employs a custom CMS with a technology stack including HTML5, CSS3, JavaScript, jQuery, and Google Maps API. The site is hosted via Hostbasket and uses HTTPS with a good SSL configuration. Performance and mobile optimization are moderate, with room for improvement in accessibility and modern framework adoption. The site includes interactive elements such as charts and maps, enhancing user engagement. From a security perspective, the website demonstrates basic best practices including HTTPS enforcement and CAPTCHA on login forms. However, DNSSEC is not enabled, and no explicit security headers were detected, representing areas for enhancement. No incident response or security policy pages are present, which could improve transparency and trust. No vulnerabilities or exposed sensitive data were found in the content. Overall, the website is professional, trustworthy, and focused on its niche market. It scores well on content quality and business credibility but could improve technical implementation and security posture. Strategic recommendations include enabling DNSSEC, adding security headers, updating libraries regularly, and publishing security and incident response policies to strengthen compliance and user trust.

60
68
2
55
77
65
100
certificationrailisots22163auditrailwayindustry+1 more
HTML5CSS3JavaScriptjQuery 3.6.0+3
2025-10-11T20:00:34.874Z
devitjobs.com favicon

DevITJobs

devitjobs.com

67
TechnologyUnited StatessmallMEDIUM

DevITJobs is a specialized online job board focusing on IT and software developer positions in the United States. The platform emphasizes transparency by providing detailed job listings that include technology stacks and salary ranges, catering primarily to IT professionals seeking employment opportunities. Founded in 2021, it operates as a small but focused player in the technology recruitment sector, offering additional services such as company profiles, newsletters, and tech community event information. The website demonstrates a consistent and professional brand presence with active social media channels on LinkedIn, Telegram, Facebook, and Twitter. Technically, the website is built using modern web technologies including React for the frontend and Leaflet for interactive maps. It leverages Cloudflare for DNS services and integrates privacy-conscious analytics via Plausible. The site is mobile-optimized and provides a good user experience with clear navigation and structured content. However, there is room for improvement in accessibility and performance optimization. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks DNSSEC and visible security headers, which are recommended to enhance security posture. There are no explicit privacy or cookie policies found, which may impact compliance with GDPR and other privacy regulations. No incident response or vulnerability disclosure information is published, which could be improved to build trust. Overall, DevITJobs presents a trustworthy and professional platform for IT job seekers in the US, with a solid technical foundation and clear business focus. Strategic enhancements in privacy compliance, security headers, and transparency around data protection would further strengthen its market position and user trust.

30
83
17
85
65
80
100
itjobssoftwaredeveloperjobsjobboardsalarytransparencytechjobsus
ReactJavaScriptCSSHTML5+3

Partner Domains:

germantechjobs.de
partner
devitjobs.nl
partner

+3 more partners

2025-10-11T19:58:43.996Z
devitjobs.uk favicon

DevITJobs

devitjobs.uk

66
TechnologyUnited KingdomsmallMEDIUM

DevITJobs.uk operates as a specialized online job board focusing on IT and software developer roles within the United Kingdom. Established in 2021, the platform distinguishes itself by offering transparent job listings that include detailed tech stacks and salary ranges, catering primarily to IT professionals seeking employment opportunities. The website maintains a consistent brand presence and leverages modern web technologies such as React and JSON-LD structured data to enhance user experience and SEO performance. Social media integration across LinkedIn, Telegram, Facebook, and Twitter supports community engagement and outreach. From a technical perspective, the site demonstrates moderate performance with good mobile optimization and basic accessibility features. The use of HTTPS and DNSSEC indicates a commitment to secure communications, although the absence of explicit security headers and privacy policies suggests room for improvement in security posture and compliance. Analytics are implemented via privacy-focused services like Plausible Analytics, reflecting a moderate approach to user tracking and data collection. Security-wise, the platform benefits from encrypted connections and domain security measures but lacks visible incident response protocols, vulnerability disclosures, and comprehensive privacy or cookie policies. These gaps present potential compliance and trust challenges, particularly under GDPR regulations. The domain registration data aligns well with the business profile, showing transparency and legitimacy without privacy protection, which is appropriate for this business type. Overall, DevITJobs.uk is a credible and professionally presented job board with a solid foundation but would benefit from enhanced privacy, security policies, and compliance documentation to strengthen user trust and regulatory adherence.

30
83
17
72
65
85
100
itjobssoftwaredeveloperukjobstechjobssalarytransparency+1 more
ReactJavaScriptCSSHTML5+2

