Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157303
Websites
130
Industries
113
Countries
52
Avg Score
Page 573 of 3147|Showing 28601-28650 of 157303
bga.de favicon

Bundesverband Großhandel, Außenhandel, Dienstleistungen e.V.

bga.de

53
RetailGermanymediumMEDIUM

The Bundesverband Großhandel, Außenhandel, Dienstleistungen e.V. (BGA) is a prominent German industry association representing the interests of wholesale, foreign trade, and B2B service companies. The organization supports its members in professional, economic, and social policy matters, positioning itself as a leading voice in the German market. The website reflects this professional stature with clear content focused on industry topics, events, and press releases, targeting B2B audiences in Germany and beyond. Technically, the website is built on the TYPO3 CMS platform, utilizing modern web technologies including jQuery and Klaro for cookie consent management. Analytics are handled via Piwik/Matomo, indicating a preference for privacy-conscious tracking. The site is hosted on domaincontrol.com nameservers, suggesting a reliable hosting environment. Performance and mobile optimization are good, though accessibility features are basic. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks visible security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is strong with a comprehensive privacy policy and GDPR-aligned cookie consent. Overall, the website presents a low-risk profile with strong business credibility and good technical implementation. Strategic improvements could include publishing explicit security policies, enhancing security headers, and providing direct contact information for incident response to further strengthen trust and compliance.

72
40
85
70
43
2
30
b2bindustryassociationwholesaleforeigntradeservices+4 more
TYPO3 CMSjQueryKlaro (cookie consent)Piwik/Matomo analytics
2025-10-25T03:31:22.143Z
arbeitgeber.de favicon

Die Arbeitgeber

arbeitgeber.de

54
GovernmentGermanylargeMEDIUM

Die Arbeitgeber is the leading national employers' association in Germany, representing the interests of German businesses and employers. The website serves as an information and advocacy platform focusing on labor market policies, employment issues, and employer-related topics. It targets employers, policymakers, and stakeholders in the German economy. The organization positions itself as a key player in shaping economic and labor policies in Germany. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO Premium for search optimization, LayerSlider for rich content presentation, and Borlabs Cookie for GDPR-compliant cookie management. Hosting is provided by Versatel, a reputable German hosting provider. The site uses Matomo analytics for user tracking with consent mechanisms, reflecting a moderate level of digital maturity. From a security perspective, the site employs HTTPS and cookie consent mechanisms, but lacks explicit security headers and published security policies. No vulnerabilities or exposed sensitive data were detected in the analyzed content. Privacy compliance is partially addressed through cookie consent, but explicit privacy and terms of service pages were not found in the provided data. Overall, the website is professional, trustworthy, and well-branded, with good content quality and user experience. However, improvements in security policy transparency, incident response information, and explicit privacy documentation would enhance its security posture and compliance standing.

20
55
65
67
2
60
85
employerassociationgermaneconomylabormarketpolicyadvocacybusinessrepresentation+3 more
WordPress 6.8.3Yoast SEO PremiumLayerSliderBorlabs Cookie+2
2025-10-25T03:31:12.020Z
K

Kuratorium der Deutschen Wirtschaft für Berufsbildung e.V.

kwb-berufsbildung.de

40
EducationGermanymediumHIGH

Kuratorium der Deutschen Wirtschaft für Berufsbildung e.V. (KWB) is a German non-profit organization focused on coordinating and representing the interests of the economy in vocational education. The website serves as an informational and organizational platform presenting their key services such as vocational education policy, coordination of training regulations, and public relations activities. The target audience includes economic stakeholders, vocational education experts, and member organizations. The site is professionally designed with consistent branding and clear navigation, supporting a medium-sized organizational profile within the education sector in Germany. Technically, the website is built on TYPO3 CMS with jQuery, employing compressed CSS and JavaScript assets for performance. It is mobile-optimized and accessible at a basic level. No advanced analytics or tracking technologies are detected, and the site uses HTTPS with basic SSL configuration. However, security headers are missing, and no explicit security or incident response policies are published. From a security perspective, the site demonstrates a moderate posture with HTTPS and cookie consent mechanisms in place but lacks advanced security headers and vulnerability disclosure information. No critical vulnerabilities or suspicious patterns were detected. WHOIS data aligns with the website's professional nature, showing consistent domain registration and hosting. Overall, the website is trustworthy, professional, and compliant with GDPR requirements, though improvements in security headers and transparency around security policies could enhance its posture. No adult or questionable content is present, making it safe for general audiences.

