Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 33 of 49|Showing 1601-1650 of 2437
unitedpharmacies-uk.md favicon

United Pharmacies (UK)

unitedpharmacies-uk.md

59
HealthcareUnited KingdomsmallMEDIUM

United Pharmacies (UK) operates as an online pharmacy specializing in pharmaceutical product sales with UK and international shipping. The website presents a broad catalog of medications and health-related products, targeting customers primarily in the UK but also internationally. The business model focuses on discount pricing and convenience through online ordering and discreet packaging. The company appears to have been established since at least 2001, indicating a longstanding presence in the online pharmacy market. The site includes customer support features such as live chat and multiple social media channels to engage users. Technically, the website employs a mix of legacy and modern web technologies including jQuery 1.6.1, Bootstrap, and Owl Carousel, alongside Google Analytics and Tag Manager for tracking. While the site is functional and moderately optimized for mobile, it shows signs of technical debt, notably the use of outdated JavaScript libraries that may pose security risks. SEO and accessibility features are basic but present. From a security perspective, the site uses HTTPS but lacks visible security headers such as Content Security Policy or HSTS. The absence of cookie consent mechanisms and the use of outdated libraries reduce the overall security posture. No explicit security policies or incident response contacts are provided, which is a gap for compliance and trust. WHOIS data is privacy protected but consistent with the business claims, and no suspicious patterns were detected. Overall, the website is a moderately professional online pharmacy with good business credibility but requires improvements in security practices, privacy compliance, and technical modernization to enhance trust and reduce risk.

50
53
2
70
72
60
100
onlinepharmacyhealthcaree-commerceukshippingdiscountpharmacy
jQuery 1.6.1jQuery UIBootstrapFont Awesome+4

Partner Domains:

www.unitedpharmacies.md
partner
www.unitedpharmacies.nl
partner
2025-07-27T19:48:15.342Z
I

inames Corp.

icert.co.kr

56
TechnologySouth KoreamediumMEDIUM

iCert is a Korean-based digital security certificate service provider specializing in SSL/TLS certificates, application code signing certificates, and related technical support services. The company operates a well-structured website offering multiple certificate brands such as Symantec, Globalsign, iSafe, and GeoTrust, targeting businesses ranging from small enterprises to large corporations. Their market position is supported by a long domain registration history dating back to 2006 and a clear partnership with INAMES, a recognized registrar and domain service provider in Korea. The website provides comprehensive customer support channels including phone, email, and partner programs, reinforcing its business credibility. From a technical perspective, the website employs a traditional web stack with jQuery and jQuery UI libraries, along with Google Analytics for tracking. While the site is functional and moderately optimized for performance and mobile use, it uses an outdated jQuery version which may pose security risks. The absence of modern security headers and cookie consent mechanisms indicates room for improvement in security and privacy compliance. Hosting appears to be managed by INAMES, consistent with the domain registration data. Security posture is moderate with HTTPS usage implied, but lacking visible security headers and modern JavaScript libraries. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is partial, with a privacy policy present but no cookie consent banner or explicit GDPR compliance indicators. Business credibility is high due to transparent contact information, long domain age, and clear service offerings. Overall, iCert presents a professional and trustworthy digital certificate service platform with a solid business foundation. Strategic improvements in security headers, privacy compliance, and modernization of technical stack would enhance their security posture and user trust.

15
53
2
70
52
75
100
securitysslcertificateauthenticationkorea+2 more
jQuery 1.8.2jQuery UIGoogle AnalyticsjqTransform+4

Partner Domains:

inames.co.kr
partner
cypack.com
partner

+2 more partners

2025-07-26T19:09:45.689Z
regionofwaterloo.ca favicon

Region of Waterloo

regionofwaterloo.ca

60
GovernmentCanadalargeMEDIUM

The Region of Waterloo website serves as the official digital presence for the regional government of Waterloo, Ontario, Canada. It provides comprehensive information and services related to public health, community support, economic development, transportation, and governance. The site targets residents, businesses, and visitors, offering a wide range of resources and engagement opportunities. The website is well-branded, consistent, and reflects the authority of a government entity with clear contact information and official social media channels. Technically, the website leverages a modern technology stack including jQuery, Google Translate, Cludo Search, and accessibility tools like Monsido. It uses the iCreate CMS platform by eSolutionsGroup, ensuring a structured and maintainable content management system. The site is mobile-optimized, accessible, and employs Google Analytics for traffic insights. Performance is moderate with good SEO and accessibility practices. From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA to protect forms. While explicit security headers are not visible in the HTML, the overall posture is strong with no exposed sensitive data or vulnerabilities detected. Privacy compliance is good with a comprehensive privacy policy, though a cookie consent mechanism is not explicitly found. WHOIS data is unavailable, but the domain is a Canadian government .ca domain consistent with the website's identity, indicating high legitimacy. Overall, the Region of Waterloo website demonstrates a mature digital infrastructure suitable for a government entity, with strong content quality, good technical implementation, and a solid security posture. Recommendations include enhancing privacy compliance with cookie consent and publishing a security policy and vulnerability disclosure information to further strengthen trust and compliance.

