Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 9 of 775|Showing 401-450 of 38713
lacerta-watch.com favicon

Jasněna Vláhová Design (JVD)

lacerta-watch.com

51
RetailCzech RepublicsmallMEDIUM

Jasněna Vláhová Design (JVD) operates an e-commerce retail website specializing in watches and jewelry, primarily targeting Czech-speaking consumers. The brand Lacerta, founded in 1993, is featured prominently, indicating a niche market focus on design and fashion accessories. The website demonstrates a moderate level of digital maturity with modern JavaScript frameworks and integration of popular analytics and marketing tools such as Google Analytics, Google Tag Manager, and Facebook Pixel. Hosting and domain registration are consistent with the Czech Republic location, supporting business legitimacy. From a security perspective, the website enforces HTTPS and employs Cloudflare Turnstile captcha for bot mitigation, but lacks visible security headers and a published security policy or incident response contacts. Privacy compliance is partial, with a cookie consent mechanism present but no explicit privacy policy or terms of service found on the analyzed page. The absence of direct contact information on this page limits immediate customer support visibility. Overall, the website is professionally designed with good user experience and navigation clarity, suitable for its retail business model. The security posture is adequate but could be improved by implementing additional security headers and publishing comprehensive privacy and security policies. The domain's long age and consistent registration details contribute positively to trustworthiness. Strategic recommendations include enhancing privacy and security disclosures, improving accessibility features, and increasing transparency of contact information to strengthen customer trust and compliance posture.

30
25
2
90
62
80
40
watchesjewelryretaile-commerceczechrepublic+2 more
JavaScriptAlpine.jsGoogle Tag ManagerGoogle Analytics+2
2025-11-01T10:51:59.038Z
bilapastelka.cz favicon

Sbírka Bílá pastelka

bilapastelka.cz

57
Non-profitCzech RepublicmediumMEDIUM

The website bilapastelka.cz represents a well-established charitable campaign focused on supporting people with visual impairments in the Czech Republic. It operates as a non-profit initiative, encouraging donations and volunteer participation to fund training programs, guide dog services, and employment opportunities for the visually impaired. The site is professionally designed, with clear navigation and integration of donation widgets, social media links, and volunteer statistics, reflecting a mature digital presence. Technically, the website is built on the Webnode CMS platform, leveraging modern web technologies including HTTPS, CDN delivery via Amazon Cloudfront, and analytics tools such as Google Analytics and Google Tag Manager. The site demonstrates good mobile optimization and basic accessibility features, although there is room for improvement in security headers and explicit privacy documentation. From a security perspective, the site enforces HTTPS and provides a cookie consent mechanism with granular user options, aligning with GDPR requirements. However, the absence of explicit privacy policies, terms of service, and security.txt files indicates gaps in compliance and vulnerability disclosure practices. No critical vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website presents a trustworthy and professional front for its charitable mission, but the lack of WHOIS data and formal privacy documentation slightly reduces its trust score. Strategic improvements in security headers, privacy policy publication, and domain registration transparency would enhance its security posture and compliance standing.

35
25
2
70
72
75
100
charitynon-profitdisabilitysupportvisualimpairmentdonation+1 more
HTML5CSS3JavaScriptGoogle Analytics+4

Partner Domains:

www.sons.cz
partner
www.darujme.cz
partner
2025-11-01T10:51:54.026Z
erixx.de favicon

