Skip to main content

Low-risk security reports

Browse 2,868 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

155882
Websites
130
Industries
113
Countries
52
Avg Score
Page 1 of 58|Showing 1-50 of 2868
baincapital.com favicon

Bain Capital

baincapital.com

77
FinanceUnited StatesenterpriseLOW

Bain Capital is a globally recognized private investment firm specializing in multi-asset alternative investments including private equity, credit, real assets, and venture capital. The firm operates on four continents with a strong emphasis on partnering differently to unlock opportunities and create lasting impact. Their market position is that of a leading enterprise in the finance sector, supported by a broad portfolio of subsidiaries and specialized investment platforms. Technically, the website demonstrates a mature digital infrastructure using modern web technologies such as Bootstrap, Font Awesome, and advanced JavaScript libraries. The site is mobile-optimized, accessible, and SEO-friendly, reflecting a high level of digital maturity. Analytics and marketing tools like Google Analytics and Google Tag Manager are implemented responsibly with asynchronous loading. From a security perspective, the site enforces HTTPS and shows signs of good security hygiene, although explicit security headers and incident response policies are not publicly documented. No vulnerabilities or exposed sensitive data were detected. Privacy and cookie policies are present with consent mechanisms, indicating compliance with GDPR and related regulations. Overall, the website presents a low risk profile with strong business credibility and technical robustness. The absence of WHOIS data slightly reduces domain trust but is mitigated by the professional presentation and extensive subsidiary network. Strategic recommendations include enhancing security header implementation, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and compliance.

85
68
55
85
57
80
100
financeinvestmentprivateequityventurecapitalrealassets+2 more
Bootstrap 5.3.2Font Awesome 6.4.2Slick Carousel 1.8.1LightGallery.js+4

Partner Domains:

baincapitalprivateequity.com
subsidiary
baincapitaldoubleimpact.com
subsidiary

+3 more partners

2026-08-02T07:07:29.353Z
firstcitizens.com favicon

First Citizens Bank

firstcitizens.com

76
FinanceUnited StateslargeLOW

First Citizens Bank is a well-established North Carolina state-chartered commercial bank, operating as a wholly-owned subsidiary of First Citizens BancShares, Inc., a NASDAQ-listed financial holding company with over $50 billion in assets. The bank offers a comprehensive suite of personal banking services including checking, savings, credit cards, loans, mortgages, and investment products, targeting personal banking customers primarily in the United States. The website reflects a mature digital presence with professional design, clear navigation, and strong branding consistency. Technically, the website leverages Adobe Experience Manager as its CMS, integrates advanced analytics and marketing tools such as Google Tag Manager and Adobe Launch, and employs robust performance monitoring via Boomerang. Hosting appears to be supported by Akamai CDN services, ensuring good performance and availability. The site is mobile optimized and accessible, with SEO best practices implemented. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes essential security headers such as Content Security Policy and Strict-Transport-Security. Cookie consent mechanisms are in place, supporting GDPR compliance. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security policies, incident response information, and vulnerability disclosure mechanisms are not publicly available, representing areas for improvement. Overall, the domain WHOIS data is not publicly available, likely due to privacy protection, but the website's professional presentation, linkage to a publicly traded parent company, and multiple trust signals support its legitimacy. The risk profile is low, with recommendations focusing on enhancing transparency around security and data protection practices to further strengthen trust and compliance.

75
88
17
85
62
90
100
bankingfinancepersonalbankingcreditcardsloans+3 more
Adobe Experience Manager (AEM)Google Tag ManagerAdobe LaunchAdobe Acrobat Services Viewer SDK+2

Partner Domains:

