Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 97 of 241|Showing 4801-4850 of 12038
rotld.ro favicon

INSTITUTUL NAȚIONAL DE CERCETARE-DEZVOLTARE ÎN INFORMATICĂ - ICI BUCUREȘTI

rotld.ro

61
TechnologyRomaniamediumMEDIUM

RoTLD is the official Romanian national registry for .ro top-level domains, operated by the National Institute for Research and Development in Informatics (ICI Bucharest). The website provides domain registration, administration, WHOIS lookup, and IP address allocation services. It serves Romanian businesses, individuals, and IT professionals seeking to register or manage .ro domains. The domain is well-established since 2001 and is the authoritative source for .ro domain management. Technically, the website uses a combination of Bootstrap and jQuery 1.8.3 with Mezzanine CMS, supported by Google Analytics and Tag Manager for tracking. The site is mobile responsive with a moderate performance profile. Security best practices include HTTPS enforcement and DNSSEC enabled on the domain, though some security headers are missing and the jQuery version is outdated. Security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is good with clear privacy and cookie policies and a consent mechanism. However, no explicit security policy or incident response contacts are published, which could be improved. Overall, the site is trustworthy, professional, and aligned with its official registry role. Recommendations include publishing a formal security policy, adding incident response contact info, updating JavaScript libraries, and enhancing security headers and accessibility features to further strengthen the security and compliance posture.

30
40
17
65
67
85
100
domainregistryromaniarotldwhoisdnssec+1 more
jQuery 1.8.3BootstrapGoogle AnalyticsGoogle Tag Manager+1

Partner Domains:

lir.ro
partner
2025-10-09T18:56:32.464Z
fuf.se favicon

Föreningen för utvecklingsfrågor

fuf.se

61
Non-profitSwedensmallMEDIUM

Föreningen för utvecklingsfrågor (FUF) is a well-established Swedish non-profit organization dedicated to knowledge sharing, debate, and engagement on global development and sustainability issues. The website serves as a platform for articles, reports, events, and educational programs targeting academics, students, professionals, and organizations interested in international development. With over 50 years of history, FUF holds a strong market position in Sweden's development discourse. Technically, the website is built on WordPress with modern frameworks like Bootstrap and integrates various plugins for enhanced user experience, including social media feeds and sliders. Hosting is provided by Loopia AB, a reputable Swedish registrar and hosting provider. The site is mobile-optimized and demonstrates good SEO practices, although some accessibility features could be improved. From a security perspective, the site uses HTTPS and implements basic security best practices such as cookie consent and safe external link attributes. However, DNSSEC is not enabled, and some security headers like Content Security Policy are missing. There is no visible security policy or vulnerability disclosure page, which could be areas for improvement. Overall, the website is professional, trustworthy, and compliant with GDPR requirements, though it lacks explicit terms of service and direct contact emails or phone numbers. The domain registration is consistent with the organization's profile, enhancing legitimacy. Strategic recommendations include enabling DNSSEC, adding security headers, and publishing a security policy to strengthen security posture and user trust.

15
40
17
75
95
65
100
non-profitglobaldevelopmenteducationswedenwordpress+4 more
WordPressBootstrapjQuerySmart Slider 3+5

Partner Domains:

utvecklingsarkivet.se
partner
weeffect.se
partner

+2 more partners

2025-10-09T18:54:34.954Z
lijit.com favicon

Sovrn Holdings, Inc.

