Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 9 of 166|Showing 401-450 of 8294
ehandwerkshop.org favicon

META Handelsgesellschaft mbH

ehandwerkshop.org

43
E-commerceGermanymediumHIGH

E|Handwerkshop, operated by META Handelsgesellschaft mbH, is a specialized e-commerce platform serving the electrical trade sector in Germany. The website offers a broad catalog of over 300 products including training materials, promotional items, and online courses tailored for electrical professionals and apprentices. The business model focuses on B2B and B2C sales, leveraging WooCommerce on a WordPress CMS hosted by Alfahosting. The site demonstrates a good level of digital maturity with modern technologies such as React and jQuery, and provides a professional user experience with clear navigation and mobile optimization. From a security perspective, the website enforces HTTPS and uses WooCommerce's built-in security features, but lacks some advanced security headers and explicit incident response policies. Privacy compliance is partially addressed with a comprehensive privacy policy and terms of service, but the absence of a cookie consent mechanism and vulnerability disclosure policy indicates room for improvement. No signs of malicious content or blocking mechanisms were detected, and the domain registration details align well with the business claims, supporting legitimacy. Overall, the website is well-positioned within its niche market, offering relevant products and services with a professional online presence. Strategic enhancements in security headers, privacy compliance, and incident response transparency would further strengthen its security posture and trustworthiness.

55
33
2
55
52
65
-
e-commerceelectricaltradetrainingwoocommercegermany+1 more
WordPress 6.8.3WooCommerce 9.8.1jQueryReact+3
2025-11-01T00:42:18.779Z
openwho.org favicon

World Health Organization (WHO)

openwho.org

67
HealthcareN/alargeMEDIUM

OpenWHO.org is a reputable online learning platform operated by the World Health Organization, focusing on public health emergency preparedness and response. It serves a global audience of health professionals and the public, providing authoritative training resources. The platform is well-branded, professionally designed, and leverages modern web technologies including React and Kaltura for media delivery. The domain registration is consistent with WHO ownership and the platform's founding date. Technically, the website demonstrates good digital maturity with responsive design, accessibility considerations, and integration of media analytics. However, there is room for improvement in security posture, notably the absence of DNSSEC and security headers, which are recommended for enhanced protection. Privacy compliance is limited by the lack of explicit privacy and cookie policies in the analyzed content. Overall, the security posture is moderate with no critical vulnerabilities detected, but improvements in security headers and privacy disclosures would strengthen trust. The platform does not engage in advertising or affiliate marketing, focusing solely on educational content. The website is safe for general audiences with no adult or questionable content. Strategic recommendations include enabling DNSSEC, implementing comprehensive security headers, publishing clear privacy and cookie policies, and enhancing incident response contact visibility to improve compliance and security transparency.

75
35
37
60
77
75
100
healtheducationpublichealthtrainingwho+2 more
ReactKaltura Media PlatformGoogle FontsJavaScript
2025-11-01T00:33:22.404Z
B

Berliner Verkehrsbetriebe

bvg.de

69
TransportationGermanylargeMEDIUM

Berliner Verkehrsbetriebe (BVG) operates as the primary public transportation provider in Berlin, Germany, offering comprehensive services including route planning, ticketing, subscriptions, and mobile applications. The website serves a broad audience including residents and tourists, providing timely service updates, ticket purchase options, and customer support. BVG holds a strong market position as the leading transit operator in Berlin with a large operational scale. Technically, the website is built on modern frameworks such as React and Next.js, hosted likely by Cronon, and managed via Magnolia CMS. It demonstrates excellent performance, mobile optimization, and accessibility features, reflecting a mature digital infrastructure. The site employs standard SEO and metadata practices, including Open Graph tags and structured JSON data. From a security perspective, the site enforces HTTPS, includes standard security headers, and implements a robust cookie consent mechanism compliant with GDPR. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. No critical vulnerabilities or suspicious patterns were detected. Overall, the website is professional, trustworthy, and user-friendly, with strong privacy compliance and business credibility. Strategic recommendations include publishing detailed security policies, providing direct security contact information, and establishing a vulnerability disclosure program to enhance transparency and trust.