45
53
17
55
62
65
100
governmentpublicservicesregionalcommunityhealth+2 more
jQueryjQuery UIGoogle Translate WidgetCludo Search+4

Partner Domains:

www.cambridge.ca
partner
www.kitchener.ca
partner

+3 more partners

2025-07-26T14:36:04.997Z
revolutionride.ca favicon

Amyotrophic Lateral Sclerosis Society of Canada

revolutionride.ca

63
Non-profitCanadamediumMEDIUM

The ALS Canada Revolution Ride website serves as a professional and well-branded platform for promoting the 2025 fundraising cycling event organized by the Amyotrophic Lateral Sclerosis Society of Canada. The site effectively communicates the event's purpose, target audience, and key services including fundraising, community support, research funding, advocacy, and information dissemination. The organization behind the site is a reputable Canadian non-profit established in 1977, with a strong market position in ALS awareness and support. The website's content is relevant, well-structured, and visually appealing, targeting cyclists and supporters of ALS causes. From a technical perspective, the site employs a modern technology stack including jQuery, TinyMCE, Google reCAPTCHA, Facebook SDK, and Very Good Vault for secure data collection. Hosting appears to be on Rackspace infrastructure. The site is mobile optimized and SEO friendly, though accessibility features could be improved. Security posture is strong with HTTPS enforced and use of security tools, but lacks some security headers and publicly available security policies. Privacy compliance is weak due to missing privacy and cookie policies. Overall, the security posture is good with no detected vulnerabilities or WAF blocking. The domain WHOIS data is unavailable, likely due to privacy protection, which is justified for this non-profit event site. Trust indicators such as charity registration and certifications bolster credibility. The site is safe for general audiences with no adult or questionable content. Strategic recommendations include publishing comprehensive privacy and cookie policies, adding security headers, providing clear contact information for security and privacy matters, and enhancing accessibility compliance to improve overall trust and compliance posture.

45
35
2
80
75
85
100
non-profitfundraisingalscyclingcharity+2 more
jQueryjQuery UITinyMCEGoogle reCAPTCHA+2

Partner Domains:

als.ca
partner
2025-07-26T14:35:54.974Z
alzheimer.ca favicon

Alzheimer Society of Canada

alzheimer.ca

65
Non-profitCanadalargeMEDIUM

The Alzheimer Society of Canada is a well-established national non-profit organization dedicated to supporting people affected by dementia through education, support services, research funding, and advocacy. The website reflects a mature digital presence with comprehensive content targeting multiple stakeholders including individuals living with dementia, caregivers, healthcare professionals, and researchers. The organization maintains a strong market position as a leading dementia support entity in Canada, supported by clear branding, active social media engagement, and transparent contact information. Technically, the website is built on Drupal 9 with modern JavaScript libraries and integrates multiple analytics and marketing tools such as Google Analytics, Facebook Pixel, Hotjar, and FundraiseUp for donations. The site is hosted behind Cloudflare DNS and uses HTTPS with a Content-Security-Policy header, indicating a good security baseline. However, DNSSEC is not enabled, and some advanced security headers are missing, representing areas for improvement. From a security and compliance perspective, the site enforces HTTPS and protects domain transfer and update rights, but lacks a visible cookie consent mechanism and a published security or incident response policy. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is consistent with the organization's identity and history, reinforcing legitimacy. Overall, the website scores highly on content quality, business credibility, and technical implementation, with moderate scores on privacy compliance and security posture. Strategic recommendations include enabling DNSSEC, implementing cookie consent, publishing security policies, and enhancing security headers to further strengthen trust and compliance.

50
53
17
70
65
80
100
non-profithealthcaredementiaalzheimercanada+3 more
Drupal 9jQueryjQuery UIGoogle Tag Manager+4

Partner Domains:

alzheimercanada.donorsupport.co
partner
alzheimer.mb.ca
partner
2025-07-26T13:25:08.524Z
sadc.ca favicon

Société d’assurance-dépôts du Canada

sadc.ca

68
FinanceCanadamediumMEDIUM

The Société d’assurance-dépôts du Canada (SADC) is a Canadian government entity responsible for promoting the stability of the Canadian financial system by providing deposit insurance to member institutions. The website serves as an authoritative source of information for depositors, financial professionals, and member institutions, offering resources such as deposit insurance calculators, FAQs, compliance guidelines, and news updates. The bilingual presence with an English counterpart at www.cdic.ca enhances accessibility for Canada's diverse population. Technically, the website is built on WordPress with modern technologies including jQuery, Google Tag Manager, Microsoft Clarity, and Algolia search integration. The site demonstrates good performance, mobile optimization, and accessibility features, supported by comprehensive SEO practices including structured data and meta tags. From a security perspective, the site enforces HTTPS and uses several tracking and analytics tools responsibly. While explicit security headers are not fully confirmed, the site shows no signs of exposed sensitive data or vulnerable libraries. The absence of public WHOIS data suggests privacy protection, which is justified given the nature of the organization. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature privacy posture. Overall, the website presents a professional, trustworthy, and secure digital presence consistent with a government financial institution. Strategic recommendations include enhancing security header implementation, publishing a vulnerability disclosure policy, and improving incident response contact visibility to further strengthen trust and security.