www.svb.com
subsidiary
innovation.firstcitizens.com
subsidiary

+1 more partners

2026-08-01T07:11:47.949Z
roc-search.com favicon

Roc Search

roc-search.com

79
TechnologyUnited KingdommediumLOW

Roc Search is a specialized recruitment agency focusing on STEM sectors including Technology, Engineering, Life Sciences, Energy, and the Public Sector. The company provides a range of staffing solutions such as contingent recruitment, retained search, embedded talent, and brand marketing services, positioning itself as a leading global partner for talent acquisition in these industries. The website reflects a professional and well-structured digital presence, targeting both candidates and clients with clear navigation and comprehensive resources. Technically, the website employs modern frameworks such as Bootstrap 5 and integrates advanced analytics tools including Google Analytics and Microsoft Clarity. The use of CookieYes for cookie consent demonstrates a commitment to privacy compliance. The site is mobile-optimized and accessible, with good SEO practices evident in metadata and structured navigation. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms effectively. However, some standard security headers like Content-Security-Policy, X-Frame-Options, and X-Content-Type-Options are missing, which could be improved to enhance protection against common web vulnerabilities. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a low risk profile with strong business credibility and privacy compliance. The main concern lies in the absence of WHOIS data, which raises questions about domain registration transparency. This should be investigated further to ensure full legitimacy. Strategic recommendations include enhancing security headers, verifying domain registration details, and maintaining ongoing compliance with data protection regulations.

90
83
55
70
77
75
100
recruitmenttechnologyengineeringlifesciencesenergy+5 more
Bootstrap 5jQueryGoogle Tag ManagerGoogle Analytics+3
2026-07-26T07:12:42.541Z
C

Cellhire Ltd.

cellhire.co.uk

80
TelecommunicationsUnited KingdommediumLOW

Cellhire Ltd. is a medium-sized UK-based telecommunications company specializing in IoT solutions, mobile communications, eSIM, and data connectivity services targeted primarily at enterprise clients and indirect partners worldwide. The company positions itself as a leading global telecoms provider with a strong focus on innovation and customer-centric connectivity solutions. Their website reflects a professional and modern digital presence, showcasing multiple industry awards and a comprehensive portfolio of services including wholesale connectivity and satellite solutions. Technically, the website is built on modern frameworks such as Next.js and React, leveraging advanced analytics and marketing tools like Google Analytics, Bing Ads, and Demandbase. The site is well-optimized for performance, mobile responsiveness, and accessibility, with a robust cookie consent mechanism ensuring GDPR compliance. Security best practices are observed, including HTTPS enforcement and security headers, though explicit security policy and incident response information are not publicly detailed. The security posture is strong with no visible vulnerabilities or exposed sensitive data. However, the absence of WHOIS data for the domain raises some concerns about domain registration transparency, which slightly impacts the overall trust score. Despite this, the professional business presentation and consistent branding support the legitimacy of the company. Strategic recommendations include publishing a dedicated security policy, vulnerability disclosure program, and incident response contacts to enhance trust and compliance. Overall, Cellhire demonstrates a mature digital infrastructure and a solid market position in the telecommunications and IoT sectors, with room for improvement in transparency and security communication to stakeholders.

95
83
25
95
77
80
100
iottelecommunicationsconnectivityesimmobile+3 more
Next.jsReactFont Awesome 7Google Tag Manager+5

Partner Domains:

partners.cellhire.com
partner
simcontrol.cellhire.com
partner
2026-07-26T07:06:47.703Z
duffandphelps.com favicon

Kroll

duffandphelps.com

78
FinanceUnited StatesenterpriseLOW

Kroll is a leading independent provider of financial and risk advisory solutions, serving a broad range of corporate clients, financial institutions, legal professionals, and government agencies. The company leverages unique insights, data, and technology to address complex demands in financial advisory, risk management, cyber risk, and compliance. Their market position is strong as a trusted enterprise-level consultancy with a global presence. Technically, the website is built on modern frameworks such as Next.js and React, with integration of Google Tag Manager and OneTrust for consent management. The site demonstrates good performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. The use of structured data and comprehensive metadata supports SEO and content discoverability. From a security perspective, the site enforces HTTPS, implements multiple security headers, and uses consent management tools to comply with privacy regulations. However, the absence of a public security policy, incident response contact, and vulnerability disclosure reduces transparency. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website presents a professional, trustworthy, and compliant digital presence for Kroll. The main risk factor is the lack of WHOIS data, which slightly impacts domain trustworthiness but is mitigated by strong brand signals and content quality. Strategic recommendations include publishing security policies and incident response information to enhance trust and compliance visibility.

