Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157083
Websites
130
Industries
113
Countries
52
Avg Score
Page 794 of 3142|Showing 39651-39700 of 157083
werthers-original.co.uk favicon

Storck

werthers-original.co.uk

65
RetailUnited KingdomlargeMEDIUM

Werther’s Original is a well-established confectionery brand owned by Storck, specializing in caramel and toffee products. The website serves as a brand and product showcase with rich multimedia content, product catalogs, recipes, and brand storytelling aimed at a general consumer audience in the UK. The business model focuses on retail and brand marketing within the confectionery sector, supported by a large parent company with multiple related brands. Technically, the site is built on TYPO3 CMS with modern JavaScript frameworks and includes Piwik PRO analytics with GDPR-compliant cookie consent mechanisms. The site is mobile-optimized and offers a good user experience with clear navigation and professional design. Security posture is moderate; while HTTPS is implied, explicit security headers are not detected, and no dedicated security or incident response policies are published. WHOIS data is unavailable due to domain registration errors, which slightly reduces trust but does not undermine the legitimacy of the brand given the strong corporate backing. Overall, the site is professional, trustworthy, and compliant with privacy regulations, though improvements in security transparency and WHOIS clarity are recommended.

80
83
2
60
62
60
100
werthersoriginalconfectionerycaramelretailbrand+4 more
TYPO3 CMSJavaScriptRequireJSPiwik PRO Tag Manager

Partner Domains:

www.bendicks.co.uk
partner
www.toffifee.com
partner

+1 more partners

2025-10-20T19:22:18.658Z
timacagro.com favicon

TIMAC AGRO INTERNATIONAL

timacagro.com

70
ManufacturingFranceenterpriseMEDIUM

TIMAC AGRO INTERNATIONAL is a well-established enterprise specializing in soil, plant, and animal nutrition, with a history dating back to 1959 in Saint-Malo, France. As part of Groupe Roullier, it holds a strong market position as an innovation leader in sustainable agriculture, serving farmers globally through a network of subsidiaries and field representatives. The company offers a comprehensive range of products and services focused on efficient and sustainable farming practices. Technically, the website is built on a modern WordPress platform using Elementor and WooCommerce, with advanced analytics and consent management tools implemented. The site is well-optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital infrastructure. Security-wise, the site enforces HTTPS and uses cookie consent mechanisms but lacks explicit security headers and a public security policy or incident response information. The absence of WHOIS data for the domain is a notable concern, potentially indicating privacy protection or registration issues, though the website content and branding strongly suggest legitimacy. Overall, the site demonstrates a high level of professionalism and trustworthiness, with room for improvement in transparency and security disclosures.

30
68
17
85
95
80
100
agricultureplantnutritionanimalnutritionsustainablefarmingfertilization+4 more
WordPressElementorWooCommerceGoogle Tag Manager+4

Partner Domains:

www.roullier.com
parent
2025-10-20T19:21:53.579Z
aptalumni.org favicon

Aptalumni

aptalumni.org

48
EducationFrancemediumHIGH

Aptalumni is a well-established alumni association serving graduates of AgroParisTech, a prestigious French engineering school. The website provides a comprehensive platform for alumni networking, career services, events, solidarity initiatives, and publications. It targets AgroParisTech alumni and professionals connected to the institution, offering membership benefits and community engagement. The site is professionally designed with consistent branding and clear navigation, supporting a medium-sized organization in the education and non-profit sectors based in France. Technically, the website employs a modern JavaScript stack including jQuery, Bootstrap, SweetAlert, and hCaptcha for security. It uses a specialized CMS likely based on NetAssoc. The site is mobile-optimized and includes accessibility and SEO best practices. Privacy and cookie policies are well implemented with GDPR compliance, including a consent banner managed by tarteaucitron. Analytics and error tracking are handled via Google Analytics and Raygun. Security posture is strong with HTTPS enforced, CSRF protection on forms, and bot mitigation via hCaptcha. However, security headers are not visibly configured, and no explicit security or incident response policies are published. WHOIS data is unavailable due to a malformed response, but the website's professionalism and content quality indicate legitimacy. No suspicious or malicious indicators were found. Overall, the site presents a low-risk profile with good privacy and security hygiene, serving an important educational community. Strategic improvements include adding security headers, publishing a security policy, and enhancing incident response transparency.

