Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 1 of 241|Showing 1-50 of 12039
knoxed.com favicon

Knoxed Limited

knoxed.com

52
OtherN/asmallMEDIUM

Knoxed Limited operates a global digital platform with regional homepages for the United Kingdom, India, United Arab Emirates, and Germany. The website serves as a gateway for users to select their region, suggesting a geographically segmented service offering. The business model appears to focus on providing localized digital experiences, though specific services are not detailed on the landing page. The company presents itself professionally with consistent branding and a modern design aesthetic. Technically, the website uses modern web technologies including JavaScript ES modules and CSS, with a responsive design suitable for mobile devices. However, there is no evidence of a content management system or advanced frameworks. Performance is moderate, and accessibility features are basic. The absence of security headers and lack of visible SSL/TLS configuration details indicate potential security gaps. From a security perspective, the site lacks critical elements such as privacy and cookie policies, contact information, and incident response details. The WHOIS data is missing or inaccessible, which raises concerns about domain legitimacy and trustworthiness. No forms or data collection mechanisms are present on the landing page, reducing immediate data exposure risks but also limiting user engagement. Overall, the website is functional and visually appealing but suffers from significant trust and compliance deficiencies. Strategic improvements in domain registration transparency, security hardening, and privacy compliance are recommended to enhance credibility and reduce risk.

57
40
85
85
45
2
50
globalregionaldigitalplatformlandingpage
JavaScript ES ModulesCSSHTML5
2026-06-22T07:21:40.339Z
crystalclear.me.uk favicon

Crystal Clear Cleaning & Property Maintenance Services

crystalclear.me.uk

51
OtherUnited KingdomsmallMEDIUM

Crystal Clear Cleaning & Property Maintenance Services is a small, family-run business based in Epsom, Surrey, specializing in commercial and residential cleaning services including window cleaning, carpet cleaning, and office cleaning. The company serves clients primarily in Surrey and Greater London, emphasizing customer satisfaction and eco-friendly practices. Their market position is that of a trusted local service provider with nearly a century of combined experience within the company. The website reflects a straightforward business model focused on service delivery to local residential and commercial customers. Technically, the website is built with basic HTML, CSS, and JavaScript, incorporating Google Analytics for visitor tracking. The site lacks modern CMS or frameworks and shows basic mobile optimization and accessibility. Performance is moderate, with no advanced technical features or optimizations detected. SEO is basic but present through meta tags and structured navigation. From a security perspective, the site does not explicitly confirm HTTPS usage in the provided data, and no security headers are detected. There is no visible incident response or security policy information, and cookie consent mechanisms are absent despite the presence of a cookie policy page. The site does not expose sensitive data or use vulnerable libraries, but security posture is basic and could be improved significantly. Overall, the website is functional and trustworthy for its business purpose but would benefit from enhanced security measures, privacy compliance improvements, and modernization of technical infrastructure to reduce risk and improve user experience.

65
20
60
62
68
17
40
cleaningpropertymaintenancelocalbusinessepsomkingston+1 more
HTMLCSSJavaScriptGoogle Analytics (ga.js)
2026-06-22T07:21:24.544Z
facebook.com favicon

Meta Platforms, Inc.

facebook.com

75
TechnologyUnited StatesenterpriseMEDIUM

Facebook, operated by Meta Platforms, Inc., is a leading global social networking platform founded in 2004. It enables users worldwide to connect, share content, and communicate through various services including messaging and marketplace. The platform's business model is primarily advertising-based, leveraging extensive user data to deliver targeted ads. Facebook holds a dominant market position in social media with a large enterprise-scale operation and multiple subsidiaries such as Instagram and WhatsApp. Technically, Facebook employs a modern and sophisticated technology stack including React, Relay, and GraphQL, ensuring fast performance, mobile optimization, and good accessibility. The website is well-structured with comprehensive meta tags and SEO practices, reflecting a mature digital infrastructure. From a security perspective, Facebook demonstrates strong security posture with HTTPS enforcement, robust security headers, and secure cookie practices. No significant vulnerabilities were detected in the analyzed content. Privacy compliance is robust, with clear privacy and cookie policies aligned with GDPR requirements. However, direct contact information for security or incident response was not found on the landing page. Overall, Facebook presents a low-risk profile with high trustworthiness, excellent content quality, and strong business credibility. Strategic recommendations include maintaining continuous security audits, enhancing transparency in incident response contacts, and ongoing compliance monitoring to uphold user trust and regulatory adherence.

