Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 24 of 39|Showing 1151-1200 of 1949
utoronto.ca favicon

University of Toronto

utoronto.ca

69
EducationCanadalargeMEDIUM

The University of Toronto website represents a globally recognized public research university based in Toronto, Canada. The site provides comprehensive information about academic programs, research initiatives, campus life, and community engagement. It targets a broad audience including prospective and current students, faculty, staff, alumni, donors, and visitors. The university maintains a strong market position as a top-ranked institution with a large scale of operations and a rich history dating back to 1827. Technically, the website is built on Drupal 10 CMS, leveraging modern web technologies and analytics tools such as Google Tag Manager, Microsoft Clarity, and New Relic Browser monitoring. The site demonstrates excellent performance, mobile optimization, and accessibility features, ensuring a high-quality user experience. SEO practices are well implemented with proper metadata and structured data. From a security perspective, the site enforces HTTPS with strong SSL configuration and security headers including CSP, HSTS, and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response information are not prominently published, and no vulnerability disclosure or security.txt file was found. Privacy compliance is strong with clear privacy and cookie policies, including consent mechanisms and GDPR adherence. Overall, the website is highly professional, trustworthy, and secure, reflecting the stature of the University of Toronto. The absence of WHOIS data is likely due to privacy protection policies common for large institutions. Strategic recommendations include publishing detailed security policies, incident response contacts, and vulnerability disclosure information to further enhance trust and transparency.

55
58
17
75
85
75
100
educationuniversityresearchpublicinstitutioncanada+3 more
Drupal 10Google Tag ManagerNew Relic Browser monitoringFontAwesome icons+1
2025-07-27T11:41:52.601Z
A

AUSTRAC

austrac.gov.au

52
GovernmentAustralialargeMEDIUM

AUSTRAC is the Australian government agency responsible for preventing, detecting, and responding to criminal abuse of the financial system, focusing on anti-money laundering and counter-terrorism financing. The website serves as a comprehensive resource for regulated businesses, individuals, and government partners, offering guidance, compliance tools, and enforcement information. AUSTRAC holds a strong market position as the national financial intelligence unit and regulator in Australia. Technically, the website is built on Drupal 10 and hosted on the GovCMS platform, reflecting a modern and government-compliant infrastructure. It integrates Google Analytics and Tag Manager for analytics, with good mobile optimization and accessibility features. The site demonstrates solid technical maturity with clear navigation and professional design. From a security perspective, the site enforces HTTPS and anonymizes IPs in analytics, but lacks explicit security headers and a public vulnerability disclosure policy. No critical vulnerabilities or exposed sensitive data were detected in the content. The WHOIS data is restricted due to auDA policies, but the domain's .gov.au status and content alignment confirm legitimacy. Overall, AUSTRAC's website is a trustworthy, well-maintained government portal with strong business credibility and good technical implementation. Strategic improvements in security headers and incident response transparency could further enhance its security posture.

-
53
17
85
-
75
100
governmentamlctffinancialregulationcompliance+2 more
Drupal 10GovCMSGoogle AnalyticsGoogle Tag Manager

Partner Domains:

