Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 901 of 1003|Showing 45001-45050 of 50115
aquapri.dk favicon

AquaPri ApS

aquapri.dk

49
OtherDenmarkmediumHIGH

AquaPri ApS is a Danish aquaculture company specializing in the production and sale of luxury seafood products including sustainably farmed rainbow trout, trout caviar, and zander (pike perch). The company targets global niche markets with a focus on high-quality, responsibly farmed seafood. The website reflects a medium-sized, established business with a history dating back to 1900, emphasizing food safety, sustainability, and traceability throughout its production cycle. The company maintains a professional online presence with clear navigation and relevant content tailored to its audience. Technically, the website employs modern web technologies such as the Foundation framework, jQuery, and Google Analytics for tracking. The site is mobile-optimized and demonstrates good SEO practices, although some accessibility features are basic. Performance is moderate, with no critical technical issues detected. However, there is no visible CMS or hosting provider information. From a security perspective, the site uses HTTPS and includes anti-spam measures in its contact forms. No security headers were detected in the provided data, and there is no published security policy or incident response contact information. The absence of a privacy policy and cookie consent mechanism represents a compliance gap, especially under GDPR regulations. No vulnerabilities or exposed sensitive data were found. Overall, AquaPri's website is professional and trustworthy but would benefit from enhanced privacy compliance and security transparency. Strategic improvements in these areas would strengthen the company's digital maturity and customer trust.

35
10
22
85
62
60
40
seafoodaquacultureluxurytroutzander+3 more
jQueryGoogle AnalyticsGoogle Tag ManagerMagnific Popup+2
2025-06-23T19:06:55.324Z
thermoking.com favicon

Thermo King

thermoking.com

69
TransportationUnited StatesenterpriseMEDIUM

Thermo King is a globally recognized leader in transport refrigeration and heating solutions, serving a broad range of transportation sectors including trailers, trucks, buses, rail cars, and shipboard containers. The company operates as a subsidiary of Trane Technologies and offers a comprehensive portfolio of products and services including telematics, auxiliary power units, parts, accessories, and certified pre-owned programs. The website reflects a mature enterprise with a strong market position and a clear commitment to sustainability and customer service. Technically, the website is built on Adobe Experience Manager, leveraging modern marketing and analytics tools such as Marketo, Google Tag Manager, Facebook Pixel, and Hotjar. The site demonstrates good performance, mobile optimization, and accessibility, with a professional and consistent branding approach. Security posture is solid with HTTPS enforced and use of reCAPTCHA, though some security headers could be improved. Privacy compliance is partial, with a comprehensive privacy policy but lacking explicit cookie consent mechanisms. The security evaluation reveals no critical vulnerabilities or exposed sensitive data, but the absence of WHOIS data for the domain is unusual and warrants attention. Overall, the site is trustworthy and professionally maintained, supporting Thermo King's reputation as a leader in its industry. Strategic improvements in privacy compliance and security headers would further enhance the site's security and regulatory posture.

55
53
17
85
72
85
100
transportationrefrigerationtelecommunicationssustainabilitytechnology+1 more
Adobe Experience Manager (AEM)MarketoGoogle Tag ManagerGoogle Analytics+6

Partner Domains:

tranetechnologies.com
parent
careers.tranetechnologies.com
partner

+2 more partners

2025-06-23T19:06:54.316Z
rumas.dk favicon

Rumas ApS

rumas.dk

56
OtherDenmarksmallMEDIUM

Rumas ApS is a Danish company specializing in the design and production of commercial furniture, serving businesses with tailored furniture solutions and environment creation. Established in 1996, the company maintains a strong market presence in Denmark, emphasizing quality design as part of its core DNA. The website reflects a professional and consistent brand image, targeting commercial clients seeking bespoke furniture products. Technically, the website is built on WordPress, leveraging modern plugins such as LayerSlider, Google Tag Manager, Google Analytics 4, PixelYourSite, and ActiveCampaign for marketing and analytics purposes. The site is well-optimized for SEO and mobile responsiveness, with a comprehensive cookie consent mechanism ensuring GDPR compliance. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and employs cookie consent management, though it lacks explicit security headers and a published security policy or incident response contacts. No critical vulnerabilities or exposed sensitive data were detected. The domain registration data is consistent with the business claims, supporting the site's legitimacy. Overall, Rumas.dk presents a trustworthy and professional online presence with good privacy compliance and a solid technical foundation. Strategic improvements in security headers and incident response transparency would further enhance its security posture.