erixx GmbH

erixx.de

56
TransportationGermanymediumMEDIUM

erixx GmbH is a regional passenger rail service provider operating in Niedersachsen and northern Germany, focusing on routes through Harz, Heide, and Wendland. The company is positioned as a trusted regional transportation operator with a clear business model centered on passenger rail services. The website provides comprehensive travel information, live schedules, ticketing options, and customer support, targeting regional train passengers. The parent company is Netinera, a known transportation group, which adds to erixx's market credibility. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates a Progressive Web App manifest for enhanced user experience. Hosting and DNS are managed via Cloudflare, ensuring reliable performance and security. The site is mobile-optimized, accessible, and SEO-friendly, with embedded third-party widgets for timetable and route planning. From a security perspective, the website enforces HTTPS and follows several best practices, though explicit security headers like X-Frame-Options and X-Content-Type-Options are not clearly visible in the HTML. No vulnerabilities or exposed sensitive data were detected. However, the absence of a published security policy or incident response contact limits transparency in security governance. Overall, the website is professional, trustworthy, and compliant with GDPR, featuring clear privacy and cookie policies. The risk profile is low with no signs of malicious activity or content safety concerns. Strategic recommendations include enhancing security header implementation, publishing a security.txt file, and providing explicit incident response contacts to improve security posture and trust.

55
33
2
70
47
60
100
regionaltraintransportationpublictransitgermanyniedersachsen+3 more
HTML5CSS3JavaScriptCloudflare DNS+2

Partner Domains:

www.netinera.de
parent
www.lnvg.de
partner

+2 more partners

2025-11-01T10:50:58.881Z
der-enno.de favicon

metronom Eisenbahngesellschaft mbH

der-enno.de

52
TransportationGermanymediumMEDIUM

The website www.der-enno.de represents a regional rail transport service operated by metronom Eisenbahngesellschaft mbH, serving the Hannover region and surrounding areas in Lower Saxony, Germany. It provides comprehensive travel planning tools, live timetable data, customer support, and career opportunities, positioning itself as a key regional transportation provider. The site is well-branded, professionally designed, and targets commuters and regional travelers with localized German content and an English alternative. Technically, the site employs modern web technologies including a Progressive Web App (PWA) framework, service workers, and integrates third-party public transport widgets from fahrplaner.vbn.de. Hosting and DNS are managed via Cloudflare, ensuring robust performance and security. The site is mobile-optimized with good accessibility and SEO practices. From a security perspective, the site enforces HTTPS, uses standard security headers, and avoids exposing sensitive data. However, it lacks a dedicated security policy or incident response contact information, and does not publish a vulnerability disclosure policy. Privacy compliance is strong with clear GDPR-aligned privacy and cookie policies and consent mechanisms. Overall, the website demonstrates a mature digital presence with strong business credibility and technical implementation. The security posture is good but could be enhanced with additional transparency and security headers. The risk level is low, with no detected vulnerabilities or suspicious content.

20
33
2
70
47
60
100
regionalrailtransportationpublictransittravelplanningcareer+4 more
JavaScriptHafas public transport widgetService Worker (PWA)Cloudflare DNS and likely CDN+2

Partner Domains:

www.der-enno.com
partner
www.ich-will-zu-metronom.de
partner

+3 more partners

2025-11-01T10:50:53.864Z
powertodrive.de favicon

Power2Drive Europe

powertodrive.de

50
EnergyGermanymediumMEDIUM

Power2Drive Europe operates as a prominent international exhibition and conference platform specializing in charging infrastructure and e-mobility. The website provides comprehensive event information, exhibitor resources, and industry news, targeting professionals and stakeholders in the energy and transportation sectors. The business model centers on event organization and industry engagement, positioning itself as a key player in the European e-mobility market. Technically, the website employs modern JavaScript libraries, including FontAwesome Pro and Usercentrics for consent management, alongside Google Tag Manager for analytics. The site demonstrates good mobile optimization and SEO practices, although some technical details such as CMS and hosting specifics remain unclear. Performance is moderate with room for improvement in accessibility and security headers. Security posture is solid with HTTPS enforced and use of captcha mechanisms, but lacks explicit security policies and vulnerability disclosure channels. Privacy compliance is strong, evidenced by a comprehensive privacy policy and active cookie consent management. Business credibility is supported by consistent branding, social media presence, and detailed event content, though direct contact details and company registration information are limited. Overall, the website is professional, trustworthy, and well-suited for its audience, with recommendations to enhance security headers, publish incident response contacts, and improve accessibility for a more robust digital presence.