online.austrac.gov.au
service
www.auda.org.au
partner
2025-07-27T10:34:08.107Z
P

Perforce Software

perforce.com

75
TechnologyUnited StatesenterpriseMEDIUM

Perforce Software is a globally recognized enterprise software company specializing in DevOps solutions that accelerate software development lifecycles. Their offerings include version control, agile planning, static code analysis, and AI-powered DevOps intelligence, targeting large organizations across industries such as automotive, aerospace, healthcare, fintech, and gaming. The company positions itself as a trusted partner for mission-critical application development with a strong emphasis on security, compliance, and innovation. Technically, the website is built on Drupal 10, leveraging modern web technologies including Wistia for video content, Google Tag Manager and Analytics for tracking, and Sentry for error monitoring. The site is well-optimized for mobile devices, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Embedded videos and rich content enhance user engagement and demonstrate advanced marketing capabilities. From a security perspective, the site enforces HTTPS, implements multiple security headers, and maintains a dedicated Trust Center highlighting certifications such as ISO 27001. Incident response and vulnerability disclosure policies are publicly available, indicating a proactive security posture. No critical vulnerabilities or exposed sensitive data were detected in the analysis. Overall, the website reflects a high level of professionalism, trustworthiness, and compliance with privacy regulations including GDPR. The absence of WHOIS data is a minor concern but does not detract significantly from the site's legitimacy given the strong branding and operational transparency. Strategic recommendations include maintaining up-to-date third-party components, enhancing public incident response visibility, and continuing to promote AI governance and data privacy initiatives.

70
58
17
83
100
90
100
devopsenterprisesoftwareaisoftwaredevelopmentversioncontrol+3 more
Drupal 10Wistia Video EmbedsGoogle Tag ManagerGoogle Analytics+2

Partner Domains:

portal.perforce.com
service
trust.perforce.com
service

+1 more partners

2025-07-27T10:32:27.836Z
visitthecapitol.gov favicon

U.S. Capitol Visitor Center

visitthecapitol.gov

68
GovernmentUnited StateslargeMEDIUM

The U.S. Capitol Visitor Center website serves as the official digital portal for visitor information, educational programs, and event scheduling related to the U.S. Capitol. It targets a broad audience including tourists, educators, and the general public, providing comprehensive resources and services such as tour bookings and a gift shop. The site is positioned as a key government resource with a strong brand presence and consistent messaging. Technically, the website is built on Drupal 10, leveraging modern web technologies and integrations such as Google Tag Manager and Google Analytics for performance monitoring and user insights. The site demonstrates good mobile optimization, accessibility, and SEO practices, ensuring a positive user experience across devices. From a security perspective, the site enforces HTTPS and employs standard best practices, though it lacks some advanced security headers and a published security policy or incident response information. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms, aligning with GDPR requirements. Overall, the website presents a low risk profile with high trustworthiness, supported by its .gov domain and official government content. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure and incident response information, and maintaining transparency in data protection practices.

50
53
17
70
100
70
100
governmentvisitorcentereducationtourismuscapitol+2 more
Drupal 10Google Tag ManagerGoogle AnalyticsGTranslate
2025-07-26T23:55:17.490Z
wellington.ca favicon

County of Wellington

wellington.ca

66
GovernmentCanadamediumMEDIUM

County of Wellington operates as a regional government authority in Ontario, Canada, providing a broad range of municipal services to its residents and businesses. The website serves as a comprehensive portal for accessing information on garbage and recycling, roads and construction, child care, housing supports, social assistance, transportation, public safety, long-term care, and business development. The site targets local residents, businesses, and community stakeholders, positioning itself as a trusted government resource. Technically, the website is built on Drupal 10, leveraging modern web technologies including Google Tag Manager and accessibility monitoring tools, ensuring a good user experience across devices. Security posture is strong with HTTPS enforcement, security headers, and cookie consent mechanisms, although there is room for improvement in publishing explicit security policies and incident response details. The absence of WHOIS data is a notable gap but does not detract significantly from the overall legitimacy given the official .ca domain and consistent government branding. Strategic recommendations include enhancing transparency around security policies and incident response, and verifying domain registration details for trust assurance.