85
50
17
57
-
75
20
educationalumnicommunitynetworkingcareer+3 more
jQueryBootstrapSweetAlertintl-tel-input+6

Partner Domains:

fondation.agroparistech.fr
partner
www2.agroparistech.fr
partner

+2 more partners

2025-10-20T19:21:18.512Z
meyerweb.com favicon

Eric A. and Kathryn S. Meyer

meyerweb.com

45
TechnologyN/asmallHIGH

meyerweb.com is a well-established personal and professional website belonging to Eric A. Meyer, a recognized expert in CSS and web development, and his wife Kathryn, a doctor of nursing. The site primarily serves as a blog and resource hub for web developers and CSS enthusiasts, featuring detailed technical articles, tools, and personal writings. The business model is centered on content sharing and community engagement, targeting a niche audience of web professionals and learners. The site has a consistent brand identity and a strong reputation within its niche, supported by a domain age of over two decades. Technically, the site uses a combination of hand-authored HTML and WordPress for the blog section, with some static site generation for book content. The technology stack is modern and standards-compliant, with good mobile optimization and accessibility features. However, performance is moderate and could benefit from further optimization. SEO practices are good, with proper meta tags and structured navigation. From a security perspective, the site benefits from a long-standing domain with clientTransferProhibited status, indicating protection against unauthorized transfers. However, there is no evidence of DNSSEC, security headers, or explicit SSL configuration details, which suggests room for improvement. The absence of privacy and cookie policies is a compliance gap, especially for GDPR. No contact or incident response information is provided, limiting transparency in security matters. Overall, meyerweb.com is a trustworthy and authoritative site with excellent content quality and business credibility. The main risks relate to privacy compliance and security best practices, which if addressed, would enhance the site's security posture and user trust. Strategic recommendations include implementing privacy and cookie policies, enabling DNSSEC, adding security headers, and providing clear contact and vulnerability disclosure information.

15
35
17
85
62
70
-
csswebdevelopmentblogtechnologypersonalsite+1 more
HTML5CSS3JavaScript
2025-10-20T19:21:03.482Z
sil.org favicon

SIL Global

sil.org

63
Non-profitN/alargeMEDIUM

SIL Global is a well-established, faith-based nonprofit organization dedicated to language development and community empowerment worldwide. Their website reflects a professional and comprehensive digital presence, offering extensive resources, training, and services in linguistic research, literacy, translation, and language technology. The organization targets diverse global communities and language professionals, emphasizing equal access to education and socio-economic opportunities regardless of language barriers. Technically, the website is built on Drupal CMS with modern frameworks like Bootstrap and uses standard web technologies including jQuery and Font Awesome. It is mobile-optimized and accessible, with embedded multimedia content enhancing user engagement. Security posture is solid with HTTPS enforced and secure form handling, though the absence of certain security headers and explicit cookie consent mechanisms are areas for improvement. The lack of WHOIS data limits domain registration trust verification, but the presence of recognized nonprofit certifications and consistent branding supports legitimacy. Overall, the site scores well on content quality, technical implementation, and business credibility, with moderate privacy compliance.