98
100
34
90
85
17
88
socialmediatechnologynetworkingadvertisingcommunication
ReactRelayGraphQLJavaScript+2

Partner Domains:

instagram.com
subsidiary
whatsapp.com
subsidiary

+1 more partners

2026-06-22T07:17:43.340Z
rand.org favicon

RAND Corporation

rand.org

70
Non-profitUnited StateslargeMEDIUM

RAND Corporation is a large, well-established nonprofit research organization founded in 1948, focused on providing objective research and public policy analysis across a broad range of sectors including health, education, national security, and international affairs. The organization operates multiple research divisions both in the U.S. and internationally, serving government agencies, policymakers, and the public with evidence-based insights and solutions. The website reflects this mission with comprehensive content, expert commentary, and resources such as newsletters and podcasts. Technically, the website is built on Adobe Experience Manager, leveraging modern web technologies including Adobe DTM for tag management, Google reCAPTCHA for form security, and Chartbeat for analytics. The site is mobile-optimized, accessible, and SEO-friendly, with good performance and clear navigation. Privacy and terms of service are well documented, though cookie policy visibility could be improved. From a security perspective, the site enforces HTTPS, uses reCAPTCHA to protect forms, and employs Adobe's tag management system. However, explicit security headers are not clearly visible in the HTML, and there is no published security policy or vulnerability disclosure program. No critical vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable due to query failure or privacy protection, but the website's legitimacy is supported by its consistent branding, professional content, and trust signals. Overall, RAND.org presents a trustworthy, professional, and secure online presence appropriate for a major nonprofit research institution. Strategic improvements could include publishing a dedicated security policy, enhancing cookie consent mechanisms, and adding a vulnerability disclosure channel to further strengthen trust and compliance.

80
53
17
85
79
60
100
independentobjectiveresearchpublicpolicynationalsecurity+4 more
Adobe DTMGoogle reCAPTCHAChartbeatGoogle Tag Manager+3

Partner Domains:

rand.edu
partner
randeurope.org
subsidiary

+1 more partners

2026-06-19T09:27:34.524Z
bajotecho.com.mx favicon

Bajotecho

bajotecho.com.mx

63
Real EstateMexicosmallMEDIUM

Bajotecho is a professional real estate agency based in Mexico, specializing in the buying and selling of properties with a focus on personalized service and certified expertise through AMPI. The company offers comprehensive services including professional photography, social media marketing, legal and fiscal advisory, and client support to maximize property value. Their market position is that of a trusted, small-sized agency with a clear emphasis on quality and client trust. Technically, the website is built on a modern Next.js framework with React, ensuring fast performance, mobile optimization, and good accessibility. The site uses HTTPS with strong security headers, indicating a solid security posture. However, there is no visible cookie consent mechanism or published security/incident response policies, which are areas for improvement. Security-wise, the site demonstrates good practices such as secure forms and no exposed sensitive data, but the absence of WHOIS data limits full trust verification of the domain. The privacy policy is comprehensive and GDPR compliant, supporting privacy compliance. Overall, the website is professional and trustworthy but would benefit from enhanced transparency in security and privacy mechanisms. Strategically, Bajotecho should focus on publishing terms of service, cookie consent, and security policies to improve compliance and trust. Verifying and publishing domain registration details would also enhance legitimacy. These steps will strengthen their security posture and business credibility in the competitive real estate market.

