Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149092
Websites
130
Industries
113
Countries
52
Avg Score
Page 752 of 775|Showing 37551-37600 of 38713
ixopay.com favicon

IXOPAY GmbH

ixopay.com

56
FinanceAustriamediumMEDIUM

IXOPAY GmbH is a medium-sized enterprise based in Austria specializing in enterprise payment orchestration and tokenization solutions. The company offers a comprehensive platform designed to improve authorization rates, streamline PCI compliance, and unify payment data for merchants and enterprises globally. Their business model focuses on providing modular payment services and connectivity to multiple payment processors, targeting B2B clients in finance and technology sectors. The website demonstrates strong branding consistency, professional content, and trust indicators such as client testimonials and social media presence. Technically, the website leverages modern JavaScript technologies, integrates third-party services like Sentry for error tracking, ChiliPiper for lead routing, and TokenEx for tokenization. It is hosted behind Cloudflare, which provides DNS and CDN services. However, performance is currently slow, and accessibility is basic. SEO optimization is good with proper meta tags and structured data. From a security perspective, while the website implements several important HTTP security headers and secure cookie attributes, it suffers from a critical SSL/TLS misconfiguration with no valid certificate and no enabled TLS protocols. This severely impacts the security posture and trustworthiness of the site. Privacy compliance is generally good with a comprehensive privacy policy and GDPR indicators, but no explicit cookie consent mechanism was detected. Overall, IXOPAY presents a professional and credible business front with strong technical foundations but requires urgent remediation of SSL/TLS issues to ensure secure and trusted operations. Strategic improvements in performance and privacy consent mechanisms would further enhance their digital maturity.

75
43
25
50
50
85
100
paymentorchestrationtokenizationpcicompliancepaymentprocessingenterprisepayments
JavaScriptSentry (error tracking)ChiliPiper (lead routing)TokenEx (tokenization integration)+1

Partner Domains:

tokenex.com
partnerpending
chilipiper.com
partner68
2025-06-14T19:29:21.291Z
akzonobel.com favicon

Akzo Nobel N.V.

akzonobel.com

72
ManufacturingNetherlandsenterpriseMEDIUM

Akzo Nobel N.V. is a global leader in the manufacturing and distribution of paints and coatings, with a rich history dating back to 1792. The company operates in over 150 countries and manages a portfolio of well-known brands such as Dulux, International, Sikkens, and Interpon. Their business model focuses on providing innovative and sustainable surface solutions to a wide range of industries including manufacturing, energy, and transportation. The website reflects a mature digital presence with comprehensive content aimed at customers, investors, and partners worldwide. Technically, the website is built on Adobe Experience Manager (AEM) and leverages modern web technologies including HTML5, CSS3, JavaScript, and various marketing and analytics tools such as Google Tag Manager and Adobe DTM. Hosting is provided via Amazon AWS infrastructure. While the site is mobile-optimized and accessible, performance is somewhat slow with a load time exceeding 8 seconds, indicating room for optimization. From a security perspective, the site employs HTTPS with a valid SSL certificate, SPF and DMARC email authentication records, and no detected vulnerabilities or subdomain takeover risks. However, security headers like HSTS and OCSP stapling are not enabled, and TLS 1.3 is not supported, suggesting moderate security posture. Privacy compliance is strong with clear privacy and cookie policies and an active consent mechanism, aligning with GDPR requirements. Overall, the website demonstrates a high level of professionalism, trustworthiness, and business credibility. The main risks relate to technical performance and some security hardening opportunities. Strategic recommendations include enhancing SSL configurations, enabling advanced security headers, improving page load times, and maintaining rigorous privacy compliance to sustain trust and regulatory adherence.

