Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 8 of 16|Showing 351-400 of 772
linzag.at favicon

LINZ AG für Energie, Telekommunikation, Verkehr und Kommunale Dienste

linzag.at

67
EnergyAustrialargeMEDIUM

LINZ AG is a large multi-utility company based in Linz, Austria, providing essential services including energy supply (electricity, natural gas, district heating), public transportation, telecommunications, and various municipal services such as waste management and water supply. The company serves primarily private customers and the general public in Linz and the surrounding region. The website reflects a well-structured portal offering detailed information and online services related to these sectors. Technically, the website is built using JavaServer Faces with PrimeFaces components, supplemented by jQuery and integrated with OneTrust for cookie consent management and Etracker for analytics. The site is mobile-optimized and demonstrates good SEO and accessibility practices, although some accessibility features could be enhanced. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS and implements cookie consent, but lacks explicit security headers such as Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The WHOIS data confirms the domain is registered to a legitimate entity consistent with the business, enhancing trustworthiness. Overall, the website is professional, trustworthy, and safe for general audiences. However, the absence of visible privacy policies, terms of service, and explicit security or incident response policies suggests areas for improvement in compliance and transparency. Strategic recommendations include enhancing security headers, publishing comprehensive privacy and security policies, and improving accessibility compliance.

35
88
2
75
77
80
100
linzagenergypublictransportmunicipalserviceswastemanagement+3 more
jQuery 1.11.3PrimeFaces (JavaServer Faces component library)OneTrust Cookie ConsentEtracker analytics
2025-09-05T02:50:41.459Z

北京当当科文电子商务有限公司

dangdang.com

60
E-commerceChinalargeMEDIUM

Dangdang.com is a leading Chinese e-commerce platform primarily focused on books, electronic books, and a wide range of retail products including clothing, household items, and mother and baby products. The website positions itself as a comprehensive online shopping center with a strong emphasis on authentic products and customer convenience such as free shipping on self-operated books and easy returns. The platform targets a broad consumer base in China, especially book buyers and general shoppers. Technically, the website employs a traditional web stack with jQuery and custom JavaScript, serving content primarily in Chinese with moderate performance and basic mobile optimization. The site uses HTTPS and includes multiple internal advertising and tracking scripts but lacks some modern security headers and explicit cookie consent mechanisms, which could be improved for better compliance and security posture. From a security perspective, the site shows good SSL configuration and no obvious vulnerabilities in the HTML content. However, the absence of WHOIS data limits the ability to fully verify domain legitimacy. The site displays multiple official certifications and government registrations, enhancing trustworthiness. No adult or unsafe content is present, making it suitable for general audiences. Overall, Dangdang.com is a mature, large-scale e-commerce platform with a solid market position in China. Strategic improvements in privacy compliance and security headers would enhance its security posture and regulatory adherence.

15
50
17
70
75
75
100
e-commercebooksshoppingchineseretail+1 more
jQuery 1.11.3Custom JavaScriptCSS stylesheetsHTML5
2025-09-04T21:02:27.912Z
huanxingedu.com favicon

辽宁寰兴经贸文化教育有限公司

huanxingedu.com

54
EducationChinamediumMEDIUM

辽宁寰兴经贸文化教育有限公司 operates the website www.huanxingedu.com, a professional education and study abroad consulting platform primarily targeting Chinese students seeking overseas education opportunities. The company offers a comprehensive range of services including study abroad consulting for multiple countries, language training (IELTS, TOEFL, PTE), background enhancement programs, overseas course tutoring, international study tours, and immigration services. The website demonstrates a solid market position with a medium-sized business footprint and a founding date claimed as 1998, supported by rich content and multiple success stories. Technically, the website employs a traditional tech stack with jQuery 1.11.3 and various JavaScript libraries for UI and analytics, but some components are outdated, posing security risks. The site is accessible without WAF or blocking mechanisms and uses HTTPS, but lacks modern security headers and privacy compliance documentation. Contact information is available primarily via phone and web forms, but no company emails or privacy policies are found, indicating compliance gaps. The WHOIS data is missing or unavailable, which slightly reduces domain trustworthiness, though the website content and branding are consistent and professional.

