Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 75 of 261|Showing 3701-3750 of 13036
handicare-treppenlifte.at favicon

Handicare Treppenlifte Österreich

handicare-treppenlifte.at

65
HealthcareAustriamediumMEDIUM

Handicare Treppenlifte Österreich is a specialized provider of stairlift solutions aimed at enabling elderly and mobility-impaired individuals to maintain independence in their homes. The company offers customized stairlift products for both straight and curved staircases, supported by a network of certified partners providing personalized consultation, installation, and after-sales services. With a heritage spanning over 135 years and a global footprint of over 800,000 installed stairlifts, Handicare holds a strong market position in the healthcare mobility sector in Austria and beyond. Technically, the website is built on a modern stack including HTML5, CSS3, JavaScript, and leverages multiple analytics and tracking tools such as Google Analytics, Microsoft Clarity, and Hotjar, all managed with a robust cookie consent mechanism. Hosting is provided via Amazon AWS, ensuring reliable infrastructure. The site demonstrates good mobile optimization, SEO practices, and basic accessibility features. From a security perspective, the site enforces HTTPS and employs consent management for cookies, with no exposed sensitive data detected. Certifications such as ISO 9001 and ISO 14001 underline the company’s commitment to quality and environmental standards. However, some security headers could be improved, and an incident response contact is not publicly available. Overall, the website is professional, trustworthy, and compliant with GDPR requirements, presenting a low risk profile. Strategic recommendations include enhancing security headers, publishing incident response information, and continuous monitoring of third-party scripts to maintain security posture.

45
80
2
70
67
75
100
healthcarestairliftsaccessibilitymobilityaustria+2 more
HTML5CSS3JavaScriptjQuery+4

Partner Domains:

handicaregroup.com
parent
2025-10-14T16:11:01.414Z
era.cz favicon

ERA a.s.

era.cz

58
TransportationCzech RepublicmediumMEDIUM

ERA a.s. is a globally recognized leader in next-generation surveillance and flight tracking solutions, specializing in multilateration and ADS-B technologies. The company serves a specialized market including air traffic management authorities, military and security agencies, and aviation industry stakeholders. With over 160 installations across 70 countries and 5 continents, ERA holds a strong market position supported by decades of tradition and experience. Their business model focuses on providing mission-critical surveillance systems and related services in a B2B context. Technically, the website demonstrates a mature digital infrastructure using modern web technologies such as HTML5, CSS3, JavaScript, and third-party libraries like Google Tag Manager and Picturefill for responsive images. The site is mobile-optimized and performs moderately well, with good SEO and basic accessibility features. However, there is room for improvement in security headers and accessibility compliance. From a security perspective, ERA's website enforces HTTPS and uses secure form submission methods, with no visible vulnerabilities or exposed sensitive data. The presence of ISO 27001 certification and partnerships with reputable companies like Airbus enhance trust. However, the absence of explicit security headers and incident response information suggests areas for enhancement. Privacy compliance is strong, with a comprehensive privacy policy and cookie consent mechanism aligned with GDPR requirements. Overall, ERA's website reflects a professional, trustworthy, and well-maintained digital presence consistent with its industry standing. The lack of public WHOIS data due to privacy protection is justified given the company's international operations. Strategic recommendations include enhancing security headers, publishing incident response and vulnerability disclosure policies, and improving accessibility to further strengthen the security posture and user trust.

80
85
65
20
17
40
72
aviationsurveillancemultilaterationads-bairtrafficmanagement+3 more
HTML5CSS3JavaScriptjQuery+3
2025-10-14T15:43:43.275Z
alpirossl.cz favicon

Alpiro s.r.o.

alpirossl.cz

47
TechnologyCzech RepublicsmallHIGH

Alpiro s.r.o. operates the website alpirossl.cz, offering a range of SSL certificates including domain validated, organization validated, extended validation, and S/MIME email signing certificates. The company targets businesses and website owners seeking affordable and reliable SSL solutions, emphasizing fast issuance and support for modern encryption standards. The website presents a professional and consistent brand image with clear navigation and good mobile optimization. Technically, the site uses standard web technologies such as jQuery, Google Analytics, and Google Tag Manager for tracking. The site is moderately performant and mobile-friendly but lacks advanced accessibility features and comprehensive SEO optimizations. No CMS or hosting provider information is discernible from the content. From a security perspective, the site enforces HTTPS and uses secure forms but lacks visible security headers and explicit privacy or cookie policies, which are compliance gaps. The absence of WHOIS data for the domain is a significant concern, reducing trust in domain legitimacy. No direct contact emails or phone numbers are provided, only a contact form. Overall, the security posture is moderate but could be improved with better transparency and compliance documentation. The overall risk is moderate with recommendations to implement privacy and cookie policies, add security headers, and clarify domain registration details to enhance trust and compliance.

