Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 1 of 42|Showing 1-50 of 2069
pentagen.cz favicon

PentaGen s.r.o.

pentagen.cz

56
HealthcareCzech RepublicsmallMEDIUM

PentaGen s.r.o. is a specialized Czech company founded in 2006, focused on the supply and distribution of products for laboratory diagnostics and in vitro fertilization (IVF). The company targets laboratories, medical professionals, and IVF clinics primarily in the Czech Republic and Slovakia. Their business model is B2B distribution of specialized medical and genetic diagnostic products, supported by technical services and product expertise. The website reflects a professional and consistent brand image with clear navigation and relevant content for their niche market. Technically, the website employs modern JavaScript frameworks such as Vue.js and uses Google Tag Manager for analytics. It is hosted on Czech hosting infrastructure (Forpsi) and shows good mobile optimization and SEO practices. The site uses HTTPS with strong SSL configuration and implements cookie consent mechanisms aligned with GDPR requirements. However, explicit security headers and a published security policy are absent. From a security perspective, the site demonstrates good practices including secure forms with captcha and GDPR consent, no exposed sensitive data, and minimal user tracking. The absence of a vulnerability disclosure policy or incident response contact limits transparency in security management. No WAF or blocking mechanisms were detected, and the WHOIS data is consistent with the business claims, indicating a trustworthy domain. Overall, the website scores well in content quality, technical implementation, security posture, privacy compliance, and business credibility. Recommendations include adding security headers, publishing a security policy, and establishing a vulnerability disclosure channel to enhance trust and security posture further.

85
40
2
90
52
80
20
healthcarelaboratorydiagnosticsivfmedicalsuppliesgenetics+1 more
JavaScriptVue.jsGoogle Tag ManagerSwiper.js+1
2025-11-01T15:26:02.267Z
uochb.cz favicon

Institute of Organic Chemistry and Biochemistry of the CAS

uochb.cz

61
EducationCzech RepubliclargeMEDIUM

The Institute of Organic Chemistry and Biochemistry of the CAS is a prominent Czech academic research institution specializing in organic chemistry and biochemistry. It operates under the Czech Academy of Sciences and offers extensive research programs, including PhD and postdoctoral opportunities, as well as technology transfer initiatives. The website reflects a well-established organization with a strong academic and scientific focus, targeting researchers, students, and industry collaborators. Technically, the website employs modern web technologies such as Vue.js and integrates multiple third-party services including Google Analytics, Facebook SDK, and Twitter widgets. The site is mobile-optimized, accessible, and features a comprehensive cookie consent mechanism, demonstrating a mature digital infrastructure. From a security perspective, the site enforces HTTPS and anonymizes user data in analytics. However, it lacks explicit published security policies, incident response plans, and vulnerability disclosure information. The absence of WHOIS data limits domain trust verification, though the website content and branding are professional and consistent with a legitimate academic entity. Overall, the website presents a low-risk profile with strong content quality and privacy compliance, but would benefit from enhanced transparency in security policies and domain registration details.

35
40
17
70
67
75
100
researchorganicchemistrybiochemistryacademicscience+3 more
JavaScriptVue.jsCookieConsent.jsGoogle Analytics+3

Partner Domains:

iocb.boston
subsidiary
2025-11-01T11:32:30.327Z
A

Auto Schmid AG

mercedes-benz-unterentfelden.ch

11
TransportationSwitzerlandmediumCRITICAL

Auto Schmid AG operates as an authorized Mercedes-Benz dealership in Switzerland, providing a comprehensive range of automotive services including new and used vehicle sales, leasing, financing, and after-sales services. The company benefits from strong brand association with Mercedes-Benz Schweiz AG, leveraging official product information and service offerings. The website targets car buyers and Mercedes-Benz customers in the Swiss market, offering a professional and user-friendly digital experience. Technically, the website is built on a modern stack including Vue.js and Web Components, hosted on Mercedes-Benz's OneWeb platform with Adobe Experience Manager as the CMS. It demonstrates good performance, mobile optimization, and accessibility. The site employs advanced analytics and marketing tools such as Google Analytics 360, Datadog RUM, and Salesforce marketing suites, with appropriate cookie consent mechanisms. From a security perspective, the site enforces HTTPS, uses strong security headers, and avoids exposing sensitive data. However, it lacks explicit security policy and incident response information, which could be improved. Privacy compliance is robust, with comprehensive privacy and cookie policies aligned with GDPR and Swiss data protection laws. Contact information is transparent and complete, including a named data protection officer. Overall, the website presents a trustworthy, professional, and secure online presence for Auto Schmid AG, supporting its business objectives effectively. Strategic enhancements in security transparency and incident response readiness would further strengthen its posture.

