Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157332
Websites
130
Industries
113
Countries
52
Avg Score
Page 490 of 800|Showing 24451-24500 of 39982
H

Hill’s Pet Nutrition, Inc.

hillsvet.com

69
HealthcareUnited StateslargeMEDIUM

Hill's Vet is a professional veterinary health resource website operated by Hill’s Pet Nutrition, Inc., a subsidiary of Colgate-Palmolive Company. The site provides veterinary professionals with research, practice management resources, product ordering platforms, and educational content. It targets veterinarians, vet techs, students, and clinic managers primarily in the United States. The website demonstrates a mature digital presence with integrations for identity management, analytics, and consent management, reflecting a strong commitment to user experience and privacy compliance. The content is well-structured, relevant, and professionally presented, supporting the brand's market position as a trusted veterinary resource. Technically, the website is built on Adobe Experience Manager CMS and leverages modern JavaScript libraries and third-party services such as Gigya for customer identity, TrustArc for consent management, and multiple analytics and marketing tools. The site is mobile-optimized, accessible, and performs moderately well, although some improvements in security headers and performance monitoring could be beneficial. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, secure login flows, and session management. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS data for the domain is unusual and warrants further investigation to confirm domain legitimacy. Overall, the security posture is strong but could be enhanced with additional headers and a public vulnerability disclosure policy. The overall risk assessment is low, with the website representing a credible and professional business entity. Strategic recommendations include improving security header implementation, publishing a security.txt file, and enhancing incident response contact visibility to further strengthen trust and compliance.

15
100
17
70
85
80
100
veterinarypetnutritionveterinaryresourcespracticemanagementveterinaryeducation+2 more
JavaScriptjQuerySlick CarouselSwiper.js+7

Partner Domains:

hillsretailorder.com
partner
vet.hillstohome.com
partner

+3 more partners

2025-07-16T04:56:07.837Z
rustybrick.com favicon

RustyBrick, Inc.

rustybrick.com

60
TechnologyUnited StatessmallMEDIUM

RustyBrick, Inc. is a small technology service company based in New York, specializing in web design, web development, mobile app development, branding, and marketing technology solutions. The company has a professional online presence with a comprehensive portfolio showcasing various projects and client testimonials, positioning itself as an established player in the technology services market. Their target audience primarily consists of businesses seeking customized online technology solutions to improve operational efficiency and sales. The website infrastructure employs modern web technologies including HTML5, CSS3, JavaScript, and integrates Google services such as reCAPTCHA for form security and Google Analytics for user tracking. The site is mobile optimized with responsive design elements, providing a good user experience across devices. However, some accessibility features could be improved to meet higher compliance standards. From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA to protect forms from spam and abuse. Despite this, the absence of key security headers and lack of a published security policy or incident response contact reduces the overall security maturity. The missing WHOIS registration data raises concerns about domain legitimacy, although the professional content and active business presence mitigate some risk. Overall, RustyBrick's website is well-designed and functional with moderate technical sophistication and a good security baseline. The primary risks relate to domain registration transparency and privacy compliance, which should be addressed to enhance trust and regulatory adherence.

30
53
10
75
77
60
100
webdesignwebdevelopmentmobileappsbrandingmarketingtechnology+2 more
HTML5CSS3JavaScriptGoogle reCAPTCHA+3
2025-07-16T04:55:32.629Z
jihlava-city.cz favicon