85
88
67
65
52
85
100
krollfinancialadvisoryriskadvisorycyberriskcompliance+2 more
Next.jsReactGoogle Tag ManagerjQuery 3.7.1+1
2026-07-23T07:12:48.578Z
nixonpeabody.com favicon

Nixon Peabody LLP

nixonpeabody.com

77
OtherUnited StatesenterpriseLOW

Nixon Peabody LLP is a large, global law firm offering sophisticated legal solutions to businesses across the United States, Europe, and Asia. With over 650 attorneys, the firm provides comprehensive legal services including corporate law, litigation, and regulatory compliance. The website reflects a professional and well-established business with a clear focus on serving corporate clients worldwide. The firm's market position is strong, supported by extensive practice areas and a global presence. Technically, the website is built on modern frameworks such as Next.js and React, ensuring fast performance, mobile responsiveness, and good accessibility. The site employs HTTPS with strong security headers, indicating a mature security posture. Privacy and cookie policies are present and comprehensive, demonstrating compliance with GDPR and other privacy regulations. However, explicit security policies and incident response information are not publicly available, which could be improved. Security-wise, the site shows good practices with no visible vulnerabilities or exposed sensitive data. The lack of WHOIS data is a concern for domain legitimacy and trust but does not detract significantly from the overall professional presentation. The site does not employ advertising or affiliate marketing, focusing solely on professional services. Overall, Nixon Peabody LLP's website is a high-quality, secure, and privacy-conscious platform that effectively supports the firm's business objectives. Strategic recommendations include publishing explicit security and incident response policies, adding vulnerability disclosure mechanisms, and ensuring WHOIS data is accurate and publicly available to enhance trust.

75
88
47
70
69
85
100
lawfirmlegalservicesbusinesscorporatelawglobal+1 more
Next.jsReactJavaScriptCSS
2026-07-22T07:22:46.407Z
B

BSI Group

bsigroup.com

77
OtherUnited KingdomenterpriseLOW

BSI Group, officially known as The British Standards Institution, is a globally recognized leader in standards development, certification, training, and consulting services. The organization focuses on helping businesses improve performance and achieve excellence, with a strong emphasis on sustainability. Their market position is reinforced by a long history of 125 years and a comprehensive portfolio of services including standards, assessment, certification, and software tools. The website reflects a professional and enterprise-grade digital presence, targeting businesses and organizations seeking compliance and quality assurance solutions. Technically, the website employs a modern technology stack including jQuery, Google Tag Manager, Google Analytics, Optimizely, and Salesforce Web-to-Case for customer engagement. The site is well-optimized for mobile devices, has good SEO practices, and integrates multiple marketing and analytics tools with user consent mechanisms. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS, uses CAPTCHA on forms, and implements cookie consent via OneTrust. While explicit security headers are not fully confirmed, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. The absence of a public vulnerability disclosure policy is noted as an area for improvement. Overall, the website is trustworthy, professional, and compliant with privacy regulations such as GDPR. The missing WHOIS data is unusual but does not detract significantly from the site's legitimacy given the organization's reputation and branding. Strategic recommendations include enhancing security header implementation, publishing a vulnerability disclosure policy, and improving incident response contact visibility.

60
85
55
85
57
85
100
iso9001trainingcertificationstandardsuk+4 more
jQuery 3.5.1Google Tag ManagerGoogle Analytics (gtag.js)Optimizely+7
2026-07-21T07:17:15.971Z
O

Ondrives Ltd

ondrives.com

78
ManufacturingUnited KingdommediumLOW

Ondrives Ltd is a well-established UK-based manufacturer specializing in precision gears, gearboxes, and mechanical drive components primarily serving aerospace, defence, robotics, and advanced industrial sectors. The company emphasizes quality and reliability, supported by internationally recognized certifications such as AS9100D and ISO 9001:2015. Their website reflects a mature business with detailed product offerings, engineering capabilities, and a strong focus on technical excellence. Technically, the website is built on the nopCommerce platform with modern frontend technologies including Bootstrap and FontAwesome. It is mobile-optimized and provides a good user experience with clear navigation and comprehensive content. The site integrates external trusted domains for technical references and social media engagement but does not appear to use extensive tracking or advertising technologies. From a security perspective, the site uses HTTPS and implements basic security best practices such as anti-forgery tokens and cookie consent mechanisms. However, it lacks advanced security headers and does not publish a formal security policy or incident response contacts. The domain registration is consistent with the business claims, showing a long registration period and no privacy protection, which supports legitimacy. Overall, Ondrives.com presents as a professional, trustworthy, and technically competent website for a specialized manufacturing business. The security posture is solid but could be enhanced with additional headers and transparency around incident response. Privacy compliance is well addressed with GDPR-aligned policies and consent mechanisms.

