Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 205 of 294|Showing 10201-10250 of 14699
ccm19.de favicon

Papoo Software & Media GmbH

ccm19.de

0
TechnologyGermanysmallMEDIUM

Papoo Software & Media GmbH operates CCM19, a European-focused cookie consent management software solution designed to help website owners comply with GDPR, TDDDG, and other privacy regulations. The company positions itself as a German alternative to major international CMP providers, emphasizing data hosting exclusively in Germany and compliance with European privacy laws. CCM19 offers both cloud and on-premise deployment options, catering to a broad range of customers including agencies and hosting providers. The website demonstrates a strong market presence with over 228,000 websites served and a comprehensive suite of features including cookie scanning, Google Fonts checking, and multi-language support. Technically, the website employs modern web technologies such as jQuery, Foundation CSS framework, and FontAwesome, ensuring a responsive and accessible user experience. The infrastructure is hosted on German servers with DNS pointing to ns5.kasserver.com and ns6.kasserver.com, consistent with the company's claims. The site is well-optimized for performance and SEO, with clear navigation and professional design. From a security perspective, the site uses HTTPS and enforces privacy best practices, including no data transfer to US servers and detailed consent logging. However, explicit security headers are not detected, and no formal security policy or incident response contacts are published. The company holds memberships in recognized privacy and security organizations, enhancing trustworthiness. Overall, CCM19 presents a mature, trustworthy, and compliant cookie consent solution with strong business credibility and technical maturity. The website is professional, content-rich, and fully accessible without any blocking or WAF interference.

70
95
17
65
95
75
20
cookieconsentgdprprivacycmpcookiebanner+3 more
jQueryFoundation CSS frameworkFontAwesomePrism.js+2
2025-10-03T15:43:29.417Z
kasserver.com favicon

Kundenadministrationssystem (KAS), technische Verwaltung

kasserver.com

0
TechnologyGermanysmallCRITICAL

The website kasserver.com serves as a login portal for a Kundenadministrationssystem (Customer Administration System) focused on technical management, likely related to domain or hosting services. The business appears to be a small, technology-focused service provider based in Germany, with a domain registration dating back to 2002, indicating a mature presence. The site content is minimal and primarily functional, targeting customers who require access to technical administration tools. From a technical perspective, the website uses basic technologies including an outdated version of jQuery and standard JavaScript. The site enforces HTTPS on its login form, which is a positive security measure, but lacks modern security headers and uses no visible advanced frameworks or CMS. Performance and mobile optimization are basic, and SEO features are minimal. Security posture is moderate; while HTTPS is enforced, the use of outdated libraries and absence of security headers present potential risks. No privacy, cookie, or terms of service policies are publicly available, which impacts compliance and trust. No contact or incident response information is provided, limiting transparency. WHOIS data is consistent and transparent, supporting legitimacy. Overall, the site is functional but basic, with room for improvement in security, privacy compliance, and user experience. Strategic recommendations include updating technology stacks, implementing security headers, publishing privacy and cookie policies, and enhancing transparency with contact and security information.

-
-
-
-
-
-
-
logincustomeradministrationtechnicalmanagementdomainservicesgerman
jQuery 1.xJavaScript
2025-10-03T15:42:04.207Z
no-q.info favicon

No-Q

no-q.info

0
TechnologyGermanymediumMEDIUM

No-Q is a German-based software company specializing in cloud-based, capacity- and resource-driven online appointment booking solutions tailored for healthcare institutions, businesses, and public administration. The company offers a comprehensive SaaS platform with additional PaaS reseller options, focusing on optimizing service delivery, resource management, and digital transformation. Their product suite includes online appointment coordination, resource and capacity management, course booking, rental management, personnel management, and add-ons such as locator solutions, video consultations, and online payments. The website is professionally designed, well-structured, and optimized for SEO and mobile devices, reflecting a mature digital presence. Technically, the site runs on WordPress with Elementor and integrates modern libraries and consent management tools, ensuring compliance with GDPR and cookie regulations. Security posture is solid with HTTPS and cookie consent mechanisms, though explicit security policies and incident response details are absent. WHOIS data is privacy-protected, common for SaaS providers, and does not raise immediate concerns. Overall, No-Q presents as a credible, professional business with a strong market position in appointment and resource management software.