15
50
2
70
62
60
100
educationstudyabroadconsultinglanguagetraininginternationaleducation
jQuery 1.11.3FlexsliderLayer.jsSlides.js+3

Partner Domains:

ym.huanxingedu.com
subsidiary
class.huanxingedu.com
subsidiary

+2 more partners

2025-08-04T17:06:47.427Z
beiing.net favicon

广州贝应云科技有限公司

beiing.net

61
EducationChinamediumMEDIUM

The website www.beiing.net represents Guangzhou Beiing Cloud Technology Co., Ltd., offering specialized training institution management software solutions primarily targeting educational institutions in China. The company provides a comprehensive SaaS platform including modules for customer management, class scheduling, financial management, and family-school communication, serving over 10,000 clients with 13 years of industry experience. The website is professionally designed, mobile-optimized, and rich in relevant content, supporting the company's market position as a mature player in the education technology sector. Technically, the site employs established JavaScript libraries such as jQuery, Swiper, and WOW.js, alongside Baidu Tongji for analytics and 53KF for online chat support. While the site loads external scripts securely over HTTPS, explicit security headers are not detected, and privacy compliance elements such as cookie consent and privacy policies are absent, indicating room for improvement in data protection practices. Security posture is moderate with no visible vulnerabilities or exposed sensitive data, but the absence of WHOIS registration data for the domain raises concerns about domain legitimacy and ownership transparency. This discrepancy between the professional website and missing domain registration details suggests further verification is needed to confirm trustworthiness. Overall, the site is functional and business-focused but should enhance its privacy, security policies, and domain registration transparency to strengthen trust and compliance.

30
50
2
70
90
75
100
jQuery 1.11.3Swiper.jsWOW.jsFont Awesome+2
2025-08-03T20:50:17.070Z

深圳市中鼎阀门有限公司

mluuu.com

55
EnergyChinamediumMEDIUM

深圳市中鼎阀门有限公司 operates as the exclusive domestic agent for the American valve brand Miller in China, specializing in the import and distribution of various industrial valves including ball valves, butterfly valves, regulating valves, and solenoid valves. Established in 2012 as a partner of USA MILLER VALVEGROUP COMPANY, the company positions itself as a professional and reliable supplier with a strong focus on quality and service within the Chinese industrial market. The website reflects a well-structured product catalog and company information targeting industrial clients and procurement professionals. Technically, the website employs standard web technologies such as jQuery and Swiper.js for UI interactions, with moderate performance and good mobile optimization. The site is served over HTTPS, ensuring secure communications, but lacks advanced security headers and privacy compliance mechanisms such as cookie consent banners or privacy policies. No CMS or hosting provider details are evident, and analytics usage appears minimal. From a security perspective, the site demonstrates basic good practices like HTTPS usage and no visible sensitive data exposure. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure information, which are important for mature security posture. The absence of privacy and cookie policies indicates compliance gaps with GDPR and related regulations. Overall, the website is professional and trustworthy in business presentation but would benefit from enhanced privacy compliance, security headers, and incident response transparency to improve its security posture and regulatory adherence.

30
50
2
60
62
60
100
miller
jQuery 1.11.3Swiper.js

Partner Domains:

www.yansi.cc
partner
www.sfycc.com
partner

+2 more partners

2025-08-03T19:41:54.103Z
Z

在线json | json在线解析格式化 | 在线JSON格式化工具-在线JSON

zxjson.com

56
TechnologyChinasmallMEDIUM

The website zxjson.com is a Chinese-language online platform offering a wide range of JSON-related tools including formatting, compression, conversion to various programming languages, and additional utilities for encryption, text transformation, and web development. It targets developers and technical users seeking free, accessible online tools to manipulate JSON and related data formats. The site is professionally designed with consistent branding and good mobile optimization, providing a comprehensive suite of services in the technology sector. The domain is registered with Alibaba Cloud Computing Ltd., a reputable registrar, and has a valid registration status with no privacy protection, indicating transparency in ownership. From a technical perspective, the site employs standard web technologies such as HTML5, Bootstrap 3, and jQuery 1.11.3. Hosting is provided by Alibaba Cloud, which suggests reliable infrastructure. Performance is moderate with basic SEO and accessibility features. However, the site lacks advanced security headers and DNSSEC is not enabled, which are areas for improvement. The absence of privacy and cookie policies, as well as contact information, indicates compliance gaps with data protection regulations such as GDPR. Security posture is moderate; HTTPS is presumed but not explicitly confirmed in the provided data. No critical vulnerabilities or malware indicators were found, but the lack of security headers and incident response contacts reduces the overall security maturity. The site uses Baidu Analytics for user tracking but does not implement cookie consent mechanisms, which may pose privacy compliance risks. Overall, zxjson.com is a functional and useful tool platform with good content quality and technical implementation but requires enhancements in privacy compliance, security best practices, and transparency to improve trust and regulatory adherence.

15
50
2
60
85
60
100
jsononlinetoolsformattingencryptionconversion+2 more
HTML5Bootstrap 3jQuery 1.11.3JavaScript
2025-08-03T13:52:41.515Z
51test.net favicon

北京无忧世纪科技有限公司

51test.net

53
EducationChinalargeMEDIUM

无忧考网 is a well-established Chinese educational website founded in 2001, offering a comprehensive range of exam-related resources including news, past exam papers, essay samples, job recruitment, and study abroad information. It serves a large user base with over 8 million registered members and provides both free content and VIP membership services for enhanced access. The website is positioned as a trusted brand in the education sector with a strong focus on exam preparation and learning materials. Technically, the website employs standard web technologies such as jQuery and Baidu Analytics, with mobile optimization and a moderate performance profile. While HTTPS is enforced, the site lacks some advanced security headers and cookie consent mechanisms, indicating room for improvement in security and privacy compliance. The WHOIS data for the domain is unavailable, which raises some concerns about transparency but does not negate the site's evident legitimacy based on business licenses and operational history. From a security perspective, the site shows a generally good posture with secure forms and no visible vulnerabilities. However, the absence of explicit incident response contacts and vulnerability disclosure policies suggests that the security maturity could be enhanced. Overall, the site is safe for general audiences, with no adult or questionable content detected. Strategically, the site should focus on improving privacy compliance, implementing security headers, and clarifying domain registration details to strengthen trust and regulatory adherence.

15
53
2
40
72
70
100
educationexamstudyresourcesvipmembershipchinese+1 more
jQuery 1.11.3Baidu AnalyticsLayer UI library

Partner Domains:

user.51test.net
subsidiary
2025-08-03T10:29:47.965Z
H

Henan Peisa machinery Co., LTD

peisacar.com

44
ManufacturingChinamediumHIGH

Henan Peisa machinery Co., LTD is a medium-sized manufacturing company specializing in factory equipment transportation solutions, including rail transfer carts and electric platform trucks. Founded in 2019 and with over 15 years of manufacturing experience claimed, the company serves over 25 countries globally, positioning itself as a reliable supplier in the industrial transportation sector. Their website reflects a professional business model targeting industrial manufacturers and logistics operators. Technically, the website employs a modern but basic tech stack including jQuery, Swiper.js, and Google Tag Manager for analytics. Hosting and DNS services are managed via Amazon Registrar and AWS DNS infrastructure, indicating a stable and scalable hosting environment. The site is mobile optimized with good navigation and content relevance, though accessibility features are basic. From a security perspective, the site lacks DNSSEC and explicit security headers, which reduces its security posture. No privacy or cookie policies are present, indicating compliance gaps with GDPR and other privacy regulations. The domain registration is consistent with the business claims, though the domain age is relatively new compared to the company's founding date, which is plausible for a new domain acquisition or rebranding. Overall, the website is functional and professional but would benefit from enhanced security measures and privacy compliance to improve trust and regulatory adherence.

