Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 29 of 30|Showing 1401-50 of 50
vrtnws.be favicon

VRT NWS

vrtnws.be

67
MediaBelgiumlargeMEDIUM

VRT NWS is a leading Belgian public news media organization providing reliable, clear, and engaging news content in text, image, and audio formats. The website serves a broad audience interested in current affairs, regional news, politics, culture, and international events. It operates under the parent company VRT and maintains a strong market position as a trusted news source in Belgium. The platform offers diverse content including liveblogs, videos, podcasts, and thematic dossiers, supported by a consistent and professional brand identity. Technically, the website is built on modern web technologies including Next.js and React, with integrations of Adobe DTM for tag management and Gemius for analytics. The site is well optimized for mobile devices, accessibility, and SEO, ensuring a fast and user-friendly experience. The infrastructure supports rich multimedia content and interactive features, reflecting a mature digital presence. From a security perspective, the site enforces HTTPS and follows best practices such as responsible disclosure policies. While explicit security headers were not detected in the provided data, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is robust, with clear privacy and cookie policies aligned with GDPR requirements. The WHOIS data is restricted, which limits domain registration transparency but does not detract from the site's legitimacy given its official status and professional presentation. Overall, VRT NWS demonstrates a high level of digital maturity, security awareness, and business credibility, making it a reliable and authoritative news platform in its region.

15
45
35
82
100
70
100
newsmediabelgiumvrtjournalism+1 more
Next.jsReactAdobe DTMGemius+3

Partner Domains:

www.vrt.be
parent
www.vrtmax.be
partner

+1 more partners

2025-10-22T11:38:28.220Z
navexglobal.eu favicon

NAVEX

navexglobal.eu

75
TechnologyUnited KingdomenterpriseMEDIUM

NAVEX is a leading provider of governance, risk, and compliance (GRC) solutions, serving over 13,000 organizations worldwide. Their offerings include a comprehensive GRC platform (NAVEX One), whistleblowing and incident management software, ethics and compliance training, policy management, and risk governance tools. The company targets enterprise clients, including Fortune 100 and 500 companies, and is recognized for supporting ethical business practices globally. The website reflects a mature digital presence with professional design, clear navigation, and extensive content tailored to compliance professionals. Technically, the site leverages modern JavaScript frameworks such as React, integrates marketing and analytics tools like Marketo, Google Tag Manager, Microsoft Clarity, and Optimizely, and employs consent management via TrustArc. The site is well-optimized for mobile and accessibility, with good SEO practices and secure HTTPS configuration. Forms are protected with reCAPTCHA, enhancing security and privacy compliance. Security posture is strong with appropriate HTTP security headers, SSL/TLS enforcement, and no visible vulnerabilities or exposed sensitive data. However, the absence of publicly available WHOIS data suggests domain privacy protection, which is common for enterprises but limits transparency. No incident response or vulnerability disclosure policies were found, indicating an area for potential improvement. Overall, NAVEX presents a trustworthy and professional online presence aligned with its market position as a GRC leader. The site supports business credibility through testimonials, extensive resources, and clear contact channels, though enhancing transparency around security policies and incident response would further strengthen trust.

30
80
47
95
75
85
100
grcriskmanagementcompliancewhistleblowingethics+3 more
JavaScriptReactMarketo FormsGoogle Tag Manager+5
2025-10-22T10:58:42.376Z
bgma.bg favicon

Българска музикална асоциация

bgma.bg

47
MediaBulgariasmallHIGH

The Bulgarian Music Association (Българска музикална асоциация) is a professional non-profit organization representing and protecting the interests of professional musicians in Bulgaria. The website clearly communicates its mission to support musicians through advocacy, education, international cooperation, and promotion of Bulgarian music. The organization targets professional musicians and stakeholders in the Bulgarian music sector. The site is well-positioned as a leading national music association with international outreach. Technically, the website is built on WordPress with a modern tech stack including React, UIkit, and various performance and SEO plugins. It is well-optimized for mobile and desktop, with fast loading times and good accessibility. The site uses HTTPS and Google Tag Manager for analytics and tracking, indicating a mature digital infrastructure. From a security perspective, the site employs HTTPS and does not expose sensitive data. However, some standard security headers are not explicitly detected, and there is no visible security policy or incident response contact information. The WHOIS data is privacy protected in compliance with GDPR, which is appropriate for this type of organization. No suspicious patterns or vulnerabilities were found. Overall, the website presents a professional, trustworthy, and well-maintained digital presence for the Bulgarian Music Association. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to improve transparency and trust.