90
35
17
60
57
65
100
realestateinmobiliariapropertysalesampicertifiedmexico+1 more
Next.jsReactJavaScriptCSS+1
2026-06-17T08:55:26.349Z
proton.me favicon

Proton AG

proton.me

69
TechnologySwitzerlandlargeMEDIUM

Proton AG is a Swiss technology company specializing in privacy-focused digital services including encrypted email, calendar, cloud storage, password management, VPN, and authentication solutions. With over 100 million users worldwide, Proton positions itself as a leader in privacy and security, leveraging Swiss privacy laws and open source transparency to build trust. Their business model is freemium, offering free accounts with paid upgrades for enhanced features. The company targets privacy-conscious individuals and businesses globally. Technically, Proton employs modern web technologies including React and the Astro framework, delivering a fast, mobile-optimized, and accessible website. Their infrastructure supports multiple platforms including web, mobile, and desktop. The website demonstrates strong SEO and performance characteristics, with a consistent and professional design. From a security perspective, Proton enforces HTTPS, implements multiple security headers, and follows best practices such as prohibiting unauthorized domain changes. Their services emphasize end-to-end encryption and privacy by design. However, DNSSEC is not enabled, and explicit incident response contacts or vulnerability disclosure mechanisms are not prominently published. Overall, Proton exhibits a mature security posture and strong business credibility. The website is trustworthy, well-maintained, and compliant with GDPR. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing transparency around incident response and certifications to further strengthen trust and security culture.

65
53
2
80
72
90
100
privacysecurityencryptedemailvpncloudstorage+4 more
ReactAstro frameworkJavaScriptCSS+3

Partner Domains:

protonvpn.com
service
simplelogin.io
partner

+2 more partners

2026-05-09T23:11:10.846Z
removebgvideo.com favicon

RemoveBGVideo

removebgvideo.com

66
TechnologyN/asmallMEDIUM

RemoveBGVideo is a newly founded technology company specializing in AI-powered video background removal services. Positioned as a leading solution in its niche, it offers advanced features such as 4K video support, multiple export formats, and GPU-accelerated processing. The company targets content creators, influencers, and businesses seeking professional video editing tools without the complexity of green screens. Their business model is pay-as-you-go with transparent pricing and no subscription fees, making it accessible and flexible for various user needs. Technically, the website is built on modern web technologies including React and Next.js, hosted behind Cloudflare DNS and CDN services. It integrates analytics and tracking tools like Google Tag Manager and Microsoft Clarity to monitor user interactions and optimize performance. The site demonstrates excellent design quality, mobile responsiveness, and SEO optimization, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and employs domain transfer protection. However, it lacks DNSSEC and explicit security headers, and does not publish a dedicated security or incident response policy. Privacy compliance is partially addressed with a comprehensive privacy policy, but no cookie consent mechanism is present. The domain WHOIS data is transparent and consistent with the business claims, enhancing trustworthiness. Overall, RemoveBGVideo presents a professional, secure, and user-friendly platform with strong market positioning. Strategic improvements in security policies and privacy mechanisms would further enhance its credibility and compliance posture.

70
53
17
70
59
70
100
aivideobackgroundremovalmultimediatechnologyonlineservice+2 more
ReactNext.jsCloudflare DNSGoogle Tag Manager+3

Partner Domains:

theresanaiforthat.com
partner
submitaitools.org
partner

+2 more partners

2026-04-18T00:11:30.734Z
happy-horse.pro favicon

Happy Horse

happy-horse.pro

60
TechnologyN/asmallMEDIUM

Happy Horse is an AI-driven video generation platform specializing in transforming text prompts, images, and reference clips into engaging videos with advanced creative controls. Positioned as a competitive SaaS offering in the AI video generation market, it targets content creators, marketers, educators, and e-commerce professionals seeking fast and flexible video production solutions. The platform offers multiple pricing plans based on credits, including subscriptions and one-time purchases, emphasizing ease of use and creative flexibility. Technically, the website is built on modern web technologies including Next.js and React, with integrations for analytics via Google Tag Manager and Microsoft Clarity. The site demonstrates good mobile optimization and SEO practices, though some accessibility features are basic. Hosting appears to leverage CDN services for media delivery, ensuring moderate performance. From a security perspective, the site enforces HTTPS and mentions encrypted checkout processes, but lacks visible security headers and formal privacy or cookie policies. No contact information for security or data protection officers is provided, and no vulnerability disclosure or security.txt files are found. These gaps suggest room for improvement in compliance and transparency. Overall, the website is professional and trustworthy with high-quality content and user testimonials. The domain registration is privacy protected but consistent with the business profile. The risk level is moderate with recommendations to enhance privacy compliance, security transparency, and contact availability to strengthen trust and regulatory adherence.