65
50
17
70
80
75
100
financedepositinsurancegovernmentcanadasecurity+2 more
WordPress 6.8.2jQuery 3.7.1jQuery UIYoast SEO Premium+5

Partner Domains:

www.cdic.ca
partner
2025-07-26T12:13:41.207Z
issuesofsubstance.ca favicon

Canadian Centre on Substance Use and Addiction

issuesofsubstance.ca

51
Non-profitCanadamediumMEDIUM

The website issuesofsubstance.ca represents the Canadian Centre on Substance Use and Addiction’s Issues of Substance Conference 2025, a well-established national event focused on substance use and addiction issues in Canada. The conference targets a diverse audience including healthcare professionals, researchers, policy makers, and individuals with lived experience. The business model is non-profit and educational, positioning itself as a key knowledge-sharing platform in the Canadian health sector. The site is professionally designed with consistent branding and clear navigation, supporting a positive user experience and trustworthiness. Technically, the website is built on Drupal CMS with modern JavaScript libraries and integrates analytics tools such as Google Analytics and Webtrends. The site is mobile optimized and accessible, with good SEO practices evident in meta tags and structured navigation. Hosting and domain registration are consistent with the Canadian non-profit identity, though DNSSEC is not enabled, representing a minor security gap. From a security perspective, the site enforces HTTPS and has domain transfer protections in place. However, it lacks explicit security policies, incident response contacts, and security headers, which could be improved to enhance security posture. Privacy compliance is strong with clear privacy and cookie policies and consent mechanisms. No vulnerabilities or suspicious content were detected. Overall, the website demonstrates a solid security and privacy foundation with room for improvement in security policy transparency and DNS security. The business credibility is high, supported by consistent WHOIS data and reputable partnerships. Strategic recommendations include enabling DNSSEC, publishing security policies, and implementing security headers to further strengthen trust and resilience.

40
53
2
75
42
70
40
conferencesubstanceuseaddictionnon-profitcanada+2 more
Drupal CMSjQuery UIGoogle AnalyticsGoogle Tag Manager+1

Partner Domains:

www.ccsa.ca
parent
mentalhealthcommission.ca
partner
2025-07-26T08:48:10.455Z
Ț

Țuca Zbârcea & Asociații

tuca.ro

53
OtherRomanialargeMEDIUM

Țuca Zbârcea & Asociații is a prominent Romanian law firm specializing in financial, corporate, tax, and litigation legal services. The firm has a strong market position, evidenced by recent awards and recognitions, and serves a diverse clientele including corporate and international clients. Their website reflects a professional and well-structured digital presence with comprehensive content and clear navigation. The firm collaborates with Andersen Global, enhancing its international reach. Technically, the website employs modern JavaScript libraries and privacy-focused analytics (Matomo), along with Google reCAPTCHA for form security. Cookie consent mechanisms are implemented, supporting GDPR compliance. However, some security headers are missing, and no explicit security or incident response policies are published, which could be improved. The security posture is solid with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. Privacy compliance is good, with clear policies and consent banners. The absence of WHOIS data is due to ROTLD privacy policies, which is typical for Romanian domains and justified for a law firm. Overall, the site is trustworthy and professionally maintained. Strategic recommendations include enhancing security headers, publishing a security policy and incident response contacts, adding vulnerability disclosure mechanisms, and improving accessibility features to further strengthen the website's security and compliance posture.

15
83
17
80
52
70
20
lawfirmlegalservicesromaniacorporatelawfinanciallaw+2 more
Matomo AnalyticsGoogle reCAPTCHAjQueryjQuery UI+3

Partner Domains:

www.global.andersen.com
partner
2025-07-26T08:43:43.491Z
romania-webhosting.com favicon