20
35
2
65
72
85
-
manufacturingtransportationindustrialequipmentrailtransfercartsfactoryequipment
HTML5CSS3JavaScriptjQuery 1.11.3+3
2025-08-03T08:09:33.254Z
gtzxus.com favicon

港通智信(深圳)商务有限公司

gtzxus.com

48
FinanceChinamediumHIGH

港通智信(深圳)商务有限公司 operates a professional consulting website focused on US company registration, annual compliance, tax filing, auditing, legal notarization, and related business services primarily targeting Chinese-speaking clients. The company positions itself as a specialized service provider with government recognition claims and a comprehensive suite of services including company formation, bank account opening, trademark registration, and overseas business support. The website is well-structured, mobile-optimized, and uses common frontend technologies such as jQuery, Bootstrap, and Swiper for UI components. However, the absence of WHOIS registration data for the domain www.gtzxus.com raises significant concerns about domain legitimacy and ownership verification. The site lacks explicit privacy and cookie policies, which impacts compliance and user trust. Security headers are not detected, though HTTPS usage is implied. Contact information is comprehensive, including multiple phone numbers, emails, and physical addresses in China, Hong Kong, Korea, and the US, enhancing business credibility. Overall, the website demonstrates good content quality and user experience but requires urgent attention to domain registration legitimacy and privacy compliance to improve trustworthiness and security posture.

30
50
2
60
62
75
40
uscompanyregistrationbusinessconsultingtaxfilinglegalserviceschinesemarket+2 more
jQuery 1.11.3BootstrapSwiperFont Awesome
2025-08-03T05:51:18.749Z

通达宝国际物流(深圳)有限公司

tungpohy.com

44
TransportationChinamediumHIGH

通达宝国际物流(深圳)有限公司 operates as a specialized logistics service provider focusing on cross-border transportation between China and Hong Kong, as well as international freight forwarding. The company offers a comprehensive suite of services including land, air, and sea transport, customs clearance, warehousing, and delivery, targeting businesses and individuals requiring efficient logistics solutions. With over 20 years of industry experience and multiple certifications, the company positions itself as a reliable and professional player in the transportation sector within China. Technically, the website is built on a custom or unknown CMS platform utilizing legacy jQuery 1.11.3 and standard web technologies. Hosting is provided by Alibaba Cloud, indicating a stable infrastructure. The site demonstrates moderate performance and basic mobile optimization but lacks advanced accessibility features. SEO is basic with meta tags present but no advanced structured data or Open Graph tags detected. From a security perspective, the site lacks explicit security headers and DNSSEC is not enabled, which are areas for improvement. The absence of privacy and cookie policies indicates compliance gaps, particularly regarding GDPR or similar regulations. No incident response or vulnerability disclosure information is provided, limiting transparency in security management. Overall, the website is functional and professional but would benefit from enhanced security practices, privacy compliance, and modernization of technical components to improve trust and resilience against threats.

15
50
2
60
62
70
20
logisticstransportationchinacross-bordershipping+3 more
jQuery 1.11.3JavaScriptCSSHTML5 (XHTML namespace)+1

Partner Domains:

tungpogj.com
partner
2025-08-02T21:45:14.307Z
banggood.com favicon

Banggood

banggood.com

10
E-commerceN/alargeCRITICAL

Banggood is a global e-commerce platform specializing in electronics, gadgets, fashion, and related consumer products. Established since 2006, it offers a wide range of products including phones, projectors, e-bikes, RC toys, and tools. The website targets a broad international audience with multiple language and currency options, supported by a network of over 37 overseas warehouses to facilitate fast and convenient logistics. The business model focuses on retail and wholesale, including dropshipping and affiliate programs, positioning itself as a competitive player in the global online retail market. Technically, the website employs a mature technology stack including jQuery, Google Analytics, Google Adsense, and Criteo for advertising and tracking. It supports mobile platforms with dedicated iOS and Android apps. The site is well-optimized for SEO and mobile responsiveness, though some improvements could be made in accessibility and security headers. Performance is moderate with a professional design and clear navigation. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. However, no explicit security headers were detected in the HTML source, and there is no public security policy or incident response information. The WHOIS data is unavailable, which limits transparency but does not necessarily indicate illegitimacy given the strong trust signals and business presence. Overall, the security posture is good but could benefit from enhanced header policies and published security documentation. The overall risk assessment is moderate with no critical vulnerabilities detected. Strategic recommendations include implementing security headers, publishing security and incident response policies, and maintaining up-to-date libraries. The site is safe for general audiences with no adult content. Business credibility is high with clear contact information and multiple trust indicators.

-
-
-
-
-
-
-
e-commerceelectronicsgadgetsonlineshoppingglobal+3 more
jQuery 1.11.3Google AnalyticsGoogle AdsenseCriteo+2

Partner Domains:

banggood.onelink.me
partner
2025-08-02T19:34:16.502Z
91miaoshou.com favicon

深圳呈云网络科技有限公司

91miaoshou.com

53
E-commerceChinamediumMEDIUM

深圳呈云网络科技有限公司 operates the website 91miaoshou.com, providing e-commerce software solutions primarily targeting Chinese domestic and cross-border e-commerce sellers. Their flagship product, 妙手, offers tools for product management, batch editing, order processing, and marketing watermarking across multiple major platforms such as JD.com, Pinduoduo, Taobao, and international marketplaces like Shopee and Lazada. The company has a solid market position in the e-commerce SaaS sector with a medium-sized business footprint and a founding date of 2014, supported by a domain registered in 2019. Technically, the website employs a traditional web stack including jQuery, Bootstrap, and Swiper.js, hosted on Alibaba Cloud. The site is moderately optimized for performance and mobile devices, with good SEO practices and basic accessibility features. Analytics and tracking are implemented via Baidu Analytics, 51.la, and Google Tag Manager, indicating moderate user tracking. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks DNSSEC and explicit security headers, which are recommended for enhanced protection. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is basic, with a privacy policy and terms of service accessible via modal iframes, but no cookie consent mechanism is present. Contact information is clearly provided, enhancing business credibility. Overall, the website is professional, trustworthy, and functional with room for improvement in security headers, privacy compliance, and DNS security. The domain registration data aligns well with the business claims, supporting legitimacy. No WAF or blocking mechanisms interfere with content access.

15
35
2
70
67
60
100
e-commerceerpordermanagementproductmanagementcross-border+2 more
jQuery 1.11.3Bootstrap 3.3.7Font AwesomeSwiper.js+1
2025-08-02T06:53:09.040Z
mulogin.com favicon

MULOGIN

mulogin.com

52
TechnologyN/asmallMEDIUM

MuLogin is a specialized technology company offering an anti-detect browser solution designed to enable users to manage multiple business accounts securely and efficiently. Their product targets e-commerce sellers, affiliate marketers, and social media marketing teams who require isolated browser environments and fingerprint protection to avoid account bans. The company operates on a subscription-based model with multiple pricing tiers and custom plans, positioning itself as a niche player in the browser automation and multi-account management market. The website is professionally designed, with clear navigation and relevant content that supports their business objectives. Technically, the website employs a modern but modest tech stack including jQuery, Swiper.js, Google Tag Manager, and Google Analytics. Hosting is provided by Alibaba Cloud, and DNS is managed via Cloudflare. The site is mobile-optimized and SEO-friendly but lacks some advanced accessibility features. Security practices are basic with HTTPS enabled but missing DNSSEC and security headers. Payment processing supports multiple cryptocurrencies and regional payment methods, indicating a global customer base. From a security perspective, the site shows moderate maturity. It uses HTTPS and avoids exposing sensitive data but lacks explicit security policies, incident response contacts, and cookie consent mechanisms. DNSSEC is not enabled, and no security headers were detected, which are areas for improvement. The WHOIS data is consistent and trustworthy, with no privacy protection masking registrant details, supporting the legitimacy of the domain. Overall, MuLogin presents a credible and professional online presence with a solid business model and technical foundation. However, enhancements in security policies, privacy compliance, and technical security controls would strengthen their posture and customer trust.