15
28
2
85
72
70
20
musicassociationbulgariaprofessionalmusiciansnon-profit+4 more
WordPressYoast SEO PremiumGoogle Tag ManagerjQuery+7
2025-10-22T08:43:02.341Z
zeppelin.com favicon

Zeppelin Konzern

zeppelin.com

71
EnergyGermanyenterpriseMEDIUM

Zeppelin Konzern is a large German enterprise specializing in providing innovative solutions across construction, industry, plant engineering, and energy sectors. The company operates globally with over 200 locations, emphasizing sustainability and corporate social responsibility. Their business model focuses on B2B services including machinery, rental, power systems, and engineering solutions. The website reflects a mature digital presence with professional design and comprehensive content tailored to industrial clients and partners. Technically, the website leverages modern frameworks such as Next.js and React, supported by CDN hosting and enhanced with Google Tag Manager and OneTrust for privacy compliance. The site is mobile-optimized, fast-loading, and accessible, indicating a high level of digital maturity. Security best practices are observed with HTTPS enforcement and security headers, although no public vulnerability disclosure or incident response information is provided. The security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well implemented with clear cookie consent mechanisms and GDPR-aligned privacy policies. However, the absence of WHOIS data for the domain introduces some uncertainty regarding domain registration legitimacy, though the website content and branding strongly support the authenticity of the business. Overall, Zeppelin Konzern presents a professional, trustworthy, and secure online presence suitable for its enterprise audience. Strategic recommendations include publishing a vulnerability disclosure policy, incident response contacts, and continuing regular security audits to maintain and enhance trust.

50
83
2
85
82
85
100
constructionindustryenergyengineeringsustainability+2 more
ReactNext.jsjQueryGoogle Tag Manager+1
2025-10-22T08:39:41.094Z
staedtereinigung-gerke.de favicon

Städtereinigung Gerke GmbH

staedtereinigung-gerke.de

62
EnergyGermanymediumMEDIUM

Städtereinigung Gerke GmbH is a well-established regional service provider specializing in municipal and industrial waste management and sanitation services in Tönisvorst, Willich, and surrounding areas in Germany. With over 60 years of history, the company offers a broad range of services including hazardous waste disposal, sanitary rentals, and container rentals through an online shop. The website reflects a professional and consistent brand image targeting local businesses, municipalities, and citizens. Technically, the site is built on modern frameworks such as Next.js and React, hosted on Vodafone infrastructure, and incorporates consent management and analytics tools like Usercentrics and Google Tag Manager. Security posture is solid with HTTPS and basic security best practices, though explicit security headers and incident response policies are not published. Overall, the site is accessible, well-structured, and compliant with GDPR, but could improve transparency on security and incident response. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure mechanisms.

60
33
17
70
77
60
100
municipalserviceswastemanagementindustrialservicessanitationregionalpartner+2 more
ReactNext.jsUsercentrics (Consent Management)Google Tag Manager+1