30
10
2
62
80
85
40
sslsslcertificatessecurityencryptionalpirossl+2 more
jQuery 2.1.4Google AnalyticsGoogle Tag ManagerHTML5+1
2025-10-14T15:20:58.494Z
muzeumstachy.cz favicon

Sdružení historie hasičstva Stachy

muzeumstachy.cz

44
OtherCzech RepublicsmallHIGH

The website www.muzeumstachy.cz represents the Pošumavské hasičské muzeum Stachy, a small regional museum dedicated to the history of firefighting in the Pošumaví region of the Czech Republic. Operated by the Sdružení historie hasičstva Stachy, the site provides information about the museum's exhibitions, including a notable exhibit on fire cause investigation supported by the Jihočeský kraj. The museum targets general visitors interested in cultural heritage and firefighting history. The business model is non-profit and educational, focusing on local community engagement and historical preservation. Technically, the website is built on the Webnode CMS platform and leverages modern web technologies including HTML5, CSS3, JavaScript, and external services such as Facebook SDK and Google Tag Manager. Hosting is provided via Amazon Cloudfront CDN, ensuring moderate performance and good mobile optimization. SEO and accessibility are basic but functional. The site lacks advanced security headers but enforces HTTPS, contributing to a reasonable security posture. Security-wise, the site shows no critical vulnerabilities or exposed sensitive data. However, the absence of privacy and cookie policies, as well as missing WHOIS domain registration data, reduces overall trust and compliance posture. The lack of contact emails and phone numbers on the homepage limits direct communication channels. The site uses tracking scripts from Google and Facebook, but no explicit consent mechanisms or GDPR compliance indicators are present. Overall, the website is a legitimate cultural institution's online presence with good content quality and technical implementation but requires improvements in privacy compliance, security headers, and transparency of domain registration to enhance trustworthiness and regulatory adherence.

35
10
2
55
-
85
100
museumfirefightingpoumavczechrepublicculturalheritage+3 more
HTML5CSS3JavaScriptFacebook SDK+3
2025-10-14T15:19:27.968Z
N

NeXA, s.r.o.

nexavision.cz

40
TechnologyCzech RepublicsmallHIGH

NeXA, s.r.o. operates as a creative web studio under the brand Nexavision, specializing in custom web development, e-commerce solutions, animated video production, mobile applications, comprehensive web systems, and internet marketing. The company targets businesses and organizations seeking professional digital presence and marketing services, positioning itself as a mature, small-sized local player with a diverse client portfolio. The website reflects a professional design with clear navigation and a consistent brand image, supported by client references and company registration details. Technically, the website employs standard web technologies including HTML5, CSS3, JavaScript, and jQuery, with Google Analytics integrated for user tracking. The site shows moderate performance and good mobile optimization but lacks modern security practices such as HTTPS enforcement and security headers. The use of HTTP for loading jQuery introduces mixed content risks. SEO and accessibility are basic but functional. From a security perspective, the site lacks visible security policies, incident response contacts, and privacy compliance mechanisms such as cookie consent or GDPR disclosures. No forms are present to collect user data, reducing immediate input risks, but the absence of HTTPS and security headers lowers the overall security posture. WHOIS data is consistent and supports the legitimacy of the domain and business. Overall, the website is functional and professional but requires improvements in security, privacy compliance, and technical modernization to enhance trust and protect user data effectively.

15
10
17
65
62
85
-
webdevelopmentcreativestudiointernetprojectse-commercemobileapps+1 more
HTML5CSS3JavaScriptjQuery+1
2025-10-14T15:16:29.810Z
M

Majestic-12 Ltd, trading as Majestic Analytics

majesticanalytics.com

59
TechnologyUnited KingdommediumMEDIUM

Majestic Analytics, operated by Majestic-12 Ltd, is a UK-based company specializing in big data solutions powered by one of the world's largest web crawlers and link databases. Their services target enterprises seeking comprehensive internet mapping and analytics, offering extensive datasets and bespoke data snapshots. The company has a solid market position supported by a large historical web index and recognized research collaborations. Technically, the website employs modern web technologies including Bootstrap, Font Awesome, and Piwik analytics. The site is moderately optimized for performance and mobile devices, with a clear and professional design. However, some accessibility and SEO optimizations are basic, and no CMS or hosting provider beyond the registrar is explicitly identified. From a security perspective, the site uses HTTPS and JavaScript-based analytics but lacks visible security headers and published privacy or cookie policies, which impacts compliance and user trust. No incident response or vulnerability disclosure information is provided. The domain registration is consistent and legitimate, with no privacy protection, aligning with the company's UK presence. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance and security best practices to improve user confidence and regulatory adherence.

