Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157331
Websites
130
Industries
113
Countries
52
Avg Score
Page 307 of 800|Showing 15301-15350 of 39982
nespresso.com favicon

Societe des Produits Nestle S.A.

nespresso.com

76
RetailFinlandlargeLOW

Nespresso Finland operates as a premium coffee brand retailing coffee machines, capsules, and accessories through an e-commerce platform and physical boutiques. Owned by Societe des Produits Nestle S.A., the website reflects a mature and well-established business with a strong market presence in Finland. The company offers a coffee subscription service and a membership club, enhancing customer engagement and loyalty. The website is professionally designed, mobile-optimized, and provides clear navigation and comprehensive product information. Technically, the site uses modern web technologies including HTML5, CSS3, JavaScript, Google Tag Manager, and a CMS likely based on Dynamicweb. Hosting is supported by Akamai CDN, ensuring fast performance and global availability. The site is secured with HTTPS and displays secure payment options, indicating a strong focus on user security and trust. Security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, explicit security headers like Content-Security-Policy and X-Frame-Options should be verified and implemented if missing. Privacy compliance is robust with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Overall, the website presents low risk with high trustworthiness, supporting the brand's premium positioning. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and continuous monitoring of third-party scripts to maintain security and compliance.

80
83
17
85
72
85
100
coffeepremiume-commercesubscriptionretail+2 more
HTML5CSS3JavaScriptGoogle Tag Manager+2

Partner Domains:

nestle.com
parent
stockmann.com
partner

+3 more partners

2025-10-04T10:21:27.760Z
bcge.ch favicon

Banque Cantonale de Genève

bcge.ch

70
FinanceSwitzerlandlargeMEDIUM

Banque Cantonale de Genève (BCGE) is a well-established Swiss bank founded in 1816, serving a broad range of clients including individuals, private banking customers, corporate clients, institutional clients, and SMEs. The bank offers a comprehensive suite of financial services such as day-to-day banking, savings, mortgage loans, leasing, investment management, pension planning, and security solutions. BCGE positions itself as a key regional player in Geneva and the surrounding region, emphasizing competitive banking services and regional development. Technically, the website is built on the Liferay CMS platform and employs modern web technologies including Google Tag Manager and Google reCAPTCHA for security and analytics. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Security best practices are observed with HTTPS enforcement, security headers, and secure form handling. From a security perspective, BCGE demonstrates a strong posture with no detected vulnerabilities or exposed sensitive data. Privacy compliance is robust, with clear privacy and cookie policies and GDPR adherence. However, explicit security policies and incident response information are not publicly detailed, representing an area for improvement. Overall, BCGE's website reflects a professional, trustworthy, and secure banking institution with a strong market presence. Strategic recommendations include enhancing transparency around security policies and vulnerability disclosures to further strengthen trust and compliance.

85
65
2
60
77
80
100
bankingfinanceswitzerlandprivatebankingcorporatebanking+4 more
Google Tag ManagerGoogle reCAPTCHALiferay CMSJavaScript+2
2025-10-04T10:19:47.404Z
wise.swiss favicon

Epwise AG

wise.swiss

46
TechnologySwitzerlandsmallHIGH

Wise.swiss, operated by Epwise AG, is a Swiss-based technology company specializing in AI-enhanced software solutions for event and real estate co-ownership assembly management. Their product suite includes Eventwise and Estatewise, designed to streamline invitations, registrations, check-ins, document sharing, and voting processes. The company targets Swiss organizations, including public agencies, SMEs, and large groups, emphasizing data sovereignty and compliance with Swiss data protection laws. The website reflects a professional and consistent brand image with strong trust signals such as customer testimonials and Swiss Made Software certification. Technically, the site uses modern web technologies including HubSpot forms, Google Tag Manager, and Bootstrap, hosted by Infomaniak Network SA. Performance and mobile optimization are good, with clear navigation and SEO best practices. Security posture is solid with HTTPS enforced and clientTransferProhibited domain status, though DNSSEC is not enabled and security headers are not explicitly detected in the HTML. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism. Overall, the website and business present a credible, secure, and mature digital presence.