15
28
2
70
62
60
-
vocationaleducationgermanynon-profittypo3educationpolicy
TYPO3 CMSjQuery

Partner Domains:

arbeitgeber.de
partner
dihk.de
partner

+3 more partners

2025-10-25T03:31:05.258Z
babiel.com favicon

Babiel GmbH

babiel.com

10
TechnologyGermanymediumCRITICAL

Babiel GmbH, a subsidiary of the CONET group, is a well-established German company specializing in digital communication and digital business experiences. With over 30 years of expertise, Babiel offers strategic consulting and implementation services focused on digital transformation, customer and citizen experience management, and digital touchpoints. Their integration within the CONET group expands their capabilities to include data intelligence, AI, cloud services, and software development, positioning them as a comprehensive digital solutions provider for enterprises and public institutions. Technically, the website is built on Drupal 11, leveraging modern web technologies and consent management tools such as Usercentrics. The site is well-optimized for mobile devices, features clear navigation, and integrates Google Analytics and Google Tag Manager for analytics and marketing purposes. The presence of a cookie consent banner and a detailed privacy policy indicates good GDPR compliance. From a security perspective, the site enforces HTTPS and uses consent management but lacks publicly visible security policies or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS data for the domain raises concerns about domain registration legitimacy, which slightly impacts overall trust. Overall, Babiel GmbH presents a professional and trustworthy digital presence with strong business credibility and technical maturity. Addressing the WHOIS data gap and enhancing security transparency would further strengthen their security posture and trustworthiness.

-
-
-
-
-
-
-
digitalexperienceconsultingtechnologydrupalgdpr+3 more
Drupal 11Google Tag ManagerUsercentrics Consent ManagementjQuery+2

Partner Domains:

www.conet.de
parent
conet.whistleblower-system.de
service
2025-10-25T03:30:49.768Z
redditmedia.com favicon

Reddit, Inc.

redditmedia.com

56
TechnologyUnited StatesenterpriseMEDIUM

Reddit, Inc. operates one of the world's largest social media and community platforms, providing a space for users to share content, engage in discussions, and participate in diverse communities. The platform's business model primarily revolves around advertising, premium memberships, and virtual awards, targeting a broad audience of internet users and content creators. Reddit holds a strong market position as a leading technology and media company founded in 2005, with a large and active user base. Technically, Reddit employs a modern technology stack including React, Node.js, and GraphQL, supported by Cloudflare for content delivery and security. The website demonstrates excellent performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. SEO practices and metadata are well implemented, enhancing discoverability and user engagement. From a security perspective, Reddit enforces HTTPS, implements robust security headers, and follows best practices to protect user data and platform integrity. No significant vulnerabilities were detected in the analyzed content. Privacy compliance is strong, with comprehensive privacy and cookie policies and mechanisms for user consent, aligning with GDPR requirements. However, direct security incident response contacts and vulnerability disclosure mechanisms are not publicly evident. Overall, Reddit presents a high level of trustworthiness and professionalism, with a secure and user-friendly platform. The absence of WHOIS data is likely due to privacy protection and does not detract from the site's legitimacy. Strategic recommendations include enhancing public security communication channels and publishing a security.txt file to facilitate vulnerability reporting.

90
77
100
95
-
-
-
socialmediacommunitydiscussiontechnologynews+1 more
ReactNode.jsGraphQLTypeScript+1

Partner Domains:

redditmedia.com
subsidiary
redditstatic.com
subsidiary
2025-10-25T03:30:39.556Z
pure.com favicon

PURE

pure.com

53
OtherN/asmallMEDIUM

PURE is a small-scale business focused on offering personalized green juice products optimized for health-conscious consumers. The website serves primarily as a marketing landing page with a waitlist form for interested customers. The business model appears to be direct-to-consumer, leveraging personalization in the health and wellness beverage sector. The market position is niche, targeting individuals seeking customized health drinks. Technically, the website is built on the Webflow platform, utilizing modern web technologies including Google Tag Manager and Google reCAPTCHA for analytics and spam protection. The site is mobile optimized with moderate performance and basic accessibility features. However, there is a lack of comprehensive SEO and security headers which could be improved. From a security perspective, the site benefits from HTTPS and reCAPTCHA but lacks visible security headers and formal privacy or cookie policies. No contact information or incident response details are provided, which limits transparency and trust. The absence of WHOIS registration data raises concerns about domain legitimacy and ownership transparency. Overall, the website presents a professional front but has gaps in privacy compliance, contact transparency, and domain legitimacy. Strategic improvements in these areas would enhance trust and security posture.