Partner Domains:

germantechjobs.de
partner
devitjobs.nl
partner

+3 more partners

2025-10-11T19:58:38.989Z
devjob.ro favicon

Claus Web SRL

devjob.ro

66
TechnologyRomaniasmallMEDIUM

DevJob.ro is a specialized Romanian job portal focusing on IT and software development roles, providing a platform for job seekers and employers with transparent salary information and a broad range of job listings including remote and international positions. The company behind the site, Claus Web SRL, has established a credible presence since 2020, targeting IT professionals primarily in Romania but also extending its reach through partner sites in other countries. The website is well-structured, leveraging modern web technologies such as React and Leaflet for interactive maps, and employs JSON-LD structured data to enhance SEO and job listing visibility. From a technical perspective, the site demonstrates a solid infrastructure with Cloudflare DNS and CDN services, secure HTTPS implementation, and appropriate security headers. The use of Plausible Analytics and WonderPush indicates a moderate level of user tracking balanced with privacy considerations. The site is mobile-optimized and offers a good user experience with clear navigation and relevant content. Security-wise, the website follows best practices with HTTPS, security headers, and error reporting mechanisms, though it lacks explicit security policies and incident response contacts. The WHOIS data aligns well with the website's business claims, showing consistency and legitimacy. Privacy and cookie policies are present and GDPR compliant, enhancing trustworthiness. Overall, DevJob.ro presents a trustworthy and professional platform for IT job recruitment in Romania, with opportunities for improvement in security transparency and accessibility compliance to further strengthen its market position and user trust.

30
88
2
87
65
70
100
jobsitsoftwaredeveloperromaniarecruitment+1 more
ReactJavaScriptLeaflet (maps)Cloudflare DNS+2

Partner Domains:

germantechjobs.de
partner
devitjobs.nl
partner

+3 more partners

2025-10-11T19:58:28.968Z
germantechjobs.de favicon

GermanTechJobs

germantechjobs.de

70
TechnologyGermanymediumMEDIUM

GermanTechJobs operates as a specialized online job portal focusing on IT and software developer positions within Germany. The platform emphasizes transparency by providing salary ranges and detailed technology stacks for job listings, catering primarily to IT professionals seeking employment opportunities in the German market. The website demonstrates a consistent brand presence and integrates social media channels and mobile applications to enhance user engagement. Technically, the site leverages modern web technologies including React for frontend rendering, Cloudflare for DNS and security, and Leaflet for interactive mapping. Analytics are handled via privacy-focused Plausible Analytics, complemented by Wonderpush for marketing notifications. The site is mobile-optimized and exhibits good SEO practices, although accessibility features could be improved. From a security perspective, the site enforces HTTPS and benefits from Cloudflare's infrastructure, but lacks explicit security headers and formalized privacy or cookie policies. No contact information or incident response details are provided, which limits transparency in security and compliance matters. No vulnerabilities or suspicious patterns were detected in the available data. Overall, GermanTechJobs presents a professional and trustworthy platform with a solid technical foundation and clear business focus. However, enhancements in privacy compliance, security policy disclosure, and contact transparency would strengthen its security posture and regulatory adherence.

30
83
47
87
65
70
100
jobsrecruitingitsoftwareentwicklergermany+2 more
ReactJavaScriptCloudflare (DNS and likely CDN)Leaflet (map library)+1

Partner Domains:

devitjobs.nl
partner
devjob.ro
partner

+3 more partners

2025-10-11T19:58:23.928Z
swissdevjobs.ch favicon

SwissDevJobs

swissdevjobs.ch

67
TechnologySwitzerlandsmallMEDIUM

SwissDevJobs operates as a specialized online job board focusing on IT and software developer positions within Switzerland. It distinguishes itself by offering transparent salary data and detailed tech stack information, catering primarily to IT professionals seeking employment opportunities in the Swiss market. The platform also provides additional services such as company profiles, salary statistics, job alerts, and a talent directory, positioning itself as a niche leader in the Swiss IT recruitment space. Technically, the website leverages modern web technologies including React for frontend rendering and Leaflet for interactive mapping. It employs privacy-conscious analytics (Plausible) and integrates marketing tools like WonderPush for notifications. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, ensuring a smooth user experience across devices. From a security perspective, SwissDevJobs enforces HTTPS with strong SSL configurations and includes essential security headers. While no critical vulnerabilities or exposed sensitive data were detected, the site lacks explicit security policy and incident response information, which could enhance trust and preparedness. Privacy compliance is robust, with clear privacy and cookie policies and consent mechanisms in place. Overall, SwissDevJobs presents a low-risk profile with a strong business model and technical foundation. Strategic improvements in security transparency and formal policies would further solidify its market credibility and user trust.

30
83
2
87
65
85
100
itjobssoftwaredeveloperswitzerlandsalarytransparencytechjobs
ReactJavaScriptLeaflet (mapping)CSS+2

Partner Domains:

germantechjobs.de
partner
devitjobs.nl
partner

+3 more partners

2025-10-11T19:58:18.918Z
sanicare.de favicon

Sanicare

sanicare.de

67
HealthcareGermanylargeMEDIUM

Sanicare is a large German online pharmacy offering a wide range of pharmaceutical products, including prescription and non-prescription medications. The website targets general consumers in Germany seeking convenient online access to medications and pharmaceutical services, including electronic prescription fulfillment and pharmaceutical consultation. The company positions itself as a trusted and established player in the online pharmacy market with a significant customer base of one million users. Technically, the website is built on the Shopware 6 e-commerce platform, integrating modern marketing and analytics tools such as Google Tag Manager, Dynamic Yield, and Usercentrics for consent management. Hosting is provided by Arvato Systems, indicating a professional IT infrastructure. The site is mobile optimized and demonstrates good SEO and accessibility practices, though some accessibility features could be improved. From a security perspective, the site enforces HTTPS and integrates consent management for GDPR compliance. However, explicit security headers and published security policies are absent. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is partial due to the absence of explicit privacy and terms of service pages. No incident response or vulnerability disclosure information is available. Overall, Sanicare presents a professional and trustworthy online presence with a solid technical foundation and good security posture. Strategic improvements include publishing comprehensive privacy and security policies, enhancing accessibility, and adding vulnerability disclosure mechanisms to strengthen compliance and trust.

