Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 4 of 19|Showing 151-200 of 904
visiterlyon.com favicon

Office du Tourisme et des Congrès de la métropole de Lyon

visiterlyon.com

69
HospitalityFrancelargeMEDIUM

The website www.visiterlyon.com serves as the official tourism portal for Lyon and its metropolitan area, operated by the Office du Tourisme et des Congrès de la métropole de Lyon. It provides comprehensive tourism information, online booking services for hotels, restaurants, leisure activities, and city passes such as the Lyon City Card. The site targets tourists, families, business travelers, and groups, positioning itself as an authoritative and trusted source for visiting Lyon. The content is rich, professionally presented, and available in multiple languages, enhancing accessibility and user experience. Technically, the website employs modern web technologies including Alpine.js for interactivity, Swiper.js for sliders, and MapLibre GL for mapping. It integrates Google Tag Manager and Google reCAPTCHA for analytics and security. The site is mobile-optimized, accessible, and SEO-friendly, with good performance metrics. Security best practices are observed with HTTPS enforcement, security headers, and secure forms, although explicit security policy and incident response information are not published. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, GDPR adherence, and consent mechanisms. However, WHOIS data for the domain is missing or unavailable, which is unusual for an official entity and slightly impacts trustworthiness. Despite this, the website's certifications, social media presence, and comprehensive content support its legitimacy. Overall, the website is a high-quality, secure, and user-friendly platform for promoting tourism in Lyon. Strategic recommendations include publishing a dedicated security policy, incident response contacts, and a vulnerability disclosure policy to further enhance trust and transparency.

65
65
17
75
65
80
100
tourismlyontravelcultureevents+3 more
HTML5CSS3JavaScriptAlpine.js+4

Partner Domains:

boutique.visiterlyon.com
partner
pro.lyon-france.com
partner

+3 more partners

2025-10-24T15:31:21.732Z
socialintents.com favicon

Social Intents, LLC

socialintents.com

10
TechnologyN/asmallCRITICAL

Social Intents, LLC operates a professional SaaS platform specializing in live chat and AI chatbot solutions integrated with popular collaboration tools such as Microsoft Teams, Slack, Google Chat, Zoom, and Webex. Their platform enables businesses to engage customers across multiple channels including websites, WhatsApp, Messenger, and SMS, leveraging AI to automate routine inquiries and improve customer support efficiency. The company targets small businesses, entrepreneurs, and marketing teams seeking to enhance customer engagement and sales through streamlined communication tools. Their market position is strong within the niche of AI-powered chat solutions integrated with collaboration platforms, supported by clear pricing tiers and agency reseller options. Technically, the website employs a modern technology stack including JavaScript frameworks like Alpine.js and jQuery, along with integrations for analytics and marketing tools such as Google Tag Manager, Facebook Pixel, Bing Ads, and Weglot for multilingual support. The site is well-optimized for mobile and accessibility, with good SEO practices and fast loading performance. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, though explicit security headers could be more visible. No critical vulnerabilities or exposed sensitive data were detected. The security posture is mature with good privacy compliance evidenced by comprehensive privacy and cookie policies and GDPR adherence. However, the absence of WHOIS domain registration data raises concerns about domain legitimacy and ownership transparency. No direct contact emails or phone numbers were found, and no public security or incident response contacts are provided, which could impact trustworthiness from a security perspective. Overall, the website presents a professional, trustworthy, and technically sound platform for AI-driven live chat services. Strategic recommendations include verifying domain registration details, enhancing visible security headers, publishing incident response contacts, and providing clearer direct contact information to improve business credibility and security transparency.

-
-
-
-
-
-
-
livechataichatbotmicrosoftteamsslackgooglechat+4 more
JavaScriptjQueryAlpine.jsGoogle Tag Manager+6
2025-10-24T13:39:09.273Z
dlhbali.id favicon

Dinas Lingkungan Hidup Provinsi Aceh

dlhbali.id

53
GovernmentIndonesiamediumMEDIUM

Dinas Lingkungan Hidup Provinsi Aceh operates as a government environmental agency responsible for managing environmental preservation, waste management, pollution control, and public services related to environmental issues in Aceh Province, Indonesia. The website serves as an official portal providing information, news, and services to residents and stakeholders. The site is well-structured with clear navigation and contact information, targeting the general public and government stakeholders. Technically, the website employs modern web technologies including Laravel Livewire, Alpine.js, and Swiper.js, hosted behind Cloudflare DNS services. The site is mobile optimized and offers a good user experience with moderate performance. However, some SEO and accessibility features could be improved. From a security perspective, the site uses HTTPS and has domain transfer protection enabled, but lacks DNSSEC and important security headers. There is no published privacy, cookie, or incident response policy, which limits compliance with privacy regulations. The WHOIS data raises concerns due to a future domain creation date and registrant mismatch, which may indicate registration anomalies. Overall, the website is functional and professional but requires improvements in privacy compliance, security headers, and domain registration transparency to enhance trust and security posture.

