Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 9 of 71|Showing 401-450 of 3533
saintjohn.ca favicon

City of Saint John

saintjohn.ca

63
GovernmentCanadamediumMEDIUM

The City of Saint John website serves as the official digital presence for the municipal government of Saint John, New Brunswick. It provides residents, businesses, and visitors with comprehensive information on city services, transit, community events, public safety, and governance. The site positions itself as a trusted source for local news, emergency alerts, and civic engagement platforms, targeting a broad audience within the city and surrounding areas. Technically, the website is built on Drupal 10, leveraging modern web technologies including Google Analytics for user tracking and Google Maps API for transit and location services. The site is hosted behind Cloudflare DNS and CDN services, ensuring reliable performance and security. Mobile optimization and accessibility features are well implemented, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and employs domain transfer protections. However, it lacks advanced security headers and does not provide publicly accessible security or incident response policies. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or GDPR compliance indicators. No vulnerabilities or suspicious content were detected. Overall, the website demonstrates a solid business credibility and technical foundation suitable for a government entity, but could improve in privacy compliance and security transparency to enhance trust and regulatory adherence.

50
53
17
70
57
75
100
governmentmunicipalcitytransitcommunity+4 more
Drupal 10Google AnalyticsGoogle Tag ManagerGoogle Maps API+2
2025-10-31T01:41:44.840Z
osloeconomics.no favicon

Oslo Economics

osloeconomics.no

51
GovernmentNorwaymediumMEDIUM

Oslo Economics is a well-established Norwegian economic advisory firm founded in 2008, providing comprehensive economic analysis and consulting services to businesses, government agencies, and organizations. The company holds a strong market position as one of Norway's leading economic advisory environments, offering a wide range of services including financial analyses, health economic analyses, market competition studies, and strategic advisory. Their website reflects a professional and consistent brand image, targeting a broad audience of decision-makers and stakeholders in both public and private sectors. Technically, the website is built on a modern WordPress platform with integration of popular libraries and services such as jQuery, Bootstrap Grid, Google Analytics, and Google Tag Manager. The site demonstrates good mobile optimization, accessibility, and SEO practices, although hosting details are not explicitly disclosed. The presence of cookie consent mechanisms and GDPR-compliant privacy policies indicates a mature approach to privacy and data protection. From a security perspective, the site enforces HTTPS and uses secure contact forms but lacks explicit security headers and publicly available security policies or incident response plans. No vulnerabilities or exposed sensitive data were detected in the analysis. The domain registration is consistent with the business claims, showing a long-standing presence without privacy protection, which supports legitimacy. Overall, Oslo Economics presents a trustworthy and professional online presence with strong compliance and technical foundations. Strategic improvements in security policy transparency and enhanced security headers could further strengthen their security posture and trustworthiness.

15
50
17
70
72
75
20
economicadvisoryconsultingnorwaygdprcookieconsent+3 more
WordPress 6.8.3PHPjQuery 3.6.0Google Analytics+5

Partner Domains:

normand.tech
partner
2025-10-31T01:40:44.613Z
zjazdnostpsk.sk favicon

Správa a údržba ciest Prešovského samosprávneho kraja

zjazdnostpsk.sk

42
TransportationSlovakiamediumHIGH

Správa a údržba ciest Prešovského samosprávneho kraja operates a website providing meteorological station data and road maintenance information for the Prešov region in Slovakia. The site serves as a public service platform offering real-time weather data and coverage maps to residents and authorities. The company is a regional governmental entity established in 2004, with a medium-sized operational scope focused on transportation infrastructure and weather monitoring. Technically, the website is built on WordPress 6.8.3, utilizing modern libraries such as jQuery, Bootstrap, and Google Maps API for interactive features. The site demonstrates good mobile optimization and moderate performance, with a clean and professional design. Security measures include HTTPS with a valid SSL certificate and DNSSEC enabled, alongside Google reCAPTCHA v3 to mitigate automated abuse. Security posture is solid but could be improved by adding explicit security headers and publishing a security policy or incident response contacts. Privacy compliance is limited due to the absence of explicit privacy and cookie policies or consent mechanisms, which is a notable gap given GDPR requirements. No vulnerabilities or suspicious content were detected, and the domain's WHOIS data confirms legitimacy and consistency with the business purpose. Overall, the website is a trustworthy and functional public service portal with room for improvement in privacy compliance and security transparency. Strategic enhancements in these areas would strengthen user trust and regulatory adherence.