60
68
2
85
72
70
100
onlinepharmacye-commercehealthcaremedicationsgermany+3 more
JavaScriptGoogle Tag ManagerUsercentrics CMPDynamic Yield+2
2025-10-11T18:54:08.388Z
magix.com favicon

MAGIX Software GmbH

magix.com

69
TechnologyGermanymediumMEDIUM

MAGIX Software GmbH is a medium-sized technology company specializing in creative software applications for video, music, photo, graphics, and website production. The company maintains a professional and well-structured website powered by TYPO3 CMS, integrating modern analytics and marketing technologies such as Piwik PRO, Google Tag Manager, and OneTrust for GDPR-compliant cookie consent management. The website demonstrates good design quality, mobile optimization, and accessibility, targeting a broad audience of creative professionals and consumers worldwide. Despite the absence of WHOIS registration data, the website's content and privacy practices indicate a legitimate and established business presence. Technically, the site employs a robust stack with multiple third-party integrations for analytics, marketing automation, and affiliate advertising networks. Security posture is strong with HTTPS enforced and anonymized tracking, though additional security headers and explicit security policies could enhance protection. Privacy compliance is well addressed with comprehensive cookie and privacy policies and granular user consent mechanisms. Overall, MAGIX's digital infrastructure reflects a mature and professional operation with room for improvement in transparency around security policies and incident response. The lack of WHOIS data is a notable anomaly but does not currently undermine the site's operational legitimacy. Strategic recommendations include enhancing security headers, publishing a security policy, and establishing a vulnerability disclosure program to further strengthen trust and compliance.

35
100
17
65
72
85
100
softwarevideomusicphotographics+4 more
TYPO3 CMSGoogle Tag ManagerPiwik PRO AnalyticsOneTrust Cookie Consent+5
2025-10-11T18:54:03.376Z
lidl.de favicon

Lidl

lidl.de

77
RetailGermanyenterpriseLOW

Lidl operates as a major retail supermarket chain in Germany with both physical stores and an online shopping platform. The website reflects a professional retail business model targeting general consumers with a focus on local and online shopping convenience. The company maintains consistent branding and provides comprehensive privacy and cookie policies compliant with GDPR, including consent mechanisms for tracking and personalization. Technically, the website uses modern JavaScript libraries and tracking tools such as Kameleoon and OneTrust, along with YouTube integration for video content. The site is mobile-optimized and accessible, with good SEO practices and structured data for organization information. Performance is moderate, with room for optimization. Security posture is solid with HTTPS enforced and no exposed sensitive data, though the absence of explicit security headers and a public security policy or incident response contact suggests areas for improvement. Privacy compliance is strong, with clear policies and consent management. Overall, the website is trustworthy and professional, suitable for a large enterprise retail business. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and security posture.

85
100
10
75
100
65
100
retaile-commercesupermarketgrocerycookie-consent+2 more
JavaScriptYouTube iframe APIOneTrust cookie consentKameleoon (A/B testing and personalization)+1
2025-10-11T18:53:07.743Z
tryg.no favicon

Tryg Forsikring

tryg.no

76
FinanceNorwaylargeLOW

Tryg Forsikring is a major Norwegian insurance company providing a range of insurance products for individuals and families, including property and personal insurance. The website is professionally designed, with consistent branding and clear content targeting Norwegian customers. It offers online insurance services with benefits such as a 10% online discount. The company maintains a strong market position in the Norwegian finance sector. Technically, the website uses modern web technologies including Drupal CMS, Bootstrap for responsive design, and integrates advanced tag management and analytics tools such as Tealium and Adobe Experience Cloud. The site is hosted on Amazon Web Services, ensuring scalability and reliability. Mobile optimization and accessibility features are well implemented, contributing to a good user experience. From a security perspective, the site enforces HTTPS and implements a comprehensive cookie consent mechanism compliant with GDPR. However, security headers are not explicitly detected, and no public security policy or incident response contact is found. The absence of WHOIS data suggests privacy protection for domain registration, which is justified for a large financial institution. Overall, the security posture is strong but could be enhanced by publishing additional security policies and headers. The overall risk assessment is low, with no critical vulnerabilities or suspicious indicators detected. Strategic recommendations include improving security header implementation, publishing a vulnerability disclosure policy, and enhancing contact information transparency to further build trust and compliance.

65
88
43
70
77
80
100
insurancefinancenorwaycookieconsentprivacy+1 more
JavaScriptBootstrap CSSTealium Tag ManagementCookie Information Consent Management+1
2025-10-11T18:51:47.494Z