50
68
17
60
72
75
100
governmentmunicipalserviceswellingtoncountycanadapublicservices+4 more
Drupal 10Google Tag ManagerFontAwesomeMonsido accessibility monitoring+1
2025-07-26T14:36:10.008Z
ciro.ca favicon

Canadian Investment Regulatory Organization

ciro.ca

73
FinanceCanadamediumMEDIUM

The Canadian Investment Regulatory Organization (CIRO) is a pan-Canadian self-regulatory organization overseeing investment dealers, mutual fund dealers, and trading activities on Canada's debt and equity marketplaces. Its mission is to promote healthy capital markets through fair and effective regulation, ensuring investor protection and confidence. The organization provides regulatory oversight, trade surveillance, investor education, and enforcement services, positioning itself as a trusted national regulator in the Canadian financial sector. The website reflects a professional and comprehensive digital presence with clear navigation and rich content tailored to investors, firms, and registered individuals. Technically, the website is built on Drupal 10, leveraging modern web technologies including Google Tag Manager and Modernizr. It demonstrates good performance, excellent mobile optimization, and accessibility features. Security posture is strong with HTTPS enforced and appropriate security headers present. However, there is room for improvement in privacy compliance, notably the absence of a cookie consent mechanism and lack of a published vulnerability disclosure policy. Overall, the security posture is robust with no visible vulnerabilities or exposed sensitive data. The domain WHOIS data is not publicly available, which is typical for Canadian .ca domains and does not detract from the legitimacy of the organization. The website maintains a high level of trustworthiness and professionalism, supported by consistent branding and active social media channels. Strategic recommendations include implementing a cookie consent banner to enhance privacy compliance, publishing a vulnerability disclosure or security.txt file, and providing explicit incident response contact information to improve transparency and security readiness.

70
53
65
65
75
70
100
financeregulationinvestorprotectioncanadaself-regulatoryorganization
Drupal 10Google Tag ManagerModernizr

Partner Domains:

iiroc.ca
partner
mfda.ca
partner
2025-07-26T13:28:55.954Z
ocrcvm.ca favicon

Organisme canadien de réglementation des investissements

ocrcvm.ca

60
FinanceCanadamediumMEDIUM

The Organisme canadien de réglementation des investissements (OCRI) is a Canadian self-regulatory organization overseeing investment dealers and collective investment schemes across Canada. The website is primarily in French and serves investors, registered persons, and financial firms by providing regulatory information, publications, and resources. OCRI positions itself as a trusted regulator promoting fair and effective financial markets to protect investors. Technically, the website is built on Drupal 10 with modern web technologies and integrates Google Tag Manager for analytics. The site is well-structured, mobile-optimized, and professionally designed, reflecting a mature digital presence. Security posture is strong with HTTPS enforced and no obvious vulnerabilities, though some security headers could be explicitly confirmed. Privacy compliance is good with a comprehensive privacy policy, but lacks a visible cookie consent mechanism. WHOIS data is unavailable, which slightly reduces domain trustworthiness, but the website content and branding strongly indicate legitimacy. Overall, OCRI’s website is a professional, secure, and authoritative source for Canadian investment regulation information.

70
35
17
40
75
60
100
financeregulationcanadainvestmentself-regulatoryorganization+1 more
Drupal 10Google Tag ManagerModernizrGoogle Fonts (DM Sans)+1

Partner Domains:

manageusers.mfda.ca
partner
operationssurobligations.ocrcvm.ca
partner
2025-07-26T13:28:50.624Z
mfda.ca favicon

Canadian Investment Regulatory Organization

mfda.ca

75
FinanceCanadamediumMEDIUM

The Canadian Investment Regulatory Organization (CIRO) operates as a pan-Canadian self-regulatory organization overseeing investment dealers, mutual fund dealers, and trading activities on Canada's debt and equity marketplaces. It aims to promote healthy capital markets through fair and effective regulation, ensuring investor protection and confidence. The website reflects a professional and comprehensive regulatory body with extensive resources for investors, firms, and registered individuals, including educational materials, rule enforcement, and market data transparency. Technically, the website is built on Drupal 10, leveraging modern web technologies such as Google Tag Manager and Modernizr. The site is mobile-optimized, accessible, and SEO-friendly, with a moderate performance profile. Security posture is strong with HTTPS enforced and secure form handling, though explicit security headers could be more visible. Privacy compliance is good with a comprehensive privacy policy, but lacks a visible cookie consent mechanism. Overall, the security posture is solid with no evident vulnerabilities or exposed sensitive data. The domain WHOIS data is unavailable, indicating privacy protection, which is typical for organizations of this nature. The website maintains a high level of professionalism and trustworthiness, supported by clear governance and regulatory transparency. Strategic recommendations include enhancing cookie consent, publishing security policies, and adding vulnerability disclosure mechanisms to further strengthen trust and compliance.

