Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 38 of 656|Showing 1851-1900 of 32765
dmslo.si favicon

Društvo za marketing Slovenije

dmslo.si

54
EducationSloveniamediumMEDIUM

Društvo za marketing Slovenije (DMS) is the largest marketing community in Slovenia, focused on connecting marketing professionals and companies to enhance marketing knowledge and expertise. The organization offers a broad range of services including educational programs, conferences, knowledge sharing platforms, and membership benefits. The website reflects a mature and well-established entity with a domain registered since 2005, consistent with its long-standing presence in the Slovenian marketing sector. The target audience primarily consists of marketing professionals and companies seeking continuous education and networking opportunities within Slovenia. Technically, the website is built on the Webflow CMS platform and leverages modern technologies such as Firebase for authentication and real-time database services, alongside popular analytics and tracking tools like Google Analytics, Facebook Pixel, and LinkedIn Insight Tag. The site is well-optimized for performance and mobile devices, with a clean, professional design and clear navigation. Privacy compliance is robust, featuring a comprehensive privacy policy and cookie consent mechanism in Slovenian, aligned with GDPR requirements. From a security perspective, the site enforces HTTPS and anonymizes IP addresses in analytics, demonstrating good privacy practices. However, explicit security headers and publicly available security policies or incident response contacts are not detected, representing areas for improvement. No critical vulnerabilities or suspicious activities were identified. Overall, the website presents a secure and trustworthy platform for its community. The overall risk assessment is low, with recommendations to enhance security headers, publish incident response information, and maintain regular audits of third-party scripts. The website's strong business credibility, technical maturity, and privacy compliance position it well within its sector, supporting its mission to foster marketing excellence in Slovenia.

30
25
2
70
57
65
100
marketingeducationcommunitysloveniaevents+2 more
FirebasejQueryGoogle AnalyticsFacebook Pixel+2

Partner Domains:

www.smk.si
partner
www.b2bkonferenca.si
partner

+2 more partners

2025-11-01T13:37:05.005Z
frick.org favicon

The Frick Collection

frick.org

67
Non-profitUnited StatesmediumMEDIUM

The Frick Collection is a well-established non-profit art museum located in New York City, specializing in Renaissance to 19th-century art. The website serves as a comprehensive digital portal offering information on exhibitions, collections, educational programs, and membership opportunities. It targets art enthusiasts, researchers, students, and donors, positioning itself as a reputable cultural institution with a strong online presence. Technically, the website is built on Drupal 10, leveraging modern front-end technologies such as Tailwind CSS and Swiper.js for responsive design and user experience. It integrates Google Analytics and Tag Manager for visitor tracking and marketing insights. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and includes standard security headers, indicating a solid baseline security posture. However, the absence of a publicly available security policy, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement in transparency and readiness. The WHOIS data is unavailable or malformed, which slightly impacts domain trust assessment but does not detract significantly from the overall credibility given the professional website content. Overall, the Frick Collection website is a professional, secure, and user-friendly platform that effectively supports the institution's mission and audience engagement. Strategic enhancements in security transparency and domain registration clarity would further strengthen trust and compliance.

55
70
17
75
62
75
100
museumartcultureeducationnon-profit+2 more
Drupal 10Tailwind CSSGoogle Tag ManagerGoogle Analytics+3

Partner Domains:

collections.frick.org
partner
shop.frick.org
partner
2025-11-01T13:35:54.827Z
spl.org favicon

The Seattle Public Library

spl.org

63
GovernmentUnited StateslargeMEDIUM

The Seattle Public Library operates as a large, government-affiliated public library system serving the Seattle community. It provides free access to a wide range of books, media, online resources, and community programs. The website reflects a professional and comprehensive digital presence with clear navigation, rich content, and multiple service offerings tailored to a broad audience including families, students, and adults. The library's market position is strong as a key public service institution in the region. Technically, the website employs modern web technologies such as Bootstrap, jQuery, Typekit fonts, and integrates Google Analytics and Google Translate for enhanced user experience and accessibility. The site is mobile-optimized and accessible, with good SEO practices evident in metadata and structured navigation. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS and secure forms but lacks some advanced security headers and a cookie consent mechanism, which are recommended for enhanced protection and compliance. The absence of WHOIS data limits domain trust analysis, but the website's professional appearance and clear contact information mitigate concerns. No vulnerabilities or exposed sensitive data were detected. Overall, the site is trustworthy, safe, and well-maintained, serving its public service mission effectively. Strategic improvements in security headers, privacy compliance, and transparency around incident response would further strengthen its posture.

