Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 72 of 248|Showing 3551-3600 of 12372
vdfin.be favicon

Volkswagen D'Ieteren Finance

vdfin.be

62
FinanceBelgiummediumMEDIUM

Volkswagen D'Ieteren Finance operates as a financial services provider specializing in vehicle financing and leasing solutions primarily for Volkswagen customers in Belgium. The company targets businesses, private individuals, and dealers, offering tailored financial products to support vehicle acquisition and mobility. The website reflects a professional brand presence consistent with the Volkswagen and D'Ieteren group, emphasizing mobility and finance services. Technically, the website is built using modern web technologies including React and Google Tag Manager for analytics. The site is mobile-optimized and demonstrates moderate performance with good design quality and user experience. However, some areas such as accessibility and SEO could be improved. The website uses HTTPS with a strong SSL configuration but lacks explicit security headers and published security policies. From a security perspective, the site shows good baseline practices such as HTTPS enforcement and no visible vulnerabilities or exposed sensitive data. Privacy compliance is supported by the presence of privacy and cookie policies with consent mechanisms, aligning with GDPR requirements. However, the absence of incident response contacts and vulnerability disclosure policies suggests room for maturity improvement. Overall, the website and domain appear legitimate and professionally managed, though the WHOIS data is restricted, limiting transparency. The site is safe for general audiences, with no adult or questionable content. Strategic recommendations include enhancing security headers, publishing security and incident response policies, improving accessibility, and expanding SEO metadata to strengthen trust and compliance.

60
28
2
60
85
80
100
financeautomotivevolkswagenleasingbelgium
ReactGoogle Tag ManagerWebpackJavaScript+2
2025-10-11T14:12:46.048Z
prg.com favicon

Production Resource Group | PRG

prg.com

74
MediaN/aenterpriseMEDIUM

Production Resource Group (PRG) is a global leader in providing comprehensive event technology solutions and production services across multiple entertainment sectors including theatre, TV, film, music, corporate events, and special events. Their website reflects a mature enterprise with a broad service portfolio including audio, lighting, rigging, video, and specialized offerings such as LED trucks and used equipment sales. The company targets event organizers and production professionals worldwide, emphasizing technical expertise and creative partnership. Technically, the website employs modern web technologies including JSON-LD structured data, JavaScript tracking via Leadinfo, and cookie consent management through OneTrust, indicating a commitment to privacy compliance and user experience. The site is well-optimized for mobile devices and SEO, with clear navigation and multi-language support enhancing accessibility for a global audience. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, but lacks visible advanced security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The absence of WHOIS data for the domain is a notable anomaly that reduces trustworthiness from a domain registration perspective, although the website content and branding strongly suggest legitimacy. Overall, PRG's website demonstrates a high level of professionalism and digital maturity suitable for an enterprise in the media and event technology sector. Strategic improvements in transparency around security policies and domain registration details would further enhance trust and compliance posture.

25
88
17
98
100
85
100
eventtechnologyproductionservicesliveeventscorporateeventsentertainment+5 more
JavaScriptCSSHTML5JSON-LD+3

Partner Domains:

led-trucks.prg.com
partner
prg-proshop.com
partner
2025-10-11T13:07:58.175Z
haspa-musik-stiftung.de favicon

HASPA Musik Stiftung

haspa-musik-stiftung.de

46
Non-profitGermanysmallHIGH

The HASPA Musik Stiftung website serves as an informational platform for a Hamburg-based non-profit foundation dedicated to supporting children and youth in their musical development. The foundation partners with various local music projects and institutions to foster musical talent and enrich the cultural landscape of Hamburg. The website content is well-structured, professionally presented, and primarily targets local community members, music enthusiasts, and potential donors. Technically, the site is built on the TYPO3 CMS platform, leveraging custom JavaScript for email obfuscation and standard CSS for styling. The site demonstrates good mobile optimization and basic accessibility features, though there is room for improvement in security headers and cookie consent mechanisms. Hosting appears professional with DNS managed by reputable providers. From a security perspective, the site uses HTTPS (implied by canonical URL), but lacks explicit security headers and cookie consent banners, which are important for GDPR compliance. No forms or direct contact emails are exposed in raw form, reducing spam risk. No vulnerability disclosures or incident response policies are published, indicating a potential area for enhancement. Overall, the website is trustworthy and professional, with a solid business credibility score. Strategic improvements in privacy compliance and security posture would enhance user trust and regulatory adherence.