Claus Web

romania-webhosting.com

51
TechnologyRomaniamediumMEDIUM

Claus Web operates the website www.romania-webhosting.com as a professional web hosting and domain registration service provider in Romania. The company offers a wide range of hosting solutions including shared hosting, reseller hosting, cloud VPS, dedicated servers, and web design services. They position themselves as an experienced and accredited provider with over 20 years in the industry, holding ISO/IEC 27001 certification and partnerships with ROTLD and EURID for domain registrations. The website is well-structured, mobile-optimized, and provides clear navigation and detailed service offerings. Technically, the site uses a mix of legacy and modern web technologies, including jQuery, Swiper.js, and various hosting-related software stacks. Security practices include anti-spam and antivirus email filtering, Imunify360, and cookie consent mechanisms compliant with GDPR. However, the domain WHOIS data for www.romania-webhosting.com is missing, which raises some concerns about domain registration legitimacy, though the site content strongly ties to clausweb.ro, a known hosting brand. Overall, the security posture is solid but could be improved by adding security headers and updating legacy libraries. Privacy compliance is good with explicit cookie consent and a privacy policy. The business credibility is supported by certifications and clear contact information. The site is safe for general audiences with no adult or questionable content.

15
95
25
70
42
65
20
webhostingdomainregistrationcloudhostingresellerhostingvps+5 more
jQuery 1.6.1Google Fonts (Istok Web)Swiper.jsSelect2+13

Partner Domains:

clausweb.ro
partner
2025-07-26T08:39:21.814Z
goldsaver.ie favicon

GoldCore Ltd

goldsaver.ie

62
FinanceIrelandmediumMEDIUM

GoldSaver, operated by GoldCore Ltd, is a reputable financial service offering a secure and convenient way for individuals to save and invest in physical gold bullion. Established in 2013 and based in Ireland, the company serves a global clientele with a focus on monthly savings plans backed by physical 24 carat gold stored in high-security vaults. The website demonstrates a professional and user-friendly design, with clear navigation and comprehensive content tailored to investors interested in precious metals. The business model centers on providing affordable access to gold investment with transparent fees and the option to convert savings into physical coins after accumulation. Technically, the website employs modern web technologies including jQuery, Bootstrap, and CDN hosting via Amazon CloudFront, ensuring fast load times and good mobile optimization. The presence of New Relic monitoring and HubSpot marketing tools indicates a mature digital infrastructure. Security measures such as HTTPS enforcement, secure forms with CSRF tokens, and content security policies are implemented, although explicit security and incident response policies are not publicly documented. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Contact information is comprehensive, including multiple phone numbers, email, and physical address, enhancing business credibility. However, the absence of WHOIS data limits full verification of domain registration legitimacy. Overall, GoldSaver presents a trustworthy and professional online presence with robust technical and security foundations. Strategic recommendations include publishing detailed security policies and incident response contacts, and enhancing transparency around vulnerability disclosures to further strengthen trust and compliance.

75
80
2
70
-
85
100
goldinvestmentfinancesavingsbullion+1 more
jQueryjQuery UIBootstrapLite YouTube Embed+2

Partner Domains:

www.mygoldsaver.com
partner
www.mygoldsaver.co.uk
partner

+2 more partners

2025-07-26T00:28:46.057Z
goldcore.co.uk favicon

Goldcore Limited

goldcore.co.uk

71
FinanceUnited KingdommediumMEDIUM

GoldCore Limited is a well-established UK-based precious metals dealer specializing in the sale and secure storage of gold and silver bullion coins and bars. The company holds prestigious certifications such as LBMA membership and Royal Mint Approved Distributor status, positioning it as a trusted player in the precious metals investment market. Their business model focuses on e-commerce sales combined with allocated storage and insured delivery services, targeting investors and individuals seeking physical precious metals. The website is professionally designed, mobile-optimized, and rich in relevant content, including educational guides, market news, and client testimonials, reinforcing their market credibility. Technically, the website employs modern web technologies including jQuery, Bootstrap, and CDN hosting via Amazon CloudFront, ensuring fast performance and good accessibility. Analytics and marketing tools such as HubSpot, Google Tag Manager, and Facebook Pixel are used with appropriate consent mechanisms, reflecting a mature digital infrastructure. Security posture is strong with HTTPS enforced and secure form handling, though explicit security headers could be improved. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data for the domain www.goldcore.co.uk could not be retrieved due to a Nominet naming rules error, but this appears to be a technical anomaly rather than a legitimacy concern. The website provides comprehensive contact information, including multiple phone numbers, email, and physical addresses in the UK and Ireland, supporting business transparency. Overall, the site demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations. Strategically, GoldCore is well positioned in the precious metals market with a strong brand presence and a comprehensive digital platform supporting customer engagement and sales. Continued focus on enhancing security policies and incident response transparency would further strengthen their risk posture.

