Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 7 of 20|Showing 301-350 of 980
somfymall.com favicon

(주)솜피

somfymall.com

60
RetailSouth KoreamediumMEDIUM

Somfy Shop KR operates as a specialized e-commerce platform focused on motorized blinds, curtains, and smart home window covering solutions in South Korea. The company offers a broad product range including IoT-enabled blinds and remote controls, targeting tech-savvy consumers seeking home automation. The website is built on the Magento platform, leveraging modern JavaScript libraries and integrations such as Google Tag Manager and Naver Analytics, indicating a mature digital infrastructure. The site is well-structured, mobile-optimized, and provides comprehensive customer support information, including consulting services and multiple contact channels. Security posture is solid with HTTPS enforced and secure cookies, though some security headers could be improved. Privacy and cookie policies are present, supporting basic GDPR compliance, though no explicit advanced compliance frameworks are evident. The absence of WHOIS data for the domain is a notable anomaly that slightly detracts from overall trust but does not undermine the professional presentation and operational maturity of the site. Strategic partnerships with platforms like Naver Smartstore and Samsung SmartThings enhance market reach and product integration. Overall, the site presents a trustworthy and professional front for a medium-sized retail business in the smart home sector.

70
53
2
32
62
80
100
e-commercemotorizedblindssmarthomekoreanmarketmagento+1 more
Magento V2RequireJSjQueryGoogle Tag Manager+3

Partner Domains:

smartstore.naver.com
partner
www.samsung.com
partner
2025-10-20T06:18:00.318Z
grismagazine.cz favicon

HAIR SERVIS

grismagazine.cz

33
RetailCzech RepublicmediumHIGH

Hair Servis is a well-established Czech e-commerce platform specializing in professional hair care and styling products, serving primarily hair salons and wholesale customers. The website offers a broad range of brands and product categories, positioning itself as a key player in the regional hair care retail market. The business has been operating since 2002, supported by a consistent domain registration and a professional online presence. Technically, the website is built on Magento 2, utilizing modern JavaScript libraries such as RequireJS and jQuery, and integrates essential tools like Google Tag Manager, Facebook Pixel, and Cookiebot for analytics and cookie consent management. The site demonstrates good mobile optimization and SEO practices, although some accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and uses Google reCAPTCHA to protect forms, but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is partial, with cookie consent implemented but no visible privacy policy or terms of service. Overall, Hair Servis presents a professional and trustworthy e-commerce platform with room for improvement in privacy transparency and security policy publication. Strategic enhancements in these areas would strengthen compliance and customer trust.

-
-
-
-
62
85
40
e-commercehaircarewholesalemagentoczechrepublic
MagentoRequireJSjQueryGoogle reCAPTCHA+3
2025-10-20T02:51:37.876Z
aedive.es favicon

AEDIVE

aedive.es

56
EnergySpainmediumMEDIUM

AEDIVE is a Spanish business association dedicated to the development and promotion of electric mobility, representing a broad industrial, technological, service, and institutional value chain. The organization holds a strong market position in Spain, supported by institutional partners and a diverse membership base. Their services include advocacy, networking, events, consultancy, and legislative influence, positioning them as a key player in the electric vehicle ecosystem. Technically, the website employs a modern technology stack including jQuery, Handlebars, RequireJS, Bootstrap 5, and Swiper.js, with good mobile optimization and performance. The site integrates analytics and marketing tools with a GDPR-compliant cookie consent mechanism, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and implements cookie consent controls, but lacks visible security headers and explicit incident response policies. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable due to .es domain query restrictions, but the website's professional presentation and institutional backing support its legitimacy. Overall, AEDIVE's website is professional, secure, and compliant, with strong business credibility and user experience. Strategic improvements in security headers and incident response transparency could further enhance trust and resilience.