15
25
2
70
72
75
-
meteorologicalroadmaintenancegovernmentslovakiaweatherstations+1 more
WordPress 6.8.3Google Maps APIjQuery 3.6.0Bootstrap 5.0.2+6
2025-10-31T00:59:12.868Z
B

Benekov

benekov.cz

61
EnergyCzech RepublicmediumMEDIUM

Benekov is a Czech company specializing in manufacturing and selling high-quality automatic solid fuel boilers and renewable energy solutions, including hybrid pellet boilers and photovoltaic systems. Established in 1949, it holds a strong market position in the Czech energy sector, offering comprehensive services such as installation, servicing, and partner training. The website is professionally designed, providing detailed product information, customer references, and multiple contact channels, targeting domestic customers and businesses interested in energy-efficient heating technologies. Technically, the website employs a modern JavaScript stack including jQuery, bxSlider, Lightbox, and Google Maps API, ensuring a good user experience with mobile optimization and SEO best practices. However, some security headers are missing, and no explicit security policy or incident response information is found, indicating room for improvement in security posture. The site uses HTTPS and has cookie consent mechanisms, reflecting good privacy compliance. The WHOIS data for the domain is missing, which raises concerns about domain registration legitimacy despite the professional appearance and detailed company information on the site. This discrepancy lowers the overall trust score and suggests the need for verification of domain ownership. Overall, Benekov's website is a solid representation of a medium-sized energy sector company with good content quality and technical implementation but requires enhanced security measures and domain registration transparency to improve trust and compliance.

20
50
17
85
67
75
100
energyheatingrenewableenergypelletboilershybridboilers+2 more
jQueryjQuery UIbxSliderLightbox+1

Partner Domains:

fotovoltaikabenekovesco.cz
partner
2025-10-30T23:22:16.429Z
81.cz favicon

81

81.cz

54
EnergyCzech RepublicmediumMEDIUM

81.cz is a Czech-based company specializing in energy-related services including air conditioning, heat pumps, photovoltaic power plants, electronic security systems, and real estate rental. The company operates multiple branches across major Czech cities such as Prague, Brno, Ostrava, Hradec Králové, and Plzeň, supported by strong customer reviews on Google and Firmy.cz. Their business model leverages EU-funded projects to promote sustainable energy solutions, positioning them as a reputable regional player in the energy and real estate sectors. Technically, the website employs modern web technologies including Google Tag Manager, Google reCAPTCHA, Google Maps API, and popular JavaScript libraries like jQuery and Parsley.js. The site is mobile-optimized with good design quality and user experience. However, it lacks explicit privacy and cookie policies, and no security headers are detected, which are areas for improvement. The site uses HTTPS with a presumably strong SSL configuration, enhancing security. From a security perspective, the site shows good practices such as HTTPS enforcement and bot protection via reCAPTCHA, but lacks comprehensive security headers and incident response information. The absence of WHOIS data reduces domain trust slightly, but the presence of verified customer reviews and EU project disclosures supports legitimacy. No vulnerabilities or exposed sensitive data were detected. Overall, the website is professional and trustworthy with moderate technical maturity and security posture. Strategic improvements in privacy compliance, security headers, and transparency around incident response would enhance their security and compliance standing.

40
10
2
60
57
85
100
energyrealestateclimatecontrolphotovoltaicsheatpumps+1 more
Google Tag ManagerGoogle reCAPTCHAGoogle Maps APIjQuery+3

Partner Domains:

www.81klima.cz
partner
www.81heat.cz
partner

+2 more partners

2025-10-30T23:21:21.304Z
enelgreenpower.com favicon

Enel Green Power

enelgreenpower.com

71
EnergyItalyenterpriseMEDIUM

Enel Green Power is a leading global renewable energy company specializing in the generation and sale of clean energy from various renewable sources including wind, solar, hydro, geothermal, and storage. The company operates worldwide with a significant installed capacity of 67.2 GW, positioning itself as the largest renewable energy company globally. Their business model includes direct sales, Power Purchase Agreements (PPA), and a strong commitment to sustainability and innovation. The website reflects a mature digital presence with comprehensive content, educational resources, and a clear focus on the energy transition. Technically, the website is built on Adobe Experience Manager, leveraging modern web technologies and analytics tools such as Adobe DTM, Facebook Pixel, LinkedIn Insight Tag, and Dynatrace for performance monitoring. The site is well-optimized for mobile devices, accessible, and SEO-friendly. Security posture is strong with HTTPS enforced and use of reCAPTCHA, although explicit security headers were not fully confirmed in the HTML content. From a security and compliance perspective, the site includes privacy and cookie policies with consent mechanisms and appears GDPR compliant. However, no direct contact information, security policy, or incident response contacts were found, which could be improved for transparency. The WHOIS data is missing or unavailable, which is unusual for a large enterprise and reduces domain registration transparency, though the overall site professionalism and content quality mitigate concerns. Overall, Enel Green Power's website is a high-quality, professional platform that effectively communicates its business and sustainability mission. Strategic recommendations include enhancing visible security policies, adding direct contact information for security and compliance, and clarifying domain registration details to improve trust and transparency.

