Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 8 of 136|Showing 351-400 of 6766
drk-ludwigsburg.de favicon

DRK-Kreisverband Ludwigsburg e. V.

drk-ludwigsburg.de

58
Non-profitGermanymediumMEDIUM

DRK-Kreisverband Ludwigsburg e. V. is a local branch of the German Red Cross, providing a broad range of humanitarian, social, and emergency services to the community in Ludwigsburg, Germany. The organization focuses on emergency call services, first aid training, rescue operations, social support, and voluntary engagement. The website reflects a professional and consistent brand presence aligned with the national DRK identity. The target audience includes the general public and local residents seeking social and emergency assistance. Technically, the website is built on TYPO3 CMS, a robust and widely used content management system, with additional JavaScript libraries for UI elements such as sliders. The site employs Matomo analytics with a clear cookie consent mechanism, demonstrating a commitment to privacy and GDPR compliance. The site is mobile-optimized, accessible, and SEO-friendly, though performance is moderate. From a security perspective, the site uses HTTPS and implements a comprehensive cookie consent banner with opt-in for analytics and preference cookies. However, it lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website presents a trustworthy and professional digital presence for a non-profit humanitarian organization. Strategic improvements could include enhancing HTTP security headers, publishing security and incident response policies, and adding a vulnerability disclosure mechanism to further strengthen security posture and trust.

15
43
2
80
72
70
100
non-profithumanitariansocialservicesemergencyservicesgermanredcross+3 more
TYPO3 CMSJavaScript Tiny SliderMatomo Analytics
2025-10-31T06:17:18.315Z
I

Incom GmbH

incom.org

55
EducationGermanysmallMEDIUM

Incom GmbH operates a specialized communication and collaboration platform tailored for higher education institutions, particularly targeting design and art universities in Germany. The platform facilitates modern teaching concepts, enabling seamless interaction between educators and students, and extends the scope of academic courses both temporally and spatially. The business model is based on a cost-effective SaaS offering with included support and consulting services, positioning Incom as a niche player in the educational technology sector. The company has been established since 2005, reflecting a mature presence in its market segment. Technically, the website employs a modern yet straightforward technology stack including Bootstrap, jQuery, Font Awesome, and Matomo for privacy-conscious analytics. The platform is custom-built without reliance on common CMS solutions, hosted under a reputable registrar with stable DNS configurations. The site demonstrates good mobile optimization and SEO practices, although some accessibility features could be enhanced. Performance is moderate, suitable for the target audience. From a security perspective, the website enforces HTTPS with AES 256-bit encryption, avoids third-party advertising and tracking services like Google Analytics, and respects user privacy by not profiling visitors. However, it lacks DNSSEC and important security headers such as Content-Security-Policy and HSTS, which are recommended to strengthen its security posture. No incident response or security policy information is published, which could be improved to enhance trust. Overall, the website is professional, trustworthy, and safe for general audiences, with no adult or questionable content. The domain registration data aligns well with the business claims, showing consistency and legitimacy. Strategic recommendations include implementing DNSSEC, adding security headers, publishing security policies, and introducing cookie consent mechanisms to improve GDPR compliance and security maturity.

15
53
2
90
77
80
40
educationcommunicationuniversitycollaborationprivacy+3 more
BootstrapjQueryFont AwesomeMatomo Analytics

Partner Domains:

fhp.incom.org
partner
mkh.incom.org
partner

+3 more partners

2025-10-31T06:16:38.182Z
vision-connect.de favicon

VisionConnect GmbH

vision-connect.de

65
TechnologyGermanysmallMEDIUM

VisionConnect GmbH is a well-established digital agency based in Hannover, Germany, with over 25 years of experience since its founding in 1995. The company specializes in web development, design, SEO, and digital marketing services, leveraging platforms such as TYPO3 CMS and Wordpress. Their market position is strong, supported by long-term client relationships and a comprehensive service offering that includes strategy, design, technology, and communication solutions. The website reflects a professional and trustworthy digital presence with excellent content quality and user experience. Technically, the website is built on a modern stack with TYPO3 CMS, uses Matomo for privacy-conscious analytics, and implements GDPR-compliant cookie consent mechanisms. The site is mobile-optimized, accessible, and SEO-friendly, although some security headers could be improved. The SSL configuration is excellent, ensuring secure communications. However, there is no publicly available security policy or incident response information, which could be enhanced to improve transparency and trust. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and privacy-respecting analytics settings. No vulnerabilities or suspicious content were detected. The WHOIS data aligns with the business claims, showing a domain age consistent with the company's history and no privacy protection that would obscure legitimacy. Overall, the security posture is solid but could benefit from additional security headers and published policies. The overall risk assessment is low, with the website presenting a professional, secure, and compliant digital presence. Strategic recommendations include enhancing security headers, publishing a security policy and incident response contacts, and considering a vulnerability disclosure mechanism to further strengthen trust and security culture.