15
53
2
98
77
80
100
libraryeducationpublicserviceseattlebooks+3 more
jQueryBootstrap 4.3.1Typekit fontsGoogle Analytics+1
2025-11-01T13:35:34.766Z
sirma.com favicon

Sirma

sirma.com

74
TechnologyBulgarialargeMEDIUM

Sirma is a well-established technology company specializing in AI, data, cloud migration, tailored software development, managed IT services, business and IT consulting, cyber security, and system integration. With over 33 years of experience and a presence in more than 170 countries, Sirma serves a broad enterprise audience seeking advanced technology solutions. The company maintains multiple global offices and partners with leading technology providers such as Apple, IBM, Oracle, Microsoft, and VMware. Technically, the website employs modern web technologies including Astro framework, JavaScript libraries like jQuery, Tiny Slider, and Headroom.js, and integrates advanced analytics and tracking tools such as Google Analytics, Amplitude, Facebook Pixel, and LinkedIn Insight Tag. The site is mobile-optimized with good SEO and accessibility features, hosted via GoDaddy with HTTPS enabled. From a security perspective, the site uses HTTPS and Google reCAPTCHA v3 for form protection but lacks DNSSEC and security headers, and does not publish a security policy or incident response contacts. Privacy compliance is partially addressed with a comprehensive privacy policy but lacks a cookie consent mechanism. No terms of service page was found. Overall, the website is professional, trustworthy, and content-rich, with moderate security posture and privacy compliance. Strategic improvements in DNS security, cookie consent, and security transparency would enhance trust and compliance.

90
68
2
85
82
85
100
aidatatechnologycloudcybersecurity+3 more
JavaScriptjQueryTiny SliderHeadroom.js+5

Partner Domains:

apple.com
partner
ibm.com
partner

+3 more partners

2025-11-01T13:30:24.362Z
stroka.si favicon

Stroka produkt d.o.o.

stroka.si

55
TechnologySloveniamediumMEDIUM

Stroka produkt d.o.o., operating under the brand Skupina stroka.si, is a well-established Slovenian IT service provider founded in 2005. The company offers a broad range of IT solutions including infrastructure management, business software integration (notably PANTHEON), digital workplace services leveraging Office 365, business analytics, custom software development, and digital transformation consulting. Their market position is strengthened by a Microsoft Gold Partner certification and multiple industry awards, reflecting a strong reputation in the Slovenian technology sector. The website content and design reflect a professional and mature digital presence targeting business clients seeking comprehensive IT solutions. Technically, the website is built on the DotNetNuke CMS platform, utilizing modern JavaScript libraries and frameworks, with good mobile optimization and SEO practices. Security posture is solid with HTTPS enforced, reCAPTCHA on forms, and cookie consent mechanisms, though some security headers could be improved. WHOIS data confirms domain legitimacy and consistency with the business claims. Overall, the company demonstrates a mature digital infrastructure and credible business operations.

25
10
7
85
57
70
100
itservicesbusinesssoftwaredigitaltransformationsloveniamicrosoftpartner+1 more
DotNetNuke CMSjQueryjQuery UIBootstrap+5

Partner Domains:

datalab.si
partner
nopcommerce.com
partner

+1 more partners

2025-11-01T13:28:38.760Z
sanela.cz favicon

SANELA spol. s r.o.