85
73
2
70
72
80
100
renewableenergysustainabilitycorporateenergytransitiongreenenergy
Adobe Experience Manager (AEM)Adobe DTM (Dynamic Tag Management)Facebook PixelLinkedIn Insight Tag+4
2025-10-30T23:19:00.203Z
solarreviews.com favicon

SolarReviews

solarreviews.com

68
EnergyUnited StatesmediumMEDIUM

SolarReviews operates as a leading independent solar panel comparison and review platform in the United States, targeting homeowners interested in installing solar panels. The website offers tools such as a solar cost and savings calculator, unbiased consumer reviews of solar companies, and expert reviews of solar equipment including panels, batteries, and inverters. It is well-positioned in the renewable energy sector with a strong market presence supported by citations from reputable media outlets. Technically, the website employs modern web technologies including Vue.js, Tailwind CSS, Google Analytics, Hotjar, and Stripe for payments, indicating a mature digital infrastructure. The site is mobile-optimized and demonstrates good SEO and accessibility practices. Security-wise, the website enforces HTTPS and uses several security best practices, though explicit security headers and policies are not fully visible in the provided content. The absence of WHOIS data reduces domain trust slightly, but the overall brand credibility and content quality remain high. Privacy and cookie policies are not detected, suggesting room for improvement in compliance. Overall, SolarReviews presents a professional and trustworthy online presence with moderate risk and opportunities for enhanced privacy and security transparency.

70
53
17
70
72
80
100
solarenergyrenewablesolarpanelsreviews+2 more
Google AnalyticsGoogle Tag ManagerFacebook PixelHotjar+4
2025-10-30T22:31:51.830Z
volba-spotrebitelu.cz favicon

Atoz Marketing Services, spol. s r. o.

volba-spotrebitelu.cz

45
RetailCzech RepublicmediumHIGH

Volba spotřebitelů is a Czech marketing program focused on promoting and awarding new and innovative fast-moving consumer goods. With a 25-year history, it supports manufacturers and distributors by providing consumer research, product nominations, and marketing campaigns culminating in an annual gala event. The website is professionally designed using WordPress and integrates modern technologies such as Google Maps API, reCAPTCHA, and GDPR-compliant cookie consent mechanisms. The program maintains a strong partnership ecosystem including NielsenIQ and various media outlets, enhancing its market presence and credibility. Technically, the website leverages a mature CMS platform with several plugins for forms, sliders, and GDPR compliance. While performance and mobile optimization are good, there is room for improvement in accessibility and security headers. The site uses HTTPS and Google services for analytics and marketing, indicating a moderate to good security posture. However, the absence of WHOIS data reduces transparency and trustworthiness from a domain registration perspective. Security-wise, the site implements essential protections like HTTPS and reCAPTCHA but lacks visible HTTP security headers and explicit incident response contacts. Privacy compliance is well addressed with clear cookie consent and a privacy policy. Overall, the site is safe for general audiences with no adult or questionable content detected. The main risk lies in the missing WHOIS registration data, which should be investigated further to confirm domain legitimacy. Strategic recommendations include enhancing security headers, adding a security.txt file, and improving contact transparency to strengthen trust and compliance.

15
40
17
70
62
75
-
marketingconsumerchoiceproductawardsfast-movingconsumergoodsczechrepublic+2 more
WordPress 6.7.4PHPjQueryGoogle Maps API+3

Partner Domains:

www.volba-spotrebitelov.sk
partner
atoz.cz
partner
2025-10-30T20:25:47.578Z
duveryhodneznacky.cz favicon

Atoz Marketing Services, spol. s r. o.

duveryhodneznacky.cz

43
OtherCzech RepublicmediumHIGH

The website www.duveryhodneznacky.cz represents a Czech marketing program called "Důvěryhodné značky" operated by Atoz Marketing Services, spol. s r. o. The program focuses on monitoring and awarding the most trusted brands among Czech consumers, organizing annual galavečers and providing marketing support to winners. The site is well-structured, professionally designed, and targets marketing professionals, brand owners, and consumers interested in brand trust. The business model revolves around marketing research, event organization, and brand promotion within the Czech market. Technically, the website is built on WordPress CMS, utilizing common plugins such as MasterSlider, GDPR Cookie Compliance, and newsletter management tools. It integrates Google Maps API and uses jQuery for frontend interactions. The site is mobile-optimized with good navigation and SEO practices, though accessibility features are basic. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and includes a cookie consent mechanism compliant with GDPR. However, no explicit security headers were detected, and no dedicated security or incident response policies are published. The WHOIS data for the domain is unavailable, which raises concerns about domain registration transparency and trustworthiness. No vulnerabilities or exposed sensitive data were found in the HTML content. Overall, the website presents a legitimate and professional marketing program with good content quality and privacy compliance. The main risk lies in the lack of WHOIS transparency and missing security headers, which should be addressed to enhance trust and security posture.

