Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 6 of 241|Showing 251-300 of 12039
cnp.fr favicon

CNP Assurances

cnp.fr

75
FinanceFrancelargeMEDIUM

CNP Assurances is a leading French insurance company specializing in life insurance, health coverage, retirement planning, and savings products for individual customers. The website reflects a mature digital presence with comprehensive content tailored to its target audience of individuals seeking insurance solutions. The company maintains a consistent brand image and provides extensive regulated information, demonstrating transparency and compliance with French and EU regulations. Technically, the website employs modern JavaScript libraries, privacy management tools, and tracking services such as Google Tag Manager and TrustCommander, indicating a well-maintained infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, supporting a positive user experience. From a security perspective, the site enforces HTTPS and includes standard security practices, though explicit security headers and a dedicated security policy page are absent. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place. Overall, the website presents a low-risk profile with high trustworthiness, suitable for a major financial institution. Recommendations include enhancing security header implementation, publishing a vulnerability disclosure policy, and providing explicit incident response contacts to further strengthen security posture.

80
83
17
87
82
70
100
insurancefinancelifeinsurancehealthinsuranceretirement+4 more
JavaScriptCSSHTML5Google Tag Manager+3

Partner Domains:

open.cnp.fr
partner
contacts.cnp.fr
partner
2025-11-01T00:55:49.795Z
C

CZECH WINTER - accommodation and skiing on Czech mountains

czechwinter.com

58
HospitalityCzech RepublicsmallMEDIUM

CzechWinter.com is a niche online portal dedicated to providing accommodation listings and skiing information for tourists interested in the Czech mountain regions. The website offers direct contact to houseowners for cottages, apartments, and hotels, focusing on winter lodging and skiing activities. The business appears to be a small, regionally focused hospitality service provider established around 2008, with a modest online presence and monetization through Google AdSense advertising. From a technical perspective, the website uses basic HTML, CSS, and JavaScript with no modern frameworks or CMS detected. Hosting is provided by a Czech hosting provider as indicated by the nameservers. The site lacks HTTPS enforcement and modern security headers, which lowers its security posture. Mobile optimization and accessibility are minimal, and SEO practices are basic. There is no evidence of privacy or cookie policies, nor GDPR compliance mechanisms. Security-wise, the absence of HTTPS and security headers, combined with no visible privacy or cookie policies, indicates a low maturity level in security and compliance. No contact information or incident response channels are provided, which could hinder user trust and regulatory compliance. However, no malicious or adult content is detected, and the domain registration data is consistent and legitimate. Overall, the website serves its niche purpose but requires significant improvements in security, privacy compliance, and technical modernization to enhance trustworthiness and user experience.

15
50
17
80
62
80
100
accommodationskiingczechmountainstravelwinterlodging
HTMLCSSJavaScriptGoogle AdSense

Partner Domains:

ceskazima.cz
partner
ubytovanivchorvatsku.cz
partner

+1 more partners

2025-11-01T00:45:39.545Z
acpjournals.org favicon

American College of Physicians

acpjournals.org

65
HealthcareUnited StateslargeMEDIUM

The American College of Physicians (ACP) operates the ACP Journals website, a professional platform hosting multiple medical journals including the Annals of Internal Medicine and Clinical Cases. The site serves physicians, healthcare professionals, and researchers by providing peer-reviewed medical content and educational resources. It holds a strong market position as a leading publisher in internal medicine with a large audience and a subscription-based business model complemented by open access content. Technically, the website employs modern web technologies, including Google Tag Manager, Google Analytics, and Cloudflare services, ensuring good performance, mobile optimization, and accessibility. Security posture is strong with HTTPS enforcement, secure forms, and script nonce usage, though explicit security headers and cookie consent mechanisms could be improved. The absence of WHOIS data due to privacy protection is typical for such organizations and does not detract from the site's legitimacy. Overall, the website is professional, trustworthy, and well-maintained, with minor recommendations for enhanced privacy compliance and security transparency.