40
40
17
97
67
85
20
furnituredesignproductioncommercialdenmark+3 more
WordPressLayerSliderGoogle Tag ManagerGoogle Analytics 4+5
2025-06-23T19:06:41.176Z
polyprint.dk favicon

Polyprint A/S

polyprint.dk

52
ManufacturingDenmarkmediumMEDIUM

Polyprint A/S is a Danish manufacturing company specializing in flexible packaging solutions, serving a broad range of industries with a focus on quality, sustainability, and customer service. Established in 1996, the company offers services including flexographic printing, extrusion, lamination, and further processing, catering primarily to B2B clients such as private label and own brand customers. The website reflects a mature digital presence with multilingual support and professional design. Technically, the website is built on WordPress with modern plugins such as WPML for multilingual capabilities and Cookiebot for GDPR-compliant cookie management. It uses Google Analytics for traffic analysis and Google Maps API for location services. The site is mobile-optimized and performs moderately well, with room for improvement in accessibility and security headers. Security-wise, the site enforces HTTPS and provides a comprehensive cookie consent mechanism, but lacks explicit security policies or incident response information. No critical vulnerabilities or suspicious elements were detected. WHOIS data confirms the domain's legitimacy and long-standing registration, consistent with the company's profile. Overall, Polyprint.dk presents a trustworthy and professional online presence with good privacy compliance and solid technical implementation. Strategic improvements in security headers and explicit security policies would further enhance its security posture and trustworthiness.

15
83
17
85
62
70
-
flexiblepackagingmanufacturingflexoprintingsustainabilityprivatelabel+1 more
WordPressjQueryGoogle FontsGoogle Maps API+2
2025-06-23T19:05:43.225Z
nilpeter.com favicon

Nilpeter

nilpeter.com

72
ManufacturingDenmarklargeMEDIUM

Nilpeter is a well-established global manufacturer specializing in flexo, offset, and digital printing solutions primarily for narrow and mid-web labels and flexible packaging. The company maintains a strong market position as a world-leading provider with a comprehensive product portfolio including presses and value-adding units, supported by extensive customer care services. Their global footprint includes manufacturing sites and subsidiaries across Denmark, USA, UK, Brazil, India, and Thailand, reflecting a mature international presence. Technically, the website is built on a modern WordPress CMS platform with integrations such as Gravity Forms for data collection, Yoast SEO for optimization, and Cloudflare for hosting and CDN services. The site demonstrates good mobile responsiveness, accessibility, and SEO practices, supported by a comprehensive cookie consent mechanism aligned with GDPR requirements. From a security perspective, the site enforces HTTPS and uses Cloudflare as a registrar and CDN, which enhances security and performance. However, DNSSEC is not enabled, and there is a lack of explicit security policies or incident response information publicly available. No critical vulnerabilities or exposed sensitive data were detected, indicating a solid security posture but with room for improvement in transparency and advanced security headers. Overall, Nilpeter's website reflects a professional, trustworthy, and technically competent digital presence suitable for its industry and audience. Strategic recommendations include enabling DNSSEC, publishing detailed security and incident response policies, and adding vulnerability disclosure mechanisms to further enhance trust and compliance.

55
83
17
88
65
85
100
manufacturingprintingflexooffsetdigitalprinting+2 more
WordPress 6.8.1Gravity FormsYoast SEOCloudflare CDN+3
2025-06-23T19:05:01.524Z
festinafinance.com favicon