sanela.cz

53
ManufacturingCzech RepublicmediumMEDIUM

SANELA spol. s r.o. is a Czech-based company specializing in sanitary technology products, including stainless steel sanitary equipment, RFID payment systems, and smart sanitary water and energy management solutions. The company targets business and institutional customers requiring advanced sanitary technology solutions. The website reflects a medium-sized manufacturing business with a consistent brand presence and a professional digital footprint. Technically, the website employs modern JavaScript libraries such as jQuery and Slick Carousel, integrates Google Tag Manager and Analytics for tracking, and uses a cookie consent mechanism compliant with GDPR. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. Security-wise, the site uses HTTPS and includes reCAPTCHA for forms, but lacks explicit security headers and incident response information. The absence of WHOIS data limits domain trust assessment, but the website content and business information appear legitimate and professional. Overall, the site scores well on content quality, technical implementation, security posture, privacy compliance, and business credibility.

55
80
2
75
52
65
20
sanitarytechnologyrfidsmartsanitarysystemmanufacturingczechrepublic+3 more
jQuerySlick CarouselGoogle Tag ManagerGoogle Analytics+2

Partner Domains:

www.smart-sanitary.cz
partner
www.mediaenergy.cz
partner
2025-11-01T13:21:01.368Z
kozak-svitavy.cz favicon

Kozák Svitavy, s.r.o.

kozak-svitavy.cz

52
RetailCzech RepublicsmallMEDIUM

Kozák Svitavy, s.r.o. operates a wholesale e-commerce platform specializing in candles, home and garden accessories, and related decorative products. The website targets wholesale customers primarily in the Czech Republic, offering a broad product range including seasonal and floristry items. The business model focuses on B2B sales through an online portal, positioning itself as a regional supplier with a clear product focus. The website content is professionally presented in Czech, with clear navigation and relevant business information, including contact details and ethical reporting channels. Technically, the site is built on ASP.NET WebForms with Kentico CMS, utilizing common JavaScript libraries such as jQuery, bxSlider, and fancyBox. Google Analytics and Google Tag Manager are employed for user tracking and analytics. The site shows moderate performance and good mobile optimization but lacks some advanced accessibility features. Security measures include HTTPS and CSRF tokens, but there is an absence of security headers and cookie consent mechanisms, indicating room for improvement in security posture and privacy compliance. From a security perspective, no critical vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS data for the domain raises concerns about domain legitimacy and trustworthiness. The website provides clear contact information and an ethical whistleblowing email, which are positive trust signals. Overall, the security posture is moderate but could be enhanced by implementing security headers, cookie consent, and publishing a vulnerability disclosure policy. The overall risk assessment suggests the website is functional and legitimate for its business purpose but would benefit from improved transparency in domain registration and enhanced privacy and security practices. Strategic recommendations include verifying domain registration details, implementing GDPR-compliant cookie consent, adding security headers, and establishing a formal security policy to strengthen trust and compliance.

35
10
17
95
82
85
20
wholesalee-commercecandleshomeaccessoriesgarden+2 more
jQueryjQuery UIbxSliderfancyBox+3
2025-11-01T13:20:46.326Z
theisn.org favicon

International Society of Nephrology

theisn.org

57
HealthcareN/alargeMEDIUM

The International Society of Nephrology (ISN) is a globally recognized non-profit professional association dedicated to advancing kidney health worldwide through education, research, advocacy, and collaboration. The organization targets healthcare professionals, researchers, and nephrologists, providing key services such as training, conferences, publications, and global health initiatives. The website reflects a mature and professional digital presence consistent with a large healthcare non-profit entity. Technically, the website is built on WordPress with a modern technology stack including popular plugins and marketing tools such as Google Analytics, Facebook Pixel, and Cookiebot for privacy compliance. The site is mobile-optimized, SEO-friendly, and uses structured data to enhance search visibility. Performance is moderate with good accessibility features. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms. While explicit security headers are not fully evident, no critical vulnerabilities or exposed sensitive data were detected. The WHOIS data is privacy protected, which is typical for organizations of this nature, and does not raise immediate concerns. Overall, the security posture is solid but could be improved by adding explicit security headers and publishing a security policy. The overall risk assessment is low, with the website demonstrating strong business credibility, good privacy compliance, and a trustworthy online presence. Strategic recommendations include enhancing security headers, maintaining up-to-date software, and formalizing incident response contacts to further strengthen security and trust.

