Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 7 of 22|Showing 301-350 of 1098
gbh.at favicon

Gewerkschaft BAU-HOLZ (GBH)

gbh.at

73
Non-profitAustrialargeMEDIUM

Gewerkschaft BAU-HOLZ (GBH) is a prominent Austrian trade union representing workers in the construction and wood industries. The website serves as a comprehensive portal for members, offering services such as legal protection, education, collective bargaining information, and support benefits. It is well integrated with its parent organization ÖGB and related media services like GBH-News and GBH-TV. The site targets union members and workers in Austria, providing relevant news, campaigns, and member-exclusive offers. Technically, the website is built on Adobe Experience Manager, leveraging modern web technologies including Usercentrics for consent management, self-hosted Matomo analytics, and hCaptcha for form security. The site is performant, mobile-optimized, and accessible, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses bot protection on forms, and respects user privacy with a comprehensive GDPR-compliant privacy policy. However, explicit security policies and incident response contacts are not published, representing an area for improvement. No critical vulnerabilities or suspicious elements were detected. Overall, the website presents a professional, trustworthy, and secure platform aligned with the organization's mission. It effectively balances user experience, privacy compliance, and technical robustness, making it a reliable resource for its members.

80
73
17
75
72
80
100
tradeunionconstructionwoodindustryaustriamemberservices+3 more
Adobe Experience Manager (AEM)Usercentrics Consent Management PlatformMatomo Analytics (self-hosted)hCaptcha+2

Partner Domains:

oegb.at
parent
gbh-news.at
service

+1 more partners

2025-10-23T01:21:55.833Z
eure-trainer-gesucht.de favicon

Sparkasse

eure-trainer-gesucht.de

66
FinanceGermanymediumMEDIUM

Eure Trainer Gesucht is a German-language platform dedicated to promoting and honoring volunteer sports trainers across Germany. Supported primarily by the Sparkassen-Finanzgruppe and partners such as Deka and Deutsche Leasing, the initiative encourages public nominations and voting to award financial grants and special prizes to deserving trainers and their clubs. The website is professionally designed with clear navigation, mobile optimization, and a focus on community engagement in amateur sports. Technically, the site leverages modern web technologies including ES modules, Bootstrap 5, and Cloudflare services for DNS and CDN. It employs secure form handling with CSRF tokens and client-side validation, alongside a comprehensive cookie consent mechanism compliant with GDPR. Google Analytics is used for moderate user tracking with transparent privacy controls. From a security perspective, the website demonstrates good practices such as HTTPS enforcement, secure cookies, and input validation. However, it lacks explicit security policy or incident response pages and does not provide a vulnerability disclosure mechanism. No critical vulnerabilities or suspicious content were detected, and the domain registration is consistent with the website's branding and purpose. Overall, Eure Trainer Gesucht presents a trustworthy, well-maintained platform with strong business credibility and a clear mission to support volunteer sports engagement in Germany. Strategic improvements could include enhanced accessibility, formal security policies, and incident response contact information to further strengthen trust and compliance.

55
83
2
70
75
60
100
sportsvolunteeringnon-profitfinancesparkasse+1 more
JavaScript ES ModulesBootstrap 5Cloudflare DNS and CDNGoogle Analytics

Partner Domains:

www.deka.de
partner
www.deutsche-leasing.com
partner

+1 more partners

2025-10-22T21:25:09.072Z
apps2.me favicon

Apps2me

apps2.me

55
TechnologyIcelandsmallMEDIUM

Apps2me is a newly launched technology platform focused on providing a store and hosting environment for Telegram mini apps. The platform targets Telegram users and developers interested in mini apps, positioning itself as a niche player in the Telegram ecosystem. The business model revolves around offering a centralized place to explore and add new Telegram mini apps, leveraging the popularity of Telegram's mini app capabilities. The company is small and recently founded in 2024, with domain registration consistent with a startup phase. Technically, the website uses modern web technologies including jQuery 3.7.0 and ES modules for JavaScript, with a responsive design optimized for mobile devices. Hosting is provided by Spaceship, Inc., and the site uses HTTPS, though lacks advanced security headers and DNSSEC. SEO and accessibility are basic but functional. The site includes a cookie consent banner but lacks comprehensive privacy or terms of service documentation. From a security perspective, the site benefits from HTTPS but is missing important security headers and DNSSEC, which reduces its security posture. No incident response or security policies are published, and no contact information is provided, which limits transparency and trust. The WHOIS data shows privacy protection and a recent domain registration, typical for a small tech startup, with no suspicious indicators. Overall, the site is functional and moderately trustworthy but has gaps in privacy compliance and security best practices. Strategic improvements in security headers, privacy policies, and contact transparency would enhance trust and compliance.