15
40
17
55
57
80
100
electricmobilityassociationspainenergytransportation+2 more
jQuery 3.3.1HandlebarsRequireJSSwiper.js+6

Partner Domains:

capitalradio.es
partner
cirveproject.com
partner

+1 more partners

2025-10-19T23:29:34.454Z
djangoproject.com favicon

Django Software Foundation

djangoproject.com

66
TechnologyN/amediumMEDIUM

Django is a mature, open source Python web framework supported by the Django Software Foundation, a non-profit organization. The website serves developers and organizations seeking a robust, scalable, and secure web development framework. It offers extensive documentation, community forums, and active engagement channels such as Discord and GitHub. The business model is community-driven with funding through donations and sponsorships, positioning Django as a leading technology project in the web development ecosystem. Technically, the website employs modern JavaScript technologies including RequireJS and custom scripts, with a clean, responsive design optimized for mobile and accessibility. The site uses HTTPS exclusively, ensuring secure communications. SEO and social media metadata are well implemented, enhancing discoverability and sharing. However, some security best practices such as explicit security headers and cookie consent mechanisms are missing. From a security perspective, the site demonstrates a strong posture with no visible vulnerabilities or exposed sensitive data. The project maintains a documented vulnerability disclosure process, though no dedicated security.txt file was found. Privacy compliance is basic, with no explicit privacy or cookie policies prominently displayed, which could be improved to meet GDPR standards. WHOIS data is unavailable, which is unusual but likely due to privacy or registry policies, though this does not detract from the site's legitimacy given its foundation backing. Overall, the site is professional, trustworthy, and technically sound, with minor areas for improvement in privacy and security transparency. Strategic recommendations include adding explicit privacy and cookie policies, implementing security headers, and publishing a security.txt file to enhance trust and compliance.

75
35
17
70
85
65
100
pythondjangoframeworkopen-sourcewebdevelopment+2 more
PythonJavaScriptRequireJS
2025-10-19T10:57:16.978Z
onlinesystem.cz favicon

On line System s.r.o.

onlinesystem.cz

46
OtherCzech RepublicsmallHIGH

On line System s.r.o. operates a professional sports timing and results service platform primarily focused on athletics and mass sports events in the Czech Republic. The company offers advanced timing technologies including SWISS TIMING cameras, active J-Chip technology, and passive RFID UHF chips, catering to a broad spectrum of sports such as running, cycling, triathlon, and skiing. Their market position appears as a specialized regional service provider with a clear focus on delivering precise timing and results management for sports events. Technically, the website is built on a modern ASP.NET MVC framework with integration of popular JavaScript libraries such as jQuery, Bootstrap, RequireJS, and Kendo UI. The site includes Google Analytics and Facebook SDK for tracking and marketing purposes. The website is mobile-optimized with good navigation and content structure, though accessibility features are basic. Cookie consent mechanisms are implemented, reflecting some level of privacy compliance. From a security perspective, the site uses HTTPS and has implemented client-side error logging. However, no HTTP security headers (CSP, HSTS, X-Frame-Options) were detected, and no explicit privacy policy or terms of service pages were found. The WHOIS data for the domain is unavailable, which raises concerns about domain registration legitimacy and reduces overall trust. No signs of malware or phishing were detected, and the content is safe and professional. Overall, the website scores moderately well in content quality, technical implementation, and business credibility but has room for improvement in privacy compliance and security posture. Strategic recommendations include publishing clear privacy and terms policies, implementing security headers, and verifying domain registration details to enhance trust and compliance.

15
25
17
70
90
75
-
sportstimingresultsathleticschiptiming+2 more
Google AnalyticsFacebook SDKjQueryBootstrap+3
2025-10-19T01:15:30.853Z
positivessl.com favicon

