Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157303
Websites
130
Industries
113
Countries
52
Avg Score
Page 637 of 3147|Showing 31801-31850 of 157303
museodelprado.es favicon

Museo Nacional del Prado

museodelprado.es

69
GovernmentSpainlargeMEDIUM

Museo Nacional del Prado is a prestigious national museum in Spain dedicated to fine arts and cultural heritage. It serves a broad audience including tourists, families, researchers, and art enthusiasts by providing exhibitions, educational resources, virtual tours, and access to its extensive art collection. The museum operates under the Spanish Government's Ministry of Culture and Sport, positioning it as a leading cultural institution with a strong market presence in the government and non-profit sectors. Technically, the website employs a modern and diverse technology stack including jQuery, Bootstrap, Google Tag Manager, and TinyMCE, supported by a CDN infrastructure. The site is well-optimized for mobile devices, accessible, and SEO-friendly, reflecting a mature digital presence. The CMS used is GNOSS, which supports semantic web and knowledge graph features. From a security perspective, the site uses HTTPS with excellent SSL configuration and follows best practices such as secure forms and no visible vulnerabilities. However, explicit security headers and a public security policy or incident response contact are not evident, representing areas for improvement. Privacy compliance is strong with clear privacy and cookie policies and GDPR adherence. Overall, the website is professional, trustworthy, and secure, with no signs of malicious activity or content safety concerns. It effectively supports the museum's mission and public engagement goals.

55
68
17
70
65
85
100
museumartcultureeducationgovernment+2 more
jQuery 3.7.0Google Tag ManagerGoogle ChartsTinyMCE+6

Partner Domains:

entradas.museodelprado.es
service
www.culturaydeporte.gob.es
partner

+2 more partners

2025-10-24T10:43:51.455Z
cantus-riedel.de favicon

Cantus-Riedel Berlin

cantus-riedel.de

44
RetailGermanysmallHIGH

Cantus-Riedel Berlin is a well-established music retail business operating since 1910 in Berlin-Charlottenburg. The company offers a broad range of music-related products including sheet music, instruments, accessories, classical CDs, and merchandise. It also hosts events such as workshops and concerts, targeting musicians, composers, music teachers, and music enthusiasts. The business model combines a physical store with an online shop presence, positioning it as a trusted local retailer with a strong community focus. Technically, the website is built on WordPress using the Twenty Twelve theme, enhanced with jQuery and Matomo analytics for visitor tracking. The site is moderately optimized for performance and mobile devices, with good SEO and basic accessibility features. However, there is room for improvement in security headers and privacy compliance, particularly regarding cookie consent mechanisms. From a security perspective, the site uses HTTPS and does not expose sensitive information or vulnerable libraries. Nonetheless, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. The use of Matomo analytics without a cookie consent banner indicates partial GDPR compliance. Overall, the security posture is adequate but could be strengthened with additional best practices. The overall risk assessment is low given the nature of the business and the absence of critical vulnerabilities or suspicious indicators. Strategic recommendations include implementing security headers, adding cookie consent, publishing security and incident response policies, and maintaining regular updates to the CMS and plugins to enhance security and compliance.

15
28
17
70
62
60
20
musicretailsheetmusicinstrumentsevents+2 more
WordPressjQueryMatomo Analytics

Partner Domains:

shop.bauer-hieber.com
partner
www.musikosmos.de
partner
2025-10-24T10:43:26.361Z
musikhaus-hogrebe.de favicon

Musikhaus Hogrebe

musikhaus-hogrebe.de

43
RetailGermanysmallHIGH

Musikhaus Hogrebe is a small retail music store located in Aachen, Germany, specializing in musical instruments, accessories, and sheet music. The business was newly established in 2018 and operates both a physical storefront and an online presence linking to a partner e-commerce platform. The website is built on WordPress and uses Matomo analytics, reflecting a moderate level of digital maturity with some privacy awareness. The site is well-structured, mobile-optimized, and provides clear contact information, enhancing user trust and engagement. From a security perspective, the website benefits from HTTPS encryption and does not expose sensitive data. However, it lacks important security headers and does not provide explicit security policies or incident response information. There is no cookie consent mechanism, which is a compliance gap under GDPR regulations. The WHOIS data shows no privacy protection, consistent with a legitimate retail business, though registrant details are minimal. Overall, the website presents a professional and trustworthy front for a local music retailer but would benefit from enhanced security practices and improved privacy compliance. Strategic improvements in security headers, cookie consent, and transparency around data protection would strengthen the site's security posture and regulatory adherence.