25
65
2
60
52
70
100
telegramminiappstechnologyplatformappsstore
jQuery 3.7.0JavaScript ES ModulesCSSHTML5
2025-10-22T18:15:31.612Z
mobilithek.info favicon

Bundesministerium für Digitales und Verkehr

mobilithek.info

65
TransportationGermanymediumMEDIUM

Mobilithek.info is a German government-operated platform under the Bundesministerium für Digitales und Verkehr, providing open mobility data and serving as a national access point and marketplace for mobility data in Germany. The platform targets businesses, municipalities, data providers, and mobility enthusiasts from various sectors including economy, science, and public administration. It offers services such as data searching, data delivery facilitation, and community networking through a professional and well-maintained website. Technically, the website employs modern web technologies including JavaScript ES modules and Vue.js framework, with a responsive and accessible design optimized for mobile devices. The site demonstrates good SEO practices and fast performance, although no common CMS or hosting provider details are evident. Security-wise, the site uses HTTPS and avoids exposing sensitive data, but lacks visible security headers and explicit incident response or vulnerability disclosure mechanisms. Overall, the security posture is solid but could be improved by implementing additional security headers and publishing a security.txt or vulnerability disclosure policy. The WHOIS data is limited due to TLD restrictions and privacy, but the domain's association with a federal ministry strongly supports legitimacy. No signs of malicious activity or suspicious content were found, and the site maintains high standards of professionalism and trustworthiness.

55
53
17
70
67
75
100
mobilityopendatatransportationgovernmentgermany+1 more
JavaScript ES ModulesCSSSVG icons
2025-10-22T12:49:43.680Z
dh-verwertung.de favicon

D+H Verwertung Gmbh

dh-verwertung.de

50
TransportationGermanysmallMEDIUM

D+H Verwertung Gmbh is a German company specializing in waste management, recycling, and container rental services. The company targets businesses and individuals in the Kamp-Lintfort region and offers a range of services including acceptance and delivery catalogs, container ordering, and environmental protection consulting. The website presents a professional and consistent brand image with clear contact information and legal documentation, supporting its credibility in the regional market. Technically, the website employs modern frontend technologies such as Alpine.js and Tailwind CSS, hosted on Strato servers. The site is mobile-optimized and uses HTTPS with appropriate security headers, indicating a good level of digital maturity. However, there is no visible cookie consent mechanism or advanced analytics, suggesting room for improvement in privacy compliance and data transparency. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and CSRF token usage, but lacks published security policies or incident response contacts. No vulnerabilities or suspicious patterns were detected in the provided content. Overall, the security posture is solid but could be enhanced by formalizing policies and improving user privacy controls. The overall risk assessment is moderate with a recommendation to implement cookie consent, publish security and incident response policies, and consider adding a vulnerability disclosure framework. These steps would improve compliance, user trust, and security readiness, aligning the company with best practices in digital governance.

30
43
2
65
72
70
40
wastemanagementrecyclingcontainerrentalenvironmentalprotectiongermany
JavaScript ES ModulesTailwind CSSAlpine.js
2025-10-22T08:08:11.126Z
onlinecasinodeals.gr favicon

Online Casino Deals

onlinecasinodeals.gr

54
OtherGreecesmallMEDIUM

Online Casino Deals is a specialized affiliate marketing platform focused on providing comprehensive reviews, rankings, and bonus guides for online casinos targeting Greek players. The website positions itself as a trusted resource for safe and licensed online gambling in Greece, emphasizing regulatory compliance and responsible gaming. It promotes partner casinos through affiliate links, offering exclusive bonuses and detailed casino evaluations. Technically, the site employs modern web technologies including React, Google Tag Manager, and responsive design principles, ensuring excellent mobile optimization and user experience. The content is rich, well-structured, and localized in Greek, supporting strong SEO and accessibility standards. From a security perspective, the website uses HTTPS and follows best practices such as avoiding exposed sensitive data and leveraging third-party certifications like eCOGRA and iTech Labs to build trust. However, it lacks visible cookie consent mechanisms and explicit security or incident response policies, which are areas for improvement. Overall, the site demonstrates a high level of professionalism and trustworthiness in the online gambling affiliate niche for Greece, with moderate privacy compliance and a solid security posture. Strategic enhancements in privacy compliance and security transparency would further strengthen its market position.