Sectigo Limited

positivessl.com

72
TechnologyN/alargeMEDIUM

PositiveSSL.com is the official website for PositiveSSL certificates, a product line of Sectigo Limited, one of the world's largest commercial certificate authorities. The site offers a range of SSL certificates including domain validated, organization validated, extended validation, and code signing certificates. It targets businesses and website owners seeking cost-effective and trusted digital security solutions. The website is professionally designed with clear navigation, comprehensive product information, and multiple purchase options, reflecting a mature e-commerce business model with a strong market position in the digital security industry. Technically, the website employs modern JavaScript libraries such as RequireJS, jQuery, and Slick Carousel, alongside marketing and analytics tools including Google Tag Manager, Visual Website Optimizer, HubSpot, and Cookiebot. The site is mobile optimized and uses HTTPS with strong security headers, indicating a good digital maturity level. Performance is moderate with room for improvement in accessibility features. From a security perspective, the site demonstrates strong SSL configurations and uses WebTrust certified certificates, enhancing trustworthiness. Security best practices such as HTTPS enforcement and security headers are in place. However, there is no explicit security policy or vulnerability disclosure page, and no data protection officer contact information is found, suggesting areas for compliance enhancement. Overall, the website presents a low-risk profile with high professionalism and trust indicators. The missing WHOIS data slightly reduces trust but is mitigated by the strong brand presence and security certifications. Strategic recommendations include publishing a security policy, vulnerability disclosure, and improving accessibility to further strengthen the security posture and compliance.

50
83
10
75
95
75
100
sslcertificatesdomainvalidationcodesigningsecuritysectigo+3 more
RequireJSjQuerySlick CarouselOwl Carousel+6

Partner Domains:

store.positivessl.com
service
www.sectigo.com
parent

+2 more partners

2025-10-18T18:16:33.696Z
eju-education.net favicon

Log in to the site | eju-education.net

eju-education.net

42
EducationN/asmallHIGH

The website eju-education.net serves as an educational login portal, likely supporting students and educators involved with the Examination for Japanese University Admission (EJU). It provides user authentication features including account creation, guest access, and password recovery. The platform is built on Moodle, a widely used open-source learning management system, indicating a focus on structured educational content delivery. The site targets learners preparing for EJU or related educational programs, offering a secure and user-friendly interface for accessing course materials. From a technical perspective, the site employs modern web technologies including Moodle LMS, YUI JavaScript libraries, jQuery, RequireJS, and MathJax for mathematical content rendering. The platform is served over HTTPS with secure login forms incorporating CSRF tokens, reflecting a good baseline security posture. The site is mobile-optimized and accessible, with clear navigation and consistent branding. However, the absence of explicit privacy and terms of service pages, as well as lack of contact information, limits transparency and user trust. Security-wise, the site benefits from HTTPS encryption and secure form handling but lacks visible security headers and formalized privacy compliance mechanisms. No vulnerabilities or malicious content were detected, and no WAF or blocking mechanisms interfere with access. The missing WHOIS data for the domain raises some concerns about registration transparency, though the active and professional nature of the site suggests legitimate operation. Overall, the security posture is solid but could be improved with enhanced privacy disclosures and security headers. Strategically, the site should prioritize publishing comprehensive privacy and cookie policies, implement explicit consent mechanisms, and provide clear contact channels for user support and incident response. Regular security audits and updates to third-party libraries will further strengthen resilience. These steps will enhance user trust, regulatory compliance, and overall platform credibility.

30
50
10
60
57
60
-
educationmoodleloginejuonlinelearning
Moodle LMSYUI 3.18.1jQuery 3.7.1RequireJS+2

Partner Domains:

www.eju.net
partner
2025-10-18T02:49:45.123Z
corneliani.com favicon

Corneliani S.p.A.