57
100
75
60
30
35
2
healthpersonalizedgreenjuicewellnesssubscription+1 more
WebflowGoogle Tag ManagerGoogle reCAPTCHAjQuery
2025-10-25T03:30:34.540Z
digris.uk favicon

digris Ltd

digris.uk

39
TelecommunicationsUnited KingdomsmallHIGH

Digris Ltd is a specialized Anglo-Swiss network operator providing DAB+ broadcasting services primarily in the United Kingdom, Switzerland, and France. The company offers a comprehensive suite of services including service planning, encoding, multiplexing, transmission, and monitoring, targeting radio stations and broadcasters. Their market position is that of a niche player with a strong technical focus and membership in industry bodies such as WorldDAB. The website reflects a professional and consistent brand image with clear service offerings and contact information. Technically, the website employs modern web technologies including Vue.js, Google Analytics, and DigitalOcean hosting for media assets. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and SEO. Security posture is solid with HTTPS enforced and no obvious vulnerabilities, but lacks some security headers and formal security policies. Privacy compliance is partially addressed with a comprehensive privacy policy and terms of service, but no cookie consent mechanism is present. The security posture is good but could be enhanced by implementing additional HTTP security headers, publishing incident response and vulnerability disclosure policies, and improving GDPR cookie consent mechanisms. No critical vulnerabilities or suspicious content were detected. The WHOIS data is unavailable due to domain registration issues with the 'www.digris.uk' domain, which appears to be a subdomain or alias rather than a registered domain, slightly reducing trust but not undermining the legitimacy of the business. Overall, the website and business present a trustworthy and professional front with moderate technical maturity and good security hygiene. Strategic improvements in privacy compliance and security transparency would further strengthen their position.

65
52
40
75
-
-
-
dabbroadcastingtelecommunicationsradionetworkoperator+3 more
Google AnalyticsGoogle Tag ManagerFreshworks WidgetVue.js (implied by data-v-* attributes)+1

Partner Domains:

digris.ch
partner
digris.fr
partner

+1 more partners

2025-10-25T03:30:29.491Z
digris.fr favicon

digris AG

digris.fr

41
TelecommunicationsFrancesmallHIGH

Digris AG is a specialized company providing comprehensive services in the digital radio broadcasting sector, particularly focusing on DAB+ technology. They offer a full range of services including site studies, installations, supervision, and development of digital radio platforms. The company operates multiple local and national multiplexes primarily in France and Switzerland, positioning itself as a key regional player in digital radio infrastructure. Their website reflects a professional and consistent brand image with clear contact information and active social media presence. From a technical perspective, the website employs modern web technologies such as Vue.js and integrates analytics tools like Google Analytics and Google Tag Manager. Hosting appears to be on DigitalOcean, and the site is mobile-optimized with good user experience. However, there is room for improvement in SEO and accessibility features. Security-wise, the site uses HTTPS but lacks visible security headers and explicit privacy or cookie policies, indicating potential compliance and security posture gaps. The absence of WHOIS data limits the ability to fully verify domain legitimacy and registration details, which slightly reduces trustworthiness. Nonetheless, the professional presentation and detailed contact information support the legitimacy of the business. Overall, the site is safe, with no adult or questionable content detected, and serves a general audience interested in digital radio broadcasting solutions.