Statutární město Jihlava

jihlava-city.cz

49
GovernmentCzech RepublicmediumHIGH

The website jihlava-city.cz serves as the official digital presence of the statutory city of Jihlava in the Czech Republic. It provides comprehensive municipal information, including city news, public documents, event calendars, citizen services, and tourism resources. The site targets residents, local businesses, and visitors, positioning itself as the authoritative source for city-related information and services. The business model is that of a government municipal portal, focusing on transparency, public engagement, and service delivery. Technically, the website is built on the VISMO CMS platform, utilizing standard web technologies such as HTML5, CSS, and JavaScript. It integrates Google services for translation and search functionality, enhancing accessibility and user experience. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate. Hosting and domain registration are consistent with Czech providers, supporting the site's legitimacy. From a security perspective, the site enforces HTTPS and employs a cookie consent mechanism compliant with GDPR. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. Security headers appear to be missing or not explicitly declared in the provided data, representing an area for improvement. Overall, jihlava-city.cz is a trustworthy and professional municipal website with strong content quality and privacy compliance. Strategic recommendations include implementing security headers, publishing a security policy, and establishing a vulnerability disclosure process to enhance security posture and user trust.

15
25
17
70
85
75
20
governmentmunicipalcitypublicservicesczechrepublic+1 more
HTML5CSSJavaScriptGoogle Translate API+2
2025-07-16T04:49:06.812Z
mulitvinov.cz favicon

město Litvínov se sídlem Městský úřad Litvínov

mulitvinov.cz

47
GovernmentCzech RepublicmediumHIGH

The website mulitvinov.cz serves as the official online presence of the city of Litvínov, Czech Republic. It provides comprehensive information and services related to municipal administration, public services, local governance, and community events. The site targets residents and visitors seeking official information about the city, including administrative procedures, social services, cultural activities, and local news. The business model is that of a government entity focused on public service delivery and citizen engagement. The website is well-established, with a domain age dating back to 1999, reflecting a mature digital presence for the municipality. Technically, the site employs a modern CMS platform (vismo), uses HTTPS with good SSL configuration, and integrates third-party services such as Google reCAPTCHA for form security, Google Translate for multilingual support, and Facebook SDK for social media integration. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some improvements in security headers and cookie consent mechanisms are recommended. From a security perspective, the website enforces HTTPS and uses CAPTCHA to protect forms, but lacks explicit security headers and detailed security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the content. Privacy compliance is basic, with privacy and cookie policies present but without active consent mechanisms. The domain registration data is consistent and trustworthy, supporting the legitimacy of the site. Overall, the website presents a low-risk profile with good business credibility and technical implementation. Strategic recommendations include enhancing security headers, implementing cookie consent mechanisms, and publishing explicit security and incident response policies to improve compliance and trust.

15
25
17
55
85
80
20
governmentmunicipalpublicservicesczechrepubliclitvnov+2 more
HTML5CSS3JavaScriptGoogle reCAPTCHA+2
2025-07-16T04:48:56.780Z
J

Joint Commission Resources

jcrinc.com

67
HealthcareUnited StatesenterpriseMEDIUM

Joint Commission Resources (JCR) is a wholly owned not-for-profit affiliate of The Joint Commission, dedicated to helping healthcare organizations improve patient care, safety, and quality across the continuum of care. The website serves as a comprehensive resource offering advisory services, education programs, survey readiness tools, publications, and software solutions tailored to healthcare providers. JCR positions itself as a trusted healthcare quality expert with a strong market presence and affiliation with a reputable parent organization. Technically, the website is built on a modern stack including Sitecore CMS, Bootstrap framework, and advanced JavaScript libraries such as GSAP and Coveo for search functionality. It employs Google Tag Manager and Osano for consent management, reflecting a mature digital infrastructure. The site is well-optimized for mobile and accessibility, with good SEO practices and fast loading times. From a security perspective, the site enforces HTTPS, uses standard security headers, and integrates consent management for privacy compliance. However, it lacks publicly available security policies and incident response contacts, which are recommended for enhanced transparency and trust. The absence of WHOIS registration data is a notable anomaly but does not detract significantly from the overall legitimacy given the professional branding and content. Overall, JCR's website demonstrates a high level of professionalism, security, and compliance suitable for its enterprise healthcare audience. Strategic recommendations include publishing explicit security and incident response policies and investigating the WHOIS data anomaly to ensure domain registration transparency.