65
58
17
75
47
75
100
medicaljournalshealthcareinternalmedicineclinicalcases+1 more
Google Tag ManagerGoogle AnalyticsFacebook PixelEloqua Marketing Automation+7

Partner Domains:

www.acponline.org
partner
annals.msubmit.net
service

+2 more partners

2025-11-01T00:35:12.164Z
B

Berliner Verkehrsbetriebe

bvg.de

69
TransportationGermanylargeMEDIUM

Berliner Verkehrsbetriebe (BVG) operates as the primary public transportation provider in Berlin, Germany, offering comprehensive services including route planning, ticketing, subscriptions, and mobile applications. The website serves a broad audience including residents and tourists, providing timely service updates, ticket purchase options, and customer support. BVG holds a strong market position as the leading transit operator in Berlin with a large operational scale. Technically, the website is built on modern frameworks such as React and Next.js, hosted likely by Cronon, and managed via Magnolia CMS. It demonstrates excellent performance, mobile optimization, and accessibility features, reflecting a mature digital infrastructure. The site employs standard SEO and metadata practices, including Open Graph tags and structured JSON data. From a security perspective, the site enforces HTTPS, includes standard security headers, and implements a robust cookie consent mechanism compliant with GDPR. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. No critical vulnerabilities or suspicious patterns were detected. Overall, the website is professional, trustworthy, and user-friendly, with strong privacy compliance and business credibility. Strategic recommendations include publishing detailed security policies, providing direct security contact information, and establishing a vulnerability disclosure program to enhance transparency and trust.

95
33
17
75
82
65
100
publictransportberlinticketsappscustomerservice+3 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

kundenmeinung.bvg.de
partner
nachgefragt.bvg.de
partner

+2 more partners

2025-11-01T00:32:07.191Z
regeringen.dk favicon

Regeringen

regeringen.dk

58
GovernmentDenmarklargeMEDIUM

Regeringen.dk is the official website of the Danish government, serving as a primary platform for disseminating government news, speeches, publications, and information about ministers and government structure. It targets the general public, media, and stakeholders interested in Danish governmental affairs. The website is well-established with a domain age dating back to 1998, reflecting its longstanding role as an authoritative government source. Technically, the site employs modern web technologies including React and WebP images, with good mobile optimization and accessibility features. The CMS appears to be Umbraco, a common enterprise-level content management system. Performance is fast, and SEO practices are well implemented, though some security headers are missing. From a security perspective, the site uses HTTPS but lacks DNSSEC and visible security headers, which are recommended for enhanced protection. No privacy or cookie policies were found, indicating gaps in GDPR compliance. Contact information is limited but includes an official government email and physical address. No incident response or vulnerability disclosure information is provided. Overall, the website is professional, trustworthy, and serves its purpose effectively but would benefit from improved privacy compliance and enhanced security configurations to align with best practices.

30
10
17
100
77
55
100
governmentofficialnewsdanishgovernmentpublicinformation
JavaScriptCSSHTML5WebP images
2025-10-31T23:40:51.438Z
I

IMK Institut für Medizin und Kommunikation AG

congress-imk.ch

50
HealthcareSwitzerlandmediumMEDIUM

The website congress-imk.ch serves as a specialized conference management and overview platform primarily targeting the healthcare sector in Switzerland. Operated by IMK Institut für Medizin und Kommunikation AG, it provides listings and management tools for medical conferences, webinars, and educational events. The platform is well-branded and consistent, with content primarily in German and options for English and French, catering to a multilingual professional audience. The business model focuses on event hosting and conference management services within the healthcare education niche. Technically, the site uses a custom CMS platform named Converia, with standard web technologies such as JavaScript, CSS, and HTML5. The site demonstrates basic mobile optimization and good accessibility features, though SEO and performance optimizations appear moderate. No advanced frameworks or third-party analytics/tracking tools were detected, indicating a lean technical footprint. From a security perspective, the site is accessible without WAF or blocking mechanisms and uses HTTPS (assumed from domain and standard practice, though not explicitly confirmed). However, no security headers or cookie consent mechanisms were detected, and no explicit privacy or incident response policies are published on the main page. The WHOIS data aligns well with the business identity, showing a legitimate and consistent registration without privacy protection, enhancing trustworthiness. Overall, the website is professional and trustworthy for its intended audience but would benefit from improved privacy compliance (cookie consent), enhanced security headers, and more visible contact information to strengthen its security posture and user trust.