70
28
2
65
77
60
20
energye-mobilityexhibitionconferencecharginginfrastructure+1 more
JavaScriptjQueryFontAwesome Pro 6.4.2Usercentrics Consent Management+2

Partner Domains:

intersolar.de
partner
ees-europe.com
partner

+2 more partners

2025-11-01T10:49:28.487Z
dossier-freiwillig-engagiert.ch favicon

benevol Schweiz

dossier-freiwillig-engagiert.ch

49
Non-profitSwitzerlandsmallHIGH

The website 'Dossier freiwillig engagiert' is a Swiss non-profit digital platform managed by benevol Schweiz that recognizes and documents voluntary and unpaid engagement. It serves volunteers and organizations by providing a national quality label and a digital dossier to showcase volunteer experience and competencies. The platform is positioned as a recognized resource within Switzerland's voluntary sector, supported by reputable partners such as benevol Schweiz and SAJV. The site is professionally designed, multilingual, and provides clear navigation and relevant content tailored to its audience. Technically, the website employs modern JavaScript libraries including jQuery and Numeral.js, integrates Google Tag Manager and Google Analytics for tracking, and uses HTTPS with good SSL configuration. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. No CMS or hosting provider details are explicitly detected. The site uses external scripts responsibly and includes a cookie consent mechanism compliant with GDPR. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and publicly available security or incident response policies. No vulnerability disclosure or security.txt files are present. The WHOIS data aligns well with the website's claims, showing consistent registrant information and domain legitimacy. No WAF or blocking mechanisms interfere with content access. Overall, the website demonstrates a solid security posture and good privacy compliance, with room for improvement in security policy transparency and technical security headers. The business credibility is high due to clear contact information, partner endorsements, and professional presentation. The risk level is low, and the site is suitable for its intended audience without any adult or questionable content.

15
53
2
70
72
75
20
non-profitvolunteeringengagementswitzerlandqualitylabel+1 more
JavaScriptjQuery 3.6.0Numeral.js 2.0.6Google Tag Manager+1

Partner Domains:

benevol.ch
partner
sajv.ch
partner

+1 more partners

2025-11-01T10:48:38.332Z
benevol-sg.ch favicon

benevol St. Gallen

benevol-sg.ch

58
Non-profitSwitzerlandmediumMEDIUM

benevol St.Gallen is a well-established non-profit organization serving as the primary contact point for volunteer organizations, associations, and individuals interested in volunteering in the St.Gallen region of Switzerland. The website effectively communicates its mission, services, and community engagement through a professional and well-structured digital presence. It offers a variety of services including consulting, job boards, training, and rental spaces, supported by a network of over 300 partners. The organization maintains a strong market position as a regional leader in volunteer facilitation. Technically, the website employs modern web technologies such as Google Tag Manager, Google Analytics, and CookieYes for consent management, alongside Cloudflare's Turnstile captcha for security. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a mature digital infrastructure. Security posture is solid with HTTPS enforced and privacy compliance evident through comprehensive cookie consent mechanisms and GDPR-aligned privacy policies. No critical vulnerabilities or suspicious activities were detected. Overall, the site demonstrates high professionalism, trustworthiness, and business credibility, making it a reliable resource for its target audience.

35
83
2
80
72
85
20
volunteeringnon-profitcommunityeducationevents+2 more
HTML5CSS3JavaScriptGoogle Tag Manager+4

Partner Domains:

benevol.ch
partner
2025-11-01T10:48:18.281Z
forcepoint.com favicon

Forcepoint

forcepoint.com

75
TechnologyUnited StatesenterpriseMEDIUM

Forcepoint is a leading enterprise cybersecurity company specializing in data security and cloud security solutions. The company serves over 10,000 customers globally, including government agencies and large enterprises, providing advanced protection for data across cloud and network environments. Their market position is strong, supported by recognized certifications such as ISO 27001, SOC 2, and FedRAMP, reflecting a commitment to security and compliance. The website clearly communicates their value proposition and key services, targeting security professionals and enterprise clients. Technically, the website is built on modern frameworks including Next.js and React, hosted on Pantheon with robust performance and mobile optimization. The site integrates advanced analytics and marketing tools such as Visual Website Optimizer and Google Analytics, enabling detailed user behavior tracking and optimization. Privacy and cookie policies are comprehensive and GDPR compliant, with active consent mechanisms implemented. From a security perspective, Forcepoint demonstrates strong security posture with HTTPS enforcement, security headers, and published security policies. The presence of incident response contacts and vulnerability disclosure programs further enhance trust. No critical vulnerabilities or suspicious content were detected. However, the WHOIS data is unavailable or protected, which slightly reduces transparency but does not detract significantly from overall legitimacy. Overall, Forcepoint's website reflects a mature, professional cybersecurity provider with strong technical and security foundations. Recommendations include maintaining up-to-date third-party libraries, enhancing transparency on data retention, and continuing rigorous security audits to sustain trust and compliance.

45
73
47
80
82
90
100
cybersecuritycloudsecuritydataprotectionenterprisesecurityprivacy+3 more
Next.jsReactJavaScriptVisual Website Optimizer (VWO)+3
2025-11-01T10:46:06.347Z
N

NetApp

netapp.com

74
TechnologyUnited StatesenterpriseMEDIUM

NetApp is a leading enterprise data storage and cloud data services provider, offering intelligent data infrastructure solutions embedded within major public cloud platforms. Founded in 1992 and headquartered in San Jose, California, NetApp serves enterprise IT professionals with a broad portfolio including unified data storage, hybrid cloud solutions, and subscription-based storage services. The website reflects a mature digital presence with professional design, comprehensive content, and strong branding consistency. Technically, the site employs modern JavaScript frameworks, advanced search capabilities via Coveo, and robust analytics through Adobe Analytics and mPulse, hosted on Akamai's CDN infrastructure. Security posture is strong with HTTPS enforcement, security headers, and cookie consent mechanisms, although explicit security policies and vulnerability disclosure information are not publicly detailed. The WHOIS data for the domain is unavailable, which is unusual but does not detract significantly from the site's trustworthiness given the strong external trust signals and professional presentation. Overall, NetApp's website demonstrates a high level of digital maturity, security awareness, and business credibility appropriate for a global technology enterprise.

95
73
25
85
62
65
100
enterprisedatastoragecloudhybridcloudtechnology+3 more
JavaScriptjQueryCoveo SearchAdobe Analytics+2

Partner Domains:

console.netapp.com
service
mysupport.netapp.com
service

+2 more partners

2025-11-01T10:45:56.310Z
H

Helvetia

bvgonline.ch

61
FinanceSwitzerlandlargeMEDIUM

The website analyzed is a login page for Helvetia, a Swiss insurance company. The page content is minimal and appears to be blocked or protected by a security mechanism, likely a Web Application Firewall (WAF), as indicated by the hidden body and placeholder text. The site lacks visible privacy, cookie, or terms of service policies, and no contact information or forms are present. The technical infrastructure shows minimal publicly accessible content with a single JavaScript file loaded, and no metadata or structured data is available for deeper analysis. From a security perspective, the absence of visible security headers, privacy policies, and incident response contacts suggests a low transparency posture, although this may be due to the page's nature as an identity provider login portal. The lack of accessible content limits the ability to assess SSL configuration or other security best practices. No vulnerabilities or exposed sensitive data were detected, but the inability to access full content restricts comprehensive evaluation. Overall, the website's risk assessment is constrained by the blocked content, resulting in a low AI score. Strategic recommendations include improving transparency by publishing privacy and cookie policies, adding contact and incident response information, and ensuring security headers and SSL configurations are properly implemented and visible. These steps will enhance trust and compliance with data protection regulations.