20
73
17
85
77
80
100
healthcarequalitysafetyeducationadvisoryservices+1 more
JavaScriptjQueryGSAPCoveo Search+3

Partner Domains:

www.jointcommission.org
parent
www.jointcommissioninternational.org
related

+2 more partners

2025-07-16T04:47:16.331Z
oertli-instruments.com favicon

Oertli Instrumente AG

oertli-instruments.com

56
HealthcareSwitzerlandmediumMEDIUM

Oertli Instrumente AG is a Swiss-based manufacturer specializing in ophthalmic surgical devices, particularly for cataract surgery. The company emphasizes Swiss quality and innovation, targeting healthcare professionals involved in eye surgeries. Their product portfolio includes surgical platforms, instruments, and consumables, with FDA 510(k) clearance for key products, indicating regulatory compliance and market readiness in the USA. The website is professionally designed, mobile-optimized, and provides comprehensive information tailored to its professional audience. Technically, the website leverages modern technologies including Pimcore CMS, Google Tag Manager, and personalization scripts. It employs HTTPS with good SSL configuration and integrates consent management for cookies, reflecting a mature digital infrastructure. However, some security headers are missing, and explicit security policies or incident response information are not publicly available. From a security perspective, the site shows good practices such as encrypted connections and no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data for the domain is a notable concern, potentially indicating privacy protection or registration issues, which slightly impacts trustworthiness. Overall, the site maintains a good security posture but could improve transparency and security header implementation. The overall risk assessment is moderate with recommendations to enhance security policies, publish incident response contacts, and verify domain registration details. These steps would strengthen trust and compliance, supporting the company’s professional reputation in the healthcare sector.

70
53
17
65
72
75
20
ophthalmologymedicaldeviceseyesurgerycataractsurgeryhealthcare+1 more
JavaScriptGoogle Tag ManagerPimcore PersonalizationjQuery+1
2025-07-16T03:45:16.995Z
S

SECTOR Cert

sectorcert.com

45
ManufacturingGermanymediumHIGH

SECTOR Cert is a German-based certification and training provider specializing in nondestructive testing (NDT) and related quality assurance services. The company offers certifications aligned with DIN EN ISO 9712 and ISO 18436 standards, organizes industry events, and provides employer certification services. Their target audience includes professionals and companies within the NDT sector seeking qualification and certification services. The website content is primarily in German and reflects a medium-sized business with a focused niche market position. Technically, the website is built on the TYPO3 CMS platform and uses legacy JavaScript libraries such as jQuery 1.5.2 and MD5 hashing for login authentication, indicating some technical debt and modernization opportunities. The site is moderately optimized for performance and mobile use but lacks advanced accessibility and SEO features. No advanced security headers or modern cryptographic practices are evident, which could expose the site to certain risks. From a security perspective, the site uses HTTPS (implied by base href), but no explicit security headers were detected in the provided HTML. The login form uses MD5 hashing, which is considered weak by modern standards. The WHOIS data for the domain is unavailable, which reduces trustworthiness and raises questions about domain registration transparency. However, the website content and external links to reputable industry organizations support the legitimacy of the business. Overall, the website presents a professional but somewhat outdated technical posture with moderate security and privacy compliance. Strategic improvements in security practices, technical modernization, and enhanced privacy mechanisms would strengthen the company's digital trust and operational resilience.