70
53
2
60
67
75
-
healthcareconferenceeducationmedicalswitzerland
JavaScriptCSSHTML5

Partner Domains:

imk.ch
partner
2025-10-31T23:37:40.963Z
I

Industrie- und Handelskammer Siegen (IHK Siegen)

ihk-siegen.de

50
GovernmentGermanymediumMEDIUM

IHK Siegen operates as a regional Chamber of Industry and Commerce in Germany, providing a broad range of services including vocational training, business founding and succession consulting, international trade support, legal and tax advice, and environmental and energy consulting. The website serves as a comprehensive resource for local businesses, entrepreneurs, trainees, and regional economic stakeholders, reflecting a well-established institution with a strong market position in the South Westphalia region. The content is professionally presented, well-structured, and primarily in German, targeting a regional audience. Technically, the website is built on TYPO3 CMS, a mature and secure content management system. It integrates modern tools such as Usercentrics for cookie consent and eTracker for analytics, indicating a commitment to privacy compliance and user tracking transparency. The site is mobile-optimized and accessible, with good SEO practices evident. Hosting is managed via domaincontrol.com, a common provider for domain management. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, but explicit security headers and incident response policies are not clearly published. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The WHOIS data shows no privacy protection and is consistent with the domain's public institutional use, supporting legitimacy. Overall, the website demonstrates a strong business credibility and technical maturity with good privacy compliance. Recommendations include enhancing security headers, publishing a formal security policy and incident response contacts, and considering a vulnerability disclosure program to further strengthen trust and security posture.

55
28
22
60
67
65
20
ihkchamberofcommercevocationaltrainingbusinessconsultinginternationaltrade+4 more
TYPO3 CMSJavaScriptCSSUsercentrics (cookie consent)+1
2025-10-31T23:19:00.819Z
gebro.ch favicon

Gebro Pharma AG

gebro.ch

10
HealthcareSwitzerlandmediumCRITICAL

Gebro Pharma AG is a Swiss pharmaceutical company specializing in healthcare products targeting indications such as rheumatology, pain, cold and cough, dermatology, and rare diseases. The company maintains a professional web presence with clear contact information and product navigation, serving healthcare professionals and patients primarily in Switzerland. The website is well-structured, mobile-optimized, and uses modern web technologies including JavaScript libraries and Google Tag Manager for analytics and marketing. From a technical perspective, the site employs asynchronous script loading and modern UI components like sliders and form validation, indicating a mature digital infrastructure. However, it appears to use a custom or proprietary CMS platform rather than a common open-source CMS. Performance is moderate with good mobile responsiveness and accessibility features. Security posture is solid with HTTPS enforced and spam protection on login forms, but lacks visible security headers and a public security policy or incident response contact. Privacy compliance is partial; while a privacy policy and terms of service are present, there is no cookie consent mechanism detected, which is a GDPR compliance gap. Overall, the website is trustworthy and professional with a high legitimacy score based on WHOIS data consistency and business information alignment. Strategic improvements in privacy compliance and security transparency would enhance trust and regulatory adherence.