75
95
2
70
67
70
100
goldsilverbullioninvestmentpreciousmetals+3 more
jQueryjQuery UIBootstrapLite YouTube Embed+3

Partner Domains:

www.goldcore.com
partner
www.goldcore.ie
partner

+3 more partners

2025-07-25T23:18:47.045Z
goldcore.com favicon

GoldCore Ltd

goldcore.com

73
FinanceUnited StatesmediumMEDIUM

GoldCore Ltd is a reputable precious metals dealer specializing in the sale and secure storage of gold and silver bullion coins and bars. The company serves a global client base with over 15,000 clients in 140 countries and has transacted over $1 billion in sales. Their market position is strengthened by LBMA membership, competitive pricing, and comprehensive storage solutions including allocated and segregated vault storage. The website offers extensive educational content, product catalogs, and investment guides, targeting investors seeking secure precious metals investment options. Technically, the website is built on a modern stack including jQuery, Bootstrap, and various analytics and marketing tools such as HubSpot and Google Tag Manager. It is hosted on Amazon CloudFront CDN, ensuring fast performance and global availability. The site is mobile-optimized and accessible, with good SEO practices and structured navigation. From a security perspective, the site enforces HTTPS and uses nonce attributes for scripts, indicating attention to security best practices. However, explicit security headers and a dedicated security policy or incident response information are not publicly found, representing an area for improvement. The WHOIS data is missing or unavailable, which is unusual for a business of this stature but does not appear to impact the overall trustworthiness given other strong indicators. Overall, GoldCore presents a professional, trustworthy online presence with strong business credibility and technical maturity. Strategic recommendations include enhancing transparency around security policies and incident response, improving WHOIS data availability, and publishing vulnerability disclosure information to further strengthen trust and compliance.

75
95
2
83
67
80
100
preciousmetalsgoldsilverinvestmentbullion+3 more
jQueryjQuery UIBootstrapLite YouTube Embed+5

Partner Domains:

myaccount.goldcore.com
subsidiary
news.goldcore.com
subsidiary

+3 more partners

2025-07-25T21:02:16.753Z
U

U.S. Department of Defense

defense.gov

66
GovernmentUnited StatesenterpriseMEDIUM

The U.S. Department of Defense website serves as the official digital presence of America's largest government agency responsible for national security and military forces. It provides comprehensive news, multimedia content, and resources targeted at the general public, military personnel, and government stakeholders. The site maintains a strong market position as a trusted source of defense-related information and services. Technically, the website employs a mature infrastructure using ASP.NET Web Forms with DNN CMS, leveraging modern JavaScript libraries such as jQuery and Vue.js, and integrates multimedia and social media effectively. The site is mobile optimized, accessible, and SEO-friendly, reflecting a high level of digital maturity. From a security perspective, the site enforces HTTPS, uses secure coding practices, and avoids exposing sensitive data. While explicit security headers are not fully documented in the HTML, the overall SSL configuration is excellent. Privacy compliance is moderate, with a comprehensive privacy policy but lacking a cookie consent mechanism. WHOIS data is restricted, typical for government domains, but the domain is highly legitimate. Overall, the website is professional, trustworthy, and secure, with minor areas for improvement in privacy compliance and security header implementation.

30
53
25
85
70
80
100
defensegovernmentmilitaryusdepartmentofdefensepentagon+2 more
jQueryjQuery UIVue.jsBootstrap+3

Partner Domains:

army.mil
partner
marines.mil
partner

+3 more partners

2025-07-25T20:59:51.016Z
G

GEODETSKA DRUŽBA D.O.O.

geagomaps.com

43
RetailSloveniasmallHIGH

GeaGo is a Slovenian-based retailer specializing in laminated and durable maps including road maps, school maps, tourist maps, hiking maps, and city maps. The company operates an e-commerce platform targeting general consumers interested in cartographic products. The website presents a professional and consistent brand image with clear navigation and relevant content focused on map sales and custom orders. Contact information is comprehensive, including physical address, phone, email, and a contact form, supporting customer engagement. Technically, the website uses a custom or proprietary CMS platform with a technology stack including jQuery 1.7.2, Google Tag Manager, Google Analytics, and various UI libraries. While the site is functional and moderately optimized for mobile, it uses outdated JavaScript libraries that may pose security risks. The site includes cookie consent mechanisms and terms of service but lacks a clear privacy policy page. From a security perspective, the site uses HTTPS and cookie consent but lacks visible security headers and uses outdated libraries. The WHOIS data is missing or unavailable, which is unusual for an active commercial domain and raises concerns about domain registration legitimacy. No WAF or blocking mechanisms are detected, and the site content is safe with no adult or questionable material. Overall, the site is functional and credible from a business perspective but requires improvements in security posture, privacy compliance, and domain registration transparency to enhance trust and reduce risk.