80
95
17
70
72
65
40
digitalagencytypo3webdevelopmentseogdpr+4 more
TYPO3 CMSWordpressMatomo AnalyticsJavaScript+2
2025-10-31T06:16:28.143Z
klimaktiv.de favicon

KlimAktiv

klimaktiv.de

50
EnergyGermanymediumMEDIUM

KlimAktiv is a German climate consultancy focused on supporting businesses, associations, authorities, and private individuals in measuring and reducing their carbon footprint to achieve zero emissions. With over 20 years of experience, they offer a comprehensive range of services including CO₂ calculators, climate strategy development, communication, and climate protection projects. The website reflects a professional and consistent brand with a clear mission centered on climate protection and sustainability. Technically, the site employs modern web technologies such as Bootstrap 5, Livewire (Laravel), and Swiper.js for interactive elements. It uses Matomo for analytics, indicating a privacy-conscious approach. The site is mobile-optimized and well-structured, though some accessibility features could be improved. Performance is moderate with good SEO practices. From a security perspective, the website uses HTTPS and includes CSRF tokens, but lacks visible security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is limited by the absence of explicit privacy and cookie policies or consent mechanisms. Overall, KlimAktiv presents a trustworthy and professional online presence with room for improvement in privacy compliance and security best practices. Strategic enhancements in these areas would strengthen their security posture and regulatory adherence.

55
28
17
62
52
70
40
climatesustainabilityconsultingcarbonfootprintclimatestrategy+1 more
Bootstrap 5Swiper.jsMatomo AnalyticsBoxicons+1
2025-10-31T05:56:04.981Z
energiekueste.de favicon

Energieküste

energiekueste.de

49
EnergyGermanymediumHIGH

Energieküste is a regional platform and network based in Schleswig-Holstein, Germany, focused on advancing renewable energy initiatives and the energy transition. The website serves as a hub for connecting stakeholders including businesses, research institutions, policymakers, and the public. It offers project information, event announcements, newsletters, and news updates, positioning itself as a leading regional player in the renewable energy sector. Technically, the website is built on TYPO3 CMS, leveraging modern JavaScript libraries and Matomo for privacy-conscious analytics. The site is well-optimized for mobile devices, accessible, and SEO-friendly. It employs HTTPS and a cookie consent mechanism, demonstrating good digital maturity. From a security perspective, the site enforces HTTPS and uses cookie consent but lacks explicit security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data aligns with the business claims, indicating a trustworthy domain registration. Overall, the website presents a professional, secure, and privacy-compliant digital presence suitable for its business goals. Strategic improvements could include publishing a security policy and enhancing HTTP security headers to further strengthen its security posture.

25
28
17
77
72
70
20
renewableenergyenergytransitionregionalcooperationeventsnewsletter+3 more
TYPO3 CMSMatomo AnalyticsjQuerySlick Carousel+3

Partner Domains:

energiekueste.eu
partner
ready-charged-career.de
partner

+3 more partners

2025-10-31T05:55:49.884Z
datamints.com favicon

datamints.com GmbH

datamints.com

10
TechnologyGermanymediumCRITICAL

datamints.com GmbH is a well-established internet agency based in Penzberg, Germany, specializing in web design, online marketing, and software development with a strong focus on TYPO3 CMS and e-commerce platforms such as Shopware and OXID. The company targets businesses seeking comprehensive digital solutions and has a solid market position supported by over 20 years of experience and a client base including notable companies like Telekom and NTTDATA. Their service offerings cover strategy, design, programming, hosting, and campaign management, positioning them as a full-service digital partner. Technically, the website is built on TYPO3 CMS and integrates modern web technologies including Bootstrap, jQuery, and Leaflet. They employ Google Tag Manager and Matomo for analytics with a robust cookie consent mechanism ensuring GDPR compliance. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and implements cookie consent management, but lacks several recommended security headers such as Content-Security-Policy and X-Frame-Options. No vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS registration data for the domain raises concerns about domain legitimacy, which slightly impacts the overall trust score. Overall, datamints.com GmbH presents a professional and trustworthy digital presence with strong business credibility and technical maturity. The main risk lies in the missing WHOIS data, which should be investigated further. Strategic improvements in security headers and formal security policies would enhance their security posture and trustworthiness.