-
-
-
-
-
-
-
pharmaceuticalhealthcareswitzerlandmedicalrheumatology+3 more
JavaScriptCSSHTML5Google Tag Manager+6
2025-10-31T23:14:58.837Z
eonkologie.cz favicon

Klinická onkologie

eonkologie.cz

48
HealthcareCzech RepublicsmallHIGH

The website eonkologie.cz serves as an educational portal dedicated to oncology professionals in the Czech Republic. It functions as the official platform for the Klinická onkologie journal, affiliated with recognized Czech medical societies. The site provides access to oncology journals, recommended clinical procedures, and editorial system login for contributors. The business model centers on specialized healthcare education and professional journal dissemination, supported by partnerships with major pharmaceutical companies. The domain is well-established since 2008, reflecting a stable presence in the oncology education sector. Technically, the website employs basic HTML and CSS with Google Analytics for visitor tracking. The editorial system is hosted externally via Carecomm. The site shows moderate performance and basic mobile optimization but lacks advanced frameworks or CMS indicators. SEO and accessibility features are minimal but functional. No forms or direct data collection mechanisms are present on the homepage. From a security perspective, the site lacks visible security headers and does not disclose privacy or cookie policies, which is a compliance gap. HTTPS status is unknown from the provided data, and no incident response or security contact information is available. The use of Google Analytics indicates moderate user tracking without explicit consent mechanisms. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website is a niche educational resource with moderate trustworthiness and basic technical implementation. Strategic improvements in privacy compliance, security posture, and user contact transparency would enhance its credibility and regulatory alignment.

30
10
2
60
42
75
100
eonkologieonkologieelearningklinickaonkologieoncology+2 more
HTML5CSSGoogle Analytics

Partner Domains:

linkos.cz
partner
redakce.carecomm.cz
service

+3 more partners

2025-10-31T22:19:40.519Z
A

Abwasserbeseitigung Rendsburg

abwasser-rendsburg.de

33
EnergyGermanysmallHIGH

Abwasserbeseitigung Rendsburg is a municipal utility service responsible for wastewater disposal and treatment in the city of Rendsburg and surrounding areas including Büdelsdorf. The organization operates a dedicated sewage treatment plant and provides related services such as property drainage management. The website serves as an informational portal for residents and businesses, offering updates, contact information, and access to service-related forms. The market position is that of a local government service provider with a clear focus on environmental and public utility functions. Technically, the website is built on the Contao Open Source CMS platform, utilizing standard web technologies including HTML5, CSS, JavaScript, and jQuery. The site is hosted on infrastructure associated with Schleupen, a known service provider. While the site is functional and moderately optimized for mobile devices, it lacks advanced SEO and accessibility features. The absence of modern security headers and cookie consent mechanisms indicates room for improvement in technical security and privacy compliance. From a security perspective, the site uses HTTPS and includes CSRF tokens in forms, which are positive indicators. However, no explicit security policies, incident response contacts, or vulnerability disclosure mechanisms are present. The WHOIS data aligns well with the website's municipal nature, showing consistent domain registration and no privacy protection, supporting legitimacy. Overall, the security posture is moderate but could benefit from enhanced headers, policies, and transparency. The overall risk assessment is low given the nature of the business and the absence of sensitive data exposure or suspicious activity. Strategic recommendations include implementing security headers, adding cookie consent and privacy enhancements, publishing security and incident response policies, and updating technical components to modern standards to improve trust and compliance.

-
-
-
40
72
60
20
municipalwastewatergermanyutilityenvironment+1 more
HTML5CSSJavaScriptjQuery 1.11.4+1
2025-10-31T21:28:40.254Z
A

Antesto s.r.o.

infineo.cz

42
FinanceCzech RepublicsmallHIGH

Antesto s.r.o. operates the INFINEO platform, a Czech Republic-based SaaS web application designed for financial advisors to create tailored financial analyses and manage client data efficiently. The platform emphasizes independence from financial institutions, offering objective financial planning tools accessible via any internet-connected device. INFINEO targets individual advisors and firms, providing customization options and API integrations to meet diverse client needs. Technically, the website employs modern web technologies including JavaScript, Google Tag Manager, Google Analytics, and Facebook Pixel for analytics and marketing. The site features responsive design optimized for mobile devices, ensuring accessibility and usability across platforms. However, some security headers are missing, and privacy compliance elements such as cookie consent and privacy policies are not evident. From a security perspective, the site uses HTTPS with a strong SSL certificate, ensuring encrypted data transmission. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data limits domain legitimacy verification, but the website content and company information appear professional and trustworthy. Strategic improvements include adding privacy and cookie policies, security headers, and incident response information to enhance compliance and security posture.