30
53
17
70
67
60
40
anti-detectbrowsermulti-accountmanagemente-commercetoolsaffiliatemarketingsocialmediamarketing+1 more
jQuery 1.11.3Swiper.jsGoogle Tag ManagerGoogle Analytics+1

Partner Domains:

v.mulogin.com
service
api.mulogin.com
service

+1 more partners

2025-08-02T05:44:30.705Z
pvc-folie.cz favicon

PVC, PET fólie a jejich lamináty.

pvc-folie.cz

58
ManufacturingCzech RepublicsmallMEDIUM

The website pvc-folie.cz operates as an e-commerce platform specializing in the sale of plastic films such as PVC, PET, and their laminates, targeting businesses involved in packaging, printing, and manufacturing. It offers a range of branded products and custom cutting services, positioning itself as a specialized supplier with significant stock availability. The site is built on the Shoptet e-commerce platform, utilizing technologies like jQuery and Facebook SDK, and incorporates standard e-commerce features including secure login and shopping cart functionalities. The website is accessible, mobile-optimized, and provides clear navigation and contact information, although some advanced accessibility features are basic. From a security perspective, the site enforces HTTPS and uses CSRF tokens in forms, which are positive indicators. However, it lacks visible security headers such as Content-Security-Policy and cookie consent mechanisms, which are important for GDPR compliance and enhanced security posture. The absence of WHOIS data for the domain raises concerns about transparency and trustworthiness, although the professional presentation and platform usage mitigate some risks. Tracking includes Facebook Pixel and Google Analytics GA4, indicating moderate user tracking. Overall, the website demonstrates a moderate to good level of technical maturity and business credibility but would benefit from improved privacy compliance and security hardening. The lack of WHOIS data and security policies are notable gaps that should be addressed to enhance trust and compliance.

40
40
2
60
75
75
100
e-commerceplasticfilmspackagingmanufacturingczechrepublic
jQuery 1.11.3Shoptet e-commerce platformFacebook SDK
2025-08-01T14:45:40.466Z
zebrastores.cz favicon

ZebraStores.cz

zebrastores.cz

42
RetailCzech RepublicmediumHIGH

ZebraStores.cz operates as a prominent Czech e-commerce platform specializing in sports and outdoor equipment. The company manages a network of brand-specific online stores, offering products from well-known brands such as Merrell, Teva, Babolat, Stiga, and New Balance. Their business model focuses on retail sales through multiple specialized e-shops, supported by a physical showroom and service offerings like racket stringing and running diagnostics. The website targets sports enthusiasts and outdoor activity participants within the Czech Republic, positioning itself as a leading authorized retailer with a strong market presence. Technically, the website is built on ASP.NET WebForms with a custom CMS likely provided by Bluesoft. It integrates common web technologies including jQuery, bxSlider, Google Tag Manager, Google Analytics, and Facebook SDK for marketing and analytics purposes. The site demonstrates moderate performance and good mobile optimization, though accessibility features are basic. SEO practices are adequately implemented with proper meta tags and structured navigation. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in its HTML content. However, it lacks advanced security headers such as Content-Security-Policy and X-Frame-Options, and does not provide explicit privacy or cookie policies, which are critical for GDPR compliance. No vulnerability disclosure or incident response information is available, indicating room for improvement in security transparency and readiness. Overall, ZebraStores.cz presents a professional and trustworthy online presence with a solid business foundation and technical infrastructure. The main risks relate to privacy compliance and security best practices, which if addressed, would enhance user trust and regulatory adherence. Strategic recommendations include implementing comprehensive privacy and cookie policies, adding security headers, and establishing a vulnerability disclosure program.

