Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157325
Websites
130
Industries
113
Countries
52
Avg Score
Page 295 of 3147|Showing 14701-14750 of 157325
edf-re.com favicon

EDF Renewables North America

edf-re.com

52
EnergyUnited StateslargeMEDIUM

EDF Renewables North America operates as a market-leading independent power producer and service provider specializing in renewable energy solutions including onshore and offshore wind, solar photovoltaic, energy storage, and electric vehicle charging across North America. The company positions itself as a sustainable energy leader with a history dating back to 1987 and is affiliated with the global EDF Group. Their website reflects a professional and comprehensive digital presence, targeting businesses and stakeholders interested in clean energy solutions. The business model focuses on development, operation, and optimization of renewable energy assets, supported by a strong corporate social responsibility ethos and active communication channels including press releases and social media. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Tag Manager, Google Analytics, and several plugins for SEO, multilingual support, and GDPR compliance. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate. Security posture is generally good with HTTPS enforced and cookie consent mechanisms in place, but lacks explicit security headers and published security policies. No critical vulnerabilities were detected in the visible content. The absence of WHOIS registration data for the domain www.edf-re.com is a notable concern, as it raises questions about domain legitimacy and ownership transparency. Despite this, the website content, branding consistency, and external links to known EDF Group domains support the authenticity of the business. The site does not expose sensitive data and complies with privacy regulations, including GDPR. However, the lack of direct contact emails or phone numbers and missing security.txt or incident response information suggests areas for improvement in transparency and security readiness. Overall, EDF Renewables North America presents a credible and professional online presence aligned with its business objectives in the renewable energy sector. Strategic recommendations include verifying domain registration details, enhancing security headers, publishing security and incident response policies, and improving direct contact information availability to strengthen trust and compliance.

20
80
2
85
62
70
20
renewableenergysolarwindpowerenergysolutionssustainability+2 more
jQueryGoogle Tag ManagerGoogle AnalyticsYoast SEO+4

Partner Domains:

edf-powersolutions.com
partner
www.edf.fr
parent

+3 more partners

2025-10-31T07:57:05.101Z
dalkiasolutions.com favicon

Dalkia

dalkiasolutions.com

55
EnergyN/alargeMEDIUM

Dalkia Solutions is a large energy efficiency solutions provider offering a comprehensive range of services including chiller services, combined heat and power, digital services, intelligent load management, LED lighting and controls, operations and maintenance, refrigeration, retail energy, smart infrastructure solutions, solar plus storage, and strategic energy management. The company targets commercial and industrial clients nationwide and is part of the EDF Group, a well-known energy conglomerate. The website demonstrates a professional and consistent brand presence with detailed service descriptions and active social media engagement. Technically, the website is built on WordPress with modern JavaScript libraries such as jQuery and OwlCarousel, and integrates Google Tag Manager for analytics. The site is mobile optimized with good SEO practices, though accessibility features are basic. Performance is moderate, with no critical errors detected. From a security perspective, the site uses HTTPS with CSRF tokens in forms, but lacks important security headers and a cookie consent mechanism. No explicit incident response or vulnerability disclosure policies are published, which could be improved to enhance trust and compliance. The absence of WHOIS data is a concern but the website content and branding align with a legitimate business. Overall, the site is professional and trustworthy but would benefit from enhanced security headers, explicit contact information, and improved privacy compliance mechanisms to strengthen its security posture and user trust.

55
58
2
78
72
80
20
energyenergyefficiencysustainabilitycommercialindustrial+2 more
jQueryOwlCarouselGoogle Tag ManagerGoogle Fonts

Partner Domains:

www.dalkia.com
parent
careers.hireology.com
partner
2025-10-31T07:56:40.020Z
landesstelle.de favicon

Landesstelle für Museen Baden-Württemberg

landesstelle.de

51
GovernmentGermanysmallMEDIUM

The Landesstelle für Museen Baden-Württemberg is a government advisory body dedicated to supporting museums within the Baden-Württemberg region. Their primary focus is on fostering well-structured, audience-oriented, and sustainable museum landscapes through consulting, funding, and educational programs. The website reflects a professional and regionally focused institution with clear contact information and relevant content tailored to museums and cultural stakeholders. Technically, the website is built on TYPO3 CMS with Bootstrap components for responsive design and uses Matomo analytics configured to disable cookies, indicating a privacy-conscious approach. The site is accessible, mobile-optimized, and well-structured, though it lacks some advanced security headers and explicit cookie consent mechanisms. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it could improve by implementing security headers, publishing security policies, and establishing a vulnerability disclosure process. The WHOIS data shows no privacy protection but uses agency name servers, which is typical for professional hosting. Overall, the domain and website appear legitimate and consistent with a government advisory entity. The overall risk is low, with recommendations focusing on enhancing security posture and privacy compliance to further strengthen trust and resilience.