15
53
17
70
62
65
-
eventmanagementswisssoftwareairealestatecorporateevents+2 more
JavaScriptHubSpot FormsGoogle Tag ManagerSwiper.js carousel+2

Partner Domains:

www.eventwise.ch
partner
swissmadesoftware.org
partner
2025-10-04T10:19:22.282Z
championsleague.basketball favicon

Basketball Champions League Powered by Ameresco SUNEL

championsleague.basketball

68
MediaN/amediumMEDIUM

The Basketball Champions League Powered by Ameresco SUNEL website serves as the official digital platform for the Basketball Champions League, affiliated with FIBA. It provides comprehensive sports-related content including live statistics, game schedules, standings, news, video highlights, team rosters, and player profiles, targeting basketball fans and sports media audiences. The site demonstrates a strong market position as an official source for basketball league information. Technically, the website is built on modern web technologies such as React and Next.js, leveraging cloud-based image hosting and advanced advertising and analytics tools. It is optimized for performance, mobile responsiveness, and accessibility, ensuring a high-quality user experience. The presence of consent management and reCAPTCHA indicates attention to privacy and security. From a security perspective, the site employs HTTPS with strong SSL configuration and multiple security headers, reflecting good security hygiene. However, there is a lack of publicly available security policies or incident response information, which could be improved to enhance trust and compliance. No vulnerabilities or exposed sensitive data were detected. Overall, the website presents a low-risk profile with strong content quality and technical implementation. Strategic recommendations include publishing explicit security and incident response policies, enhancing contact information availability, and maintaining regular audits of third-party scripts to sustain security and compliance.

30
73
17
85
100
55
100
sportsbasketballfibamedialivescores+2 more
ReactNext.jsJavaScriptCloudinary (for images)+7
2025-10-04T10:18:42.028Z
storifyme.com favicon

StorifyMe GmbH

storifyme.com

69
TechnologyGermanymediumMEDIUM

StorifyMe GmbH operates a technology platform specializing in mobile-native storytelling formats such as Stories, Shorts, Snaps, and Ads, designed to enhance user engagement and monetization for apps and websites. The company targets a broad range of clients from startups to large enterprises, positioning itself as a leader in visual content creation and distribution. The website demonstrates strong branding, client trust signals, and a comprehensive suite of services aimed at digital marketing and content innovation. Technically, the site leverages modern web technologies including Webflow CMS, GSAP animations, and integrates multiple analytics and marketing tools such as Google Analytics, Facebook Pixel, and HubSpot, indicating a mature digital infrastructure. Security posture is good with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers and incident response policies are not publicly disclosed. The absence of WHOIS data introduces some uncertainty regarding domain registration legitimacy, but the overall professional presentation and client endorsements support a trustworthy business profile. Strategic recommendations include enhancing security transparency, publishing incident response contacts, and improving direct contact availability to further strengthen trust and compliance.

60
88
2
85
52
85
100
mobile-nativestoriesshortsadsuserengagement+5 more
Webflow CMSJavaScriptGSAP (GreenSock Animation Platform)jQuery+8
2025-10-04T10:18:37.015Z
infomaniak.events favicon

Infomaniak Network SA

infomaniak.events

64
OtherSwitzerlandmediumMEDIUM

Infomaniak Events is an established online platform operated by Infomaniak Network SA, focused on promoting and ticketing a wide range of events including concerts, festivals, theatre, and workshops primarily in Switzerland. The website offers a comprehensive catalog of events with detailed descriptions, dates, and locations, targeting a broad audience interested in cultural and entertainment activities. The business model revolves around event ticket sales and event promotion services, positioning itself as a key regional player in the Swiss event ticketing market. Technically, the website employs modern web technologies including JavaScript, Web Components, and Laravel Livewire framework, ensuring a responsive and user-friendly experience across devices. The site is hosted likely by Infomaniak, a reputable Swiss hosting provider, and uses HTTPS with a valid SSL configuration. While the site shows good SEO and accessibility basics, there is room for improvement in security headers and explicit terms of service documentation. From a security perspective, the site demonstrates a solid posture with HTTPS enforcement and no visible sensitive data exposure. The presence of reCAPTCHA v3 indicates protection against automated abuse. However, the absence of explicit security headers and limited contact information for incident response or data protection officers suggests areas for enhancement. Privacy compliance is well addressed through a comprehensive privacy policy linked to the parent company’s main site, with GDPR compliance evident. Overall, the website presents a trustworthy and professional front with a strong focus on user experience and privacy. The lack of WHOIS registrant data is mitigated by the business’s established brand and consistent content. Strategic recommendations include enhancing security headers, publishing clear terms of service, and providing more explicit contact channels for security and privacy inquiries to further strengthen trust and compliance.