90
95
17
85
67
85
100
manufacturingprecisiongearsaerospacedefencerobotics+4 more
nopCommerceBootstrapFontAwesomejQuery UI Autocomplete+2
2026-07-21T07:15:53.482Z
F

FTI Consulting

fticonsulting.com

80
OtherGermanylargeLOW

FTI Consulting is a global professional services firm with a strong presence in Germany, offering a broad range of consulting services including business transformation, restructuring, forensic investigations, compliance, cybersecurity, and ESG advisory. The company leverages over 20 years of global experience and a comprehensive network to support clients in managing complex business challenges. The website is professionally designed, localized for the German market, and provides clear navigation and detailed service descriptions, targeting corporate clients and enterprises. Technically, the website employs modern technologies such as JavaScript frameworks, Coveo search integration, Google Tag Manager, and OneTrust for cookie consent management. The CMS appears to be Sitecore, indicating a mature digital infrastructure. The site is mobile-optimized and accessible, with good SEO practices and performance. From a security perspective, the site uses HTTPS with integrity checks on scripts and includes reCAPTCHA for form protection. Cookie consent mechanisms comply with GDPR requirements. However, explicit security headers and a published security policy or incident response contacts are not evident, suggesting room for improvement in transparency and security posture. Overall, the website presents a trustworthy and professional image with moderate to high security and privacy compliance. The absence of WHOIS data slightly reduces trust but is mitigated by the professional content and company domain email contact. Strategic recommendations include enhancing security headers, publishing security policies, and providing incident response information to strengthen trust and compliance.

62
100
75
80
100
85
55
consultinggermanybusinesstransformationcybersecuritycompliance+2 more
JavaScriptCoveo SearchGoogle Tag ManagerOneTrust Cookie Consent+1
2026-07-17T07:19:29.075Z
elekta.com favicon

Elekta

elekta.com

79
HealthcareN/alargeLOW

Elekta is a leading medical technology company specializing in precision radiation medicine and cancer care solutions. The company offers a broad portfolio of products including adaptive radiotherapy systems, stereotactic radiosurgery, oncology software, brachytherapy, and neurosurgery equipment. With over 50 years of experience, Elekta positions itself as a pioneer in adaptive radiotherapy, aiming to make it the new standard of care in clinical practice. Their target audience primarily includes clinicians, cancer treatment centers, and healthcare professionals worldwide. Technically, the website demonstrates a mature digital infrastructure with modern technologies such as Matomo analytics, SVG graphics, and video content. The site is well-optimized for mobile devices and accessibility, featuring comprehensive metadata and structured data for SEO. The presence of cookie consent mechanisms and privacy policies indicates compliance with GDPR and other privacy regulations. From a security perspective, the site uses HTTPS and implements cookie consent banners, but lacks explicit security headers and a public incident response or vulnerability disclosure page. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data reduces transparency but does not detract significantly from the site's legitimacy given the professional presentation and corporate governance disclosures. Overall, Elekta's website reflects a high level of professionalism, technical competence, and compliance awareness, supporting its position as a trusted provider in the healthcare technology sector.

85
82
100
85
95
17
83
healthcareradiotherapycancercaremedicaltechnologyoncology+1 more
Matomo analyticsVidyard video playerWebP imagesCSS with integrity attributes+2

Partner Domains:

community.elekta.com
partner
ir.elekta.com
partner
2026-07-16T07:20:13.582Z
cibc.com favicon

Canadian Imperial Bank of Commerce

cibc.com

77
FinanceUnited StatesenterpriseLOW

CIBC U.S. operates as a subsidiary of the Canadian Imperial Bank of Commerce, providing a comprehensive suite of commercial and personal banking services, wealth management, and small business financial solutions tailored for the U.S. market. The website reflects a strong market position as part of one of Canada's Big Five banks, targeting a broad audience including individuals, businesses, and investors. The business model focuses on client-centric financial services with an emphasis on trust and long-term relationships. Technically, the website leverages modern web technologies including Adobe Experience Manager CMS, Adobe Launch for tag management, and OneTrust for cookie consent, indicating a mature digital infrastructure. The site is hosted on Akamai's CDN, ensuring fast performance and global availability. Accessibility and SEO best practices are well implemented, with responsive design and structured data enhancing user experience and search visibility. From a security perspective, the site enforces HTTPS, employs multiple security headers, and integrates secure sign-on portals for various banking services. While explicit security policies and incident response contacts are not published, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is robust, with clear privacy and cookie policies aligned with GDPR requirements. Overall, the website demonstrates a high level of professionalism, security, and compliance suitable for a major financial institution. Strategic recommendations include publishing detailed security policies, vulnerability disclosure information, and incident response contacts to further enhance transparency and trust.

