Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 250 of 408|Showing 12451-12500 of 20393
snp2.cz favicon

Správa nemovitostí Praha 2, a. s.

snp2.cz

57
Real EstateCzech RepublicmediumMEDIUM

Správa nemovitostí Praha 2, a. s. is a municipal property management company serving the Prague 2 district. The website provides official information about the company, its services, projects, public notices, and contact details targeting residents, property owners, and tenants within the district. The business operates in the real estate and government sectors, focusing on property management and tenant services. The domain age and registration details align well with the company's founding date, supporting legitimacy. Technically, the website uses a standard HTML5 structure with CSS and JavaScript, powered by the Vismo CMS platform common in Czech municipal websites. It includes modern fonts and a Google Translate widget for accessibility. The site is hosted by a Czech registrar and hosting provider, Active24, with proper HTTPS configuration. Mobile optimization and accessibility are good, though SEO is basic. Security posture is moderate with HTTPS enforced and no exposed sensitive data. However, the site lacks advanced security headers and explicit security or incident response policies. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or GDPR explicit indicators. Contact information is clear and professional, enhancing business credibility. Overall, the website is trustworthy and professional, suitable for its municipal audience. Strategic improvements in privacy compliance, security headers, and incident response transparency would enhance its security and compliance posture.

15
25
17
70
72
75
100
municipalpropertymanagementrealestatepraguegovernment+1 more
HTML5CSS3JavaScriptGoogle Translate widget

Partner Domains:

praha2.cz
partner
novomestskaradnice.cz
partner

+1 more partners

2025-07-10T10:21:31.725Z
espanix.net favicon

ESpanix

espanix.net

69
TelecommunicationsSpainmediumMEDIUM

ESpanix operates as a leading internet exchange point and connectivity hub in Southern Europe, primarily serving Spain and the Iberian Peninsula. The company offers a range of services including IP transit, datacenter hosting, bespoke connectivity solutions, and a high-precision time synchronization service. With over 25 years of experience, ESpanix positions itself as a critical infrastructure provider facilitating secure, low-latency interconnections for telecommunications and network operators. Technically, the website demonstrates a modern and professional design with good mobile optimization and basic accessibility features. The technology stack is standard web technologies with no detected CMS or advanced frameworks. Performance is moderate, and SEO is basic but adequate for the business domain. The site uses HTTPS with integrity checks on resources, but lacks some security headers and cookie consent mechanisms. From a security perspective, ESpanix shows strong compliance with recognized frameworks such as ISO 9001 and the Spanish National Security Scheme (ENS), aligned with the European NIS2 directive. Certifications like WELL, LEED, and WiredScore Platinum further reinforce their commitment to quality and security. However, the absence of WHOIS data for the domain raises questions about domain registration transparency. No incident response contacts or vulnerability disclosure policies are publicly available, which could be improved. Overall, the website and business present a trustworthy and professional image with solid security and compliance posture. The main risks relate to domain registration opacity and minor gaps in privacy compliance. Strategic recommendations include enhancing security headers, publishing incident response information, and implementing cookie consent to improve regulatory compliance and user trust.

15
50
60
85
75
85
100
espanixixpinternetexchangeconnectivitydatacenter+6 more
HTML5CSS3JavaScriptFontAwesome icons+1
2025-07-10T09:16:39.926Z
ealys.com favicon

Ealys

ealys.com

41
TechnologyFrancesmallHIGH

Ealys is a French web development agency specializing in the creation, redesign, and maintenance of websites and web applications, primarily serving clients in the North-East region of France including Metz, Nancy, and Strasbourg. With over 20 years of experience, the company targets a diverse clientele ranging from SMEs to large groups and institutional clients. Their service offerings include website creation, web application development, hosting, security, and audits, positioning them as a comprehensive digital solutions provider in their regional market. The website reflects a professional and consistent brand image with clear service descriptions and client references. Technically, the site employs modern web technologies such as HTML5, CSS3, jQuery, and popular plugins like Revolution Slider and Fancybox, ensuring a responsive and user-friendly experience. Google Analytics is used for visitor tracking, and a cookie consent mechanism is implemented, indicating basic privacy compliance. Security-wise, the site uses HTTPS and follows some best practices but lacks advanced security headers and explicit incident response or vulnerability disclosure policies. The domain registration data is consistent with the business claims, showing a long-established presence without privacy protection, which supports legitimacy. Overall, the website is well-structured, professional, and trustworthy, though there is room for improvement in security and compliance documentation.

