Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 37 of 56|Showing 1801-1850 of 2794
P

Prometni institut Ljubljana d.o.o

prometni-institut.si

60
TransportationSloveniamediumMEDIUM

Prometni institut Ljubljana d.o.o is a well-established Slovenian research and development organization specializing in transport, particularly railway transport. The company operates as part of the Slovenske železnice group and holds a leading position in national and international transport research projects. Their services encompass transport technology, infrastructure, economic and legal research, investment documentation, and digitalization in transport. The website reflects a professional and credible business with clear contact information, GDPR-compliant privacy and cookie policies, and ISO 9001:2015 certification, reinforcing trust. Technically, the website is built on WordPress with a modern tech stack including Gravity Forms for data collection, jQuery, and various UI libraries. The site is mobile-optimized, accessible, and SEO-friendly, though some security headers could be improved. HTTPS is enforced, and no critical vulnerabilities or suspicious domains were detected. The site uses a cookie consent mechanism and collects minimal user data primarily via a contact form. Security posture is solid with HTTPS and spam protection on forms, but lacks publicly available incident response or vulnerability disclosure information. The domain is long-standing and consistent with the business profile, indicating high legitimacy. No WAF or blocking mechanisms interfere with content access. Overall, the website presents a trustworthy, professional, and secure digital presence for a medium-sized transport research entity. Strategic improvements could include enhanced security headers, publishing security policies, and adding vulnerability disclosure channels to further strengthen security and compliance.

45
25
2
70
85
70
100
transportresearchrailwaysloveniainfrastructure+5 more
WordPressGravity FormsjQueryFont Awesome+6

Partner Domains:

sz.si
parent
potniski.sz.si
sister

+3 more partners

2025-07-25T19:51:16.413Z
A

anolisgroup

anolisgroup.si

46
TechnologySloveniasmallHIGH

Anolisgroup is a Slovenian-based creative and technology company established in 2010, specializing in visual communication, web and mobile application development, VR & AR solutions, and product design. Their portfolio showcases a variety of projects involving graphic design, programming, 3D modeling, and content preparation, targeting businesses seeking integrated digital and visual solutions. The website reflects a small-sized enterprise with a niche market position focused on creative technological services. Technically, the website employs traditional web technologies including HTML5, CSS, and JavaScript with libraries such as jQuery, Isotope, and Fancybox. The presence of older technologies like Cufon indicates some legacy components. The site is moderately optimized for performance and mobile devices but lacks advanced SEO and accessibility features. No CMS is explicitly identified, though custom CMS development is mentioned in project descriptions. From a security perspective, the website lacks HTTPS enforcement and security headers, which are critical for protecting user data and ensuring trust. There are no visible privacy or cookie policies, nor contact information for data protection or incident response, indicating gaps in compliance with GDPR and best practices. No forms or analytics scripts are detected, reducing data collection risks but also limiting user engagement tracking. Overall, the website is functional and professional in design and content but requires significant improvements in security posture, privacy compliance, and contact transparency to enhance trustworthiness and regulatory adherence. Strategic recommendations include implementing HTTPS, adding privacy and cookie policies, improving security headers, and providing clear contact information.

15
10
2
70
62
45
100
creativetechnologyvisualcommunicationwebapplicationsmobileapplications+3 more
HTML5CSSJavaScriptjQuery+4

Partner Domains:

mojatiskarna.si
partner
anolis.si
partner
2025-07-25T15:19:17.972Z
keimfarben.de favicon