45
10
2
60
57
75
100
onlinecasinogreecegamblingcasinobonusesslots+1 more
JavaScript ES ModulesGoogle Tag ManagerSonner toast notifications

Partner Domains:

yoyospin.com
partner
gomblingo.com
partner

+1 more partners

2025-10-22T04:41:12.046Z
ladepeche.fr favicon

La Dépêche du Midi

ladepeche.fr

63
MediaFrancelargeMEDIUM

La Dépêche du Midi operates as a prominent regional news media outlet serving the Occitanie region in France. The website provides real-time news updates, local and regional information, and multimedia content including photos and videos. Its business model is primarily based on advertising revenue and subscription services, offering both free access with personalized advertising and premium content for subscribers without personalized cookies. The site maintains a strong brand presence with consistent and professional design, targeting a general audience interested in regional news, sports, politics, and culture. Technically, the website employs modern web technologies including Google Tag Manager for analytics, Didomi for consent management, and Materialize CSS for responsive design. The site is well-optimized for mobile devices and demonstrates good SEO and accessibility practices. Performance is moderate, with multiple third-party scripts integrated for advertising and user tracking. From a security perspective, the site enforces HTTPS with strong SSL configuration and implements key security headers. Consent management is robust, aligning with GDPR requirements. However, the absence of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms indicates room for improvement in transparency and security maturity. Overall, the website is trustworthy and professional, though the lack of WHOIS registration data reduces domain trust verification. Strategic recommendations include publishing detailed security policies, establishing incident response contacts, and adding vulnerability disclosure information to enhance security posture and user trust.

60
25
17
75
67
80
100
newsmediaregionalfranceoccitanie+5 more
Google Tag ManagerDidomi Consent Management PlatformMaterialize CSSJavaScript ES Modules+2

Partner Domains:

profil.ladepeche.fr
partner
kiosque.ladepeche.fr
partner

+2 more partners

2025-10-21T23:14:51.193Z
noviny.sk favicon

Slovenská produkčná, a.s.

noviny.sk

64
MediaSlovakialargeMEDIUM

Noviny.sk is a prominent Slovak online news portal operated by Slovenská produkčná, a.s., a media company based in Bratislava, Slovakia. The website offers a wide range of news content including politics, economy, sports, crime, weather, and multimedia such as videos and podcasts. It targets a general audience seeking up-to-date news and information. The business model relies primarily on advertising revenue, supported by multiple ad networks and programmatic bidding technologies integrated into the site. The portal is part of a larger media group including joj.sk and jojgroup.sk, enhancing its market position in the Slovak media landscape. Technically, the website employs modern JavaScript modules, header bidding with Prebid.js, and multiple analytics and advertising platforms such as Google Analytics, Facebook Pixel, Gemius, Smart AdServer, and Teads. Consent management is handled via the Didomi CMP, ensuring GDPR compliance mechanisms are in place. The site is mobile-optimized with good SEO practices and structured data markup to enhance search engine visibility. From a security perspective, the site enforces HTTPS and uses consent management for privacy compliance. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not visibly implemented, and there is no public security policy or incident response contact information. No vulnerabilities or exposed sensitive data were detected in the provided HTML content. Overall, the security posture is moderate but could be improved with additional headers and transparency. The overall risk assessment is low, with the site appearing legitimate, professionally managed, and compliant with basic privacy regulations. Strategic recommendations include publishing clear privacy and terms of service pages, enhancing security headers, and providing incident response contacts to improve trust and compliance.

55
25
17
85
75
75
100
newsmediaslovakiaonlinenewsadvertising+2 more
JavaScript ES modulesPrebid.js for header biddingGoogle Tag ManagerGoogle Analytics+6

Partner Domains:

joj.sk
partner
jojgroup.sk
partner

+1 more partners

2025-10-21T16:57:07.227Z
lilletourism.com favicon

Office de Tourisme de Lille

lilletourism.com

66
HospitalityFrancemediumMEDIUM

The website www.lilletourism.com serves as the official online presence of the Office de Tourisme de Lille, providing comprehensive tourism information, cultural insights, and online booking services for visitors to Lille, France. It targets tourists and visitors interested in exploring Lille's heritage, events, gastronomy, and shopping. The site is multilingual, supporting French, English, and Dutch, enhancing accessibility for international visitors. Technically, the website is built on WordPress with a custom Woody theme and leverages modern JavaScript libraries and modules to deliver a rich, responsive user experience. Accessibility and SEO best practices are well implemented, contributing to excellent content quality and navigation clarity. Security-wise, the site enforces HTTPS and uses cookie consent frameworks but lacks explicit security headers and published privacy or incident response policies, which are areas for improvement. The absence of WHOIS data is notable but does not detract significantly from the site's legitimacy given its professional presentation and official branding. Overall, the website demonstrates a mature digital infrastructure suitable for its role in tourism promotion, with recommendations to enhance privacy transparency and security posture.

