Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 31 of 155|Showing 1501-1550 of 7749
bkms-system.com favicon

EQS Group AG

bkms-system.com

55
TechnologyN/amediumMEDIUM

The BKMS System website is currently undergoing maintenance and displays a minimal placeholder page in English and German. The business behind the site is EQS Group AG, a medium-sized technology company specializing in compliance and whistleblowing systems. The domain is well-established, created in 2004, and registered through a reputable registrar, indicating legitimacy and stability. However, the current website content is minimal, lacking critical elements such as privacy policies, cookie consent mechanisms, contact information, and security disclosures. From a technical perspective, the site uses Cloudflare DNS but does not show evidence of HTTPS or security headers in the provided data. There are no scripts, analytics, or tracking technologies detected, which limits the ability to assess digital maturity fully. The site’s SEO, accessibility, and mobile optimization cannot be evaluated due to the maintenance page’s minimal content. Security posture is weak based on the available data, with no HTTPS detected, no security headers, and no published security or incident response policies. The domain registration is consistent with the business claims, but DNSSEC is not enabled, representing a minor security gap. There are no signs of vulnerabilities or malicious content, and the site content is safe for general audiences. Overall, the website currently provides limited information and functionality, resulting in a low AI score. Strategic improvements should focus on restoring full website content, implementing HTTPS, publishing privacy and cookie policies, adding security headers, and providing clear contact and incident response information to enhance trust and compliance.

30
40
2
70
77
80
100
maintenancecompliancewhistleblowingbkmseqsgroup
Cloudflare DNS
2025-10-15T23:56:45.540Z
themeansar.com favicon

ThemeAnsar

themeansar.com

66
TechnologyN/asmallMEDIUM

ThemeAnsar is a specialized WordPress theme and plugin provider established in 2016, offering both free and premium WordPress themes along with related services. The website targets WordPress users, bloggers, and businesses seeking modern, responsive, and easy-to-use themes. The company positions itself as a niche player with a focus on quality design and user-friendly features, supported by testimonials and trust signals such as money-back guarantees and features on reputable platforms like WordPress.org and WPBeginner. Technically, the website is built on WordPress 6.8.3 with popular plugins like Elementor and Easy Digital Downloads, leveraging modern web technologies including jQuery and Font Awesome. The site is mobile optimized and SEO friendly, with structured data and meta tags implemented effectively. Hosting details are not explicit, but DNS is managed via Cloudflare, indicating some level of infrastructure robustness. From a security perspective, HTTPS is enabled and domain registration includes protective status locks, but DNSSEC is not enabled and security headers are minimal. No advanced security policies or incident response contacts are found, and cookie consent mechanisms are absent despite use of tracking scripts. These gaps suggest room for improvement in compliance and security hardening. Overall, ThemeAnsar presents a professional and trustworthy online presence with solid business credibility and technical implementation. Strategic enhancements in privacy compliance and security posture would further strengthen its risk profile and user trust.

55
53
2
85
75
75
100
wordpressthemespluginstechnologydesign+1 more
WordPress 6.8.3PHPjQueryElementor+5
2025-10-15T23:53:14.259Z
V

ViaPharma s.r.o.

viapharma.cz

57
HealthcareCzech RepublicmediumMEDIUM

ViaPharma s.r.o. is a Czech pharmaceutical distribution company operating multiple modern distribution centers to supply pharmacies and hospitals with medicinal products. The company positions itself as a leading distributor in the Czech healthcare market, emphasizing compliance with good distribution practices and reliable supply chain management. The website provides business-relevant content including news updates related to pharmaceutical regulations and product safety. Technically, the website is built on legacy ASP.NET Web Forms technology, hosted behind Cloudflare DNS services, and uses Google Analytics for visitor tracking. The site is moderately optimized for performance and accessibility but lacks advanced mobile responsiveness and modern SEO features. Security practices are basic, with HTTPS implied but no visible security headers or advanced protections. The login form for clients is present but lacks visible anti-CSRF tokens or multi-factor authentication. Security posture is moderate with room for improvement in implementing security headers, modern authentication mechanisms, and privacy compliance. The absence of privacy and cookie policies is a notable compliance gap, especially under GDPR regulations. The domain registration is consistent and trustworthy, with a domain age appropriate for the business history. Overall, the website is functional and professional but would benefit from enhanced security measures, privacy compliance improvements, and technical modernization to strengthen trust and regulatory adherence.