50
50
2
65
77
85
100
eventsconcertsfestivalsticketingswitzerland+2 more
JavaScriptWeb ComponentsLivewire (Laravel)Easepick date picker+1
2025-10-04T10:17:51.893Z
everyware.ch favicon

EveryWare AG

everyware.ch

71
TechnologySwitzerlandmediumMEDIUM

EveryWare AG is a well-established Swiss IT service provider specializing in cloud, hosting, datacenter, network, and managed IT services. The company positions itself as a leading provider in Switzerland with over 25 years of experience, offering comprehensive business IT solutions focused on public, hybrid, and private cloud environments. Their services cater primarily to Swiss businesses and IT organizations seeking secure, scalable, and sovereign cloud and IT infrastructure solutions. The website reflects a professional and consistent brand image with detailed service offerings and customer success stories, reinforcing their market position. Technically, the website is built on the TYPO3 CMS platform, leveraging modern web technologies including Google Tag Manager and Cookiebot for analytics and privacy compliance. The site is mobile-optimized, well-structured, and performs moderately well. Privacy and cookie policies are clearly presented with consent mechanisms in place, demonstrating good compliance with GDPR requirements. However, explicit security policies and incident response contacts are not publicly available, which could be improved. From a security perspective, the site enforces HTTPS and uses privacy-focused tools but lacks visible advanced security headers and a dedicated vulnerability disclosure policy. No vulnerabilities or suspicious content were detected. WHOIS data confirms the legitimacy of the domain registration, consistent with the company’s Swiss identity and business history. Overall, EveryWare AG’s website presents a trustworthy, professional, and compliant digital presence suitable for its target market. Strategic improvements in security transparency and incident response communication would further enhance their security posture and customer trust.

75
68
10
78
72
80
100
cloudservicesmanageditservicesswissitproviderdatasovereigntyhybridcloud+4 more
TYPO3 CMSGoogle Tag ManagerCookiebotJavaScript

Partner Domains:

www.linkgroup.ch
parent
2025-10-04T09:33:21.744Z
bbv-software.de favicon

bbv Software Services AG

bbv-software.de

59
TechnologySwitzerlandmediumMEDIUM

bbv Software Services AG is a well-established Swiss software and consulting company specializing in digital consulting, software engineering, and digital transformation services. Founded in 1995, the company serves a broad range of clients, focusing on delivering scalable digital businesses, innovative digital experiences, and sustainable software products. Their market position is strong within Switzerland, supported by a medium-sized team and a comprehensive portfolio of services including AI consulting, cloud services, cybersecurity, and data management. The website reflects a professional and consistent brand image with multilingual support and rich content tailored to business clients. Technically, the website is built on WordPress with modern plugins and tools such as WPBakery Page Builder, Google Tag Manager, HubSpot, and LinkedIn Insight Tag. It employs standard web technologies including JavaScript and jQuery, and integrates multiple analytics and marketing tools with a robust cookie consent mechanism ensuring GDPR compliance. The site demonstrates good performance, mobile optimization, and accessibility features. From a security perspective, the site uses HTTPS with strong SSL configuration and employs Google reCAPTCHA to protect forms from spam. While some security headers are not explicitly detected, the overall security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and cookie management system. However, the site could improve by publishing explicit security policies and incident response contacts. Overall, bbv Software Services AG presents a trustworthy and professional online presence with strong business credibility, good technical implementation, and solid privacy and security practices. The risk level is low, and the company is well-positioned to maintain compliance and security in its digital operations.

-
100
55
85
72
70
-
digitalconsultingsoftwareentwicklungkidigitalisierungschweiz+4 more
WordPressPHPJavaScriptjQuery+9

Partner Domains:

bbv.ch
partner
en.bbv.ch
partner

+1 more partners

2025-10-04T09:32:56.311Z
klostermuehle-saar.de favicon

Landidyll Weinhotel Klostermühle

klostermuehle-saar.de

54
HospitalityGermanysmallMEDIUM

Landidyll Weinhotel Klostermühle is a family-run boutique hotel located in Ockfen/Saar, Germany, specializing in wine tourism and regional culinary experiences. The business offers hotel accommodations, a restaurant with regional specialties, wine tastings from its own vineyard, and various leisure activities such as hiking and cycling. The website reflects a strong regional identity and targets tourists interested in nature and wine culture in the Saar and Mosel regions. The company holds multiple certifications that emphasize quality and accessibility, enhancing its market position as a trusted regional hospitality provider. Technically, the website is built on a modern CMS platform (likely Shopware), utilizing JavaScript frameworks, SVG icons, and video content to deliver a rich user experience. It integrates advanced analytics tools including Matomo and Google Analytics 4, alongside a consent management platform to comply with privacy regulations. The site is mobile-optimized, accessible, and SEO-friendly, with clear navigation and multilingual support. From a security perspective, the website enforces HTTPS and employs cookie consent mechanisms, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data aligns well with the business claims, showing consistent domain registration and no privacy protection, indicating transparency and legitimacy. Overall, the website demonstrates a high level of professionalism, content quality, and compliance with privacy standards, making it a trustworthy digital presence for the hospitality business. Strategic improvements in security headers and incident response disclosures could further enhance its security posture.

15
48
2
65
52
65
100
hospitalitywinetourismhotelrestaurantregionalcuisine+5 more
JavaScriptMatomo AnalyticsGoogle Analytics 4Google Tag Manager+3
2025-10-04T09:28:04.644Z
herzogspark.de favicon

HerzogsPark GmbH & Co. KG

herzogspark.de

54
HospitalityGermanymediumMEDIUM

HerzogsPark GmbH & Co. KG operates a 4-star superior hotel located in Herzogenaurach near Nürnberg, Germany. The hotel specializes in business and seminar accommodations, offering modern event spaces, themed rooms inspired by sports heritage, wellness facilities, and dining options. The website reflects a well-established hospitality business targeting both corporate clients and leisure travelers, including sports teams and families. The company maintains a strong market position with trust certifications and a best price guarantee, enhancing customer confidence. Technically, the website is built on a modern stack likely powered by Shopware CMS, incorporating JavaScript frameworks such as Swiper.js for UI components and Google Analytics for visitor tracking. The site demonstrates good mobile optimization, accessibility, and SEO practices. Consent management is implemented via a recognized platform, ensuring GDPR compliance. From a security perspective, the site enforces HTTPS and integrates cookie consent mechanisms. While some security headers are not explicitly visible, the overall posture is strong with no evident vulnerabilities or exposed sensitive data. The domain registration data aligns with the business identity, supporting legitimacy and trustworthiness. Overall, the website is professional, secure, and compliant, providing a positive user experience and strong business credibility. Strategic recommendations include enhancing security headers, continuous monitoring of third-party scripts, and maintaining up-to-date privacy practices to adapt to evolving regulations.

15
28
17
70
52
65
100
hotelbusinessseminarwellnessevents+4 more
JavaScriptGoogle Analytics (GA4)Google Tag ManagerConsent Management Platform (FirstVoucher)+3
2025-10-04T09:27:49.580Z
bellevue-boppard.de favicon

Bellevue Hotelbetriebs GmbH

bellevue-boppard.de

54
HospitalityGermanymediumMEDIUM

Bellevue Hotelbetriebs GmbH operates a well-established hospitality business located in Boppard am Rhein, Germany. The company offers upscale hotel accommodations, gastronomy, wellness, event hosting, and regional tourism experiences. The website reflects a strong market position as a premium family-run hotel with a tradition dating back to 1887, targeting tourists and travelers seeking quality services in the Mittelrhein region. The digital presence is professional, with clear navigation, multi-language support, and comprehensive content about their offerings. Technically, the website leverages modern web technologies including Shopware CMS, JavaScript libraries such as Swiper and Flatpickr, and integrates Google Analytics and Tag Manager for analytics. The site is mobile optimized and includes a consent management platform for GDPR compliance. Performance is moderate with good SEO and accessibility basics in place. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, but lacks explicit security headers and published security policies. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with clear privacy and cookie policies, and contact information is readily available. The WHOIS data aligns with the business information, indicating a legitimate and trustworthy domain registration. Overall, the website presents a low-risk profile with good business credibility and privacy compliance. Strategic improvements could include enhancing security headers and publishing incident response information to further strengthen security posture and trust.