95
33
17
75
82
65
100
publictransportberlinticketsappscustomerservice+3 more
ReactNext.jsJavaScriptCSS+1

Partner Domains:

kundenmeinung.bvg.de
partner
nachgefragt.bvg.de
partner

+2 more partners

2025-11-01T00:32:07.191Z
sesardeploymentmanager.eu favicon

SESAR Deployment Manager

sesardeploymentmanager.eu

70
TransportationEuropean UnionmediumMEDIUM

SESAR Deployment Manager is a European intergovernmental entity responsible for coordinating the deployment of SESAR (Single European Sky ATM Research) solutions to modernize air traffic management across Europe. The organization serves a critical role in harmonizing efforts among various aviation stakeholders, including air navigation service providers and regulatory bodies, to improve efficiency and safety in European airspace. The website reflects a professional and authoritative presence consistent with its governmental affiliation, featuring comprehensive information about its mission, projects, and stakeholder engagement. Technically, the website is built using modern web technologies such as React and Gatsby, ensuring fast performance, mobile responsiveness, and good accessibility. The use of OpenLayers indicates interactive map features relevant to its domain. Security posture is strong with HTTPS enforced and appropriate security headers present, although there is room for improvement by adding a public security policy and vulnerability disclosure information. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. Contact information is readily available, including official emails, phone numbers, and physical address, enhancing business credibility. No suspicious or malicious content was detected, and the site is free from advertising or affiliate marketing, focusing solely on its core mission. Overall, SESAR Deployment Manager's website demonstrates a high level of professionalism, security, and compliance suitable for a European governmental entity. Strategic recommendations include publishing a dedicated security policy, establishing a vulnerability disclosure channel, and enhancing incident response transparency to further strengthen trust and security posture.

65
68
2
100
52
90
100
aviationairtrafficmanagementsesareuropeanuniontransportation+1 more
ReactGatsbyOpenLayersReact Datepicker

Partner Domains:

sesarju.eu
partner
2025-10-31T22:55:14.169Z
J

J&J MedTech

jnjmedtech.com

10
HealthcareN/aenterpriseCRITICAL

J&J MedTech operates as a global healthcare technology provider specializing in medical devices and solutions for healthcare professionals. The website serves as a multilingual portal offering localized content across multiple regions including North America, Asia Pacific, Europe, Middle East & Africa, and Latin America. The company is positioned as a large enterprise under the Johnson & Johnson corporate umbrella, targeting healthcare professionals with a B2B business model. The site demonstrates consistent branding and professional content quality, supporting its market position as a leading medical technology provider. Technically, the website leverages modern web technologies including Drupal 10 as its CMS and React for dynamic components, supported by analytics and tracking tools such as Google Tag Manager and Hotjar. The site is mobile optimized and accessible, with good SEO practices evident from meta tags and structured content. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and includes cookie consent mechanisms aligned with GDPR compliance. However, explicit security headers are not evident in the HTML content, and no public security policy or incident response information is provided. The absence of WHOIS data for the domain is a notable anomaly that reduces trustworthiness and warrants further investigation. Overall, the website presents a professional and trustworthy front for J&J MedTech, but improvements in transparency around security policies, contact information, and domain registration details are recommended to enhance credibility and compliance.

-
-
-
-
-
-
-
healthcaremedicaldevicesglobalmultilingualprivacy+3 more
ReactDrupal 10JavaScriptGoogle Tag Manager+1

Partner Domains:

jnj.com
partner
jnjinstitute.com
partner

+3 more partners

2025-10-31T22:54:54.113Z
pixelmanufaktur.ch favicon

Pixelmanufaktur Patrick Bonetti

pixelmanufaktur.ch

49
TechnologySwitzerlandsmallHIGH

Pixelmanufaktur Patrick Bonetti is a small, specialized web development consultancy based in Stäfa, Switzerland, founded in 2003. The company focuses on delivering tailored digital solutions including modern websites, intuitive frontends, and specialized widgets. Their market position is that of a boutique digital workshop with a strong emphasis on quality, user experience, and technical excellence. The website reflects a professional and consistent brand image with comprehensive service descriptions and client testimonials. Technically, the website employs modern web standards including HTML5, CSS3, JavaScript, and advanced frontend technologies such as React and TypeScript. Hosting is provided by METANET AG in Switzerland, ensuring local data handling. The site is fast, mobile-optimized, accessible, and SEO-friendly. No third-party analytics or tracking scripts are present, enhancing user privacy. From a security perspective, the site uses HTTPS with strong SSL configuration and incorporates best practices such as anti-spam honeypot fields in forms. However, explicit security headers are not detected, and no formal security or incident response policies are published. The privacy policy is comprehensive and GDPR-compliant, but no cookie consent mechanism is present due to the absence of cookies. Overall, the website demonstrates a high level of professionalism, security awareness, and privacy respect, suitable for a small technology service provider. Strategic recommendations include adding security headers, publishing incident response contacts, and implementing cookie consent if cookies are introduced in the future.

15
53
2
80
72
85
-
webentwicklungfrontendwebdesigndigitalelsungenschweiz+1 more
HTML5CSS3JavaScriptSCSS+4
2025-10-31T21:54:12.663Z
island.is favicon

Stafrænt Ísland

island.is

11
GovernmentIcelandlargeCRITICAL

Ísland.is is the official digital service portal for public entities in Iceland, providing citizens and businesses with centralized access to a wide range of government services and information. Established in 2002, it serves as the primary gateway for digital public services, offering life event management, user account services, and comprehensive information about various public sectors. The website is well-branded with consistent government identity and targets Icelandic residents and businesses seeking official services online. Technically, the site leverages modern web technologies including React and Next.js, hosted on AWS infrastructure, ensuring fast performance and excellent mobile optimization. Security posture is strong with HTTPS enforced and secure form practices, though some security headers are missing and cookie consent mechanisms are not implemented. Privacy policies are comprehensive and GDPR compliant, and minimal user tracking is performed via privacy-focused analytics. Overall, the domain registration and WHOIS data confirm the site's legitimacy as a government service portal. Strategic improvements include enhancing security headers, adding cookie consent, and publishing incident response contacts to further strengthen trust and compliance.

-
-
-
-
-
-
-
governmentpublicservicesdigitalportalicelandreact+3 more
ReactNext.jsToastifyAWS DNS

Partner Domains:

opnirreikningar.is
partner
tekjusagan.is
partner

+1 more partners

2025-10-31T21:25:49.791Z
vinnumalastofnun.is favicon

Vinnumálastofnun

vinnumalastofnun.is

67
GovernmentIcelandmediumMEDIUM

Vinnumálastofnun is an Icelandic government agency responsible for administering unemployment and parental leave benefits, as well as providing labor market information and advisory services to immigrants. The website serves as an official portal for these services, targeting individuals, employers, and immigrants within Iceland. It holds a strong market position as the official authority in its domain, with a history dating back to 2002. Technically, the website is built using modern web technologies including React and Next.js, hosted on AWS infrastructure. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some minor improvements could be made in performance and security headers. Analytics are implemented via plausible.io, indicating a privacy-conscious approach to user tracking. From a security perspective, the site uses HTTPS and avoids exposing sensitive data in the HTML content. However, DNSSEC is not enabled, and no explicit security policies or vulnerability disclosure mechanisms are found. The WHOIS data confirms the domain's legitimacy and consistency with the claimed government entity. Overall, the website is professional, trustworthy, and serves its purpose effectively. Strategic recommendations include enhancing privacy compliance by publishing clear privacy and cookie policies, enabling DNSSEC, and adding security headers and incident response information to strengthen security posture.

75
50
17
65
72
80
100
governmentsocialwelfareunemploymentbenefitsparentalleaveiceland+1 more
ReactNext.jsAWS DNS hostingReadSpeaker webReader
2025-10-31T21:03:13.357Z
deerfieldgroup.com favicon