Festina Finance A/S

festinafinance.com

55
FinanceDenmarkmediumMEDIUM

Festina Finance A/S is a Copenhagen-based fintech company specializing in advanced software solutions for life insurance, pensions, and financial planning. The company serves a broad range of financial institutions across Europe, including banks, insurance companies, and pension funds. With over 40 customers and more than 100 employees, Festina Finance has established itself as a trusted technology partner in the financial services sector. Their key offerings include configurable policy administration platforms and financial advisory tools designed to streamline operations and enhance customer service. Technically, the website is built on WordPress and leverages modern web technologies such as jQuery, Google Tag Manager, Google reCAPTCHA, and Cookiebot for privacy compliance. The site is well-optimized for performance and mobile responsiveness, featuring a professional design and clear navigation. Security measures include HTTPS enforcement and CAPTCHA integration, although some security headers are missing, and no explicit security or incident response policies are published. From a security perspective, the site demonstrates a solid baseline with encrypted communications and user consent mechanisms. However, the absence of WHOIS data and lack of published privacy and security policies slightly reduce trustworthiness. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a professional and credible front for a fintech company, but improvements in transparency and security documentation are recommended. Strategically, Festina Finance should focus on enhancing its security posture by publishing comprehensive privacy, security, and incident response policies. Additionally, clarifying domain registration details and WHOIS information would improve trust and legitimacy perceptions among clients and partners.

20
50
17
97
77
80
20
financefintechpensionsfinancialplanningsoftware+1 more
WordPressjQueryGoogle Tag ManagerGoogle reCAPTCHA+3
2025-06-23T19:04:53.410Z
E

ETEVERS

etevers.com

46
TechnologySouth KoreamediumHIGH

ETEVERS is a South Korean IT innovation company specializing in providing optimized IT infrastructure and solutions to support sustainable growth and transformation. The company has a solid market presence with multiple partnerships with major technology providers such as Cisco, Oracle, AWS, and others. Their website reflects an active business with recent news updates and a clear focus on partnership and innovation. Technically, the site uses a modern JavaScript stack including jQuery, Bootstrap, Swiper, and fullPage.js, hosted on AWS infrastructure, indicating a moderate level of digital maturity. The website is mobile-optimized and SEO-friendly, though accessibility features are basic. From a security perspective, the domain is registered with a reputable Korean registrar and has a long registration period with transfer protection enabled, supporting legitimacy. However, the site lacks DNSSEC and visible security headers, and no cookie consent mechanism is implemented despite cookie usage, which are areas for improvement. No incident response or security policy information is published, limiting transparency in security posture. Overall, the security posture is moderate but could be enhanced with standard best practices. The overall risk assessment is moderate with no critical vulnerabilities or blocking detected. Strategic recommendations include enabling DNSSEC, implementing security headers, adding cookie consent for compliance, and publishing security policies to improve trust and compliance. The company demonstrates a professional online presence with consistent branding and active engagement with partners and customers.

15
53
2
80
62
80
-
ittechnologyinnovationcloudpartnership+1 more
jQueryBootstrapSwiperfullPage.js+3

Partner Domains:

eteversebt.com
partner
group.etevers.com
partner

+3 more partners

2025-06-23T18:13:59.507Z
berengroep.nl favicon

Berengroep

berengroep.nl

53
GovernmentNetherlandsmediumMEDIUM

Berengroep is a well-established Dutch company specializing in accessible communication services for the deaf and hard of hearing community, primarily serving government and public sector organizations. Founded in 1997, it has grown into a trusted provider with ISO 27001 and ISO 9001 certifications, reflecting a strong commitment to quality and information security. Their key offerings include interpreting services, accessible customer service solutions, and translation services, positioning them as a vital player in promoting inclusivity in Dutch society. Technically, the website is built on a modern WordPress platform using Elementor and Yoast SEO, ensuring good SEO and accessibility standards. The site employs Matomo analytics with privacy-conscious settings and integrates Sendinblue for marketing automation. Performance and mobile optimization are adequate, supporting a positive user experience. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks visible security headers and does not publish a security or incident response policy, which are areas for improvement. Privacy compliance is generally good with a comprehensive privacy policy, but the absence of a cookie consent mechanism is a notable gap. Overall, the website and business demonstrate high credibility and professionalism with minor compliance and security policy gaps. Strategic enhancements in cookie consent and security transparency would further strengthen their trustworthiness and regulatory compliance.