15
28
2
80
52
70
100
hotelhospitalitywellnesstourismboppard+2 more
JavaScriptGoogle Analytics (GA4)Google Tag ManagerFlatpickr date picker+1
2025-10-04T09:26:43.949Z
moebel-preiss.de favicon

Möbel Preiss GmbH & Co. KG

moebel-preiss.de

57
RetailGermanymediumMEDIUM

Möbel Preiss GmbH & Co. KG operates a medium-sized retail and e-commerce business specializing in furniture, kitchens, and home decoration based in Kastellaun, Germany. The company offers a broad product range including living room, bedroom, kitchen furniture, lighting, and home accessories, supported by a large physical showroom and an online shop with secure payment options. Their market position is that of a regional leader with a strong local presence and growing digital footprint. The website reflects a professional and user-friendly design with clear navigation and relevant content targeting general consumers interested in home furnishings. Technically, the website employs modern JavaScript libraries and tracking technologies such as Google Analytics 4, Google Tag Manager, Facebook Pixel, and LinkedIn Insight Tag, all managed with user consent mechanisms. The site uses a proprietary or custom CMS framework named Website22 and demonstrates good mobile optimization and SEO practices. Performance is moderate, with room for improvement in accessibility features. From a security perspective, the site enforces HTTPS and integrates cookie consent management, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the analyzed HTML content. Privacy compliance is strong with comprehensive privacy and cookie policies in German, aligned with GDPR requirements. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. Recommendations include enhancing security headers, publishing a security policy, and improving accessibility to further strengthen the security posture and user experience.

15
28
17
95
52
70
100
furniturekitchenhomedecorationretaile-commerce+4 more
JavaScriptGoogle Analytics (GA4)Google Tag ManagerFacebook Pixel+2
2025-10-04T09:26:38.923Z
trauer-zirkular.ch favicon

Appenzeller Druckerei AG

trauer-zirkular.ch

61
OtherSwitzerlandsmallMEDIUM

The website trauer-zirkular.ch is an e-commerce portal operated by Appenzeller Druckerei AG, specializing in funeral and mourning print materials such as mourning circulars, thank you cards, and funeral meal cards. The site targets individuals in Switzerland seeking personalized funeral print products, offering a streamlined and personal ordering experience. The business operates in a niche market with a clear focus on quality and customer service. Technically, the website employs a custom or Websale-based e-commerce platform with modern web technologies including JavaScript, CSS, and AJAX. The site is mobile-optimized and provides a good user experience with clear navigation and professional design. Performance is moderate, and SEO and accessibility features are basic but adequate for the target audience. From a security perspective, the site enforces HTTPS, uses CSRF tokens in forms, and implements a cookie consent mechanism compliant with GDPR. However, it lacks explicit security headers and does not provide a public security policy or incident response contact. No vulnerabilities or suspicious activities were detected in the analysis. Overall, the website presents a trustworthy and professional front for a small specialized business. Strategic recommendations include enhancing security headers, publishing a security policy, and expanding contact information to improve trust and compliance further.

60
53
2
70
52
65
100
funeralmourningprinte-commerceswitzerland+2 more
JavaScriptCSSHTML5Websale e-commerce platform+3
2025-10-04T09:26:33.913Z
actus.cloud favicon

Solveva

actus.cloud

58
FinanceSwitzerlandmediumMEDIUM

Actus by Solveva is a specialized software provider offering actuarial modelling and pricing tools primarily for the insurance and reinsurance sectors. The company positions itself as a leading partner with nearly two decades of experience, delivering modular and customizable software solutions to improve underwriting productivity and profitability. The website reflects a professional and consistent brand image with clear contact information and a focus on business clients in the finance industry. Technically, the website employs standard modern web technologies including HTML5, CSS3, JavaScript, and jQuery, with Google Fonts for typography. The site is moderately optimized for performance and mobile devices but lacks advanced frameworks or CMS platforms. No analytics or tracking tools are detected, indicating a privacy-conscious approach or minimal user tracking. From a security perspective, the domain is well-managed with domain locks in place, but the website lacks published privacy and cookie policies, security headers, and incident response information. SSL configuration details are not provided, and DNSSEC is not enabled, which suggests room for improvement in security hardening and compliance. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices to reduce risk and improve user trust.

15
35
2
85
82
70
100
insuranceactuarialsoftwarepricingriskmanagement+1 more
HTML5CSS3JavaScriptjQuery+1