lijit.com

62
TechnologyN/amediumMEDIUM

Lijit.com is an informational website representing an ad serving domain owned by Sovrn Holdings, Inc., a company specializing in advertising technology and publisher monetization. The site serves primarily as a landing page to clarify the domain's purpose and directs users to Sovrn's main website for further information and contact. The business is positioned as a technology provider in the digital advertising space, targeting publishers and advertisers seeking monetization solutions. The domain has a long-established history dating back to 2006, consistent with the company's operational timeline. Technically, the website employs standard web technologies including Bootstrap for responsive design, HTML5, CSS3, and JavaScript. The site is mobile optimized with basic accessibility and SEO features, though it lacks advanced metadata and security headers. DNS is managed via NS1, but DNSSEC is not enabled, representing a potential security enhancement opportunity. The site does not implement privacy or cookie policies, nor does it provide contact information or forms, limiting user engagement and compliance transparency. From a security perspective, the site is accessible without WAF or challenge pages, but it lacks critical security headers and DNSSEC, which could improve its security posture. The WHOIS data is consistent and trustworthy, with domain registration managed by GoDaddy and domain status flags preventing unauthorized changes. No vulnerabilities or exposed sensitive data were detected. However, the absence of privacy and cookie policies and contact information for incident response reduces compliance and trust levels. Overall, the website is functional and consistent with its stated purpose but is minimalistic and lacks comprehensive compliance and security features. Strategic improvements in privacy compliance, security headers, and user contact mechanisms would enhance trust and security posture.

15
40
2
85
100
85
100
advertisingadservingpublishermonetizationsovrntechnology
BootstrapHTML5CSS3JavaScript

Partner Domains:

sovrn.com
parent
2025-10-09T18:49:22.297Z
flaticons.net favicon

Flaticons

flaticons.net

67
TechnologyN/asmallMEDIUM

Flaticons.net is a specialized online platform offering over 8,000 royalty free flat icons with a user-friendly customization tool aimed at web developers, designers, and businesses. Established in 2013, the site provides free icon packs and a flaticon generator to create personalized icons for personal and commercial use. The business operates a freemium model, monetizing primarily through advertising and possibly premium services. The website is well-structured with clear navigation and a consistent brand presence, targeting a niche market in the technology sector focused on digital assets for web projects. Technically, the site employs a modern tech stack including jQuery, Bootstrap, Google Adsense, and Google Tag Manager, hosted behind Cloudflare DNS. The site is mobile optimized with good SEO practices and basic accessibility features. Performance is moderate, with room for improvement in accessibility and security headers. The domain is well-established and registered with NameCheap, showing consistency between domain age and business maturity. From a security perspective, the site uses HTTPS with a good SSL configuration and has domain transfer protections enabled. However, it lacks DNSSEC, security headers, and explicit security or incident response policies. No vulnerabilities or exposed sensitive data were detected, but the absence of terms of service and security policies suggests areas for compliance and trust enhancement. Privacy compliance is basic, with a privacy policy and cookie consent mechanism present but no GDPR-specific indicators. Overall, Flaticons.net presents a moderate risk profile with a solid business foundation and technical implementation but could benefit from enhanced security practices and compliance documentation to improve trust and resilience against threats.

65
68
2
70
75
80
100
flaticonfreeiconsroyaltyfreeflaticonsiconmaker+1 more
jQueryBootstrapGoogle AdsenseGoogle Tag Manager+1
2025-10-09T18:48:57.106Z
L

Lincoln Motor Company

lincoln.com

57
TransportationUnited StateslargeMEDIUM

Lincoln Motor Company operates as a premium luxury automotive brand under the Ford Motor Company umbrella, specializing in luxury SUVs and plug-in hybrid electric vehicles. The website www.lincoln.com serves as a comprehensive digital platform showcasing their vehicle lineup, financing options, and customer services. The site targets luxury vehicle consumers primarily in the United States, emphasizing comfort, wellness, and advanced automotive technology. The business model focuses on manufacturing, retail sales, and after-sales services for luxury vehicles, positioning Lincoln as a key player in the premium automotive market segment. Technically, the website is built on Adobe Experience Manager (AEM) CMS and leverages a modern technology stack including Adobe Target for personalization, OneTrust for cookie consent management, Google Tag Manager, and various analytics tools such as Adobe Analytics, Mouseflow, and ContentSquare. The site is optimized for performance, mobile responsiveness, and accessibility, with strong SEO practices evident in meta tags and structured data. Hosting and content delivery are supported by Akamai CDN, ensuring fast and reliable user experience. From a security perspective, the website enforces HTTPS with excellent SSL configuration and implements key security headers such as Content-Security-Policy and Strict-Transport-Security. Cookie consent mechanisms comply with GDPR and other privacy regulations, although no explicit security policy or incident response contact information is publicly available. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The domain WHOIS data is not publicly available, likely due to privacy protection, but the website's professional presentation and brand consistency strongly indicate legitimacy. Overall, www.lincoln.com demonstrates a mature digital presence with strong business credibility, technical sophistication, and privacy compliance. Strategic recommendations include publishing a dedicated security policy, establishing a vulnerability disclosure program, and providing incident response contact details to enhance transparency and trust. These steps would further solidify Lincoln's reputation as a secure and customer-focused luxury automotive brand.