-
-
-
-
-
-
-
automotivemercedes-benzcardealershipleasingservice+2 more
Vue.jsWeb ComponentsGoogle Tag ManagerDatadog RUM+1

Partner Domains:

www.mercedes-benz.ch
partner
www.autoscout24.ch
partner
2025-11-01T09:44:18.364Z
severna-apartments.sk favicon

Severná Apartments

severna-apartments.sk

52
Real EstateSlovakiasmallMEDIUM

Severná Apartments is a small hospitality business offering stylish apartment rentals in the Tatras region of Slovakia, specifically in Banská Bystrica and Poprad. The website presents a professional and modern digital presence with clear descriptions of their accommodation services, targeting tourists and visitors seeking quality lodging. The business appears recently established in 2025, consistent with the domain registration date. Technically, the website leverages modern frontend technologies such as Vue.js and Livewire, integrates Google Tag Manager and analytics tools, and implements a service worker for progressive web app capabilities. The site is mobile optimized and uses DNSSEC and HTTPS, indicating a good level of technical maturity. SEO and metadata are well implemented, enhancing discoverability. From a security perspective, the site enforces HTTPS and DNSSEC, uses a comprehensive cookie consent mechanism aligned with GDPR, and avoids exposing sensitive data. However, it lacks explicit security headers and does not provide visible security policies or incident response contacts, which are areas for improvement. No vulnerabilities or suspicious content were detected. Overall, the website scores well in content quality, technical implementation, and security posture, but could enhance business credibility by providing clearer contact information and formal policies. Strategic recommendations include adding security headers, publishing security and incident response policies, and improving transparency with contact details to strengthen trust and compliance.

85
25
2
85
72
45
20
apartmentaccommodationslovakiahospitalityrealestate+3 more
Vue.jsLivewireGoogle Tag ManagerCookieConsent.js+1
2025-11-01T07:30:06.259Z
hauzi.pl favicon

Zakwaterowanie w Czechach i na Słowacji (5000+) - Hauzi.pl

hauzi.pl

46
HospitalityPolandmediumHIGH

Hauzi.pl is an online accommodation search and booking platform primarily targeting travelers seeking lodging in Slovakia and the Czech Republic. The website offers a comprehensive catalog of over 5000 accommodations including cottages, wooden houses, guest houses, apartments, and hotels, with user ratings and special offers. The platform is positioned as a popular and trusted search engine for accommodations in these regions, catering to a broad audience interested in vacation rentals and travel planning. Technically, the website employs modern web technologies such as Vue.js for frontend interactivity, integrates Google Tag Manager and Google Analytics for tracking and marketing purposes, and uses HTTPS to secure communications. The site is mobile-optimized and provides a user-friendly interface with clear navigation and search functionalities. However, some accessibility features and security headers could be improved to enhance security and compliance. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism with granular user options, indicating awareness of privacy regulations. Nonetheless, the absence of explicit privacy policy, terms of service, and security incident contact information represents gaps in compliance and transparency. The WHOIS data is not publicly available, which is common for commercial sites but reduces transparency regarding domain ownership. Overall, Hauzi.pl presents a professional and functional online platform with moderate security and privacy compliance maturity. Strategic improvements in policy transparency, security headers, and contact information would strengthen trust and regulatory adherence.