20
83
17
70
62
85
40
isnnephrologykidneyhealthmedicalassociationglobalhealth+3 more
WordPressPHPjQueryGoogle Analytics+6
2025-11-01T13:17:25.591Z
kuhuviia.ee favicon

Zone Media OÜ

kuhuviia.ee

42
OtherEstoniasmallHIGH

Kuhuviia.ee is a localized Estonian platform focused on facilitating waste sorting and repair services by providing an interactive map and search functionality for users to find waste disposal points and repair locations. The service is supported by Zone Media OÜ, a local Estonian company, and has been operational since 2014. The platform integrates Google Maps API for geolocation and mapping, and offers user engagement features such as adding new repair points and saving favorites. The website targets general users interested in environmental sustainability and waste management within Estonia. Technically, the website employs a modern JavaScript stack including jQuery, jQuery UI, and Google Maps API, with asynchronous loading of data from a dedicated API. The site is mobile-optimized and provides a good user experience with clear navigation and search autocomplete. However, some minor server-side errors are exposed in the HTML source, and no advanced security headers are implemented, indicating room for improvement in security hardening. From a security perspective, the site uses HTTPS but lacks DNSSEC and security headers, and exposes a PHP warning which could leak information. Privacy compliance is basic, with a privacy policy and terms of service present but no cookie consent mechanism detected. No direct contact information or incident response contacts are found, which may impact trust and compliance. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk assessment suggests the site is legitimate and functional but would benefit from improvements in security and privacy compliance to enhance trustworthiness and regulatory adherence. Strategic recommendations include fixing server-side errors, enabling DNSSEC, implementing security headers, and adding cookie consent mechanisms to align with GDPR requirements.

20
10
25
70
62
60
20
wastemanagementrecyclingrepairservicesestoniainteractivemap+1 more
Google Maps APIjQueryjQuery UIOverlappingMarkerSpiderfier+1
2025-11-01T13:15:34.245Z
nefrol.cz favicon

Česká nefrologická společnost, o.s.

nefrol.cz

48
HealthcareCzech RepublicsmallHIGH

The Česká nefrologická společnost (Czech Society of Nephrology) is a non-profit professional organization dedicated to nephrology, encompassing medical professionals and researchers focused on kidney diseases. The website serves as an information hub for both professionals and patients, providing news, event calendars, and partner collaborations. The organization holds a reputable position within the Czech healthcare sector, supported by partnerships with recognized international nephrology bodies. Technically, the website employs modern analytics tools such as Google Analytics and Fathom, integrates Google Maps API, and demonstrates good mobile responsiveness and accessibility features. However, it lacks visible privacy and cookie policies, which are critical for GDPR compliance and user trust. Security posture is generally good with HTTPS enforced, but the absence of security headers and vulnerability disclosures suggests room for improvement. WHOIS data is unavailable, likely due to privacy protection, but the website's professional presentation and partner affiliations support its legitimacy. Overall, the site is well-maintained and trustworthy but should enhance privacy compliance and security transparency.

60
10
2
75
42
75
40
healthcarenephrologymedicalsocietynon-profitczechrepublic
Google AnalyticsFathom AnalyticsGoogle Tag ManagerjQuery (implied by usage of popover)+1

Partner Domains:

era-online.org
partner
theisn.org
partner

+2 more partners

2025-11-01T12:57:18.571Z
savacommission.org favicon

International Sava River Basin Commission

savacommission.org

47
GovernmentCroatiasmallHIGH

The International Sava River Basin Commission operates as an intergovernmental organization dedicated to the sustainable management and development of the Sava River Basin. It provides a platform for cooperation among basin countries focusing on water management, navigation, flood protection, sediment management, and environmental preservation. The website reflects a professional and authoritative presence with comprehensive content and official documentation supporting its mandate. Technically, the website employs a modern technology stack including jQuery, Bootstrap, and Slick Carousel, with integration of Google Analytics and Tag Manager for user tracking. The site is mobile optimized and exhibits good performance and SEO practices. However, there is room for improvement in accessibility and security headers. From a security perspective, the site uses HTTPS and secure login forms but lacks important security headers and published security policies such as privacy, cookie, and incident response information. The absence of WHOIS data reduces domain trust verification, though the website content and contact details support legitimacy. Overall, the security posture is moderate with recommendations to enhance compliance and transparency. The overall risk assessment is low to moderate, with strategic recommendations focusing on publishing privacy and cookie policies, implementing security headers, adding vulnerability disclosure mechanisms, and improving WHOIS transparency to strengthen trust and compliance.

30
35
10
70
67
70
20
governmentenvironmentwatermanagementintergovernmentalriverbasin+1 more
jQuery 3.6.0jQuery UIBootstrap CSS and JSSlick Carousel+3
2025-11-01T12:56:12.823Z
tschudigroup.com favicon

Tschudi Shipping Company AS

tschudigroup.com

68
TransportationNorwaylargeMEDIUM

Tschudi Shipping Company AS is a well-established, family-owned Norwegian maritime and logistics group with a history dating back to 1883. The company offers a broad range of integrated services including shipping, ship management, transshipment, energy advisory, ocean industries support, offshore wind support, logistics, and financial services. With a strong Nordic and European presence and offices in 12 countries, Tschudi Group targets businesses requiring comprehensive maritime and logistics solutions. The website reflects a professional and consistent brand image, emphasizing their expertise and global reach. Technically, the website is built on the Webflow platform, utilizing modern web technologies such as jQuery, Google Analytics, and Google Tag Manager. The site is well-optimized for performance, mobile responsiveness, and accessibility, with clear navigation and rich content. Privacy and cookie policies are present with consent mechanisms, indicating good privacy compliance. However, explicit security headers are missing, and no public security policy or incident response information is available. From a security perspective, the site enforces HTTPS and anonymizes IPs in analytics, but the absence of WHOIS data for the domain raises concerns about domain registration legitimacy. No vulnerabilities or exposed sensitive data were detected, but improvements in security headers and transparency about security practices are recommended. Overall, the site demonstrates a solid security posture with room for enhancement. The overall risk assessment is moderate with a legitimacy score impacted by missing WHOIS data. Strategic recommendations include verifying domain registration, enhancing security headers, publishing security policies, and implementing vulnerability disclosure mechanisms to strengthen trust and compliance.

60
68
2
85
72
80
100
shippinglogisticsmaritimeenergyarctic+3 more
Webflow CMSjQuery 3.5.1Google AnalyticsGoogle Tag Manager+1

Partner Domains:

tschudilogistics.com
subsidiary
tschudienergy.com
subsidiary

+1 more partners

2025-11-01T12:55:37.728Z
kerstengroup.com favicon

Kersten Group

kerstengroup.com

62
ManufacturingN/amediumMEDIUM

Kersten Group is a global leader specializing in the production of custom curved components and constructions in steel and aluminium. Their website highlights their expertise in bending and processing metal tubes, sections, and plates, serving diverse industries such as offshore, energy, mobility, machinery, architecture, medical, and industrial equipment. The company positions itself as an innovator focused on creating what seems impossible by combining technology, skill, and partnerships to deliver strength, elegance, efficiency, and sustainability in their products. Technically, the website is built on Syveon CMS 4.2.0 and employs modern web technologies including Google Analytics, Google Tag Manager, Leadinfo tracking, and Vimeo for video content. The site is well-optimized for mobile devices, has good SEO practices, and provides a professional user experience with clear navigation and comprehensive content. Cookie consent mechanisms and a detailed privacy policy indicate attention to privacy compliance. From a security perspective, the site uses HTTPS and has implemented cookie consent, but lacks explicit security headers and a published security policy or incident response contact. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data for the domain is missing or unavailable, which raises some concerns about domain registration transparency, though the website content and social media presence support its legitimacy. Overall, the website demonstrates a strong digital presence and professional business operation with moderate security posture. Strategic recommendations include enhancing security headers, publishing a security policy or incident response contact, and improving domain registration transparency to strengthen trust and compliance.