-
-
-
-
-
-
-
internetagenturtypo3online-marketingwebdesignshopware+5 more
TYPO3 CMSShopwareOXID eShopGoogle Tag Manager+4

Partner Domains:

netgrade.de
partner
2025-10-31T05:48:59.422Z
efre-thueringen.de favicon

Thüringer Ministerium für Wirtschaft

efre-thueringen.de

58
GovernmentGermanymediumMEDIUM

The website www.efre-thueringen.de represents the Thüringer Ministerium für Wirtschaft's European Regional Development Fund (EFRE) program for the German state of Thüringen. It serves as an authoritative regional government portal providing comprehensive information on EU-funded development projects, funding opportunities, and strategic initiatives aimed at fostering regional growth, innovation, and sustainability. The site targets businesses, research institutions, and public stakeholders seeking funding and information about EFRE programs. Technically, the site is built on TYPO3 CMS, employs modern frontend libraries like Swiper.js, and uses Matomo for privacy-conscious analytics. The site is well-structured, mobile-optimized, and professionally designed, reflecting a mature digital presence. Security posture is solid with HTTPS and privacy-aware analytics, though it lacks visible cookie consent banners and explicit security policies. Overall, the domain and hosting align with German governmental infrastructure, supporting high legitimacy and trust. Strategic recommendations include enhancing GDPR compliance with visible cookie consent, publishing security and incident response policies, and adding security headers to strengthen defenses.

25
43
17
60
77
60
100
efrethringeneufundingregionaldevelopmentgovernment+2 more
TYPO3 CMSjQueryMatomo AnalyticsSwiper.js

Partner Domains:

www.aufbaubank.de
partner
www.esf-thueringen.de
partner

+2 more partners

2025-10-31T05:44:43.306Z
nw-assekuranz.de favicon

Nordwest Assekuranzmakler GmbH & Co. KG

nw-assekuranz.de

55
OtherGermanymediumMEDIUM

Nordwest Assekuranzmakler GmbH & Co. KG operates as an independent insurance broker based in Bremen, Germany, specializing in global insurance broking for industrial sectors. Their services encompass insurance management, risk management, risk assessment, due diligence, and provisions, targeting a diverse range of industries including renewable energy, transport, real estate, aerospace, and manufacturing. The company leverages its membership in the UnisonSteadfast network to provide global market access and specialized expertise. Technically, the website is built on the Contao CMS platform, utilizing modern web technologies such as jQuery and lazy loading for images, and integrates Matomo analytics with privacy-conscious configurations. The site demonstrates good mobile optimization, clear navigation, and professional design, reflecting a mature digital presence suitable for their target audience. From a security perspective, the website enforces HTTPS and employs cookie consent mechanisms aligned with GDPR requirements. However, explicit security headers and incident response policies are not evident, representing areas for improvement. No vulnerabilities or suspicious content were detected, and the domain registration data aligns well with the business claims, supporting the site's legitimacy. Overall, the website presents a trustworthy and professional front for the company, with strong business credibility and privacy compliance. Strategic enhancements in security policy transparency and technical security controls could further strengthen their security posture and stakeholder confidence.

65
68
2
60
77
65
20
insurancebrokerriskmanagementglobalindustry+2 more
jQuerylazySizesMatomo Analytics
2025-10-31T05:41:27.491Z
sonderborgkommune.dk favicon

Sønderborg Kommune

sonderborgkommune.dk

76
GovernmentDenmarklargeLOW

Sønderborg Kommune operates as the official municipal government website for the Sønderborg region in Denmark, providing a comprehensive range of public services to its citizens. The site targets residents and visitors seeking information on personal affairs, health and care, construction, education, traffic, employment, and environmental issues. It holds a strong market position as a local government authority with a well-established digital presence since 1997. Technically, the website leverages Drupal CMS, integrates privacy-focused analytics via Matomo, and employs Cookiebot for GDPR-compliant cookie consent management. The site demonstrates good mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure suitable for public sector needs. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms to comply with privacy regulations. However, it lacks explicit security headers and a public security policy or incident response contact, which are areas for improvement. No critical vulnerabilities or WAF blocking were detected, indicating a stable security posture. Overall, Sønderborg Kommune's website is a trustworthy, professional, and privacy-conscious platform that effectively serves its public audience. Strategic enhancements in security policy transparency and DNS security could further strengthen its risk profile and compliance stature.