85
50
2
75
72
85
100
financeinsuranceloginidentityproviderhelvetia
JavaScript
2025-11-01T10:39:50.245Z
bisons.dev favicon

Flying Bisons Sp. z o. o.

bisons.dev

64
TechnologyPolandmediumMEDIUM

Flying Bisons Sp. z o. o. is a Warsaw-based technology company specializing in web and mobile development services. With over six years of market presence and more than 200 successfully delivered products, the company serves a broad range of clients including major international brands. Their business model focuses on custom software development, emphasizing collaboration with UX designers to ensure high-quality, secure, and user-friendly digital solutions. The company maintains a strong market position supported by positive client rankings and a commitment to agile methodologies. Technically, the website reflects a mature digital infrastructure utilizing modern technologies such as PHP, React, React Native, and various backend tools like Redis and Rabbit MQ. The site is well-optimized for performance, mobile responsiveness, and accessibility, indicating a high level of digital maturity. The use of Google Tag Manager and Iubenda for cookie consent demonstrates awareness of privacy and analytics best practices. From a security perspective, the website enforces HTTPS and implements a cookie consent mechanism, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. The domain registration details align well with the business claims, supporting legitimacy and trustworthiness. Overall, Flying Bisons presents a professional and credible online presence with strong technical and business foundations. Strategic improvements in security policy transparency and enhanced security headers would further strengthen their security posture and compliance standing.

60
68
2
70
57
70
100
technologywebdevelopmentmobiledevelopmentsoftwaredevelopmentagile+3 more
PHPSQLMongoDBRedis+9
2025-11-01T10:37:37.784Z
linux-kvm.org favicon

KVM

linux-kvm.org

50
TechnologyN/asmallMEDIUM

The linux-kvm.org website serves as the official information portal for the Kernel-based Virtual Machine (KVM) open source project, which provides full virtualization capabilities for Linux systems on x86 hardware. The site offers technical documentation, news, and community resources targeted at Linux users, developers, and IT professionals interested in virtualization technology. The project is mature, with a domain age of over 15 years, and is integrated into the Linux kernel and QEMU userspace, reflecting a strong market position in open source virtualization. Technically, the website is built on MediaWiki with Bootstrap and JavaScript, delivering a fast and well-structured user experience. The site uses HTTPS and modern web standards but lacks advanced security headers and comprehensive privacy or cookie policies. Mobile optimization and accessibility are basic, and no analytics or tracking technologies are detected, indicating a minimal user tracking approach. From a security perspective, the site shows good baseline practices such as HTTPS usage and no exposed sensitive data. However, the absence of security headers and published security or incident response policies suggests room for improvement. The WHOIS data is transparent and consistent with the open source nature of the project, enhancing trustworthiness. Overall, linux-kvm.org is a credible, well-maintained technical resource with a strong reputation in the open source community. Strategic enhancements in privacy compliance, security headers, and contact transparency would further strengthen its security posture and user trust.

45
50
2
60
42
80
40
virtualizationlinuxkvmopensourcetechnology+1 more
Linux Kernel ModulesQEMUMediaWikiBootstrap+1
2025-11-01T10:37:16.319Z
A

ADD ADVERTISING DESIGN

supkadavid.cz

35
OtherCzech RepublicsmallHIGH

The website supkadavid.cz represents ADD ADVERTISING DESIGN, a small Czech graphic design agency founded in 2007. The company offers a range of services including graphic design, web design, corporate identity, printing materials, and advertising graphics. The website content is primarily in Czech and targets local clients seeking professional design services. The business appears to be a small, service-oriented agency with a focus on personalized client solutions and portfolio presentation. Technically, the website relies on outdated Flash technology, which significantly impacts usability, accessibility, and security. The site lacks modern web standards such as responsive design and accessibility features. There is no evidence of HTTPS enforcement or security headers, which weakens the security posture. Google Analytics is used for tracking, but no cookie consent or privacy policies are present, indicating poor privacy compliance. From a security perspective, the absence of HTTPS, security headers, and privacy policies are notable weaknesses. The use of Flash technology introduces potential vulnerabilities and compatibility issues. The WHOIS data shows a consistent and long-standing domain registration, supporting the legitimacy of the business. However, the website would benefit from modernization and improved security and privacy practices. Overall, the website scores moderately due to its business credibility and content relevance but is held back by technical and security shortcomings. Strategic improvements in technology stack, security implementation, and privacy compliance are recommended to enhance trust and user experience.