15
25
2
75
72
65
40
accommodationbookingtravelslovakiaczechrepublic+4 more
Vue.jsGoogle Tag ManagerGoogle AnalyticsFontAwesome+2

Partner Domains:

www.hauzi.sk
sister
www.hauzi.cz
sister

+3 more partners

2025-11-01T06:16:25.446Z
mingor.hr favicon

Ministarstvo gospodarstva i održivog razvoja Republike Hrvatske

mingor.hr

65
GovernmentCroatiamediumMEDIUM

The website mingor.hr/login serves as a secure login portal for the Nextcloud platform used by the Ministry of Economy and Sustainable Development of the Republic of Croatia. It provides government employees and authorized users with a safe environment for data storage and collaboration. The site leverages modern web technologies including Vue.js and Nextcloud version 30, hosted by CARNET, the Croatian Academic and Research Network. The domain registration data aligns well with the government entity, confirming legitimacy and trustworthiness. Technically, the site demonstrates good security practices such as HTTPS enforcement, Content Security Policy with nonce, and session management. However, it lacks publicly accessible privacy, cookie, and terms of service policies, as well as contact or incident response information, which are important for compliance and user trust. The site is minimalistic as expected for a login page, with no advertising or tracking scripts detected, indicating a focus on privacy and security. Overall, the security posture is strong with no obvious vulnerabilities detected in the provided content. The site is well-optimized for mobile and has a professional design consistent with government branding. The main risks relate to the absence of visible privacy and compliance documentation, which should be addressed to improve transparency and regulatory adherence.

75
25
25
70
72
75
100
governmentnextcloudloginsecurecroatia
Nextcloud 30.0.17Vue.jsJavaScriptCSS+1
2025-11-01T04:21:16.725Z
brezel.io favicon

Kiwis & Brownies GbR

brezel.io

39
TechnologyGermanysmallHIGH

Brezel.io is a German-based small technology company specializing in tailored enterprise software solutions including ERP, CRM, PIM, and DAM systems. Their business model focuses on providing customizable low-code and no-code platforms that enable businesses to digitize and automate complex workflows. The company emphasizes flexibility, security, and modern web technologies, targeting businesses that require bespoke digitalization solutions rather than off-the-shelf products. Their market position is niche but well-defined, with a focus on industrial, hospitality, and membership management sectors. Technically, the website is built on a modern stack including Laravel, Vue.js, and supports a Progressive Web App for cross-device compatibility. The site is mobile optimized and offers good user experience and navigation clarity. However, performance is moderate and accessibility features are basic. The hosting and DNS setup is standard with no DNSSEC enabled, and no CMS detected. From a security perspective, the site implements two-factor authentication and WebAuthn for user login security and includes CSRF tokens. However, it lacks visible HTTP security headers and DNSSEC, and does not publish security or incident response policies. Privacy compliance is weak due to absence of privacy and cookie policies and no visible consent mechanisms, despite the use of tracking scripts. WHOIS data is consistent and transparent, supporting legitimacy. Overall, the website presents a professional and trustworthy business front with good technical foundations but requires improvements in privacy compliance and security best practices to enhance trust and regulatory adherence.

15
35
2
45
72
70
-
erpcrmpimdamlow-code+6 more
Vue.jsSASSHTML5Laravel+1

Partner Domains:

kiwis-and-brownies.de
partner
2025-11-01T04:17:16.030Z
zzpudnz.hr favicon

Zavod za prostorno uređenje Dubrovačko-neretvanske županije

zzpudnz.hr

65
GovernmentCroatiamediumMEDIUM

The website zzpudnz.hr is the official online portal for the Zavod za prostorno uređenje Dubrovačko-neretvanske županije, a governmental spatial planning institute serving the Dubrovnik-Neretva County in Croatia. It provides comprehensive spatial planning documentation, project information, and news updates relevant to local government officials, urban planners, and the public. The site is well-structured, professionally designed, and offers extensive archives of news and legal documents related to spatial planning. The target audience includes government entities, municipalities, and citizens interested in regional planning and development. Technically, the website is built on the DotNetNuke (DNN) CMS platform, utilizing modern JavaScript libraries such as jQuery, Vue.js, and Bootstrap for responsive design and user experience. The site is mobile optimized and includes accessibility features. Security best practices are observed with HTTPS enforced, appropriate security headers, and secure form handling. Google Analytics is used for visitor tracking, with a cookie consent mechanism in place to comply with GDPR requirements. From a security perspective, the site shows a mature posture with no detected vulnerabilities or exposed sensitive data. However, there is no explicit public security policy or vulnerability disclosure page, and incident response contact information is not provided. The WHOIS data confirms the domain's legitimacy, consistent with the Croatian governmental entity it represents, and the domain age aligns with the institution's operational history. Overall, zzpudnz.hr is a credible, secure, and professionally maintained governmental website that effectively serves its informational and public service role. Strategic recommendations include publishing a dedicated security policy, adding vulnerability disclosure information, and providing clear incident response contacts to enhance transparency and trust.