Deerfield Group

deerfieldgroup.com

64
HealthcareUnited StatesmediumMEDIUM

Deerfield Group is a well-established healthcare marketing and advertising agency founded in 2002, specializing in delivering comprehensive brand and marketing solutions to healthcare clients. The company positions itself as an extension of client teams, offering a unique Agency of Brand model that integrates marketing, communications, and technology services. Their market presence is supported by numerous industry awards and certifications, reflecting a strong reputation in the healthcare marketing sector. Technically, the website is built on modern frameworks such as React and Next.js, ensuring fast performance and excellent mobile optimization. The use of Google Tag Manager and Google Analytics indicates a mature approach to analytics and marketing measurement. Hosting appears to be managed via a reputable provider associated with the domain registrar. The site demonstrates good SEO and accessibility practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and includes a cookie consent mechanism, supporting privacy compliance. However, it lacks explicit security headers and published security policies or incident response contacts, which are areas for improvement. The WHOIS data confirms a long-standing domain registration consistent with the company's history, enhancing trustworthiness. Overall, Deerfield Group's digital presence reflects a professional, secure, and privacy-conscious organization with room to enhance security transparency and formal policies to further strengthen its security posture.

45
68
2
85
52
75
100
healthcaremarketingadvertisingagencybrandingtechnologysolutionsfull-serviceagency
ReactNext.jsGoogle Tag ManagerGoogle Analytics
2025-10-31T21:00:57.800Z
livxp.com favicon

LivXp

livxp.com

59
TechnologyDenmarksmallMEDIUM

LivXp operates as an AI-driven sports experience marketplace designed to connect fans with unique sports-related experiences. Founded in 2020, the company positions itself as a niche technology platform focused on enhancing fan engagement through automated and AI-based services. The website reflects a modern, well-structured digital presence with a clear focus on sports fans and organizations as its primary audience. The platform offers services such as experience provider listings and a marketplace for fan experiences, leveraging AI to automate and personalize offerings. Technically, LivXp employs a contemporary web stack including React and Next.js frameworks, supplemented by Google Tag Manager for analytics and UserWay for accessibility enhancements. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. Hosting details are not explicitly disclosed but the infrastructure appears stable and performant with moderate loading speeds. From a security perspective, the website enforces HTTPS and includes cookie consent mechanisms aligned with GDPR requirements. However, explicit security headers are not detected, and there is no published security policy or incident response information. No vulnerabilities or exposed sensitive data were found in the HTML content. The WHOIS data confirms a legitimate domain registration consistent with the company's founding timeline, enhancing trustworthiness. Overall, LivXp presents a credible and professional online presence with a solid foundation in technology and privacy compliance. Strategic improvements in security policy transparency and enhanced contact information could further strengthen its security posture and business credibility.

25
53
2
75
72
65
100
sportsmarketplaceaifanexperiencetechnology
ReactNext.jsGoogle Tag ManagerUserWay Accessibility Widget+1

Partner Domains:

explore.livxp.com
partner
2025-10-31T19:56:23.988Z
shire.com favicon

Takeda Pharmaceutical Company Limited

shire.com

69
HealthcareJapanenterpriseMEDIUM

Takeda Pharmaceutical Company Limited is a globally recognized, patient-focused biopharmaceutical company headquartered in Tokyo, Japan. The company emphasizes research and development to bring innovative healthcare solutions worldwide. Their website reflects a mature digital presence with comprehensive corporate governance, ethics, and sustainability disclosures, targeting healthcare professionals, patients, investors, and partners. The business model centers on pharmaceutical R&D, manufacturing, and clinical trials, positioning Takeda as a leading entity in the healthcare sector. Technically, the website leverages modern web technologies including React and Next.js, ensuring good mobile optimization, accessibility, and SEO practices. The site loads with moderate performance and employs standard security headers and HTTPS, indicating a strong technical foundation. Analytics usage includes Matomo and Google Tag Manager, with appropriate cookie consent mechanisms in place, reflecting good privacy compliance. Security posture is robust with enforced HTTPS, security headers, and no visible vulnerabilities or exposed sensitive data. However, the absence of a dedicated security policy or incident response contact page suggests areas for improvement. The WHOIS data is missing or unavailable, which is unusual for a major corporation, but the website's content and branding strongly support legitimacy. Overall, Takeda's website demonstrates a high level of professionalism, security, and compliance, suitable for its enterprise scale and industry. Strategic recommendations include publishing explicit security policies, incident response contacts, and vulnerability disclosure information to enhance transparency and trust.

35
88
17
85
57
80
100
pharmaceuticalhealthcarebiopharmaceuticalcorporateglobal+2 more
ReactNext.jsJavaScriptCSS
2025-10-31T17:54:57.816Z