25
10
2
60
52
65
40
digitalradiodabbroadcastingtechnologytelecommunications+2 more
Google AnalyticsGoogle Tag ManagerFreshworks Widget

Partner Domains:

digris.ch
partner
digris.uk
partner

+1 more partners

2025-10-25T03:30:24.424Z
onlineplatformok.hu favicon

Nemzeti Média- és Hírközlési Hatóság

onlineplatformok.hu

43
GovernmentHungarymediumHIGH

The website onlineplatformok.hu is the official digital services coordinator portal of the Hungarian National Media and Infocommunications Authority (NMHH). It serves as a comprehensive resource for regulatory information, research, and educational content related to online platforms and the Digital Services Act (DSA). The site targets a broad audience including the general public, researchers, policymakers, and digital platform users in Hungary. It provides authoritative content on digital rights, platform governance, and safe online practices. Technically, the website employs modern web standards with HTML5, CSS3, and JavaScript, including integration of Google Analytics with IP anonymization and Spotify embeds. The site is hosted by NMHH and demonstrates good mobile optimization, accessibility, and SEO practices. Performance is moderate, with no critical technical issues detected. From a security perspective, the site uses HTTPS with a strong SSL configuration and implements GDPR-compliant cookie consent mechanisms. However, explicit security policies and incident response information are not published, and security headers are not explicitly detected. No vulnerabilities or suspicious elements were found, indicating a solid security posture appropriate for a government informational site. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. It effectively fulfills its role as a government portal providing transparency and education about online platforms. Strategic recommendations include publishing detailed security policies, enhancing security headers, and considering a vulnerability disclosure policy to further strengthen trust and security posture.

100
42
75
40
-
-
-
governmentdigitalservicesonlineplatformsdsahungary+4 more
HTML5CSS3JavaScriptGoogle Analytics (with IP anonymization)+1
2025-10-25T03:30:09.379Z
I

Iron Illustration Kft.

szentiras.hu

48
Non-profitHungarysmallHIGH

Szentiras.hu is a Hungarian non-profit website operated by Iron Illustration Kft., dedicated to providing online access to multiple Bible translations and daily scripture verses for the Hungarian-speaking Christian community. The site serves as a religious educational resource with a clear focus on scripture study and community engagement through features like a message board. The business model is informational and non-commercial, targeting a niche religious audience in Hungary. Technically, the website employs a modern tech stack including Bootstrap 5.2.3 and custom JavaScript, with a responsive design optimized for mobile devices. The site uses HTTPS with a valid SSL configuration and includes a cookie consent mechanism, reflecting a moderate level of digital maturity. However, no CMS or advanced analytics tools are detected, and some security headers are missing, indicating room for improvement in security hardening. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and cookie consent but lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data is consistent with the website's claims, showing a recently registered domain without privacy protection, which supports legitimacy. Overall, Szentiras.hu presents a trustworthy, well-structured, and content-rich platform for its target audience. Strategic recommendations include enhancing security headers, publishing security policies, and considering vulnerability disclosure to improve trust and compliance further.

15
43
2
85
62
75
20
religionbiblechristianitynon-profithungarian
Bootstrap 5.2.3JavaScriptjQuery (implied by $().ready usage)Custom CSS and JS
2025-10-25T03:29:44.268Z
N

Nemzeti Infokommunikációs Szolgáltató Zrt.

kozadat.hu

52
GovernmentHungarymediumMEDIUM

kozadat.hu is a Hungarian government-operated public data search portal managed by Nemzeti Infokommunikációs Szolgáltató Zrt. The site provides access to various public data sets, legal drafts, government documents, and archives, serving citizens, researchers, and public sector stakeholders. The platform is part of the official Közadat program and links to multiple authoritative government resources, reinforcing its position as a trusted government information source. Technically, the website uses standard web technologies including HTML5, CSS3, JavaScript, and Modernizr for feature detection. It integrates Google Analytics for user tracking but lacks visible cookie consent mechanisms. The site appears moderately optimized for performance and mobile use, with basic accessibility features. The CMS or platform is not explicitly identified, suggesting a custom or government-developed solution. From a security perspective, the site uses HTTPS and avoids exposing sensitive data in its HTML. However, no explicit security headers such as CSP or HSTS were detected in the provided content, indicating room for improvement. The absence of privacy and cookie policies and consent mechanisms also represents a compliance gap. No vulnerabilities or suspicious content were found, and the domain's WHOIS data confirms a long-standing, consistent registration aligned with the government entity. Overall, kozadat.hu is a credible and professional government portal with good content quality and business credibility. To enhance security posture and privacy compliance, it should implement security headers, publish clear privacy and cookie policies, and introduce user consent mechanisms for tracking technologies.