15
40
17
60
62
75
-
marketingbrandtrustczechrepubliceventnewsletter+2 more
WordPressPHPjQueryMasterSlider+3

Partner Domains:

doveryhodneznacky.sk
partner
atoz.cz
partner

+1 more partners

2025-10-30T20:25:30.294Z
luxusni-exotika.cz favicon

Delta Reisen s. r. o.

luxusni-exotika.cz

56
HospitalityCzech RepublicsmallMEDIUM

The website Luxusni-exotika.cz is a professionally designed travel agency platform specializing in luxury exotic vacation packages primarily targeting customers interested in high-end travel to destinations such as the Maldives, Mauritius, Seychelles, and other exotic locations. The company behind the site, Delta Reisen s. r. o., positions itself as an expert in German and Austrian travel markets, offering exclusive hotel deals and comprehensive travel services including insurance and airport parking. The site features a modern technical infrastructure leveraging popular JavaScript libraries, Google Maps API, and integrated marketing and analytics tools such as Google Tag Manager and Facebook Pixel. Security posture is adequate with HTTPS enforced and cookie consent mechanisms in place, though improvements could be made by adding security headers and publishing explicit security and incident response policies. The absence of WHOIS registration data is a notable concern, reducing domain trustworthiness, but the overall business credibility and content quality remain high. Strategic recommendations include enhancing security headers, publishing privacy and security policies, and verifying domain registration details to improve trust and compliance.

15
25
17
70
72
75
100
luxurytravelexoticvacationstravelagencyholidaypackagesluxuryhotels+1 more
jQueryBootstrapGoogle Maps APISlick Carousel+4

Partner Domains:

www.deltareisen.cz
partner
www.travelio.sk
partner

+1 more partners

2025-10-30T20:20:06.219Z
speedwaysonline.com favicon

National Speedway Directory

speedwaysonline.com

44
TransportationUnited StatessmallHIGH

National Speedway Directory operates as a specialized online directory and media platform focused on motorsports and race tracks. Established in 2000, it serves motorsports enthusiasts, track operators, and industry professionals by providing comprehensive track listings, industry news, and digital content including mobile apps and live streaming. The website maintains a moderate market position within the niche motorsports sector, leveraging advertising partnerships and digital media to sustain its business model. Technically, the site is built on WordPress with common web technologies such as jQuery and Google APIs. SEO is enhanced by the Yoast SEO plugin, and the site is moderately optimized for mobile devices. Performance is average, with room for improvement in accessibility and modern security practices. The domain is registered with Network Solutions, LLC, and uses HTTPS, but lacks DNSSEC and security headers. Security posture is moderate; HTTPS is enforced, and domain transfer is protected, but the absence of DNSSEC and security headers, as well as missing cookie consent mechanisms, indicate areas for improvement. No incident response or security policies are publicly available, which could impact trust and compliance. Privacy compliance is basic, with a privacy policy present but no cookie banner or GDPR-specific indicators. Overall, the website is functional and professional with good content quality and business credibility. Strategic improvements in security, privacy compliance, and technical modernization would enhance trust and reduce risk exposure.

15
53
2
70
62
70
-
motorsportsracetracksdirectorynewsmedia+1 more
WordPressjQueryGoogle FontsGoogle Maps API+1
2025-10-30T19:40:46.875Z
garageandsocial.com favicon

Hagerty Garage and Social

garageandsocial.com

60
TransportationUnited StatesmediumMEDIUM

Hagerty Garage and Social operates a premium vehicle storage and social club service targeting car enthusiasts, especially owners of classic, collector, and exotic vehicles. The business model is membership-based, offering climate-controlled garages, 24/7 security, and exclusive social events. The company is positioned as a niche provider with multiple locations in the United States and Canada, supported by its parent company, The Hagerty Group, LLC. The website reflects a professional and consistent brand image with clear service offerings and contact points. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Maps API, and Yoast SEO for optimization. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. Performance is moderate, with asynchronous loading of scripts and use of third-party services for analytics and tracking. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data in the HTML. However, it lacks explicit security headers and does not provide visible incident response or security policy information. The absence of WHOIS registration data for the domain is a notable concern, potentially indicating privacy protection or registration issues, which impacts domain legitimacy assessment. Overall, the website is trustworthy and professional but would benefit from enhanced security practices and clearer domain registration transparency. Strategic recommendations include implementing security headers, publishing incident response contacts, and verifying domain registration details to improve trust and compliance.

15
68
2
85
77
60
100
vehiclestoragecarstoragemembershipsocialclubclassiccars+2 more
WordPressjQueryGoogle Maps APIYoast SEO+2

Partner Domains:

investor.hagerty.com
partner
www.hagerty.com
partner
2025-10-30T19:40:06.739Z
psta.net favicon

Pinellas Suncoast Transit Authority

psta.net

58
TransportationUnited StatesmediumMEDIUM

The Pinellas Suncoast Transit Authority (PSTA) operates as the primary public transit provider for Pinellas County, Florida, offering a comprehensive range of bus and trolley services including specialized routes such as SunRunner and Spark. The website serves residents and visitors seeking transit information, schedules, fares, and real-time bus tracking. PSTA holds a strong market position as a government-affiliated transportation authority with a domain established in 1999, reflecting long-term operational stability. Technically, the website employs a modern but somewhat dated technology stack featuring AngularJS, Bootstrap 3, jQuery, and Google Analytics for tracking. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. However, some technical improvements could enhance performance and security, such as enabling DNSSEC and implementing security headers. From a security perspective, the site uses HTTPS and has domain transfer protections in place, but lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or malicious content were detected, but the absence of privacy and cookie policies and consent mechanisms indicates partial compliance with privacy regulations. Overall, the website is professional, trustworthy, and serves its public service mission effectively. Strategic enhancements in privacy compliance and security posture would further strengthen user trust and regulatory adherence.