15
53
47
70
37
75
100
aivideogeneratorsaastechnologycreativetools+2 more
React (Next.js)JavaScriptCSSGoogle Tag Manager+1

Partner Domains:

cdn.seedanceai2.pro
service
cdn.seedance2video.com
service

+3 more partners

2026-04-15T13:08:24.766Z
cert.lv favicon

CERT.LV

cert.lv

61
GovernmentLatviamediumMEDIUM

CERT.LV is the official Latvian government institution responsible for cybersecurity incident response and IT security awareness in Latvia. It serves as the national CERT/CSIRT, providing critical services such as incident handling, vulnerability coordination, security advisories, and training. The website reflects a professional government agency with a clear mission to enhance IT security across public and private sectors in Latvia. The target audience includes government entities, IT professionals, and the general public interested in cybersecurity. The institution holds a strong market position as the authoritative cybersecurity body in Latvia, supported by partnerships with international organizations like FIRST and Trusted Introducer. Technically, the website employs standard web technologies including HTML5, CSS, JavaScript, and integrates Google Analytics for visitor tracking. The site is mobile-optimized and accessible, with a clear navigation structure and cookie consent mechanisms compliant with GDPR. While no CMS or hosting provider is explicitly identified, the site demonstrates moderate performance and good SEO practices. Security posture is strong with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. However, security headers are not explicitly detected, and the site lacks a security.txt file for vulnerability disclosure. The security posture is robust, reflecting the nature of a government cybersecurity entity. The site provides incident response information and vulnerability disclosure processes, though dedicated security contact emails are not visible. The cookie policy and privacy policy are comprehensive and GDPR compliant. No critical vulnerabilities or suspicious patterns were detected. The domain WHOIS data is consistent with the website's official status, showing active domain status and matching authoritative name servers. Overall, CERT.LV presents a trustworthy, professional, and secure web presence aligned with its mission. Strategic recommendations include implementing security headers, publishing a security.txt file, enhancing incident response contact channels, and considering a Terms of Service page to improve transparency and compliance.

80
10
17
70
54
70
100
cybersecurityincidentresponsegovernmentcertlatvia+2 more
HTML5CSSJavaScriptGoogle Analytics

Partner Domains:

dnsmuris.lv
partner
cvd.cert.lv
partner

+3 more partners

2026-04-05T18:04:13.040Z
E

Edgars Bruģis

brugisfoto.lv

51
OtherLatviasmallMEDIUM

Edgars Bruģis operates a professional photography website based in Latvia, showcasing a portfolio that includes cityscape, portrait, product, and nature photography. The business targets a general audience seeking photography services and positions itself as a local professional photographer. The website is well-structured with clear navigation and consistent branding, providing essential contact information including email and phone number. The technical infrastructure is straightforward, relying on standard HTML, CSS, and JavaScript, hosted on a Latvian hosting provider as indicated by the nameservers. The site demonstrates good mobile optimization and SEO practices but lacks advanced frameworks or CMS indications. From a security perspective, the website uses HTTPS as implied by canonical URLs, but no explicit security headers were detected in the provided data. There is no evidence of privacy or cookie policies, which presents compliance gaps especially under GDPR. No forms or data collection mechanisms were found, reducing immediate data protection risks but also limiting user interaction. The absence of incident response contacts or vulnerability disclosure policies suggests limited security maturity. Overall, the security posture is moderate but could be improved with basic security best practices and compliance documentation. The website content is safe for general audiences with no adult or questionable content detected. The business credibility is supported by clear contact details and a professional portfolio presentation. However, the lack of privacy and cookie policies, as well as security headers, slightly reduces trustworthiness. Strategic recommendations include implementing privacy and cookie policies, adding security headers, and establishing vulnerability disclosure mechanisms to enhance compliance and security posture.