70
28
17
55
72
65
20
museumgovernmentbaden-wrttembergculturaladvisorytypo3+1 more
TYPO3 CMSBootstrap (carousel, navbar)Matomo Analytics
2025-10-31T07:56:14.970Z
helsinki.at favicon

Radio Helsinki

helsinki.at

46
MediaAustriasmallHIGH

Radio Helsinki is a well-established community radio station based in Graz, Austria, with a strong focus on alternative and cultural programming. The website serves as a hub for live radio streaming, program schedules, podcasts, workshops, and community engagement. The station has a solid market position as a local non-profit media outlet with a loyal audience and active social media presence. Technically, the website is built on WordPress using modern plugins such as Yoast SEO and Borlabs Cookie for SEO and privacy compliance. The site is mobile-optimized, accessible, and performs moderately well. Security best practices are observed with HTTPS enforcement and cookie consent mechanisms, although explicit security policies and incident response contacts are not publicly disclosed. The security posture is good with no detected vulnerabilities or exposed sensitive data. GDPR compliance is evident through comprehensive privacy and cookie policies. The domain registration data aligns well with the business identity, indicating legitimacy and trustworthiness. Overall, the website presents a professional, trustworthy, and user-friendly platform for community radio listeners and contributors. Strategic improvements could focus on publishing formal security policies and incident response information to enhance transparency and trust.

15
43
17
60
72
80
-
communityradiomedianon-profitradiopodcast+2 more
WordPressYoast SEO pluginjQueryBootstrap+3
2025-10-31T07:54:14.660Z
signal.group favicon

Signal

signal.group

61
TechnologyN/alargeMEDIUM

Signal is a well-established nonprofit organization founded in 2013, providing secure messaging services through its Signal Messenger app and related group functionalities. The website signal.group serves as a gateway to join Signal groups and links users to official Signal resources, downloads, and support. The organization holds a strong market position as a leading privacy-focused messaging platform with a global user base. Technically, the website employs modern web technologies including Bulma CSS framework and JavaScript, with responsive design optimized for mobile devices. The site is served over HTTPS with no visible security vulnerabilities or exposed sensitive data. However, some security best practices such as security headers and cookie consent mechanisms are absent, which could be improved to enhance compliance and security posture. From a security perspective, the domain WHOIS data is limited due to registry restrictions, but the domain is actively maintained and consistent with the nonprofit's branding and operations. No WAF or blocking mechanisms are detected, and the site does not engage in advertising or tracking, aligning with privacy principles. Overall, the website demonstrates a strong security posture with room for improvement in transparency and compliance documentation. The overall risk assessment is low, with recommendations focusing on enhancing security headers, publishing security policies, and implementing cookie consent to meet GDPR requirements. These steps will further strengthen trust and compliance for the organization's global audience.

30
53
2
80
57
85
100
securemessagingnonprofitprivacysignaltechnology+1 more
Bulma CSSJavaScriptHTML5CSS3+2
2025-10-31T07:54:09.651Z
schlor.org favicon

SchloR

schlor.org

42
Non-profitAustriasmallHIGH

SchloR is a self-managed non-profit community project based in Vienna-Simmering, Austria, focused on providing solidarity-based housing and creative workspaces. The organization operates under the umbrella of recognized entities such as habiTAT and Mietshäuser-Syndikat, emphasizing collective living and cultural engagement. Their business model includes direct loans from supporters to finance their projects, reflecting a strong community trust and engagement. The website is well-structured, content-rich, and targets local community members interested in alternative housing and cultural activities. Technically, the website is built on WordPress using modern plugins like Elementor and Yoast SEO, ensuring good SEO and mobile responsiveness. The presence of Google reCAPTCHA on forms enhances security against automated abuse. However, some security best practices such as DNSSEC and security headers are not implemented, which could be improved to strengthen the security posture. From a security perspective, the site uses HTTPS and has domain transfer protections in place, indicating a legitimate and controlled domain. No WAF or blocking mechanisms are detected, and the site content is fully accessible. Privacy compliance is adequate with a privacy policy present, though cookie consent mechanisms are lacking. No incident response or vulnerability disclosure information is found, which could be areas for future enhancement. Overall, SchloR presents a trustworthy, community-oriented project with a solid web presence and moderate technical maturity. Strategic improvements in security headers, cookie consent, and vulnerability disclosure would enhance their security and compliance posture further.