65
70
10
-
2
50
62
financefinancialadvisorfinancialanalysissaasresponsivedesign+1 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsFacebook Pixel+2
2025-10-31T21:26:59.971Z
solarfuxx.de favicon

Solarfuxx GmbH

solarfuxx.de

46
EnergyGermanysmallHIGH

Solarfuxx GmbH is a German-based company specializing in photovoltaic solar energy solutions, energy storage, e-mobility charging infrastructure, and heating/climate technology integration. With over 15 years of regional experience, they serve customers primarily in the North Rhine-Westphalia region, offering consulting, installation, and ongoing support. Their website is professionally designed, mobile-optimized, and provides clear navigation and comprehensive service descriptions. The company demonstrates strong business credibility through certifications and memberships in recognized industry organizations. Technically, the website employs standard web technologies including HTML5, CSS, and JavaScript, with cookie consent mechanisms implemented for GDPR compliance. Hosting is provided by websupport.cz, as indicated by the domain's nameservers. Performance is moderate with good mobile optimization and SEO practices. However, no advanced frameworks or CMS platforms are detected, suggesting a custom or lightweight site build. From a security perspective, the site uses HTTPS and employs email obfuscation to reduce spam. Cookie consent is implemented with opt-in functionality, supporting privacy compliance. However, security headers are not explicitly detected, and no published security or incident response policies are found. No vulnerabilities or suspicious patterns are evident, and the domain registration data aligns well with the business claims, supporting legitimacy. Overall, the website presents a trustworthy and professional digital presence with good privacy compliance and moderate security posture. Strategic improvements could include adding explicit security headers, publishing security policies, and enhancing accessibility features to further strengthen the security and compliance posture.

15
43
2
70
72
60
20
solarenergyphotovoltaicenergystoragee-mobilityrenewableenergy+1 more
HTML5CSSJavaScriptcookieconsent.js
2025-10-31T21:17:51.844Z
engagently.com favicon

engagently

engagently.com

67
MediaN/asmallMEDIUM

Engagently is a specialized engagement platform designed to foster high-quality, respectful online conversations and dynamic communities, primarily targeting publishers and their audiences. The platform emphasizes privacy, data ownership, and GDPR compliance, positioning itself as a privacy-friendly alternative to large social networks. The website showcases a professional design with clear messaging, multimedia content, and client logos from reputable media companies, indicating a credible market presence. Technically, the site is built using modern web technologies including Next.js and Storyblok CMS, ensuring fast performance, mobile responsiveness, and good SEO practices. The platform integrates AI-powered moderation to maintain content quality and safety. While HTTPS is enforced, the site lacks some security headers and does not publicly disclose a security policy or incident response plan, which are areas for improvement. The security posture is generally strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism. However, the absence of WHOIS data for the domain raises concerns about domain registration legitimacy, warranting further investigation. Overall, engagently presents a trustworthy and professional platform with a strong focus on privacy and user engagement, but should enhance transparency around security policies and domain registration details to strengthen trust further.

30
80
17
80
62
85
100
engagementplatformonlinecommunitiesprivacygdprmedia+2 more
React (Next.js)Storyblok CMSJavaScriptCSS+1
2025-10-31T21:14:05.701Z
eiam.swiss favicon