70
53
65
80
75
70
100
financeregulationinvestorprotectioncanadaself-regulatoryorganization+1 more
Drupal 10Google Tag ManagerModernizr

Partner Domains:

bondtradedata.iiroc.ca
partner
manageusers.mfda.ca
partner

+2 more partners

2025-07-26T13:28:45.613Z
ocri.ca favicon

Organisme canadien de réglementation des investissements

ocri.ca

60
FinanceCanadamediumMEDIUM

The Organisme canadien de réglementation des investissements (OCRI) is a Canadian self-regulatory organization overseeing investment dealers and mutual fund dealers across Canada. It ensures fair and effective regulation to protect investors and maintain confidence in the financial markets. The website provides comprehensive information about OCRI's mission, governance, regulatory rules, disciplinary actions, and educational resources. It targets investors, financial professionals, and regulated entities within the Canadian financial sector. Technically, the website is built on Drupal 10, leveraging modern web technologies including Google Tag Manager and Google Analytics for tracking. The site is mobile-optimized, accessible, and well-structured with clear navigation and professional design. However, some security best practices such as explicit security headers and cookie consent mechanisms could be improved. Security posture is strong with HTTPS enforced and no visible vulnerabilities in the HTML content. The lack of WHOIS data due to privacy protection is typical for regulatory bodies but reduces transparency slightly. No incident response or vulnerability disclosure policies are publicly available, representing an area for enhancement. Overall, the website is a trustworthy, professional platform representing a key Canadian financial regulatory entity. Strategic recommendations include enhancing privacy compliance with cookie consent, publishing security policies, and improving security headers to strengthen the security posture further.

70
35
17
40
75
60
100
financeregulationcanadainvestmentcompliance+1 more
Drupal 10Google Tag ManagerGoogle AnalyticsModernizr

Partner Domains:

manageusers.mfda.ca
partner
operationssurobligations.ocrcvm.ca
partner

+2 more partners

2025-07-26T12:20:35.937Z
wechu.org favicon

Windsor-Essex County Health Unit

wechu.org

64
HealthcareCanadamediumMEDIUM

The Windsor-Essex County Health Unit is a government public health organization serving the Windsor and Essex County region in Ontario, Canada. The website provides comprehensive public health information, including immunization clinics, food safety, environmental health, and community health programs. It targets local residents, healthcare providers, and public health stakeholders with timely and relevant health information. The organization operates as a medium-sized regional health authority with a clear focus on community well-being and disease prevention. Technically, the website is built on Drupal 10, leveraging modern web technologies and accessibility tools such as BrowseAloud. It integrates Google Tag Manager and Google Analytics for tracking and marketing purposes. The site is mobile-optimized, accessible, and SEO-friendly, providing a good user experience with clear navigation and structured content. From a security perspective, the site enforces HTTPS and follows several best practices, although explicit security headers and incident response policies are not visible. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partially addressed with a comprehensive privacy policy, but lacks a cookie consent mechanism. WHOIS data is unavailable due to privacy protection, which is justified for a government entity. Overall, the website is trustworthy, professional, and safe for general audiences. Strategic recommendations include enhancing security headers, implementing cookie consent, and publishing incident response information to improve transparency and compliance.