70
87
95
100
17
80
77
governmentmunicipalitypublicservicesdanishcookieconsent+3 more
Matomo AnalyticsCookiebot Consent ManagementFontAwesomeAOS (Animate On Scroll)
2025-10-31T05:39:22.169Z
R

Region Sønderjylland-Schleswig

pendlerinfo.org

49
GovernmentGermanymediumHIGH

The website pendlerinfo.org serves as an official information portal provided by the Region Sønderjylland-Schleswig, a regional government entity focused on cross-border cooperation between Germany and Denmark. It offers advisory services, publications, news, and mobility barrier reporting for cross-border commuters, businesses, and residents. The site is well-positioned as a trusted regional government resource with a clear target audience and a stable market presence since 2005. Technically, the website employs a traditional web stack with jQuery and related plugins, Matomo analytics configured for privacy, and Monsido for accessibility and heatmaps. The site is hosted under a reputable registrar and uses HTTPS, though DNSSEC is not enabled. Mobile optimization and accessibility are basic but functional, with good SEO practices. From a security perspective, the site demonstrates good baseline practices including HTTPS, clientTransferProhibited domain status, and privacy-conscious analytics. However, it lacks advanced security headers and explicit security or incident response policies. No vulnerabilities or suspicious content were detected. Overall, the website is a reliable, safe, and professional government service portal with moderate technical sophistication and good privacy compliance. Strategic improvements in security headers, cookie consent mechanisms, and incident response documentation would enhance its security posture and user trust.

70
70
68
20
2
20
62
governmentcross-borderinformationcommutersregional+3 more
jQueryjQuery Cycle2jQuery FlexsliderMatomo Analytics+3

Partner Domains:

www.aabenraa.dk
partner
www.nordfriesland.de
partner

+3 more partners

2025-10-31T05:38:27.029Z
R

Region Sønderjylland-Schleswig

region.de

51
GovernmentGermanymediumMEDIUM

The Region Sønderjylland-Schleswig website serves as an informational platform for a regional government cooperation entity focused on bridging the German-Danish border region. It provides comprehensive details about organizational structure, working fields, press releases, and cross-border initiatives. The site targets citizens, local authorities, employers, and media representatives interested in regional collaboration and public services. The business model is centered on public administration and regional cooperation, positioning itself as a key facilitator of cross-border dialogue and projects. Technically, the website employs a mature but somewhat traditional technology stack including jQuery, Matomo for analytics, and Monsido for accessibility and heatmap tracking. The CMS appears to be webEdition, a specialized content management system. The site is moderately optimized for performance and mobile devices, with good SEO practices and basic accessibility features. Hosting details are not explicit but the domain uses ns14.net nameservers, indicating professional hosting. From a security perspective, the site uses HTTPS and disables cookies in analytics to enhance privacy. However, it lacks explicit security headers and published security or incident response policies. No vulnerability disclosure or security.txt files are present. The privacy and cookie policies are present and GDPR compliant, reflecting a good privacy posture. No critical vulnerabilities or suspicious elements were detected. Overall, the website is trustworthy, professional, and well-aligned with its public service mission. It demonstrates a solid privacy and compliance stance but could improve in security transparency and technical modernization. The risk level is low, with recommendations focusing on enhancing security headers, incident response readiness, and adding terms of service documentation.