75
40
25
85
77
85
100
innovationsustainabilitypaintscoatingscorporate+1 more
HTML5CSS3JavaScriptjQuery+4

Partner Domains:

dulux.co.uk
partnerpending
interpon.com
partnerpending

+3 more partners

2025-06-14T19:28:56.501Z
dinsolutions.de favicon

DIN Solutions GmbH

dinsolutions.de

40
TechnologyGermanymediumHIGH

DIN Solutions GmbH is a medium-sized technology company operating within the DIN group, specializing in the development and operation of software, platforms, and databases for norming and standardization. The company serves DIN, DIN Media, and their customers and partners by delivering tailored technical solutions and engaging in innovative research and development, including artificial intelligence applications. Their market position is strong within the German norming ecosystem, supported by ISO 9001 certification and partnerships with recognized entities such as TÜV Rheinland. Technically, the website employs modern technologies including MarkLogic NoSQL database, X-Swift framework, and Swift programming language for transformation processes. The site is well-designed, mobile-optimized, and uses etracker for analytics. Performance is moderate with a page load time of about 3 seconds. However, the SSL certificate is nearing expiration, and security headers are minimal, indicating room for improvement in security hardening. Security posture is adequate with HTTPS, SPF, and DMARC configured, but lacks HSTS, DNSSEC, and advanced security headers. No vulnerabilities or malware were detected, but urgent SSL renewal is needed to maintain trust and secure communications. Privacy compliance is good with a comprehensive privacy policy and GDPR adherence, though no cookie consent mechanism was found. Overall, the website is professional and trustworthy with strong business credibility. Strategic recommendations include immediate SSL renewal, enhancing security headers, implementing DNSSEC and CAA, and adding cookie consent mechanisms to improve privacy compliance and security posture.

65
18
25
85
72
85
100
technologynormungsoftwarestandardisierungdin+4 more
MarkLogicX-SwiftSwiftHTML5+4

Partner Domains:

din.de
parent40
dinmedia.de
partneranalyzing...

+1 more partners

2025-06-14T19:23:04.698Z
cdl-bot.at favicon

Christian Doppler Laboratory CDL-BOT

cdl-bot.at

40
TechnologyAustriamediumHIGH

The Christian Doppler Laboratory CDL-BOT is a research-focused institution specializing in blockchain technologies for the Internet of Things. It operates as a collaboration between academic institutions TU Hamburg and TU Wien, supported by Austria's Federal Ministry for Digital and Economic Affairs and industrial partners such as Pantos and the IOTA Foundation. The laboratory aims to advance Distributed Ledger Technologies to be practical and effective for IoT applications, including secure data exchange and payment mechanisms. The website reflects a professional research entity with clear academic and industrial partnerships but lacks direct contact information and comprehensive privacy or security policies. Technically, the website is built using modern web technologies including React and Next.js, providing a good user experience and mobile optimization. However, the site suffers from a critical security shortfall due to the absence of a valid SSL certificate and HTTPS support, which significantly impacts its security posture. The DNS setup is standard but lacks advanced security features such as DNSSEC and CAA records. Performance is moderate with a page load time of approximately 4 seconds. Security-wise, the site does not implement essential best practices such as HTTPS, HSTS, or security headers, and lacks vulnerability disclosure or incident response information. Privacy compliance is minimal with a basic privacy policy present but no cookie consent mechanism or GDPR compliance statements. Overall, the site is functional and informative but requires urgent improvements in security and privacy to meet modern standards. Strategic recommendations include immediate deployment of a valid SSL certificate, enabling HTTPS, implementing security headers, adding cookie consent mechanisms, and publishing comprehensive security and privacy policies to enhance trust and compliance.

35
18
25
70
50
60
75
blockchaininternetofthingsresearchtechnologychristiandopplerlaboratory
ReactNext.jsJavaScript