20
50
2
55
42
80
-
webdevelopmentwebsitecreationwebapplicationsinternetservicesdigitalagency+1 more
HTML5CSS3jQueryMySQL+6
2025-07-10T09:16:34.917Z
cropmark.com favicon

cropmark.

cropmark.com

55
OtherLuxembourgsmallMEDIUM

Cropmark is a well-established full-service creative studio operating primarily in Luxembourg and Brussels, offering a broad range of branding, corporate design, editorial design, web design, development, SEO, and strategic communication services. The company targets businesses and organizations seeking professional creative solutions, leveraging over 20 years of industry experience. The website reflects a professional and consistent brand image with rich content and clear navigation, supporting its market position as a trusted creative agency in its region. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates analytics tools such as Google Analytics and Matomo. It uses HTTPS for secure communications and content delivery networks for optimized image serving. The site is mobile-optimized and accessible, with good SEO practices evident in meta tags and structured data. However, there is no detected CMS or hosting provider information. From a security perspective, the site benefits from HTTPS and does not expose sensitive data or vulnerable libraries. However, it lacks visible security headers and does not provide privacy or cookie policies, which are important for GDPR compliance. The absence of WHOIS registration data for the domain is a notable concern, although the website content and contact information support legitimacy. Overall, Cropmark's website is professional and trustworthy, but improvements in privacy compliance and domain registration transparency are recommended to enhance security posture and regulatory adherence.

15
35
2
65
70
75
100
creativestudiobrandingcorporatedesigneditorialdesignwebdesign+4 more
HTML5CSS3JavaScriptGoogle Analytics+4

Partner Domains:

everythingisfun.eu
partner
designluxembourg.lu
partner
2025-07-10T09:12:33.568Z
lupapiste.fi favicon

Cloudpermit Oy

lupapiste.fi

65
GovernmentFinlandmediumMEDIUM

Lupapiste, operated by Cloudpermit Oy, is a Finnish government-related online platform providing comprehensive services for construction permits and related permit acquisition processes. The platform targets Finnish residents and businesses involved in construction, offering a streamlined digital service including permit applications and an e-commerce store for permit documents. The website integrates official Finnish identity verification via Suomi.fi, enhancing trust and security for users. Technically, the website employs standard modern web technologies including HTML5, CSS3, and JavaScript, with a third-party LeadDesk chat widget for customer support. The site is mobile-optimized and presents a professional design with clear navigation. However, some technical improvements are needed, such as fixing the anti-CSRF token implementation and adding security headers to strengthen the security posture. Security-wise, the site enforces HTTPS and uses strong authentication mechanisms but lacks visible security headers and a cookie consent mechanism, which are important for GDPR compliance. No critical vulnerabilities were detected, but the placeholder anti-CSRF token suggests a potential security misconfiguration. Overall, the security posture is moderate but can be improved with targeted measures. The overall risk assessment is low, with the website appearing legitimate, trustworthy, and professionally maintained. Strategic recommendations include fixing security token implementation, enhancing privacy compliance with cookie consent, and publishing explicit security and incident response policies to improve transparency and user trust.

55
25
17
80
77
85
100
constructionpermitsgovernmentfinnishauthentication+2 more
HTML5CSS3JavaScriptLeadDesk Webchat widget

Partner Domains:

cloudpermit.com
partner
suomi.fi
partner
2025-07-10T09:11:33.440Z
sy.to favicon

Synology Inc.

sy.to

76
TechnologyTaiwanlargeLOW

Synology Inc. is a well-established technology company specializing in data management, storage, backup, and cloud solutions. The company offers a broad portfolio of products including NAS and SAN storage systems, backup and recovery solutions, surveillance systems, networking devices, and productivity software. Positioned as a global leader in the data storage industry, Synology targets both business and individual users seeking scalable and secure data management platforms. The website reflects a mature digital presence with comprehensive content, clear navigation, and professional branding consistent with its market position. Technically, the website employs modern web technologies such as Vue.js and jQuery, integrates Google Tag Manager and LiveChat for analytics and customer engagement, and demonstrates good performance and mobile optimization. The site is well-structured with proper SEO and accessibility considerations, indicating a high level of digital maturity. From a security perspective, Synology demonstrates strong commitment through HTTPS enforcement, detailed security policies, a secure development lifecycle, supply chain risk management, and a public bounty program. Cookie consent mechanisms and privacy policies align with GDPR compliance, enhancing user trust. No critical vulnerabilities or security issues were detected in the analysis. Overall, the website presents a low-risk profile with strong business credibility, technical robustness, and privacy compliance. Strategic recommendations include publishing a security.txt file to facilitate vulnerability reporting and explicitly listing a Data Protection Officer contact to further enhance compliance transparency.