15
53
17
40
60
70
100
governmentenvironmentacehpublicserviceindonesia
LivewireAlpine.jsSwiper.jsCountUp.js+2
2025-10-24T13:13:44.694Z
bexio.ch favicon

bexio AG

bexio.ch

74
TechnologySwitzerlandmediumMEDIUM

bexio AG is a Swiss-based company founded in 2013, providing comprehensive business software solutions tailored for small businesses, startups, and self-employed individuals. Their SaaS platform offers a wide range of services including contact management, sales process automation, expense and accounting management, payroll, and integrated e-banking. Positioned as a trusted Swiss SME software provider, bexio serves over 90,000 customers and benefits from strong partnerships with reputable organizations such as Mobiliar and UBS. The website reflects a professional and consistent brand image with excellent content quality and user experience. Technically, the website employs modern web technologies including Alpine.js, Google Tag Manager, and Usercentrics for consent management, ensuring a fast, mobile-optimized, and SEO-friendly platform. Security best practices are observed with HTTPS enforcement, security headers, and secure form handling. However, explicit security policies and incident response information are not publicly available, representing an area for improvement. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. The absence of WHOIS domain registration details is a notable concern, slightly impacting business credibility, but the overall digital presence and trust signals mitigate this risk. Overall, bexio demonstrates a mature digital infrastructure and a secure, privacy-conscious environment suitable for its target SME audience. Strategic recommendations include publishing detailed security policies, incident response plans, and vulnerability disclosure information to enhance transparency and trust further.

75
70
17
87
75
85
100
businesssoftwaresmeaccountingpayrollswisssoftware+4 more
JavaScriptAlpine.jsGoogle Tag ManagerGoogle Analytics+4

Partner Domains:

marketplace.bexio.com
service
office.bexio.com
service

+3 more partners

2025-10-24T07:20:08.135Z
herzogdemeuron.com favicon

Herzog & de Meuron Basel Ltd.

herzogdemeuron.com

46
Real EstateSwitzerlandlargeHIGH

Herzog & de Meuron Basel Ltd. is an internationally renowned architectural practice based in Basel, Switzerland. The company specializes in architectural design, project development, exhibitions, and publications, serving a global audience including cultural institutions and design professionals. Their website reflects a strong market position with a comprehensive portfolio and professional presentation. The technical infrastructure is built on WordPress with modern JavaScript frameworks such as Alpine.js and jQuery, supplemented by Matomo analytics for privacy-conscious user tracking. The site is mobile-optimized, accessible, and SEO-friendly, though some security headers are missing which could be improved. Security posture is generally strong with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, the absence of certain security headers and a cookie consent mechanism indicates room for enhancement in compliance and security best practices. Overall, the website is professional, trustworthy, and content-rich, but the lack of WHOIS data for the domain introduces some uncertainty about domain registration legitimacy. Strategic verification of domain registration and implementation of additional security headers and privacy mechanisms are recommended.

15
58
2
70
80
60
-
architecturedesignprojectsexhibitionsmonographs+3 more
WordPressjQueryAlpine.jsMatomo Analytics+2
2025-10-24T04:53:24.479Z
rockit.at favicon

rockit GmbH

rockit.at

44
TechnologyAustriasmallHIGH

rockit GmbH is a specialized TYPO3 CMS agency based in Vienna, Austria, offering comprehensive web development services including responsive design, accessibility, SEO, and GDPR-compliant solutions. The company holds certifications as TYPO3 integrators and serves a diverse client base including government and large organizations, positioning itself as a trusted technology service provider in the Austrian market. Their business model focuses on delivering tailored TYPO3 websites with ongoing maintenance and quality assurance. Technically, the website is built on a modern TYPO3 CMS platform with a rich technology stack including PHP, TailwindCSS, JavaScript frameworks like Vue.js and Alpine.js, and uses Matomo for privacy-conscious analytics. The site is well-optimized for mobile devices, accessibility, and SEO, reflecting a mature digital infrastructure. From a security perspective, the website enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. However, there is room for improvement in publishing explicit security policies, incident response contacts, and implementing additional HTTP security headers. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a professional and trustworthy digital presence with strong compliance and technical maturity. The lack of WHOIS data limits domain trust verification but does not detract from the evident business legitimacy. Strategic recommendations include enhancing security header implementation and publishing formal security policies to further strengthen trust and compliance.