Partner Domains:

egn-eanv.de
partner
entsorgung-niederrhein.de
partner

+2 more partners

2025-10-22T08:08:41.222Z
hisally.ch favicon

Sally & Friends AG

hisally.ch

59
MediaSwitzerlandsmallMEDIUM

Sally & Friends AG is a Swiss-based company specializing in branding, digital marketing, development, design, and event management services. The company positions itself as a strategic partner for startups, SMEs, and large enterprises aiming to elevate their events and digital presence. Their key services include customer experience design, product engineering, digital growth and marketing, and event management. The website showcases a strong client portfolio, indicating a reputable market position within the media and technology sectors in Switzerland. Technically, the website is built using modern technologies such as Next.js and React, with Contentful as the CMS and Vimeo for video hosting. The site is well-optimized for performance and mobile devices, featuring professional design and clear navigation. However, there is room for improvement in security practices, particularly the implementation of security headers and publishing security policies. From a security perspective, the site uses HTTPS and does not expose sensitive data or vulnerable libraries. However, the absence of privacy and cookie policies, as well as incident response information, indicates compliance gaps. No WAF or blocking mechanisms were detected, allowing full content accessibility. Overall, the website presents a professional and trustworthy business front with excellent content quality and business credibility. Strategic recommendations include enhancing privacy compliance, implementing security headers, and publishing incident response and security policies to strengthen trust and regulatory adherence.

30
35
17
70
62
75
100
brandingdigitalmarketingeventmanagementconsultingdigitalcontentproduction
Next.jsReactVimeo (video hosting)SVGator (SVG animations)+1
2025-10-22T08:04:49.859Z
aitechly.com favicon

AITechly

aitechly.com

46
TechnologyN/asmallHIGH

AITechly is a newly registered technology-focused website launched in 2023, offering a dashboard with user sign-in functionality. The site is built using React and Material-UI, indicating a modern front-end technology stack. However, the website content is minimal, primarily consisting of a sign-in form without additional business descriptions, policies, or contact information. The domain registration is transparent and consistent with a new business, registered via NameCheap without privacy protection. The lack of detailed business information and policies limits the site's trustworthiness and compliance posture. From a technical perspective, the website uses a modern JavaScript framework (React) and Material-UI for UI components, but lacks SEO optimization, accessibility features, and performance enhancements. No CMS or advanced hosting details are evident. Security posture is basic, with no detected security headers or advanced protections, and no visible HTTPS confirmation in the provided data. The sign-in form collects email and password but lacks visible anti-CSRF tokens or other security measures. Security evaluation reveals missing security headers and absence of privacy and cookie policies, which are critical for GDPR compliance and user trust. No incident response or vulnerability disclosure information is provided. The site does not use tracking or advertising technologies, which reduces privacy concerns but also limits marketing insights. Overall, the site scores moderately low on content quality, technical implementation, and privacy compliance, with business credibility also limited by lack of contact and policy information. Strategic recommendations include implementing HTTPS with strong SSL/TLS, adding comprehensive privacy and cookie policies, deploying security headers, improving accessibility and SEO, and providing clear business contact and security incident response information to enhance trust and compliance.

15
50
2
70
65
70
40
technologyloginreactdashboard
ReactMaterial-UIJavaScript
2025-10-22T06:57:43.417Z
M

Museum Utopie und Alltag Digital

utopieundalltag-digital.de

56
Non-profitGermanysmallMEDIUM

Museum Utopie und Alltag Digital is a German non-profit digital museum platform that collects and showcases personal stories, comments, and photographs related to museum objects, initially focusing on the theme of travel. The platform encourages community engagement and collective memory creation through user-generated content. The website is bilingual (English and German) and provides educational and cultural content aimed at a general audience interested in heritage and history. Technically, the website is built using modern web technologies including React and Next.js, with a WordPress backend serving content via API. It is hosted on Amazon AWS infrastructure, uses Matomo for privacy-conscious analytics, and implements GDPR-compliant cookie consent mechanisms. The site is mobile-optimized and has good SEO and accessibility basics. From a security perspective, the website enforces HTTPS, includes standard security headers, and does not expose sensitive data or use vulnerable libraries. However, it lacks explicit security or incident response policies and does not provide vulnerability disclosure information. Privacy compliance is strong with a clear privacy policy and cookie consent. Overall, the website presents a trustworthy, professional, and secure platform for cultural heritage engagement. Recommendations include adding terms of service, security policies, and a vulnerability disclosure page to enhance transparency and trust further.