90
28
17
70
52
65
20
accessiblecommunicationdeafservicesinterpretinggovernmentiso27001+3 more
WordPressElementorYoast SEOjQuery+2
2025-06-23T18:13:54.478Z
decibel.vc favicon

Decibel

decibel.vc

76
TechnologyN/asmallLOW

Decibel is an early-stage venture capital firm specializing in investments in essential infrastructure software used by developers, data engineers, and cybersecurity teams. The company positions itself as an early believer in technical founders, providing not only capital but also strategic support including access to early customers, marketing playbooks, founder advisory, and talent recruitment. The website reflects a professional and consistent brand image targeting technical founders and startups in the technology sector. The technical infrastructure of the website is modern and robust, leveraging Webflow CMS, jQuery, Slick Carousel, and multiple analytics and marketing tools such as Google Tag Manager, LinkedIn Insight, Twitter Analytics, and HubSpot. The site is mobile-optimized with good SEO and accessibility basics, though some accessibility features could be enhanced. Performance is moderate, with a clean and responsive design. From a security perspective, the website uses HTTPS with good SSL configuration and secure form handling. However, it lacks explicit security headers and published security policies or incident response contacts. Cookie consent is implemented, indicating some privacy compliance, but GDPR compliance is not fully evident. No vulnerabilities or exposed sensitive data were detected in the content. Overall, Decibel's website presents a credible and professional digital presence with strong business credibility and moderate to good security posture. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and improving privacy compliance disclosures to strengthen trust and compliance.

60
68
57
85
72
85
100
venturecapitaltechnologyearly-stageinvestmentinfrastructuresoftwaretechnicalfounders+4 more
jQuerySlick CarouselGoogle Tag ManagerLinkedIn Insight Tag+4
2025-06-23T18:13:29.370Z
ghorzeeland.nl favicon

GHOR Zeeland

ghorzeeland.nl

71
GovernmentNetherlandsmediumMEDIUM

GHOR Zeeland is a regional governmental organization responsible for coordinating medical emergency response and advising municipalities and healthcare providers in the Zeeland region of the Netherlands. The website clearly communicates its mission, services, and partnerships with other regional safety organizations, positioning itself as a key player in regional crisis management and healthcare coordination. The target audience includes local government entities, emergency services, healthcare professionals, and the general public in Zeeland. Technically, the website is built on Drupal 10, utilizing modern web technologies and standard libraries such as Google Tag Manager for analytics and CookieFirst for consent management. The site is mobile-optimized, accessible, and SEO-friendly, with a moderate performance profile. The presence of privacy and cookie policies with active consent mechanisms reflects a good level of digital maturity and compliance with GDPR requirements. From a security perspective, the site enforces HTTPS and includes a responsible disclosure page, indicating awareness of security best practices. However, it lacks explicit security policy documentation and data protection officer contact details, which are recommended for enhanced transparency and compliance. No critical vulnerabilities or exposed sensitive data were detected, and the WHOIS data aligns well with the organization's identity, supporting legitimacy. Overall, GHOR Zeeland's website demonstrates a solid balance of professional content, technical soundness, and security awareness appropriate for a public sector emergency coordination entity. Strategic improvements in security policy transparency and additional security headers would further strengthen its posture.

70
68
20
70
85
75
100
governmenthealthcareemergency-responseregionalpublic-service+1 more
Drupal 10Google Tag ManagerFeatherlight (lightbox)jQuery+1

Partner Domains:

veiligheidsregiozeeland.nl
partner
zeelandveilig.nl
partner

+1 more partners

2025-06-23T18:13:14.226Z
cinando.com favicon

Cinando

cinando.com

60
MediaN/amediumMEDIUM

Cinando operates as a premier online networking platform tailored for film industry professionals worldwide. Founded in 2007, it offers a comprehensive suite of services including film and company searches, market preparation tools, and secure streaming of screeners with DRM and watermarking technologies. The platform supports both web and mobile app access, facilitating real-time updates and seamless connectivity among industry stakeholders. Its business model is subscription-based, charging companies an annual fee to register and access the platform's features. Technically, Cinando employs a modern technology stack including jQuery, Google Maps API, and cookie consent management via tarteaucitron, integrated within an ASP.NET MVC framework. Hosting is managed through Gandi SAS, a reputable registrar and hosting provider. The website demonstrates good mobile optimization and SEO practices, although accessibility features are basic. Analytics are implemented using Google Analytics (GA4) with user consent mechanisms in place. From a security perspective, the site enforces HTTPS and incorporates anti-CSRF tokens in forms, alongside DRM and watermarking for content protection. However, there is room for improvement in security headers implementation and explicit publication of security policies or incident response contacts. GDPR compliance is referenced but lacks a dedicated privacy policy page. The domain's WHOIS data aligns well with the business's legitimacy, showing consistent registration details and appropriate domain age. Overall, Cinando presents a trustworthy and professional digital presence with strong business credibility and a solid technical foundation. Enhancements in privacy documentation and security header deployment would further strengthen its security posture and compliance standing.

15
50
2
70
85
80
100
filmnetworkingscreenersmediacinema+4 more
jQueryGoogle Maps APItarteaucitron (cookie consent)Zendesk Web Widget
2025-06-23T18:09:37.771Z
greenlabs.co.kr favicon

Greenlabs

greenlabs.co.kr

63
TechnologySouth KoreamediumMEDIUM

Greenlabs is a South Korean Agtech company founded in 2017, specializing in digital agricultural platforms and services that innovate farming, trade, and distribution processes. Their flagship platform, Farm Morning, enables data-driven farming, supporting over 900,000 farmers and connecting them with buyers and suppliers. The company holds a strong market position as a leading Agtech provider in Korea with a medium-sized operational scale. Technically, the website is built on WordPress CMS, leveraging modern JavaScript libraries such as jQuery, GSAP, and Swiper for interactive and responsive user experience. Hosting and DNS services are managed via Cloudflare, ensuring robust performance and security. The site is mobile-optimized with good SEO practices, although accessibility features are basic. From a security perspective, the site enforces HTTPS and uses Cloudflare DNS but lacks some advanced security headers and explicit security policies. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism. Contact information is transparent and consistent with WHOIS data, enhancing trust. Overall, Greenlabs presents a professional, trustworthy online presence with solid technical infrastructure and a clear business focus. Strategic improvements in privacy compliance and security policy transparency would further strengthen their security posture and regulatory adherence.

55
35
2
75
75
80
100
agtechagriculturetechnologysustainabilitydigitalfarming+2 more
jQueryGSAPSwiperMagnific Popup+2

Partner Domains:

kr.grainscanner.com
partner
trade.greenlabs.co.kr
partner

+3 more partners

2025-06-23T18:08:36.975Z
idquantique.co.kr favicon

ID Quantique Ltd

idquantique.co.kr

61
TechnologySouth KoreamediumMEDIUM

ID Quantique Ltd operates as a global leader in quantum technologies, focusing on quantum random number generation, quantum-safe security, and quantum sensing solutions. The company serves a diverse clientele including governments, enterprises, telecommunications providers, and research institutions, positioning itself as a key player in the emerging quantum security market. The website reflects a professional and consistent brand presence with comprehensive product and company information primarily in Korean, targeting the South Korean market. Technically, the website is built on WordPress with modern plugins and libraries such as UberMenu, ShiftNav, and RoyalSlider, supported by third-party marketing and analytics tools including Google Tag Manager and Mouseflow. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and uses secure forms but lacks some advanced security headers and explicit incident response or security policy disclosures. Privacy compliance is partially addressed with privacy and cookie policies present, but no active cookie consent mechanism is implemented. WHOIS data confirms the legitimacy and consistency of domain registration with the business claims. Overall, the website demonstrates a solid digital maturity with good business credibility and security posture, though enhancements in privacy compliance and security best practices would further strengthen its risk profile.