20
35
2
70
72
80
-
mapsretaile-commercesloveniacartography+1 more
jQuery 1.7.2Google Tag ManagerGoogle AnalyticsSlick Carousel+2
2025-07-25T19:56:58.701Z
N

National Security Agency/Central Security Service

nsa.gov

69
GovernmentUnited StatesenterpriseMEDIUM

The National Security Agency (NSA) is a U.S. government agency specializing in signals intelligence and cybersecurity. The website serves as an official portal providing comprehensive information about NSA's mission, leadership, cybersecurity initiatives, signals intelligence, research, and collaboration with various stakeholders including the Defense Industrial Base. The site is well-positioned as a trusted source of national security information with a strong digital presence and official government branding. Technically, the website leverages a mature technology stack including ASP.NET with DotNetNuke CMS, jQuery, Bootstrap, and FontAwesome. It is hosted by the Defense Media Activity, ensuring government-grade hosting and security. The site demonstrates good performance, mobile optimization, and accessibility features, supporting a broad audience including government officials, researchers, and the public. From a security perspective, the site enforces HTTPS and uses secure coding practices with no visible vulnerabilities or exposed sensitive data. However, it lacks explicit security headers such as Content-Security-Policy and HSTS, which could further enhance its security posture. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism detected, likely due to government exemptions. Overall, the NSA website is a high-quality, authoritative government resource with strong business credibility and trustworthiness. The lack of WHOIS data is typical for government domains and does not detract from its legitimacy. Strategic recommendations include enhancing security headers, improving privacy compliance transparency, and maintaining rigorous third-party script audits to sustain its security and trust.

30
53
47
70
85
80
100
cryptologyforeignsignalsintelligencecybersecuritycodemakingcodebreaking+3 more
jQueryjQuery UIBootstrapFontAwesome+4
2025-07-25T19:54:27.084Z
significantcemeteries.org favicon

Association of Significant Cemeteries of Europe

significantcemeteries.org

67
OtherN/asmallMEDIUM

The Association of Significant Cemeteries of Europe (ASCE) operates as a non-profit organization dedicated to promoting European cemeteries as vital cultural heritage sites. The website provides detailed descriptions of significant cemeteries, organizes events such as conferences and symposiums, and fosters research and networking among heritage professionals and communities. The target audience includes cultural heritage professionals, researchers, local communities, and cultural tourists interested in cemetery heritage. Technically, the website is hosted on the Blogger platform, utilizing common web technologies including jQuery, Google APIs, and third-party services like Zoho Campaigns for newsletter signups. The site demonstrates moderate performance and basic mobile optimization, with a consistent and professional design that supports good user experience and navigation. From a security perspective, the site uses HTTPS but lacks visible security headers and comprehensive privacy policies, which are areas for improvement. No critical vulnerabilities or malicious content were detected. The WHOIS data is unavailable, limiting domain trust assessment, but the website content and external authoritative links support its legitimacy. Overall, the site is a credible resource for cultural heritage related to cemeteries, with recommendations to enhance privacy compliance, security headers, and mobile accessibility to strengthen its security posture and user trust.

35
65
30
70
85
75
100
cemeteriesheritageeventsagmwdec+3 more
Blogger CMSjQueryjQuery UIGoogle APIs+4
2025-07-25T15:18:57.908Z
k-einbruch.de favicon

Polizeiliche Kriminalprävention der Länder und des Bundes

k-einbruch.de

57
GovernmentGermanymediumMEDIUM

The website www.k-einbruch.de is an official German government-backed platform dedicated to burglary prevention and public safety awareness. Operated by the Polizeiliche Kriminalprävention der Länder und des Bundes, it provides comprehensive information, safety tips, and resources for homeowners, tenants, and security professionals. The site is well-positioned as a trusted source in the crime prevention sector, offering certified partner networks and state-supported security guidance. Technically, the site is built on the TYPO3 CMS platform with a technology stack including jQuery, Bootstrap, and Google Tag Manager. It demonstrates good mobile optimization, accessibility, and SEO practices, though some JavaScript libraries are somewhat dated. The site employs HTTPS with strong SSL configuration and includes a cookie consent mechanism aligned with GDPR requirements. From a security perspective, the site follows best practices such as HTTPS enforcement and user consent for tracking but lacks explicit security policies or vulnerability disclosure mechanisms. No critical vulnerabilities or WAF blocking were detected, indicating a mature security posture suitable for a government information portal. Overall, the site scores well on content quality, technical implementation, security, privacy compliance, and business credibility, making it a reliable and professional resource for burglary prevention in Germany.

35
43
2
50
72
70
100
einbruchschutzsicherheitstippsburglarpreventiongovernmentpublicsafety
jQuery 1.12.0jQuery UIModernizr 2.8.2Bootstrap+5
2025-07-25T15:18:22.672Z
higfw.de favicon