30
35
2
70
72
85
100
bigdatawebanalyticsinternetmappingenterprisedatawebcrawling+1 more
HTML5CSS3BootstrapFont Awesome+4
2025-10-14T14:57:21.035Z
era.aero favicon

ERA a.s.

era.aero

62
TransportationCzech RepublicmediumMEDIUM

ERA a.s. is a specialized technology company focused on next-generation surveillance and flight tracking solutions, including multilateration and ADS-B technologies. The company serves both civil air traffic management and military sectors, positioning itself as a global leader with over 160 installations in more than 70 countries. ERA operates under the parent company OMNIPOL a.s. and maintains partnerships with major industry players such as Airbus. The website reflects a mature business with comprehensive service offerings and a strong market presence in the aviation and defense technology sectors. Technically, the website employs modern web technologies, including responsive design and asynchronous script loading, ensuring good user experience and accessibility across devices. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, although some security headers could be improved. Privacy compliance is well addressed with clear policies and GDPR adherence. The WHOIS data is incomplete and malformed, limiting domain trust analysis, but the overall business credibility and content quality support legitimacy. Strategic recommendations include enhancing security headers, publishing explicit incident response contacts, and improving WHOIS transparency to strengthen trust further.

40
100
17
85
72
80
20
aviationsurveillancemilitarytechnologyairtrafficmanagement+3 more
HTML5CSS3JavaScriptGoogle Tag Manager+1

Partner Domains:

omnipol.cz
parent
airbus.com
partner
2025-10-14T14:56:40.821Z
astaxanthincz.cz favicon

Astaxanthincz.cz

astaxanthincz.cz

56
HealthcareCzech RepublicsmallMEDIUM

Astaxanthincz.cz is a Czech e-commerce business specializing in the sale of natural, bio-certified, non-GMO astaxanthin capsules and related health products. The company targets health-conscious consumers seeking powerful antioxidants and supplements to support skin, eye health, vitality, and performance. The website presents a professional and consistent brand image with clear product offerings and certifications such as USDA Organic, Ecocert, EU Organic, Vegan, and ISO 9001:2018, enhancing trust and credibility. Technically, the website uses a custom or niche CMS platform with modern web technologies including HTML5, CSS3, JavaScript, Google Fonts, and FontAwesome. The site is mobile-optimized with good SEO practices and a cookie consent mechanism supporting GDPR compliance. While HTTPS is enforced, the site lacks explicit security headers, which could be improved to strengthen security posture. Security-wise, the site demonstrates good practices such as secure forms and no exposed sensitive data. However, the absence of detailed security policies or incident response contacts suggests room for maturity. The WHOIS data is unavailable or privacy protected, which is common for this business type and does not raise immediate concerns given the site's professional presentation and certifications. Overall, the website is safe, well-structured, and trustworthy for its target audience. Strategic recommendations include implementing security headers, enhancing transparency on security policies, and maintaining regular audits of third-party scripts to ensure ongoing security and compliance.

40
10
2
85
52
80
100
healthsupplementsastaxanthinbionon-gmo+2 more
HTML5CSS3JavaScriptGoogle Fonts (Poppins)+2
2025-10-14T14:54:09.528Z
beckhoff.cz favicon

Beckhoff Automation GmbH & Co. KG

beckhoff.cz

66
TechnologyGermanyenterpriseMEDIUM

Beckhoff Automation GmbH & Co. KG is a leading enterprise in the industrial automation sector, specializing in PC-based control technology and EtherCAT communication. The company offers a comprehensive portfolio including industrial PCs, I/O components, motion control systems, automation software (TwinCAT), modular MX-System solutions, and machine vision products. Their website targets industrial automation professionals and system integrators, providing detailed product information, support services, and regional contact points. The company maintains a strong global presence with localized content for multiple countries and languages. Technically, the website is built on modern web standards using HTML5, CSS3, JavaScript, and jQuery, with Bootstrap components for responsive design and user interface elements. It integrates Matomo analytics for user tracking and employs SVG graphics for crisp visuals. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Security-wise, the site enforces HTTPS and uses secure login forms with validation. However, explicit security headers are not detected in the provided data, suggesting room for improvement. No vulnerabilities or exposed sensitive data were found. Privacy and cookie policies are present and appear comprehensive and GDPR-compliant, enhancing user trust. Overall, the website presents a professional, trustworthy, and well-maintained digital presence for Beckhoff Automation. The lack of WHOIS data is a limitation but does not detract from the site's legitimacy based on content quality and contact transparency. Strategic recommendations include implementing security headers and maintaining regular audits of third-party scripts to further strengthen security posture.