70
68
2
50
52
75
100
manufacturingsteelaluminiumcustomcomponentsengineering+4 more
Google AnalyticsGoogle Tag ManagerLeadinfo trackingVimeo player+2
2025-11-01T12:53:57.157Z
whk-online.de favicon

Wir helfen Kindern e.V.

whk-online.de

64
Non-profitGermanysmallMEDIUM

Wir helfen Kindern e.V. is a German non-profit organization dedicated to supporting disadvantaged children through various charitable projects focusing on child cancer aid, abuse prevention, poverty alleviation, education, and integration. Established in 1998, the organization has a strong regional presence and a history of supporting over 100 projects with more than one million euros in donations. The website serves as an information and donation platform, targeting donors, volunteers, and supporters interested in child welfare. Technically, the website is built on WordPress using modern plugins such as Yoast SEO, Slider Revolution, and Borlabs Cookie for GDPR-compliant cookie management. It integrates Google Analytics and Google Tag Manager for analytics and marketing purposes. The site is mobile-optimized with a moderate performance profile and good SEO practices. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms but lacks explicit security headers and a dedicated security policy or incident response page. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is consistent with the website's claims, showing a long-standing domain registration appropriate for the organization's history. Overall, the website is professional, trustworthy, and compliant with privacy regulations, making it a reliable platform for its charitable mission.

55
68
17
70
62
60
100
non-profitcharitychildwelfaredonationgerman+3 more
WordPressPHPjQuerySlider Revolution+6
2025-11-01T12:33:46.375Z
ciobjobs.com favicon

CIOB Jobs

ciobjobs.com

65
Real EstateUnited KingdommediumMEDIUM

CIOB Jobs is a professionally maintained online job board and career resource platform affiliated with the Chartered Institute of Building. It serves the construction and building industry by providing job listings, career advice, training courses, and CPD resources. The website targets construction professionals and recruiters, positioning itself as an authoritative niche platform with a medium-sized operational scale and a founding date of 2009. The business model revolves around job advertising and career support services within the UK and global construction sectors. Technically, the site is built on WordPress with WooCommerce and uses modern tracking and analytics tools such as Google Analytics, Hotjar, and Google Tag Manager. Hosting and DNS are managed via Cloudflare, ensuring reliable infrastructure and domain security. The site demonstrates good SEO, mobile optimization, and accessibility standards. Security posture is solid with HTTPS and domain transfer protections, though improvements are recommended in DNSSEC and security headers. Privacy compliance is partially met with a comprehensive privacy policy but lacks a cookie consent mechanism. Overall, CIOB Jobs presents a trustworthy and professional digital presence with room for enhanced security and privacy practices.

70
58
2
75
57
75
100
jobboardconstructioncareerciobbuilding+3 more
WordPressWooCommerceFacetWPjQuery+4

Partner Domains:

constructionmanagement.co.uk
partner
ciobacademy.org
partner

+2 more partners

2025-11-01T12:31:45.766Z
nationalestaalprijs.nl favicon

Nationale staalprijs

nationalestaalprijs.nl

46
ManufacturingNetherlandssmallHIGH

Nationale staalprijs is a Dutch organization dedicated to promoting and awarding excellence in steel construction projects. The website serves as a platform to showcase nominations, winners, and project submissions related to steel construction within the Netherlands. It targets professionals and companies in the steel construction industry, providing information and recognition to encourage innovation and quality in this sector. The business model appears to be non-profit or industry promotional in nature, focusing on national recognition rather than commercial sales. Technically, the website is built on Drupal 10 CMS and integrates modern web technologies including Google Tag Manager, Google Analytics, YouTube and Vimeo APIs, and Google reCAPTCHA for form security. The site is mobile optimized with good navigation and SEO practices, although some accessibility features could be improved. Performance is moderate with asynchronous loading of scripts. From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA on user registration and login forms to mitigate automated abuse. However, no explicit security headers were detected in the provided content, and there is no published security policy or incident response information. No vulnerabilities or exposed sensitive data were found in the analysis. Privacy compliance is limited as no privacy or cookie policies were found on the homepage content, which could be improved to meet GDPR standards. Overall, the website is professional, trustworthy, and well-targeted to its audience. The main risks relate to privacy compliance and security policy transparency. Strategic recommendations include publishing privacy and cookie policies, implementing security headers, and providing vulnerability disclosure information to enhance trust and compliance.