Partner Domains:

solveva.com
partner
2025-10-04T09:26:23.893Z
hoststar.ch favicon

Hoststar - Multimedia Networks AG

hoststar.ch

73
TechnologySwitzerlandmediumMEDIUM

Hoststar - Multimedia Networks AG is a Swiss-based web hosting and domain registration provider established since 2013. The company offers a wide range of hosting solutions including shared hosting, reseller hosting, virtual servers, SSL certificates, and security services such as SiteLock and VPN. Their market position is that of a reputable mid-sized hosting provider serving individuals and businesses primarily in Switzerland. The website is professionally designed with good content quality and clear navigation, targeting customers seeking reliable and affordable hosting services. Technically, the website is built on Drupal CMS and integrates multiple third-party marketing and analytics tools including Google Analytics, Facebook Pixel, Intercom, and SalesManago. The site is mobile optimized and performs moderately well, though there is room for improvement in accessibility and security headers. HTTPS is properly implemented, ensuring secure communications. From a security perspective, the site follows basic best practices such as HTTPS and offers security-related products. However, it lacks visible security policies, incident response contacts, and comprehensive security headers. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is weak due to the absence of explicit privacy and cookie policies, which is a notable compliance gap. Overall, the website is trustworthy and legitimate, supported by consistent WHOIS data showing transparent Swiss company ownership and an appropriate domain age. The risk level is moderate, primarily due to privacy compliance shortcomings and limited security policy disclosures. Strategic recommendations include implementing clear privacy and cookie policies, enhancing security headers, and publishing incident response information to improve trust and compliance.

75
68
25
80
77
85
100
webhostingdomainsresellerhostingvserversssl+3 more
JavaScriptGoogle AnalyticsFacebook PixelIntercom+5
2025-10-04T09:26:13.873Z
balneotec.de favicon

balneotec GmbH

balneotec.de

67
HospitalityGermanysmallMEDIUM

balneotec GmbH is a specialized service provider in the hospitality sector focused on premium hotel modernization and renovation, particularly hotel bathrooms and rooms. The company positions itself as a holistic solution provider offering aesthetic, hygienic, and sustainable renovations tailored to hotel brands. Their market position is supported by strategic partnerships with well-known manufacturers and craftsman groups, enhancing their service quality and regional capacity. The website reflects a professional and consistent brand image with comprehensive content targeting hoteliers and hotel owners seeking modernization services. Technically, the website is built on WordPress using modern plugins such as Elementor, Rank Math SEO, and UberMenu, ensuring good SEO and user experience. The site is mobile-optimized and performs moderately well, with a clean technical stack and no blocking security mechanisms detected. Privacy and cookie policies are well implemented, indicating good GDPR compliance. From a security perspective, the site enforces HTTPS and includes standard security headers, but lacks a dedicated security policy or incident response information. No vulnerabilities or exposed sensitive data were detected. Overall, the security posture is solid but could be improved with explicit security disclosures and vulnerability handling mechanisms. The overall risk assessment is low with a high trustworthiness rating. Strategic recommendations include publishing a security policy, adding vulnerability disclosure information, and enhancing accessibility features to further strengthen compliance and user trust.

20
95
17
70
90
65
100
hotelmodernizationhotelrenovationhospitalityservicessustainabilityhygiene+2 more
WordPressPHPJavaScriptjQuery+6

Partner Domains:

heinrich-schmid.com
partner
wr-gruppe.com
partner

+3 more partners

2025-10-04T08:23:39.821Z
cppf-pbkf.ch favicon

Fédération Fribourgeoise des Entrepreneurs

cppf-pbkf.ch

50
OtherSwitzerlandsmallMEDIUM

The Commission Professionnelle Paritaire Fribourgeoise du Secteur Principal de la Construction (CPPF) operates as a regional federation representing construction sector entrepreneurs in the canton of Fribourg, Switzerland. The organization provides key services including labor conventions, collective agreements, work calendars, salary scales, and professional cards, targeting construction professionals and companies within the region. The website serves as an information hub with news updates, downloadable resources, and partner information, positioning the CPPF as a trusted authority in its sector. Technically, the website is built on the Neos CMS platform leveraging the Flow PHP framework, with modern JavaScript libraries such as Swiper.js and Google Analytics integrations. The site is mobile-optimized with good SEO practices and structured data usage, reflecting a moderate to good level of digital maturity. Performance is moderate, and accessibility is basic but functional. From a security perspective, the site enforces HTTPS and uses anonymized IP tracking in analytics, but lacks explicit security headers and published security policies or incident response information. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic with a privacy policy and cookie consent mechanism present, though GDPR compliance indicators are limited. Overall, the website is professional, trustworthy, and safe for general audiences. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include enhancing security headers, expanding privacy and incident response disclosures, and continuing to monitor third-party scripts for vulnerabilities to improve security posture and compliance.

25
50
2
70
95
75
-
constructionfederationlaboragreementsswitzerlandneoscms+1 more
PHPJavaScriptGoogle AnalyticsGoogle Tag Manager+2
2025-10-04T08:22:33.862Z