15
28
17
70
62
60
20
musicretailinstrumentsaachenmusicstore+1 more
WordPress 6.7.4PHPjQuery 3.7.1Matomo Analytics

Partner Domains:

shop.bauer-hieber.com
partner
www.musikosmos.de
partner
2025-10-24T10:43:21.346Z
civinews.de favicon

CivixX – Werkstatt für Zivilgesellschaft

civinews.de

54
Non-profitGermanysmallMEDIUM

CivixX – Werkstatt für Zivilgesellschaft is a small non-profit organization based in Leipzig, Germany, specializing in consulting and supporting civil society initiatives, sustainable development, and citizen participation projects. The organization collaborates closely with local governments and regional partners, providing services such as coaching, moderation, networking, and educational material development. Their website reflects a professional and consistent brand image, with clear navigation and comprehensive project descriptions tailored to their target audience of local authorities and civil society stakeholders. Technically, the website is built on WordPress with a modern tech stack including jQuery, Owl Carousel, and Matomo for analytics, indicating a privacy-conscious approach. The site is mobile-optimized and performs moderately well, with good SEO and accessibility basics. Security practices include HTTPS enforcement and email obfuscation, though some security headers are missing and no explicit security or incident response policies are published. Overall, the security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is strong, featuring a comprehensive privacy and cookie policy with a consent mechanism. The domain registration data aligns well with the website content and business location, supporting legitimacy. No adult or questionable content is present, making the site safe for general audiences. Strategic recommendations include enhancing security headers, publishing explicit security and incident response policies, and maintaining regular updates to WordPress and plugins to sustain security and compliance.

15
80
17
85
72
60
20
non-profitcivilsocietysustainabilityconsultingregionaldevelopment+1 more
WordPress 6.2.8jQueryOwl CarouselMatomo Analytics+3
2025-10-24T10:41:36.531Z
pccaddie.de favicon

PC CADDIE AG

pccaddie.de

56
TechnologySwitzerlandmediumMEDIUM

PC CADDIE AG is a specialized software provider focused on golf club and golf course management solutions. The company positions itself as a market leader in the golf IT sector, offering a comprehensive suite of products including customer management, reception and proshop integration, golf course and school management, online booking and tournament management, and hosting services. Their target audience includes golf clubs, commercial golf facilities, golf associations, and tournament agencies primarily in German-speaking countries and Switzerland. The website is professionally designed, content-rich, and provides extensive customer references and testimonials, reinforcing its credibility and market position. Technically, the website is built on TYPO3 CMS and employs modern web technologies including JavaScript, CSS, and Google reCAPTCHA for form security. The presence of mobile app links for Android and iOS indicates a mature digital infrastructure. Hosting is managed via agenturserver nameservers, and the site uses HTTPS with good SSL configuration. Performance and mobile optimization are rated as moderate to good, with room for improvement in accessibility features. From a security perspective, the site demonstrates good practices such as HTTPS enforcement, use of CAPTCHA, and no visible exposure of sensitive data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms like a security.txt file. Additional security headers could enhance protection. Privacy compliance is strong, with clear privacy and cookie policies and GDPR adherence. Overall, PC CADDIE AG presents a trustworthy and professional online presence with a solid business model and technical foundation. Strategic improvements in security transparency and accessibility could further strengthen their posture.

40
28
17
55
62
65
100
golfsoftwaregolfclubmanagementgolfitpccaddie+4 more
TYPO3 CMSJavaScriptCSSGoogle reCAPTCHA+2