20
43
2
60
77
60
100
museumdigitalculturalheritageuserstoriestravel+1 more
ReactNext.jsMatomo AnalyticsAWS DNS
2025-10-22T06:56:25.467Z
sellaio.com favicon

RedCart – sklepy internetowe, integracje, automatyzacja

sellaio.com

55
E-commercePolandmediumMEDIUM

RedCart is a well-established Polish e-commerce platform founded in 2008, offering comprehensive solutions for online store creation, sales management, multi-channel selling, and automation. The platform targets e-commerce businesses seeking integrated tools to streamline their operations and increase sales efficiency. With over 100,000 stores created and positive client testimonials, RedCart holds a strong market position in Poland's e-commerce sector. Technically, the website leverages modern web technologies including Next.js and React, ensuring fast performance and excellent mobile optimization. The platform integrates multiple analytics and marketing tools such as Google Tag Manager, Hotjar, Microsoft Clarity, and Facebook Pixel, indicating a mature digital marketing approach. Security-wise, the site uses HTTPS and DNSSEC, reflecting good domain and transport security. However, explicit privacy and cookie policy pages are missing, and some recommended security headers are not evident, which could be improved to enhance compliance and security posture. Overall, RedCart presents a professional, trustworthy, and technically sound e-commerce platform with room for improvement in privacy transparency and security header implementation.

20
10
2
70
77
80
100
e-commerceonlinestoreautomationintegrationsalesmanagement+1 more
Next.jsReactJavaScriptCSS+4

Partner Domains:

admin.sellaio.com
partner
2025-10-22T05:46:47.762Z
civicactions.com favicon

CivicActions

civicactions.com

72
GovernmentUnited StatesmediumMEDIUM

CivicActions is a well-established company founded in 2003 that specializes in helping government agencies deliver better public services through open technology, Agile and DevOps methodologies, and human-centered design. Their market position is that of a trusted partner for government digital transformation, offering a range of services including web and CMS solutions, IT modernization, product design, security and compliance, data services, workforce development, and DITAP training. The website reflects a professional and consistent brand image targeted primarily at government organizations and public service entities. Technically, the website is built using modern technologies such as Gatsby and React, hosted likely behind Cloudflare DNS services, and optimized for performance and mobile responsiveness. The site demonstrates good SEO and accessibility practices, with comprehensive metadata and structured content. Security-wise, the site enforces HTTPS, employs several security headers, and maintains a secure domain registration status. However, it lacks a published security policy, incident response contacts, and vulnerability disclosure mechanisms, which are areas for improvement. Overall, the security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies including consent mechanisms and GDPR compliance indicators. The business credibility is high, supported by trust signals such as client logos, case studies, and professional content. The site does not contain any adult or questionable content and is safe for general audiences. Strategically, CivicActions should consider enabling DNSSEC to enhance DNS security, publishing a formal security policy and incident response contact information, and establishing a vulnerability disclosure program to further strengthen their security posture and trustworthiness.

65
58
17
85
77
85
100
governmentdigitalservicesagiledevopsopensource+5 more
GatsbyReactCloudflare DNS
2025-10-22T05:46:22.711Z
zff.com favicon

Zurich Film Festival

zff.com

60
MediaSwitzerlandmediumMEDIUM

The Zurich Film Festival (ZFF) is a well-established non-profit cultural organization that hosts an internationally recognized film festival in Zurich, Switzerland. The website serves as a comprehensive platform for festival information, ticket sales, event schedules, and merchandise. It targets film enthusiasts, industry professionals, and cultural supporters, offering a rich program of auteur films, side events, and exclusive memberships. The festival enjoys strong partnerships with reputable brands such as UBS, Mercedes-Benz, and NZZ, reinforcing its market position. Technically, the website is built on modern frameworks including Next.js and React, with integration of Shopify for e-commerce and DatoCMS for content management. It leverages Cloudflare DNS and CDN services, ensuring fast performance and good mobile optimization. The site implements privacy compliance mechanisms such as Cookiebot for cookie consent and maintains comprehensive legal documentation. Analytics and marketing tools like Google Analytics, Facebook Pixel, and Google Tag Manager are used with user consent. From a security perspective, the site enforces HTTPS, uses clientTransferProhibited domain status, and employs cookie consent for privacy. However, DNSSEC is not enabled, and no explicit security.txt or incident response contacts are published. No vulnerabilities or exposed sensitive data were detected. Overall, the security posture is strong but could be improved with additional DNS security and public vulnerability disclosure. The overall risk assessment is low, with the website demonstrating professionalism, trustworthiness, and compliance with GDPR. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing security headers. These steps will further strengthen the site's security and trustworthiness for users and partners.