15
83
2
50
75
80
100
appointmentbookingresourcemanagementcapacityplanninghealthcaresoftwarepublicadministration+5 more
WordPress 6.8.3Elementor 3.26.4Yoast SEO 24.2jQuery 3.7.1+2
2025-10-03T15:40:13.405Z
landkreis-aurich.de favicon

Landkreis Aurich

landkreis-aurich.de

0
GovernmentGermanymediumHIGH

Landkreis Aurich operates as a local government authority in Germany, providing a wide range of public services including social welfare, health, environmental management, and administrative support to residents. The website serves as an official portal for information dissemination, citizen engagement, and access to government services. It targets local residents, businesses, and stakeholders within the district. The business model is that of a public sector entity focused on governance and community services. Technically, the website is built on TYPO3 CMS, leveraging Bootstrap for responsive design and various JavaScript libraries such as jQuery, Swiper.js, and DataTables to enhance user experience. The site demonstrates moderate performance and good mobile optimization, with a clear navigation structure and professional design. Cookie consent is implemented with user choice, reflecting GDPR compliance. From a security perspective, the site uses HTTPS and has implemented cookie consent mechanisms, but lacks visible security headers and explicit security or incident response policies. No vulnerabilities or exposed sensitive data were detected in the provided content. The WHOIS data is minimal but consistent with the domain's purpose, supporting legitimacy. Social media presence and external partnerships further reinforce trust. Overall, the website is a well-maintained government portal with good content quality and technical implementation. Strategic improvements in security headers and transparency around security policies would enhance its security posture and trustworthiness.

15
55
2
70
52
60
20
governmentlocalauthoritypublicservicesgermantypo3+5 more
HTML5CSS3JavaScriptBootstrap+5

Partner Domains:

mkw-grossefehn.de
partner
anevita.de
partner

+2 more partners

2025-09-23T09:44:34.612Z
C

Carsten Röpkes | Straßen- und Tiefbau

carsten-roepkes.de

0
TransportationGermanysmallCRITICAL

Carsten Röpkes | Straßen- und Tiefbau is a small local construction business specializing in road and civil engineering services in the Ostfriesland region of Germany. The company offers a range of services including street and deep construction, paving with natural and concrete stones, driveway and terrace construction, and pipeline construction. The website serves as an informational portal targeting local customers and businesses seeking specialized construction and landscaping services. Technically, the website is built with basic HTML, CSS, and JavaScript, incorporating Google Analytics for visitor tracking. The site is hosted on servers associated with kasserver.com, consistent with the domain's WHOIS data. The website lacks modern CMS frameworks and shows basic mobile and accessibility optimization. SEO is reasonably addressed through meta tags and structured navigation. From a security perspective, the website lacks HTTPS, which is a critical vulnerability for user data protection and trust. No security headers are present, and there are no visible privacy or cookie policies, indicating non-compliance with GDPR requirements. The use of Google Analytics without a consent mechanism further highlights privacy compliance gaps. Contact information is clearly provided, but no incident response or security policies are disclosed. Overall, the website is functional and informative but requires significant improvements in security, privacy compliance, and technical modernization to enhance trustworthiness and protect user data. Strategic implementation of HTTPS, security headers, privacy policies, and consent mechanisms is recommended to align with best practices and regulatory requirements.

15
-
-
70
-
45
-
straenbautiefbaupflasterarbeitennatursteinrohrleitungsbau+2 more
HTMLCSSJavaScriptGoogle Analytics
2025-09-22T07:40:26.832Z
sparkasse-aurich-norden.de favicon

Sparkasse Aurich-Norden

sparkasse-aurich-norden.de

0
FinanceGermanymediumMEDIUM

Sparkasse Aurich-Norden is a regional German savings bank providing a broad range of financial services including retail banking, loans, investments, insurance, and digital banking solutions. The website targets both private and business customers with a strong emphasis on secure online banking and local presence in Aurich and Norden. The bank is part of the well-established Sparkassen-Finanzgruppe, which enhances its market credibility and trustworthiness. The site features comprehensive product information, legal disclosures, and customer support channels, reflecting a mature digital presence. Technically, the website is built on a modern web stack likely supported by Adobe Experience Manager or a similar CMS, with React components and standard web technologies. It is mobile-optimized, accessible, and integrates analytics and marketing tools such as Google Analytics and PAYBACK. The site uses HTTPS exclusively and shows good security practices, although explicit security policies and incident response information are not publicly disclosed. From a security perspective, the site demonstrates a solid posture with secure login forms, cookie consent mechanisms, and no visible vulnerabilities or suspicious content. WHOIS data aligns well with the website's claims, showing consistent registration and no privacy protection masking, supporting high legitimacy. No WAF or blocking mechanisms were detected, allowing full content access. Overall, the website is professional, trustworthy, and compliant with GDPR and other relevant regulations. It effectively supports the bank's business model and customer engagement strategies while maintaining a good security and privacy standard.