70
10
2
100
77
85
40
pharmaceuticaldistributionhealthcareczechrepubliclogistics
ASP.NET Web FormsCloudflare DNSGoogle Analytics
2025-10-15T21:35:27.521Z
nomadlist.com favicon

Nomads.com

nomadlist.com

63
TechnologyN/amediumMEDIUM

Nomads.com is a well-established online platform dedicated to digital nomads and remote workers, providing comprehensive data on the best places to live and work remotely worldwide. The platform offers city rankings based on cost of living, internet speed, weather, safety, and other relevant metrics, alongside community features such as meetups, chat, and nomad insurance. It has a strong market position as a leading nomad community since 2014, supported by extensive user reviews and media recognition. Technically, the website is custom-built with modern web technologies including jQuery and Cloudflare services for hosting and streaming. It demonstrates good performance, mobile optimization, and SEO practices. However, there is room for improvement in privacy compliance, particularly regarding cookie consent mechanisms and explicit security policies. From a security perspective, the site uses HTTPS with a good SSL configuration and domain transfer protection. No major vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms a long-standing domain registration consistent with the business's legitimacy. Nonetheless, enabling DNSSEC and publishing security policies would enhance the security posture. Overall, Nomads.com presents a professional, trustworthy, and content-rich platform with moderate privacy compliance and solid security foundations. Strategic improvements in privacy and security transparency would further strengthen its risk profile and user trust.

50
53
17
40
75
85
100
digitalnomadsremoteworktravelcommunitylocationindependent+4 more
jQueryCloudflare StreamCloudflare DNSJavaScript+1

Partner Domains:

hotellist.com
partner
remoteok.com
partner

+3 more partners

2025-10-15T18:12:28.999Z
maha-ara.org favicon

Admissions Regulating Authority

maha-ara.org

10
GovernmentIndiamediumCRITICAL

Admissions Regulating Authority is a government body under the Government of Maharashtra responsible for regulating admissions to professional and postgraduate courses in the state. The website serves as an official portal providing information on admission approvals, review applications, decisions, tenders, and recruitment notices. It targets students, educational institutions, and government officials involved in the admissions process. The business model is that of a government regulatory authority with a medium-sized operational scope and a clear mandate. Technically, the website is built on WordPress using Elementor and standard web technologies such as jQuery and Bootstrap. It is hosted with GoDaddy as registrar and uses Cloudflare for DNS management. The site is moderately performant, mobile-optimized, and accessible with good SEO practices. However, it lacks advanced security headers and DNSSEC. From a security perspective, the site enforces HTTPS and has domain status protections but lacks DNSSEC and comprehensive security policies. No incident response or vulnerability disclosure information is published. Privacy compliance is limited, with no privacy or terms of service pages found, though a cookie consent mechanism is present. Overall, the website is trustworthy and professional, consistent with its government authority role. Strategic improvements in security policies, DNSSEC, and privacy documentation would enhance its posture and compliance.

-
-
-
-
-
-
-
governmenteducationregulatoryadmissionsmaharashtra+1 more
WordPressElementorjQueryBootstrap 5+1
2025-10-15T18:06:18.057Z
ddkorkyne.cz favicon