80
25
2
70
72
65
20
photographyportfoliolatviaprofessionalservicesportrait+2 more
HTML5CSSJavaScript
2026-04-02T11:19:05.022Z
trimble.com favicon

Trimble Inc.

trimble.com

67
TechnologyUnited StatesenterpriseMEDIUM

Trimble Inc. is a global technology company specializing in solutions that connect the physical and digital worlds across industries such as construction, transportation, geospatial, agriculture, government, and utilities. Their website showcases a comprehensive portfolio of hardware, software, and cloud-based services designed to improve operational efficiency and project outcomes. The company positions itself as a leader in industrial technology with a strong focus on innovation and integration. The technical infrastructure of the website is modern, leveraging React and Gatsby frameworks, with good mobile optimization and accessibility features. The site employs standard enterprise-grade security practices including HTTPS, security headers, and secure form handling. Tracking and analytics tools are used moderately, with privacy and cookie policies in place that indicate GDPR compliance. Security posture is strong with no evident vulnerabilities or exposed sensitive data. However, the absence of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement in transparency and security communication. The WHOIS data is unavailable, which slightly impacts trust but is mitigated by the professional presentation and extensive business information on the site. Overall, the website reflects a mature, enterprise-level digital presence with high content quality and strong business credibility. Strategic recommendations include enhancing security transparency, publishing incident response details, and maintaining vigilance on third-party scripts to sustain security and compliance standards.

65
58
17
88
39
80
100
constructiontransportationgeospatialtechnologyindustrialsolutions+1 more
ReactGatsbyJavaScriptCSS+3

Partner Domains:

geospatial.trimble.com
subsidiary
transportation.trimble.com
subsidiary

+3 more partners

2025-12-17T01:09:09.925Z
F

Fastly, Inc.

fastly.net

73
TechnologyUnited StatesenterpriseMEDIUM

Fastly, Inc. is a leading edge cloud platform provider specializing in content delivery network (CDN), video delivery, cloud security, and edge computing services. The company targets enterprises and developers seeking faster, safer, and more scalable digital experiences. Their market position is strong within the technology and telecommunications sectors, supported by a comprehensive suite of services and certifications such as ISO 27001 and SOC 2 Type II. The website reflects a mature digital presence with excellent content quality, professional design, and clear navigation tailored to their target audience. Technically, Fastly's website is built on modern frameworks like Gatsby and React, hosted on their own edge cloud infrastructure, ensuring fast performance and excellent mobile optimization. The site employs robust security headers and enforces HTTPS, demonstrating a strong security posture. Published security policies, incident response contacts, and a vulnerability disclosure program further reinforce their commitment to security and compliance. The security evaluation reveals no significant vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies, including consent mechanisms and GDPR adherence. Business credibility is high, supported by transparent contact information, certifications, and trust indicators. Overall, the website and domain exhibit high trustworthiness and professionalism. Recommendations include continuous monitoring and updating of third-party libraries, enhancing accessibility features, and maintaining transparency on data retention policies to sustain and improve their security and compliance posture.

65
88
17
85
47
90
100
edgecomputingcdncloudsecurityvideodeliverytechnology+1 more
GatsbyReactJavaScriptCSS
2025-12-10T15:56:54.200Z
S

Cookies zulassen - Symposium Zukunftwärme

solarthermie-symposium.de

48
EnergyGermanysmallHIGH

The website 'Symposium Zukunftwärme' serves as an informational platform focused on the energy sector, specifically future heating technologies. It targets professionals and stakeholders interested in energy innovations and symposium events. The site is built on TYPO3 CMS, indicating a moderate level of technical infrastructure with standard web technologies such as JavaScript and CSS. The website implements a cookie consent mechanism compliant with GDPR, including Google Analytics tracking with user consent. However, it lacks visible contact information, terms of service, and explicit security or incident response policies, which limits transparency and user trust. From a security perspective, the site enforces HTTPS and uses cookie consent banners, but it does not implement advanced security headers or publish detailed security policies. No vulnerabilities or suspicious patterns were detected in the provided content. The website is accessible without WAF or blocking mechanisms, allowing full content analysis. The overall risk is moderate, with recommendations to enhance security headers, publish incident response information, and improve accessibility and SEO. The business appears to be a small, niche event and information platform within the German energy sector. The lack of detailed business contact information and certifications limits the assessment of business credibility. The website content quality and user experience are basic but functional, suitable for its informational purpose.