15
10
2
60
62
75
-
graphicdesignwebdesigncorporatedesignadvertisingportfolio+1 more
HTMLCSSJavaScriptFlash (SWF)
2025-11-01T10:37:02.248Z
L

Lowe's Companies, Inc

lowes.com

11
RetailUnited StatesenterpriseCRITICAL

Lowe's Companies, Inc operates a large-scale home improvement retail website offering a wide range of products including appliances, tools, building supplies, and garden equipment. The company targets both DIY consumers and professional contractors, providing services such as installation and business resources. The website is professionally designed with a strong brand presence and consistent messaging, reflecting its position as a leading retailer in the home improvement sector. Technically, the website leverages modern web technologies including React, multiple CDNs, and advanced analytics and performance monitoring tools. The infrastructure supports fast loading times and good mobile optimization, ensuring a positive user experience. However, explicit privacy and cookie policies were not detected in the provided content, indicating an area for improvement in compliance transparency. From a security perspective, the site enforces HTTPS and integrates fraud protection and monitoring scripts, demonstrating a mature security posture. The absence of explicit security headers in the HTML snippet suggests potential enhancements at the server configuration level. The WHOIS data is unavailable or inconsistent, which is unusual for a major brand but does not detract from the overall legitimacy of the site. Overall, Lowe's website presents a secure, professional, and user-friendly platform with minor gaps in privacy policy visibility and WHOIS transparency. Strategic improvements in these areas would further enhance trust and compliance.

-
-
-
-
-
-
-
homeimprovementretaile-commercetoolsappliances+3 more
React 16.14.0JavaScriptAkamai CDNGoogle Tag Manager+4
2025-11-01T10:34:07.074Z
ntr.nl favicon

NTR

ntr.nl

56
MediaNetherlandslargeMEDIUM

NTR is a Dutch public broadcasting organization operating under the NPO umbrella, providing a wide range of programming focused on information, education, culture, youth, and diversity. The website serves as a portal to their content offerings, including television and radio programs, with a clear focus on accessibility and relevance for all audience segments. The site is well-branded, consistent, and professionally maintained, reflecting its status as a major public media entity in the Netherlands. Technically, the website employs modern web technologies including jQuery, Bitmovin video player, and a cookie consent management system. It is mobile-optimized with responsive design elements and integrates tracking and analytics tools compliant with privacy regulations. The site uses HTTPS with DNSSEC enabled, indicating strong foundational security practices, although some advanced security headers are not explicitly detected. From a security perspective, the site demonstrates good practices such as encrypted connections and cookie consent mechanisms. However, it lacks publicly visible security policies or incident response contacts, which could be improved to enhance transparency and trust. No vulnerabilities or suspicious content were detected, and the domain registration data aligns well with the organization's identity and history. Overall, the website is a trustworthy, professional platform for a public broadcaster with a strong compliance posture and good user experience. Strategic improvements in security policy disclosure and header implementation could further strengthen its security posture.

25
28
2
70
72
65
100
publicbroadcastingmediaeducationcultureyouth+3 more
JavaScriptjQuery 3.7.1Bitmovin PlayerSlick Carousel+2

Partner Domains:

npostart.nl
partner
npoklassiek.nl
partner

+1 more partners

2025-11-01T10:29:17.914Z
aceoffice.cz favicon

AceIT Office

aceoffice.cz

62
OtherN/asmallMEDIUM

AceIT Office operates a web-based business software platform powered by Group-Office, providing enterprise-level office management solutions. The website serves primarily as a login portal for authenticated users rather than a public-facing marketing site. The platform leverages ExtJS 3 for its frontend interface, indicating a mature but somewhat dated technology stack. The domain aceoffice.cz has been registered since 2012, consistent with the longevity of the software product. However, the website lacks publicly accessible business information, privacy policies, or contact details, limiting transparency for external visitors. Technically, the website employs HTTPS with a security token mechanism for AJAX requests, which is a positive security practice. Nonetheless, the absence of standard security headers and advanced bot protection on the login form suggests room for improvement in security hardening. The site does not appear to use any analytics or advertising technologies, indicating a focus on internal users rather than marketing or tracking external visitors. From a security and compliance perspective, the lack of visible privacy and cookie policies, as well as missing contact information, represents a compliance gap, especially under GDPR requirements. The site’s security posture is moderate but could benefit from implementing additional security headers and bot mitigation techniques. Overall, the risk to external users is low given the site’s nature as a login portal, but the lack of transparency and compliance documentation could impact trustworthiness. Strategically, AceIT Office should prioritize publishing clear privacy and cookie policies, enhancing security headers, and providing contact information to improve compliance and user trust. These steps will also support better security posture and regulatory adherence, which are critical for enterprise software providers.

85
25
2
85
72
75
100
businesssoftwaregroup-officeloginportalenterprisesoftware
ExtJS 3JavaScriptGroup-Office
2025-11-01T10:26:47.473Z
lukb.ch favicon

Luzerner Kantonalbank

lukb.ch

75
FinanceSwitzerlandlargeMEDIUM

Luzerner Kantonalbank (LUKB) is a leading regional bank based in Luzern, Switzerland, providing a broad range of financial services including retail banking, mortgages, investment products, and personalized financial advisory. The website targets private customers primarily in the Luzern and Central Switzerland region, emphasizing personal service and innovative banking solutions. The bank maintains a strong market position as a trusted cantonal bank with a professional digital presence. Technically, the website employs modern web technologies such as Google Tag Manager, Cookiebot for consent management, and HTMX for dynamic content. It is well-optimized for mobile devices and accessibility, with good SEO practices and comprehensive metadata. The site uses HTTPS with strong security headers, ensuring secure communications and protecting user data. From a security perspective, the site demonstrates good practices including secure cookie handling, consent mechanisms, and no visible vulnerabilities or exposed sensitive data. However, explicit security policies and incident response information are not publicly detailed, representing an area for improvement. The privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature approach to data protection. Overall, the website is professional, trustworthy, and secure, with extensive content relevant to its audience. It integrates multiple analytics and marketing tools responsibly, maintaining transparency and user control over data. Strategic recommendations include publishing detailed security policies, vulnerability disclosure mechanisms, and enhancing transparency around data protection officers to further strengthen trust and compliance.

80
83
17
75
77
80
100
bankingfinanceswitzerlandprivacycookie-consent+4 more
Google Tag ManagerCookiebotHTMXJavaScript+2

Partner Domains:

boersenundmaerkte.lukb.ch
subsidiary
strukturierteprodukte.lukb.ch
subsidiary

+3 more partners

2025-11-01T10:26:17.238Z
sympany.ch favicon

Sympany Services AG

sympany.ch

70
HealthcareSwitzerlandlargeMEDIUM

Sympany Services AG is a Swiss insurance company specializing in health insurance, offering both basic and supplementary insurance products alongside vehicle, household contents, and business insurance. The company targets individuals and corporate customers within Switzerland, positioning itself as a trusted and customer-centric insurer with high satisfaction ratings. The website reflects a professional and comprehensive digital presence with clear navigation and extensive service information. Technically, the website employs modern JavaScript libraries, Google Tag Manager for analytics, and Usercentrics for consent management, indicating a mature digital infrastructure. The site is mobile-optimized, accessible, and SEO-friendly, with secure HTTPS connections and no visible technical vulnerabilities. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and uses consent management for cookies, but lacks publicly available dedicated security policies or incident response contacts. No exposed sensitive data or vulnerabilities were detected. Privacy compliance is strong, with clear privacy and cookie policies aligned with GDPR requirements. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance, with recommendations to enhance security transparency and implement additional security headers to further strengthen its security posture.

75
50
2
80
82
85
100
insurancehealthinsuranceswissinsurancecustomerserviceprivacy+1 more
JavaScriptjQueryGoogle Tag ManagerUsercentrics Consent Management+1
2025-11-01T10:01:45.813Z