60
10
2
85
72
60
-
steelconstructionawardnetherlandsdrupal+1 more
Drupal 10Google Tag ManagerGoogle AnalyticsYouTube iframe API+2
2025-11-01T12:30:43.442Z
havc.hr favicon

Hrvatski audiovizualni centar

havc.hr

45
MediaCroatiamediumHIGH

The Hrvatski audiovizualni centar (HAVC) is a Croatian public institution dedicated to supporting and promoting the audiovisual sector, including film production and cultural initiatives. The website serves as an authoritative portal providing news, event calendars, film catalogs, and official publications relevant to the Croatian and international film community. It targets industry professionals, cultural stakeholders, and the general public interested in audiovisual culture. The business model is primarily public funding and cultural promotion, positioning HAVC as a key national player in the media sector. Technically, the website employs a modern JavaScript-based frontend with libraries such as jQuery, Nivo Slider, and Google Fonts, alongside integrations with Google Maps API, Facebook Pixel, and Google Analytics for tracking and user engagement. The site is mobile-optimized and accessible, with features to adjust contrast and font size, enhancing usability. Hosting and domain registration are consistent with a Croatian academic network registrar, indicating a stable and legitimate infrastructure. From a security perspective, the site uses HTTPS and includes tracking scripts responsibly. However, it lacks visible security headers and does not publish a security policy or incident response contacts, which are areas for improvement. Privacy compliance is partial; while a cookie banner is present, it lacks explicit consent mechanisms, and no privacy policy or terms of service are directly linked or found on the homepage. The absence of vulnerability disclosure mechanisms also suggests room for maturity in security practices. Overall, HAVC's website is professional, content-rich, and trustworthy, with a strong business credibility score. The main risks relate to privacy compliance and security best practices, which if addressed, would enhance user trust and regulatory adherence. Strategic recommendations include publishing comprehensive privacy and security policies, implementing security headers, and improving cookie consent mechanisms.

20
10
17
70
62
80
20
audiovisualfilmcroatiaculturepublicinstitution+4 more
jQueryNivo SliderjQuery UIChosen jQuery plugin+6

Partner Domains:

mediadesk.hr
partner
filmingincroatia.hr
partner

+1 more partners

2025-11-01T12:30:08.327Z
vocal.media favicon

Vocal

vocal.media

60
MediaN/amediumMEDIUM

Vocal is a digital media platform designed to support, discover, and reward content creators by providing tools for story creation, audience building, and monetization through reads, tips, and challenges. The platform targets creative individuals and readers interested in storytelling and community engagement. It holds a niche position in the media industry focusing on creator empowerment and safe content moderation without intrusive advertising. Technically, Vocal employs a modern web stack including React and Next.js frameworks, supported by a variety of third-party analytics and advertising services such as Google Analytics, Heap Analytics, Facebook Pixel, and TikTok Pixel. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices, though some accessibility features could be enhanced. From a security perspective, the website enforces HTTPS with strong SSL configuration and implements multiple security headers, reflecting a mature security posture. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure mechanisms, which are recommended for further strengthening trust and compliance. Overall, Vocal presents a professional and trustworthy platform with extensive content and community features. The absence of direct contact information and privacy-protected WHOIS data is typical for media platforms and does not detract significantly from its credibility. Strategic improvements in transparency and security communication would enhance its risk profile and user trust.

15
53
17
75
57
80
100
mediacontentcreationstorytellingcreativewritingcommunity+3 more
ReactNext.jsGoogle AnalyticsHeap Analytics+7
2025-11-01T12:28:52.577Z