45
68
17
60
42
75
100
quantumsecurityquantumcryptographyquantumsensingtechnology+2 more
jQueryWordPressUberMenu pluginShiftNav plugin+5

Partner Domains:

idquantique.com
parent
partner.idquantique.com
partner
2025-06-23T18:08:11.841Z
bespinglobal.ae favicon

bespin

bespinglobal.ae

61
TechnologyUnited Arab EmiratesmediumMEDIUM

Bespin Global is a cloud management company specializing in cloud migration, operation, and continuous management services, leveraging AI and advanced automation to optimize business cloud journeys. The company positions itself as a next-generation cloud partner with a comprehensive portfolio of professional and managed services, targeting businesses seeking digital transformation in the UAE and broader Middle East region. The website is well-structured, professionally designed, and optimized for SEO and mobile devices, reflecting a mature digital presence. Technically, the site is built on WordPress with modern frameworks such as Bootstrap and GSAP for animations, and integrates analytics and marketing tools like Google Tag Manager and Pardot. Performance is moderate with good mobile optimization and basic accessibility features. Security posture is strong with HTTPS enforced and no visible vulnerabilities or exposed sensitive data, though some security headers are not explicitly detected. Privacy compliance is partial; while a comprehensive privacy policy is present and GDPR compliance is indicated, the absence of a cookie consent banner and terms of service page are notable gaps. Contact information is primarily via a contact form, with no direct emails or phone numbers visible on the homepage. WHOIS data confirms domain legitimacy and consistency with business claims. Overall, the website demonstrates a high level of professionalism and trustworthiness, with minor improvements recommended in privacy compliance and legal disclosures to enhance security posture and regulatory adherence.

15
53
17
75
77
65
100
cloudmanagementcloudmigrationaiintegrationmanagedservicestechnology+1 more
WordPressBootstrap 5jQueryGSAP+4
2025-06-23T17:04:48.905Z
zeelandveilig.nl favicon

Veiligheidsregio Zeeland

zeelandveilig.nl

74
GovernmentNetherlandsmediumMEDIUM

Zeeland Veilig is a regional government safety portal operated by Veiligheidsregio Zeeland, providing residents and visitors with critical information on emergencies such as fires, floods, cybercrime, and other hazards. The website offers live incident updates, safety tips, and a dedicated mobile app to enhance public preparedness and awareness. The site is well-positioned as a trusted public safety authority within the Zeeland region of the Netherlands. Technically, the website is built on Drupal 10 and integrates modern web technologies including Google Tag Manager and Google Maps API. It demonstrates good mobile optimization, accessibility, and SEO practices. The site uses HTTPS with strong SSL configuration and implements security headers, reflecting a solid security posture. Cookie consent mechanisms and privacy policies are in place, supporting GDPR compliance. Security-wise, the site shows no critical vulnerabilities or exposed sensitive data. However, it lacks a dedicated security policy page and explicit incident response contact emails. The presence of a responsible disclosure page is a positive indicator of security awareness. WHOIS data confirms the domain's legitimacy and consistency with the website's government affiliation. Overall, Zeeland Veilig is a professionally maintained, secure, and privacy-conscious government website that effectively serves its public safety mission. Strategic improvements could include publishing a security policy, incident response contacts, and a security.txt file to further enhance transparency and trust.

70
73
35
70
85
75
100
governmentsafetyemergencyzeelandpublicservice+2 more
Drupal 10Google Tag ManagerGoogle Maps APIFeatherlight lightbox+2

Partner Domains:

veiligheidsregiozeeland.nl
parent
ghorzeeland.nl
partner

+1 more partners

2025-06-23T17:03:53.659Z
astellasgenetherapies.com favicon

Astellas Pharma Inc.

astellasgenetherapies.com

64
HealthcareUnited StateslargeMEDIUM

Astellas Gene Therapies, a division of Astellas Pharma Inc., is focused on developing innovative gene therapies targeting rare genetic diseases affecting the eye, central nervous system, and neuromuscular system. The company positions itself as a leader in gene therapy with a robust pipeline and a commitment to transforming patient lives through advanced genetic medicines. Their business model centers on pharmaceutical research, clinical development, and manufacturing of gene therapies, targeting patients, families, and medical professionals globally. Technically, the website is built on Drupal 10 CMS, leveraging modern JavaScript libraries and Google Tag Manager for analytics. The site demonstrates good mobile optimization, accessibility, and SEO practices. A comprehensive cookie consent mechanism is implemented via OneTrust, reflecting strong privacy compliance. However, the absence of explicit security headers and incomplete WHOIS data are notable gaps. From a security perspective, the site enforces HTTPS and uses cookie consent tools, but lacks visible security policies or incident response information. The missing WHOIS data raises concerns about domain registration legitimacy, although the website content and external links strongly indicate authenticity. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, content-rich, and privacy-conscious but would benefit from enhanced transparency in domain registration and explicit security headers. Strategic recommendations include verifying domain registration details, publishing security policies, and improving contact information clarity to strengthen trust and compliance.