25
28
2
60
72
65
40
musicfoundationhamburgnon-profitculture+2 more
TYPO3 CMSJavaScriptCSS
2025-10-11T13:07:53.139Z
W

Women's National Basketball Association

wnba.com

74
MediaUnited StateslargeMEDIUM

The Women's National Basketball Association (WNBA) official website serves as the authoritative digital platform for the league, providing comprehensive information including schedules, standings, player stats, team details, news, ticket sales, and merchandise. The site targets basketball fans and sports enthusiasts, positioning itself as a key media outlet for women's professional basketball in the United States. The website is well-branded, professionally designed, and consistently maintained, reflecting the league's stature and market presence. Technically, the site leverages modern web technologies such as React and Next.js, ensuring fast performance, mobile responsiveness, and good accessibility. It integrates various third-party services for analytics, advertising, and consent management, demonstrating a mature digital infrastructure. The presence of comprehensive privacy and cookie policies with active consent mechanisms indicates a strong commitment to privacy compliance, including GDPR. From a security perspective, the website enforces HTTPS with excellent SSL configuration and implements multiple security headers, contributing to a robust security posture. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a publicly accessible security.txt or incident response information suggests room for improvement in transparency and vulnerability management. Overall, the website presents a low-risk profile with high trustworthiness and professionalism. The main limitation is the lack of publicly available WHOIS data, likely due to privacy protection, which does not detract from the site's legitimacy given its official branding and content. Strategic recommendations include publishing security and incident response policies and enhancing contact transparency to further strengthen trust and security culture.

30
100
17
85
90
85
100
sportsbasketballwnbawomenssportsmedia+3 more
ReactNext.jsJavaScriptCSS+3

Partner Domains:

wnbacleveland.com
partner
wnbaexperiences.com
partner

+1 more partners

2025-10-11T09:35:36.824Z
xyflow.com favicon

xyflow

xyflow.com

60
TechnologyGermanysmallMEDIUM

xyflow is a small Berlin-based technology company specializing in the development and maintenance of open source libraries for building node-based user interfaces with React and Svelte. Their flagship products, React Flow and Svelte Flow, are widely adopted by developers and companies such as Stripe and Typeform, positioning xyflow as a key player in the niche of interactive diagram and workflow UI components. The company operates an informative and professionally designed website that serves both as a marketing platform and a community hub. Technically, the website is built using modern web technologies including Next.js, React, and Svelte, hosted on alwaysdata.com. It demonstrates excellent performance, mobile optimization, and SEO practices. The site integrates minimal user tracking via Fathom Analytics, respecting user privacy without intrusive cookie consent mechanisms. The technical infrastructure reflects a mature digital presence suitable for a small but focused software development team. From a security perspective, the site enforces HTTPS and employs domain transfer protection. However, it lacks some advanced security headers and does not publicly disclose a security policy or incident response contacts. No vulnerabilities or suspicious activities were detected in the content or WHOIS data. The domain registration is consistent with the company's history and transparent, enhancing trustworthiness. Overall, xyflow presents a low-risk profile with a strong business credibility and technical foundation. Strategic improvements in security headers, cookie consent, and public security policies would further enhance their security posture and compliance standing.

30
53
2
55
72
80
100
xyflownode-baseduireactsvelteopensource+5 more
ReactSvelteNext.jsJavaScript+1

Partner Domains:

reactflow.dev
partner
svelteflow.dev
partner
2025-10-11T08:31:32.691Z
floriankarsten.com favicon