90
68
2
55
74
65
100
bankingfinanceonline-bankingsparkassegirokonto+4 more
JavaScriptCSSHTML5jQuery (implied by $ usage)+3
2025-09-19T08:31:03.403Z
cube-five.de favicon

Cube 5

cube-five.de

0
TechnologyGermanymediumMEDIUM

Cube 5 is a technology-focused startup accelerator and incubator based in Germany, affiliated with Ruhr-Universität Bochum and the Horst-Goertz-Institute for IT Security. The organization specializes in supporting startups in cybersecurity and future communication technologies such as 6G by providing access to government funding programs, coaching, and a strong network of research institutions and investors. Their business model centers on facilitating sustainable success for innovative startups through tailored programs like sCUBE, preCUBE, inCUBE, and xCUBE. The website reflects a professional and well-structured digital presence with clear navigation and comprehensive content targeting technology entrepreneurs. Technically, the website is built on modern frameworks including Next.js and React, hosted on Hetzner servers, and uses Matomo for analytics, indicating a mature digital infrastructure. The site is optimized for performance, mobile responsiveness, and SEO, with a clean and consistent branding approach. Security-wise, the site enforces HTTPS and follows good practices, although explicit security headers and a cookie consent mechanism are not clearly present. No critical vulnerabilities or exposed sensitive data were detected. Overall, Cube 5 demonstrates a strong security posture and business credibility, with transparent contact information and trust signals such as government affiliations and social media presence. The absence of a cookie consent banner and explicit security policies are areas for improvement. The domain registration and hosting align well with the organization's academic and governmental ties, supporting legitimacy and trustworthiness.

15
28
82
70
80
60
-
technologycybersecuritystartupfundingincubator+3 more
Next.jsReactFont Awesome 6Matomo Analytics
2025-09-18T14:24:24.045Z
degruyterbrill.com favicon

Walter de Gruyter GmbH

degruyterbrill.com

0
EducationGermanylargeMEDIUM

De Gruyter Brill is a well-established, independent academic publisher with a rich history spanning over 300 years. The company specializes in publishing scholarly books, journals, and online resources primarily in the humanities and related academic fields. Their business model includes both traditional subscription and open access publishing, targeting authors, librarians, researchers, and academic institutions globally. The website reflects a professional and comprehensive digital presence, supporting various user roles with dedicated resources and clear navigation. Technically, the website employs modern web technologies including Bootstrap, FontAwesome, and Google Tag Manager, ensuring a responsive and accessible user experience. The site is well-optimized for SEO and mobile devices, with good performance metrics. Security best practices are observed with HTTPS enforcement and multiple security headers, although explicit security and incident response policies are not prominently published. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is addressed with clear privacy and cookie policies, including consent mechanisms aligned with GDPR requirements. However, WHOIS data for the domain is unavailable or privacy protected, which is common for enterprises but slightly reduces transparency. Overall, the website and business demonstrate a high level of professionalism, trustworthiness, and digital maturity. Strategic recommendations include publishing explicit security policies, incident response contacts, and vulnerability disclosure information to further enhance trust and compliance.

80
83
2
85
90
70
100
academicpublishingopenaccessbooksjournalsresearch+1 more
JavaScriptBootstrapFontAwesomeGoogle Tag Manager+1

Partner Domains:

checkout.degruyterbrill.com
service
degruyter.com
subsidiary

+1 more partners

2025-09-07T04:29:35.773Z
1api.net favicon

1API GmbH

1api.net

0
TechnologyGermanymediumMEDIUM

1API GmbH is a well-established European domain registrar and developer of domain name platforms, operating since 2006 and managing over 3 million domains. The company targets domain registrants, resellers, and businesses requiring domain registration and management services. Their business model includes direct domain registration and reseller partnerships, positioning them as a leading player in the European domain registration market. The website reflects this professional positioning with clear branding and relevant content. Technically, the website uses modern web technologies such as Bootstrap, jQuery, FontAwesome, and Google Tag Manager. It is mobile-optimized and provides a good user experience with clear navigation. However, some technical improvements are possible, including enabling DNSSEC, adding security headers, and implementing cookie consent mechanisms to enhance privacy compliance. From a security perspective, the site enforces HTTPS and uses domain status locks to prevent unauthorized transfers. The presence of an abuse warning notice indicates awareness of phishing risks. However, the absence of security headers and DNSSEC reduces the overall security posture. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is trustworthy and professional with a solid business foundation. Strategic improvements in security headers, DNSSEC, and privacy compliance would further strengthen their security and compliance posture.