15
53
2
65
72
50
-
non-profitcommunityhousingcreativespacessolidarity+3 more
WordPressPHPjQueryElementor+4

Partner Domains:

habitat.servus.at
partner
www.syndikat.org
partner

+1 more partners

2025-10-31T07:53:59.631Z
gemse.org favicon

GemSe – Gemeinsam Sein

gemse.org

60
Non-profitAustriasmallMEDIUM

GemSe – Gemeinsam Sein is a small non-profit queer-feminist collective and association based in Kärnten, Austria, providing a community space for events, workshops, and vacation stays. The organization promotes solidarity, antifascism, and radical tenderness, targeting the queer-feminist community and allies. The website is multilingual and offers booking options and event information, supported by EU co-financing and ProEuropean Values initiatives. Technically, the website runs on WordPress 6.8.3 with common plugins such as Essential Blocks and WP Multilang. It uses HTTPS with a good SSL configuration and is hosted under a registrar consistent with the Austrian location. The site is moderately performant, mobile-optimized, and has good SEO and accessibility basics, though some accessibility features could be improved. From a security perspective, the site uses HTTPS and has domain transfer protection but lacks DNSSEC and security headers. There is no visible security policy or incident response information, and no cookie consent mechanism is implemented, which may affect GDPR compliance. No analytics or tracking scripts were detected, indicating minimal user tracking. Overall, the website is trustworthy and professional for its niche community purpose but could improve privacy compliance and security posture by adding cookie consent, security headers, and published security policies.

15
53
17
65
72
80
100
queerfeministcommunitynon-profitaustria+4 more
WordPress 6.8.3jQuery 3.7.1Essential Blocks pluginWP Multilang plugin
2025-10-31T07:53:54.618Z
postcode-lotterie.de favicon

Deutsche Postcode Lotterie GmbH & Co. KG

postcode-lotterie.de

70
Non-profitGermanymediumMEDIUM

The Deutsche Postcode Lotterie GmbH & Co. KG operates a socially responsible lottery platform in Germany, allowing participants to win prizes based on their postal codes while supporting charitable projects. The website is professionally designed, highly accessible, and optimized for mobile devices, reflecting a mature digital presence. Key services include monthly and daily lottery draws, with a significant portion of proceeds dedicated to social causes. The platform holds reputable certifications such as TÜV Saarland and Trusted Shops, enhancing its credibility. Technically, the website leverages modern frameworks including Next.js and Storyblok CMS, hosted on Vercel and AWS infrastructure. It employs best practices in security, including HTTPS enforcement, security headers, and content security policies. Analytics and marketing tools like Google Tag Manager and Usercentrics CMP are used with GDPR-compliant consent mechanisms. Security posture is strong with no evident vulnerabilities or exposed sensitive data. However, explicit security policy and incident response contact details could be more visible. Privacy compliance is robust, with comprehensive privacy and cookie policies in place. The domain registration data aligns well with the website content, supporting legitimacy and trustworthiness. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing security policy transparency and incident response visibility to further strengthen user trust and compliance.

30
80
20
85
82
75
100
lotterynon-profitsocialgoodgermanypostcodelottery+2 more
JavaScriptReact (SPA)Next.jsVercel Hosting+1
2025-10-31T07:53:39.565Z
cestazkrize.net favicon

Cesta z krize, z. ú.

cestazkrize.net

10
Non-profitCzech RepublicmediumCRITICAL

Cesta z krize, z. ú. is a Czech non-profit organization specializing in crisis intervention and support services, particularly focusing on endangered children and psychological first aid for adults. The organization operates recognized crisis helplines 116 000 and 116 123, with official government authorizations and memberships in European federations. Their website reflects a professional and consistent brand presence, targeting families, educators, and the general public in crisis situations within the Czech Republic. Technically, the website uses modern web technologies including Cookiebot for cookie consent, Google Tag Manager, and Facebook Pixel for analytics and marketing. Hosting is provided by Active24, and the site is mobile optimized with good SEO practices. Security posture is adequate with HTTPS enforced and cookie consent implemented, though improvements such as enabling DNSSEC and adding security headers are recommended. Privacy compliance is moderate; a cookie policy and consent mechanism exist, but no explicit privacy policy or terms of service pages were found in the provided content. No incident response or vulnerability disclosure information is available. Overall, the domain registration is consistent with the organization's history and shows no suspicious patterns. The website is safe for general audiences and does not contain adult or explicit content.