45
58
17
60
82
80
100
industrialautomationpc-basedcontrolethercatindustrialpcsmotioncontrol+3 more
HTML5CSS3JavaScriptjQuery+3
2025-10-14T13:51:19.494Z
studentenwerk-dresden.de favicon

Studentenwerk Dresden

studentenwerk-dresden.de

46
EducationGermanymediumHIGH

Studentenwerk Dresden is a regional non-profit organization dedicated to supporting students in Dresden and surrounding areas through a variety of services including student housing, financial aid (BAföG), university gastronomy, social counseling, cultural programs, and international student support. The organization holds an ISO 9001:2015 certification, indicating a commitment to quality management. Their website is well-structured, professionally designed, and targets students and university communities effectively. Technically, the website employs modern web technologies such as Bootstrap, jQuery, and Swiper.js for responsive and interactive user experience. Hosting is managed via schlundtech.de, and analytics are performed using Matomo with user consent mechanisms in place. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses cookie consent to comply with privacy regulations. However, it lacks explicit security policy documentation, incident response contacts, and advanced security headers. No vulnerabilities or exposed sensitive data were detected. The domain registration data aligns well with the organization's identity, supporting legitimacy and trustworthiness. Overall, Studentenwerk Dresden's website presents a secure, professional, and user-friendly platform that effectively serves its audience. Strategic improvements in security transparency and incident response readiness would further enhance its security posture and trust.

35
43
2
70
72
65
-
studentserviceseducationstudenthousingbafguniversitygastronomy+6 more
HTML5CSS3JavaScriptjQuery+3
2025-10-14T13:49:48.809Z
carrd.co favicon

Carrd Inc.

carrd.co

60
TechnologyUnited StatessmallMEDIUM

Carrd Inc. operates a popular freemium SaaS platform focused on enabling users to build simple, fully responsive one-page websites. The platform targets individuals and small businesses seeking an easy-to-use website builder with a strong emphasis on responsive design and template variety. Carrd's market position is that of a niche leader in one-page site creation, offering both free and paid tiers with advanced features such as custom domains, forms integration, and payment widgets. Technically, the website is built with modern web standards including HTML5, CSS3, and JavaScript, delivering fast performance and excellent mobile optimization. The platform integrates with numerous third-party services for forms, email marketing, and payments, indicating a mature and extensible infrastructure. However, no CMS or specific frameworks were detected, suggesting a custom-built or lightweight solution. From a security perspective, the site enforces HTTPS with Let's Encrypt certificates and avoids exposing sensitive data. However, it lacks several recommended security headers and does not publicly disclose a vulnerability disclosure policy or incident response contacts. Privacy compliance is partially addressed with a comprehensive privacy policy and terms of service, but no cookie consent mechanism was detected, which could be a compliance gap. Overall, Carrd presents a professional, trustworthy, and well-maintained web presence with minor areas for security and privacy improvement. The domain registration data aligns well with the business claims, supporting legitimacy and trustworthiness.

25
53
2
85
47
85
100
websitebuilderone-pagesitesresponsivedesignfreemiumsaas+4 more
HTML5CSS3JavaScript

Partner Domains:

letsencrypt.org
partner
activecampaign.com
partner

+3 more partners

2025-10-14T13:45:22.944Z
agentfly.com favicon

AgentFly Technologies s.r.o.

agentfly.com

70
TransportationCzech RepublicsmallMEDIUM

AgentFly Technologies s.r.o. is a specialized technology company focused on innovative solutions for air traffic management, unmanned aerial systems integration, tactical military and security operations, and aerial work automation. The company targets aviation professionals, UAS operators, regulators, and defense sectors, positioning itself as a niche B2B provider with notable partnerships including AFRL, FAA, NATO, ONR, CERDEC, and NASA. The website presents a professional image with clear service descriptions and a modern design. Technically, the website employs modern web technologies including Google Analytics with IP anonymization and Cookiebot for cookie consent management, ensuring a moderate level of digital maturity. The site is mobile optimized and provides a good user experience, though some accessibility and SEO enhancements could be made. The absence of a CMS or hosting provider details limits deeper infrastructure insights. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks visible security headers and published security policies or incident response contacts. The missing WHOIS data for the domain raises concerns about domain registration legitimacy, though the professional web presence and contact information mitigate some risk. Overall, the website is functional, professional, and compliant with basic privacy requirements, but improvements in transparency, security headers, and domain registration verification are recommended to enhance trust and security posture.