40
53
2
85
65
80
100
nonprofitlanguageeducationlinguisticstranslation+3 more
Drupal CMSjQuery 3.7.1BootstrapFont Awesome 4.7.0+2

Partner Domains:

globaldiaspora.sil.org
partner
software.sil.org
partner
2025-10-20T19:20:58.473Z
concrete5.org favicon

Concrete CMS

concrete5.org

74
TechnologyN/amediumMEDIUM

Concrete CMS is an open source content management system designed for teams including content creators, designers, and developers. It offers a website builder with built-in tools to simplify content editing and management. The company behind Concrete CMS, PortlandLabs, positions itself as a provider of secure, compliant, and enterprise-ready CMS solutions, serving notable clients such as the U.S. Army, BASF, and Home Depot. Their business model includes offering the open source CMS software alongside hosting, support, and custom development services. The website demonstrates strong branding consistency, professional design, and clear navigation, targeting medium-sized to enterprise organizations in technology and government sectors. Technically, the website leverages modern web technologies including jQuery, Bootstrap, Vue.js, and integrates analytics and marketing tools such as Google Tag Manager, Matomo, ZoomInfo, Leadfeeder, and Pipedrive LeadBooster. The CMS platform itself is Concrete CMS, hosted likely by PortlandLabs. The site is mobile optimized and performs moderately well, with good SEO and accessibility features. From a security perspective, Concrete CMS emphasizes compliance with ISO 27001, SOC 2, and HIPAA standards, offering role-based access control, workflow approvals, and version control. The site uses HTTPS and has cookie consent mechanisms. However, explicit security headers are not detected, and there is no public vulnerability disclosure or incident response contact information, which are areas for improvement. Overall, the website is professional, trustworthy, and content safe for general audiences. The main concern is the lack of WHOIS registration data, which raises questions about domain legitimacy despite the strong business presence. Strategic recommendations include improving security header implementation, publishing vulnerability disclosure policies, and clarifying domain registration details to enhance trust.

65
53
25
80
100
85
100
cmsopensourcecontentmanagementsecurityhosting+2 more
jQueryBootstrapVue.jsGoogle Tag Manager+4
2025-10-20T19:20:53.465Z
concretecms.org favicon

PortlandLabs

concretecms.org

72
TechnologyN/amediumMEDIUM

Concrete CMS is an established open source content management system developed and maintained by PortlandLabs since 2008. It targets web developers and content editors seeking an easy-to-use, flexible CMS platform with built-in features and a strong community backing. The website positions Concrete CMS as a trusted solution used by governments and Fortune 500 companies, emphasizing security, extensibility, and user-friendly editing experiences. The business model revolves around open source software distribution complemented by community engagement and commercial support services. Technically, the website employs a modern technology stack including jQuery, Bootstrap, Vue.js, FontAwesome, and analytics tools such as Matomo and Google Analytics. The CMS itself is Concrete CMS, which is also the product being promoted. The site is mobile optimized, well-structured, and uses responsive design techniques. Performance is moderate with room for improvement in accessibility features. SEO practices are good with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS and includes a dedicated security page. Cookie consent mechanisms and a comprehensive privacy policy demonstrate compliance with privacy regulations including GDPR. However, explicit security headers are not detected, and no public vulnerability disclosure or incident response contacts are published. No vulnerabilities or exposed sensitive data were found in the HTML content. Overall, the website is professional, trustworthy, and well-maintained with a high level of content quality and business credibility. The lack of WHOIS data limits domain registration trust analysis, but the site’s branding and external trust signals strongly support legitimacy. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure policies, improving accessibility, and maintaining transparency in data protection practices.

65
53
17
70
100
85
100
cmsopensourcecontentmanagementtechnologysoftware+1 more
jQueryBootstrapFontAwesomeVue.js+3

Partner Domains:

www.concretecms.com
partner
market.concretecms.com
partner

+3 more partners

2025-10-20T19:20:48.454Z
xecurify.com favicon

miniOrange

xecurify.com

68
TechnologyN/amediumMEDIUM

The website login.xecurify.com/moas/login serves as a secure login portal for miniOrange, a company specializing in identity and access management solutions such as Single Sign-On and Multi-Factor Authentication. The portal is designed for business and enterprise users requiring secure authentication services. The site uses modern frontend technologies including Bootstrap, jQuery, and Select2, ensuring a responsive and user-friendly experience. However, the page is minimalistic, focusing solely on login functionality without additional content such as privacy or cookie policies. From a security perspective, the site enforces HTTPS and uses cache-control headers to prevent sensitive data caching. The login form includes CSRF tokens, enhancing security. Nonetheless, the absence of key security headers like Content-Security-Policy, HSTS, and Referrer-Policy represents an area for improvement. No signs of WAF or security challenge blocking were detected, allowing full content access. WHOIS data for the subdomain login.xecurify.com is unavailable, which is typical for subdomains. The main domain xecurify.com likely holds the registration. The branding and technical setup align with a legitimate business operation. The lack of privacy and cookie policies on this login page reduces privacy compliance scores. Overall, the site demonstrates a moderate security posture and good business credibility but would benefit from enhanced privacy and security header implementations.