-
88
25
72
-
85
100
luxuryautomotivesuvplug-inhybridelectricvehicles+6 more
Adobe TargetOneTrust Cookie ConsentGoogle Tag ManagerEvergage+5

Partner Domains:

www.ford.com
parent
quickquote.ford.com
service

+2 more partners

2025-10-09T17:43:59.022Z
homiris.fr favicon

Homiris

homiris.fr

67
OtherFrancelargeMEDIUM

Homiris is a French-based security service provider specializing in home and professional alarm systems with integrated telesurveillance. Operated by EPS, a recognized leader in the French security market, Homiris offers subscription-based connected alarm solutions with included equipment, maintenance, and 24/7 monitoring. The company holds multiple certifications and awards, reinforcing its market position and trustworthiness. The website is professionally designed, mobile-optimized, and provides clear navigation and comprehensive content tailored to its French audience. Technically, the site uses modern JavaScript libraries and integrates third-party services for analytics, advertising, and customer reviews. Security posture is good with HTTPS enforced and cookie consent mechanisms in place, though security headers are not explicitly detected and reCAPTCHA is configured but disabled. WHOIS data is unavailable, which slightly reduces domain trust but the overall business credibility remains high due to certifications and transparent business information. Strategic recommendations include enhancing security headers, enabling anti-bot protections, publishing explicit security policies, and adding a security.txt file for vulnerability disclosures.

75
68
35
40
62
75
100
securityhomealarmtelesurveillanceconnectedalarmfrance+4 more
jQuery 3.6.0BootstrapFont AwesomeGoogle reCAPTCHA (configured but disabled)+6

Partner Domains:

eps.fr
parent
ekomi.com
partner
2025-10-09T16:38:14.290Z
cmso.com favicon

Crédit Mutuel du Sud-Ouest

cmso.com

68
FinanceFrancemediumMEDIUM

Crédit Mutuel du Sud-Ouest operates as a regional cooperative and mutual bank serving individuals, professionals, enterprises, associations, and local authorities primarily in the South-West of France. The website presents a professional banking service offering including accounts, cards, and online management, positioning itself as a local bank committed to customer projects and community engagement. The site is well-branded and consistent with the Crédit Mutuel Arkéa group identity. Technically, the website leverages modern web technologies including Bootstrap for responsive design, Jalios CMS for content management, and integrates advanced analytics and consent management tools such as Piano Analytics and Didomi. The site is mobile-optimized, accessible, and SEO-friendly, with proper meta tags and structured data enhancing search visibility. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes essential security headers. It implements GDPR-compliant cookie consent mechanisms, demonstrating a commitment to privacy. However, the absence of explicit security policies, incident response information, and direct security contact channels limits transparency. The WHOIS data is notably missing or unavailable, which raises questions about domain registration legitimacy despite the professional appearance and branding. Overall, the website is a credible and professional digital presence for a regional bank, with strong privacy and security practices but some gaps in transparency and domain registration clarity. Strategic improvements in publishing security policies and verifying domain registration would enhance trust and compliance.

80
50
17
70
72
75
100
bankingfinancecooperativemutualregional+4 more
JavaScriptBootstrapGoogle Tag ManagerDidomi Consent SDK+2