Hafencity Institut für rechtspsychologische, rechtsmedizinische und klinische Gutachten sowie Fort- und Weiterbildungen (HIGFW)

higfw.de

54
HealthcareGermanysmallMEDIUM

The Hafencity Institut für rechtspsychologische, rechtsmedizinische und klinische Gutachten sowie Fort- und Weiterbildungen (HIGFW) is a specialized German GmbH providing forensic psychological and medical expert assessments alongside professional training services. The website clearly targets legal professionals, psychologists, medical experts, and clients requiring expert legal and clinical evaluations. The business operates in a niche healthcare and legal services market with a focus on interdisciplinary collaboration between psychology and medicine. The site content is professionally presented in German, with clear navigation and relevant service descriptions. Technically, the website is built on the Contao Open Source CMS platform, utilizing common JavaScript libraries such as jQuery and jQuery UI. Hosting is provided via rzone.de, a German hosting provider. The site demonstrates good mobile responsiveness, SEO optimization, and moderate performance. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though security headers and incident response information are lacking. Overall, the security posture is good but could be improved by adding security headers, explicit incident response contacts, and cookie consent mechanisms to enhance GDPR compliance. No advertising or tracking scripts were detected, indicating a privacy-conscious approach. The domain WHOIS data is minimal but consistent with the business location and type, supporting legitimacy. The website is safe for general audiences with no adult or questionable content. The overall AI score reflects a well-implemented, professional, and secure website suitable for its specialized business purpose.

85
28
2
65
82
70
20
rechtspsychologierechtsmedizingutachtenfortbildunghigfw+2 more
jQueryjQuery UIColorboxContao CMS
2025-07-25T13:00:28.646Z
hochschulambulanz-sport-und-bewegungsmedizin.de favicon

MSH Hochschulambulanz für Sport- und Bewegungsmedizin

hochschulambulanz-sport-und-bewegungsmedizin.de

58
HealthcareGermanysmallMEDIUM

MSH Hochschulambulanz für Sport- und Bewegungsmedizin is a specialized healthcare provider focused on sports and movement medicine, integrating research, teaching, and patient care. The organization serves a broad audience including professional athletes, recreational sportspeople, and individuals of all ages requiring medical and therapeutic support. Their interdisciplinary team offers comprehensive services such as prevention, rehabilitation, performance diagnostics, and sports counseling, positioning them as a key player in Hamburg's healthcare and sports medicine sector. Technically, the website is built on the Contao Open Source CMS platform, leveraging modern web technologies including jQuery, Google Tag Manager, and responsive design elements. The site demonstrates good digital maturity with mobile optimization, SEO best practices, and a professional user experience. Hosting is provided by a German hosting provider, ensuring regional compliance and performance. From a security perspective, the site enforces HTTPS, uses CSRF tokens in forms, and implements a GDPR-compliant cookie consent mechanism. However, there is room for improvement in security headers and explicit security policies. No critical vulnerabilities or exposed sensitive data were detected, indicating a solid security posture. Overall, the website is trustworthy, professionally maintained, and compliant with relevant privacy regulations. It effectively supports the business objectives of the MSH Hochschulambulanz and provides clear communication channels for users.

85
40
17
65
82
70
20
healthcaresportsmedicinegdprcontaocmsgoogletagmanager+1 more
jQueryGoogle Tag ManagerRocksolid SliderContao CMS+2

Partner Domains:

www.physiotherapie-praxis-hamburg.de
partner
www.medicalschool-hamburg.de
partner
2025-07-25T11:48:31.120Z
klimaenergie-frm.de favicon

Regionalverband FrankfurtRheinMain

klimaenergie-frm.de

62
EnergyGermanymediumMEDIUM

The Klima-Energie-Portal is a regional public sector website operated by the Regionalverband FrankfurtRheinMain, providing comprehensive information, data, and interactive maps related to climate, energy, and sustainability in the FrankfurtRheinMain region. It serves residents, municipalities, and stakeholders interested in regional climate initiatives and energy projects. The portal offers detailed content on regional energy concepts, climate change impacts, and sustainability activities, positioning itself as an authoritative regional resource. Technically, the website is built on the IKISS CMS framework, utilizing jQuery, Flexslider, and Slicknav for UI components. The site is moderately performant with good mobile optimization and accessibility features. SEO practices are well implemented with comprehensive metadata and Open Graph tags. The site employs a cookie consent mechanism and uses Matomo analytics, indicating a privacy-conscious approach. From a security perspective, the site uses HTTPS and has no visible critical vulnerabilities or exposed sensitive data. However, it lacks explicit security headers and documented security policies. The domain registration is consistent with the website's public sector nature, managed by Advantic GmbH, the site designer, enhancing trustworthiness. Overall, the website is professional, trustworthy, and well-suited for its informational purpose. Strategic improvements in security headers and explicit incident response policies could further enhance its security posture.