60
68
25
95
82
90
100
nasdatamanagementbackupcloudsecurity+1 more
jQuery 3.7.1Vue.js (vue.global.prod.js)Google Tag ManagerLiveChat tracking+2
2025-07-10T09:11:08.363Z
ekolo.cz favicon

ekolo.cz s.r.o.

ekolo.cz

47
RetailCzech RepublicmediumHIGH

Ekolo.cz s.r.o. operates a leading Czech e-commerce and physical retail platform specializing in electric bicycles and related accessories. Established in 2007, the company has built a strong market position with over 18 years of experience, offering a wide range of products including over 700 e-bike variants from 16 manufacturers. Their services include sales, rental, and servicing of e-bikes, targeting cycling enthusiasts and urban commuters primarily in the Czech Republic. The website is professionally designed, mobile-optimized, and provides clear navigation and comprehensive product information. Technically, the site leverages modern JavaScript libraries such as Swiper.js, Google Tag Manager, and integrates security features like Google reCAPTCHA to protect user interactions. Hosting is inferred to be on DigitalOcean with CDN support for performance. Security posture is strong with HTTPS enforced and secure form handling, though some HTTP security headers could be improved. Privacy compliance is well addressed with clear privacy and cookie policies, GDPR adherence, and consent mechanisms. Contact information is transparent and includes multiple channels. Overall, the site demonstrates high professionalism, trustworthiness, and digital maturity.

50
25
2
70
32
70
40
electricbikese-bikecyclinge-commerceczechrepublic+2 more
HTML5CSS3JavaScriptSwiper.js+5

Partner Domains:

greatebike.eu
partner
tollebike.de
partner

+3 more partners

2025-07-10T08:09:05.891Z
H

Helsingin seurakuntayhtymä

helsinginseurakunnat.fi

58
GovernmentFinlandlargeMEDIUM

Helsingin seurakuntayhtymä operates as a major religious and community service organization in Helsinki, Finland, providing a range of social and religious services to local residents and church members. The organization is well-established, with a domain registered since 2003, reflecting a stable presence in the community. The website serves as an informational and service portal, primarily in Finnish, targeting local audiences with clear contact and policy information. Technically, the website employs a modern but somewhat dated technology stack including Bootstrap 3 and standard web technologies like HTML5, CSS3, and JavaScript. Hosting and domain services are provided by Elisa Oyj, a reputable Finnish telecom provider. The site is mobile-optimized and performs moderately well, with good SEO and accessibility basics. From a security perspective, the website enforces HTTPS and includes standard security headers, though DNSSEC is not implemented. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place, aligning with GDPR requirements. However, explicit security policies and incident response contacts are not published. Overall, the website demonstrates a solid security posture and business credibility appropriate for a public non-profit organization. Strategic recommendations include implementing DNSSEC, publishing a vulnerability disclosure or security.txt file, enhancing accessibility, and maintaining regular security audits to ensure ongoing compliance and protection.

50
10
17
70
62
75
100
religionchurchcommunityhelsinkinon-profit+1 more
HTML5CSS3JavaScriptRoboto font+1
2025-07-10T08:08:10.724Z
Y

Yahoo

yahooapis.com

72
TechnologyN/aenterpriseMEDIUM

Yahoo is a major global internet brand operating a portfolio of websites and applications including Yahoo, AOL, Engadget, Rivals, In The Know, and Makers. The analyzed page is a Finnish language consent management interface for GDPR compliance, allowing users to accept or reject cookies and manage privacy settings. The business model centers on advertising and content delivery, targeting general internet users with a broad range of digital services. The website demonstrates consistent branding and good content quality aligned with Yahoo's corporate identity. Technically, the site uses standard web technologies including JavaScript and CSS, with some proprietary Yahoo libraries such as YAHOO.i13n.Rapid for analytics. The page is moderately optimized for performance and mobile devices, though accessibility and SEO could be improved. Security measures include CSRF tokens in forms, but no explicit security headers were detected in the provided data. The SSL configuration could not be assessed from the data but is expected to be standard for Yahoo domains. From a security and compliance perspective, the site shows good GDPR compliance with clear privacy and cookie policies linked, and a consent mechanism implemented. No contact or incident response information was found on this page, which is typical for a consent layer. The domain WHOIS data for the subdomain is not separately registered, which is normal for subdomains under a large corporate domain. Overall, the site is trustworthy and safe, with no adult or malicious content detected. Strategically, Yahoo should enhance security headers and accessibility features, improve SEO metadata, and consider publishing clear security and incident response policies linked from consent pages to strengthen trust and compliance posture.