45
10
2
60
47
80
100
governmentpublicdatalegalinformationhungarysearch
HTML5CSS3JavaScriptModernizr+1
2025-10-25T03:29:24.075Z
bavc.de favicon

Bundesarbeitgeberverband Chemie

bavc.de

52
ManufacturingGermanylargeMEDIUM

The Bundesarbeitgeberverband Chemie (BAVC) is a leading German employer association representing the chemical, pharmaceutical, rubber, and plastics processing industries. It advocates for tariff and social policy interests of its 10 regional member associations comprising 1,700 companies and 585,000 employees. The website serves as an information hub for members, policymakers, and the public, providing news, publications, and service information. The site is professionally designed, well-structured, and optimized for mobile devices, reflecting a mature digital presence. Technically, the website is built on Joomla CMS with modern JavaScript libraries such as Awesomplete for autocomplete, Tiny Slider for carousels, and Kick Consent Manager for cookie compliance. It integrates Google Analytics and Google Tag Manager for analytics and marketing. The site uses HTTPS with good SSL configuration and implements cookie consent mechanisms aligned with GDPR requirements. From a security perspective, the site demonstrates good practices including HTTPS enforcement, cookie consent management, and CSRF token usage in forms. However, explicit security headers are not detected, and no public security policy or incident response contacts are provided. No vulnerabilities or suspicious external links were found. Privacy compliance is strong with a comprehensive privacy policy and cookie management. Overall, the website is trustworthy, professional, and compliant with privacy regulations. It effectively supports the organization's business goals and stakeholder engagement. Strategic improvements could include adding security headers, publishing a vulnerability disclosure policy, and enhancing accessibility features.

65
28
2
75
77
65
20
chemicalindustryemployerassociationgermanysocialpolicytariffpolicy+3 more
Joomla CMSAwesomplete (autocomplete)Tiny Slider (tns)Kick Consent Manager (cookie consent)+3

Partner Domains:

chemiepensionsfonds.de
partner
kwb-berufsbildung.de
partner

+3 more partners

2025-10-25T03:17:00.199Z
thecaptury.com favicon

Captury

thecaptury.com

56
TechnologyGermanymediumMEDIUM

Captury is a technology company specializing in advanced markerless motion capture solutions that enable precise tracking of full-body, finger, and facial movements for multiple actors simultaneously. Their product suite includes real-time processing software, post-processing tools, and specialized hardware solutions targeting industries such as 3D game development, VFX, virtual reality, live entertainment, in-game player tracking, and life sciences research. The company has a solid market position with notable clients including Airbus, Audi, Daimler, Rockstar Games, and Scanline VFX. Technically, the website is built on WordPress and leverages modern JavaScript libraries such as jQuery, CSS3 Animate It, and Slick Carousel for UI enhancements. The site is moderately performant, mobile-optimized, and SEO-friendly, though accessibility features are basic. Hosting appears stable with SSL properly configured, ensuring secure HTTPS connections. From a security perspective, the site employs HTTPS but lacks visible security headers and published security policies or incident response information. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partially addressed with a comprehensive privacy policy and terms of service, but no cookie consent mechanism was found. Contact information is clearly presented, enhancing business credibility. Overall, Captury's website reflects a mature, professional technology company with strong business credibility and a good security posture. Strategic improvements in security headers, cookie consent, and incident response transparency would further enhance trust and compliance.

15
53
17
65
42
70
100
markerlessmotioncapture3dmotiontrackingreal-timeprocessingpost-processingtechnology+1 more
jQueryCSS3 Animate ItSlick CarouselFancybox+1

Partner Domains:

darimotion.com
partner
2025-10-25T03:16:34.261Z
centigrade.de favicon

Centigrade GmbH

centigrade.de

48
TechnologyGermanymediumHIGH

Centigrade GmbH is a medium-sized German technology company specializing in human-centered IT solutions, focusing on digital product development, UX design, software engineering, and AI integration. The company serves business clients seeking to enhance user experience and digital transformation success. Their website reflects a mature digital presence with comprehensive service descriptions, client references, and industry awards, positioning them as a reputable player in the UX and software engineering consultancy market. Technically, the website employs a modern tech stack including jQuery, lazy loading, Google Analytics with privacy features, and a consent management platform (Usercentrics). The site is mobile-optimized, accessible, and SEO-friendly, though it appears to use a custom or proprietary CMS. Performance is moderate, with good user experience and navigation clarity. From a security perspective, the site enforces HTTPS, uses consent management for GDPR compliance, and implements form validation with required privacy consent. However, it lacks explicit security policies, incident response information, and security.txt files. No critical vulnerabilities or exposed sensitive data were detected, indicating a solid security posture but with room for improvement in transparency and security headers. Overall, the website is professional, trustworthy, and compliant with privacy regulations. The risk level is low, but strategic enhancements in security documentation and incident response readiness are recommended to further strengthen trust and compliance.

20
68
2
70
72
65
-
uxdesignsoftwareengineeringdigitalproductdevelopmenthuman-centereditaiintegration+3 more
jQuery 2.2.4Vanilla LazyLoad 17.8.3Google AnalyticsGoogle Tag Manager+5

Partner Domains:

links.centigrade.de
partner
2025-10-25T03:16:29.250Z
fact.co.uk favicon

FACT

fact.co.uk

66
MediaUnited KingdommediumMEDIUM

FACT Liverpool is a prominent UK-based non-profit organization dedicated to the support and exhibition of art, film, and new media. It operates a multi-functional venue featuring galleries, a cinema, a café, and event spaces, positioning itself as a leading cultural institution in Liverpool and the UK. The organization offers a diverse range of services including exhibitions, film screenings, artist residencies, educational programs, and venue hire, targeting a broad audience interested in contemporary art and digital culture. Technically, the website demonstrates a mature digital infrastructure utilizing modern analytics tools such as Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and Inspectlet, alongside asynchronous script loading for performance optimization. The site is built on a CMS platform likely powered by SEOmatic and Craft CMS, with good mobile optimization, accessibility, and SEO practices. The presence of cookie consent management and comprehensive privacy policies indicates a strong commitment to privacy compliance. From a security perspective, the site enforces HTTPS and employs standard best practices, though it lacks explicit security headers and a published security policy or incident response contact. No vulnerabilities or exposed sensitive data were detected in the analysis. The WHOIS data is unavailable due to domain naming rules errors, but other trust indicators such as charity registration numbers and consistent branding support the legitimacy of the domain. Overall, FACT Liverpool presents a professional, secure, and privacy-conscious online presence aligned with its cultural mission. Strategic improvements in security headers and incident response transparency would further enhance its security posture and trustworthiness.

60
83
2
70
62
65
100
artfilmgalleryexhibitionsevents+5 more
Google AnalyticsFacebook PixelLinkedIn Insight TagYouTube embeds+4

Partner Domains:

fact.kitsune.co.uk
partner
www.artscouncil.org.uk
partner
2025-10-25T03:16:14.203Z
golf-and-co.se favicon

SPACEFOOT SAS

golf-and-co.se

57
RetailFrancemediumMEDIUM

Golf and co is a specialized e-commerce retailer focused on golf equipment and accessories, targeting golf enthusiasts primarily in Sweden and Europe. The company operates under the legal entity SPACEFOOT SAS, with customer service based in France. The website offers a broad range of products including clubs, balls, bags, shoes, and training equipment from well-known brands such as Taylormade, Callaway, and Srixon. The business model centers on online retail with secure payment options and a customer-friendly return policy. The market position is that of a specialist retailer with a consistent brand presence and a good reputation for service and product variety. Technically, the website is built on the Magento Open Source platform (OpenMage fork), utilizing modern web technologies including Google Analytics for tracking, Google reCAPTCHA for form security, and Actito for marketing automation. The site is mobile-optimized with good navigation and SEO practices. Performance is moderate with room for improvement in accessibility features. Hosting details are not explicit but the domain registrar is Gandi SAS. From a security perspective, the site enforces HTTPS and uses invisible reCAPTCHA on forms, indicating a good baseline security posture. However, DNSSEC is not enabled and advanced security headers are missing, which are areas for improvement. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is well addressed with a clear privacy policy, cookie consent mechanisms, and GDPR adherence. Overall, the website presents a professional and trustworthy online retail experience with solid business credibility and technical implementation. The main risk lies in minor security enhancements and verifying the unusual WHOIS creation date anomaly. Strategic recommendations include enabling DNSSEC, adding security headers, and publishing a vulnerability disclosure policy to further strengthen trust and security posture.