Federal Office of Information Technology, Systems and Telecommunication FOITT

eiam.swiss

50
GovernmentSwitzerlandenterpriseMEDIUM

The website www.eiam.swiss serves as the official portal for the Swiss Federal Administration's central identity and access management system, eIAM. It provides a unified login infrastructure for federal web applications and native mobile apps, streamlining authentication processes and reducing costs. The site targets federal employees, IT specialists, application officers, integration managers, as well as citizens and business representatives via the CH-LOGIN service. The business model is a government service focused on secure, centralized identity management within the Swiss federal ecosystem. Technically, the website employs a traditional tech stack including jQuery and JavaScript, hosted likely on government infrastructure with a CMS identified as U5 CMS. The site is moderately optimized for performance and mobile use, with basic accessibility and SEO features. Security practices include HTTPS usage and no visible vulnerabilities, though security headers and explicit privacy/cookie policies are absent. From a security standpoint, the site demonstrates a solid posture consistent with government standards but lacks some modern security headers and explicit privacy compliance disclosures. The WHOIS data is privacy protected, which is typical for Swiss government domains, and does not detract from the site's legitimacy. No signs of malicious activity or vulnerabilities were detected. Overall, the site is trustworthy, professionally maintained, and serves a critical government function. Recommendations include enhancing privacy and cookie policy transparency, implementing security headers, and improving mobile and accessibility features to align with best practices.

30
35
17
55
72
75
40
governmentidentitymanagementaccessmanagementfederalswiss+3 more
jQueryjQuery FancyboxJavaScriptHTML5+1

Partner Domains:

www.bit.admin.ch
partner
www.bk.admin.ch
partner
2025-10-31T19:56:18.976Z
voigt-sanitaer.de favicon

Voigt GmbH

voigt-sanitaer.de

10
OtherGermanysmallCRITICAL

Voigt GmbH, operating under the brand DIE BADGESTALTER in Geesthacht, Germany, specializes in personalized bathroom renovations and heating system installations. The company emphasizes comprehensive customer service from initial consultation through project completion, offering fixed pricing and guaranteed deadlines. As part of a larger network of over 130 specialized firms under SHK eG, Voigt GmbH benefits from strong brand recognition and a broad partnership ecosystem. The website targets private customers seeking tailored bathroom and heating solutions, positioning itself as a trusted regional expert with a focus on quality and customer satisfaction. Technically, the website is built on the Marcapo Websitemanager CMS, employs Matomo for privacy-conscious analytics, and integrates third-party content such as Google Maps and YouTube videos with explicit user consent mechanisms. The site is mobile-optimized and well-structured, providing a good user experience and clear navigation. Security-wise, the site uses HTTPS and cookie consent but lacks explicit security headers and published incident response policies, indicating room for improvement in security transparency and hardening. Overall, the website and business present a credible, professional image with strong privacy compliance and moderate technical sophistication.

-
-
-
-
-
-
-
badsanierungheizungsanierensanitrtechnikheizungsbaukomplettbetreuung+3 more
Matomo AnalyticsYouTube embedded videosGoogle Maps iframeSystemJS+2
2025-10-31T19:53:33.489Z
himmels-heinsberg-dbg.de favicon

Bernd Himmels GmbH

himmels-heinsberg-dbg.de

10
OtherGermanysmallCRITICAL

Bernd Himmels GmbH operates as a specialist in bathroom renovation and heating system installation, providing comprehensive services from initial consultation to project completion. The company is part of the larger DIE BADGESTALTER brand network, which includes over 130 specialized firms across Germany and Austria, positioning it as a trusted local expert in Heinsberg. The website reflects a strong focus on personalized customer service, fixed pricing, and guaranteed deadlines, catering primarily to private and commercial customers seeking tailored bathroom and heating solutions. Technically, the website employs modern web technologies including Matomo analytics with privacy-conscious IP anonymization, Google Maps integration, and embedded YouTube videos, all managed via the Marcapo Websitemanager CMS. The site is mobile-optimized, accessible, and SEO-friendly, with a clear cookie consent mechanism and comprehensive privacy policy, indicating good compliance with GDPR requirements. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though additional security headers and explicit security policies could enhance protection. Overall, the site presents a professional, trustworthy, and user-friendly digital presence aligned with the company's business objectives.

-
-
-
-
-
-
-
badsanierungheizungsanierenberatungkundendienstheinsberg+1 more
Matomo AnalyticsGoogle Maps iframeYouTube embedded videosSystemJS+2

Partner Domains:

www.die-badgestalter.de
partner
2025-10-31T19:53:18.453Z