corneliani.com

74
RetailItalymediumMEDIUM

Corneliani S.p.A. is a well-established Italian luxury menswear brand specializing in high-end clothing, shoes, and accessories. The company targets discerning male customers seeking timeless elegance and quality craftsmanship. The website serves as an official e-commerce platform offering the latest collections, gift cards, and store locator services, supporting a global audience with multiple language and country versions. The business model focuses on direct retail through an online store, complemented by physical retail presence. Technically, the website is built on the Magento Commerce platform, leveraging modern JavaScript libraries such as RequireJS, KnockoutJS, and jQuery. It integrates advanced marketing and payment tools including Google Tag Manager, Klarna, Amazon Pay, and Hotjar for analytics and user experience enhancement. The site is mobile optimized and demonstrates good SEO and accessibility practices. From a security perspective, the site enforces HTTPS, uses reCAPTCHA on login forms, and applies secure cookie settings. However, some security headers are not explicitly visible in the HTML source and could be verified or improved. No explicit security policy or incident response contact is published, which could be enhanced to improve trust and compliance. Overall, the website presents a professional and trustworthy front for Corneliani's luxury retail business. The main concern is the absence of WHOIS registration data, which is unusual for a commercial domain and slightly reduces domain trustworthiness. This may be due to privacy protection or a WHOIS server issue. Strategic recommendations include verifying domain registration details, enhancing security headers, and publishing a security policy and incident response information.

80
80
17
70
82
85
100
luxurymenswearecommercefashionitaly+2 more
Magento CommerceRequireJSjQueryKnockoutJS+7

Partner Domains:

klarna.com
partner
amazon.com
partner
2025-10-17T23:43:38.830Z
razitkacolop.cz favicon

COLOP CZ

razitkacolop.cz

51
RetailCzech RepublicmediumMEDIUM

COLOP CZ operates as the largest distributor and manufacturer of COLOP stamps in the Czech Republic, boasting over 30 years of experience. The company offers a comprehensive range of stamp products including company stamps, date and numbering stamps, special stamps, and related accessories. Their business model integrates e-commerce with a robust local dealer network, allowing customers to select branches via an interactive map for personal pickup or postal delivery. The website is primarily in Czech and targets businesses and individuals within the Czech market seeking stamp products and services. Technically, the website is built on the Magento e-commerce platform, utilizing modern JavaScript libraries such as jQuery, KnockoutJS, and Google Maps API for interactive dealer location mapping. The site demonstrates moderate performance with good mobile optimization and basic accessibility features. SEO optimization is basic but functional, with proper meta tags and structured navigation. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism compliant with GDPR. However, no explicit security headers were detected in the provided data, suggesting room for improvement. No vulnerabilities or exposed sensitive data were found in the HTML content. Privacy policies and cookie banners are present and comprehensive, indicating a good privacy posture. Overall, the website presents a professional and trustworthy front for COLOP CZ, with a solid business presence and technical infrastructure. The lack of WHOIS data due to privacy protection is common and does not detract from the site's legitimacy. Strategic recommendations include enhancing security headers, improving accessibility compliance, and auditing third-party scripts regularly to maintain security and compliance.

50
40
17
65
52
85
20
ecommerceretailstampsczechcookie-consent+1 more
MagentojQueryGoogle Maps APIRequireJS+2
2025-10-16T22:46:20.751Z
dmsg-coach.de favicon

Deutsche Multiple Sklerose Gesellschaft, Bundesverband e.V.

dmsg-coach.de

55
HealthcareGermanymediumMEDIUM

The Deutsche Multiple Sklerose Gesellschaft operates the DMSG-COACHES platform, a specialized online educational and coaching service aimed at improving the quality of life for Multiple Sclerosis patients in Germany. The organization is a recognized non-profit entity providing structured courses and personal development opportunities through a Moodle-based learning management system. The platform targets patients, caregivers, and professionals involved in MS care, positioning itself as a trusted national resource. Technically, the website leverages a mature and stable Moodle LMS infrastructure with modern JavaScript libraries such as jQuery and YUI, ensuring a responsive and accessible user experience. The site is well-structured with clear navigation and mobile optimization, although SEO practices are basic. Hosting details and domain registration are consistent with a legitimate organization, and HTTPS is properly enforced. From a security perspective, the site demonstrates good baseline practices including HTTPS and no visible sensitive data exposure. However, it lacks advanced security headers and published security policies or incident response information. GDPR compliance is partially addressed with a clear privacy policy, but no cookie consent mechanism is present. No advertising or tracking technologies were detected, indicating a privacy-conscious approach. Overall, the website presents a low-risk profile with strong business credibility and good technical implementation. Strategic improvements in privacy compliance and security transparency would enhance trust and regulatory adherence.

