Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157326
Websites
130
Industries
113
Countries
52
Avg Score
Page 43 of 261|Showing 2101-2150 of 13036
alsace.eu favicon

Collectivité européenne d'Alsace

alsace.eu

68
GovernmentFrancelargeMEDIUM

The Collectivité européenne d'Alsace (CeA) is a regional governmental entity serving the Alsace region in France. The website provides comprehensive information about public services, social aid, cultural events, transport, environment, and education, targeting residents and stakeholders of Alsace. The site is well-branded, consistent, and professionally maintained, reflecting its official government status. Technically, the website uses modern web standards including HTML5, CSS3, and JavaScript, with privacy-conscious analytics via Matomo and a cookie consent mechanism powered by OreJime. The site is mobile-optimized and accessible, with good SEO practices and structured data for enhanced search engine understanding. From a security perspective, the site enforces HTTPS and uses script integrity checks but lacks some recommended security headers such as Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with GDPR-aligned policies and clear cookie consent. Overall, the website presents a low risk profile with high trustworthiness and professionalism. The lack of WHOIS data is due to EURid privacy policies and is typical for .eu domains. Strategic improvements include adding security headers and publishing a security policy or vulnerability disclosure to enhance transparency and security posture.

85
25
2
80
77
90
100
governmentalsacepublicservicesregionaladministrationsocialaid+4 more
HTML5CSS3JavaScriptFontAwesome+2
2025-10-24T16:38:05.110Z
dgp-schueler.de favicon

Deutscher Gründerpreis für Schüler:innen

dgp-schueler.de

56
EducationGermanymediumMEDIUM

The Deutscher Gründerpreis für Schüler:innen is a German educational initiative focused on promoting entrepreneurship education among students, primarily targeting those in the 9th grade and above, as well as teachers and Sparkasseninstitutes. The initiative organizes competitions, provides educational materials, and fosters practical learning experiences to sensitize young people to economic topics and entrepreneurial self-employment. The website is professionally designed, well-structured, and consistent with the brand's mission, supported by recognized partners such as Sparkasse, ZDF, Porsche, and others. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with embedded YouTube videos and Google Tag Manager for analytics. The site appears to be built on TYPO3 CMS, indicated by URL patterns and asset naming conventions. Performance and mobile optimization are good, with accessibility features implemented. Privacy compliance is strong, featuring a cookie consent banner and a comprehensive privacy policy aligned with GDPR requirements. From a security perspective, the site uses HTTPS with good SSL configuration and anonymizes IP addresses in analytics. However, no explicit security headers were detected in the HTML content, and there is no visible incident response or vulnerability disclosure information. No critical vulnerabilities or exposed sensitive data were found. The domain WHOIS data is consistent with the website's purpose, supporting legitimacy. Overall, the website presents a low-risk profile with a solid security posture and good privacy compliance. Strategic recommendations include enhancing security headers, publishing incident response contacts, and adding a security.txt file to improve vulnerability disclosure transparency.

60
90
100
70
2
15
28
educationentrepreneurshipstudentscompetitionnon-profit+1 more
HTML5CSS3JavaScriptIntersection Observer API+2

Partner Domains:

sparkasse.de
partner
zdf.de
partner

+3 more partners

2025-10-24T16:35:28.927Z
L

LINK Mobility Italia S.r.l

leadbi.com

51
TechnologyItalymediumMEDIUM

LeadBI is a digital marketing platform offering marketing automation and real-time customer insights, targeting businesses and marketers seeking to enhance their marketing beyond traditional email campaigns. The company is operated by LINK Mobility Italia S.r.l, based in Italy, with a domain registered since 2016, reflecting a mature and stable business presence. The website presents a clean, professional design with good mobile optimization and clear navigation, although it lacks comprehensive privacy and cookie policies, which are critical for compliance and user trust. Technically, the website is hosted on Amazon AWS infrastructure as inferred from DNS nameservers, uses standard HTML5 and CSS3 technologies, and performs moderately well. However, it lacks advanced security headers and DNSSEC, which could improve its security posture. No analytics or tracking scripts were detected, indicating minimal user tracking but also limited marketing analytics integration. From a security perspective, the site uses HTTPS (implied by the login link), but no explicit security policies or incident response information is provided. The WHOIS data shows a consistent and legitimate domain registration without privacy protection, appropriate for the business type. Overall, the security posture is moderate but could be improved by implementing security best practices and compliance documentation. The overall risk is moderate with no critical vulnerabilities detected, but the absence of privacy and cookie policies and security headers are notable gaps. Strategic recommendations include adding comprehensive privacy and cookie policies, enabling DNSSEC, publishing security and incident response policies, and enhancing security headers to improve trust and compliance.

15
50
2
78
72
80
40
digitalmarketingmarketingautomationcustomerinsightleadbisaas
HTML5CSS3
2025-10-24T16:32:32.798Z
haut-rhin.fr favicon

Collectivité européenne d'Alsace

haut-rhin.fr

68
GovernmentFrancelargeMEDIUM

The Collectivité européenne d'Alsace operates as a regional government entity providing a comprehensive range of public services and information to residents and stakeholders in the Alsace region of France. The website serves as an official portal with detailed information on social services, culture, transport, environment, and citizen engagement. It maintains a strong market position as the authoritative regional government body with a clear focus on transparency and public communication. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with privacy-conscious analytics via Matomo and a cookie consent mechanism powered by OreJime. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure suitable for a government portal. From a security perspective, the site enforces HTTPS and demonstrates good security hygiene with no exposed sensitive data or vulnerable libraries detected. However, it lacks explicit security headers and a published security policy or incident response contact, which are recommended for enhanced security posture. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance. The absence of WHOIS data is standard for .eu domains and does not detract from the legitimacy of the site. Strategic recommendations include implementing security headers, publishing a security policy, and adding a vulnerability disclosure channel to further strengthen trust and security.

85
25
2
80
77
90
100
governmentregionalalsacepublicservicesfrance+2 more
HTML5CSS3JavaScriptFontAwesome+2
2025-10-24T16:08:12.012Z
allschwil.ch favicon

Einwohnergemeinde Allschwil

allschwil.ch

62
GovernmentSwitzerlandmediumMEDIUM

The Einwohnergemeinde Allschwil website serves as the official digital presence of the municipal government of Allschwil, Switzerland. It provides comprehensive information on local government services, cultural events, political activities, and community resources. The site targets residents and stakeholders interested in municipal affairs, offering a broad range of services including administrative forms, event calendars, and contact information. The business model is that of a public sector entity focused on community service and governance. Technically, the website is built on the Weblication CMS platform, utilizing standard web technologies such as HTML5, CSS3, JavaScript, and jQuery. It integrates external resources like FontAwesome for icons and ReadSpeaker for accessibility. The site demonstrates good mobile optimization and accessibility features, with a moderate performance profile. SEO practices are adequately implemented with meta tags and structured navigation. From a security perspective, the site enforces HTTPS and uses some security headers, though it lacks advanced headers like Content-Security-Policy. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear privacy and cookie policies and a consent mechanism in place. However, no explicit security policy or incident response contact information is provided. Overall, the website is trustworthy and professional, reflecting the legitimacy of a municipal government entity. It maintains a good balance between usability, compliance, and security, with room for improvement in security header implementation and incident response transparency.