45
95
17
80
75
70
100
aviationtechnologyuassimulationairtrafficmanagement+5 more
Google AnalyticsCookiebotWebFont LoaderHTML5+1
2025-10-14T13:33:38.587Z
bibb.de favicon

Federal Institute for Vocational Education and Training (BIBB)

bibb.de

64
EducationGermanylargeMEDIUM

The Federal Institute for Vocational Education and Training (BIBB) operates as a German government research and consultancy institution specializing in vocational education and training (VET). The website serves as a comprehensive resource for stakeholders including policymakers, researchers, and international partners, offering news, publications, tools, and multimedia content related to VET. The organization maintains a strong market position as a national authority in the vocational training sector, supported by a large-scale institutional presence and consistent branding. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and jQuery, with interactive elements such as sliders and tabbed content. It integrates Matomo analytics for privacy-conscious user tracking and uses a cookie consent manager to comply with GDPR requirements. The site is mobile-optimized and accessible, with good SEO practices evident in meta tags and structured navigation. From a security perspective, the site enforces HTTPS and uses anonymized analytics data, but lacks explicit security headers and documented incident response or security policies. No vulnerabilities or exposed sensitive data were detected in the content. Privacy compliance is strong with clear privacy and cookie policies and user consent mechanisms. Overall, the website presents a low-risk profile with high trustworthiness and professionalism. Strategic recommendations include enhancing security headers, publishing explicit security and incident response policies, and adding a terms of service page to improve legal clarity.

75
68
17
60
42
65
100
vocationaleducationtrainingvetresearch+5 more
HTML5CSS3JavaScriptjQuery+3

Partner Domains:

imove-germany.de
partner
govet.international
partner

+3 more partners

2025-10-14T13:31:17.111Z
mazsihisz.hu favicon

Magyarországi Zsidó Hitközségek Szövetsége

mazsihisz.hu

43
Non-profitHungarymediumHIGH

Mazsihisz.hu is the official website of the Federation of Jewish Communities in Hungary, serving as a central hub for news, cultural information, community services, and educational resources related to Hungarian Jewish life. The organization holds a prominent position within the Hungarian Jewish community, providing timely updates, event information, and resources that support cultural preservation and community engagement. The website targets primarily Hungarian-speaking Jewish community members, researchers, and cultural enthusiasts, offering a non-profit service model focused on community support and information dissemination. Technically, the website employs a moderately modern tech stack including Bootstrap 3.3.7, jQuery, Swiper.js, and integrates multiple analytics and tracking services such as Google Analytics, Facebook Pixel, and Microsoft Clarity. The site is mobile-optimized with good SEO and accessibility basics, though some technologies like Bootstrap are slightly dated. The CMS appears to be a proprietary or custom solution named DiPHP. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks explicit security headers such as Content-Security-Policy or X-Frame-Options. No critical vulnerabilities were detected in the HTML content, but the use of older libraries suggests a need for updates. The absence of a published security policy or incident response contact is noted. Privacy compliance is strong with a comprehensive privacy policy and cookie consent, aligned with GDPR requirements. Overall, Mazsihisz.hu presents a trustworthy, well-maintained online presence for a non-profit community organization. The site balances content richness with technical adequacy and reasonable security posture. Strategic improvements in security headers, library updates, and transparency around security policies would further enhance its resilience and trustworthiness.