65
68
2
60
42
75
100
climateenergysustainabilityfrankfurtrheinmainregional+2 more
jQuery 1.11.3jQuery UIFlexsliderSlicknav+1
2025-07-25T06:06:24.965Z
region-frankfurt.de favicon

Regionalverband FrankfurtRheinMain

region-frankfurt.de

66
GovernmentGermanymediumMEDIUM

The Regionalverband FrankfurtRheinMain website serves as the official regional government portal for the FrankfurtRheinMain metropolitan area in Germany. It provides comprehensive information and services related to regional planning, mobility, climate and energy initiatives, sustainability, digitalization, and workforce development. The site targets local citizens, municipalities, businesses, and stakeholders interested in regional development and public services. The business model is that of a public administration entity focused on regional coordination and information dissemination. Technically, the website employs a mature but somewhat dated technology stack including jQuery 1.11.3, jQuery UI, Flexslider, and Slicknav, running on the ikiss CMS platform. The site is mobile-optimized, accessible, and SEO-friendly with proper metadata and structured navigation. Performance is moderate, with room for modernization especially in updating JavaScript libraries. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism aligned with GDPR requirements. However, it lacks explicit security headers and a vulnerability disclosure policy. No exposed sensitive data or vulnerabilities were detected in the HTML content. The WHOIS data aligns well with the website's governmental nature, showing consistent registration and no privacy protection, enhancing trustworthiness. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though it could improve security posture by adding security headers and updating legacy libraries. The absence of direct contact information and terms of service pages is noted but typical for government portals. The site is safe for general audiences with no adult or questionable content.

65
68
2
70
82
60
100
regionalgovernmentplanningmobilityclimateenergy+4 more
jQuery 1.11.3jQuery UIFlexsliderSlicknav+2

Partner Domains:

www.find-it-in-frm.de
partner
klimaenergie-frm.de
partner

+2 more partners

2025-07-25T05:00:28.271Z
fca.org.uk favicon

Financial Conduct Authority

fca.org.uk

66
FinanceUnited KingdomlargeMEDIUM

The Financial Conduct Authority (FCA) is the UK's independent financial regulatory body responsible for overseeing financial services firms and markets to ensure consumer protection and market integrity. The website serves as a comprehensive portal for consumers, firms, and stakeholders, offering regulatory guidance, firm authorisation information, consumer alerts, and access to various FCA systems. The FCA operates with a clear mandate to promote competition, protect consumers, and enhance market integrity, funded through fees charged to the financial services industry. Technically, the FCA website is built on Drupal 10, leveraging modern web technologies including Google Tag Manager and New Relic for performance monitoring. The site demonstrates good mobile optimization, accessibility, and SEO practices, providing a professional and user-friendly experience. Security is robust with HTTPS enforced and cookie consent mechanisms in place, although explicit HTTP security headers and a published security policy could enhance the posture further. Despite the absence of WHOIS registration details due to domain naming restrictions, the website's legitimacy is strongly supported by consistent branding, official contact information, and trust indicators such as the Plain Language Commission Gold Award. No security vulnerabilities or suspicious activities were detected in the content or technical configuration. Overall, the FCA website represents a high-quality, authoritative resource for financial regulation in the UK, with strong business credibility and a solid security foundation. Strategic recommendations include enhancing security header implementation, publishing explicit security and incident response policies, and maintaining vigilance on third-party scripts to sustain trust and compliance.

50
68
17
85
52
70
100
financeregulationukfinancialservicesconsumerprotection+1 more
Drupal 10Google Tag ManagerjQuery UINew Relic Browser monitoring
2025-07-25T02:40:39.040Z
E

E.INFRA GmbH

e-infra.com

71
EnergyGermanymediumMEDIUM

E.INFRA GmbH is a medium-sized German company specializing in electrotechnical and communication technology solutions. With over 200 employees and multiple regional offices, the company offers a broad range of services including plant construction, energy and switchgear systems, security technology, network technology, media technology, IoT and sustainability solutions, as well as maintenance and service. Their business model focuses on B2B services targeting organizations requiring complex electrical and communication infrastructure. The website is professionally designed, mobile-optimized, and provides comprehensive information about their offerings and corporate presence. Technically, the website employs modern JavaScript libraries such as jQuery, Bootstrap, and FontAwesome, with client-side validation and cookie consent mechanisms implemented. While the site performs moderately well and is mobile-friendly, there is room for improvement in accessibility and SEO optimization. Security-wise, the site uses HTTPS but lacks explicit security headers like CSP and HSTS, which are recommended to enhance protection. No incident response or vulnerability disclosure information is publicly available. The WHOIS data is unavailable, which reduces transparency and trust slightly; however, the professional presentation, multiple physical locations, and active social media presence support the legitimacy of the business. Privacy compliance is well addressed with a detailed privacy policy and cookie consent banner, indicating adherence to GDPR requirements. Overall, the website presents a trustworthy and professional image with moderate technical maturity and security posture. Strategic improvements in security headers, WHOIS transparency, and accessibility would further strengthen their digital presence and trustworthiness.

20
83
52
80
77
85
100
electrotechnicalcommunicationtechnologyenergysecuritytechnologyiot+3 more
jQuery 3.6.0BootstrapFontAwesomeModernizr+2
2025-07-25T00:18:09.230Z