Keim Farben GmbH

keimfarben.de

50
ManufacturingGermanymediumMEDIUM

Keim Farben GmbH is a well-established German manufacturer specializing in mineral-based paints and coatings for both interior and exterior building applications. With a history spanning over 140 years, the company positions itself as a leader in sustainable and high-quality mineral colors, serving architects, private customers, real estate professionals, and craftsmen. Their product portfolio includes mineral paints, thermal insulation systems, and decorative coatings, supported by certifications such as Cradle to Cradle Certified® Silver. The website reflects a mature digital presence built on TYPO3 CMS, featuring modern JavaScript libraries and a responsive design optimized for mobile devices. Privacy and cookie policies are comprehensive and GDPR compliant, with active consent management mechanisms in place. Security posture is generally strong with HTTPS and CSRF protections, though the absence of explicit security headers and a lack of published incident response or vulnerability disclosure policies present areas for improvement. The domain WHOIS data is unavailable, which slightly reduces trust but does not detract significantly from the overall legitimacy given the professional website and business consistency. Strategic recommendations include enhancing security headers, publishing security policies, and establishing a vulnerability disclosure program to further strengthen trust and compliance.

35
65
2
70
72
70
-
mineralfarbenfarbennachhaltigkeitfassadenraumklima+3 more
TYPO3 CMSJavaScriptFlickity (carousel)Choices.js+2

Partner Domains:

farbtontool.keim.com
partner
webkiosk.keim.com
partner

+1 more partners

2025-07-25T13:00:43.739Z
peaksport.si favicon

EUROCOM d.o.o.

peaksport.si

60
RetailSloveniasmallMEDIUM

Peak Sport Slovenja, operated by EUROCOM d.o.o., is a specialized e-commerce retailer focused on sportswear, bags, footwear, and accessories, including an official Slovenian Olympic collection. The company targets sports enthusiasts and general consumers within Slovenia, positioning itself as a niche regional retailer with a clear online presence and product catalog. The website demonstrates a consistent brand identity and provides clear contact information and social media engagement channels. Technically, the website employs a modern technology stack including jQuery, Bootstrap, and various UI and marketing libraries. It is hosted with a reputable registrar and uses Cloudflare DNS, ensuring reliable infrastructure. The site is mobile-optimized and provides a moderate performance experience. SEO and accessibility are basic but functional. From a security perspective, the site uses HTTPS and integrates Google reCAPTCHA for form protection, but lacks visible security headers and explicit security policies. Privacy compliance is partially addressed with cookie and terms of service pages, though a consent mechanism is not evident. No critical vulnerabilities or suspicious patterns were detected. Overall, the website is professional, trustworthy, and safe for general audiences. Strategic improvements in security headers, privacy mechanisms, and incident response disclosures would enhance its security posture and compliance maturity.

65
25
2
70
75
60
100
sportsweare-commerceretailsloveniapeaksport+1 more
jQueryBootstrapFont AwesomeFancybox+7
2025-07-25T12:54:59.509Z
organspende-info.de favicon

Bundesinstitut für Öffentliche Gesundheit (BIÖG)

organspende-info.de

65
HealthcareGermanymediumMEDIUM

The website www.organspende-info.de is an authoritative German government-affiliated portal providing comprehensive information on organ and tissue donation, transplantation, and related topics. It serves the general public with educational content, downloadable organ donor cards, podcasts, and a dedicated information hotline. The site is well-positioned as a trusted source in the healthcare and public health sector in Germany, supported by the Bundesinstitut für Öffentliche Gesundheit (BIÖG). Technically, the site is built on TYPO3 CMS with a modern tech stack including jQuery, Matomo analytics, and various UI libraries. It demonstrates good digital maturity with mobile optimization, accessibility features, and GDPR-compliant privacy and cookie policies. The use of self-hosted Matomo analytics with IP anonymization reflects a strong privacy-conscious approach. From a security perspective, the site enforces HTTPS and employs privacy-respecting analytics but lacks publicly documented security policies or incident response contacts. No critical vulnerabilities or suspicious domains were detected. WHOIS data is minimal but consistent with a government-related domain, supporting legitimacy. Overall, the website presents a low-risk profile with strong content quality and privacy compliance. Strategic improvements include publishing formal security policies, incident response information, and enhancing security headers to further strengthen the security posture.