25
55
17
75
-
80
20
typo3webdevelopmentaccessibilityseogdpr+3 more
TYPO3 CMSPHPHTML5CSS3+9
2025-10-24T00:04:44.767Z
F

Falter Verlagsgesellschaft m.b.H.

partytimer.at

64
MediaAustriamediumMEDIUM

The website partytimer.at is a professionally maintained event listing platform focused on party and nightlife events in Vienna, Austria. It is operated by Falter Verlagsgesellschaft m.b.H., a reputable media company. The platform offers curated event information sourced from Falter:WOCHE, targeting residents and visitors interested in local nightlife. The business model appears to be media and advertising-driven, leveraging partnerships and event promotions. The website demonstrates a good level of digital maturity, employing modern technologies such as Laravel Livewire, Alpine.js, and integrating consent management via Didomi. It uses Google Tag Manager and ad networks like Adition for analytics and advertising purposes. Security-wise, the site enforces HTTPS, implements cookie consent mechanisms, and includes standard security headers, reflecting a solid security posture with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent banner, aligning with GDPR requirements. However, the site lacks explicit terms of service, security policy, and incident response contact information, which are recommended for enhanced trust and compliance. Overall, the website is trustworthy, professionally designed, and serves its niche audience effectively.

70
68
2
40
72
80
100
eventspartyviennanightlifemedia+1 more
LivewireAlpine.jsDidomi Consent SDKGoogle Tag Manager+2
2025-10-23T21:49:17.662Z
vernier.ch favicon

Ville de Vernier

vernier.ch

52
GovernmentSwitzerlandmediumMEDIUM

Ville de Vernier operates as the official municipal government website for the city of Vernier, Switzerland, serving approximately 37,000 residents. The site provides comprehensive information on local administration, practical services, cultural activities, news, and events, targeting a broad audience including seniors, youth, families, new inhabitants, associations, and enterprises. The business model is centered on public service delivery and community engagement, positioning itself as a trusted local authority. Technically, the website is built on Drupal 10, leveraging modern JavaScript frameworks like Alpine.js and privacy-focused analytics via Plausible. The site demonstrates good mobile optimization, accessibility, and SEO practices, with a moderate performance profile. The infrastructure reflects a mature digital presence suitable for a government entity. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and a dedicated incident response contact, which are recommended best practices. Privacy compliance is partial, with a basic privacy policy present but no cookie consent mechanism, potentially impacting GDPR adherence. Overall, the website presents a low-risk profile with strong business credibility and technical implementation. Strategic improvements in privacy compliance and security hardening would enhance trust and regulatory alignment.

50
35
17
55
72
85
20
governmentmunicipalitypublicservicescultureevents+1 more
Drupal 10Alpine.jsPlausible Analytics
2025-10-23T10:32:35.316Z
tivtools.de favicon

Coolify

tivtools.de

45
TechnologyN/asmallHIGH

Coolify is an open-source and self-hostable alternative to popular deployment platforms such as Heroku, Netlify, and Vercel. The website serves primarily as a login portal for users of the Coolify platform, targeting developers and technology users seeking deployment solutions. The business model revolves around providing an open-source platform that users can self-host, positioning itself as a niche alternative in the deployment ecosystem. The website branding is moderately consistent, with a clear focus on the Coolify product name and logo. Technically, the website employs modern frontend technologies including Alpine.js and Laravel Livewire, with DOMPurify used for sanitizing HTML content to prevent XSS attacks. Hosting is provided via Hetzner, a reputable German hosting provider, as indicated by the nameservers. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. The login form includes CSRF protection, and password fields have visibility toggling features enhancing usability. From a security perspective, the site shows some best practices such as CSRF tokens and input sanitization but lacks visible security headers and publicly available security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is weak, with no privacy or cookie policies found, and no GDPR compliance indicators. Business credibility is moderate due to the lack of contact information and trust indicators. Overall, the website is functional and technically sound for its purpose but would benefit from enhanced privacy compliance, security transparency, and contact information to improve trust and regulatory adherence.