Erotické masáže – NO SEX | The❤️SEX.cz erotická inzerce

ddkorkyne.cz

61
OtherCzech RepublicmediumMEDIUM

The website thesex.cz is an online platform specializing in advertising erotic massage services in the Czech Republic, emphasizing a strict NO SEX policy to differentiate professional massage services from sexual services. The site targets adult users seeking sensual and relaxing massage experiences without sexual intercourse. The platform offers listings of massage providers, educational content about erotic massages, and maintains a professional and consistent brand image. Technically, the site is built on WordPress, uses common JavaScript libraries like jQuery and Select2, and integrates Google Analytics for tracking. The hosting and DNS are managed via Cloudflare, ensuring good performance and security at the network level. However, the site lacks explicit privacy and cookie policies, which impacts its privacy compliance score. Security headers are not detected, and no direct contact emails or phone numbers are provided, only a contact form. The WHOIS data presents a suspicious future domain creation date, which raises concerns about data accuracy or legitimacy, though the website content and technical setup appear professional. Overall, the site is well-structured, mobile-optimized, and SEO-friendly but needs improvements in privacy compliance and security best practices.

55
10
17
70
75
90
100
eroticmassageadultservicesnosexczechrepublicwordpress+1 more
jQuerySelect2WordPressGoogle Analytics+1
2025-10-15T17:01:13.244Z
soracamed.com favicon

Soraca Med

soracamed.com

63
HealthcareTurkeysmallMEDIUM

Soraca Med is a healthcare provider specializing in medical tourism services based in Antalya, Turkey. The company offers a broad range of medical treatments including hair transplants, cosmetic surgery, dental care, fertility treatments, and other specialized medical services. Positioned as a premium provider, Soraca Med targets international patients primarily from Europe and other regions seeking affordable yet high-quality medical care in Turkey. The business model focuses on connecting patients with certified clinics and specialists, providing end-to-end support including travel and accommodation arrangements. Technically, the website is built on WordPress using the Astra theme and Elementor page builder, supported by Cloudflare DNS and hosted by HOSTINGER operations, UAB. The site employs modern web technologies, including Google reCAPTCHA for form security, CookieYes for cookie consent, and analytics tools such as Yandex Metrika and Google Analytics. The website is mobile-optimized and demonstrates good SEO practices, although accessibility features are basic. From a security perspective, the site uses HTTPS with a good SSL configuration and implements clientTransferProhibited domain status to prevent unauthorized transfers. However, DNSSEC is not enabled, and there is a lack of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. Cookie consent is implemented, but privacy and terms of service pages are missing, indicating compliance gaps. Overall, Soraca Med presents a trustworthy and professional online presence with clear business information and contact details. The domain registration is transparent and consistent with the business claims. Recommendations include enhancing security posture by enabling DNSSEC, publishing privacy and security policies, and adding incident response information to improve compliance and trustworthiness.

50
35
17
85
60
75
100
medicaltourismhealthcarecosmeticsurgeryhairtransplantdentalcare+3 more
WordPressElementorAstra ThemeCloudflare DNS+4

Partner Domains:

bookimed.com
partner
2025-10-15T14:41:32.722Z
elf.site favicon

Elfsight

elf.site

72
TechnologyN/amediumMEDIUM

Elfsight is a well-established technology company founded in 2012 that specializes in providing a wide range of website widgets designed to help businesses grow online by increasing sales, engaging visitors, and collecting leads. The company serves a broad audience of website owners and businesses seeking to enhance their web presence through social media feeds, reviews, chats, video, audio, and other interactive tools. Their market position is strong, supported by a large user base and a comprehensive widget portfolio. Technically, the website is built on WordPress with modern performance optimizations including WP Rocket and Cloudflare DNS, and integrates multiple analytics and marketing tools such as Google Tag Manager, Facebook Pixel, Microsoft Clarity, and LinkedIn Insight Tag. The site demonstrates excellent design quality, mobile optimization, and SEO practices, contributing to a positive user experience and high trustworthiness. Security-wise, the site uses HTTPS with good SSL configuration and domain registration practices, though it lacks explicit security policies, vulnerability disclosures, and some security headers. Overall, the website is secure, professional, and compliant with privacy regulations, but could improve transparency around security and incident response. The domain WHOIS data is consistent with the business claims, showing a mature and legitimate online presence.