85
40
2
60
77
70
100
organdonationhealthcarepublichealthgermanytypo3+3 more
TYPO3 CMSjQuery 3.6.1Matomo AnalyticsGLightbox+5

Partner Domains:

organspende-register.de
partner
bioeg.de
partner
2025-07-25T08:26:50.590Z
K

Kontakt Stiftung

gemeinsinn-im-sport.de

56
Non-profitGermanysmallMEDIUM

The website 'Gemeinsinn im Sport' is a German non-profit initiative promoting community spirit, inclusion, and fair play in sports, particularly swimming and para sports. It is a collaborative project involving the Kontakt Stiftung, Deutscher Schwimm-Verband e.V., and the Behinderten- und Rehabilitations-Sportverband Berlin e.V. The site serves as a platform for awareness, training programs, and media showcasing the initiative's impact and partnerships. The target audience includes athletes, coaches, volunteers, and sports organizations in Germany. The business model is focused on social impact through partnerships and educational tools rather than commercial revenue. Technically, the website is built using the Hugo static site generator with modern frontend libraries such as Bootstrap, jQuery, Flickity, and Swiper for responsive and interactive content. The site is hosted with INWX, a reputable German registrar, and shows good performance, mobile optimization, and accessibility. SEO practices are well implemented with proper meta tags and structured content. From a security perspective, the site uses HTTPS and shows no exposed sensitive data or vulnerable libraries. However, it lacks a cookie consent mechanism and explicit security or incident response policies, which are recommended for full compliance with EU regulations. The WHOIS data is transparent and consistent with the website's German non-profit sports context, indicating high legitimacy. Overall, the website is professional, trustworthy, and well-aligned with its mission. Strategic recommendations include implementing cookie consent, adding security policies, and enhancing security headers to improve compliance and security posture.

15
28
2
60
95
60
100
sportscommunityinclusionnon-profitswimming+1 more
Hugo static site generatorBootstrapjQueryFlickity+7

Partner Domains:

sportiv.de
partner
uni-konstanz.de
partner

+1 more partners

2025-07-25T07:14:34.453Z
slowenien-hessen.de favicon

Honorarkonsulat von Slowenien

slowenien-hessen.de

51
GovernmentGermanysmallMEDIUM

The website represents the Honorary Consulate of Slovenia for the German states of Hessen, Rheinland-Pfalz, and Saarland. It serves as an official governmental representation providing consular services, cultural information, and support to residents and businesses in these regions. The site is professionally designed with consistent branding and clear navigation, targeting German-speaking users interested in Slovenian affairs. The business model is governmental and service-oriented, focusing on diplomatic and cultural liaison functions. Technically, the website is built on TYPO3 CMS with modern frontend technologies including Bootstrap and jQuery. It is mobile optimized and performs moderately well, with good SEO and accessibility basics. The site uses HTTPS and implements a cookie consent mechanism compliant with GDPR, but lacks advanced security headers and explicit incident response or vulnerability disclosure policies. From a security perspective, the site shows good practices such as encrypted connections and no visible vulnerabilities or exposed sensitive data. However, it could improve by adding security headers, publishing security policies, and enhancing accessibility. No tracking or advertising scripts are present, indicating a privacy-conscious approach. Overall, the website is trustworthy and professional, suitable for its governmental consular role. The domain WHOIS data is limited but consistent with the official nature of the site. The risk level is low, with recommendations focused on enhancing security posture and compliance transparency.

30
83
2
65
62
70
20
honorarkonsulatslowenienhessenrheinland-pfalzsaarland+3 more
TYPO3 CMSjQuery 3.6.0Bootstrap 5FontAwesome Pro 6.0.0+3
2025-07-25T07:12:04.066Z
engineersindia.com favicon