40
58
17
60
72
80
100
publichealthhealthunitwindsoresseximmunizationfoodsafety+3 more
Drupal 10Google Tag ManagerGoogle AnalyticsBrowseAloud accessibility tool
2025-07-26T11:07:42.570Z
drinklesslivemore.ca favicon

Canadian Centre on Substance Use and Addiction

drinklesslivemore.ca

46
HealthcareCanadamediumHIGH

The Canadian Centre on Substance Use and Addiction operates the drinklesslivemore.ca website to provide authoritative guidance on alcohol and health in Canada. The site serves as a public health education platform featuring campaigns, partner resources, and informational content aimed at helping Canadians make informed decisions about alcohol consumption. The organization holds a strong national position as a trusted source in the healthcare and non-profit sectors. Technically, the website is built on Drupal 10 and incorporates modern web technologies including Google Tag Manager for analytics and AddToAny for social sharing. The site is mobile-optimized, accessible, and demonstrates good SEO practices. Hosting and domain registration are managed through reputable Canadian providers, though DNSSEC is not enabled. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks certain security headers and a cookie consent mechanism, which are recommended for enhanced protection and compliance. No direct contact or incident response information is provided, which could be improved to strengthen trust and readiness. Overall, the website is professional, trustworthy, and well-aligned with its public health mission. Strategic improvements in privacy compliance and security policies would further enhance its posture and user confidence.

40
53
17
40
42
60
40
healthalcoholpublichealthcanadasubstanceuse+3 more
Drupal 10Google Tag ManagerAddToAny sharingSlick Carousel

Partner Domains:

www.ccsa.ca
parent
the-proof.ca
partner

+2 more partners

2025-07-26T08:48:20.510Z
ccsa.ca favicon

Canadian Centre on Substance Use and Addiction

ccsa.ca

56
Non-profitCanadamediumMEDIUM

The Canadian Centre on Substance Use and Addiction (CCSA) is a well-established Canadian non-profit organization focused on substance use and addiction research, policy, and public health. The website serves as a comprehensive resource hub offering research publications, conferences, guidance tools, and community resources. It targets a broad audience including researchers, policymakers, healthcare professionals, and the general public interested in substance use health. The organization's market position is strong nationally, supported by a long domain history and consistent branding. Technically, the website is built on Drupal 10, leveraging modern web technologies and analytics tools such as Google Analytics and Google Tag Manager. The site is mobile-optimized, accessible, and SEO-friendly, though performance is moderate. Hosting is provided by Webnames.ca Inc., a Canadian registrar, with HTTPS enabled and domain status clientTransferProhibited, indicating good domain security. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks visible security headers and publicly disclosed security policies or incident response contacts. No vulnerability disclosure or security.txt file was found. Privacy and cookie policies are not explicitly detected in the provided HTML content, which may impact compliance perception. Overall, the security posture is good but could be improved with enhanced headers and transparency. The overall risk assessment is low, with no signs of malicious activity or suspicious domain registration patterns. Strategic recommendations include enabling DNSSEC, publishing privacy and cookie policies, adding security headers, and establishing a vulnerability disclosure process to enhance trust and compliance.

40
53
17
80
52
80
40
substanceuseaddictionhealthcanadanon-profit+3 more
Drupal 10Google AnalyticsGoogle Tag ManagerAddToAny sharing+1

Partner Domains:

issuesofsubstance.ca
partner
csuch.ca
partner

+3 more partners

2025-07-26T08:40:17.130Z
dmko.gr favicon

Municipal Museum of the Kalavritan Holocaust

dmko.gr

63
GovernmentGreecesmallMEDIUM

The Municipal Museum of the Kalavritan Holocaust is a small, government-affiliated cultural institution dedicated to preserving and educating about the tragic events of the Kalavritan Holocaust. The website serves as an informative portal offering museum information, digital archives, educational resources, and visitor services. It maintains a consistent brand presence and integrates multilingual support to reach a broader audience. The institution is well-positioned within its niche, supported by partnerships with the Ministry of Culture and related networks. Technically, the website is built on Drupal 10, leveraging modern web technologies including Google reCAPTCHA v3 for form security, cookie consent management, and accessibility tools. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some performance optimizations could be considered. Analytics and tracking are implemented via Google Analytics and Tag Manager with user consent mechanisms. From a security perspective, the site enforces HTTPS and uses CAPTCHA to protect forms, but lacks visible security headers and published security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the content. Privacy compliance is partially addressed through cookie consent but lacks a dedicated privacy policy page, which is a notable gap. Overall, the website is professional, trustworthy, and safe for general audiences. Strategic improvements in privacy transparency, security headers, and incident response disclosures would enhance compliance and security posture.