75
68
2
83
77
90
100
consentprivacycookiegdpryahoo+1 more
JavaScriptCSSHTML5

Partner Domains:

aol.com
subsidiary
engadget.com
subsidiary

+3 more partners

2025-07-10T08:08:05.712Z
eceae.org favicon

European Coalition to End Animal Experiments (ECEAE)

eceae.org

48
Non-profitGermanysmallHIGH

The European Coalition to End Animal Experiments (ECEAE) is a well-established non-profit umbrella organization founded in 1990, representing 18 animal protection and scientific organizations across Europe. Their mission focuses on abolishing animal experiments and promoting humane, animal-free research methods. The organization holds a recognized position with official stakeholder status in several EU bodies, enhancing their influence in policy and advocacy. The website reflects this mission with clear, relevant content targeted at animal welfare advocates, researchers, and policymakers. Technically, the website is built on Joomla CMS with a modern and responsive design, delivering a good user experience across devices. The infrastructure is moderate in performance, with no blocking or WAF challenges detected. However, some security best practices such as DNSSEC and security headers are missing, and no cookie consent mechanism is implemented, which is a compliance gap given GDPR relevance. Security posture is adequate with HTTPS enabled and domain transfer protection, but lacks published security policies or incident response contacts. The WHOIS data is transparent and consistent with the organization's identity and location, supporting legitimacy. Overall, the site is professional and trustworthy but could improve privacy compliance and security hardening. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent for GDPR compliance, and publishing security and incident response policies to enhance trust and compliance.

50
53
2
70
72
55
-
animalprotectionantivivisectionnon-animalresearcheuropeancoalitionanimalexperiments
JavaScriptCSSHTML5
2025-07-10T08:05:40.408Z
tilaajavastuu.fi favicon

Vastuu Group

tilaajavastuu.fi

65
TechnologyFinlandlargeMEDIUM

Vastuu Group is a Finnish technology service provider specializing in digital solutions that facilitate employee data management, compliance with labor laws, and reporting obligations primarily for the construction sector and related industries. The company offers a broad portfolio of services including Valtti+, Valttikortti, and electronic signature solutions, positioning itself as a key enabler of digital transformation and regulatory compliance in its market. Recent acquisitions such as Linnunmaa Lex indicate strategic growth and expansion of service offerings. Technically, the website is built on the HubSpot CMS platform, leveraging modern web technologies and integrating analytics and marketing tools such as Google Tag Manager and Facebook Pixel. The site demonstrates good performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. From a security perspective, Vastuu Group maintains a strong posture with HTTPS enforcement, ISO 27001 certification, and comprehensive privacy and cookie policies. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a public incident response policy and security.txt file suggests areas for improvement in transparency and vulnerability management. Overall, Vastuu Group presents a professional, trustworthy, and compliant digital presence aligned with its business objectives. The company is well-positioned in its sector with a clear focus on compliance, digital services, and customer support.

45
25
17
85
75
85
100
digitalservicesemployeemanagementconstructioncomplianceiso27001+2 more
HubSpot CMSGoogle Tag ManagerGoogle FontsMaterial Symbols+3

Partner Domains:

support.vastuugroup.fi
service
signspace.vastuugroup.fi
service

+1 more partners

2025-07-10T08:04:09.799Z
synology.com favicon

Synology Inc.

synology.com

76
TechnologyN/alargeLOW

Synology Inc. is a prominent technology company specializing in network-attached storage (NAS), data management, backup, surveillance, networking, and cloud solutions. The company positions itself as a leader in providing scalable and secure data management platforms for both business and individual users. Their website reflects a mature digital presence with comprehensive product offerings, customer resources, and a strong emphasis on data security and privacy. Technically, the site employs modern JavaScript frameworks such as Vue.js and jQuery, integrates Google Tag Manager for analytics, and uses LiveChat for customer engagement. The site is well-optimized for mobile devices and provides clear navigation and professional design. From a security perspective, Synology demonstrates good practices including HTTPS enforcement, detailed privacy and cookie policies with consent mechanisms, and public disclosure of security programs such as a bounty program. No critical vulnerabilities or exposed sensitive data were detected in the website content. WHOIS data for the domain is unavailable or restricted, which is common for privacy-conscious enterprises, but the website content and external trust signals strongly support the legitimacy of the domain. Overall, Synology's website reflects a robust security posture, strong privacy compliance, and a high level of business credibility. The company effectively communicates its value proposition and maintains transparency in security and data protection matters, making it a trustworthy technology provider in its market segment.