Partner Domains:

pccaddie-online.de
subsidiary
costanavarino.com
partner

+2 more partners

2025-10-24T10:26:47.095Z
E

ENERGETIX GmbH & CO.KG

frogblog.tv

56
EnergyGermanymediumMEDIUM

frogblog.tv is a multilingual landing page associated with ENERGETIX GmbH & CO.KG, a German company operating in the energy sector. The site serves primarily as a language selection portal directing users to German, English, and French subdomains, indicating an international or European audience focus. The business model appears to be content or community engagement related to energy topics, though the landing page itself contains minimal content. Technically, the website is very basic with no detected CMS, scripts, or analytics tools. The site uses simple CSS for basic mobile responsiveness but lacks advanced SEO and accessibility features. No security headers or HTTPS status were identified from the provided data, and no privacy or cookie policies are present, indicating low digital maturity. From a security perspective, the domain is registered transparently to a legitimate German company with a long registration history, which supports trustworthiness. However, the lack of security best practices such as DNSSEC, HTTPS enforcement, and security headers reduces the overall security posture. No incident response or vulnerability disclosure information is available. Overall, the website is functional but minimal, with significant room for improvement in content richness, security, privacy compliance, and technical sophistication. Strategic recommendations include implementing HTTPS, publishing privacy and cookie policies, adding security headers, and enhancing content and navigation to improve user experience and trust.

15
50
2
70
90
70
100
energymultilingualcorporatebloglandingpage
2025-10-24T10:26:42.071Z
frizzyfoundation.org favicon

Frizzy Foundation

frizzyfoundation.org

40
Non-profitSwitzerlandsmallHIGH

Frizzy Foundation is a small non-profit organization dedicated to supporting children with special needs in Switzerland and abroad. Their mission includes promoting mental and physical health through outdoor activities and infrastructure development. The website content is minimal but relevant, providing basic information about the foundation's purpose and contact emails. The domain is well-established since 2011, consistent with the foundation's history, and registered without privacy protection, enhancing transparency. Technically, the website is hand-coded with basic HTML and CSS, utilizing Google Analytics and Google Tag Manager for tracking. Mobile optimization and accessibility are basic, and no CMS or advanced frameworks are detected. Security posture is moderate with domain transfer protection but lacks DNSSEC and security headers. No cookie consent mechanism is present despite analytics usage, indicating a privacy compliance gap. Security-wise, the site shows no critical vulnerabilities or malicious indicators but would benefit from improved security headers, DNSSEC, and explicit security policies. The absence of a cookie policy and consent mechanism is a compliance risk under GDPR. Overall, the website is functional and trustworthy but could improve in privacy and security practices to enhance user trust and regulatory compliance.

15
35
2
70
62
70
-
non-profitchildrenspecialneedsfoundationhealth+1 more
Google AnalyticsGoogle Tag ManagerHand-coded HTML/CSS
2025-10-24T10:26:11.308Z
swissolympic.ch favicon

Swiss Olympic

swissolympic.ch

63
OtherSwitzerlandlargeMEDIUM

Swiss Olympic is the umbrella organization for Swiss sports and serves as the National Olympic Committee of Switzerland. It supports and strengthens its members, including 83 national sports federations and 30 partner organizations, representing approximately 18,300 clubs and 2.2 million active sports participants. The organization is well-established with a strong market position and recognized trust indicators such as ISO 9001:2015 certification and partnerships with major national and international brands. The website reflects a professional and consistent brand image with comprehensive content tailored to its target audience of sports organizations, athletes, and partners. Technically, the website employs modern JavaScript libraries including jQuery, Slick Carousel, JWPlayer, and integrates Google Analytics and Tag Manager for analytics. Accessibility tools like Eye-Able are implemented, and the site is mobile-optimized with good SEO practices. Performance is moderate, with no critical technical issues detected. However, no CMS or hosting provider details were identified. From a security perspective, the site uses HTTPS and cookie consent mechanisms, but lacks explicit security policy pages, incident response contacts, and security headers such as Content-Security-Policy. No vulnerabilities or exposed sensitive data were found. The WHOIS data shows privacy protection consistent with organizational privacy needs, and no suspicious patterns were detected. Overall, the website is secure, professional, and compliant with privacy regulations, with room for improvement in formal security disclosures and enhanced security headers. The risk level is low, and the site effectively supports the organization's mission and stakeholder engagement.