15
53
2
70
62
75
20
certificationtrainingnondestructivetestingiso9712iso18436+2 more
JavaScriptjQuery 1.5.2MD5 JavaScript library
2025-07-16T03:42:21.687Z
M

Majestic-12

majestic12.co.uk

56
TechnologyUnited KingdomsmallMEDIUM

Majestic-12 is a niche distributed search engine project based in the United Kingdom, focused on creating a web search engine through distributed computing principles similar to SETI@home. The website provides downloadable node software for participants to contribute to web crawling and indexing efforts. The project also offers SEO-related services. The website content is technical and community-oriented, with a history of updates dating back to 2007, indicating a long-standing initiative. However, the domain WHOIS data is unavailable or indicates the domain is invalid under Nominet UK rules, which raises questions about domain legitimacy or usage of a non-standard domain name. Technically, the website uses basic HTML, CSS, and JavaScript without modern frameworks or CMS. The site lacks HTTPS enforcement, with the search form submitting data over HTTP, which is a security concern. Mobile optimization and accessibility are poor, and no analytics or tracking scripts are detected, indicating minimal user tracking. The site lacks privacy, cookie, and terms of service policies, which impacts privacy compliance. From a security perspective, the absence of HTTPS and security headers reduces the security posture. No sensitive data exposure or vulnerable libraries were detected in the HTML content. The site does not provide contact information or incident response channels, limiting transparency and user trust. Overall, the security maturity is low to moderate. The overall risk assessment suggests that while the project appears legitimate and community-driven, the domain registration issues and lack of security best practices present risks. Strategic recommendations include implementing HTTPS, adding security headers, improving privacy compliance with policies, enhancing mobile usability, and clarifying domain registration status to improve trust and security posture.

15
50
2
88
67
70
100
majestic-12distributedsearchengineseomj12nodedistributedcomputing
HTMLCSSJavaScript
2025-07-16T03:38:51.062Z
elephantbet.sl favicon

Elephantbet

elephantbet.sl

63
OtherSierra LeonemediumMEDIUM

ElephantBet SL operates as a leading online sports betting and casino gaming platform primarily targeting users in Sierra Leone. The website offers a variety of gambling services including sports betting, casino games, live casino, lottery, and tournaments, positioning itself as a comprehensive entertainment destination for adult users interested in betting and gaming. The platform emphasizes a premium gaming experience with competitive odds and popular slot games. Technically, the website leverages modern web technologies such as React and integrates Cloudflare Turnstile CAPTCHA for bot mitigation, alongside Google Tag Manager for analytics. The site demonstrates good design quality, mobile optimization, and SEO practices, although accessibility features are basic. Security posture is solid with HTTPS enforced and some security headers implied, but lacks visible security policies or incident response information. The absence of WHOIS registration data and lack of visible privacy and cookie policies reduce overall trust and compliance confidence. Strategic improvements in transparency, privacy compliance, and contact information visibility are recommended to enhance user trust and regulatory adherence.

45
53
17
85
57
75
100
sportsbettingcasinogamblingsierraleoneonlinebetting+3 more
JavaScriptReact (inferred from JSX and modulepreload)Cloudflare Turnstile CAPTCHA

Partner Domains:

elephantbet.co.mz
related
elephantbet.co.ao
related

+1 more partners

2025-07-16T02:36:51.569Z
mdr.london favicon

Mishcon de Reya LLP

mdr.london

60
OtherUnited KingdomenterpriseMEDIUM

Mishcon de Reya LLP is a well-established independent law firm founded in 1973, with a significant international presence including offices in London and Singapore. The firm offers a broad range of legal and non-legal services across multiple sectors such as corporate law, dispute resolution, employment, innovation, and private client services. Their market position is strong, supported by a large team of over 1400 people and multiple subsidiaries and partner firms. The website reflects a professional and comprehensive digital presence with clear navigation and detailed service offerings. Technically, the website is built on ASP.NET Web Forms with modern web standards including responsive design, accessibility features, and SEO best practices. The site performance is moderate with good mobile optimization. Security measures include HTTPS enforcement and multiple security headers, indicating a mature security posture. However, explicit security policies and incident response information are not published, which could be improved. The overall risk profile is low with no detected vulnerabilities or suspicious content. The missing WHOIS data is a concern for domain registration transparency but does not detract significantly from the firm's credibility given the strong branding and external references. Strategic recommendations include publishing detailed security and incident response policies, adding vulnerability disclosure mechanisms, and verifying domain registration details to enhance trust.