40
68
17
70
67
75
100
governmentspatialplanningcroatiaurbanplanningpublicservice
jQueryjQuery UIBootstrapVue.js+3
2025-11-01T03:47:13.997Z
thelocal.se favicon

The Local Europe AB

thelocal.se

65
MediaSwedenmediumMEDIUM

The Local Sweden is a well-established online news media company providing English-language news and practical guides focused on Sweden. Founded in 2004, it targets expatriates and English-speaking residents, offering a broad range of content including politics, travel, jobs, and property. The business model combines advertising revenue with a membership program, supported by a professional and user-friendly website. The company maintains a consistent brand presence and strong trust indicators such as clear contact information and privacy compliance. Technically, the website leverages modern web technologies including Vue.js, Bootstrap, and integrates multiple third-party services for analytics, advertising, and membership management. The site is mobile-optimized and SEO-friendly, delivering a good user experience. Security posture is solid with HTTPS enforced, cookie consent mechanisms, and CSRF protections, though some HTTP security headers could be improved. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data for the .se domain is noted but does not detract significantly from the overall legitimacy given the strong business presence and content quality. Overall, The Local Sweden presents a trustworthy and professional digital presence with room for minor security enhancements.

15
100
17
80
57
70
100
newsmediaswedenenglishmembership+5 more
Google Tag ManagerPiano (paywall and membership)Cxense (content recommendation)Consentmanager.net (cookie consent)+5

Partner Domains:

buy.tinypass.com
partner
thelocalhelp.zendesk.com
partner

+1 more partners

2025-11-01T03:16:01.444Z
A

AllBytes GmbH

allbytes.de

56
TechnologyGermanysmallMEDIUM

AllBytes GmbH is a specialized software development agency based in Germany, focusing on delivering tailored and agile software solutions primarily for small and medium-sized enterprises (SMEs) and startups. Their services encompass custom software development, web applications, interface and database development, as well as CMS solutions like Shopware and WordPress. The company positions itself as a reliable partner for digital transformation and process optimization, emphasizing flexibility, scalability, and security in its offerings. The website reflects a professional and comprehensive digital presence with clear service descriptions and client references. Technically, the website is built on WordPress using modern frameworks and plugins such as React, Angular, Vue.js, Yoast SEO, and hCaptcha for security. The site is mobile-optimized, SEO-friendly, and incorporates GDPR-compliant cookie consent mechanisms. Performance is moderate with room for optimization, but overall the technical infrastructure supports a robust user experience. From a security perspective, the site enforces HTTPS and uses CAPTCHA to protect forms, indicating a good baseline security posture. However, there is no explicit security policy or incident response information publicly available, and security headers are not explicitly detected, suggesting areas for improvement. No vulnerabilities or suspicious activities were identified in the analysis. Overall, AllBytes GmbH presents a trustworthy and professional business with a solid digital footprint. The domain and WHOIS data align with the company branding, and the site complies with GDPR requirements. Strategic recommendations include enhancing security headers, publishing security policies, and adding vulnerability disclosure information to further strengthen trust and compliance.

55
85
2
60
72
65
20
softwareentwicklungagenturindividuellesoftwaredigitalisierungwebapps+5 more
JavaPythonPHPReact+8
2025-11-01T02:57:19.949Z
weleda.at favicon