80
53
2
40
67
70
100
municipalitygovernmentswitzerlandallschwilpublicservices+4 more
HTML5CSS3JavaScriptjQuery+2

Partner Domains:

zukunft-allschwil.ch
partner
www.museumallschwil.ch
partner

+3 more partners

2025-10-24T16:07:46.786Z
O

Omnisend

omnisendlink.com

54
TechnologyN/amediumMEDIUM

Omnisend operates as an omnichannel marketing platform specializing in email and multi-channel messaging services designed to help businesses engage customers effectively and compliantly. The website analyzed is a minimal landing page primarily used for tracking links from emails sent via Omnisend's platform and providing an abuse reporting contact. The business is positioned as a technology provider in the marketing automation space, founded in 2017, with a medium-sized operational scale. Technically, the website is hosted via Cloudflare with basic HTML, CSS, and JavaScript technologies. The site lacks advanced frameworks or CMS indications and shows moderate performance and basic mobile optimization. No analytics or tracking scripts were detected in the provided content, indicating a privacy-conscious minimal landing page. From a security perspective, the domain is registered with a reputable registrar and protected against unauthorized transfers. However, DNSSEC is not enabled, and no security headers were detected, representing areas for improvement. The presence of an anti-abuse contact email demonstrates incident response readiness, but the absence of privacy and cookie policies indicates compliance gaps. Overall, the website is functional for its purpose but limited in content and compliance documentation. Strategic improvements in security headers, privacy policies, and mobile optimization would enhance trust and compliance posture.

25
50
12
40
75
70
100
marketingemailomnichannelabuse-reportinglink-tracking
HTML5CSS3JavaScript
2025-10-24T15:53:48.109Z
junges-krebsportal.de favicon

Deutsche Stiftung für junge Erwachsene mit Krebs

junges-krebsportal.de

49
HealthcareGermanysmallHIGH

The Deutsche Stiftung für junge Erwachsene mit Krebs operates the Junges Krebsportal, a specialized online platform providing young cancer patients in Germany with direct access to expert advice and support. The portal offers multiple communication channels including online chats, telephone consultations, and in-person meetings, complemented by a Tandem-Beratung program where affected individuals support each other. The foundation is supported by recognized partners and foundations, reinforcing its credibility in the healthcare non-profit sector. Technically, the website is built using modern web standards including HTML5, CSS3, JavaScript, and the UIkit framework, hosted on a reputable German hosting provider. The site is mobile-optimized with good SEO practices and clear navigation, although accessibility features are basic. No major performance or technical issues were detected. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks visible security headers and explicit security or incident response policies. Privacy compliance is good with a comprehensive privacy policy, but no cookie consent mechanism is evident. No analytics or tracking scripts were detected, indicating a privacy-conscious approach. Overall, the website presents a trustworthy, professional, and focused service with a strong business credibility score. Security posture is solid but could be improved with additional headers and policies. The absence of cookie consent mechanisms and incident response information are notable gaps. The domain WHOIS data is limited but consistent with the business purpose. No WAF or blocking mechanisms interfere with content access.

15
28
17
80
77
70
20
healthcarecancernon-profitpatientsupportyoungadults+1 more
HTML5CSS3JavaScriptjQuery

Partner Domains:

junge-erwachsene-mit-krebs.de
partner
metzler-stiftung.de
partner

+1 more partners

2025-10-24T15:34:07.999Z
mein-fahrtwind.de favicon

Sparkassen- und Giroverband Hessen-Thüringen (SGVHT)

mein-fahrtwind.de

55
FinanceGermanylargeMEDIUM

Mein Fahrtwind is a promotional website operated by the Sparkassen- und Giroverband Hessen-Thüringen (SGVHT), a public financial association in Germany. The site hosts a contest offering participants the chance to win one of eight electric scooters, targeting residents of Hessen, Thüringen, and parts of Rheinland-Pfalz. The website is professionally designed with comprehensive legal and privacy documentation, reflecting a strong commitment to GDPR compliance and user data protection. The contest employs a double opt-in mechanism to ensure participant consent and data accuracy. Technically, the site uses modern web technologies including Google Tag Manager, Matomo analytics, Adobe Typekit fonts, and a cookie consent management system. Hosting is managed via DomainControl, indicating a professional infrastructure. The site is mobile-optimized and accessible, with good SEO practices. Security measures include HTTPS and IP masking in analytics, though HTTP security headers are not explicitly detected. From a security perspective, the site demonstrates good practices with no visible vulnerabilities or exposed sensitive data. Privacy policies are detailed and transparent, including a named data protection officer contact. No incident response or vulnerability disclosure policies are found, which could be areas for improvement. Overall, the site presents a low risk profile with strong compliance and trust indicators. Strategically, the site effectively supports the SGVHT's marketing and public engagement goals, leveraging digital tools to promote sustainable mobility. The integration of multiple marketing and tracking tools is balanced with user privacy considerations, positioning the organization as responsible and trustworthy in its digital presence.