60
68
25
95
82
90
100
nasdatamanagementbackupsurveillancecloud+3 more
jQuery 3.7.1Vue.js (vue.global.prod.js)Google Tag ManagerLiveChat tracking+2
2025-07-10T07:00:14.871Z
ui.com favicon

Ubiquiti Inc.

ui.com

77
TechnologyUnited StatesenterpriseLOW

Ubiquiti Inc. is a well-established enterprise technology company specializing in networking hardware and software solutions, particularly under the UniFi brand. The company targets enterprise customers and IT professionals with a comprehensive portfolio of products designed to unify networking and security management through an advanced software interface. The website reflects a mature digital presence with a professional design, clear navigation, and mobile optimization, supporting a strong market position in the technology and telecommunications sectors. Technically, the website leverages modern web technologies including React and JavaScript, hosted on Amazon AWS infrastructure, ensuring fast performance and scalability. The site employs best practices in SEO, accessibility, and user experience, with comprehensive metadata and structured data supporting search engine visibility. Analytics and marketing tools are integrated responsibly with user consent mechanisms in place. From a security perspective, the site enforces HTTPS, implements key security headers, and avoids exposing sensitive data. However, DNSSEC is not enabled, which is a recommended enhancement for DNS security. The absence of a public security policy or incident response contact is noted as an area for improvement. Overall, the security posture is strong with no critical vulnerabilities detected. The domain WHOIS data confirms the legitimacy of the website, showing a long registration history consistent with the company's founding date and no use of privacy protection, which aligns with the public nature of the business. The website is free from WAF or blocking mechanisms, allowing full content access and analysis. Strategic recommendations include enabling DNSSEC, publishing a security policy and incident response contacts, and maintaining regular audits of third-party scripts to sustain security and compliance standards.

70
88
2
82
100
85
100
enterprisenetworkingtechnologysecuritysoftwarehardware+2 more
ReactJavaScriptCSSHTML5
2025-07-10T07:00:09.859Z
oca.lu favicon

OCA Luxembourg

oca.lu

41
FinanceLuxembourgsmallHIGH

OCA Luxembourg is a professional insurance brokerage firm operating in the Grand Duchy of Luxembourg, providing tailored insurance solutions for both professionals and individuals. The company offers a range of services including professional insurance, personal insurance, and specialty insurance products such as Lifestyle & Fine Art, construction guarantees, and coverage for European officials and sports professionals. The website reflects a well-structured and professional digital presence with clear navigation and relevant content targeting Luxembourg-based clients. Technically, the website employs modern web technologies including Bootstrap, jQuery, and specialized plugins like Revolution Slider and tarteaucitron for cookie consent management. The site is mobile-optimized and demonstrates good SEO practices, although some improvements in accessibility and security headers could enhance its technical maturity. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms, indicating awareness of privacy regulations such as GDPR. However, the absence of visible security headers and incident response information suggests room for improvement in security posture. The lack of WHOIS data limits the ability to fully verify domain legitimacy, but the professional content and business registration number lend credibility. Overall, the website presents a trustworthy and professional image suitable for its business domain, with moderate technical and security maturity. Strategic enhancements in security headers, incident response transparency, and WHOIS data availability would strengthen trust and compliance.

20
28
2
70
52
75
-
insuranceluxembourgbrokerprofessionalpersonal+2 more
HTML5CSS3JavaScriptjQuery+3
2025-07-10T06:54:54.457Z
trilbymedia.com favicon

Trilby Media LLC

trilbymedia.com

64
TechnologyUnited StatessmallMEDIUM

Trilby Media LLC is a specialized technology service provider focused on Grav CMS professional services, custom development, hosting, and support. The company is staffed by the original Grav CMS development team, positioning it as a niche expert in the CMS market. Their website reflects a professional and consistent brand image, targeting businesses and developers seeking Grav CMS solutions. The company is US-based, founded in 2016, and showcases reputable clients, enhancing its market credibility. Technically, the website is built on the Grav CMS platform, leveraging modern web technologies including HTML5, CSS3, JavaScript, and integrates analytics tools such as Google Analytics and Microsoft Clarity. Hosting and DNS services are provided by Cloudflare, with additional security measures like Cloudflare Turnstile CAPTCHA implemented on the contact form. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices. From a security perspective, the site uses HTTPS and Cloudflare services, but lacks DNSSEC and explicit security headers such as Content-Security-Policy and HSTS. There are no published privacy or cookie policies, which represents a compliance gap. No incident response or vulnerability disclosure information is provided. The WHOIS data is transparent and consistent with the business identity, supporting legitimacy. Overall, the website is professional, secure to a reasonable extent, and credible, but would benefit from enhanced privacy compliance and security header implementation. Strategic improvements in these areas would strengthen trust and regulatory adherence.