Partner Domains:

entreprise.cmso.com
partner
pro.cmso.com
partner

+2 more partners

2025-10-09T15:26:21.471Z
cmb.fr favicon

Crédit Mutuel de Bretagne

cmb.fr

66
FinanceFrancelargeMEDIUM

Crédit Mutuel de Bretagne is a regional cooperative and mutual bank serving individuals, professionals, enterprises, associations, and collectives primarily in Brittany, France. The website offers comprehensive banking services including account management, online account opening, and card services, positioning itself as a trusted regional financial institution under the Crédit Mutuel Arkéa group. The site is professionally designed with consistent branding and clear navigation tailored to its diverse audience segments. Technically, the website leverages modern web technologies including JavaScript, CSS, Bootstrap, and Jalios CMS. It integrates advanced consent management via Didomi and analytics through Piano Analytics and Google Tag Manager, reflecting a mature digital infrastructure. The site is mobile-optimized and accessible, with good SEO practices and structured data enhancing search visibility. From a security perspective, the website enforces HTTPS, employs cookie consent mechanisms aligned with GDPR, and avoids exposing sensitive data. While explicit security headers are not fully visible in the HTML, the overall posture is strong with no evident vulnerabilities. The absence of WHOIS data is likely due to privacy protection, which is justified for a financial institution. No WAF or blocking mechanisms were detected, allowing full content access. Overall, the website demonstrates a high level of professionalism, security, and compliance suitable for a major regional bank. Strategic recommendations include enhancing visible security headers, publishing clear security and incident response policies, and maintaining vigilance on third-party scripts to sustain trust and compliance.

80
25
17
70
77
75
100
bankingfinancecooperativemutualcreditmutuel+2 more
JavaScriptCSSHTML5Google Tag Manager+3

Partner Domains:

entreprise.cmb.fr
partner
pro.cmb.fr
partner

+2 more partners

2025-10-09T15:26:16.453Z
F

Ford Motor Company

ford.com

57
TransportationUnited StatesenterpriseMEDIUM

Ford Motor Company operates a comprehensive and professionally designed website showcasing its extensive lineup of vehicles including hybrid, electric, SUVs, trucks, and commercial vehicles. The site targets consumers and commercial buyers in the automotive sector, providing detailed product information, pricing, and dealer location services. The company is a major player in the global automotive market with a strong brand presence and consistent messaging. Technically, the website leverages modern web technologies including Adobe Experience Manager, Adobe Target, and Akamai CDN, ensuring fast performance, mobile optimization, and good accessibility. Security posture is strong with HTTPS enforced, appropriate security headers, and no visible vulnerabilities. Privacy and cookie policies are comprehensive and GDPR compliant, though explicit security policy and incident response information are not prominently published. WHOIS data for the domain is unavailable, likely due to registry restrictions, but the website's legitimacy is supported by strong brand signals and professional content. Overall, the site reflects a mature digital presence with good security and privacy practices, suitable for a large enterprise in the transportation industry.

-
73
25
87
-
85
100
automotivevehicleshybridelectrictrucks+3 more
Adobe TargetjQueryBootstrapAkamai+7

Partner Domains:

www.lincoln.com
subsidiary
www.account.ford.com
service
2025-10-09T15:20:43.803Z
scor.com favicon

SCOR

scor.com

71
FinanceFranceenterpriseMEDIUM

SCOR is a leading global reinsurance company headquartered in France, offering a broad portfolio of innovative Property & Casualty, Life & Health, and Investment solutions. The company targets insurance firms and investors, positioning itself as a financially solid and innovative market leader. The website reflects a mature digital presence with comprehensive corporate, investor, and compliance information, supporting transparency and trust. Technically, the site is built on Drupal 10 with modern web technologies including Matomo analytics for privacy-respecting user tracking, lazy loading images, and embedded multimedia content. The site is mobile-optimized, accessible, and SEO-friendly, providing a fast and professional user experience. From a security perspective, the website enforces HTTPS, uses security cookies, and implements a robust cookie consent mechanism aligned with GDPR. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security headers like Content-Security-Policy could be improved, and a security.txt file is absent. Overall, the domain WHOIS data is unavailable, likely due to privacy protection, but the website's professional content and compliance posture support legitimacy. The risk profile is low, with recommendations to enhance security transparency and incident response visibility.