40
40
17
85
62
75
100
museumholocaustkalavrytaeducationhistory+3 more
Drupal 10jQueryOwl CarouselGoogle reCAPTCHA v3+4

Partner Domains:

www.culture.gov.gr
partner
www.greek-holocausts.gr
partner

+1 more partners

2025-07-25T16:24:51.253Z
tece.com favicon

TECE SE

tece.com

72
ManufacturingGermanylargeMEDIUM

TECE SE is a German-based manufacturer specializing in sanitary installation products including sanitary systems, plumbing frameworks, drainage, and pipe systems. The company targets architects, planners, craftsmen, customers, and commercial operators with a broad portfolio of products and supporting services such as software tools and product databases. The website reflects an international presence with strategic acquisitions and a strong market position in the manufacturing sector. Technically, the website is built on Drupal 10, employs modern analytics tools like Matomo and Google Tag Manager, and implements GDPR-compliant cookie consent mechanisms. The site is well-optimized for mobile and accessibility, with professional design and clear navigation. Security posture is moderate with HTTPS usage and cookie consent but lacks visible security headers and published security policies. WHOIS data is unavailable or indicates the domain may not be registered, which raises concerns about domain legitimacy despite the professional website content. Overall, the website is trustworthy and business credible but would benefit from improved transparency on domain registration and enhanced security disclosures.

80
100
2
60
72
80
100
sanitaryplumbingmanufacturingdrainagepipesystems+5 more
Drupal 10Google Tag ManagerMatomo AnalyticsConsentmanager.net cookie consent

Partner Domains:

spotlight.tece.com
partner
produktdaten.tece.de
partner
2025-07-25T13:01:03.917Z
triathlonhamburg.de favicon

Hamburger Triathlonverband

triathlonhamburg.de

54
OtherGermanysmallMEDIUM

The Hamburger Triathlonverband website serves as the official digital presence of the regional triathlon association in Hamburg, Germany. It provides comprehensive information about triathlon events, youth programs, training, and organizational matters. The site targets athletes, clubs, and sports enthusiasts within the Hamburg region, offering event calendars, news updates, and resources for members. The business model is that of a non-profit sports federation focused on community engagement and sport promotion. Technically, the website is built on Drupal 10, leveraging modern web standards and technologies. It is hosted on servers associated with rzone.de, indicating a professional hosting environment. The site is mobile-optimized, accessible, and SEO-friendly, with structured navigation and rich content. Google Analytics is used for anonymized statistical tracking, integrated with a GDPR-compliant cookie consent mechanism. From a security perspective, the site enforces HTTPS and includes a Content-Security-Policy nonce, indicating attention to security best practices. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not present, representing areas for improvement. No vulnerabilities or suspicious content were detected, and the domain registration appears consistent with the organization's profile. Overall, the website is professional, trustworthy, and well-maintained, with strong compliance to privacy regulations. Strategic recommendations include publishing security and incident response policies, adding terms of service, and enhancing security headers to further strengthen the security posture.