15
35
17
75
72
75
100
publictransittransportationbusservicesfloridagovernment+1 more
jQueryBootstrap 3.3.7AngularJS 1.6.1Google Analytics+6

Partner Domains:

flamingofares.com
partner
gohart.org
partner

+2 more partners

2025-10-30T18:22:30.817Z
lunexpower.com favicon

Lunex Power

lunexpower.com

62
EnergyN/amediumMEDIUM

Lunex Power is a solar energy company specializing in the design and installation of high-efficiency residential, commercial, and off-grid solar systems across multiple US states. The company positions itself as a trusted provider with over 4,000 installations and 50+ years of combined experience, offering turnkey services including permitting, installation, and maintenance. Their website showcases a professional and modern digital presence built on Next.js and hosted on Vercel, featuring rich content, customer testimonials, and partnerships with leading solar technology providers such as Tesla and Enphase. Technically, the website is well-optimized for performance and mobile responsiveness, leveraging modern frameworks and analytics tools. However, there is a lack of explicit privacy, cookie, and terms of service policies, which impacts privacy compliance. Security posture is generally good with HTTPS enabled, but the absence of explicit security headers and incident response information suggests room for improvement. The WHOIS data is missing or unavailable, raising concerns about domain registration legitimacy. Despite this, the website's professional content and trust signals mitigate some risk. Overall, the site presents a credible business front but should enhance transparency around privacy, security policies, and domain registration to strengthen trust and compliance.

35
68
10
60
72
75
100
solarsolarpanelshomesolarcommercialsolaroff-gridsolar+3 more
ReactNext.jsVercel AnalyticsGoogle Maps API+1
2025-10-30T18:21:40.698Z
medicalpropertiestrust.com favicon

Medical Properties Trust, Inc.

medicalpropertiestrust.com

63
HealthcareUnited StateslargeMEDIUM

Medical Properties Trust, Inc. (MPT) is a large, US-based real estate investment trust specializing in hospital real estate financing. The company operates globally with a portfolio of 392 properties across 9 countries, focusing on sale/leaseback transactions and investments in hospital operators. Their website reflects a mature business with strong investor relations, corporate responsibility, and a clear focus on healthcare real estate capital solutions. The target audience includes hospital operators, investors, and healthcare industry stakeholders. Technically, the website is built on the Webflow platform, leveraging modern web technologies such as Google Tag Manager, Google Analytics, reCAPTCHA, and Chart.js. The site is mobile-optimized, accessible, and SEO-friendly, with good performance. However, some security best practices like security headers and cookie consent mechanisms are missing or not detected. From a security perspective, the site uses HTTPS and includes anti-bot measures via reCAPTCHA. There are no visible vulnerabilities or exposed sensitive data. The absence of security headers and incident response information suggests room for improvement. The WHOIS data is unavailable, which slightly reduces trustworthiness but is mitigated by the professional content and stock market presence. Overall, the website presents a professional and trustworthy image with a strong business model and technical foundation. Strategic improvements in security headers, privacy compliance, and WHOIS transparency would enhance trust and compliance.

45
53
2
75
72
75
100
healthcarerealestateinvestmenthospitalfinanceinvestorrelations+1 more
Google Tag ManagerGoogle Analytics (gtag.js)Google reCAPTCHAWebflow CMS+4

Partner Domains:

ir.medicalpropertiestrust.com
partner
2025-10-30T15:08:29.656Z
childrensal.org favicon

Children's of Alabama

childrensal.org

67
HealthcareUnited StateslargeMEDIUM

Children's of Alabama is a well-established pediatric healthcare provider based in Birmingham, Alabama, recognized nationally for excellence in multiple specialties. The organization offers a comprehensive range of pediatric services including emergency care, outpatient centers, behavioral health, and patient support through a secure online portal. Their market position is strong, supported by numerous awards and recognitions, reflecting a trusted brand in pediatric healthcare. The website targets parents, patients, healthcare professionals, and donors, providing extensive resources and easy access to services. Technically, the website is built on Drupal CMS with integration of modern analytics and marketing tools such as Google Analytics, Facebook Pixel, and Crazy Egg. The site demonstrates good performance, mobile optimization, and accessibility features, reflecting a mature digital infrastructure. The use of secure patient portals and cookie consent mechanisms indicates attention to user privacy and data protection, although explicit security policies and incident response information are not publicly disclosed. From a security perspective, the site enforces HTTPS and employs standard best practices, but could improve by publishing explicit security headers and vulnerability disclosure information. The WHOIS data is unavailable due to privacy protection, which is common and justified for healthcare entities. Overall, the domain and website appear legitimate and trustworthy with a high level of professionalism and compliance. The overall risk assessment is low, with recommendations focusing on enhancing transparency around security policies and incident response, and ensuring all third-party scripts remain secure and up to date. The website serves as a reliable and professional digital presence for Children's of Alabama, supporting its mission to provide exceptional pediatric care.