Partner Domains:

pantos.io
partner57
iota.org
partnerpending

+1 more partners

2025-06-14T19:00:13.033Z
secure-mailgate.com favicon

Secure Mailgate

secure-mailgate.com

67
TechnologyGermanysmallMEDIUM

Secure Mailgate operates as a specialized provider of secure email gateway services, focusing on secure login and email domain management primarily targeting business users requiring secure email access. The website is functional and accessible, featuring a login form and multilingual support but lacks comprehensive public-facing content such as privacy policies, terms of service, or contact information. Technically, the site uses standard web technologies including JavaScript and CSS, hosted on infrastructure associated with Cloudpit. Performance is moderate with a relatively small page size and acceptable load times. From a security perspective, the site enforces HTTPS with modern TLS protocols (1.3 and 1.2) and a valid wildcard SSL certificate, but lacks advanced security features such as HSTS, OCSP stapling, DNSSEC, and DMARC records. No security headers are detected, and no vulnerability disclosures or incident response contacts are publicly available. This indicates a basic security posture with room for significant improvement to enhance email domain protection and overall site security. Overall, the website presents a basic but functional digital presence with limited transparency on privacy and security policies. The lack of contact information and policy documents may impact user trust and compliance with data protection regulations. Strategic improvements in security configuration, policy publication, and user communication are recommended to strengthen the company's market position and compliance posture.

60
40
25
70
92
75
100
secureemailloginemailgatewaysecuritymultilingual
jQueryJavaScriptCSS
2025-06-14T18:52:42.159Z
hundstat.us favicon

Hund

hundstat.us

50
TechnologyN/asmallMEDIUM

Hund.io operates a status page at hundstat.us providing real-time and historical operational status for its services including website, DNS, GitLab, and platform components. The site targets users and customers who require transparency on service availability and performance. The business model centers on operational monitoring and status reporting, positioning Hund.io as a technology service provider in the monitoring niche. The website content is professional and consistent with the brand, but lacks comprehensive business and compliance information. Technically, the site is hosted on AWS infrastructure with DNS managed partly by AWS and Hurricane Electric. The technology stack includes standard web technologies with Google Analytics and Google Tag Manager for tracking. However, the site suffers from slow performance and lacks modern optimizations such as full mobile responsiveness and accessibility features. From a security perspective, the site has critical weaknesses including an invalid or missing SSL certificate, absence of HTTPS, no security headers, and no DNSSEC or CAA records. These issues significantly reduce the security posture and expose users to risks. Additionally, there is no evidence of privacy compliance, incident response policies, or contact information for security matters. Overall, the site presents moderate business credibility but requires urgent improvements in security and privacy compliance to reduce risk and enhance trust. Strategic recommendations include obtaining a valid SSL certificate, enabling HTTPS, implementing security headers, and publishing privacy and security policies.

55
25
25
50
50
85
100
statuspagemonitoringoperationalstatushundio
Google AnalyticsGoogle Tag ManagerOpen Sans fontJavaScript+1
2025-06-14T18:52:09.163Z
mpirical-lms.com favicon

Mpirical

mpirical-lms.com

53
EducationN/asmallMEDIUM

Mpirical LMS is an educational technology platform providing a Moodle-based learning management system primarily targeting educational institutions and learners. The platform integrates Microsoft 365 for user authentication and incorporates video content via Vimeo, indicating a focus on multimedia learning experiences. The business operates a niche SaaS model within the education sector, with a relatively small scale and basic public-facing content. Technically, the website is built on Moodle with YUI JavaScript libraries and uses OAuth2 for authentication. However, the site suffers from significant performance issues with a slow load time and lacks modern SEO and accessibility optimizations. The absence of a valid SSL certificate and HTTPS implementation is a critical security flaw, exposing users to potential data interception risks. The site also lacks essential security headers and cookie consent mechanisms, which further weakens its security posture and privacy compliance. From a security perspective, the platform shows minimal adherence to best practices. The lack of HTTPS, no HSTS, no DNSSEC, and missing DMARC reporting emails are notable vulnerabilities. No incident response or security policy information is publicly available, and no certifications or vulnerability disclosure policies are evident. These gaps present risks to user data protection and regulatory compliance. Overall, the website's risk profile is elevated due to poor security configurations and slow performance. Strategic improvements in SSL deployment, security headers, privacy compliance, and performance optimization are recommended to enhance trustworthiness and protect user data effectively.