15
85
2
65
100
70
20
sparkassengewinnspielmobilitte-schwalbehessen+4 more
HTML5CSS3JavaScriptGoogle Tag Manager+5
2025-10-24T15:33:17.753Z
finanzen-mit-daniel-jung.de favicon

Sparkassen- und Giroverband Hessen-Thüringen (SGVHT)

finanzen-mit-daniel-jung.de

47
FinanceGermanymediumHIGH

The website 'finanzen-mit-daniel-jung.de' is an educational platform focused on financial literacy, primarily targeting students and educators in the Hessen and Thüringen regions of Germany. It is operated under the auspices of the Sparkassen- und Giroverband Hessen-Thüringen, a reputable financial association. The site offers a series of well-structured, easy-to-understand videos and learning materials to enhance financial knowledge. The partnership with Sparkassen and the inclusion of the Sparkassen-SchulService platform reinforce its credibility and regional relevance. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates Google Tag Manager and Matomo for analytics, alongside a GDPR-compliant cookie consent mechanism. The site is hosted on servers indicated by the nameservers 'your-server.de' and related domains, suggesting a professional hosting environment. The site is mobile-optimized and demonstrates good SEO and accessibility practices, though some improvements in accessibility and security headers could be made. From a security perspective, the site uses HTTPS with strong SSL configuration and implements cookie consent for privacy compliance. No critical vulnerabilities or exposed sensitive data were detected. Privacy policies and terms of service are comprehensive and clearly presented, with a designated data protection officer contact provided. The site does not employ a vulnerability disclosure policy, which could be considered for future enhancement. Overall, the website presents a low-risk profile with strong business credibility and compliance posture. It effectively serves its educational mission with professional content and transparent governance. Strategic recommendations include enhancing HTTP security headers, formalizing a vulnerability disclosure process, and improving accessibility features to further strengthen the site's security and user experience.

15
45
17
70
100
45
-
financeeducationfinancialliteracysparkassevideos+2 more
HTML5CSS3JavaScriptGoogle Tag Manager+2

Partner Domains:

sparkassen-schulservice.de
partner
sfg-ht.de
partner
2025-10-24T15:33:02.574Z
visiterlyon.com favicon

Office du Tourisme et des Congrès de la métropole de Lyon

visiterlyon.com

69
HospitalityFrancelargeMEDIUM

The website www.visiterlyon.com serves as the official tourism portal for Lyon and its metropolitan area, operated by the Office du Tourisme et des Congrès de la métropole de Lyon. It provides comprehensive tourism information, online booking services for hotels, restaurants, leisure activities, and city passes such as the Lyon City Card. The site targets tourists, families, business travelers, and groups, positioning itself as an authoritative and trusted source for visiting Lyon. The content is rich, professionally presented, and available in multiple languages, enhancing accessibility and user experience. Technically, the website employs modern web technologies including Alpine.js for interactivity, Swiper.js for sliders, and MapLibre GL for mapping. It integrates Google Tag Manager and Google reCAPTCHA for analytics and security. The site is mobile-optimized, accessible, and SEO-friendly, with good performance metrics. Security best practices are observed with HTTPS enforcement, security headers, and secure forms, although explicit security policy and incident response information are not published. The security posture is strong with no detected vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, GDPR adherence, and consent mechanisms. However, WHOIS data for the domain is missing or unavailable, which is unusual for an official entity and slightly impacts trustworthiness. Despite this, the website's certifications, social media presence, and comprehensive content support its legitimacy. Overall, the website is a high-quality, secure, and user-friendly platform for promoting tourism in Lyon. Strategic recommendations include publishing a dedicated security policy, incident response contacts, and a vulnerability disclosure policy to further enhance trust and transparency.