70
58
2
70
62
85
100
healthcarepediatricshospitalpatientportalnon-profit+2 more
Drupal CMSGoogle Tag ManagerGoogle AnalyticsCrazy Egg+7

Partner Domains:

mychart.childrensal.org
service
kidshealth.org
partner

+3 more partners

2025-10-30T15:07:14.499Z
valfrigo.com favicon

Valfrigo

valfrigo.com

43
EnergyKosovosmallHIGH

Valfrigo is a Kosovo-based company specializing in the sale of thermal pumps for central heating, ventilation, air conditioning, and related services such as filtering and degassing of oil transformers. The company markets products from well-known brands like NIBE, TOSHIBA, CARRIER, and CLIVET, positioning itself as a specialized provider in the green energy sector. The website reflects a small-sized business with a clear focus on green energy heating solutions, targeting both businesses and consumers interested in sustainable energy technologies. The domain age of 20 years supports a mature business presence. Technically, the website is built on WordPress using popular plugins such as WPBakery Page Builder and Slider Revolution. It employs modern web technologies including jQuery and Google Fonts, and integrates Google Maps API. The site is mobile optimized with good design quality and navigation clarity, although SEO and accessibility features are basic. Hosting appears to be managed via Name.com, consistent with the domain registrar information. From a security perspective, the site uses HTTPS, ensuring encrypted communications. However, no DNSSEC is enabled, and no security headers were detected in the provided data, which are areas for improvement. The absence of privacy and cookie policies, as well as incident response contacts, indicates gaps in compliance and security transparency. No evidence of tracking or advertising scripts was found, suggesting minimal user tracking. Overall, the website is professional and trustworthy with moderate security posture and limited privacy compliance. Strategic improvements in security headers, DNSSEC, and privacy documentation would enhance the site's security and compliance standing.

15
35
2
70
62
70
20
greenenergythermalpumpsheatingventilationairconditioning+2 more
WordPressWPBakery Page BuilderSlider RevolutionjQuery+2
2025-10-30T14:12:41.402Z
rchi.ca favicon

Russell Certified Home Inspections

rchi.ca

58
Real EstateCanadasmallMEDIUM

Russell Certified Home Inspections is a small, professional home inspection service provider based in Kemptville, Ontario, Canada. The company offers a comprehensive range of inspection services including pre-purchase, new home warranty, WETT, BGRS, maintenance inspections, thermal imaging, and drone services. Led by Lucas Russell, an InterNACHI certified master inspector with over 10 years of experience, the business positions itself as a market leader in the local real estate inspection sector. The website reflects a professional image with detailed service descriptions and strong customer testimonials, supporting its credibility and trustworthiness. Technically, the website is built on WordPress with a modern tech stack including jQuery, Bootstrap, Owl Carousel, and Google Maps integration. SEO is enhanced by the Yoast SEO plugin and structured data markup. The site is mobile optimized and provides a good user experience. However, some technical improvements are recommended such as enabling DNSSEC and implementing security headers to strengthen security posture. Security-wise, the site uses HTTPS and has domain status protections but lacks DNSSEC and security headers. There is no visible privacy policy or cookie consent mechanism, which is a compliance gap especially under GDPR. Incident response and vulnerability disclosure information are absent, indicating room for improvement in security transparency and readiness. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices to reduce risk and improve user trust. Strategic recommendations include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and establishing a vulnerability disclosure policy.

95
35
17
75
62
80
20
homeinspectionkemptvilleinternachicertifiedmasterinspectorthermalimaging+3 more
jQueryBootstrapOwl CarouselLightbox+6
2025-10-30T13:19:57.711Z
L

Long Beach Utilities

lbutilities.org

63
EnergyUnited StatesmediumMEDIUM

Long Beach Utilities is a municipal utility provider serving the City of Long Beach, California, offering essential services including water supply and treatment, natural gas distribution, and sewer management. The organization operates as a public utility funded through utility fees and government budgets, targeting residents and businesses within the city. The website reflects a well-structured and professional digital presence, featuring multi-language support and comprehensive service information. The platform is built on modern web technologies including ASP.NET WebForms and the Granicus OpenCities CMS, with integrations such as Google Maps API enhancing user experience. From a security perspective, the website enforces HTTPS and employs secure form submissions, though it lacks some advanced security headers and explicit published security policies. The absence of detailed privacy and cookie policies indicates room for improvement in privacy compliance, especially regarding GDPR. The WHOIS data is unavailable due to a malformed request, limiting domain registration verification; however, the official contact information and government domain (.org) lend credibility to the site. Overall, the website demonstrates a solid technical infrastructure and business credibility appropriate for a municipal utility. Strategic enhancements in privacy policy transparency, security header implementation, and incident response documentation would further strengthen its security posture and compliance standing.