35
65
2
70
75
45
100
filmfestivalzurichcultureeventstickets+2 more
ReactNext.jsShopify (for merch shop)Cloudflare DNS+4

Partner Domains:

shop.zff.com
subsidiary
hisally.ch
service
2025-10-22T03:31:34.953Z
entsorgung-niederrhein.de favicon

EGN Entsorgungsgesellschaft Niederrhein mbH

entsorgung-niederrhein.de

60
EnergyGermanymediumMEDIUM

EGN Entsorgungsgesellschaft Niederrhein mbH is a regional full-service provider specializing in waste disposal and recycling services for commercial, industrial, municipal, and private sectors. The company emphasizes sustainable and resource-efficient circular economy solutions, offering a broad range of services including container rental, construction site services, hazardous waste disposal, and event services. Their market position is strong within the Niederrhein region, supported by a network of subsidiaries and partners that enhance their service offerings. Technically, the website is built on modern frameworks such as React and Next.js, ensuring fast performance, mobile optimization, and good SEO practices. The infrastructure appears professionally managed with no signs of blocking or WAF interference, and the site includes a cookie consent mechanism compliant with GDPR requirements. From a security perspective, the site enforces HTTPS, includes standard security headers, and avoids exposing sensitive data. However, explicit security policies and incident response information are not published, representing an area for improvement. The absence of a vulnerability disclosure or security.txt file also suggests opportunities to enhance transparency and trust. Overall, the website presents a professional, trustworthy, and well-maintained digital presence aligned with the company's business objectives. Strategic recommendations include publishing detailed security and incident response policies, adding vulnerability disclosure mechanisms, and explicitly listing data protection officer contacts to strengthen compliance and user trust.

60
33
17
60
62
60
100
wastemanagementrecyclingenvironmentsustainabilitycirculareconomy+5 more
ReactNext.jsJavaScriptCSS

Partner Domains:

curanto.de
subsidiary
noex.ag
subsidiary

+3 more partners

2025-10-22T03:29:55.462Z
egk.de favicon

Entsorgungsgesellschaft Krefeld GmbH & Co. KG

egk.de

62
EnergyGermanymediumMEDIUM

The Entsorgungsgesellschaft Krefeld GmbH & Co. KG (EGK) is a regional municipal waste management and environmental services company based in Krefeld, Germany. The company operates a unique combination of waste incineration and sewage treatment plants, generating electricity and district heating for thousands of households. Additionally, EGK maintains an accredited laboratory for water and waste analysis and serves as a significant local employer with approximately 250 staff members. The website reflects a well-structured and professional digital presence, targeting local residents, businesses, and potential employees. It emphasizes environmental responsibility, energy production, and community engagement. Technically, the site is built on modern frameworks such as Next.js and React, with integrations for cookie consent (Usercentrics) and analytics (Google Tag Manager, Microsoft Application Insights). Security best practices are observed with HTTPS enforcement and security headers, although explicit security policies and incident response information are not published. Overall, the site is trustworthy, compliant with GDPR, and provides clear information about services and career opportunities.

60
33
17
70
77
60
100
entsorgungmllverbrennungklrwerklaborumweltschutz+4 more
ReactNext.jsUsercentrics (cookie consent)Google Tag Manager+1

Partner Domains:

www.swk.de
partner
konzern.swk.de
partner

+3 more partners

2025-10-22T03:29:50.426Z