Florian Karsten Studio

floriankarsten.com

50
TechnologyCzech RepublicsmallMEDIUM

Florian Karsten Studio is a small creative technology business based in Brno, Czech Republic, specializing in graphic design, UX, and development services. The studio emphasizes open-source projects, peer-to-peer networks, and automation, targeting clients interested in independent and functional digital systems. The website presents a professional portfolio with clear branding and a focus on design and technology integration. Technically, the website uses modern web technologies including HTML5, CSS, JavaScript, and libraries such as jQuery and Slick Carousel. Hosting and DNS are managed via Cloudflare and NameCheap, ensuring reliable performance and security. The site is mobile optimized and includes privacy-respecting analytics via Plausible. However, there is room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and uses domain transfer protection, but lacks DNSSEC and security headers which are recommended for enhanced protection. No privacy or cookie policies are present, indicating compliance gaps with GDPR and other privacy regulations. No forms or sensitive data collection mechanisms reduce risk exposure. Overall, the security posture is moderate but could be strengthened with additional policies and technical controls. The overall risk is low given the nature of the business and website content, but strategic improvements in privacy compliance and security best practices are advised to enhance trust and regulatory adherence.

25
50
2
55
72
75
40
graphicdesignuxdevelopmentopen-sourcepeer2peer+2 more
HTML5CSSJavaScriptjQuery+3

Partner Domains:

fonts.floriankarsten.com
service
karsten.systems
service
2025-10-11T08:30:12.365Z
porsche.at favicon

Porsche

porsche.at

71
TransportationAustriaenterpriseMEDIUM

Porsche Österreich operates as the official Austrian website for the Porsche brand, providing comprehensive information about Porsche's luxury sports cars, SUVs, and electric vehicles. The site targets automotive enthusiasts and potential buyers in Austria, offering detailed model specifications, online configurators, and customer services. The business is positioned as a premium automotive manufacturer with a strong brand presence and a focus on high-quality user experience. Technically, the website employs modern web technologies including JavaScript, CSS, and HTML5, with integrations such as Google Tag Manager for analytics and OneTrust for cookie consent management. The site is mobile-optimized and accessible, with good SEO practices and consistent branding. Hosting and CMS details are not explicitly disclosed but appear to be custom or proprietary. From a security perspective, the site enforces HTTPS with strong security headers and does not expose sensitive data. Cookie consent mechanisms comply with GDPR requirements. However, there is no explicit security policy or incident response contact information published, and no vulnerability disclosure policy or security.txt file is present. Overall, the security posture is strong but could be improved with more transparency on security governance. The domain WHOIS data aligns well with the Porsche brand and Austrian market, indicating high legitimacy and trustworthiness. No WAF or blocking mechanisms interfere with content access. The website is safe for general audiences, containing no adult or questionable content. Strategic recommendations include publishing a dedicated security policy, providing incident response contacts, and implementing a vulnerability disclosure program to enhance trust and compliance.

70
100
2
70
62
80
100
automotiveluxurycarssportscarsporscheaustria+3 more
JavaScriptCSSHTML5OneTrust Cookie Consent+1

Partner Domains:

my.porsche.com
partner
ask.porsche.com
partner

+2 more partners

2025-10-11T08:28:56.845Z
zara.com favicon

ZARA

zara.com

67
RetailSpainenterpriseMEDIUM

ZARA is a leading global fashion retailer specializing in fast-fashion clothing, footwear, and accessories for men, women, and children. The website reflects a mature e-commerce platform with extensive international reach, supporting multiple languages and currencies. The brand is part of the Inditex group, a major player in the retail industry. The site is professionally designed with excellent content quality and user experience, targeting a broad general audience interested in fashion products. Technically, the website employs modern web technologies including React, JavaScript, and CSS, supported by analytics and marketing tools such as Google Tag Manager, Riskified, and OneTrust for cookie consent. The site is optimized for performance and mobile responsiveness, with good SEO and accessibility features. Security best practices are observed, including HTTPS enforcement, security headers, and obfuscation tools like Jscrambler. From a security perspective, the site demonstrates a strong posture with no visible vulnerabilities or exposed sensitive data. Privacy compliance is robust, featuring comprehensive privacy and cookie policies with consent mechanisms aligned with GDPR. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. Overall, the website presents a low-risk profile with high trustworthiness and professionalism. The absence of WHOIS data is noted but likely due to privacy protection common among large brands. Strategic recommendations include enhancing transparency around security policies and incident response to further strengthen user trust and compliance.