20
10
2
70
57
80
20
zsidmagyarzsidantiszemitizmuszsinaggaizrael+4 more
HTML5CSS3JavaScriptjQuery+6

Partner Domains:

or-zse.hu
partner
zsidokulturalisfesztival.hu
partner

+3 more partners

2025-10-14T13:29:46.486Z
Z

Základní škola a mateřská škola Velhartice

zsvelhartice.cz

64
EducationCzech RepublicsmallMEDIUM

The website zsvelhartice.cz represents the official portal of Základní škola a mateřská škola Velhartice, a small educational institution in the Czech Republic founded in 2008. The site provides important information about school events, documents, forms, and contacts primarily targeting parents and the local community. The business model is that of a public educational institution serving primary and kindergarten education needs. Technically, the website uses standard web technologies including HTML5, CSS3, JavaScript, and FontAwesome icons. It is hosted with Cloudflare DNS services, ensuring reliable domain resolution and basic security. The site is moderately optimized for performance and mobile devices, with basic accessibility and SEO features. From a security perspective, the site employs HTTPS and Cloudflare DNS but lacks advanced security headers such as Content-Security-Policy and HSTS. There are no visible vulnerabilities or exposed sensitive data. However, the absence of privacy and cookie policies indicates a compliance gap with GDPR requirements. Overall, the website is professional and trustworthy for its educational purpose, but improvements in privacy compliance and security headers are recommended to enhance user trust and regulatory adherence.

55
25
17
80
75
85
100
educationschoolczechrepublicprimaryeducationkindergarten
HTML5CSS3JavaScriptFontAwesome+1
2025-10-14T12:25:55.031Z
I

Internet Index Czech, s.r.o.

wpii.dev

69
TechnologyCzech RepublicsmallMEDIUM

Internet Index Czech, s.r.o. operates the website wpii.dev, offering WP Integrity Inspector, a professional Windows OS tool designed to monitor the security and integrity of WordPress websites. The company has a decade of experience managing over a thousand WordPress sites and positions itself as a niche provider focused on WordPress security monitoring. Their business model includes software sales with subscription pricing and support services, targeting WordPress professionals and website administrators. Technically, the website employs modern web technologies including Bootstrap, jQuery, and Google Tag Manager for analytics. The site is well-designed, mobile-optimized, and provides clear navigation and professional content. However, no CMS is detected, and hosting details are not explicit. Performance is moderate with good SEO practices. From a security perspective, the website uses HTTPS and an open-source PHP connector for secure monitoring, ensuring data privacy. The company holds ISO 27001 certification, indicating a mature security posture. However, the site lacks visible security headers, a cookie consent mechanism, and explicit incident response or vulnerability disclosure information, which are areas for improvement. Overall, the website is trustworthy, professional, and safe for general audiences. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include enhancing privacy compliance with cookie consent, publishing incident response contacts, and implementing security headers to strengthen security posture.

55
53
47
60
75
80
100
wordpresssecuritymonitoringwindowsintegrityinspector+1 more
HTML5CSS3BootstrapjQuery+2
2025-10-14T12:25:29.982Z
latky.cz favicon

Látky Mráz

latky.cz

51
RetailCzech RepublicmediumMEDIUM

Látky Mráz is a well-established Czech retailer specializing in fabrics, textiles, haberdashery, sewing patterns, and related accessories. With approximately 33 years in the market and eight physical stores, the company also operates an e-commerce platform primarily through a partner domain (dumlatek.cz). The website presents a professional and consistent brand image, targeting sewing enthusiasts and professionals. The business model combines retail and wholesale services, supported by a loyalty discount program and active social media presence. Technically, the website uses modern web technologies including Google Analytics with consent management, FontFaceObserver for fonts, and Swiper.js for product carousels. The site is mobile-optimized with good SEO practices and basic accessibility features. However, no CMS or hosting provider details were detected, and some security headers are missing. From a security perspective, the site enforces HTTPS and provides cookie consent mechanisms aligned with GDPR. No critical vulnerabilities or exposed sensitive data were found. The absence of WHOIS data for the domain reduces trustworthiness and suggests possible privacy protection or registration issues. No explicit security or incident response policies are published, which could be improved. Overall, the website is functional, trustworthy, and professionally maintained, but domain registration transparency and enhanced security headers would strengthen its security posture and credibility.

50
25
2
60
72
80
40
e-commerceretailtextilesfabricssewing+3 more
Google Analytics (gtag.js)FontFaceObserverSwiper.jsHTML5+2