-
-
-
-
-
-
-
non-profitcrisis-helpchild-protectionsocial-servicesczech+4 more
HTML5CSS3JavaScriptGoogle Tag Manager+2

Partner Domains:

missingchildreneurope.eu
partner
pomoztemenajit.cz
partner

+2 more partners

2025-10-31T07:34:49.914Z
delejcotebavi.com favicon

DĚLEJ CO TĚ BAVÍ z.ú.

delejcotebavi.com

10
Non-profitCzech RepublicsmallCRITICAL

DĚLEJ CO TĚ BAVÍ z.ú. is a Czech non-profit organization dedicated to providing meaningful leisure activities for children and youth through courses, workshops, festivals, and conferences. The organization focuses on promoting physical activity, creativity, and personal development while fostering social equality and environmental responsibility. Their market position is that of a small, locally focused non-profit with a network of recognized partners and a clear mission to support youth development. Technically, the website employs modern web technologies including Bootstrap for responsive design, Google Analytics and Tag Manager for analytics, and reCAPTCHA for bot protection. The site is mobile optimized and provides a good user experience with clear navigation and relevant content. However, some security enhancements such as enabling DNSSEC and adding security headers could improve the overall security posture. From a security perspective, the site demonstrates good privacy compliance with a cookie consent mechanism and a privacy policy in place. No critical vulnerabilities or exposed sensitive data were detected. The domain registration data is consistent with the organization's claims, supporting legitimacy. The site does not currently provide explicit security policies or incident response information. Overall, the website is professional, trustworthy, and compliant with privacy regulations, serving its target audience effectively. Strategic improvements in security headers and DNS security would further strengthen its posture.

-
-
-
-
-
-
-
non-profiteducationyoutheventscookie-consent+2 more
Google AnalyticsGoogle Tag ManagerreCAPTCHAjQuery (implied by Bootstrap carousel)+2
2025-10-31T07:34:28.540Z
tochceodvahu.cz favicon

#to chce odvahu

tochceodvahu.cz

10
Non-profitCzech RepublicsmallCRITICAL

The website tochceodvahu.cz represents a recently launched non-profit mental health awareness campaign named '#to chce odvahu', initiated in 2025. It is a collaborative effort involving the Office of the President of the Czech Republic, Nadační fond Flaminia, and Nevypusť duši. The campaign provides resources such as crisis helpline information, ambassador stories, and a help directory aimed at supporting mental health, particularly targeting youth and adults. The site is professionally designed with consistent branding and clear navigation, reflecting a high level of digital maturity for a small non-profit initiative. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with integration of Font Awesome icons and Google/Fontshare fonts. It embeds YouTube videos for richer content delivery and uses the Umami analytics platform for minimal user tracking. Hosting is provided by WEDOS, a reputable Czech hosting provider. The site is mobile-optimized and SEO-friendly, though accessibility features could be enhanced. From a security perspective, the site uses HTTPS as indicated by canonical URLs, but lacks visible security headers and formal privacy or cookie policies, which are important for GDPR compliance and user trust. No forms collecting personal data are present on the main page, reducing immediate data protection risks. The WHOIS data shows a consistent and transparent domain registration aligned with the campaign's launch timeline, supporting legitimacy. Overall, the website is a trustworthy and well-executed campaign platform with excellent content quality and business credibility. However, it should improve privacy compliance and security best practices to enhance user trust and regulatory adherence.