90
85
100
82
80
73
17
bankingfinancecommercialbankingpersonalbankingwealthmanagement+4 more
jQueryAdobe Launch (Adobe DTM)Adobe Helix RUMOneTrust Cookie Consent+1

Partner Domains:

cibc.com
parent
online.us.cibc.com
subsidiary

+2 more partners

2026-07-16T07:17:09.018Z
hsbc.com favicon

HSBC Holdings plc

hsbc.com

78
FinanceUnited KingdomenterpriseLOW

HSBC Holdings plc operates as one of the world's largest banking and financial services organizations, serving millions of customers globally through its four main business lines: Retail Banking and Wealth Management, Commercial Banking, Global Banking and Markets, and Global Private Banking. The company maintains a strong market position with a legacy dating back to 1865 and a significant presence in key financial markets. The website reflects this stature with comprehensive investor relations, corporate governance, and sustainability information targeted at investors, customers, and partners. Technically, the HSBC website employs modern JavaScript libraries such as VideoJS and Tealium for tag management and analytics, indicating a mature digital infrastructure. The site is well-optimized for mobile devices, accessible, and SEO-friendly, with robust privacy and cookie consent mechanisms in place. HTTPS is enforced with security best practices like anti-clickjacking scripts, contributing to a secure user experience. From a security perspective, HSBC demonstrates a strong posture with appropriate security headers, encrypted communications, and compliance with privacy regulations including GDPR. However, explicit incident response and vulnerability disclosure policies are not publicly evident, representing an area for improvement. The WHOIS data is unavailable due to privacy or registry restrictions, which is common for large financial institutions to protect sensitive registration details. Overall, HSBC's website is professional, trustworthy, and secure, reflecting the company's global reputation. Strategic recommendations include enhancing transparency around security incident response and vulnerability reporting to further strengthen trust and compliance.

85
72
80
100
85
17
95
bankingfinancecorporateinvestorsprivacy+2 more
JavaScriptVideoJSTealium Tag Management

Partner Domains:

hangseng.com
subsidiary
about.hsbc.com.hk
partner
2026-07-12T07:11:30.478Z
grayreed.com favicon

Gray Reed

grayreed.com

76
OtherUnited StateslargeLOW

Gray Reed is a well-established Texas-based full-service law firm with offices in Dallas, Houston, and Waco. The firm offers a broad range of legal services including litigation, compliance, transactional law, and family law, targeting businesses and individuals primarily within Texas. Their website reflects a professional and business-oriented approach, emphasizing personalized client service and industry expertise. The firm maintains an active digital presence with embedded multimedia content and social media integration, supporting their market positioning as a trusted regional legal advisor. Technically, the website is built on the Intelliun VE CMS platform and leverages modern web technologies such as jQuery, FontAwesome, and Google Analytics for tracking. The site is mobile-optimized and provides a good user experience with clear navigation and relevant content. However, some technical improvements could be made in accessibility and security headers to enhance overall robustness. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms, indicating awareness of privacy regulations like GDPR. Nonetheless, the absence of visible security headers and lack of explicit security or incident response policies suggest room for improvement in security posture. The WHOIS data is notably missing, which raises questions about domain registration transparency but does not necessarily indicate malicious intent given the professional nature of the site. Overall, Gray Reed's website presents a credible and professional front for their legal services, with moderate technical maturity and a generally good security baseline. Strategic enhancements in security policies, transparency, and contact information visibility would further strengthen trust and compliance.