35
95
17
82
75
85
100
websitewidgetsbusinessgrowthsocialmediareviewsvideo+4 more
WordPressWP RocketCloudflare DNSGoogle Tag Manager+4

Partner Domains:

dash.elfsight.com
service
help.elfsight.com
service

+1 more partners

2025-10-15T13:30:28.375Z
imporel.com favicon

TASR administrácia

imporel.com

58
MediaSlovakiamediumMEDIUM

The website imporel.com serves as an administrative login portal for TASR, a media organization likely based in Slovakia. It provides access to various internal modules related to media content management, including polls, politicians, events, emails, and charts. The platform is built as a Single Page Application using AngularJS and integrates several third-party libraries and services such as Google Analytics and Google Maps API. The domain is well maintained with a consistent registration history dating back to 2015. From a technical perspective, the website employs a moderately modern technology stack but relies on AngularJS, which is deprecated and may pose future maintenance and security challenges. The site is served over HTTPS with Cloudflare DNS, but lacks several important security headers such as Content-Security-Policy and X-Frame-Options. Performance and mobile optimization are basic but functional. Security posture is adequate with HTTPS enforced and no visible sensitive data exposure. However, the absence of comprehensive privacy and cookie policies, as well as missing security headers, reduces compliance and security maturity. No WAF or blocking mechanisms are detected, and the site is accessible without restrictions. Overall, the website is a professional internal tool with moderate security and compliance maturity. Strategic improvements in privacy compliance, security headers, and modernization of the technology stack are recommended to enhance security and trustworthiness.

30
35
17
70
65
75
100
mediaadministrationloginangularjstasr+1 more
AngularJS 1.5.9jQuery 2.2.4Bootstrap 3.3.6Google Analytics+6
2025-10-15T12:23:14.991Z
riceforce.eu favicon

Sedo.com

riceforce.eu

70
TechnologyN/alargeMEDIUM

Sedo.com operates as a well-established domain marketplace platform, offering domain sales and transfer services globally. The analyzed page is a sales landing page for the domain riceforce.eu, providing options to buy immediately or submit an offer. Sedo emphasizes its 26 years of experience, high volume of domain transfers, and multilingual support, positioning itself as a trusted intermediary in the domain brokerage market. The platform supports multiple payment methods and provides personal assistance to buyers, targeting domain investors and businesses seeking domain acquisitions. Technically, the website employs modern web technologies including JavaScript ES modules and Cloudflare DNS services, ensuring good performance and mobile optimization. The SSL configuration is excellent, and the domain registration is consistent and legitimate, with no privacy protection masking ownership details. However, DNSSEC is not enabled, and some security headers are missing, which could be improved to enhance security posture. From a security perspective, the site enforces HTTPS and uses domain status protections to prevent unauthorized transfers. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic, with a cookie consent mechanism present but no visible privacy or terms of service policies on this page. Contact information is clearly provided, enhancing business credibility and user trust. Overall, the website is professional, trustworthy, and safe, with good technical and security foundations. Strategic recommendations include enabling DNSSEC, publishing comprehensive privacy and security policies, and adding security headers to further strengthen the security posture.

50
65
2
70
100
90
100
domainsalesmarketplacedomaintransfersedodomainbrokerage
JavaScript ES ModulesCloudflare DNSHTML5CSS3
2025-10-15T12:20:49.130Z
jsoncompare.com favicon

JSON Compare Tool

jsoncompare.com

60
TechnologyN/asmallMEDIUM

JSON Compare Tool operates as a specialized online utility providing JSON file comparison, formatting, and validation services primarily targeting developers and technical users. The website offers real-time diff highlighting, file upload support, and export functionality, positioning itself as a niche but useful tool in the developer ecosystem. The business model appears to be free access supported by advertising revenue, with no evident subscription or paid tiers. The domain is well-established since 2017, indicating a stable presence in its market niche. Technically, the site leverages modern web technologies including the Monaco Editor for code editing, React-based UI components, and Cloudflare for DNS and likely CDN services. The site is mobile optimized with good SEO and accessibility basics, though some advanced accessibility features are not evident. Performance is moderate, with external dependencies on advertising and analytics scripts. From a security perspective, the site enforces HTTPS and uses clientTransferProhibited domain status to prevent unauthorized transfers. However, DNSSEC is not enabled, and explicit security headers like X-Frame-Options or Content-Security-Policy are not clearly present in the HTML. No sensitive data exposure or vulnerable libraries were detected. Privacy compliance is weak due to the absence of privacy and cookie policies and lack of consent mechanisms. Contact and incident response information are not provided, limiting transparency. Overall, the site is a functional and legitimate developer tool with moderate security posture and technical maturity. Strategic improvements in privacy compliance, security headers, and transparency would enhance trust and compliance. The absence of contact and policy pages is a notable gap for user assurance and regulatory adherence.