35
10
2
90
42
80
-
sportsoutdoore-commerceretailczechrepublic+2 more
ASP.NET WebFormsjQuery 1.11.3bxSliderGoogle Tag Manager+2

Partner Domains:

babolatstore.cz
subsidiary
headstore.cz
subsidiary

+3 more partners

2025-08-01T13:35:57.042Z
kvetnatelouky.cz favicon

Agrostis Trávníky, s.r.o.

kvetnatelouky.cz

54
RetailCzech RepublicsmallMEDIUM

The website www.kvetnatelouky.cz represents Agrostis Trávníky, s.r.o., a Czech company specializing in the sale of seed mixtures for lawns and flower meadows. Established since 2002, the company targets professional and private customers including gardeners, turf managers, and sports field caretakers. The site offers a comprehensive catalog of products with detailed descriptions and multiple packaging options, reflecting a mature e-commerce retail business model focused on the Czech market. Technically, the website is built on the Shoptet e-commerce platform, utilizing common web technologies such as jQuery, Google Analytics, and Facebook SDK for marketing and analytics. The site is mobile optimized and includes accessibility features, cookie consent mechanisms, and privacy policies aligned with GDPR requirements. Performance is moderate with room for improvement in modernizing some libraries. From a security perspective, the site enforces HTTPS and includes CSRF protections in forms. However, some security headers are not explicitly confirmed and the use of an outdated jQuery version may pose risks. No incident response or vulnerability disclosure information is published, which could be improved to enhance trust and security posture. Overall, the website is professional and trustworthy with good content quality and privacy compliance. The main risk factor is the lack of WHOIS data, which reduces domain trustworthiness and business credibility. Strategic recommendations include updating technical components, enhancing security headers, publishing incident response contacts, and verifying domain registration details to improve overall trust.

40
40
2
60
42
75
100
e-commercegardeningseedmixturesczechrepublicprivacy+2 more
jQuery 1.11.3Google Analytics (gtag.js)Shoptet e-commerce platformFacebook SDK+1
2025-08-01T10:15:36.860Z
thermona.cz favicon

Thermona, spol. s r.o.

thermona.cz

49
EnergyCzech RepublicmediumHIGH

Thermona, spol. s r.o. is a well-established Czech manufacturer specializing in gas condensing boilers, electric boilers, and heating system accessories. Operating since 1990, the company maintains a strong market position in the energy sector within the Czech Republic and neighboring regions. Their website reflects a professional and comprehensive digital presence, offering detailed product information, multiple contact forms, and a network of certified installation and service partners. The company emphasizes quality, reliability, and customer satisfaction through extended warranty programs and accessible support channels. Technically, the website is built on an ASP.NET WebForms platform with a modern yet somewhat dated technology stack including jQuery 1.11.3 and Bootstrap 3.3.5. The site is mobile-optimized, SEO-friendly, and integrates various third-party libraries for enhanced user experience such as Google Fonts, Font Awesome, and Google Maps API. Performance is moderate, with room for modernization particularly in updating JavaScript libraries. From a security perspective, the site enforces HTTPS and employs CAPTCHA on forms to mitigate spam. Privacy and cookie policies are comprehensive and GDPR compliant, with explicit user consent mechanisms. However, the absence of explicit security headers like Content-Security-Policy and X-Frame-Options suggests opportunities for strengthening security posture. No vulnerabilities or exposed sensitive data were detected in the content. Overall, the website presents a trustworthy and professional image with strong business credibility. The main limitation is the lack of WHOIS data, which slightly reduces domain trustworthiness. Strategic recommendations include updating JavaScript libraries, enhancing HTTP security headers, and verifying domain registration details to improve overall trust and security.

45
25
17
60
62
80
20
heatingboilersenergymanufacturingczechrepublic+3 more
jQuery 1.11.3Bootstrap 3.3.5AjaxControlToolkit 4.1.60919.0Google Fonts (Source Sans Pro, Roboto, Open Sans)+8

Partner Domains:

thermona.eu
partner
thermona.az
partner

+1 more partners

2025-08-01T07:53:38.374Z