35
10
17
85
72
60
100
golfe-commercesportsequipmentretailsweden+3 more
Magento (OpenMage variant)Google AnalyticsGoogle reCAPTCHA v2 InvisibleActito marketing automation+4

Partner Domains:

boulevard-du-golf.fr
partner
foot-store.se
partner
2025-10-25T03:15:49.125Z
tiroler-bildungsforum.at favicon

Tiroler Bildungsforum

tiroler-bildungsforum.at

48
EducationAustriamediumHIGH

Tiroler Bildungsforum is a well-established non-profit organization focused on providing affordable educational and cultural services to communities in Tirol, Austria. It supports over 500 volunteers organizing approximately 1,800 events annually, serving around 35,000 participants across 220 municipalities. The organization offers a broad range of initiatives including adult education, archival services, environmental programs, and community workshops. Their market position is strong regionally as a leader in adult education and cultural engagement. The website reflects a professional and consistent brand image with clear navigation and relevant content tailored to its target audience of local communities and educational volunteers. Technically, the website is built on WordPress with modern frameworks such as Bootstrap and jQuery, incorporating plugins for event management, contact forms, and PDF flipbooks. The site is mobile-optimized and demonstrates good SEO practices with structured data and meta tags. Performance is moderate, with room for improvement in accessibility features. From a security perspective, the site uses HTTPS with valid SSL certificates and integrates reCAPTCHA for form protection. However, it lacks visible security headers and does not publish a security policy or incident response contacts. GDPR compliance is partial, with a privacy policy present but no cookie consent mechanism detected. Overall, the security posture is adequate but could be enhanced with additional policies and technical controls. The overall risk is low given the organization's non-profit nature and transparent operations. Strategic recommendations include implementing cookie consent, publishing security and incident response policies, and enhancing security headers and accessibility. These improvements will strengthen compliance, user trust, and resilience against potential threats.

20
45
17
75
72
75
-
educationnon-profitculturecommunityevents+3 more
WordPressBootstrap 4.3.1jQuery 3.7.1Slick Carousel+4
2025-10-25T03:15:44.112Z
golf-and-co.es favicon

SPACEFOOT SAS

golf-and-co.es

60
RetailFrancemediumMEDIUM

Golf and Co is a specialized e-commerce retailer focused on golf equipment and accessories, serving primarily the Spanish and broader European market. The company operates a professional website with a clear product catalog, multiple well-known golf brands, and customer service support based in France. Their business model centers on online sales with secure payment options and a customer-friendly return policy. The website demonstrates consistent branding and good content quality, targeting golf enthusiasts and players. Technically, the site is built on the Magento (OpenMage) platform, utilizing modern web technologies including Google Analytics, Google reCAPTCHA, and GDPR compliance tools such as AppConsent. The site is mobile-optimized and provides a good user experience with clear navigation and product categorization. Performance is moderate, with room for improvement in accessibility features. From a security perspective, the website enforces HTTPS and uses reCAPTCHA to protect forms. While some security headers are not explicitly detected, no critical vulnerabilities or exposed sensitive data were found. Privacy compliance is well addressed with a comprehensive privacy policy, cookie consent mechanisms, and GDPR adherence. However, WHOIS data is unavailable due to registry restrictions, limiting domain ownership transparency. Overall, Golf and Co presents a trustworthy and professional online retail presence with a solid technical foundation and good security posture. The main risk lies in the lack of WHOIS transparency, which is common for .es domains but should be monitored. Strategic recommendations include enhancing security headers, publishing a security policy, and improving accessibility compliance.