65
35
17
75
65
75
100
gravcmswebdevelopmenthostingconsultingcustomplugins+1 more
Grav CMSHTML5CSS3JavaScript+5
2025-07-10T05:50:11.249Z
jandl.digital favicon

Jarrett & Lam

jandl.digital

69
TechnologyUnited KingdomsmallMEDIUM

J&L Digital is a UK-based IT services and software development company founded in 2023, offering a broad range of digital solutions including website development, software systems, IT services, app development, and VoIP telephone systems. The company targets businesses seeking tailored IT and digital solutions and operates with a professional and consistent brand presence. Their market position is that of a small but globally oriented technology service provider with regional offices in Europe, Asia, and Australia. Technically, the website employs modern web standards with HTML5, CSS3, and JavaScript, integrating Matomo and Google Tag Manager for analytics. Hosting and DNS services leverage Cloudflare and IONOS SE, ensuring good performance and security. The site is mobile optimized and SEO friendly, with a cookie consent mechanism that supports GDPR compliance. From a security perspective, the website uses HTTPS with a strong SSL configuration and displays a Cyber Essentials certification badge, indicating adherence to recognized UK security standards. However, DNSSEC is not enabled, and no explicit security policy or incident response contact information is published. The domain registration is privacy protected but consistent with the business's UK location and recent founding date, supporting legitimacy. Overall, the website is professional, secure, and compliant with privacy regulations, with minor recommendations to enhance DNS security and publish security policies. The risk level is low, and the company demonstrates a solid foundation for trust and digital maturity.

70
65
2
85
75
70
100
itservicessoftwaredevelopmentwebdesigncyberessentialsmatomoanalytics+2 more
HTML5CSS3JavaScriptMatomo Analytics+2
2025-07-10T05:47:20.902Z
rika.se favicon

RIKA Innovative Ofentechnik GmbH

rika.se

59
EnergyAustriamediumMEDIUM

RIKA Innovative Ofentechnik GmbH is an Austrian manufacturer specializing in high-quality wood, pellet, and combination stoves for residential heating. The company maintains a strong market presence in Europe with multiple regional websites and a dealer network, emphasizing innovation and quality craftsmanship. Their business model includes direct sales through dealers and an online configurator tool to customize stoves. The website is professionally designed, targeting Swedish-speaking customers with multilingual support for other regions. Technically, the website employs modern JavaScript libraries such as Alpine.js and Flickity, hosted on DigitalOcean's CDN infrastructure, ensuring moderate performance and good mobile optimization. Security measures include HTTPS enforcement, reCAPTCHA integration, and cookie consent mechanisms, although explicit security headers could be improved. Privacy compliance is well addressed with a comprehensive privacy policy and cookie management. The security posture is solid with no visible vulnerabilities or exposed sensitive data. However, the absence of WHOIS data for the exact domain suggests the use of subdomains or proxying, which is not uncommon but reduces transparency. Overall, the site demonstrates a mature digital presence with good business credibility and moderate technical sophistication. Strategic recommendations include enhancing security headers, publishing a dedicated security policy, and improving accessibility compliance to further strengthen trust and compliance.

20
43
2
85
62
75
100
energyheatingstovespelletwood+3 more
HTML5CSS3JavaScriptAlpine.js+8

Partner Domains:

rika.at
partner
rika.eu
partner

+3 more partners

2025-07-10T05:44:40.390Z
saaristolautat.fi favicon

Saaristolautat.fi

saaristolautat.fi

43
TransportationFinlandsmallHIGH

Saaristolautat.fi is a specialized informational website providing ferry routes and schedules for the Finnish archipelago, including the Turku archipelago and Åland Islands. The site targets travelers and residents needing up-to-date ferry information for over 40,000 islands serviced by approximately 50 ferries and 200 docks. The business model is primarily informational, serving as a public utility platform rather than a commercial enterprise. The website is relatively small in scale, founded in 2017, and operates with a niche focus on regional transportation. Technically, the website employs a modern web stack including HTML5, CSS3, JavaScript with jQuery, Bootstrap for responsive design, FontAwesome for icons, and integrates Google Maps API for route visualization. Hosting appears to be provided by Domainhotelli, a Finnish hosting provider. The site is mobile optimized and has good SEO practices, though accessibility features are basic. Performance is moderate, with no major technical issues detected. From a security perspective, the site lacks visible security headers and does not provide privacy or cookie policies, which are important for GDPR compliance given its European audience. No contact information or incident response details are provided, limiting transparency and trust. The WHOIS data shows the domain is registered to a private person rather than an organization, which is somewhat inconsistent with the public service nature of the site but not necessarily suspicious. No WAF or blocking mechanisms are detected, and the site content is fully accessible. Overall, the website is functional and provides valuable regional transportation information but would benefit from improved security practices, privacy compliance, and clearer business contact details to enhance trust and regulatory adherence.