30
58
2
70
75
70
100
jsonjsoncomparejsondiffjsonvalidatorjsonformatter+2 more
JavaScriptMonaco EditorCloudflare DNS
2025-10-15T11:55:59.077Z
sp1-brevo.net favicon

Brevo

sp1-brevo.net

62
TechnologyN/amediumMEDIUM

Brevo operates as an all-in-one email platform specializing in sending newsletters and transactional emails. The website sp1-brevo.net serves as a technical domain for tracking links and hosting images related to email campaigns. The company positions itself with a strong anti-spam stance and provides clear contact channels for abuse reporting. The domain is relatively new, created in 2023, and is managed with appropriate domain security statuses and Cloudflare DNS services. Technically, the website uses modern frameworks such as Bootstrap 5.1.3 and is hosted via OVH sas with Cloudflare DNS. The site is mobile optimized and loads quickly, though some security best practices like DNSSEC and security headers are not yet implemented. The website content is professional and clear but lacks cookie consent mechanisms and visible forms for data collection. From a security perspective, the site benefits from HTTPS and domain protection statuses but could improve by enabling DNSSEC and adding security headers. The presence of a clear abuse contact email and anti-spam policy indicates a mature security posture. No vulnerabilities or suspicious content were detected. Overall, the website is trustworthy and professional with a good balance of technical and business credibility. Strategic improvements in security headers, DNSSEC, and privacy compliance mechanisms would enhance the platform's security and compliance posture.

15
53
12
85
75
75
100
emailmarketingtransactionalemailnewsletterbrevoanti-spam+1 more
Bootstrap 5.1.3Cloudflare DNS
2025-10-15T11:53:53.385Z
krahulik.cz favicon

Krahulík – MASOZÁVOD Krahulčí, a.s.

krahulik.cz

56
ManufacturingCzech RepublicmediumMEDIUM

Krahulík – MASOZÁVOD Krahulčí, a.s. is a well-established Czech manufacturer specializing in traditional sausages and durable salamis since 1926. The company operates multiple brands including Vysočina Hodice and Masna Studená, and is part of the AGROFERT group, indicating strong market positioning and backing. Their product portfolio includes innovative sous-vide meats and snack products, targeting consumers seeking quality traditional meat products. The website reflects a professional and consistent brand image with clear navigation and comprehensive content about products, recipes, and company history. Technically, the website is built on WordPress with modern SEO plugins and uses Cloudflare for DNS and likely CDN services. It integrates Google Analytics and Google Ads for marketing and tracking, with a robust cookie consent mechanism ensuring GDPR compliance. The site is mobile-optimized and performs moderately well, though some accessibility features could be improved. From a security perspective, the site enforces HTTPS and obfuscates email addresses to reduce spam. However, it lacks explicit security headers and does not provide visible security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data confirms domain legitimacy and consistency with the company’s history. Overall, the website presents a low-risk profile with strong business credibility and good privacy compliance. Strategic improvements in security headers and incident response transparency would enhance the security posture further.