50
28
2
80
100
70
20
sportstriathlonhamburgyouthevents+1 more
Drupal 10JavaScriptCSSGoogle Analytics
2025-07-25T10:41:22.166Z
fca.org.uk favicon

Financial Conduct Authority

fca.org.uk

66
FinanceUnited KingdomlargeMEDIUM

The Financial Conduct Authority (FCA) is the UK's independent financial regulatory body responsible for overseeing financial services firms and markets to ensure consumer protection and market integrity. The website serves as a comprehensive portal for consumers, firms, and stakeholders, offering regulatory guidance, firm authorisation information, consumer alerts, and access to various FCA systems. The FCA operates with a clear mandate to promote competition, protect consumers, and enhance market integrity, funded through fees charged to the financial services industry. Technically, the FCA website is built on Drupal 10, leveraging modern web technologies including Google Tag Manager and New Relic for performance monitoring. The site demonstrates good mobile optimization, accessibility, and SEO practices, providing a professional and user-friendly experience. Security is robust with HTTPS enforced and cookie consent mechanisms in place, although explicit HTTP security headers and a published security policy could enhance the posture further. Despite the absence of WHOIS registration details due to domain naming restrictions, the website's legitimacy is strongly supported by consistent branding, official contact information, and trust indicators such as the Plain Language Commission Gold Award. No security vulnerabilities or suspicious activities were detected in the content or technical configuration. Overall, the FCA website represents a high-quality, authoritative resource for financial regulation in the UK, with strong business credibility and a solid security foundation. Strategic recommendations include enhancing security header implementation, publishing explicit security and incident response policies, and maintaining vigilance on third-party scripts to sustain trust and compliance.

50
68
17
85
52
70
100
financeregulationukfinancialservicesconsumerprotection+1 more
Drupal 10Google Tag ManagerjQuery UINew Relic Browser monitoring
2025-07-25T02:40:39.040Z
cftc.gov favicon

Commodity Futures Trading Commission

cftc.gov

68
GovernmentUnited StateslargeMEDIUM

The Commodity Futures Trading Commission (CFTC) is a U.S. federal government agency responsible for regulating derivatives markets including futures and swaps. The website serves as the official portal for regulatory information, market data, enforcement actions, and consumer protection resources. It targets market participants, industry professionals, and the general public with authoritative content and timely news updates. The CFTC holds a strong market position as the primary derivatives regulator in the United States. Technically, the website is built on Drupal 10 with Bootstrap for responsive design, leveraging modern web technologies and third-party services such as Google Tag Manager and DigitalGov Web Vitals for analytics and performance monitoring. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes multiple security headers. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a cookie consent mechanism and explicit incident response policies suggests room for improvement in privacy compliance and transparency. Overall, the website is trustworthy, professional, and secure, with minor gaps in privacy and security policy disclosures. The incomplete WHOIS data is typical for .gov domains and does not detract from the site's legitimacy. Strategic recommendations include implementing cookie consent, publishing incident response and vulnerability disclosure policies, and adding terms of service to enhance user trust and compliance.

45
53
2
85
90
80
100
governmentfinanceregulationderivativescompliance+3 more
Drupal 10Bootstrap 3.4.5JavaScriptGoogle Tag Manager+1
2025-07-25T02:40:28.967Z
diabetesde.org favicon

diabetesDE - Deutsche Diabetes-Hilfe

diabetesde.org

67
HealthcareGermanylargeMEDIUM

diabetesDE - Deutsche Diabetes-Hilfe is a prominent German non-profit organization dedicated to providing expert-reviewed information, support, and advocacy related to diabetes mellitus. The website serves as a comprehensive resource for people with diabetes, their families, healthcare professionals, and the general public. It offers extensive educational content, risk assessments, therapy guidance, and community support services. The organization holds a strong market position in Germany's healthcare sector as a trusted source for diabetes-related knowledge and political representation. Technically, the website is built on Drupal 10, leveraging modern web technologies and privacy-conscious analytics tools such as Matomo and eTracker. It employs a consent management platform (Klaro) to comply with GDPR requirements, demonstrating a mature digital infrastructure. The site is mobile-optimized, accessible, and well-structured, providing an excellent user experience. From a security perspective, the site enforces HTTPS, uses appropriate security headers, and respects user privacy by disabling cookies in analytics and providing clear cookie consent mechanisms. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a dedicated security policy or vulnerability disclosure page suggests room for improvement in transparency and incident response readiness. Overall, diabetesDE exhibits a high level of professionalism, trustworthiness, and compliance with privacy regulations. The lack of WHOIS data due to a malformed response limits domain registration insights, but the website content and external partnerships strongly indicate legitimacy and a well-established presence. Strategic recommendations include publishing explicit security policies, enhancing incident response communication, and maintaining regular security audits to sustain trust and compliance.