80
35
2
90
77
85
100
loginauthenticationidentitymanagementsecurityminiorange+3 more
Bootstrap 5.3.2jQuery 3.7.1jQuery Migrate 3.4.1Select2 4.1.0-rc.0+3

Partner Domains:

www.miniorange.com
partner
2025-10-20T19:20:33.344Z
german-chamber.gr favicon

Deutsch-Griechische Industrie- und Handelskammer

german-chamber.gr

48
GovernmentGreecemediumHIGH

The Deutsch-Griechische Industrie- und Handelskammer (German-Greek Chamber of Industry and Commerce) serves as a bilateral business network fostering trade and cooperation between Germany and Greece. With approximately 900 members, it offers a range of services including market entry consulting, legal and tax advice, delegation support, job portals, and translation services. The organization also hosts social events and networking opportunities to strengthen business ties. The website reflects a professional and consistent brand image aligned with its institutional partners such as BMWK, DIHK, and IHK. Technically, the site is built on the Ibexa DXP CMS with Vue.js and Swiper.js for frontend interactivity, delivering a good user experience with mobile optimization and accessibility considerations. Security posture is solid with HTTPS and no exposed sensitive data, though improvements could be made by adding security headers and explicit incident response information. Privacy compliance is partially met with a clear privacy policy but lacks a cookie consent mechanism. Overall, the site is trustworthy and well-positioned within its niche, serving a medium-sized organization focused on government and non-profit sectors.

40
28
17
55
-
65
100
industrycommercenetworkingbusinessservicesgerman-greekrelations
Ibexa DXPVue.jsSwiper.js

Partner Domains:

bmwk.de
partner
dihk.de
partner

+3 more partners

2025-10-20T19:20:23.312Z
pinterest.com.mx favicon

Pinterest

pinterest.com.mx

74
TechnologyMexicolargeMEDIUM

Pinterest is a globally recognized technology company specializing in visual discovery and social media services. The platform enables users to find and share ideas related to recipes, home decor, fashion, and more, targeting a broad general audience. The Mexican localized site (mx.pinterest.com) reflects the company's commitment to regional markets with tailored content and language support. Pinterest operates primarily on an advertising and e-commerce integrated business model, leveraging its large user base and visual content to connect users with products and services. Technically, the website employs a modern tech stack including React, JavaScript, and WebAssembly, hosted on Amazon AWS infrastructure. It integrates multiple third-party services for fonts, analytics, advertising, and security, such as Google Fonts, Amazon Advertising, Facebook Pixel, and Arkose Labs for bot mitigation. The site demonstrates excellent performance, mobile optimization, and accessibility standards, ensuring a smooth user experience. From a security perspective, Pinterest enforces HTTPS with strong SSL configurations and implements comprehensive security headers including a strict Content Security Policy. The use of reCAPTCHA and Arkose Labs indicates proactive measures against automated abuse. Privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature privacy posture. No critical vulnerabilities or suspicious indicators were detected in the analyzed content. Overall, Pinterest's Mexican site exhibits a high level of professionalism, security, and compliance, supporting its position as a trusted and established platform. The absence of WHOIS data for the subdomain is typical and does not detract from legitimacy, as it is managed under the main pinterest.com domain. Strategic recommendations include maintaining regular security audits, enhancing transparency around vulnerability disclosures, and continuing to optimize privacy compliance.