Engineers India Limited

engineersindia.com

59
EnergyIndialargeMEDIUM

Engineers India Limited (EIL) is a well-established engineering consultancy and EPC company based in India, with a global presence and a history dating back to 1965. The company offers a comprehensive range of services including design, engineering, procurement, construction, and project management primarily in the energy sector. Their clientele includes Fortune 500 companies, and they maintain significant footprints in regions such as MENA and Abu Dhabi. The website reflects a professional corporate identity with detailed information on their businesses, projects, services, sustainability initiatives, and corporate governance. Technically, the website employs modern web technologies including Bootstrap, jQuery, Font Awesome, and various animation and UI libraries. Google Tag Manager is used for analytics and tracking. The site is mobile-optimized and accessible, with good SEO practices evident from meta tags and structured data. However, some security best practices such as DNSSEC and security headers are not implemented, and there is no visible cookie consent mechanism, which may impact privacy compliance. From a security perspective, the site uses HTTPS and has domain transfer protections in place, indicating a reasonable security posture. No critical vulnerabilities or exposed sensitive data were detected. The absence of explicit security policies or incident response contacts suggests room for improvement in transparency and readiness. Overall, the site is trustworthy and professional, with minor gaps in privacy and security practices. The overall risk assessment is low, with recommendations to enhance security headers, enable DNSSEC, implement cookie consent for GDPR compliance, and provide clearer contact information for security and incident response. These improvements would strengthen the site's security posture and compliance, further enhancing trust with users and stakeholders.

70
53
2
40
77
50
100
engineeringconsultancyenergyepcprojectmanagement+3 more
Bootstrap 5.2.3jQuery 3.6.1Font Awesome 6.3.0AOS (Animate On Scroll)+7
2025-07-25T06:09:17.482Z
nationalcrimeagency.gov.uk favicon

National Crime Agency

nationalcrimeagency.gov.uk

63
GovernmentUnited KingdomlargeMEDIUM

The National Crime Agency website serves as the official digital presence of the UK's primary law enforcement agency focused on combating serious and organised crime. The site provides authoritative information on the agency's mission, operations, and public safety initiatives, targeting the UK public, law enforcement partners, and victims. It maintains a strong market position as a government entity with comprehensive services including intelligence gathering, investigations, and specialist law enforcement capabilities. The website content is professionally curated, with clear navigation and consistent branding that reinforces trust and credibility. Technically, the site is built on Joomla CMS with modern front-end frameworks such as Bootstrap and jQuery, ensuring a responsive and accessible user experience. The use of Google Tag Manager indicates a mature approach to analytics and marketing. Performance is moderate with good mobile optimization and SEO practices. Security-wise, the site enforces HTTPS, uses CSRF tokens in forms, and avoids exposing sensitive data. However, it lacks explicit security policies, vulnerability disclosure mechanisms, and some recommended security headers, which could be improved to enhance its security posture. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations including GDPR. The domain's WHOIS data confirms its legitimacy as a long-standing UK government domain. There are no indications of adult or unsafe content, making it suitable for a general audience. Strategic recommendations include publishing a dedicated security policy, implementing vulnerability disclosure, and enhancing security headers to further strengthen the site's security and compliance. This assessment concludes that the National Crime Agency website is a reliable, secure, and authoritative source of information for its stakeholders, with minor areas for technical and security improvements to maintain its high standards.

15
73
17
85
72
55
100
lawenforcementcrimepreventionukgovernmentseriousorganisedcrimepublicsafety
Joomla CMSjQueryBootstrap 5.3.3Google Tag Manager+1

Partner Domains:

sarsreporting.nationalcrimeagency.gov.uk
service
www.ceop.police.uk
partner
2025-07-25T02:40:33.983Z
skispringen-damen.de favicon

Skiclub Oberstdorf Veranstaltungs GmbH

skispringen-damen.de

53
OtherGermanysmallMEDIUM

The website www.skispringen-damen.de serves as the official platform for promoting the FIS Women's Ski Jumping World Cup events, specifically the Two Nights Tour held in Oberstdorf, Germany. The site targets sports fans and attendees interested in women's ski jumping competitions, providing event information, ticket sales, media resources, and sponsorship details. The business operates as a small event organizer with a clear focus on winter sports and regional partnerships. Technically, the website is built on the Tramino CMS platform and utilizes modern JavaScript libraries such as jQuery, Slick Carousel, and RequireJS. Hosting appears to leverage AWS S3 and tramino.net infrastructure, ensuring reliable content delivery. The site demonstrates good mobile optimization, SEO practices, and basic accessibility features, delivering a positive user experience. From a security perspective, the site enforces HTTPS and implements a comprehensive cookie consent mechanism aligned with GDPR requirements. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit security policies, incident response contacts, or vulnerability disclosure mechanisms suggests room for improvement in formal security governance. Overall, the website presents a professional and trustworthy digital presence for the ski jumping event, with strong compliance and technical foundations. Strategic enhancements in security transparency and accessibility could further strengthen its posture.