40
68
2
85
72
80
100
diabeteshealthcareeducationnon-profitgermany+2 more
Drupal 10Matomo AnalyticsKlaro Consent ManagerJavaScript+1

Partner Domains:

www.ddg.info
partner
www.diabetes-stimme.de
partner

+3 more partners

2025-07-24T20:48:24.100Z
apra.gov.au favicon

Australian Prudential Regulation Authority

apra.gov.au

80
FinanceAustralialargeLOW

The Australian Prudential Regulation Authority (APRA) is the official Australian government prudential supervisor responsible for ensuring the stability, competitiveness, and efficiency of the financial system. The website serves as a comprehensive resource for regulated industries including banking, insurance, superannuation, and financial corporations, providing regulatory standards, consultations, data, and licensing information. APRA holds a key position in Australia's financial regulatory landscape with a large organizational footprint and a clear mandate. Technically, the website is built on Drupal 10, leveraging modern web technologies such as Google reCAPTCHA v3 and Google Tag Manager for security and analytics. The site is well-optimized for mobile and accessibility, with fast performance and professional design. Security posture is strong with HTTPS enforced and secure form handling, although explicit security headers could be verified and a dedicated security policy page would enhance transparency. The WHOIS data is limited due to privacy and registrar policies but aligns with Australian government domain registration norms, supporting legitimacy. No suspicious or malicious indicators were found. The site maintains good privacy compliance with clear privacy and cookie policies and uses consent mechanisms. Overall, APRA's website is a trustworthy, authoritative source for prudential regulation information in Australia, with strong business credibility and technical maturity. Minor improvements in security policy transparency and vulnerability disclosure could further strengthen its security posture.

90
53
47
90
100
75
100
governmentfinanceregulationprudentialsupervision+2 more
Drupal 10Google reCAPTCHA v3Google Tag ManagerVimeo embeds

Partner Domains:

asic.gov.au
partner
rba.gov.au
partner
2025-07-24T17:27:01.696Z
red.es favicon

Red.es

red.es

69
GovernmentSpainlargeMEDIUM

Red.es is a Spanish government entity under the Ministry of Economic Affairs and Digital Transformation, dedicated to promoting digital transformation across businesses, citizens, and public administrations. The website serves as a comprehensive portal for initiatives, news, and resources related to digital innovation and funding programs in Spain. The site is well-structured, professionally designed, and targets a broad audience including SMEs, entrepreneurs, and public sector entities. Technically, the website is built on Drupal 10 with modern front-end frameworks like Bootstrap 4.6 and utilizes Google Tag Manager for analytics. It demonstrates good mobile optimization, accessibility, and SEO practices. Security measures include HTTPS enforcement, cookie consent management, and antibot protections on forms. However, some security headers could be improved. The security posture is strong with multiple certifications such as ISO 27001 and compliance with the Spanish National Security Scheme (ENS). No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is robust with clear GDPR-aligned policies and cookie management. Overall, the website reflects a mature digital presence consistent with a government agency, with high trustworthiness and professionalism. The domain WHOIS data is restricted as per .es domain policies, which is typical and appropriate for this entity.

80
25
17
85
95
65
100
governmentdigitaltransformationtechnologypublicsectordigitalinitiatives+4 more
Drupal 10Bootstrap 4.6jQuerySlick Carousel+2

Partner Domains:

www.dominios.es
partner
www.ontsi.red.es
partner

+3 more partners

2025-07-24T08:10:09.857Z