80
95
25
-
92
-
100
lawfirmlegalservicescorporatelawdisputeresolutionemploymentlaw+5 more
ASP.NETJavaScriptCSSHTML5

Partner Domains:

www.mishconkaras.com.hk
partner
mdr-i.com
subsidiary

+3 more partners

2025-07-16T02:35:16.141Z
dpmul.cz favicon

Dopravní podnik města Ústí nad Labem a.s.

dpmul.cz

58
TransportationCzech RepublicmediumMEDIUM

Dopravní podnik města Ústí nad Labem a.s. is a medium-sized public transportation company operating bus and trolleybus services primarily in the Ústí nad Labem region of the Czech Republic. The company provides a range of services including ticket sales, electronic tickets, contracted transport, and additional offerings such as a cable railway and driving school. The website reflects a well-established operator with a domain registered since 1999, consistent with the company's history and market presence. Technically, the website employs modern web technologies including Bootstrap for responsive design, JavaScript libraries for interactive elements, and Leaflet for mapping services. The site is mobile-optimized, accessible, and SEO-friendly, providing a good user experience. Hosting and domain registration are managed by a reputable Czech registrar, REG-ZONER. From a security perspective, the site uses HTTPS and implements cookie consent with Cloudflare Turnstile captcha for form protection. However, explicit security headers are not clearly declared, and there is no visible security policy or incident response contact information. No vulnerabilities or exposed sensitive data were detected in the content. Overall, the website is professional, trustworthy, and compliant with GDPR requirements, with clear contact information and active social media channels. Strategic improvements could include publishing a formal security policy, enhancing security headers, and providing incident response contacts to strengthen security posture and user trust.

30
10
2
85
72
85
100
publictransportbustrolleybusstnadlabemczechrepublic+3 more
HTML5CSS3JavaScriptBootstrap+2
2025-07-16T02:33:05.768Z
freshcorner.rs favicon

MOL Serbia d.o.o.

freshcorner.rs

63
EnergySerbiamediumMEDIUM

Fresh Corner is a retail food and beverage brand operating primarily at Slovnaft gas stations in Serbia, offering coffee, hot dogs, sandwiches, pastries, and hot meals. The company is part of MOL Serbia d.o.o., indicating a connection to the MOL Group, a significant energy sector player. The website is professionally designed with good mobile optimization and clear navigation, targeting general consumers and travelers seeking quick food options at fuel stations. The business model focuses on convenience retail integrated with energy services, positioning Fresh Corner as a recognized local brand with a medium-sized market presence. Technically, the website employs modern web technologies including Google Maps API for location services, Google Tag Manager, Google Analytics, and Facebook Pixel for marketing and analytics. The site uses HTTPS with a valid SSL configuration and includes a cookie consent mechanism compliant with GDPR. However, DNSSEC is not enabled, and no explicit security headers were detected in the provided data, indicating room for security enhancements. The site lacks a published security policy or incident response contact, which could improve trust and compliance. From a security perspective, the site demonstrates good practices such as CSRF token usage and cookie consent with detailed categories. Tracking technologies are used responsibly with user consent. No critical vulnerabilities or suspicious domains were found. The WHOIS data confirms domain legitimacy with consistent registration details and appropriate domain age. Overall, the site maintains a good security posture but could benefit from additional security headers and formal security documentation. The overall risk assessment is low, with the site presenting a trustworthy and professional front for its business operations. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing a security policy, and considering a vulnerability disclosure program to further enhance security and compliance posture.