35
10
17
85
72
75
100
golfe-commercesportsequipmentretailspanish+3 more
Magento (OpenMage variant)Google Analytics (gtag.js)Google reCAPTCHA v2 InvisibleActito marketing scripts+3

Partner Domains:

foot-store.es
partner
handball-store.es
partner

+2 more partners

2025-10-25T03:15:19.036Z
training-fit.ch favicon

Training-Fit : Fitness- und Muskelaufbaugeräte

training-fit.ch

66
RetailSwitzerlandmediumMEDIUM

Training-Fit.ch is an e-commerce retailer specializing in fitness, muscle building, crossfit, yoga, and martial arts equipment and apparel. The website offers a broad catalog of products from well-known brands, targeting fitness enthusiasts primarily in Switzerland and neighboring regions. The business model focuses on online sales with fast shipping options and secure payment methods. The site demonstrates consistent branding and a professional design, supporting a medium-sized retail operation. Technically, the website is built on the Magento OpenMage platform, utilizing modern web technologies including Google Analytics, Google Ads, and reCAPTCHA for security and marketing. The site is mobile-optimized and features good SEO practices, although accessibility could be improved. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and uses bot protection mechanisms. However, explicit security headers are not clearly present, and there is no published security policy or incident response contact. Privacy compliance is partially addressed with a cookie consent mechanism, but no clear privacy policy or terms of service pages were found. No vulnerabilities or exposed sensitive data were detected. Overall, the website presents a moderate risk profile with good business credibility but some gaps in privacy and security transparency. Strategic improvements in policy publication, security headers, and contact information would enhance trust and compliance.

35
70
17
85
72
75
100
fitnessmusclebuildinge-commercesportsequipmentcrossfit+4 more
Magento (OpenMage variant)Google Tag ManagerGoogle AnalyticsGoogle Ads+6
2025-10-25T03:15:08.905Z
pet-and-garden.ch favicon

Pet & Garden – Ihre Online-Zoohandlung und Ihr Gartencenter

pet-and-garden.ch

67
RetailSwitzerlandmediumMEDIUM

Pet & Garden is an established Swiss online retailer specializing in pet supplies, garden products, and agricultural equipment. The website offers a broad catalog of products with a focus on fast shipping and customer service, targeting pet owners, gardeners, and farmers primarily in Switzerland and German-speaking regions. The business model centers on e-commerce retail with a medium-sized market presence and a consistent brand image. Technically, the website is built on a Magento-based platform (OpenMage variant) and integrates modern marketing and analytics tools such as Google Analytics, Google Tag Manager, Google Ads, and Actito for marketing automation. The site is mobile-optimized and provides a good user experience with clear navigation and product categorization. Security-wise, the site enforces HTTPS, uses Google reCAPTCHA for bot protection, and implements a consent management platform for GDPR compliance. However, explicit privacy and cookie policies are missing, and no direct contact information or security incident response details are provided, which are areas for improvement. Overall, the website is secure, professional, and trustworthy, but enhancing transparency and compliance documentation would strengthen its security posture and user trust.

35
70
17
85
72
75
100
e-commercepetsgardenretailswitzerland+1 more
Google AnalyticsGoogle Tag ManagerGoogle AdWordsreCAPTCHA+2
2025-10-25T03:14:58.884Z
pecheur-store.ch favicon

Pecheur-Store

pecheur-store.ch

66
RetailSwitzerlandsmallMEDIUM

Pecheur-Store is a German-language e-commerce retailer specializing in fishing equipment, including rods, reels, baits, and accessories for various fishing types such as carp, predator, spinning, and sea fishing. The website targets fishing enthusiasts primarily in Switzerland and German-speaking regions, offering a broad product catalog with fast shipping and secure payment options. The business operates as a small retail entity with a focused niche market position. Technically, the website is built on the Magento (OpenMage) platform, utilizing modern web technologies including Google Tag Manager, Google Analytics, Google Ads conversion tracking, and reCAPTCHA v3 for bot protection. The site demonstrates good mobile optimization and SEO practices, although some accessibility features are basic. Performance is moderate with a professional design and clear navigation. From a security perspective, the site enforces HTTPS and employs reCAPTCHA and a consent management platform for GDPR compliance. However, explicit security headers such as Content-Security-Policy and X-Frame-Options are not detected, and no privacy policy or terms of service are present on the homepage, which are areas for improvement. WHOIS data is consistent and transparent, supporting the legitimacy of the domain and business. Overall, the website presents a moderate risk profile with good business credibility but requires enhancements in privacy disclosures and security header implementation to improve compliance and security posture.

35
70
17
85
72
75
100
e-commercefishingretailgermanswitzerland+4 more
Magento (OpenMage variant)Google Tag ManagerGoogle AnalyticsGoogle Ads Conversion Tracking+3
2025-10-25T03:14:53.869Z