30
68
2
70
67
80
100
swissolympicolympiccommitteesportsfederationyouthsportssportseducation+1 more
jQuerySlick CarouselJWPlayerHammer.js+4

Partner Domains:

www.loro.ch
partner
www.swisslos.ch
partner

+3 more partners

2025-10-24T10:25:41.243Z
hessischer-gruenderpreis.de favicon

Hessischer Gründerpreis – Die Auszeichnung 🏆

hessischer-gruenderpreis.de

52
OtherGermanymediumMEDIUM

The Hessischer Gründerpreis website represents a well-established regional business award platform focused on startups and business successors in Hessen, Germany. It provides visibility, networking, media exposure, and professional support to companies in their first five years of operation or succession. The platform is backed by reputable partners and sponsors, including financial institutions, industry associations, and government bodies, enhancing its credibility and market position. Technically, the website is built on Joomla CMS with modern front-end frameworks like UIkit and uses common analytics and consent management tools such as Google Analytics, Google Tag Manager, and Usercentrics. The site is mobile-optimized, accessible, and SEO-friendly, with structured data implemented for enhanced search engine understanding. From a security perspective, the site enforces HTTPS and includes CSRF tokens, but lacks explicit security headers like Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance, making it a reliable digital presence for the Hessischer Gründerpreis initiative.

50
28
2
70
100
60
20
businessstartupawardentrepreneurshipregional+5 more
Joomla CMSjQueryUIkit CSS/JS frameworkGoogle Analytics+3

Partner Domains:

taunussparkasse.de
partner
kpmg.de
partner

+3 more partners

2025-10-24T10:25:21.034Z
aha-region.de favicon

aha - Zweckverband Abfallwirtschaft Region Hannover

aha-region.de

62
GovernmentGermanymediumMEDIUM

The website www.aha-region.de represents the regional public waste management authority 'aha - Zweckverband Abfallwirtschaft Region Hannover' in Germany. It provides comprehensive waste disposal services for private households and businesses, including container services, recycling, composting, and special waste management. The site targets a broad audience including residents and commercial customers within the Hannover region. The business model is focused on public service delivery in the environmental sector, positioning itself as a key regional player in waste management and sustainability. Technically, the website is built on TYPO3 CMS, a robust open-source content management system, and integrates modern tools such as Google Tag Manager, Google Analytics, and Cookiebot for cookie consent management. The site is hosted on German servers (htp-tel.de) and demonstrates moderate performance with good mobile optimization and basic accessibility features. SEO practices are adequately implemented with proper meta tags and structured data. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, indicating a commitment to user privacy and data protection. However, explicit security headers and detailed security policies are not evident in the provided data. No vulnerabilities or exposed sensitive data were detected. The absence of a published privacy policy or terms of service page is a notable gap in compliance documentation. Overall, the website is professional, trustworthy, and safe for general audiences. It effectively communicates its public service mission but could improve transparency by publishing comprehensive privacy and security policies and providing clear contact information. Strategic recommendations include enhancing security headers, incident response readiness, and compliance documentation to strengthen trust and regulatory adherence.

35
88
17
75
95
65
40
wastemanagementpublicserviceenvironmentrecyclingcookieconsent+1 more
TYPO3 CMSGoogle Tag ManagerGoogle AnalyticsCookiebot
2025-10-24T10:25:05.772Z
L

LAFRENTZ Baugesellschaft mbH

lafrentz-bau.de

55
Real EstateGermanysmallMEDIUM

LAFRENTZ Baugesellschaft mbH is a specialized construction company based in Hannover, Germany, focusing on park deck renovation, building waterproofing, flood protection, and road marking services. The company targets commercial, public, and private clients with comprehensive services from planning to maintenance. Their market position is that of a niche specialist in construction waterproofing and related services within Germany. The website is professionally designed, mobile-optimized, and provides clear navigation and detailed service descriptions, supporting their business credibility. Technically, the site is built on the 1&1 IONOS Website Editor platform, using modern JavaScript libraries and CDN services, with moderate performance and basic accessibility features. Security posture is adequate with HTTPS enforced but lacks explicit security headers and published security policies. Privacy compliance is weak due to the absence of a privacy policy and terms of service pages, though a cookie consent mechanism is present. Contact information is limited to a phone number with no email or social media links. WHOIS data lacks detailed registrant information, slightly reducing trust but not contradicting the business claims. Overall, the website is a good representation of a small specialized construction business with room for improvement in privacy and security transparency.

50
68
17
70
-
60
100
spezialbauunternehmenparkdecksanierungbauwerksabdichtungfahrbahnmarkierunghannover+4 more
JavaScriptjQueryFlexsliderskrollr+2
2025-10-24T10:24:50.742Z