20
68
2
90
62
65
20
governmentregionalcooperationcross-bordernon-profitpublicservice+2 more
jQueryMatomo AnalyticsMonsidoCycle2 Carousel+1

Partner Domains:

aabenraa.dk
partner
nordfriesland.de
partner

+3 more partners

2025-10-31T05:17:44.252Z
S

Schleswig-Holstein - Der echte Norden

der-echte-norden.info

51
EnergyGermanymediumMEDIUM

The website 'Der echte Norden' serves as the official regional marketing and informational platform for Schleswig-Holstein, Germany. It promotes the region's economic sectors such as renewable energy, maritime industry, digital economy, and healthcare, targeting residents, businesses, investors, students, and workforce. The site provides rich multimedia content including videos and podcasts to engage its audience. Technically, it is built on TYPO3 CMS, employs Matomo for analytics with privacy-conscious configurations, and uses a cookie consent mechanism compliant with GDPR. The site is mobile-optimized and accessible with clear navigation and professional design. From a security perspective, the website enforces HTTPS and disables cookies in analytics to enhance privacy. However, it lacks explicit security headers and dedicated security or incident response policies. No vulnerabilities or suspicious elements were detected. The WHOIS data is privacy protected, which is common for such public-facing regional websites, and no suspicious registration patterns were found. Overall, the site demonstrates a good security posture and compliance with privacy regulations. The risk assessment is low with no critical issues identified. Strategic recommendations include implementing security headers, publishing security policies, and maintaining up-to-date third-party scripts. The website is trustworthy, professional, and serves its purpose effectively as a regional promotional platform.

25
53
17
70
67
75
20
schleswig-holsteinregionalmarketingenergyrenewableenergymaritime+4 more
TYPO3 CMSMatomo AnalyticsConsentmanager.netjQuery
2025-10-31T05:11:37.778Z
co2-rechner.de favicon

KlimAktiv gemeinnützige Gesellschaft zur Förderung des Klimaschutzes mbH

co2-rechner.de

52
GovernmentGermanymediumMEDIUM

The CO2-Rechner website is an official environmental tool operated by KlimAktiv on behalf of the German Umweltbundesamt (UBA). It provides a comprehensive CO2 footprint calculator that includes multiple greenhouse gases and covers various lifestyle aspects. The site targets private individuals, municipalities, and event organizers, offering detailed calculation tools and educational resources. The platform is well-positioned as a government-backed, scientifically supported service with strong trust signals and consistent branding. Technically, the website employs modern frameworks such as Bootstrap 5 and Alpine.js, integrates advanced charting libraries (AmCharts 5), and uses Klaro for GDPR-compliant cookie consent. Hosting is managed via DomainControl nameservers, and analytics are handled by Matomo with anonymized IP tracking, reflecting a privacy-conscious approach. The site is mobile-optimized, accessible, and SEO-friendly, with a professional design and clear navigation. From a security perspective, the site enforces HTTPS and uses secure cookie management. However, no explicit security policy or incident response contact is published, and HTTP security headers are not evident in the provided data. No vulnerabilities or suspicious content were detected. Privacy compliance is strong, with a detailed privacy policy and data protection officer contact provided. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance suitable for a government environmental service. Strategic improvements could include publishing a formal security policy, adding security headers, and establishing a vulnerability disclosure process to further enhance security posture and user trust.

15
95
17
60
62
60
20
environmentclimateco2calculatorgovernmentnon-profit+4 more
Bootstrap 5Alpine.jsTom SelectAmCharts 5+2

Partner Domains:

www.klimaktiv.de
partner
www.ifeu.de
partner
2025-10-31T05:11:27.760Z
bew.de favicon

BEW - Das Bildungszentrum für die Ver- und Entsorgungswirtschaft gGmbH

bew.de

56
EducationGermanymediumMEDIUM

BEW - Das Bildungszentrum für die Ver- und Entsorgungswirtschaft gGmbH is a well-established non-profit educational institution based in Germany, specializing in training and continuing education in environmental protection, waste management, energy, and related sectors. The organization offers a broad range of services including seminars, workshops, online live trainings, e-learning, and inhouse training, targeting professionals and organizations within the environmental and utility industries. Their market position is strong regionally, supported by certifications such as ISO 9001 and Ökoprofit, and a consistent brand presence across multiple digital channels. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies including Bootstrap and jQuery, with integrated analytics via Matomo and Google Analytics. The site is mobile-optimized, accessible, and SEO-friendly, providing a positive user experience. Security measures include HTTPS enforcement and Google reCAPTCHA on forms, alongside a comprehensive cookie consent mechanism. However, the site lacks explicit security policies and incident response contact information. The security posture is solid with no visible vulnerabilities or exposed sensitive data, but could be enhanced by implementing additional HTTP security headers and publishing a formal security policy. Privacy compliance is strong, with clear privacy and cookie policies in German, and GDPR compliance indicators. The business credibility is high, supported by detailed contact information, certifications, and a professional content presentation. Overall, BEW demonstrates a mature digital presence with a focus on education and sustainability, though improvements in security transparency and incident response readiness are recommended to further strengthen trust and compliance.