65
68
12
65
75
80
100
domainregistraricanndomainmanagementresellertechnology
BootstrapjQueryFontAwesomeGoogle Tag Manager

Partner Domains:

onlydomains.com
partner
hexonet.net
partner

+1 more partners

2025-09-06T21:35:16.956Z
xschool.io favicon

X-School

xschool.io

0
EducationGermanysmallMEDIUM

X-School is an innovative educational initiative focused on designing and implementing the school of the future. It aims to create a global network of schools that provide sustainable, inclusive education for future leaders and changemakers. The website presents a comprehensive framework emphasizing diversity, excellence, and well-being, supported by a team of experts and promoters. The business model is based on a state-approved alternative school in Germany with plans for international expansion. The site is professionally designed, mobile-optimized, and rich in content, targeting students, parents, and educators interested in modern education concepts. Technically, the website uses modern front-end technologies such as Alpine.js and Tailwind CSS, with embedded Vimeo videos and social media integration. It is hosted on infrastructure linked to GoDaddy and uses HTTPS with good SSL configuration. However, some security best practices like security headers and cookie consent mechanisms are missing, which could be improved to enhance compliance and security posture. From a security perspective, the site shows a good baseline with HTTPS and secure form handling but lacks explicit security policies, incident response contacts, and vulnerability disclosure information. The domain WHOIS data is privacy protected but consistent with the business timeline and type, indicating legitimacy. No suspicious or malicious content was detected. Overall, the website is trustworthy, professionally maintained, and focused on education innovation. Strategic improvements in privacy compliance and security headers would further strengthen its posture.

15
53
25
60
72
75
100
educationschoolfuturelearningdiversity+2 more
Alpine.jsTailwind CSSVimeo embedded playerSwiper.js slider
2025-09-06T15:49:35.891Z
chain49.com favicon

Hartmann IT Solutions GmbH

chain49.com

0
TechnologyGermanysmallMEDIUM

Chain49, operated by Hartmann IT Solutions GmbH, is a technology company specializing in providing blockchain API services for enterprise and developer use. Their platform offers access to a network of cryptocurrency nodes supporting multiple blockchains, enabling clients to build crypto wallets, exchanges, payment processors, and block explorers. Positioned as a niche provider with a strong emphasis on German data protection laws, Chain49 targets startups and enterprises seeking cost-effective and scalable blockchain infrastructure solutions. The company offers tiered subscription plans including free and enterprise options, facilitating flexible adoption. Technically, the website employs a modern JavaScript-based tech stack with libraries such as jQuery, Bootstrap, and various UI/UX enhancement tools. Hosting is inferred to be in Germany, leveraging Hetzner datacenters, which aligns with their data protection claims. The site is mobile-optimized with good SEO and accessibility basics, though some advanced accessibility features could be improved. Performance is moderate, with no critical technical issues detected. From a security perspective, the website enforces HTTPS and implements a cookie consent mechanism compliant with GDPR. However, it lacks explicit security policy documentation and incident response contact details. No vulnerabilities or exposed sensitive data were found in the HTML content. The WHOIS data is consistent with the business claims, showing transparent registration without privacy protection, enhancing trustworthiness. Overall, Chain49 presents a professional and trustworthy online presence with solid privacy compliance and a clear business focus. Strategic improvements in security documentation and incident response transparency would further strengthen their security posture and customer confidence.

30
68
17
75
75
75
100
blockchaincryptocurrencyapienterprisecryptowallet+3 more
jQueryBootstrapHeadroom.jsSwiper+12