35
65
17
72
80
85
100
fashionretaile-commerceclothingfootwear+3 more
ReactJavaScriptCSSGoogle Tag Manager+3
2025-10-11T08:27:31.492Z
R

Rascals Themes

rascalsthemes.com

51
TechnologyPolandsmallMEDIUM

Rascals Themes is a small technology business specializing in the development and sale of creative, easy-to-use WordPress themes. Established in 2017 and based in Poland, the company positions itself as a niche provider focusing on usability and outstanding customer support. Their offerings include WordPress themes, support services, and customization options, targeting WordPress users seeking professional and responsive themes. The website is well-designed with a modern React-based frontend, good mobile optimization, and clear navigation, reflecting a moderate level of digital maturity. Hosting is provided via seohost.pl with custom nameservers, and the domain registration is consistent and credible. From a security perspective, the website uses HTTPS and does not expose sensitive data. However, it lacks DNSSEC, security headers, privacy and cookie policies, and a vulnerability disclosure mechanism, indicating room for improvement in compliance and security posture. No analytics or tracking scripts were detected, suggesting minimal user tracking. The absence of direct contact emails or phone numbers limits immediate communication channels, relying solely on a contact form. Overall, the site is safe for general audiences with no adult or questionable content. The overall risk is moderate with no critical vulnerabilities detected, but compliance gaps and security best practices should be addressed to enhance trust and regulatory adherence. Strategic recommendations include implementing privacy and cookie policies with consent mechanisms, enabling DNSSEC, adding security headers, and publishing a vulnerability disclosure policy to improve security culture and user trust.

15
35
2
70
42
70
100
wordpressthemescreativesupportcustomization+1 more
React (implied by class names and app structure)Google FontsCSSJavaScript
2025-10-11T08:27:06.402Z
caradvisor.at favicon

car.advisor

caradvisor.at

62
TransportationAustriamediumMEDIUM

car.advisor is an Austrian online review platform specializing in customer feedback and ratings for car dealerships representing major automotive brands such as Volkswagen, Audi, SEAT, CUPRA, Škoda, Volkswagen Nutzfahrzeuge, and Das WeltAuto. The platform targets both car dealerships and customers seeking trustworthy reviews to inform their purchasing decisions. The website demonstrates a solid market position within the Austrian automotive sector, focusing on transparency and customer satisfaction. Technically, the website is built using modern web technologies including React and Next.js, hosted on Azure CDN, ensuring fast performance and good mobile optimization. The site features structured data for SEO and brand consistency. However, there is room for improvement in accessibility and security headers implementation. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. Nonetheless, it lacks explicit privacy and cookie policies, security headers, and incident response contact information, which are critical for GDPR compliance and user trust. No vulnerability disclosure or security.txt files were found, indicating limited transparency in security practices. Overall, the website is professional and functional with a good business credibility score. Strategic enhancements in privacy compliance, security policies, and contact transparency would significantly improve its security posture and user trust.

15
68
2
70
82
80
100
automotivereviewscardealershipaustriavolkswagen+6 more
ReactNext.jsJavaScriptCSS+1
2025-10-11T08:24:25.525Z
onebusinessid.com favicon

Volkswagen AG

onebusinessid.com

64
TransportationN/aenterpriseMEDIUM

ONE Business ID is a corporate identity and access management portal associated with Volkswagen AG and its various automotive brands such as Audi, Seat, Cupra, and Skoda. The platform provides secure login and organizational registration services primarily targeting business users and partners within the Volkswagen ecosystem. The website is professionally designed with consistent branding and supports multiple languages, indicating a broad international user base. The business model focuses on providing secure authentication and identity verification services to enterprise clients, reinforcing Volkswagen AG's digital infrastructure. Technically, the website employs modern web technologies including JavaScript and CSS, and appears to be built on the Keycloak identity management framework, as suggested by URL patterns and form structures. The site is mobile optimized and offers a good user experience with clear navigation and password visibility toggling features. However, there is no explicit evidence of advanced analytics or advertising technologies, which aligns with its corporate and security-focused nature. From a security perspective, the site uses HTTPS and implements OAuth2/OpenID Connect flows with nonce and code challenge parameters, indicating a strong authentication mechanism. Nonetheless, no security headers were detected in the provided data, and there is no visible cookie consent mechanism or explicit incident response information, which are areas for improvement. The absence of WHOIS data for the domain reduces transparency but is likely due to privacy protection measures common in corporate environments. Overall, the website presents a secure and professional interface for Volkswagen AG's business identity services. The main risks relate to missing security headers, lack of cookie consent, and incomplete WHOIS transparency. Addressing these would enhance trust and compliance. The site is safe for general audiences and does not contain any adult or questionable content.