50
43
17
65
77
65
40
educationenvironmenttrainingseminarsonlinelearning+2 more
TYPO3 CMSMatomo AnalyticsGoogle reCAPTCHABootstrap+1

Partner Domains:

web.antragocloud.de
partner
2025-10-31T04:54:27.963Z
bzst.de favicon

Bundeszentralamt für Steuern

bzst.de

65
GovernmentGermanylargeMEDIUM

The Bundeszentralamt für Steuern (Federal Central Tax Office) operates as the official German federal government agency responsible for tax administration and related services. The website serves multiple target audiences including private individuals, businesses, and government authorities, providing comprehensive tax-related information, digital services, and regulatory guidance. It holds a strong market position as the authoritative tax authority in Germany. Technically, the website is built on the Government Site Builder CMS and hosted by ITZBund, the federal IT service provider. It employs Matomo analytics hosted internally to ensure privacy compliance. The site is well-structured, mobile-optimized, and accessible, reflecting a mature digital infrastructure suitable for a government entity. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms aligned with GDPR. While explicit security headers and vulnerability disclosure pages are not detected, no critical vulnerabilities or exposed sensitive data were found. The WHOIS data aligns consistently with the official government entity, reinforcing legitimacy. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance, with minor recommendations to enhance security headers and publish incident response or vulnerability disclosure information.

80
28
17
70
67
70
100
governmenttaxgermanyprivacycompliance+2 more
Matomo analyticsGovernment Site Builder CMSJavaScriptCSS+1
2025-10-31T04:54:07.909Z
maslaton.de favicon

MASLATON Rechtsanwaltsgesellschaft mbH

maslaton.de

42
EnergyGermanymediumHIGH

MASLATON Rechtsanwaltsgesellschaft mbH is a German law firm specializing in renewable energy law, air traffic law, and other civil and public law areas. With headquarters in Leipzig and branches in Munich and Cologne, the firm serves businesses, municipalities, and aviation clients. It holds a strong market position as a top-ranked law firm in energy law, offering comprehensive legal services including wind energy, biomasse, photovoltaic, and electromobility. The website reflects a professional and trustworthy brand with clear contact channels and client testimonials. Technically, the website uses modern web technologies including Matomo analytics configured for privacy, SVG icons, and responsive design. Hosting is via kasserver.com, and the site is served over HTTPS with good SSL configuration. However, no explicit cookie consent mechanism or advanced security headers were detected, indicating room for improvement in privacy compliance and security hardening. Security posture is solid with no visible vulnerabilities or exposed sensitive data, but the absence of a security policy or incident response contacts suggests limited transparency in security governance. The firm demonstrates GDPR compliance through a comprehensive privacy policy and cookie-less tracking setup. Overall, the website and domain registration data align well, indicating a legitimate and credible business presence. Strategic recommendations include implementing cookie consent, enhancing security headers, and publishing security and incident response policies to further strengthen trust and compliance.

15
40
2
70
72
50
-
lawfirmenergylawrenewableenergywindenergyphotovoltaic+5 more
Matomo AnalyticsSVG iconsBootstrap (modal classes)JavaScript+1

Partner Domains:

verlag-energierecht.de
partner
qmvcheck.com
partner
2025-10-31T04:50:57.018Z
dena.de favicon