15
85
17
85
62
85
100
tourismlilletravelcultureevents+3 more
JavaScript ES ModulesjQuery 3.7.1Highcharts 12.1.2Swiper.js+8

Partner Domains:

reservation.lilletourism.com
partner
hellolille.eu
partner
2025-10-21T14:31:14.454Z
toot.cafe favicon

Toot Café

toot.cafe

60
TechnologyN/asmallMEDIUM

Toot Café is an independent Mastodon instance primarily serving a community interested in web design and development. It operates as a social networking platform within the fediverse, leveraging the open-source Mastodon software (version 4.4.7). The site provides features such as trending posts, hashtags, and a profiles directory, targeting users who seek decentralized social networking without ads or algorithms. The platform is administered by an individual named Nolan Lawson, indicating a small-scale community-driven operation. Technically, the website employs modern web technologies including React, JavaScript ES modules, and WebSockets for real-time streaming. The presence of a manifest file suggests support for progressive web app features. While the site appears to be mobile-optimized and has a good design quality, accessibility and SEO optimizations are basic. Performance is moderate, with no major issues detected in the HTML structure or resource loading. From a security perspective, HTTPS is implied and WebSocket connections use secure protocols. However, no explicit security headers were detected in the provided data, and there is no visible cookie consent mechanism or published terms of service. WHOIS data is unavailable due to unsupported TLD WHOIS queries, which slightly reduces trustworthiness. No contact information or incident response channels are published, limiting transparency. No advertising or tracking technologies were found, indicating a privacy-conscious approach. Overall, Toot Café presents as a legitimate, community-focused Mastodon instance with good technical foundations but some gaps in security best practices and compliance documentation. Strategic improvements in security headers, privacy compliance, and transparency would enhance trust and resilience.

75
58
17
60
72
85
40
mastodonsocialnetworkfediversewebdesignwebdevelopment+1 more
Mastodon 4.4.7ReactJavaScript ES ModulesCSS+2
2025-10-21T03:38:28.813Z
B

Boutique Labess

labess.com

62
E-commerceFrancesmallMEDIUM

Boutique Labess is a French e-commerce website dedicated to selling music albums and merchandise related to the musical group Labess, along with promoting upcoming concerts. The website targets fans and customers interested in music-related products, primarily French-speaking audiences. The business operates on the Shopify platform, leveraging its e-commerce capabilities and payment integrations such as Shopify Payments and Apple Pay. The site demonstrates a modern technical infrastructure with good mobile optimization and accessibility features, using the Dawn Shopify theme and various JavaScript modules for enhanced user experience. From a security perspective, the website enforces HTTPS and uses clientTransferProhibited status on the domain to prevent unauthorized transfers. It employs hCaptcha for form protection and integrates Facebook Pixel for marketing analytics. However, it lacks explicit privacy and cookie policies, security headers like CSP, and vulnerability disclosure information, which are areas for improvement. DNSSEC is not enabled, which could enhance DNS security. No direct company contact emails or phone numbers are published, relying instead on contact forms and social media channels. Overall, Boutique Labess presents a professional and trustworthy online presence with a solid technical foundation but requires enhancements in privacy compliance and security transparency to meet higher standards. The domain age and registration details support the legitimacy of the business. Strategic recommendations include publishing comprehensive privacy and cookie policies, enabling DNSSEC, adding security headers, and providing incident response contacts to improve trust and compliance.

75
35
2
70
57
80
100
musice-commercemerchandiseconcertsshopify+1 more
ShopifyJavaScript ES modulesFacebook PixelShopify Payments+2
2025-10-20T21:35:14.232Z
moshbit.com favicon

Moshbit GmbH

moshbit.com

11
FinanceAustriasmallCRITICAL

Moshbit GmbH operates a professional website offering Controlling as a Service, primarily targeting tech-oriented startups and small to medium-sized enterprises (KMUs) in Austria and German-speaking markets. Their key services include financial planning, forecasting, dashboards, KPI tracking, investment calculations, and strategic consulting. The company presents itself as a niche service provider with a focus on efficient and tailored financial controlling solutions, leveraging their proprietary CoreControlling® tool. The website is well-branded, consistent, and provides clear service descriptions and team information, enhancing business credibility. Technically, the website uses modern frontend technologies such as Tailwind CSS and Alpine.js, with assets hosted on Amazon S3, indicating a modern and scalable infrastructure. The site is mobile-optimized, fast-loading, and accessible, with good SEO practices. However, some security best practices like DNSSEC and security headers are not implemented, representing minor improvement areas. From a security perspective, the site enforces HTTPS and has domain transfer protections, but lacks published security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy compliance is partially met with a privacy policy present, but no cookie consent mechanism is detected. Contact information is primarily via a web form, with no direct emails or phone numbers listed. Social media presence is limited to LinkedIn profiles of key team members. Overall, the website is professional, trustworthy, and well-suited for its target audience, but could enhance security posture and privacy compliance by implementing additional security headers, DNSSEC, cookie consent, and incident response disclosures.

-
-
-
-
-
-
-
controllingfinancestartupskmusfinancialplanning+6 more
Tailwind CSSAlpine.jsJavaScript ES Modules
2025-10-20T20:28:17.470Z