20
68
2
70
72
60
20
energysymposiumcookiesprivacytypo3
JavaScriptCSS
2025-11-01T16:44:03.831Z
Z

Cookies zulassen - Tagung Zukünftige Stromnetze

zukunftsnetz.net

49
EnergyGermanysmallHIGH

The website 'www.zukunftsnetz.net' serves as an informational platform primarily focused on the 'Zukünftige Stromnetze' conference, targeting professionals in the energy sector interested in future power grid technologies. The site is built on TYPO3 CMS and incorporates modern web technologies including compressed CSS and JavaScript assets. It features a cookie consent mechanism compliant with GDPR, utilizing Google Analytics for user behavior tracking. However, no contact information or terms of service pages were found, which limits direct user engagement and transparency. From a technical perspective, the website demonstrates moderate performance and good mobile optimization. The absence of explicit security headers and lack of visible security or incident response policies indicate room for improvement in security posture. The SSL configuration is excellent, ensuring encrypted communications. The missing WHOIS registration data raises concerns about domain legitimacy and trustworthiness, although the active content and cookie compliance suggest a legitimate operation. Security-wise, the site benefits from HTTPS and cookie consent but lacks advanced security headers and detailed privacy or incident response disclosures. No vulnerabilities or exposed sensitive data were detected in the provided content. Overall, the website is safe for general audiences, with no adult or questionable content. Strategically, the site should enhance transparency by publishing contact details, terms of service, and security policies. Implementing security headers and improving accessibility would strengthen its security and compliance posture. Addressing the WHOIS data anomaly is critical to improve trust and legitimacy perception.

20
68
2
65
72
70
20
energyconferencecookiesprivacytypo3+1 more
TYPO3 CMSJavaScriptCSS
2025-11-01T16:43:23.704Z
urdorf.ch favicon

Gemeinde Urdorf

urdorf.ch

61
GovernmentSwitzerlandsmallMEDIUM

Gemeinde Urdorf operates an official municipal website providing residents and visitors with comprehensive information about local services, politics, events, and community projects. The site serves as a primary digital interface for the municipality, offering online service portals such as an online counter for administrative services, room reservations, and waste disposal information. The target audience primarily consists of local citizens and stakeholders interested in municipal affairs. Technically, the website is built on the i-web.ch CMS platform, utilizing modern web technologies including JavaScript, CSS, and SVG graphics. It incorporates Matomo analytics for privacy-conscious user tracking and demonstrates good mobile optimization and accessibility features. The site uses HTTPS exclusively, ensuring secure data transmission. From a security perspective, the website enforces HTTPS and secure login mechanisms with multi-factor authentication recommendations. However, it lacks explicit security headers like Content-Security-Policy and does not publicly disclose an incident response or vulnerability disclosure policy. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the website is trustworthy and professionally maintained, with clear contact information and privacy policies aligned with GDPR requirements. The domain registration details are consistent with the municipality's identity, reinforcing legitimacy. Strategic improvements could include enhancing security headers and publishing a security contact or security.txt file to improve transparency and incident handling readiness.

40
53
2
75
52
80
100
governmentmunicipalitycommunityservicesswitzerlandprivacy+2 more
JavaScriptCSSMatomo AnalyticsSVG+1