15
40
2
70
65
75
100
traditionalmeatproductionsausagessalamiczechrepublicfoodmanufacturing+4 more
WordPressjQueryGoogle AnalyticsGoogle Tag Manager+1

Partner Domains:

agrofert.cz
parent
kaufland.cz
partner

+3 more partners

2025-10-15T10:48:00.839Z
C

ChoiceQR

choiceqr.com

60
HospitalityDenmarksmallMEDIUM

ChoiceQR is a modern SaaS platform providing integrated digital solutions for restaurants and hospitality businesses, including digital menus, QR-code payments, table reservations, order to table, food delivery, and feedback services. The company positions itself as a universal tool for marketing and service in the restaurant industry, targeting primarily small to medium-sized hospitality businesses. The website is professionally designed with multi-language support and clear business focus, reflecting a consistent brand image and good content quality. Technically, the website is built on WordPress, leveraging standard web technologies such as PHP, JavaScript, and CSS. Hosting and DNS services are managed via Cloudflare, ensuring good performance and security at the infrastructure level. The site is mobile-optimized and SEO-friendly, although accessibility features are basic. The technical implementation is solid but could benefit from enhanced security headers and DNSSEC activation. From a security perspective, the site uses HTTPS with a good SSL configuration, but lacks visible security headers and published security policies such as privacy policy or incident response information. No vulnerabilities or suspicious content were detected in the HTML. Cookie consent mechanisms are implemented, indicating some level of privacy compliance, but the absence of privacy and terms of service pages is a compliance gap. Overall, the website presents a moderate risk profile with good business credibility and technical maturity. Strategic improvements in privacy compliance, security policy transparency, and contact information availability would enhance trust and security posture.

15
80
2
85
65
55
100
restaurantdigitalmenuqrcodepaymentfooddelivery+2 more
WordPressPHPJavaScriptCSS+1
2025-10-15T09:30:56.803Z
eventee.com favicon

Eventee

eventee.com

76
TechnologyN/amediumLOW

Eventee is a well-established technology company founded in 2006, specializing in providing a comprehensive event app platform designed to enhance audience engagement for in-person, hybrid, and virtual events. Their platform includes mobile and web apps, event websites, and a suite of features such as networking, live Q&A, push notifications, gamification, and event analytics. The company targets event organizers and attendees, positioning itself as a leading solution in the event management technology market with strong trust signals including high user ratings and notable client logos. Technically, Eventee leverages modern web technologies including Webflow CMS, Cloudflare DNS, HubSpot analytics and marketing tools, Microsoft Clarity, and Google Tag Manager. The website is well-optimized for performance, mobile responsiveness, and SEO, with a professional and consistent design that supports a positive user experience. Hosting appears to be managed via Webflow with Cloudflare DNS, ensuring reliable delivery and security. From a security perspective, the website uses HTTPS and has domain registration protections in place, though DNSSEC is not enabled and no explicit security headers were detected in the provided data. There is no visible privacy policy or terms of service, which represents a compliance gap. Cookie consent mechanisms are implemented, indicating some level of privacy compliance. No incident response or vulnerability disclosure information is published, which could be improved. Overall, Eventee presents a trustworthy and professional online presence with a mature domain and solid technical infrastructure. To enhance security posture and compliance, the company should publish clear privacy and terms policies, implement DNSSEC, add security headers, and provide vulnerability disclosure information. These steps will strengthen trust and regulatory compliance while maintaining their strong market position.

80
65
17
98
75
85
100
eventappeventmanagementconferenceapphybrideventsmobileapp+6 more
Webflow CMSGoogle Fonts (Inter)Cloudflare DNSHubSpot Analytics and Ads Pixel+4
2025-10-15T07:20:40.787Z
clipart.com favicon