65
65
17
75
65
80
100
tourismlyontravelcultureevents+3 more
HTML5CSS3JavaScriptAlpine.js+4

Partner Domains:

boutique.visiterlyon.com
partner
pro.lyon-france.com
partner

+3 more partners

2025-10-24T15:31:21.732Z
nationalgeographic.es favicon

National Geographic España

nationalgeographic.es

55
MediaSpainlargeMEDIUM

National Geographic España operates as a prominent media brand delivering high-quality content focused on science, nature, history, and travel. The website serves a broad general audience with a mix of free and subscription-based content, supported by advertising partnerships and e-commerce through affiliated domains. The brand is well-established in Spain, leveraging multimedia content and digital subscriptions to maintain market relevance. Technically, the website employs a modern tech stack including advanced advertising technologies, consent management via Didomi, and multimedia delivery through JWPlayer. The site is mobile-optimized and uses HTTPS with appropriate security headers, reflecting a mature digital infrastructure. However, some areas such as explicit privacy policy publication and accessibility could be improved. Security posture is solid with HTTPS enforcement and consent mechanisms, but lacks visible vulnerability disclosure or incident response contacts. The absence of WHOIS data limits domain trust verification, though the website's professional presentation and branding strongly indicate legitimacy. Overall, the site presents a low-risk profile with good content quality and technical implementation, but should enhance transparency around privacy, contact information, and security disclosures to strengthen trust and compliance.

45
25
17
60
72
45
100
sciencenaturehistorytravelmedia+4 more
JavaScriptPrebid.jsGoogle Tag ManagerDidomi Consent SDK+5

Partner Domains:

tienda.rba.es
partner
historia.nationalgeographic.com.es
subsidiary

+2 more partners

2025-10-24T15:27:29.610Z
netgroupcloud.ch favicon

zurichnetgroup ag

netgroupcloud.ch

56
TechnologySwitzerlandmediumMEDIUM

Zurichnetgroup ag is a Swiss ICT service provider specializing in cloud solutions tailored for small and medium-sized enterprises (KMU). The company leverages strong partnerships with Microsoft and Swisscom to offer a range of cloud services including private, public, hybrid clouds, and Microsoft 365 cloud solutions. Their market position is solidified by certifications such as ISO 9001, 14001, and 27001, and their focus on Swiss data protection standards appeals to privacy-conscious KMU clients. Technically, the website demonstrates a mature digital infrastructure with modern web technologies, responsive design, and good SEO practices. The use of JSON-LD structured data and lazy loading images enhances performance and search engine visibility. Hosting is implied to be with Swisscom, aligning with their service offerings. From a security perspective, the site enforces HTTPS, employs multiple security headers, and benefits from the robust encryption standards of their cloud partners. No critical vulnerabilities or exposed sensitive data were detected. However, explicit incident response and vulnerability disclosure policies are not publicly available, representing an area for improvement. Overall, the website and business present a trustworthy, professional image with strong compliance to privacy regulations and security best practices. The company is well-positioned in the Swiss KMU market with a comprehensive portfolio of cloud and IT services.

60
68
10
70
72
80
-
cloudcloud-lsungenkmuit-servicesswisscompartner+4 more
HTML5CSS3JavaScriptSVG+2