15
58
25
85
72
70
100
municipalutilitieswatergassewer+3 more
jQuery 3.7.1Google Maps APIASP.NET WebFormsModernizr+1
2025-10-30T13:14:13.924Z
pensketruckrental.com favicon

Penske Truck Rental

pensketruckrental.com

76
TransportationUnited StateslargeLOW

Penske Truck Rental operates as a large, established transportation company specializing in moving truck rentals across the United States. The company offers services through a network of over 2,500 rental locations, targeting both consumers and businesses requiring truck rental solutions. Their website reflects a professional brand presence with consistent branding and a clear focus on their core services. Technically, the website employs a modern technology stack including Google Tag Manager, Google Analytics, OneTrust for cookie consent, and the RebelMouse CMS platform. The site is mobile optimized, accessible, and uses HTTPS with a good SSL configuration. However, some security best practices such as explicit security headers and published security policies are missing. From a security perspective, the site demonstrates a solid baseline with HTTPS and cookie consent mechanisms. Yet, the absence of a privacy policy, terms of service, incident response contacts, and vulnerability disclosure information indicates gaps in compliance and transparency. The WHOIS data is notably missing, which raises concerns about domain registration legitimacy despite the professional appearance of the site. Overall, the website is functional, trustworthy, and well-branded but would benefit from enhanced transparency in privacy and security policies, as well as verification of domain registration details to strengthen trust and compliance.

75
100
17
70
82
85
100
truckrentalmovingtruckstransportationpenskevehiclerental
Google Tag ManagerGoogle AnalyticsOneTrust Cookie ConsentGoogle Maps API+4
2025-10-30T11:36:30.183Z
U

Unframed B.V.

unframed.nl

62
TechnologyNetherlandssmallMEDIUM

Unframed B.V. is a Netherlands-based creative agency specializing in digital strategy, application development, and brand development. The company targets businesses seeking innovative and well-thought-out digital solutions and brand enhancement. Their market position is that of a niche, small-sized agency with a focus on delivering strategic and creative digital services. The website reflects a professional and consistent brand image with good content quality and clear messaging. Technically, the website is built on WordPress with a modern tech stack including popular JavaScript libraries and frameworks such as GSAP, Splide.js, and integrations with Google Tag Manager, reCAPTCHA, and Cookiebot for consent management. The site demonstrates good SEO practices with structured data and meta tags, and it is mobile optimized with moderate performance. From a security perspective, the website enforces HTTPS, uses Google reCAPTCHA for form protection, and manages cookie consent via Cookiebot, indicating a good security posture. However, explicit security policies, incident response information, and vulnerability disclosure mechanisms are not present, which could be improved to enhance trust and compliance. Overall, the website is trustworthy, professionally maintained, and compliant with GDPR through the use of Cookiebot. The risk level is low, but strategic recommendations include publishing detailed security and incident response policies and enhancing security headers to further strengthen the security posture.

20
83
17
75
52
70
100
creativeagencydigitalstrategybranddevelopmentapplicationdevelopmentcookieconsent+2 more
WordPressYoast SEO PremiumjQueryGSAP+8
2025-10-30T11:18:01.893Z
soziokultur-thueringen.de favicon

LAG Soziokultur Thüringen e.V.

soziokultur-thueringen.de

71
OtherGermanysmallMEDIUM

LAG Soziokultur Thüringen e.V. is a regional non-profit association dedicated to representing and supporting socio-cultural initiatives in the German state of Thüringen. The organization provides key services including cultural consulting, education, funding support, public relations, and lobbying to strengthen the socio-cultural landscape. Their market position is that of a leading regional advocate and service provider for socio-cultural actors. The website is professionally designed, content-rich, and well-structured, targeting cultural stakeholders and the general public interested in socio-cultural projects. Technically, the website is built on the Contao Open Source CMS platform, utilizing modern JavaScript libraries such as jQuery, Slick Slider, and Google Maps API for enhanced user experience. The site is mobile-optimized and includes accessibility features, though some improvements could be made. Performance is moderate, with no major technical issues detected. From a security perspective, the site enforces HTTPS, uses CSRF tokens in forms, and includes CAPTCHA to prevent spam. Cookie consent is implemented with detailed categories, reflecting GDPR compliance. However, there is no publicly available formal security policy or incident response information, which could be improved to enhance trust and preparedness. Overall, the website is trustworthy, safe, and compliant with privacy regulations. It effectively serves its target audience with relevant content and services. Strategic recommendations include publishing a formal security policy, adding a security.txt file, enhancing security headers, and improving accessibility to further strengthen the site's security posture and user experience.