75
68
10
65
82
80
100
reinsurancefinancecorporateinvestorscompliance+3 more
Drupal 10Matomo AnalyticsBootstrapLazySizes (lazy loading images)+1

Partner Domains:

foundation.scor.com
subsidiary
scor-ip.com
subsidiary

+1 more partners

2025-10-09T14:15:38.323Z
lpi.org favicon

Linux Professional Institute (LPI)

lpi.org

62
TechnologyN/amediumMEDIUM

Linux Professional Institute (LPI) is a well-established non-profit organization specializing in global Linux and open source certification and career support. It holds a strong market position as the world's first and largest vendor-neutral Linux certification body, serving over 350,000 certified professionals across more than 180 countries. The organization offers a comprehensive portfolio of certifications, training partnerships, and community engagement programs, targeting IT professionals, educators, and organizations worldwide. Technically, the website is built on a modern WordPress CMS with a robust tech stack including Bootstrap, Elementor, and various performance and analytics tools such as Matomo and Google Tag Manager. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, providing a fast and user-friendly experience. From a security perspective, the site enforces HTTPS, employs cookie consent mechanisms, and integrates CAPTCHA for form protection. While explicit security headers are not fully confirmed, no critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data due to privacy protection is justified given the organization's non-profit status and global presence. Overall, the website reflects a high level of professionalism, trustworthiness, and compliance with privacy regulations, making it a reliable resource for Linux certification and open source community support.

40
95
25
70
67
70
40
linuxopensourcecertificationeducationnon-profit+3 more
WordPress 6.8.3BootstrapSlick CarouselFontAwesome 6.4.0+6

Partner Domains:

home.pearsonvue.com
partner
cs.lpi.org
partner

+3 more partners

2025-10-09T14:11:56.922Z
bsdtw.org favicon

BSD Taiwan

bsdtw.org

53
TechnologyTaiwansmallMEDIUM

BSD Taiwan is a niche community website dedicated to BSD operating system enthusiasts in Taiwan. It serves as a hub for community engagement, event promotion, and resource sharing related to FreeBSD and other BSD variants. The website is modest in scale, targeting BSD users primarily in Taiwan but also accessible globally. It leverages common front-end technologies such as Bootstrap and Font Awesome, hosted by Gandi SAS, with a domain registered since 2017, reflecting a stable and consistent presence. Technically, the website employs a straightforward and responsive design with moderate performance and basic SEO and accessibility features. It lacks advanced CMS or analytics integrations, indicating a simple, community-focused infrastructure. The absence of privacy and cookie policies, as well as security headers, suggests room for improvement in compliance and security hardening. From a security perspective, the domain is well-registered with clientTransferProhibited status and no privacy protection, appropriate for a community organization. However, the lack of DNSSEC and security headers, combined with no visible incident response or vulnerability disclosure mechanisms, indicates a basic security posture. No forms or sensitive data collection points reduce immediate risk, but the site would benefit from enhanced security practices and compliance documentation. Overall, BSD Taiwan presents a trustworthy and professional community platform with good content quality and user experience but requires improvements in privacy compliance, security headers, and contact transparency to enhance its security posture and trustworthiness.

15
35
2
70
72
60
100
bsdfreebsdcommunitytaiwanopensource+1 more
BootstrapFont AwesomeGoogle FontsjQuery
2025-10-09T14:11:31.531Z
mina.news favicon

Crnogorska nezavisna informativna agencija Montenegro Independent News Agency Infomont doo/MINA

mina.news

62
MediaMontenegromediumMEDIUM

Agencija MINA is an independent Montenegrin news agency providing comprehensive news coverage including politics, society, sports, economy, and culture primarily targeting the Montenegrin audience. The website offers a variety of news categories and multimedia content, positioning itself as a key regional media outlet with a medium-sized operation founded in 2002. The company maintains a professional online presence with active social media channels and clear contact information, reinforcing its credibility in the media sector. Technically, the website employs a modern tech stack including Bootstrap, jQuery, and various JavaScript libraries for UI components and analytics. The site is hosted behind Cloudflare, ensuring good performance and security at the infrastructure level. Mobile optimization and SEO practices are well implemented, although accessibility features are basic. The site uses HTTPS with an excellent SSL configuration, but lacks some security headers that could enhance protection. From a security perspective, the site demonstrates good baseline practices such as HTTPS enforcement and cookie consent mechanisms. However, it lacks visible security policies, incident response contacts, and vulnerability disclosure information. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a cookie banner present but no dedicated privacy policy or terms of service pages found. Overall, the website is trustworthy and professionally maintained with a solid business foundation. Strategic improvements in privacy documentation, security headers, and transparency around security policies would enhance its security posture and compliance. The domain WHOIS data is privacy protected but consistent with the business claims, supporting legitimacy.