80
53
10
85
82
90
100
socialmediavisualdiscoverye-commerceadvertisingrecipes+2 more
ReactJavaScriptWebAssemblyAmazon S3+3

Partner Domains:

pinterest.com
parent
amazon-adsystem.com
partner

+2 more partners

2025-10-20T19:20:13.293Z
recomiendayganathermomix.mx favicon

Loyalty Marketing Services SAPI de CV

recomiendayganathermomix.mx

59
RetailMexicosmallMEDIUM

The website recomiendayganathermomix.mx serves as a login portal for a customer referral and rewards program associated with Thermomix products in Mexico. Operated by Loyalty Marketing Services SAPI de CV, the platform targets Thermomix customers to facilitate user authentication, password recovery, and registration. The site leverages modern frontend technologies such as jQuery, Bootstrap 5, and SweetAlert2, and is built on an ASP.NET Core Identity framework, indicating a mature technical infrastructure. The website is mobile optimized and presents a consistent brand image aligned with Thermomix official branding. From a security perspective, the site enforces HTTPS and includes anti-forgery tokens in forms, enhancing protection against common web attacks. However, the absence of security headers like Content-Security-Policy and lack of a cookie consent mechanism indicate areas for improvement. No explicit privacy or incident response policies are published on the site, which could impact compliance with data protection regulations. The WHOIS data is privacy protected but consistent with the business branding, and no suspicious patterns were detected. Overall, the website demonstrates a moderate to good security posture and technical maturity suitable for its business purpose. Strategic enhancements in privacy compliance, security headers, and transparency around data protection would strengthen trust and regulatory adherence. The platform's focused business model and clear target audience position it well within the niche Thermomix customer referral market in Mexico.

35
50
2
60
77
75
100
loginthermomixreferralrewardsmexico+1 more
jQueryBootstrap 5SweetAlert2LoadingOverlay
2025-10-20T19:20:03.273Z
brigadyhostesky.eu favicon

České modelky s.r.o.

brigadyhostesky.eu

43
OtherCzech RepublicsmallHIGH

České modelky s.r.o. operates the website brigadyhostesky.eu, providing an online platform for event staffing, specifically offering job opportunities for hostesses and promoters across the Czech Republic. Established since 2006, the company positions itself as a professional service provider in organizing commercial and social events. The website features detailed job listings, profiles of hostesses, and client references, targeting individuals seeking temporary work in promotional roles. The business model revolves around connecting clients with suitable event staff and managing registrations and communications online. Technically, the website employs a modern frontend stack including jQuery, Bootstrap 5, FontAwesome, and Google reCAPTCHA for form security. The site is mobile-optimized with good navigation and content structure, although some advanced security headers and cookie consent mechanisms are missing. External resources and partner domains are well integrated, indicating a mature digital presence. However, the lack of WHOIS data limits domain trust verification. From a security perspective, HTTPS is used, and spam protection is implemented via reCAPTCHA. The absence of security headers like CSP and HSTS, and missing cookie consent, represent areas for improvement. No critical vulnerabilities or adult content were detected, and privacy policy compliance with GDPR is indicated. Overall, the site demonstrates a moderate security posture suitable for its business scope but would benefit from enhanced security controls. The overall risk assessment is moderate with a trust score of 75 out of 100. Strategic recommendations include implementing security headers, adding cookie consent, improving WHOIS transparency, and maintaining up-to-date software. These steps will enhance user trust, compliance, and security resilience.

20
10
2
60
85
75
20
hosteskybrigdymodelkypromotieskrepublika+3 more
jQuery 3.6.0Bootstrap 5.3.0FontAwesome 5.15.4 and 6.2.1Google reCAPTCHA v2+5

Partner Domains:

www.ceskemodelky.cz
partner
www.ceskehostesky.cz
partner

+3 more partners

2025-10-20T19:19:28.162Z
netroliferadio.cz favicon

TEKOM CZ spol. s r.o.