15
10
2
85
72
75
20
ferryarchipelagotransportationschedulesfinland+3 more
HTML5CSS3JavaScriptjQuery+4
2025-07-10T04:39:50.418Z
ekokvarner.hr favicon

Eko Kvarner

ekokvarner.hr

41
Non-profitCroatiasmallHIGH

Eko Kvarner is a Croatian non-profit environmental organization focused on promoting sustainable energy, climate change awareness, and ecological protection in the Kvarner region. The website serves as an information hub providing news, activities, projects, and educational resources to local communities and stakeholders interested in environmental issues. The organization appears well-established with a domain registered since 2012 and clear contact information including physical address, phone numbers, and email. The site content is primarily in Croatian and targets regional audiences. Technically, the website uses an older CMS platform called Galaksija and relies on legacy JavaScript libraries such as jQuery and Fancybox. While the site is accessible and contains meaningful content, it loads some external scripts over unsecured HTTP, which introduces mixed content risks. The site lacks modern security headers and advanced privacy or cookie consent mechanisms, indicating room for improvement in security and compliance maturity. Hosting is provided by Totohost, a Croatian hosting provider, and the domain registrar is CARNET, a reputable Croatian academic network. From a security perspective, the site uses HTTPS but does not implement additional security headers or content security policies. No incident response or security policy pages are found, and no vulnerability disclosure or security.txt files are present. The WHOIS data is consistent with the website's business profile and geographic location, supporting legitimacy. No suspicious or malicious indicators were detected. Overall, the website is functional and provides valuable content for its target audience but would benefit from technical modernization, improved security practices, and enhanced privacy compliance to strengthen trust and resilience against threats.

15
25
17
85
62
60
-
environmentenergynon-profitcroatiasustainability+1 more
jQueryjQuery UIFancyboxCSS+1
2025-07-10T03:34:04.514Z
men.lu favicon

Ministère de l'Éducation nationale, de l'Enfance et de la Jeunesse

men.lu

58
GovernmentLuxembourglargeMEDIUM

The website men.public.lu is the official online presence of the Ministry of National Education, Childhood and Youth of Luxembourg. It serves as a comprehensive information portal providing detailed content on the Luxembourg education system, policies, news, events, and resources for students, parents, educators, and the general public. The site is well-positioned as an authoritative government source with a clear focus on education and youth services in Luxembourg. Technically, the website is built on Adobe Experience Manager CMS, leveraging modern web technologies including RequireJS and Adobe Dynamic Tag Management for analytics and tag management. The site is mobile-optimized, accessible, and demonstrates good SEO practices. Performance is moderate, with content delivered via a government CDN. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. While explicit security headers are not fully confirmed, the site follows best practices with no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data is noted but likely due to registry policies rather than malicious intent. Overall, the site maintains a strong security posture suitable for a government entity. The overall risk assessment is low, with no signs of malicious activity or compliance issues. Strategic recommendations include enhancing security header implementation, publishing a formal security policy, and improving incident response contact visibility to further strengthen trust and security culture.

30
10
17
65
72
85
100
educationgovernmentluxembourgministryyouth+3 more
HTML5CSS3JavaScriptRequireJS+2
2025-07-10T03:32:12.082Z
demch.co favicon

demch.co

demch.co

51
TechnologyUkrainesmallMEDIUM

demch.co is a Ukrainian-based web development company specializing in creating websites and digital services for non-profit organizations and social change initiatives. With over 12 years of experience and more than 300 projects completed, the company positions itself as a trusted partner for NGOs, government agencies, and international organizations. Their key services include full-cycle website development, consulting, technical support, branding, design, and animation. The website is professionally designed, mobile-optimized, and provides clear contact information, enhancing user trust and engagement. Technically, the site employs modern web technologies such as HTML5, CSS3, JavaScript, and popular libraries like jQuery, TweenMax, and AOS for animations. Google Analytics and Google Tag Manager are used for tracking, indicating a moderate level of user data collection. Hosting appears to be managed via NameCheap with custom DNS servers. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, it lacks DNSSEC and visible security headers, which are recommended to enhance security posture. No privacy, cookie, or terms of service policies are present, representing compliance gaps especially under GDPR. No incident response or vulnerability disclosure information is provided. Overall, the website is safe, professional, and trustworthy with a strong focus on serving the non-profit sector. Strategic improvements in privacy compliance and security hardening would further strengthen its position and reduce risk.