80
50
17
40
82
70
100
corporateloginidentitymanagementvolkswagenenterprise+1 more
JavaScriptCSSHTML5
2025-10-11T07:56:57.908Z
beck-elibrary.de favicon

C.H. Beck

beck-elibrary.de

57
EducationGermanylargeMEDIUM

Beck eLibrary is a digital platform operated by the reputable German publishing house C.H. Beck, providing specialized access to legal and economic textbooks and professional literature. The platform targets professionals, academics, and students in law and economics, offering a subscription-based service with a well-structured and professionally designed website. The technical infrastructure includes modern web technologies, cookie consent management via Cookiebot, and analytics through Google Analytics 4 with GDPR-compliant consent mode. The security posture is strong, with HTTPS enforced, appropriate security headers, and no visible vulnerabilities or exposed sensitive data. However, explicit security policies and incident response contacts are not publicly available, representing an area for improvement. Privacy compliance is well addressed with clear cookie categories and consent mechanisms, aligning with GDPR requirements. Overall, the website demonstrates a mature digital presence with good performance, accessibility, and SEO optimization. The domain WHOIS data is consistent with the business profile, hosted on Deutsche Telekom infrastructure, and shows no signs of suspicious activity. Strategic recommendations include publishing detailed security policies, adding vulnerability disclosure information, and providing clear contact channels for security incidents to enhance trust and compliance further.

70
83
2
85
52
65
20
legaleducationpublishinglibrarycookieconsent+1 more
JavaScriptCSSCookiebotGoogle Analytics 4+1
2025-10-11T07:55:00.948Z
M

Münchner Seminare für Wirtschafts- und Versicherungsrecht GmbH

mwv-seminare.de

59
EducationGermanymediumMEDIUM

MWV Seminare is a German-based educational company specializing in seminars related to insurance and economic law. With a history of approximately 38 years, it serves professionals such as insurance company employees, brokers, social insurance carriers, and legal practitioners. The company positions itself as a leading independent provider of continuing education in its sector, offering around 100 seminars annually with about 5,000 participants. The website content reflects a professional and focused business model with clear target audiences and well-defined seminar offerings. Technically, the website uses standard web technologies including HTML, CSS, and jQuery 3.6.1. It is hosted on servers associated with 1&1 IONOS, a reputable hosting provider. The site demonstrates basic mobile optimization and accessibility but lacks advanced SEO and modern frameworks or CMS indications. Performance is moderate, and the navigation structure is clear but basic. From a security perspective, the site lacks visible security headers and privacy or cookie policies, which are important for GDPR compliance and user trust. No incident response or vulnerability disclosure information is provided. The site uses HTTPS (assumed) but does not demonstrate advanced security best practices. No tracking or advertising scripts are detected, indicating minimal user tracking. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, improved security headers, and more transparent contact information to increase trust and compliance posture.

75
25
2
70
67
65
100
insuranceseminarslegaleducationgermany
HTML5CSSJavaScriptjQuery 3.6.1
2025-10-11T07:54:45.881Z
automuehlbacher.at favicon