Partner Domains:

www.dumlatek.cz
partner
2025-10-14T12:22:52.528Z
M

MatchaTea.fi

matchatea.fi

48
E-commerceFinlandsmallHIGH

MatchaTea.fi appears to be a small Finnish e-commerce business specializing in matcha tea products or related services. The analyzed page is a protected access login page, indicating restricted content or administrative access rather than public-facing content. The website uses the MyShoptet platform and CDN for hosting and asset delivery, reflecting a moderate level of technical infrastructure. However, the page lacks visible privacy, cookie, or terms of service policies, and no contact information is provided, which limits transparency and user trust. From a security perspective, the site employs a password-protected form with autocomplete disabled on the login field, but lacks essential security headers, CSRF tokens, and bot protection mechanisms. No WAF or blocking mechanisms are detected, and SSL configuration details are not provided, suggesting potential areas for security enhancement. The absence of analytics and advertising scripts indicates minimal user tracking, which is positive for privacy but also limits business intelligence. Overall, the website's security posture is basic, with significant room for improvement in security best practices and privacy compliance. The domain registration data is consistent with the website's Finnish origin and business context, supporting legitimacy. The content is safe for general audiences, with no adult or explicit material detected. Strategic recommendations include implementing comprehensive privacy and cookie policies, enhancing security headers and form protections, adding contact information for transparency, and improving SEO and content richness to better serve users and build trust.

40
25
2
85
-
85
100
protectedaccessloginmatchae-commercemyshoptet
HTML5CSS3MyShoptet platform
2025-10-14T12:20:11.980Z
F

FINCLUB Slovakia, spol. s r.o.

finclub.sk

43
RetailSlovakiamediumHIGH

FINCLUB Slovakia, spol. s r.o. is a well-established company specializing in the distribution and sale of natural dietary supplements, cosmetics, and biodegradable cleaning products primarily sourced from Finland. With over 25 years of presence in the Slovak market and a parent company in the Czech Republic, FINCLUB holds a strong market position as a leading partner and distributor in Central Europe. Their business model combines e-commerce with a broad distribution network and business partnership opportunities. The website reflects a professional and consistent brand image, targeting a general audience interested in health, beauty, and entrepreneurship. Technically, the website is built on the Shopsys e-commerce platform, utilizing modern web technologies including Google Tag Manager, Google Analytics, Facebook SDK, and reCAPTCHA for security. The site is mobile-optimized with good SEO and accessibility basics, though some improvements in security headers and performance could be made. The presence of GDPR and cookie compliance mechanisms indicates a mature approach to privacy. From a security perspective, the site enforces HTTPS and uses reCAPTCHA to protect forms, with no visible vulnerabilities or exposed sensitive data. However, the absence of explicit security policies or incident response contacts suggests room for improvement in transparency and readiness. Overall, the security posture is solid but could benefit from enhanced headers and formal vulnerability disclosure mechanisms. The overall risk assessment is low, with no signs of malicious content or suspicious domain registration patterns. Strategic recommendations include implementing security headers, publishing a security policy, and adding a security.txt file to improve trust and compliance. The website and business demonstrate a high level of professionalism and credibility suitable for their market segment.

20
25
2
70
62
65
20
healthnaturalproductse-commercecosmeticsslovakia+2 more
HTML5CSS3JavaScriptGoogle Tag Manager+4

Partner Domains:

www.finclub.at
partner
www.finclub.cz
partner

+3 more partners

2025-10-14T10:01:37.038Z
F

FINCLUB plus, a.s.

finclub.de

49
RetailTschechische RepublikmediumHIGH

FINCLUB plus, a.s. is a Czech-based company with over 30 years of experience specializing in natural dietary supplements, cosmetics, and biodegradable cleaning products. It holds a strong market position in Central Europe as a leading distributor and partner of the Finnish manufacturer Hankintatukku Oy, which has an AAA rating. The company targets health-conscious consumers and business partners seeking to establish their own enterprises in the health and beauty sectors. The website reflects a professional e-commerce platform with multilingual support and a clear focus on natural products and customer success. Technically, the site uses modern web technologies including Shopsys CMS, Google Tag Manager, Google Analytics, Facebook SDK, and reCAPTCHA for security. Hosting is provided by Active24, as inferred from nameservers. Security posture is good with HTTPS enforced and secure form handling, though security headers are not evident and no explicit security policy or incident response contacts are published. Privacy compliance is strong with clear GDPR and cookie policies and consent mechanisms. Overall, the site is trustworthy, well-branded, and professionally maintained, with room for improvement in security transparency and header implementation.