77
85
85
100
60
73
47
lawfirmlegalservicestexasattorneyslitigationcompliance+4 more
jQuery 3.7.1jQuery UI 1.14.0FontAwesome 5.1.0Google Analytics+1

Partner Domains:

www.grayreedadvisory.com
partner
www.grayreedfoundation.org
partner
2026-07-11T07:22:32.790Z
genesys.com favicon

Genesys

genesys.com

78
TechnologyUnited StatesenterpriseLOW

Genesys is a leading enterprise technology company specializing in omnichannel customer experience and contact center solutions. Trusted by over 10,000 companies worldwide, Genesys offers AI-powered cloud-based platforms designed to enhance customer engagement and operational efficiency. The company positions itself as a market leader with a comprehensive suite of services tailored for large organizations seeking advanced customer experience management. The website reflects a mature digital presence with professional branding and clear communication of its offerings. Technically, the website employs modern web technologies including Bootstrap 5, jQuery, and personalization tools like Intellimize. It is built on WordPress CMS and leverages CDNs for performance optimization. The site demonstrates excellent mobile responsiveness, accessibility, and SEO practices, indicating a high level of digital maturity and user experience focus. From a security perspective, Genesys maintains strong practices including HTTPS enforcement, comprehensive security headers, and adherence to recognized frameworks such as ISO 27001 and SOC 2. The presence of detailed privacy, cookie, and security policies, along with incident response contacts, underscores a robust security posture. No significant vulnerabilities or exposed sensitive data were detected. Overall, Genesys presents a low-risk profile with a professional and trustworthy online presence. The only notable gap is the absence of publicly available WHOIS registration data, which may be due to privacy protection but does not detract from the company's legitimacy given its enterprise stature and compliance indicators.

77
85
100
82
60
47
85
customerexperiencecontactcenteraicloudenterprisesoftware+1 more
JavaScriptBootstrap 5jQueryIntellimize (A/B testing and personalization)+1
2026-07-11T07:14:59.060Z
foulston.com favicon

Foulston Siefkin LLP

foulston.com

76
OtherUnited StateslargeLOW

Foulston Siefkin LLP is the largest Kansas-based law firm, providing a broad range of legal services including corporate and business law, healthcare law, litigation, and employment law. The firm targets businesses and individuals seeking professional legal counsel, positioning itself as a leading regional legal service provider with a strong market presence in Kansas and surrounding areas. Their website reflects a professional and comprehensive approach, featuring detailed practice areas, attorney search capabilities, and client testimonials, supporting their market leadership claims. Technically, the website employs modern web technologies such as jQuery, Bootstrap, Owl Carousel, and integrates Google Tag Manager and CookieYes for analytics and privacy compliance. The site is mobile-optimized, accessible, and SEO-friendly, with structured data enhancing search engine understanding. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS and cookie consent mechanisms effectively, but lacks visible security headers and explicit security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the provided content. The absence of WHOIS data is a notable anomaly that warrants further investigation to confirm domain registration legitimacy. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance, though improvements in security policy transparency and domain registration verification are recommended to enhance trust and security posture.

47
80
80
100
47
83
90
lawfirmlegalservicescorporatelawhealthcarelawlitigation+3 more
jQueryBootstrap 4.3.1Owl CarouselCookieYes Consent Management+1
2026-07-10T07:12:29.296Z
paypal.com favicon

PayPal

paypal.com

80
FinanceGermanyenterpriseLOW

PayPal is a leading global online payment platform offering digital wallet services, payment processing, and flexible payment options including buy now pay later and installment plans. The website targets both private consumers and business customers in Germany, providing localized content and services. The site demonstrates strong branding consistency and professional content quality, reflecting PayPal's market position as a trusted financial technology provider. Technically, the site uses modern JavaScript frameworks, proprietary PayPal components, and integrates analytics and monitoring tools such as Datadog and Google Analytics. Hosting appears to be via Fastly edge servers, ensuring fast and reliable performance. Security posture is strong with HTTPS enforced, anti-clickjacking measures, and no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with accessible privacy and cookie policies and GDPR adherence. WHOIS data is unavailable due to registry restrictions, but this does not detract from the site's legitimacy given PayPal's global brand recognition. Overall, the website is secure, compliant, and professionally maintained, supporting PayPal's business objectives effectively.