15
25
17
60
72
60
40
loginopen-sourcedeploymentplatformcoolify+1 more
Alpine.jsLivewireDOMPurifyTailwind CSS
2025-10-23T08:41:45.245Z
webgo.de favicon

webgo GmbH

webgo.de

11
TechnologyGermanymediumCRITICAL

webgo GmbH is a German-based web hosting and online services provider established in 2004, offering a comprehensive portfolio including web hosting, virtual and dedicated servers, domain registration, website builders with AI features, and online marketing tools. The company positions itself as a performance-driven and environmentally conscious hosting provider, leveraging 100% green energy and emphasizing customer support availability year-round. Their market position is reinforced by multiple awards such as the Stiftung Warentest rating and the German Customer Award, indicating strong customer satisfaction and product quality. Technically, the website employs modern web technologies including Alpine.js, FontAwesome, hCaptcha for bot protection, and Microsoft Clarity for analytics. The site is built on the Statamic CMS platform, optimized for fast performance, mobile responsiveness, and accessibility. Security best practices are observed with HTTPS enforcement, comprehensive security headers, and no visible vulnerabilities or exposed sensitive data. From a security posture perspective, webgo demonstrates a mature approach with strong SSL configuration and bot mitigation. However, explicit security policies, incident response details, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Overall, webgo presents a trustworthy and professional online presence with a high degree of business credibility and technical maturity. The domain registration data, while limited due to DENIC privacy restrictions, aligns with the company's German market focus and business claims. No signs of malicious activity or content safety concerns are detected, making webgo a reliable hosting provider in its sector.

-
-
-
-
-
-
-
webhostingserverdomainsonlinemarketingseo+5 more
JavaScriptAlpine.jsFontAwesomehCaptcha+1
2025-10-23T05:24:50.473Z
pixx.io favicon

pixx.io GmbH

pixx.io

75
TechnologyGermanymediumMEDIUM

pixx.io GmbH operates a German-based Digital Asset Management (DAM) platform leveraging artificial intelligence to enhance media management workflows. The company targets businesses and teams requiring secure, GDPR-compliant cloud solutions for organizing, tagging, licensing, and sharing digital media assets. With over 1,600 customers and a strong ROI claim, pixx.io positions itself as a reliable and efficient DAM provider in the German and broader European market. The website is professionally designed, mobile-optimized, and rich in content including extensive customer testimonials and detailed product information. Technically, the site uses modern frameworks such as Alpine.js and Tailwind CSS, integrates Google Tag Manager and Usercentrics for analytics and consent management, and employs reCAPTCHA for form security. Security posture is strong with HTTPS enforced and no visible vulnerabilities, though explicit security headers could be confirmed. Privacy compliance is well addressed with comprehensive policies and consent mechanisms. WHOIS data is unavailable due to a malformed query response, limiting domain registration transparency, but the overall business credibility and website professionalism support legitimacy. Strategic recommendations include publishing incident response contacts and vulnerability disclosure policies to enhance trust further.

75
70
17
87
95
70
100
digitalassetmanagementdamartificialintelligencecloudgdpr+3 more
Alpine.jsTailwind CSSGoogle Tag ManagerreCAPTCHA+1
2025-10-23T04:11:30.913Z
nabu-netz.de favicon

NABU

nabu-netz.de

59
Non-profitGermanymediumMEDIUM

NABU-Netz is a digital collaboration platform operated by NABU, a well-established German non-profit environmental organization. The website serves as a hub for information, communication, and resource sharing among NABU volunteers and staff. It offers multiple integrated services such as a Wiki, Chat, Media Library, Publishing tools, E-Learning, and an Education Calendar, all aimed at supporting the organization's mission and community engagement. The platform emphasizes ease of access through a centralized NABU-Login system, enhancing user experience and security. Technically, the website is built on modern web technologies including Laravel Livewire and Alpine.js, with a focus on responsive design and moderate performance. It employs Matomo analytics for privacy-conscious user tracking and integrates third-party services like CleverReach for newsletter management. The site uses HTTPS with proper CSRF protections and demonstrates good security hygiene, although explicit security headers and incident response policies are not publicly documented. From a security perspective, the site shows a mature posture with no visible vulnerabilities or exposed sensitive data. Privacy compliance is strong, with comprehensive privacy and cookie policies in place, aligned with GDPR requirements. However, the absence of a dedicated security policy or vulnerability disclosure program suggests room for improvement in transparency and incident readiness. Overall, NABU-Netz presents a trustworthy, professional, and well-maintained digital presence for a non-profit organization. The platform effectively supports its community with relevant services and maintains a good balance between usability, privacy, and security. Strategic enhancements in security documentation and header implementation could further strengthen its security posture and user trust.