55
35
2
70
75
80
100
newsmontenegromediasportsbusiness+2 more
jQueryBootstrapFont AwesomeSlick Carousel+4
2025-10-09T13:09:26.501Z
hsg.ch favicon

University of St.Gallen

hsg.ch

75
EducationSwitzerlandlargeMEDIUM

The University of St.Gallen is a prestigious Swiss educational institution specializing in management, economics, law, social sciences, international affairs, and computer science. The website serves a diverse audience including students, academics, and business partners, offering comprehensive information about academic programs and research activities. The university holds a strong market position as a leading Swiss university with international recognition. Technically, the website is built on the TYPO3 CMS platform, leveraging modern web technologies such as Bootstrap and jQuery. It integrates multiple third-party analytics and marketing tools, including Google Analytics, Crazy Egg, and various advertising pixels, all managed through a GDPR-compliant cookie consent mechanism. The site demonstrates good mobile optimization, accessibility, and SEO practices. From a security perspective, the website enforces HTTPS, employs standard security headers, and avoids exposing sensitive data. However, explicit security policies and incident response contacts are not published, representing an area for improvement. The domain registration data aligns well with the website's identity, reinforcing its legitimacy. Overall, the website is professional, secure, and compliant with privacy regulations, with minor recommendations to enhance transparency around security policies and vulnerability disclosures.

70
80
17
80
82
85
100
educationuniversitymanagementeconomicslaw+7 more
TYPO3 CMSJavaScriptjQueryBootstrap+3
2025-10-09T13:08:20.725Z
swissfunddata.ch favicon

Swiss Fund Data AG

swissfunddata.ch

58
FinanceSwitzerlandmediumMEDIUM

Swiss Fund Data AG operates a professional online platform providing comprehensive data, documents, and market insights related to investment funds approved for public distribution in Switzerland. The company targets Swiss residents interested in investment funds, including both qualified and private investors, and offers personalized services such as the MyFunds user account. The website is positioned as a trusted publication organ approved and supervised by FINMA, reinforcing its credibility in the Swiss financial market. Technically, the website employs a traditional but stable technology stack including jQuery, Bootstrap, and Google Analytics for tracking. The site is mobile-optimized with good navigation and content quality. However, some JavaScript libraries are outdated, and no explicit security headers are detected, which could be improved. The site uses HTTPS with good SSL configuration, but personalized data transmission is unencrypted, which is a notable security risk acknowledged in the legal disclaimers. From a security perspective, the website demonstrates moderate maturity with HTTPS enforcement and privacy-conscious analytics configurations such as IP anonymization. However, the lack of security headers and unencrypted personalized data exchange represent vulnerabilities. No explicit incident response or vulnerability disclosure mechanisms are present. Privacy policies are comprehensive and GDPR-compliant, with clear data protection officer contact information. Overall, the website is professional, trustworthy, and compliant with relevant privacy regulations, but it could benefit from enhanced security controls and clearer incident response provisions to strengthen its security posture and user trust.

60
53
17
80
67
85
20
financeinvestmentfundsswissmarketdatalegaldisclaimerprivacypolicy
jQuery 1.12.4BootstrapGoogle Analytics (UA and GA4)Shariff social sharing+3
2025-10-09T11:56:45.744Z
watergroup.me favicon

Water Group d.o.o.