30
43
25
50
50
85
100
moodlelmseducationloginmicrosoft365
MoodleYUI 3.17.2Vimeo PlayerOAuth2+2

Partner Domains:

mpirical.com
partner69
2025-06-14T18:49:27.295Z
commercetools.com favicon

commercetools GmbH

commercetools.com

67
E-commerceGermanyenterpriseMEDIUM

commercetools GmbH is a leading enterprise-grade commerce platform provider specializing in versatile solutions for B2B, B2C, and omnichannel commerce. The company offers a comprehensive suite of services including commerce platform capabilities, solution hubs, payment and AI hubs, premium support, and expert services. Recognized by top analyst firms such as Gartner and IDC, commercetools holds a strong market position with a global enterprise customer base and a robust partner ecosystem. Their platform is designed to empower enterprises with flexibility, scalability, and innovation acceleration. Technically, commercetools leverages modern JavaScript frameworks, cloud hosting on Amazon AWS, and integrates advanced marketing and analytics tools such as Google Tag Manager, VWO, and OneTrust for cookie consent management. The website demonstrates good performance and mobile optimization, with a consistent and professional design that supports a seamless user experience. The technical infrastructure supports extensive tracking and analytics while maintaining compliance with privacy regulations. From a security perspective, commercetools employs a valid SSL certificate, SPF and DMARC email authentication policies, and uses OneTrust for managing cookie consent, indicating a mature approach to data privacy and security. However, there is room for improvement in enabling HSTS, DNSSEC, and additional security headers to enhance protection against common web threats. No critical vulnerabilities or subdomain takeover risks were detected. Overall, commercetools presents a strong digital presence with a secure and compliant infrastructure, well-aligned with enterprise needs. Strategic recommendations include enhancing transport security with HSTS, implementing DNSSEC, and publishing a vulnerability disclosure policy to further strengthen trust and security posture.

90
25
17
80
82
90
100
enterprisecommerceb2bcommerceb2ccommercecomposablecommerceomnichannel+3 more
JavaScriptAmazon AWSGoogle Tag ManagerOneTrust Cookie Consent+5

Partner Domains:

qualified.com
partnerpending
cookielaw.org
partner69
2025-06-14T18:39:49.333Z
bundesverband-green-software.de favicon

Bundesverband Green Software e. V.

bundesverband-green-software.de

52
TechnologyGermanysmallMEDIUM

Bundesverband Green Software e. V. is a German non-profit association dedicated to promoting sustainable and resource-efficient software development practices in Germany. The organization focuses on advancing green software standards, tools, training, and policy advocacy to reduce the ICT sector's carbon footprint. Their market position is that of a leading national association in the green software domain, targeting companies and digital actors interested in sustainability. The website content is well-aligned with their mission and audience, providing information on initiatives, working groups, events, and membership opportunities. Technically, the website employs modern web technologies including Tailwind CSS and JavaScript libraries such as Marquee3k, hosted behind Cloudflare DNS and leveraging email infrastructure from Scaleway and Outlook. While the site is responsive and optimized for mobile devices, performance is somewhat slow with a load time of nearly 7 seconds. SEO practices are good, but accessibility is basic. No CMS or advanced frameworks are detected. From a security perspective, the site has a valid SSL certificate (though with suspicious validity dates), SPF and DMARC records configured, but lacks advanced security headers like HSTS or DNSSEC. There is no visible security policy, incident response contact, or vulnerability disclosure mechanism. Privacy compliance is supported by a comprehensive privacy policy, but no cookie consent mechanism is present. The security posture is moderate with room for improvement in email security policies and HTTPS hardening. Overall, the website and organization present a trustworthy and professional front for their green software advocacy mission. Strategic improvements in security headers, DNS security, and transparency around incident response would enhance their security maturity and stakeholder confidence.

30
18
25
55
67
80
100
greensoftwaresustainabilitydigitalizationclimategermany+1 more
JavaScriptTailwind CSSMarquee3k (JS library)Cloudflare DNS and nameservers+2
2025-06-14T18:36:50.092Z