50
28
2
70
52
60
100
moodlehealthcareeducationnon-profitmultiplesclerosis+1 more
Moodle LMSYUI JavaScript LibraryjQuery 3.7.1RequireJS+2
2025-10-16T19:36:07.994Z
xrewards.lv favicon

Citadele

xrewards.lv

65
FinanceLatviamediumMEDIUM

The website www.xrewards.lv represents the C REWARDS program, a loyalty and rewards platform for Citadele Bank cardholders in the Baltic region. It offers users the ability to earn points on purchases and redeem them for various rewards, positioning itself as a key value-added service within the banking sector. The site is professionally designed, mobile-optimized, and integrates modern web technologies including Magento CMS, RequireJS, and Google Tag Manager for analytics and marketing. From a technical perspective, the site demonstrates a mature digital infrastructure with performance monitoring via New Relic and a comprehensive cookie consent mechanism aligned with GDPR requirements. However, there is room for improvement in security posture, particularly in implementing and exposing security headers and publishing a formal security policy or incident response contacts. Security-wise, the site uses HTTPS and does not expose sensitive data in its HTML content. No WAF or blocking mechanisms interfere with accessibility. The WHOIS data confirms the domain's legitimacy and consistency with the business claims, reinforcing trustworthiness. No critical vulnerabilities or suspicious patterns were detected. Overall, the website presents a low-risk profile with good privacy compliance and business credibility. Strategic enhancements in security headers and incident response transparency would further strengthen its security posture and trust signals.

85
73
2
40
77
60
100
financerewardsbankingloyaltyprogrammagento+1 more
MagentoRequireJSjQueryKnockoutJS+2

Partner Domains:

www.citadele.lv
partner
online.citadele.lv
partner
2025-10-16T16:29:44.096Z
zivotsestomii.cz favicon

HARTMANN – RICO a.s.

zivotsestomii.cz

10
HealthcareCzech RepublicmediumCRITICAL

The website www.zivotsestomii.cz represents a healthcare-focused business under the brand Dansac, operated by HARTMANN – RICO a.s. It specializes in the development, manufacturing, and distribution of ostomy care products, targeting stomy patients and their families in the Czech Republic. The site offers comprehensive educational content, product information, and customer support, positioning itself as a trusted resource in the stomy care market. Technically, the site employs modern JavaScript frameworks, cookie consent management via Cookiebot, and analytics tools including Google Analytics and Sitecore Engagement Analytics. The site is well-structured, mobile-optimized, and SEO-friendly, providing a professional user experience. Security posture is solid with HTTPS enforced and CSRF protections, though some security headers are missing and should be implemented to enhance protection. Privacy compliance is robust with clear cookie and privacy policies and consent mechanisms in place. However, the WHOIS data for the domain is unavailable, limiting the ability to fully verify domain legitimacy and registration details. Overall, the site is a credible and professional platform with minor technical and security improvements recommended.

-
-
-
-
-
-
-
healthcarestomiamedicaldevicespatientsupportcookieconsent+2 more
JavaScriptRequireJSCookiebotGoogle Tag Manager+2

Partner Domains:

www.hartmann.info
partner
www.lecbarany.cz
partner
2025-10-16T08:44:33.430Z
P

ProAlergiky

proalergiky.cz

63
HealthcareCzech RepublicmediumMEDIUM

ProAlergiky.cz is a specialized e-commerce and informational portal serving individuals with allergies, asthma, and atopic eczema in the Czech Republic. It offers a wide range of specialized products such as inhalers, air purifiers, humidifiers, and allergy-friendly bedding, combined with practical advice and health-related content. The site positions itself as the largest portal of its kind in the Czech market, targeting a niche healthcare audience with a medium-sized business model focused on retail and education. Technically, the website leverages modern JavaScript frameworks like Vue.js, integrates multiple analytics and marketing tools including Google Tag Manager, Microsoft Clarity, and Facebook Pixel, and operates on a custom e-commerce platform (CMTrade). The site is mobile-optimized and provides a good user experience with clear navigation and professional design. Security-wise, the site enforces HTTPS, uses secure login forms with CSRF tokens, and includes several security headers, though some recommended headers like Content-Security-Policy are not explicitly detected. Privacy compliance is partial, with a cookie consent mechanism present but no clear privacy policy or terms of service found in the provided content. WHOIS data is not publicly available, indicating privacy protection, which is common for commercial sites but slightly reduces transparency. Overall, the site is trustworthy and professionally managed but could improve privacy disclosures and security header implementations.

60
25
17
70
72
85
100
healthcaree-commerceallergyasthmaatopiceczema+1 more
JavaScriptVue.js (inferred from v-if, v-for directives)Google Tag ManagerMicrosoft Clarity+5

Partner Domains:

www.prealergikov.sk
partner
2025-10-15T23:51:43.746Z
bundesfinanzministerium.de favicon

Bundesministerium der Finanzen

bundesfinanzministerium.de

63
GovernmentGermanyenterpriseMEDIUM

The Bundesfinanzministerium website serves as the official digital presence of the German Federal Ministry of Finance, providing comprehensive information on finance, taxation, public budget, and economic policy. It targets a broad audience including citizens, businesses, media, and policymakers. The site offers key services such as tax information, public finance data, customs details, and various online calculators and publications. The ministry holds a strong market position as the federal authority responsible for financial governance in Germany. Technically, the website is built on a government-specific CMS (Government Site Builder) and employs modern JavaScript libraries including jQuery and RequireJS. It integrates Matomo analytics with a strict consent mechanism ensuring GDPR compliance and user privacy. The site demonstrates good performance, mobile optimization, and excellent accessibility features including sign language and plain language options. From a security perspective, the site enforces HTTPS, anonymizes IP addresses in analytics, and respects user consent for tracking. While explicit security policies and incident response contacts are not published, the site follows best practices for privacy and data protection. No vulnerabilities or suspicious elements were detected in the content or WHOIS data, which aligns with the official government entity. Overall, the website is professional, trustworthy, and compliant with privacy regulations, making it a reliable source of official financial information for Germany.

50
43
17
70
62
70
100
financegovernmenttaxespublicfinanceaccessibility+3 more
JavaScriptjQuery 3.6.0RequireJSMatomo Analytics
2025-10-14T13:30:36.642Z
K

KS Læring

kslaring.no

64
GovernmentNorwaymediumMEDIUM

KS Læring is a Norwegian e-learning platform focused on providing a comprehensive catalogue of courses tailored for municipal employees, leaders, and other public sector roles. The platform is built on the Moodle LMS and offers a wide range of educational content categorized by region, course format, target audience, and thematic areas. It serves as a key resource for public sector competence development in Norway, reflecting a strong market position within government education services. Technically, the website leverages modern web technologies including Moodle, YUI, jQuery, and MathJax, ensuring a robust and accessible learning environment. The platform is mobile-optimized and incorporates accessibility features, although some SEO and cookie consent mechanisms could be improved. The site is served over HTTPS, indicating a secure transport layer. From a security perspective, the platform demonstrates good practices such as secure session management and use of modern libraries. However, the absence of explicit security headers and cookie consent mechanisms suggests room for enhancement in compliance and security posture. The WHOIS data is unavailable due to Norid's privacy policies for .no domains, which is typical and does not raise immediate concerns. Overall, KS Læring presents a trustworthy and professional educational service with a solid technical foundation. Strategic improvements in privacy compliance and security headers would further strengthen its security and regulatory posture.

15
50
25
70
95
80
100
educatione-learningmunicipalitynorwaymoodle+2 more
Moodle LMSYUI 3.17.2jQuery 3.5.1MathJax 2.7.8+3
2025-10-14T02:23:44.037Z