Deutsche Energie-Agentur GmbH (dena)

dena.de

66
EnergyGermanylargeMEDIUM

Deutsche Energie-Agentur GmbH (dena) is a prominent German energy agency focused on promoting efficient, intelligent, and sustainable energy production and usage. It collaborates with public and private sector partners to advance the energy transition and climate protection efforts in Germany. The website reflects a professional and comprehensive digital presence, leveraging TYPO3 CMS and modern web technologies. It provides detailed information about its mission, projects, and services, targeting stakeholders in the energy sector and government entities. The site supports multiple languages, enhancing accessibility for international audiences. Technically, the website employs a mature infrastructure with strong privacy and consent management mechanisms, including Cookiebot for cookie consent and Matomo and Hotjar for analytics, ensuring GDPR compliance. The site is well-optimized for mobile devices and accessibility, with a clear navigation structure and professional design. Hosting is managed via secure providers, and HTTPS is enforced with appropriate security headers. From a security perspective, the site demonstrates good practices such as secure cookie handling, consent management, and absence of exposed sensitive data. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. Overall, the domain registration and hosting details align with the organization's legitimacy, supporting a high trust level. The overall risk assessment is low, with no indications of malicious content or security vulnerabilities. Strategic recommendations include publishing formal security and incident response policies, adding vulnerability disclosure information, and providing direct security contact channels to enhance transparency and trust.

45
83
17
60
77
65
100
energygovernmentnon-profitsustainabilityclimateprotection+4 more
TYPO3 CMSMatomo AnalyticsCookiebot Consent ManagementHotjar

Partner Domains:

veranstaltungen.dena.de
partner
2025-10-31T04:50:06.766Z
collaborative-climate-action.org favicon

Deutsche Gesellschaft für Internationale Zusammenarbeit (GIZ) GmbH

collaborative-climate-action.org

47
GovernmentGermanymediumHIGH

The Partnership for Collaborative Climate Action website serves as a knowledge-sharing platform focused on fostering cooperation between national and subnational governments to address climate change effectively. It highlights the CHAMP initiative, providing resources, news, and events to support multilevel climate governance. The site is operated by Deutsche Gesellschaft für Internationale Zusammenarbeit (GIZ) GmbH, a reputable German development agency, positioning itself as a trusted source in the climate action domain. Technically, the website is built on WordPress with the Enfold theme and uses modern tools such as Smart Slider 3 and Matomo analytics. The infrastructure is stable, with HTTPS enabled and a moderate performance profile. Mobile optimization and SEO practices are good, though accessibility features are basic. The domain registration is consistent and appropriate, with no privacy protection, indicating transparency. From a security perspective, the site benefits from HTTPS and domain transfer protection but lacks DNSSEC and explicit security headers. No security or incident response policies are published, and there is no cookie consent mechanism, which may impact GDPR compliance. The use of Matomo analytics suggests some privacy awareness, but overall privacy compliance is basic. Overall, the website is professional, trustworthy, and relevant to its target audience of government and climate stakeholders. However, improvements in security headers, privacy compliance, and explicit security policies would enhance its security posture and regulatory adherence.

15
68
25
70
62
55
-
climateactioncollaborationgovernmentsustainabilitychamp+2 more
WordPress 6.6.4Enfold Theme 4.8.3Smart Slider 3jQuery 3.7.1+1

Partner Domains:

giz.de
partner
bmwk.de
partner

+1 more partners

2025-10-31T04:50:01.753Z
ahnenenkel.com favicon

Ahnen&Enkel - Agentur für Kommunikation

ahnenenkel.com

46
EnergyGermanysmallHIGH

Ahnen&Enkel is a specialized communication agency focused on the energy transition, sustainability, and infrastructure sectors. The company offers a range of services including corporate publishing, press work, project communication, and change communication. Their market position is that of a niche agency with a strong emphasis on content quality and targeted communication strategies for clients in the energy and environmental sectors. The website reflects a professional and consistent brand image, supported by a well-structured digital presence and client portfolio. Technically, the website is built on WordPress with modern plugins such as Yoast SEO, WPBakery Page Builder, and Slider Revolution. It uses Matomo for analytics with a GDPR-compliant cookie consent mechanism. The site is mobile-optimized and performs moderately well, though some accessibility improvements could be made. No hosting provider details were identified from the content. From a security perspective, the site enforces HTTPS and implements cookie consent controls, but lacks explicit security headers and dedicated security or incident response pages. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS registration data for the domain is a notable concern, suggesting either a WHOIS server issue or domain privacy service, which should be verified to confirm legitimacy. Overall, the website presents a low to moderate risk profile with strong content and privacy compliance but requires verification of domain registration and enhancement of security policies to improve trust and resilience.

15
80
2
70
62
60
-
energycommunicationsustainabilitycorporatepublishingpresswork+2 more
WordPressYoast SEOWPBakery Page BuilderSlider Revolution+6
2025-10-31T04:23:06.401Z