Partner Domains:

eumzug.swiss
partner
swissqualiquest.ch
partner

+3 more partners

2025-11-01T16:20:02.459Z
unterengstringen.ch favicon

Gemeinde Unterengstringen

unterengstringen.ch

59
GovernmentSwitzerlandsmallMEDIUM

The website www.unterengstringen.ch serves as the official digital presence of the municipality of Unterengstringen in Switzerland. It provides residents and visitors with comprehensive information about local governance, services, events, and community news. The site targets local citizens and stakeholders seeking municipal services and updates. The business model is that of a government information portal, focusing on transparency and service facilitation. Technically, the website is built on the i-web.ch CMS platform, utilizing modern web technologies including JavaScript and CSS, with Matomo analytics integrated for user behavior insights. The site is mobile-optimized, accessible, and SEO-friendly, ensuring a good user experience across devices. Hosting and content delivery appear to be managed by i-web.ch, a Swiss hosting provider. From a security perspective, the site enforces HTTPS and uses secure login forms for user accounts. While no advanced security headers were detected, no vulnerabilities or exposed sensitive data were found. Privacy compliance is addressed with a clear privacy policy and cookie consent mechanism, aligning with GDPR requirements. However, the site lacks a dedicated security policy and incident response contact information. Overall, the website presents a low-risk profile with strong business credibility and good technical implementation. Strategic recommendations include enhancing security headers, publishing a security policy, and providing incident response contacts to further strengthen trust and compliance.

40
53
2
70
52
75
100
governmentmunicipalitycommunityservicesinformation+2 more
JavaScriptCSSMatomo Analytics
2025-11-01T16:19:52.406Z
lindau.ch favicon

Gemeinde Lindau

lindau.ch

58
GovernmentSwitzerlandsmallMEDIUM

Gemeinde Lindau operates an official municipal website providing comprehensive information and services to its residents and interested parties. The site covers a broad range of topics including local politics, administration, public services, events, education, and community life. It serves as a primary digital touchpoint for the municipality, offering online service access such as an online counter for administrative tasks and room reservations. The website targets local citizens and stakeholders seeking municipal information and services. Technically, the website employs modern web technologies including Bootstrap for responsive design, JavaScript modules, and a Swiss-based CMS platform (i-web.ch). The site is well-structured, mobile-optimized, and includes accessibility features such as skip links and ARIA roles. Performance is moderate with efficient use of images and scripts. SEO is adequately addressed with meta tags and structured navigation. From a security perspective, the site enforces HTTPS and uses secure form submissions for login. It includes a cookie consent mechanism aligned with GDPR requirements and anonymizes web analytics data. However, explicit security headers are not detected, and no public security or incident response policies are available. No vulnerabilities or exposed sensitive data were found in the content. The WHOIS data confirms the domain's legitimacy and consistency with the municipality's identity. Overall, the website presents a low-risk profile with good privacy compliance and business credibility. Strategic improvements could include adding explicit security policies, incident response contacts, and enhanced security headers to further strengthen the security posture.

40
53
2
70
42
75
100
governmentmunicipalitypublicservicesswitzerlandlocaladministration
JavaScriptCSSBootstrapjQuery (likely via legacy scripts)+2
2025-11-01T16:19:17.270Z
aesch-zh.ch favicon

Gemeindeverwaltung Aesch ZH

aesch-zh.ch

59
GovernmentSwitzerlandsmallMEDIUM

The website www.aesch-zh.ch serves as the official digital presence of the municipality of Aesch in the canton of Zurich, Switzerland. It provides residents and visitors with comprehensive information about local governance, services, events, and administrative procedures. The site is well-structured, targeting local citizens and stakeholders, offering key services such as an online service counter, official publications, event listings, and contact options. The business model is focused on public service and community engagement, positioning itself as a trusted local government resource. From a technical perspective, the site employs a modern CMS platform (i-web CMS) with standard web technologies including JavaScript, CSS, and HTML5. It integrates Matomo analytics for privacy-conscious visitor tracking and demonstrates good mobile optimization and accessibility features. Performance is moderate, with room for improvement in loading speed and technical modernization. Security posture is adequate with HTTPS enforced and secure form handling. However, the absence of explicit security headers and a published security policy or incident response contact reduces the overall security maturity. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place, aligning with GDPR requirements. Overall, the website is a professional, trustworthy municipal platform with good content quality and user experience. Strategic improvements in security headers, incident response transparency, and technical performance could enhance its security and operational resilience.

75
70
53
100
2
40
52
municipalitygovernmentpublicservicescommunityswitzerland+1 more
JavaScriptCSSHTML5Matomo Analytics
2025-11-01T16:17:29.260Z