100
82
82
90
80
17
100
financepaymentsdigitalwallete-commercesecurity+3 more
JavaScriptReact (implied by component names)Datadog RUMGoogle Tag Manager+2

Partner Domains:

developer.paypal.com
partner
newsroom.deatch.paypal-corp.com
partner

+1 more partners

2026-07-09T07:21:43.988Z
teradata.com favicon

Teradata

teradata.com

77
TechnologyUnited StatesenterpriseLOW

Teradata is a leading enterprise technology company specializing in AI-driven autonomous knowledge platforms that enable large organizations to connect, analyze, and operationalize data at scale. Their platform supports multi-modal data integration, AI operationalization, and autonomous decision-making, positioning them as a key player in the AI and data analytics market. The website reflects a mature digital presence with comprehensive content, multi-language support, and strong branding consistent with an enterprise-grade technology provider. Technically, the site leverages modern frameworks such as Vue.js, Kentico CMS, and cloud-based monitoring tools like Azure Application Insights, indicating a robust and scalable infrastructure. Security posture is strong with HTTPS enforcement and consent management, though some advanced security headers and public vulnerability disclosures are absent. Overall, the site is professional, trustworthy, and well-optimized for performance and accessibility, though the lack of WHOIS data transparency is a minor concern. Strategic recommendations include enhancing security header implementation, publishing vulnerability disclosure policies, and providing clearer incident response contacts to further strengthen trust and compliance.

98
85
59
100
58
80
47
aidataanalyticsenterprisesoftwarecloudtechnology+1 more
Google Tag ManagerAzure Application InsightsLottie Web animationsIntellimize personalization+2

Partner Domains:

investor.teradata.com
subsidiary
support.teradata.com
subsidiary

+3 more partners

2026-07-09T07:16:13.022Z
macroberts.com favicon

Morton Fraser MacRoberts LLP

macroberts.com

76
OtherUnited KingdomlargeLOW

Morton Fraser MacRoberts LLP (MFMac) is a leading Scottish law firm providing expert legal services to businesses, the public sector, and individuals. The firm is well-positioned in the Scottish legal market, recognized by prestigious legal directories such as Chambers and Partners and Legal 500. Their services span multiple sectors including energy, real estate, public sector, manufacturing, and healthcare. The website reflects a professional and comprehensive digital presence with clear navigation, rich content, and strong branding consistency. Technically, the website leverages modern technologies including Umbraco CMS, Google Tag Manager, Microsoft Application Insights, Hotjar, and Usercentrics for consent management. The site is mobile-optimized, accessible, and SEO-friendly. Security posture is strong with HTTPS enforced, security headers present, and use of reCAPTCHA on forms. Privacy compliance is well addressed with detailed policies and consent mechanisms. The WHOIS data is unavailable, which limits transparency on domain registration details. However, the website content and business information strongly indicate legitimacy and professionalism. No critical security vulnerabilities or compliance gaps were detected. Overall, the site demonstrates a mature digital infrastructure suitable for a large professional services firm.

67
83
80
100
70
55
70
lawfirmlegaladvisorsscottishlawlegalservicesemploymentlaw+5 more
JavaScriptjQueryGoogle Tag ManagerGoogle Analytics (gtag.js)+5
2026-07-09T07:10:52.595Z
I

Institute of Risk Management (IRM)

theirm.org

78
Non-profitN/amediumLOW

The Institute of Risk Management (IRM) is a leading professional body specializing in risk management qualifications, training, advisory services, and publications. It serves a global audience of risk professionals and organizations seeking to enhance their risk management capabilities. The website reflects a mature digital presence with comprehensive content, clear navigation, and professional branding. The organization maintains a strong market position as a trusted provider of risk management education and community services. Technically, the site leverages a modern technology stack including AngularJS, jQuery, HubSpot, and multiple analytics and marketing tools. It uses Umbraco CMS and integrates various third-party scripts for tracking and user engagement. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and security header implementation. From a security perspective, the website enforces HTTPS, uses secure login forms with anti-forgery tokens, and implements cookie consent mechanisms compliant with GDPR. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are absent, representing areas for enhancement. No critical vulnerabilities or exposed sensitive data were detected. Overall, the IRM website presents a low-risk profile with strong business credibility and good privacy compliance. The lack of WHOIS data due to privacy protection is typical for professional organizations and does not detract from the site's legitimacy. Strategic recommendations include enhancing security headers, publishing incident response and vulnerability disclosure policies, and improving accessibility features to further strengthen trust and compliance.

73
72
70
100
83
85
55
riskmanagementqualificationstrainingmembershipevents+3 more
jQueryAngularJSGoogle Tag ManagerGoogle Analytics+7

Partner Domains:

irm-advisory.com
partner
enterpriseriskmag.com
partner
2026-07-05T07:20:53.323Z