Partner Domains:

microsoft.com
partner
swisscom.ch
partner

+1 more partners

2025-10-24T14:51:41.521Z
N

Nationale Plattform zur Bekämpfung der Manipulation von Sportwettbewerben

nationale-plattform.de

57
GovernmentGermanymediumMEDIUM

The Nationale Plattform zur Bekämpfung der Manipulation von Sportwettbewerben is an official German government initiative under the Bundesministerium des Innern und für Heimat, dedicated to combating manipulation in sports competitions. The platform provides comprehensive information, monitoring, prevention strategies, and a reporting mechanism to stakeholders including public authorities, sports organizations, and the general public. It holds a strong market position as a trusted governmental resource in Germany for sports integrity. Technically, the website is built on the Government Site Builder CMS, employing modern web technologies such as HTML5, CSS3, JavaScript, and accessibility tools like ReadSpeaker. The site is mobile-optimized, accessible, and includes SEO best practices. Performance is moderate, with no critical technical issues detected. From a security perspective, the site enforces HTTPS and includes a cookie consent mechanism with options for anonymous statistical tracking. However, it lacks explicit security headers and published security policies or incident response information. No vulnerabilities or exposed sensitive data were found in the content. The WHOIS data is consistent and transparent, reinforcing the site's legitimacy. Overall, the platform demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations, making it a reliable source for its intended audience. Strategic improvements in security policy transparency and header implementation could further enhance its security posture.

15
28
17
70
77
60
100
governmentsportsanti-manipulationcompliancepublicservice+1 more
HTML5CSS3JavaScriptMediaElement.js+2
2025-10-24T14:25:45.003Z
nkom.no favicon

Nkom

nkom.no

74
GovernmentNorwaymediumMEDIUM

Nkom is the Norwegian Communications Authority responsible for ensuring robust, equitable, and future-oriented postal and electronic communication services across Norway. As a government regulatory body, it oversees frequency management, market regulation, security, and emergency preparedness in the telecommunications sector. The website reflects its authoritative role with comprehensive information, regulatory documents, and public resources targeted at Norwegian citizens, businesses, and communication providers. Technically, the website employs modern web standards including HTML5, CSS3, JavaScript, and SVG graphics, with Adobe Fonts integration and Fathom Analytics for privacy-conscious user tracking. The site is mobile-optimized, accessible, and well-structured, providing a professional user experience. Security best practices such as HTTPS and cookie consent mechanisms are implemented, though some security headers could be enhanced. The security posture is strong with no visible vulnerabilities or exposed sensitive data. However, the absence of a published vulnerability disclosure policy and incident response contact details suggests room for improvement in transparency and readiness. Privacy compliance is robust, with clear privacy and cookie policies aligned with GDPR requirements. Overall, Nkom's website is a trustworthy, professional government portal with high content quality and technical maturity. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and providing explicit incident response contacts to further strengthen trust and security posture.

65
65
2
85
100
85
100
governmenttelecommunicationsregulationnorwaysecurity+6 more
HTML5CSS3JavaScriptSVG+2
2025-10-24T14:07:57.446Z
naml.no favicon

NAML

naml.no

66
OtherNorwaysmallMEDIUM

The website www.naml.no represents a Norwegian entity with a professional web presence focused on providing organizational or business-related services. The site uses modern web technologies including HTTPS, Google reCAPTCHA Enterprise for bot protection, Microsoft Application Insights for analytics, and Cookiebot for cookie consent management. The content is primarily in Norwegian and the site demonstrates good design quality and user experience with clear navigation and mobile optimization. However, explicit privacy policy and terms of service pages are not clearly found, and no direct contact information such as emails or phone numbers are visible, which slightly impacts transparency and user trust. Technically, the site employs a modern tech stack with standard web technologies and integrates third-party services for analytics and marketing. Security posture is solid with HTTPS enforced and bot protection in place, but the absence of explicit security headers and detailed privacy documentation suggests room for improvement. The WHOIS data is not publicly available, indicating privacy protection, which is common but reduces the ability to verify domain ownership and age. Overall, the website is secure and professional but could enhance trust and compliance by publishing clear privacy and terms policies and providing contact details. The domain's privacy-protected WHOIS is not unusual but should be monitored for legitimacy. No critical vulnerabilities or suspicious content were detected, and the site is safe for general audiences.

25
88
2
85
65
85
100
businesscookieconsentanalyticssecuritynorway+1 more
HTML5CSS3JavaScriptGoogle reCAPTCHA Enterprise+2
2025-10-24T13:37:23.811Z