watergroup.me

46
HospitalityMontenegromediumHIGH

Water Group d.o.o. is a Montenegrin company specializing in the distribution and sale of beverages and Horeka-related products, including mineral and spring water, espresso coffee, and hot and cold drinks for hotels. Established in 2006, the company operates multiple distribution centers across Montenegro and serves the Horeka market segment with a broad product portfolio including brands like RADA, Suza, MOAK, and Tchibo. The website reflects a professional business presence with consistent branding and relevant content tailored to its target audience. Technically, the website is built on Joomla CMS with the Gridbox framework and uses common libraries such as jQuery and Bootstrap. The site is mobile-optimized and demonstrates good SEO practices, although accessibility features are basic. Hosting and DNS infrastructure align with the business location, and the domain is privacy protected but registered through a reputable registrar. Performance is moderate with no blocking or WAF detected. From a security perspective, the site uses HTTPS and avoids exposing sensitive data. However, it lacks important security headers and does not provide privacy or cookie policies, which are critical for GDPR compliance. No incident response or vulnerability disclosure mechanisms are present. Social media integration is evident, enhancing trust and engagement. Overall, the security posture is adequate but could be improved with standard best practices and compliance documentation. The overall risk assessment indicates a moderate risk profile primarily due to compliance gaps and missing security headers. Strategic recommendations include implementing privacy and cookie policies, adding security headers, enabling DNSSEC, and establishing vulnerability disclosure processes to enhance trust and security maturity.

20
35
2
70
72
75
20
horekabeveragesmontenegrowatercoffee+1 more
Joomla CMSjQueryBootstrapGridbox framework
2025-10-09T11:26:51.846Z
kbdirect.ch favicon

KünzlerBachmann Directmarketing

kbdirect.ch

50
OtherSwitzerlandmediumMEDIUM

KünzlerBachmann Directmarketing is a Swiss-based company specializing in data-driven marketing services, including address sales, customer analytics, mailing production, and fundraising solutions. The company targets businesses seeking direct marketing and data analytics to optimize customer reach. Their market position is that of an established, medium-sized player in the Swiss marketing sector, offering a broad portfolio of services tailored to B2B clients. The website reflects a professional brand with consistent messaging and a clear focus on marketing and data services. Technically, the website employs modern web technologies such as Bootstrap for responsive design, Google Fonts for typography, and integrates Google Tag Manager and Cookiebot for analytics and privacy compliance. The site is mobile-optimized with good SEO practices and moderate performance. Accessibility is basic but functional. Hosting details are not explicitly identified, but SSL is properly configured with strong security headers. From a security perspective, the site enforces HTTPS, uses a comprehensive cookie consent mechanism compliant with GDPR, and integrates major advertising and analytics platforms with transparent disclosures. No critical vulnerabilities or exposed sensitive data were detected. However, the site lacks explicit security policies, incident response contacts, and a security.txt file, which are recommended for enhanced security posture. Overall, the website presents a low-risk profile with good privacy compliance and business credibility. Strategic recommendations include publishing terms of service, enhancing accessibility, and formalizing security and incident response documentation to further strengthen trust and compliance.

20
83
2
60
72
80
-
directmarketingdatadrivenmarketingfundraisingcustomeranalyticsmailingproduction+1 more
BootstrapGoogle FontsGoogle Tag ManagerCookiebot+1

Partner Domains:

shop.kbdata.ch
partner
2025-10-09T11:25:40.751Z
bavarian-nordic.com favicon

Bavarian Nordic

bavarian-nordic.com

56
HealthcareDenmarklargeMEDIUM

Bavarian Nordic is a well-established Danish biotechnology company specializing in the research, development, manufacturing, and commercialization of innovative vaccines targeting infectious diseases. With a domain age dating back to 1997 and multiple global locations, the company demonstrates a strong market presence and commitment to life-saving healthcare solutions. Their website reflects a professional and comprehensive approach to business communication, targeting healthcare professionals, investors, and the general public. Technically, the website employs a modern technology stack including jQuery, Bootstrap, Flowplayer, Cookiebot for consent management, and Google Tag Manager for analytics and marketing. The site is well-optimized for mobile devices, accessible, and SEO-friendly, though some improvements in security headers and DNSSEC could enhance its security posture. Security-wise, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure information, which are recommended for enhanced transparency and trust. The WHOIS data confirms the legitimacy and consistency of the domain registration with the company's Danish roots. Overall, Bavarian Nordic's digital presence is robust, secure, and compliant with privacy regulations, supporting its credibility as a leader in vaccine development. Strategic enhancements in security transparency and DNS security would further strengthen its trustworthiness and resilience.

15
95
17
85
62
70
20
vaccineshealthcarebiotechnologypharmaceuticalsresearch+2 more
jQuery 1.9.1BootstrapFlowplayerCookiebot+1
2025-10-09T10:42:55.264Z