70
65
2
70
52
60
100
foodbeveragescoffeehotdogpastries+7 more
Google Maps APIOwl CarouselGoogle Tag ManagerGoogle Analytics+4

Partner Domains:

molserbia.rs
partner
2025-07-16T02:32:30.686Z
qualified-dev.com favicon

Qualified

qualified-dev.com

61
TechnologyN/amediumMEDIUM

Qualified is a technology company specializing in AI-driven inbound pipeline generation through its flagship AI SDR agent, Piper. The platform automates real-time visitor engagement, personalized email follow-up, sales meeting scheduling, and content personalization to accelerate B2B marketing and sales efforts. Positioned as a leader in agentic marketing, Qualified targets marketing and sales teams seeking scalable automation solutions. The website demonstrates a mature digital presence with professional design, rich multimedia content, and integration with modern web technologies such as Webflow, Google Tag Manager, and Wistia. Privacy and cookie policies are implemented with consent mechanisms, reflecting good compliance practices. However, the absence of WHOIS data for the domain raises questions about domain registration legitimacy, possibly indicating a development or staging environment. Security posture is strong with HTTPS and secure scripts, though additional security headers and a published security policy would enhance trust. Overall, Qualified presents a credible and professional business with room for improvement in transparency and security documentation.

15
73
17
70
57
75
100
aisdrinboundpipelinegenerationagenticmarketingqualifiedpiper+3 more
JavaScriptGoogle Tag ManagerWistia video playerQualified proprietary scripts+2

Partner Domains:

qualified.com
partner
qualified-staging.com
partner

+1 more partners

2025-07-16T02:28:59.833Z
smarty.cz favicon

Smarty.cz

smarty.cz

54
RetailCzech RepubliclargeMEDIUM

Smarty.cz is a prominent Czech retailer specializing in smart electronics, gaming products, and accessories. The company operates both an e-commerce platform and multiple physical stores across the Czech Republic, offering services such as device servicing, buyback, and express delivery. Their market position is strong within the Czech retail sector for technology and gaming products, targeting consumers interested in the latest electronics and gaming gear. The website is professionally designed, mobile-optimized, and provides a rich user experience with clear navigation and comprehensive product offerings. Technically, Smarty.cz employs modern web technologies including HTML5, CSS3, JavaScript, and utilizes third-party services like Google Tag Manager and Startquestion widgets for analytics and customer engagement. The site demonstrates good performance and accessibility standards, with secure HTTPS connections and appropriate security headers in place. From a security perspective, the website shows a solid posture with HTTPS enforcement and secure form handling. However, there is a lack of publicly available security policies, incident response information, and vulnerability disclosure programs, which are areas for improvement. The absence of WHOIS data reduces transparency and slightly impacts trustworthiness, though the business presence and content quality support legitimacy. Overall, Smarty.cz presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include enhancing transparency around security policies, publishing incident response and vulnerability disclosure information, and improving WHOIS data availability to bolster trust and compliance.

60
25
2
85
-
80
100
electronicsgamingretailsmartdevicesczechrepublic
HTML5CSS3JavaScriptTiny Slider JS+3
2025-07-16T01:26:44.931Z
siilo.com favicon

Doctolib Siilo

siilo.com

83
HealthcareN/amediumLOW

Doctolib Siilo operates a secure medical messaging platform tailored for healthcare professionals, enabling confidential communication and patient data sharing within medical teams. The platform positions itself as a free, secure solution in the healthcare communication niche, supported by the parent company Doctolib. The website content is professionally presented, targeting healthcare providers and organizations, with a clear emphasis on security and privacy compliance. Technically, the site employs modern JavaScript libraries such as Alpine.js, integrates Matomo for analytics, and uses Cookiebot for GDPR-compliant cookie management. The site is mobile-optimized and demonstrates good SEO and accessibility practices. Security-wise, the site enforces HTTPS and provides a detailed cookie consent mechanism, though it lacks explicit security headers and a public vulnerability disclosure policy. The absence of WHOIS data limits domain trust verification, but the overall site professionalism and privacy compliance indicate a mature security posture. Strategic recommendations include enhancing security headers, publishing incident response contacts, and improving transparency around security certifications. Overall, the site presents a solid, trustworthy platform for healthcare communication with room for security and compliance enhancements.