-
-
-
-
-
-
-
mentalhealthnon-profitawarenesscampaignczechrepublic+2 more
HTML5CSS3JavaScriptFont Awesome 7.1.0+3

Partner Domains:

nevypustdusi.cz
partner
nfflaminia.cz
partner

+1 more partners

2025-10-31T07:34:21.323Z
gamelabgraz.com favicon

Game Lab Graz

gamelabgraz.com

42
EducationAustriasmallHIGH

Game Lab Graz is an academic research group led by Johanna Pirker, focusing on exploring the full potential of video games through designing and researching virtual, engaging, and immersive experiences. The website serves as a platform to showcase projects, publications, courses, and team information related to game design and virtual reality. The target audience primarily includes students, researchers, and professionals interested in game development and immersive technologies. The business model is centered around education and research within the academic sector, positioning itself as a niche player in the field of game design and virtual reality research. Technically, the website is built on WordPress CMS with Elementor page builder and uses common web technologies such as jQuery, Bootstrap grid, and FontAwesome icons. Hosting appears to be provided by Alfahosting based on DNS nameservers. The site demonstrates moderate performance and good mobile optimization, with basic accessibility and SEO features. The design is professional and consistent with academic branding, providing a good user experience and clear navigation. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks DNSSEC and security headers such as Content-Security-Policy or X-Frame-Options. No exposed sensitive data or vulnerable libraries were detected. However, the absence of privacy and cookie policies indicates compliance gaps with GDPR and other data protection regulations. No incident response or security contact information is provided, which could be improved to enhance trust and readiness. Overall, the website is trustworthy and professionally maintained, with a strong academic focus. The main risks relate to privacy compliance and security best practices, which should be addressed to improve the security posture and regulatory adherence. Strategic recommendations include implementing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact information for security incidents.

60
60
50
-
2
15
72
educationgamedesignvirtualrealityresearchacademic
WordPressjQueryElementorBootstrap Grid+1
2025-10-31T07:32:24.384Z
subotron.com favicon

SUBOTRON

subotron.com

10
MediaAustriasmallCRITICAL

SUBOTRON is a Vienna-based platform dedicated to digital game culture, focusing on organizing events such as talks, panels, and workshops, as well as providing news and networking opportunities for indie game developers and enthusiasts. The website positions itself as a niche community hub for Austrian and international digital game culture, with a history dating back to 2002. The business model appears to be community-oriented, possibly non-profit, emphasizing cultural and educational activities in the gaming sector. Technically, the website is built on WordPress using the Divi theme, incorporating modern web technologies such as jQuery, Google reCAPTCHA v3 for spam protection, and FontAwesome for icons. The site demonstrates moderate performance and good mobile optimization, though accessibility features are basic. SEO practices are adequately implemented with proper meta tags and structured navigation. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms. However, it lacks DNSSEC, security headers, and published security policies or incident response contacts. No privacy or cookie policies were found, indicating gaps in compliance with GDPR and related regulations. The domain is well-established with consistent WHOIS data, enhancing trustworthiness. Overall, SUBOTRON presents a professional and trustworthy online presence with solid business credibility and technical implementation. The main areas for improvement include enhancing privacy compliance, implementing security best practices such as DNSSEC and security headers, and publishing clear policies to improve user trust and regulatory adherence.

-
-
-
-
-
-
-
digitalgamecultureeventsindiegamesviennagamedevelopment+2 more
WordPressDivi ThemejQueryGoogle reCAPTCHA v3+1
2025-10-31T07:32:08.713Z
ssi-schaefer.com favicon

SSI SCHÄFER Gruppe

ssi-schaefer.com

10
ManufacturingGermanyenterpriseCRITICAL

SSI SCHÄFER Gruppe is a globally operating enterprise specializing in modular warehouse and logistics systems, software solutions, and comprehensive intralogistics services. The company positions itself as a worldwide leader in intralogistics, offering innovative technologies and software to enhance efficiency and sustainability in warehousing, order picking, and transport processes. Their business model focuses on B2B engagements across multiple industries, providing tailored solutions for various market segments. The website reflects a mature digital presence with professional design, multilingual support, and extensive content covering products, services, corporate philosophy, and sustainability initiatives. Technically, the website employs modern JavaScript frameworks, Google Tag Manager for analytics, and Usercentrics for cookie consent management, ensuring compliance with privacy regulations. The site is mobile-optimized, accessible, and SEO-friendly, with embedded multimedia content enhancing user engagement. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though security headers could be improved and an incident response contact is absent. Overall, the website demonstrates a strong security and compliance stance suitable for an enterprise of its scale, with clear business credibility and trust indicators. The absence of WHOIS data suggests privacy protection, which is reasonable for a large corporation. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and providing explicit incident response contacts to further strengthen trust and security transparency.

-
-
-
-
-
-
-
intralogisticswarehouseautomationlogisticssolutionsmodularstoragesupplychain+1 more
JavaScriptGoogle Tag ManagerUsercentrics (cookie consent)YouTube embedded videos+2
2025-10-31T07:31:48.041Z