30
28
2
55
62
65
100
sportsskijumpingeventwomenssportswintersports+3 more
jQuerySlick CarouselRequireJSFancybox+2
2025-07-24T20:53:19.901Z
S

Skiclub Oberstdorf Veranstaltungs GmbH

nordic-oberstdorf.de

53
OtherGermanysmallMEDIUM

The website www.nordic-oberstdorf.de serves as the official platform for the FIS Nordic Combined World Cup event held in Oberstdorf, Germany. It provides comprehensive information about the event, including news, results, media coverage, and service details for participants and fans. The site is positioned as a regional event organizer with strong ties to international sports federations and local partners. The business model focuses on event promotion, sponsorship management, and media dissemination targeting winter sports enthusiasts and stakeholders. Technically, the website is built on the Tramino CMS platform and employs modern JavaScript libraries such as jQuery, RequireJS, and Slick Carousel for dynamic content and user experience enhancements. It uses HTTPS with a valid SSL configuration and integrates Google Analytics with a consent-based mechanism, reflecting a mature digital infrastructure. Mobile optimization and SEO practices are well implemented, though accessibility features could be improved. From a security perspective, the site enforces HTTPS and provides a detailed cookie consent mechanism compliant with GDPR. However, it lacks explicit security headers and dedicated security or incident response policies. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is limited but does not raise suspicion, supporting the site's legitimacy. Overall, the website is professional, trustworthy, and well-suited for its purpose. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility to further strengthen its security posture and user inclusivity.

30
28
2
55
62
65
100
sportseventwintersportsnordiccombinedskiing+3 more
jQueryjQuery UIRequireJSSlick Carousel+3
2025-07-24T20:53:14.880Z
tour-de-ski.info favicon

Skisport- und Veranstaltungs GmbH

tour-de-ski.info

56
MediaGermanysmallMEDIUM

The website tour-de-ski.info serves as the official digital presence for the Coop FIS Tour de Ski event held in Oberstdorf, Germany. It provides comprehensive information about the event schedule, results, media coverage, sponsors, and local organizers. The business behind the site is Skisport- und Veranstaltungs GmbH, a German company established in 2006, which aligns with the domain age and content. The site targets sports enthusiasts, media professionals, sponsors, and the local community interested in Nordic skiing competitions. Technically, the website is built on the Tramino CMS platform and utilizes modern JavaScript libraries such as jQuery, Slick Carousel, and RequireJS. It is hosted on infrastructure likely provided by Speedkom, with content delivered via CDN services. The site is mobile-optimized and includes SEO best practices, though accessibility features are basic. Performance is moderate, with room for improvement in security headers and accessibility. From a security perspective, the site enforces HTTPS and implements a detailed cookie consent mechanism compliant with GDPR. However, it lacks visible security headers and does not publish explicit security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the content. The WHOIS data is consistent and transparent, supporting the legitimacy of the domain and business. Overall, the website is professional, trustworthy, and well-suited for its purpose. Strategic improvements in security headers, incident response transparency, and accessibility would enhance its posture. The site demonstrates good privacy compliance and business credibility, making it a reliable source for event information.