55
88
17
60
67
45
100
genetherapyraregeneticdiseasepharmaceuticalhealthcareastellas+1 more
Drupal 10jQueryGoogle Tag ManagerOneTrust Cookie Consent
2025-06-23T17:03:33.618Z
X

Xyphos Inc

xyphosinc.com

60
HealthcareUnited StatessmallMEDIUM

Xyphos Biosciences, Inc. is a small biotechnology company specializing in the development of flexible and adaptable immune cell therapies aimed at revolutionizing cancer care. The company operates as a subsidiary of Astellas Pharma Inc., leveraging its parent company's resources and market presence. The website clearly targets cancer patients, healthcare professionals, investors, and potential employees, showcasing innovation in next-generation cancer immunotherapy. The business model focuses on research and development of controllable immune therapies with a strong emphasis on safety and efficacy. Technically, the website is built on WordPress and employs modern JavaScript libraries such as jQuery, Slick Carousel, and FancyApps UI. Hosting is provided by GoDaddy, and the site uses HTTPS with a good SSL configuration. Performance is moderate with good mobile optimization and basic accessibility features. SEO is well addressed with proper meta tags and structured data. However, there is room for improvement in accessibility and performance optimization. From a security perspective, the site benefits from HTTPS and lacks exposed sensitive data. However, it does not implement DNSSEC, nor does it use common security headers like Content-Security-Policy or HSTS. There are no published security policies or incident response contacts, and privacy compliance is weak due to the absence of privacy and cookie policies. Google Analytics is used for tracking, indicating moderate user tracking without clear privacy disclosures. Overall, the website presents a professional and credible business front with strong ties to a reputable parent company. The main risks lie in privacy compliance and security hardening. Strategic recommendations include implementing comprehensive privacy and cookie policies, enabling DNSSEC, adding security headers, and publishing security and incident response policies to enhance trust and compliance.

60
35
17
70
47
75
100
healthcarebiotechnologycancerimmunotherapywordpressgoogleanalytics
jQueryjQuery UISlick CarouselFancyApps UI+2

Partner Domains:

www.astellas.com
parent
astellascareers.jobs
partner

+1 more partners

2025-06-23T17:03:28.604Z
vsbfonds.nl favicon

VSBfonds

vsbfonds.nl

68
Non-profitNetherlandsmediumMEDIUM

VSBfonds is a Dutch non-profit organization dedicated to funding social and cultural projects as well as providing study scholarships. The website clearly targets individuals and organizations seeking financial support for social and cultural initiatives in the Netherlands. The business model is grant-based, focusing on supporting community and educational development. The site is professionally designed with consistent branding and good content relevance, reflecting a medium-sized non-profit entity with a strong market position in its sector. Technically, the website employs a modern technology stack including jQuery, Google Tag Manager, Hotjar, and Cookiebot for consent management. The site is mobile-optimized and performs moderately well, with good SEO and basic accessibility features. Hosting details are not explicitly identified, but the infrastructure supports HTTPS and standard web technologies. From a security perspective, the website enforces HTTPS and uses CSRF tokens in forms, indicating a good baseline security posture. Cookie consent is managed via Cookiebot, ensuring GDPR compliance. However, some security headers like Content-Security-Policy and X-Frame-Options are not explicitly detected and could be improved. There is no visible security policy or incident response contact information, and no vulnerability disclosure mechanism is present. Overall, the website is trustworthy and professionally maintained with strong privacy compliance and business credibility. The main risks relate to enhancing security headers and publishing formal security policies. Strategic recommendations include implementing additional security headers, establishing a vulnerability disclosure policy, and providing explicit incident response contacts to strengthen trust and compliance.

55
83
2
87
72
65
100
non-profitgrantssocialprojectsculturalprojectsscholarships+1 more
jQueryGoogle Tag ManagerHotjarCookiebot+2
2025-06-23T16:59:17.132Z