20
80
2
60
62
65
20
healthbeautynaturalproductssupplementse-commerce+3 more
HTML5CSS3JavaScriptGoogle Tag Manager+3

Partner Domains:

hankintatukku.fi
partner
naturaebenessere.it
partner

+1 more partners

2025-10-14T10:01:06.980Z
C

Conti FleetPartner

fleetpartner.cz

65
TransportationCzech RepublicmediumMEDIUM

FleetPartner is a Czech Republic-based fleet management service provider operating under the Continental AG BestDrive brand umbrella. The website serves primarily as a login portal for users, with basic contact information and corporate branding. The business targets fleet operators and automotive service customers, positioning itself as a regional player in transportation services. The site content is minimal but professional, focusing on user access and contact facilitation. Technically, the website employs a modern JavaScript stack including jQuery, FontAwesome, and Chart.js, hosted on CSC DNS infrastructure. While the site is functional and moderately optimized for performance, it lacks advanced SEO, accessibility, and mobile optimization features. No CMS or complex frameworks are detected, indicating a custom-built solution. From a security perspective, the site uses HTTPS and includes CSRF tokens, but lacks visible security headers such as CSP or HSTS. There is no explicit privacy or cookie consent mechanism, and no public security or incident response policies are found. The login form is basic but uses standard password input types. Overall, the security posture is moderate but could be improved with standard best practices. The domain registration is consistent with the business profile, created in 2015 and registered through a reputable registrar. No suspicious patterns or privacy protections are used, supporting legitimacy. Contact details are clearly provided, but the absence of detailed privacy and cookie policies reduces compliance confidence. Strategic improvements in security headers, privacy compliance, and user experience would enhance trust and operational security.

70
25
47
60
77
75
100
fleetmanagementloginautomotivecorporatetransportation
HTML5CSS3JavaScriptjQuery+3
2025-10-14T09:59:46.375Z
railsformers.cz favicon

Railsformers s.r.o.

railsformers.cz

70
TechnologyCzech RepublicmediumMEDIUM

Railsformers s.r.o. is a Czech IT company established in 2009, offering a broad range of technology services including custom web and mobile application development, ERP systems, online reservation platforms, graphic design, marketing, SEO, e-commerce solutions, and cybersecurity. The company has a solid market presence with over 300 clients, 700 projects completed, and four international awards, positioning itself as a reputable mid-sized technology service provider in the Czech Republic. The website reflects a professional and consistent brand image with clear service offerings targeted at businesses seeking comprehensive IT solutions. Technically, the website uses modern web technologies and frameworks, with good mobile optimization and SEO practices. Hosting appears to be consistent with the company's regional presence. Security posture is adequate with HTTPS enforced and cookie consent implemented, but lacks published privacy policies, terms of service, and security headers, which are areas for improvement. No WAF or blocking mechanisms were detected, allowing full content access. WHOIS data confirms domain legitimacy and consistency with business claims. Overall, the website is trustworthy and professionally maintained but would benefit from enhanced privacy and security disclosures to improve compliance and user trust.

15
100
17
70
95
85
100
itserviceswebdevelopmentmobileappscybersecuritymarketing+2 more
HTML5CSS3JavaScriptGoogle Tag Manager
2025-10-14T03:35:55.249Z
M

Moravskoslezský kraj

msk.cz

63
GovernmentCzech RepubliclargeMEDIUM

Moravskoslezský kraj is the official regional government entity for the Moravian-Silesian region in the Czech Republic. The website serves as a comprehensive portal providing information and services related to public administration, social services, healthcare, education, transportation, environment, culture, and economic development. It targets residents, businesses, and public institutions within the region, offering access to various online services and official communications. The site is well-branded and consistent with government standards, featuring multiple ISO certifications and an international rating indicating strong organizational credibility. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, jQuery, and Swiper.js for interactive elements. It uses Matomo analytics for user tracking, indicating a preference for privacy-respecting analytics solutions. The site is mobile-optimized and accessible, with good SEO practices and structured navigation. However, some security best practices such as explicit security headers and cookie consent mechanisms are missing, which could be improved to enhance compliance and security posture. From a security perspective, the website enforces HTTPS and displays certifications for quality, environmental, and information security management systems (ISO 9001, ISO 27001, ISO 50001, EMAS). No critical vulnerabilities or exposed sensitive data were detected. The absence of a public WHOIS record is noted but likely due to registry policies or privacy protection, not indicating malicious intent. Overall, the site demonstrates a mature security posture but could benefit from enhanced transparency in incident response and vulnerability disclosure. The overall risk assessment is low, with the website appearing trustworthy and professionally maintained. Strategic recommendations include implementing cookie consent for GDPR compliance, adding security headers, publishing incident response contacts, and establishing a vulnerability disclosure policy to further strengthen trust and security culture.

45
10
17
85
77
85
100
governmentregionalpublicservicesczechrepublicisocertified+1 more
HTML5CSS3JavaScriptjQuery+2

Partner Domains:

ms-ic.cz
partner
ostravaexpat.eu
partner

+3 more partners

2025-10-14T03:35:30.135Z