30
53
2
55
62
65
100
sportseventskiingtour-de-skifis+2 more
jQueryjQuery UISlick CarouselFancyBox+2

Partner Domains:

coop.no
partner
www.gruyere.com
partner

+3 more partners

2025-07-24T20:53:09.868Z
hlnug.de favicon

Hessisches Landesamt für Naturschutz, Umwelt und Geologie

hlnug.de

58
GovernmentGermanymediumMEDIUM

The Hessisches Landesamt für Naturschutz, Umwelt und Geologie (HLNUG) is a government agency focused on environmental protection, nature conservation, and geology in the German state of Hessen. The website serves as an information hub offering environmental data, educational programs, publications, and tools to support citizens, municipalities, and professionals. It holds a strong market position as an authoritative source for environmental matters in Hessen. Technically, the website is built on TYPO3 CMS, leveraging modern JavaScript libraries such as jQuery and Bootstrap for responsive design and user experience. It integrates Matomo analytics configured with privacy-respecting settings and provides a consent mechanism for social media data sharing. The site is hosted likely on government infrastructure, indicated by the domain's nameservers. From a security perspective, the site enforces HTTPS and employs privacy-conscious analytics and social media consent modals. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not visibly implemented, and no incident response or vulnerability disclosure information is published. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with GDPR. It is well-structured, accessible, and serves its public service mission effectively. Strategic improvements in security headers and transparency around security policies could further enhance its security posture.

80
28
2
40
67
60
100
governmentenvironmentnaturschutzumweltgeologie+4 more
TYPO3 CMSjQuery 3.7.1BootstrapMatomo Analytics+1
2025-07-24T19:38:50.630Z
uni-stuttgart.de favicon

Universität Stuttgart

uni-stuttgart.de

62
EducationGermanylargeMEDIUM

The Universität Stuttgart is a leading technical university in Germany with a strong international reputation. The website reflects its mission to integrate engineering, natural sciences, humanities, and social sciences through top-tier research and education. The site targets prospective students, current students, researchers, entrepreneurs, employees, alumni, and media professionals, offering comprehensive information on study programs, research initiatives, and technology transfer. The university operates a large-scale digital presence with consistent branding and professional content quality. Technically, the website employs modern JavaScript libraries such as Bootstrap, jQuery UI, Fancybox, and Tippy.js, alongside Matomo analytics configured to disable cookies, indicating a privacy-conscious approach. The site is mobile-optimized, accessible, and SEO-friendly, with a custom CMS backend. Performance is moderate, with asynchronous script loading enhancing user experience. Security posture is solid with HTTPS enforced and standard security headers likely in place, though explicit Content-Security-Policy headers and incident response contacts are absent. Privacy compliance is good, with a comprehensive privacy policy and GDPR adherence, but lacks a visible cookie consent mechanism. No vulnerabilities or exposed sensitive data were detected. Overall, the website is trustworthy, professional, and well-maintained, supporting the university's stature. Strategic improvements include implementing a cookie consent banner, publishing a security policy and incident response contacts, and enhancing security headers to further strengthen the security posture.

45
28
17
85
80
60
100
educationuniversityresearchtechnologygermany+1 more
JavaScriptjQuery UIBootstrapFancybox+3
2025-07-24T17:28:32.114Z
aimg.com favicon

AIMG, Inc. DBA Amplify Industrial Marketing + Guidance

aimg.com

60
ManufacturingUnited StatesmediumMEDIUM

Amplify Industrial Marketing + Guidance is a well-established B2B industrial marketing firm operating since 1994, specializing in digital marketing services tailored for manufacturers, suppliers, distributors, industrial integrators, healthcare, medical technology, and membership associations. The company positions itself as a trusted partner delivering measurable ROI through growth-driven design, marketing automation, content strategy, and business development consulting. Their market presence is supported by recognized partnerships with Google, HubSpot, and SharpSpring, and a portfolio of client success case studies. Technically, the website is built on WordPress with integrations of modern marketing and analytics technologies including HubSpot forms, Google Tag Manager, Facebook Pixel, Hotjar, and others. The site demonstrates good SEO, accessibility, and mobile optimization practices, providing a professional user experience. However, some security best practices such as explicit security headers are not fully implemented. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms indicating GDPR compliance. No direct security policy or incident response information is published, and the WHOIS data for the domain is missing or unavailable, which raises concerns about domain registration transparency. Despite this, the website content and business information appear legitimate and professional. Overall, the website scores well on content quality, technical implementation, and business credibility, but would benefit from improved domain registration transparency and enhanced security header implementation to strengthen trust and security posture.