Weleda AG

weleda.at

72
RetailAustrialargeMEDIUM

Weleda AG operates as a well-established international brand specializing in natural cosmetics and pharmaceutical products. The website www.weleda.at serves the Austrian market with a comprehensive e-commerce platform offering a wide range of natural skincare, health, and wellness products. The company emphasizes holistic beauty and health, targeting consumers interested in natural and sustainable personal care. The website reflects a mature digital presence with consistent branding and high-quality content. Technically, the site is built using modern frameworks such as Nuxt.js and Vue.js, integrating PrimeVue components for UI. It employs Google Tag Manager for analytics and OneTrust for cookie consent management, indicating compliance with privacy regulations. The site is mobile-optimized, fast-loading, and accessible, with good SEO practices. From a security perspective, the website enforces HTTPS, includes essential security headers, and uses secure forms. However, there is no public vulnerability disclosure or incident response policy visible, which could be improved. The absence of WHOIS data for the domain reduces the trust score slightly but does not detract from the overall legitimacy indicated by the website content and certifications. Overall, the website presents a low-risk profile with strong privacy compliance and a professional digital footprint. Strategic recommendations include publishing a vulnerability disclosure policy, enhancing transparency on incident response, and ensuring WHOIS data is properly registered and accessible to improve trustworthiness.

90
28
17
85
82
90
100
naturalcosmeticspharmaceuticalshealthbeautye-commerce+2 more
Vue.jsNuxt.jsPrimeVueGoogle Tag Manager+1
2025-11-01T01:48:56.111Z
auginulietuva.lt favicon

HOSTINGER operations, UAB

auginulietuva.lt

42
EducationLithuaniasmallHIGH

Auginu Lietuvą is a Lithuanian national educational initiative providing a multimedia learning platform focused on pregnancy, childbirth, and newborn care. The platform offers scientifically based information and expert advice aimed at strengthening parenting skills. It targets parents and families in Lithuania and distributes content via a website and mobile applications on Android and iOS. The project is relatively new, founded in 2022, and hosted by HOSTINGER operations, UAB. Technically, the website uses modern web technologies including Vue.js, Google reCAPTCHA v3, and integrates social media SDKs for Facebook and Apple Sign-In. The platform is mobile-optimized and provides a good user experience with clear navigation and multimedia content. Hosting is stable and the domain registration is consistent with the business timeline. From a security perspective, HTTPS is enforced and bot protection via reCAPTCHA is implemented. However, the site lacks visible security headers and a cookie consent mechanism, which are important for GDPR compliance. No vulnerabilities or exposed sensitive data were detected. Contact information is clearly provided, but no formal security or incident response policies are published. Overall, the website is professional, trustworthy, and safe for general audiences. Strategic improvements in privacy compliance and security headers would enhance the platform's security posture and regulatory adherence.

65
70
10
20
2
15
72
educationparentinghealthcarenationalinitiativemultimedia+1 more
Vue.jsGoogle reCAPTCHA v3Facebook SDKGoogle API client+1
2025-10-31T21:26:09.844Z
wc3stats.com favicon

Home | Warcraft III Stats

wc3stats.com

47
TechnologyN/asmallHIGH

The website wc3stats.com operates as a niche online platform dedicated to parsing and analyzing Warcraft III custom game replays. It provides users with detailed game and player statistics, including APM, ratings, and custom map metadata. The platform targets the Warcraft III gaming community, offering specialized analytics services that position it uniquely within the gaming statistics market. The business appears to be small and focused, founded in 2018, with no evident parent or subsidiary companies. Technically, the website employs modern web technologies such as Vue.js, Google Analytics, and Google Tag Manager, hosted on infrastructure associated with Amazon Registrar, Inc. The site demonstrates good mobile optimization and SEO practices, though accessibility features are basic. Performance is moderate, and the site uses HTTPS with a valid SSL configuration. However, DNSSEC is not enabled, and no security headers were detected, indicating room for security enhancements. From a security perspective, the site benefits from domain status locks that prevent unauthorized transfers or deletions, contributing to domain stability. No privacy or cookie policies are present, and no contact or incident response information is provided, which limits compliance with GDPR and general privacy best practices. No forms or data collection mechanisms are visible on the homepage, reducing immediate data exposure risks. The absence of a vulnerability disclosure policy or security.txt file suggests limited formal security communication channels. Overall, the website is functional, professionally designed, and trustworthy within its niche but lacks comprehensive privacy and security documentation. Strategic improvements in privacy compliance, security headers, and user contact transparency would enhance its security posture and user trust.

15
35
2
60
72
75
40
gamingwarcraftiiistatisticsreplayparsercustomgames+1 more
JavaScriptVue.jsGoogle AnalyticsGoogle Tag Manager+2
2025-10-31T19:54:48.724Z