netroliferadio.cz

59
MediaCzech RepublicsmallMEDIUM

Netro Life Radio is a regional FM radio station based in České Budějovice, Czech Republic, operated by TEKOM CZ spol. s r.o. The station focuses on dance and popular music, targeting listeners in the South Bohemia region. It offers both traditional FM broadcasting on 100.8 FM and online streaming services, including high-quality and mobile-optimized streams. The website is professionally designed, featuring clear navigation, multimedia content, and active social media channels. However, the absence of WHOIS data limits transparency about domain ownership and age. Technically, the website leverages modern web technologies including Google Tag Manager, Google Analytics, and a proprietary CMS platform (solidpixels.). The site is mobile-optimized and includes cookie consent mechanisms, reflecting a moderate level of digital maturity. Security posture is adequate with HTTPS enforced and secure form handling, but lacks visible security headers and explicit privacy policies, indicating room for improvement. Overall, the security posture is moderate with no critical vulnerabilities detected in the visible content. The business credibility is strong due to clear company information and legal disclosures. The absence of WHOIS data and privacy policy slightly reduce trust scores. Strategic recommendations include enhancing security headers, publishing comprehensive privacy and security policies, and improving accessibility features to strengthen compliance and user trust.

55
40
2
60
65
75
100
radiomusicmediadanceeskbudjovice+1 more
Google Tag ManagerGoogle AnalyticsSolidpixels CMSAsync JavaScript loading+2

Partner Domains:

budejcezadarmo.cz
partner
kontobariery.cz
partner

+2 more partners

2025-10-20T18:18:56.678Z
salonkyhk.cz favicon

TN Média s.r.o.

salonkyhk.cz

44
MediaCzech RepublicmediumHIGH

Salonky is a regional news media website operated by TN Média s.r.o., focusing on delivering local news, sports, cultural events, and multimedia content to the Hradec Králové region in the Czech Republic. The site targets local residents and those interested in regional affairs, leveraging a content-rich platform with regular updates and social media integration. The business model appears to be advertising-supported, with visible banners and campaign redirects embedded in the site. Technically, the website is built on WordPress and utilizes modern front-end libraries such as jQuery, Bootstrap, Owl Carousel, and Font Awesome. It employs HTTPS for secure communication and integrates Google Analytics for visitor tracking. The site is mobile-optimized with a responsive design and includes interactive features like video tabs and newsletter subscription forms. However, some accessibility and SEO optimizations could be improved. From a security perspective, the site uses HTTPS but lacks visible security headers such as Content-Security-Policy or X-Frame-Options. The newsletter subscription form uses JavaScript fetch API for secure data submission, but no explicit privacy policy or cookie consent mechanism is present, which may raise compliance concerns. The absence of WHOIS data for the domain reduces trustworthiness, although the site content and design indicate a legitimate media outlet. Overall, Salonky presents a professional and content-rich platform for regional news but would benefit from enhanced privacy disclosures, security headers, and WHOIS transparency to improve trust and compliance. Strategic improvements in these areas will strengthen its security posture and user confidence.

20
10
2
70
85
75
20
newsmedialocalsportsculture+1 more
jQueryBootstrapOwl CarouselFont Awesome+3

Partner Domains:

trutnovinky.cz
partner
vrchlabinky.cz
partner

+1 more partners

2025-10-20T18:18:51.668Z
wp-royal.com favicon

Wp Royal

wp-royal.com

57
TechnologyN/asmallMEDIUM

WP Royal Themes is a small technology company specializing in the development and sale of WordPress themes, targeting bloggers, small businesses, and WordPress users seeking quality, customizable themes. The company emphasizes customer support, providing forums, documentation, and video tutorials to enhance user experience. Their market position is that of a niche WordPress theme provider with a focus on quality and support, leveraging modern WordPress technologies and e-commerce capabilities via WooCommerce. Technically, the website is built on WordPress with a robust tech stack including WooCommerce, Yoast SEO, WPBakery Page Builder, and Slider Revolution. Hosting is provided by Bluehost Inc., and the site uses HTTPS with a good SSL configuration. Performance is moderate with good mobile optimization and basic accessibility features. SEO is well addressed through meta tags and structured data. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and explicit security headers, which are recommended for enhanced security. No explicit security or incident response policies are published, and no direct contact emails or phone numbers are provided, which could be improved for better trust and compliance. Cookie consent is implemented, indicating some GDPR compliance efforts. Overall, the website is professional, trustworthy, and safe for general audiences. The main risks relate to minor security hardening and privacy policy transparency. Strategic improvements in these areas would enhance compliance and user trust.