75
83
47
93
100
90
100
healthcaresecuremessaginggdprprivacymedicalcommunication+2 more
JavaScriptAlpine.jsMatomo AnalyticsCookiebot
2025-07-16T01:22:43.656Z
doctolib.com favicon

Doctolib

doctolib.com

66
HealthcareFrancelargeMEDIUM

Doctolib is a leading European healthcare technology company specializing in online appointment booking and teleconsultation services. The platform serves patients and healthcare professionals primarily in France, Germany, and Italy, offering a seamless way to find specialists and manage medical appointments. The company also provides professional management software for healthcare providers, enhancing operational efficiency. The website reflects a mature digital presence with comprehensive legal, privacy, and user support documentation, reinforcing trust and compliance with GDPR regulations. Technically, the website employs modern web technologies including React, Sentry for error tracking, Datadog for real user monitoring, and advanced consent management via Didomi. The infrastructure leverages Cloudflare services for security and performance, with strong SSL/TLS configurations and security headers implemented. The site is mobile-optimized and accessible, providing a fast and user-friendly experience. From a security perspective, Doctolib demonstrates robust practices such as HTTPS enforcement, cookie security with SameSite and Partitioned flags, and CAPTCHA integration to mitigate abuse. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS registration data limits full domain legitimacy verification, though the overall trust signals and professional branding mitigate this concern. Overall, Doctolib presents a secure, compliant, and professionally managed online platform with strong market positioning in healthcare technology. Strategic recommendations include enhancing transparency with a published security.txt file and continuous monitoring of third-party dependencies to maintain security posture.

55
85
47
100
70
85
-
healthcareappointmentbookingteleconsultationmedicalpatientmanagement+4 more
ReactJavaScriptSentryDatadog RUM+5

Partner Domains:

doctolib.eu.go.link
partner
doctolibpatient.zendesk.com
partner

+2 more partners

2025-07-16T01:22:33.604Z
woodfiber.dk favicon

Woodfiber ApS

woodfiber.dk

54
ManufacturingDenmarksmallMEDIUM

Woodfiber ApS is a Danish company specializing in the manufacture and distribution of sustainable wood fiber-based insulation and building materials. The company targets environmentally conscious builders, homeowners, and construction professionals within Denmark. Their product portfolio includes various wood fiber insulation products, facade systems, vapor barriers, and sound insulation materials, positioning them as a niche player in the sustainable construction materials market. The website reflects a focused business model with clear product offerings and contact information, supporting their market presence since 2013. Technically, the website is built with standard modern web technologies including HTML5, CSS3, and JavaScript, with external resources such as Google Fonts and YouTube no-cookie embeds. The site is mobile optimized and has good SEO fundamentals, though no CMS or advanced frameworks are detected. Hosting and domain registration are managed by GIGAHOST ApS, consistent with the Danish business location. Performance is moderate with room for improvement in accessibility and security headers. From a security perspective, the website uses HTTPS but lacks visible security headers and DNSSEC is not enabled, which are areas for enhancement. No forms or data collection mechanisms are present, reducing immediate data exposure risks. However, the absence of a privacy policy and cookie consent mechanism indicates non-compliance with GDPR requirements. No incident response or vulnerability disclosure information is provided, limiting transparency in security management. Overall, the website is professional and trustworthy with a moderate security posture. Strategic improvements in privacy compliance, security headers, and DNSSEC implementation would strengthen their security and regulatory standing. The business appears legitimate and stable with consistent WHOIS data and clear contact details.

35
10
2
65
77
70
100
buildingmaterialswoodfiberinsulationsustainableconstructiondenmarkenvironmentallyfriendly
HTML5CSS3JavaScriptGoogle Fonts (Open Sans)
2025-07-16T01:16:35.509Z