65
83
17
75
77
65
100
soziokulturthringenkulturnon-profiteducation+3 more
jQueryjQuery UISlick SliderColorbox+1
2025-10-30T07:41:13.510Z
ocean-summit.de favicon

Ocean Summit

ocean-summit.de

54
EducationGermanysmallMEDIUM

Ocean Summit is a non-profit organization dedicated to marine conservation education, actions, and networking primarily in Schleswig-Holstein, Germany. The website serves as a platform to engage marine enthusiasts of all ages through educational programs, events, and media content such as podcasts and magazines. It positions itself as a regional leader in marine protection advocacy and education. Technically, the website is built on WordPress using the Enfold theme and several plugins including EventON and Toolset Blocks. It employs modern web technologies such as jQuery and Google Maps API, and is hosted with domain control services likely provided by GoDaddy. The site is mobile-optimized and SEO-friendly with structured data markup and social media integration. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms, indicating good privacy compliance. However, explicit security headers are not detected, and no formal security policy or incident response information is published. No vulnerabilities or exposed sensitive data were found in the analysis. Overall, the website is professional, trustworthy, and safe for general audiences. It demonstrates good privacy compliance and technical maturity but could improve its security posture by adding security headers and incident response details.

15
100
17
65
67
70
20
marineconservationeducationenvironmentnon-profitschleswig-holstein+2 more
WordPressPHPJavaScriptjQuery+4
2025-10-30T07:40:43.432Z
icsspe.org favicon

International Council of Sport Science and Physical Education (ICSSPE)

icsspe.org

46
EducationGermanysmallHIGH

The International Council of Sport Science and Physical Education (ICSSPE) is a globally recognized non-profit organization dedicated to advancing research, education, and policy in physical activity and sport. The website serves as a comprehensive platform for disseminating scientific resources, promoting events, and supporting its membership community. It targets professionals, researchers, and policymakers in the sport science and physical education sectors worldwide. Technically, the website is built on Drupal 7, utilizing common web technologies such as jQuery and Google services for analytics and maps. While the site is functional and moderately optimized for performance and mobile devices, there is room for modernization and enhanced accessibility. The presence of privacy and cookie policies with consent mechanisms reflects a good level of digital maturity and compliance with GDPR. From a security perspective, the site enforces HTTPS and anonymizes IPs in analytics, but lacks visible security headers and explicit incident response or security policy documentation. The WHOIS data is unavailable, likely due to privacy protection, which is justified for this type of organization. Overall, the site demonstrates a solid security posture but could benefit from additional hardening and transparency. The overall risk assessment is low, with no critical vulnerabilities or suspicious indicators detected. Strategic recommendations include updating the CMS, implementing security headers, and publishing security policies to enhance trust and compliance.

30
53
2
75
52
80
-
sporteducationphysicaleducationnon-profitresearch+3 more
Drupal 7jQueryGoogle AnalyticsGoogle Tag Manager+1
2025-10-30T07:16:23.661Z
fara.no favicon

FARA

fara.no

64
TransportationNorwaymediumMEDIUM

FARA is a Norwegian-based technology company specializing in public transport solutions, including ticketing systems, passenger information, and real-time monitoring. Established in 2005, the company offers a comprehensive suite of products targeting passengers, operators, and public transport authorities. Their market position is that of an established player in the Nordic and European transportation technology sector, with a medium-sized business profile and a clear B2B focus. The website reflects a professional and consistent brand image with good content quality and clear navigation tailored to their target audience. Technically, the website is built on WordPress with modern integrations such as Google Analytics, Google Tag Manager, Cookiebot for consent management, and HubSpot for marketing automation. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Performance is moderate, with room for improvement in hosting transparency and technical optimizations. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks visible security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the HTML content. Privacy compliance is strong with clear privacy and cookie policies and GDPR indicators. Business credibility is supported by trust signals such as client logos, social media presence, and comprehensive legal documents. Overall, the website presents a low-risk profile with a solid security posture and good privacy compliance. Strategic recommendations include enhancing security headers, publishing a security policy and incident response contacts, and improving accessibility compliance to further strengthen trust and security culture.

15
83
2
85
57
85
100
transportationticketingpublictransporttechnologycontactless+2 more
WordPressjQueryGoogle AnalyticsGoogle Tag Manager+3
2025-10-30T07:14:38.281Z
Y

Yeti Web

yeti-web.cz

9
TechnologyCzech RepublicsmallCRITICAL

Yeti Web is a small, Czech Republic-based web development agency specializing in creating custom websites, website testing, and responsive design services. Established in 2013, the company emphasizes quality, flexibility, and direct client engagement, also offering outsourcing services to agencies. Their website reflects a professional and consistent brand image with clear service offerings and client testimonials, positioning them as a trusted player in their niche market. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates popular analytics and user behavior tracking tools such as Google Analytics, Hotjar, and Leady. Hosting is likely provided by WEDOS, consistent with the registrar information. The site is mobile optimized and SEO friendly, though accessibility features are basic. From a security perspective, the site uses HTTPS as implied by external scripts but lacks visible security headers and published security policies. There is no privacy or cookie policy, which presents compliance risks under GDPR. The contact form includes a honeypot anti-bot field, indicating some security awareness. No vulnerability disclosure or incident response information is provided. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance and security hardening to reduce risk and improve user trust.

-
-
-
-
-
-
-
webdevelopmentresponsivedesigntestingoutsourcingczechrepublic
HTML5CSS3JavaScriptGoogle Analytics+2
2025-10-30T06:58:45.342Z