25
85
2
40
57
70
100
wordpressthemese-commerceseosupport+2 more
WordPressWooCommerceYoast SEOWPBakery Page Builder+4

Partner Domains:

users.freemius.com
partner
2025-10-20T18:17:46.526Z
ricany.cz favicon

Město Říčany

ricany.cz

57
GovernmentCzech RepublicmediumMEDIUM

Město Říčany is the official municipal government website for the town of Říčany in the Czech Republic. It serves as a comprehensive portal for citizens and local businesses, providing news updates, cultural event calendars, public service information, official notices, and contact details. The site targets local residents and stakeholders, offering a user-friendly experience with multilingual support and clear navigation. The business model is focused on public administration and community engagement, positioning itself as a trusted local government authority. Technically, the website is built on WordPress with a modern tech stack including jQuery, WPML for multilingual support, and various plugins for GDPR compliance and user interaction. The site demonstrates good performance, mobile optimization, and accessibility features. It integrates Google Analytics and Tag Manager for analytics and marketing purposes, with a clear cookie consent mechanism ensuring GDPR compliance. From a security perspective, the site enforces HTTPS and uses best practices such as cookie consent and DOMPurify for sanitization. However, some minor issues like broken lazy loading images and missing explicit security headers (CSP, X-Frame-Options) were noted. The WHOIS data is unavailable, likely due to privacy protection, but the website's professional presentation and official branding support its legitimacy. Overall, the site presents a low-risk profile with strong business credibility and good technical implementation. Strategic recommendations include enhancing security headers, fixing image loading errors, and adding a security.txt file for vulnerability disclosure to further strengthen trust and compliance.

15
40
17
70
52
75
100
governmentmunicipalczechrepublicpublicservicesculture+4 more
WordPressjQuerySVG Support pluginWPML (multilingual)+5

Partner Domains:

parkovani.ricany.cz
partner
www.poznejricany.cz
partner

+3 more partners

2025-10-20T18:17:31.487Z
fundacionibercaja.es favicon

Fundación Bancaria Ibercaja

fundacionibercaja.es

59
Non-profitSpainlargeMEDIUM

Fundación Ibercaja is a well-established non-profit foundation based in Spain, dedicated to fostering social equality, cultural enrichment, educational development, and territorial economic growth. The organization operates multiple centers and offers diverse programs aimed at improving societal welfare and promoting sustainability aligned with the UN Agenda 2030. The website reflects a professional and consistent brand image, supported by comprehensive legal and privacy documentation, and active engagement through social media channels. Technically, the website employs modern web technologies including responsive design frameworks and JavaScript libraries such as Swiper.js and Google Analytics for user tracking and engagement analysis. The site is mobile-optimized and accessible, with good SEO practices evident in metadata and structured content. However, some security headers are not explicitly detected, and no incident response or vulnerability disclosure information is published, which could be improved. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, demonstrating compliance with GDPR requirements. No critical vulnerabilities or exposed sensitive data were found in the analysis. The absence of WHOIS data limits domain trust evaluation, but the overall digital footprint and certifications support legitimacy. Overall, Fundación Ibercaja presents a strong digital presence with a clear mission and trustworthy operations. Strategic enhancements in security transparency and WHOIS data availability would further strengthen its credibility and resilience.

100
25
17
70
-
75
100
fundacinibercajanon-profitsocialcommitmentcultureeducation+2 more
HTML5CSS3JavaScriptSwiper.js+1

Partner Domains:

www.ibercaja.es
partner
mobilitycity.es
partner

+2 more partners

2025-10-20T18:16:41.047Z