Authentic Creatives, LLC

clipart.com

57
MediaN/amediumMEDIUM

Clipart.com, operated by Authentic Creatives, LLC, is a well-established digital media platform specializing in royalty-free clipart images, vectors, and creative assets. Founded in 1998, it offers a large catalog of over 21 million items targeting general audiences including educators, designers, and hobbyists. The business model combines subscription and pay-per-download services, supported by an e-commerce store and related partner sites such as a school edition and animation content providers. The website demonstrates consistent branding and professional content presentation, positioning it as a reputable player in the digital clipart market. Technically, the site uses a custom CMS with a technology stack including jQuery, Google Analytics, Hotjar, and Cloudflare DNS services. Performance and mobile optimization are good, though accessibility features are basic. SEO is well implemented with proper meta tags and structured data. Security posture is solid with HTTPS enforced and domain transfer protections, but DNSSEC is not enabled and some advanced security headers are missing. Privacy compliance is partial, with a privacy policy present but no visible cookie consent mechanism. Security evaluation shows no blocking or WAF challenges, no exposed sensitive data, and no visible vulnerabilities in the HTML content. However, the absence of a vulnerability disclosure policy and incident response information indicates room for improvement in security transparency. Overall, the site is trustworthy and professionally managed but could enhance compliance and security practices. Strategic recommendations include enabling DNSSEC, implementing a cookie consent banner for GDPR compliance, publishing a security.txt or vulnerability disclosure policy, improving accessibility, and adding advanced security headers. These steps will strengthen the security posture, compliance, and user trust, supporting sustainable growth and risk mitigation.

20
53
2
75
65
65
100
clipartroyalty-freevectorsgraphicsstockphotos+1 more
jQuery 1.12.4Google AnalyticsGoogle AdsenseHotjar+2

Partner Domains:

schools.clipart.com
partner
store.clipart.com
partner

+3 more partners

2025-10-15T07:13:57.927Z
bratislava.sk favicon

Hlavné mesto SR Bratislava

bratislava.sk

61
GovernmentSlovakialargeMEDIUM

The website bratislava.sk serves as the official digital portal for the city government of Bratislava, Slovakia. It provides comprehensive information about city operations, public services, cultural events, transportation, social services, and education. The site targets residents and visitors, offering a centralized platform for accessing municipal resources and updates. The business model is that of a public sector government service, focusing on transparency and citizen engagement. Technically, the site is built on modern web technologies including Next.js and React, leveraging Cloudflare for DNS and CDN services to ensure performance and security. Cookie consent is managed via Cookiebot, and Google Tag Manager is used for analytics. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses Cloudflare's infrastructure, which provides a strong baseline security posture. However, explicit security headers and public security policies are not clearly published. No vulnerabilities or exposed sensitive data were detected in the analyzed content. Privacy compliance is partial, with cookie consent implemented but no explicit privacy policy or terms of service found. Overall, the website is trustworthy and professional, with a high legitimacy score based on domain age and WHOIS data. Strategic recommendations include publishing privacy and security policies, adding incident response contacts, and enhancing transparency around data protection to improve compliance and user trust.

30
10
17
85
75
85
100
governmentcitybratislavamunicipalitypublicservices+4 more
Next.jsReactCloudflare DNSCookiebot+1

Partner Domains:

bkis.sk
partner
konto.bratislava.sk
service

+3 more partners

2025-10-15T06:06:18.865Z
salamander.de favicon

SALAMANDER

salamander.de

10
RetailGermanymediumCRITICAL

SALAMANDER operates a professional e-commerce website specializing in stylish and comfortable footwear for active and trend-conscious customers. The site targets primarily German-speaking customers with an English alternative and offers a broad range of products for both women and men. The business model is retail-focused, leveraging Shopify's platform for content management and sales operations. The company maintains a consistent brand image and provides a user-friendly shopping experience with clear navigation and responsive design. Technically, the website is built on Shopify with integrations including Klaviyo for marketing, Microsoft Clarity for analytics, and various Shopify extensions for GDPR compliance and performance optimization. The site uses Cloudflare DNS and Shopify CDN for hosting, ensuring fast load times and reliable uptime. The technical implementation is modern and well-structured, with good SEO and accessibility practices. From a security perspective, the website enforces HTTPS, employs cookie consent mechanisms compliant with GDPR, and uses security monitoring tools like Bugsnag. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. No critical vulnerabilities or suspicious patterns were detected. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include publishing detailed security and incident response policies, adding a vulnerability disclosure page or security.txt, and enhancing transparency around data protection officer contacts to further strengthen trust and compliance.

-
-
-
-
-
-
-
e-commercefootwearretailshopifygdpr+3 more
ShopifyJavaScriptLato fontCloudflare DNS+7
2025-10-15T06:03:40.389Z