-
35
47
60
-
85
100
webdevelopmentnon-profitsocialchangeukrainedigitalservices+3 more
HTML5CSS3JavaScriptjQuery+6
2025-07-10T03:28:04.537Z
istra.hr favicon

Istria Tourist Board

istra.hr

54
HospitalityCroatiamediumMEDIUM

The website www.istra.hr serves as the official tourist website for the Istria Tourist Board, promoting the Istria region in Croatia. It provides comprehensive tourism information including accommodation, events, heritage, and nature activities targeting tourists and visitors interested in the Mediterranean region. The business operates as a regional tourism board with a medium-sized presence and has been established since 2012, consistent with the domain registration data. The website demonstrates a good level of digital maturity with modern web technologies, accessibility features, and SEO optimization. It uses a Laravel-based CMS inferred from session cookies and integrates multiple third-party services such as Facebook SDK, Google Tag Manager, Cookiebot for cookie consent, and MailerLite for marketing automation. Security posture is solid with HTTPS enforced and a detailed cookie consent mechanism, although explicit security headers could be more visible. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed through Cookiebot's consent management and links to a comprehensive privacy policy. However, no explicit terms of service or security policy pages were found. Overall, the website is professional, trustworthy, and well-aligned with its business purpose.

15
88
17
85
72
75
-
tourismistriatravelhospitalitycookieconsent+2 more
HTML5CSS3JavaScriptFacebook SDK+3
2025-07-10T03:26:08.964Z
aaa.lu favicon

Association d'assurance accident

aaa.lu

57
GovernmentLuxembourgmediumMEDIUM

The Association d'assurance accident (AAA) website serves as the official online presence for the Luxembourg governmental accident insurance association. It provides comprehensive information on accident insurance, workplace safety, indemnifications, and related public services. The site targets residents, workers, and employers in Luxembourg, offering resources, contact points, and regulatory information. The organization holds ISO9001:2015 certification, reinforcing its commitment to quality and trustworthiness. Technically, the website is built on Adobe Experience Manager CMS, leveraging modern web technologies including RequireJS and Adobe Dynamic Tag Manager for analytics and marketing. The site is well-structured, mobile-optimized, and accessible, with clear navigation and professional design. Cookie consent and privacy policies are implemented in compliance with GDPR. Security posture is moderate with HTTPS usage inferred, but no explicit security headers were detected in the provided data. No vulnerabilities or exposed sensitive data were found. The absence of WHOIS data limits domain registration trust analysis, but the domain's public.lu TLD and content strongly indicate an official government entity. Overall, the website is a reliable and professional government resource with good content quality and privacy compliance. Recommendations include enhancing security headers, publishing explicit security policies, and improving WHOIS data transparency where possible.

40
10
2
65
72
85
100
governmentinsuranceaccidentworkplacesafetyluxembourg+1 more
HTML5CSSJavaScriptRequireJS+2
2025-07-10T02:25:11.889Z
accessibilite.lu favicon

Le Gouvernement du Grand-Duché du Luxembourg

accessibilite.lu

54
GovernmentLuxembourgmediumMEDIUM

The website accessibilite.lu is an official government portal of Luxembourg dedicated to providing information on accessibility across digital platforms, infrastructure, and products/services. It serves as a public service resource aimed at residents and stakeholders interested in accessibility issues within Luxembourg. The site is branded consistently with Luxembourg government identity and offers navigation in French with an option for German. Technically, the site uses standard HTML5, CSS, and JavaScript, including Adobe Launch for analytics, indicating a moderate level of digital maturity. The site is mobile optimized and accessible, though content quality is basic with limited depth on the landing page. Security posture is adequate with HTTPS implied, but lacks visible security headers and formal security policies. Privacy compliance is weak due to absence of privacy and cookie policies or consent mechanisms. No contact or incident response information is provided, limiting user engagement and trust channels. Overall, the domain registration and DNS configuration align with official Luxembourg government infrastructure, confirming legitimacy and trustworthiness. Strategic improvements in privacy compliance, security headers, and contact transparency would enhance the site's security and user trust.

15
25
2
60
82
75
100
governmentaccessibilityluxembourgpublicservicedigitalaccessibility
HTML5CSSJavaScriptAdobe Launch (Adobe DTM)
2025-07-10T02:24:56.474Z