Autocenter Ing. Mühlbacher GmbH

automuehlbacher.at

38
TransportationAustriasmallHIGH

Autocenter Ing. Mühlbacher GmbH is a small regional automotive dealership and service provider located in Kirchbichl, Tirol, Austria. The company offers new and used cars from brands such as Citroën, Seat, Daihatsu, and SsangYong, alongside services including repairs, maintenance, vehicle registration, tuning, paint and bodywork, financing, insurance, and leasing. Their market position is focused on serving the local community with a comprehensive automotive offering. The website content is primarily in German and targets general consumers interested in automotive sales and services. Technically, the website uses basic HTML, CSS, and JavaScript with older versions of jQuery and integrates Facebook SDK and Google Analytics for social media and analytics purposes. The site appears to be custom-built without a known CMS and shows moderate performance with limited mobile optimization and basic SEO and accessibility features. From a security perspective, the site uses HTTPS (assumed from URL), but lacks modern security headers and uses an outdated JavaScript library, which poses potential vulnerabilities. There is no visible cookie consent mechanism or explicit GDPR compliance indicators on the homepage, although a privacy policy and terms of service page exist. Contact information is clearly provided, enhancing business credibility. Overall, the website is functional and provides essential business information but would benefit from technical modernization, improved security practices, and enhanced privacy compliance to reduce risk and improve user trust.

20
10
2
70
62
75
-
automotivecardealershipservicetirolaustria+6 more
HTMLCSSJavaScriptjQuery 1.4.3+2

Partner Domains:

seat.automuehlbacher.at
partner
www.dasweltauto.at
partner

+1 more partners

2025-10-11T07:51:48.265Z
continental-pneumatiky.sk favicon

Continental

continental-pneumatiky.sk

67
TransportationN/aenterpriseMEDIUM

Continental Tires operates a global website presenting stories related to tires, mobility, and innovation. The site targets both general consumers and business customers interested in transportation and mobility solutions. The company is a recognized global leader in tire manufacturing and mobility technology, offering a broad range of products and services. The website is built on Adobe Experience Manager, indicating a mature digital infrastructure with modern content management capabilities. Accessibility is well addressed through the inclusion of a digital accessibility widget, and cookie consent mechanisms are implemented to comply with privacy regulations. However, explicit privacy policy and terms of service pages were not found on the analyzed page, which may impact compliance perception. Security posture is generally good with HTTPS enforced, but lacks visible security headers and explicit incident response contacts. The absence of WHOIS data for the domain is unusual and reduces trust in domain legitimacy, though the website content and branding strongly suggest authenticity. Overall, the site is professional and trustworthy but would benefit from enhanced transparency and security disclosures.

55
68
17
70
82
70
100
tiresmobilitystoriescontinentaltransportation+4 more
Adobe Experience Manager (AEM)Google Tag ManagerConsentManagerPerto Digital Accessibility Widget+2

Partner Domains:

continental-me.com
partner
pk.continental-me.com
partner
2025-10-11T06:45:29.311Z
chase.com favicon

Chase

chase.com

56
FinanceUnited StatesenterpriseMEDIUM

Chase is a leading financial institution providing a wide range of banking and financial services including credit cards, mortgages, auto loans, investing, and business banking. The website serves both personal and business customers with a comprehensive digital platform that supports account management, payments, and financial planning. The brand is well-established with a strong market position as part of JPMorgan Chase & Co., one of the largest banking organizations in the United States. Technically, the website employs modern web technologies such as React and Next.js, ensuring a fast, responsive, and accessible user experience across devices. The site is well-optimized for SEO and includes comprehensive metadata and structured data to enhance search visibility. Security is robust with HTTPS enforcement, secure login forms, and multiple security headers implemented to protect users and data. From a security perspective, the site demonstrates strong best practices including secure forms, no exposed sensitive data, and use of security headers. However, the absence of a publicly visible vulnerability disclosure program and incident response contact details suggests areas for improvement. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR considerations. Overall, the website is professional, trustworthy, and secure, reflecting the stature of a major financial services provider. The WHOIS data anomaly does not detract from the legitimacy but should be further investigated to ensure domain registration transparency. Strategic recommendations include enhancing vulnerability disclosure visibility, maintaining security certifications, and continuous monitoring of third-party scripts.

-
-
-
85
82
90
100
bankingfinancecreditcardsmortgageautoloans+2 more
ReactJavaScriptWebpackNext.js+2

Partner Domains:

www.jpmorgan.com
parent
autofinance.chase.com
subsidiary

+2 more partners

2025-10-11T05:32:34.902Z