45
28
2
75
72
65
100
non-profitenvironmentcollaborationeducationcommunity+2 more
HTML5CSS3JavaScriptLivewire (Laravel)+3
2025-10-23T01:20:15.464Z
clicksgefuehle.at favicon

#clicksgefühle

clicksgefuehle.at

49
TechnologyAustriamediumHIGH

Clicksgefühle is a Vienna-based digital agency specializing in TYPO3 and WordPress web development, AI optimization, SEO, and UX consulting. They serve B2B clients, medium-sized enterprises, government agencies, universities, and public institutions primarily in Austria, Germany, and Switzerland. The agency positions itself as a trusted partner with a strong focus on user-friendly, scalable, and future-proof websites and online shops. Their market presence is reinforced by long-term client relationships and multiple certifications, including Google Partner and Certified Web Accessibility Expert. Technically, the website leverages modern web technologies such as WordPress CMS, Gravity Forms, Yoast SEO, Google Tag Manager, and various JavaScript libraries like Alpine.js and GSAP. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, contributing to a fast and professional user experience. Tracking and marketing tools are integrated responsibly, with standard industry ad networks and pixels. From a security perspective, the site uses HTTPS and shows no obvious vulnerabilities or exposed sensitive data. However, it lacks explicit security headers and published privacy or cookie policies, which are important for GDPR compliance and user trust. The absence of WHOIS data limits domain trust verification, but the website's content quality and certifications mitigate some concerns. Overall, Clicksgefühle presents a professional and credible digital agency with strong technical and business maturity. To enhance security posture and compliance, they should publish comprehensive privacy and cookie policies, implement security headers, and provide clear contact information for incident response.

15
28
17
85
72
75
20
digitalagencytypo3wordpressseoaioptimization+4 more
TYPO3WordPressGravity FormsYoast SEO Premium+7
2025-10-22T23:06:28.707Z
cesarepozzoperte.it favicon

Società nazionale di mutuo soccorso Cesare Pozzo ETS

cesarepozzoperte.it

60
Non-profitItalymediumMEDIUM

The website secure.cesarepozzoperte.it serves as a secure login portal for the Società nazionale di mutuo soccorso Cesare Pozzo ETS, a non-profit mutual aid society based in Italy. The organization provides membership services to individuals and groups, particularly those under collective agreements. The site facilitates member access with a user code and password system, supported by clear instructions and assistance contact information. The business is positioned as an established mutual aid entity with a focus on social support and membership management. Technically, the website employs modern web technologies including Alpine.js for interactivity, SVG for branding graphics, and standard CSS and JavaScript assets. The site is mobile-optimized with a responsive design and includes accessibility considerations. Performance is moderate, with deferred script loading and structured content. SEO and metadata are basic but sufficient for the site's purpose. From a security perspective, the site enforces HTTPS with a valid SSL configuration and includes CSRF tokens in forms, indicating good security hygiene. However, security headers are not explicitly detected, and no incident response or vulnerability disclosure policies are published. No vulnerabilities or exposed sensitive data were found. Privacy compliance is strong with a clear privacy policy and cookie consent mechanism. Overall, the website presents a trustworthy and professional front for the mutual aid society, with a solid security posture and good privacy practices. Recommendations include enhancing security headers, publishing incident response contacts, and adding terms of service to improve compliance and user trust.

15
43
2
73
77
85
100
mutualaidloginnon-profitmembershipsecure+1 more
Alpine.jsSVG graphicsCSS vendor and app-shared stylesheetsJavaScript manifest, vendor, and app scripts
2025-10-22T23:06:13.681Z
dh-verwertung.de favicon

D+H Verwertung Gmbh

dh-verwertung.de

50
TransportationGermanysmallMEDIUM

D+H Verwertung Gmbh is a German company specializing in waste management, recycling, and container rental services. The company targets businesses and individuals in the Kamp-Lintfort region and offers a range of services including acceptance and delivery catalogs, container ordering, and environmental protection consulting. The website presents a professional and consistent brand image with clear contact information and legal documentation, supporting its credibility in the regional market. Technically, the website employs modern frontend technologies such as Alpine.js and Tailwind CSS, hosted on Strato servers. The site is mobile-optimized and uses HTTPS with appropriate security headers, indicating a good level of digital maturity. However, there is no visible cookie consent mechanism or advanced analytics, suggesting room for improvement in privacy compliance and data transparency. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and CSRF token usage, but lacks published security policies or incident response contacts. No vulnerabilities or suspicious patterns were detected in the provided content. Overall, the security posture is solid but could be enhanced by formalizing policies and improving user privacy controls. The overall risk assessment is moderate with a recommendation to implement cookie consent, publish security and incident response policies, and consider adding a vulnerability disclosure framework. These steps would improve compliance, user trust, and security readiness, aligning the company with best practices in digital governance.

30
43
2
65
72
70
40
wastemanagementrecyclingcontainerrentalenvironmentalprotectiongermany
JavaScript ES ModulesTailwind CSSAlpine.js
2025-10-22T08:08:11.126Z