15
80
2
75
42
80
100
b2bindustrialmarketingdigitalmarketingmanufacturinghealthcare+3 more
jQueryTypeIt.jsFancyboxHubSpot Forms+8
2025-07-24T17:26:26.354Z
breitachklamm.com favicon

BREITACHKLAMMVEREIN eG

breitachklamm.com

59
HospitalityGermanysmallMEDIUM

Breitachklamm is a tourism-focused organization operating the deepest rock gorge in Central Europe, located in Oberstdorf, Germany. The website provides comprehensive information about the natural attraction, including visitor information, seasonal highlights, guided tours, events, and online ticketing. The organization positions itself as a popular regional destination with a focus on nature experiences and family-friendly outdoor activities. The website is professionally designed with consistent branding and clear navigation, targeting tourists and nature enthusiasts. Technically, the website uses a modern technology stack including jQuery, RequireJS, and a proprietary CMS (Tramino). It is hosted likely on AWS S3 infrastructure, with good mobile optimization and moderate performance. The site implements cookie consent mechanisms and integrates a chatbot for visitor interaction. SEO and accessibility are adequately addressed, though some improvements are possible. From a security perspective, the site enforces HTTPS and uses cookie consent to comply with privacy regulations. However, explicit security headers are not detected, and there is no published incident response or vulnerability disclosure information. The WHOIS data for the domain is missing, which raises some concerns about domain registration transparency but does not directly impact the website's operational security. Overall, the website is a trustworthy and professional digital presence for a regional tourism entity, with room for improvement in security best practices and domain registration transparency.

30
53
2
65
62
85
100
tourismnaturehikingattractionoutdoor+2 more
jQueryjQuery UIFancyboxRequireJS+3

Partner Domains:

www.walserschanz.com
partner
www.interreg-bayaut.net
partner

+2 more partners

2025-07-24T17:25:36.042Z
orlen-arena.de favicon

Skiclub Oberstdorf Veranstaltungs GmbH

orlen-arena.de

54
HospitalityGermanymediumMEDIUM

The ORLEN Arena Oberstdorf Allgäu website represents a well-established sports and event venue specializing in ski jumping and Nordic sports tourism. The company, Skiclub Oberstdorf Veranstaltungs GmbH, offers a variety of services including arena tours, guided visits, event hosting, gastronomy, and training facilities. The site targets winter sports enthusiasts, tourists, and event organizers, positioning itself as a recognized regional hub with international relevance in winter sports. The business model revolves around facility management, event hosting, and merchandising, supported by an online booking system and fan shop. Technically, the website is built on the Tramino CMS platform, utilizing modern JavaScript libraries such as jQuery, Fancybox, and Slick Carousel. It is hosted on managed IP infrastructure with good mobile optimization and SEO practices. The site employs HTTPS with a solid SSL configuration and includes a comprehensive cookie consent mechanism aligned with GDPR requirements. Google Analytics is used for visitor tracking with appropriate consent controls. From a security perspective, the website demonstrates good practices including secure session cookies and no visible exposure of sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. The absence of advanced security headers suggests room for improvement. Overall, the security posture is solid but could be enhanced with additional measures. The overall risk assessment is low, with no critical vulnerabilities or compliance gaps detected. Strategic recommendations include implementing additional security headers, publishing a security policy and incident response contacts, auditing third-party scripts regularly, enhancing accessibility, and considering a security.txt file for vulnerability reporting. These steps will strengthen trust and security culture while maintaining compliance and operational excellence.

30
33
2
60
62
60
100
sportsskijumpingtourismeventvenuecookieconsent+3 more
jQueryjQuery UIFancyboxSlick Carousel+3
2025-07-24T17:25:15.532Z