Partner Domains:

rapidapi.com
partner
hartmann-it.de
parent
2025-09-06T06:32:43.568Z
C

Chainflip Labs GmbH

chainflip.io

0
TechnologyGermanysmallMEDIUM

Chainflip Labs GmbH operates Chainflip.io, a specialized decentralized finance platform enabling cross-chain swaps primarily involving Bitcoin, Ethereum, and Solana. The platform emphasizes fast, native Bitcoin swaps with transparent pricing and no hidden fees, targeting cryptocurrency traders and developers seeking seamless cross-chain trading solutions. The business is positioned as a niche player in the DeFi ecosystem with a focus on trust and security, supported by claims of $1.4 billion traded securely. Technically, the website is built using Framer, hosted and registered via Cloudflare, and employs Google Analytics for user tracking. The site demonstrates good design quality, mobile optimization, and SEO practices, though accessibility features are basic. The technical infrastructure is modern but lacks advanced security headers and DNSSEC, which are recommended for enhanced protection. From a security standpoint, the site uses HTTPS but does not publish privacy or cookie policies, nor does it provide incident response or vulnerability disclosure information. No security headers were detected, and DNSSEC is not enabled, indicating room for improvement in security posture. No WAF or blocking mechanisms were detected, and no adult or questionable content is present, making the site safe for general audiences. Overall, Chainflip.io presents a professional and credible business with consistent domain registration data. However, it should enhance its privacy compliance and security practices to improve trust and regulatory adherence. Strategic recommendations include publishing comprehensive privacy and cookie policies, enabling DNSSEC, implementing security headers, and providing clear incident response contacts.

40
35
2
70
75
85
100
cryptocurrencydeficross-chainbitcoinethereum+4 more
Google AnalyticsFramer (website builder)Cloudflare (Registrar and DNS)
2025-09-06T05:27:08.231Z
statista.net favicon

Statista

statista.net

0
TechnologyGermanylargeLOW

Statista is a leading statistics portal providing market data, consumer survey results, and industry studies aggregated from over 22,500 sources covering more than 60,000 topics. The platform targets business professionals, researchers, marketers, and academics, offering subscription-based access to comprehensive market intelligence and data visualization tools. Statista holds a strong market position as a trusted data provider with a large global user base. Technically, the website employs a modern tech stack including JavaScript frameworks, Segment analytics, Hotjar, Braze, and Google Tag Manager, supported by a CDN for fast content delivery. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO, reflecting a mature digital infrastructure. From a security perspective, Statista enforces HTTPS with strong SSL configurations and implements security headers such as Content Security Policy and Strict-Transport-Security. The use of OneTrust for consent management demonstrates compliance with GDPR and privacy best practices. No significant vulnerabilities or exposed sensitive data were detected, indicating a robust security posture. Overall, Statista presents a low-risk profile with high trustworthiness, professional content, and strong privacy compliance. The absence of WHOIS data is likely due to privacy protection, which is justified for a commercial data provider. Strategic recommendations include maintaining regular security audits, enhancing incident response visibility, and publishing a security.txt file to facilitate vulnerability disclosures.

90
100
17
80
72
85
100
statisticsmarketdatamarketresearchconsumersurveysindustrystudies+2 more
JavaScriptSegment AnalyticsHotjarBraze+3
2025-09-05T22:28:27.651Z
statista.ch favicon

Statista

statista.ch

0
MediaGermanylargeMEDIUM

Statista is a leading statistics portal providing market data, market research, and industry studies from over 22,500 sources covering more than 60,000 topics. The company targets business professionals, researchers, marketers, and academics with a subscription-based business model offering extensive data and analytics services. Statista holds a strong market position as a trusted source for statistical data and insights, primarily operating from Germany. The website reflects a mature digital presence with excellent content quality and professional branding consistency. Technically, Statista employs a modern technology stack including advanced analytics platforms such as Segment, Hotjar, Braze, and Pendo, alongside Google Tag Manager and OneTrust for consent management. The site is well-optimized for performance and mobile responsiveness, with good accessibility and SEO practices. Hosting and CMS details are not explicitly identified but the infrastructure supports fast loading and a seamless user experience. From a security perspective, the website enforces HTTPS with strong SSL configuration and implements multiple security headers including CSP and HSTS. Privacy compliance is robust, featuring comprehensive privacy and cookie policies with GDPR adherence and active consent mechanisms. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a public security policy or incident response page suggests room for improvement in transparency and preparedness. Overall, Statista presents a low-risk profile with a high level of trustworthiness and professionalism. The lack of WHOIS data is likely due to privacy protection, which is justified given the business nature. Strategic recommendations include enhancing security transparency, publishing a vulnerability disclosure policy, and continuous monitoring of third-party scripts to maintain security posture.

-
100
17
80
72
90
100
statisticsmarketdatamarketresearchdataanalyticsbusinessintelligence
JavaScriptSegment analyticsHotjarBraze+4
2025-09-05T22:28:17.629Z
statista.mx favicon

Statista

statista.mx

0
MediaGermanylargeLOW

Statista is a leading statistics portal providing market data, consumer survey results, and industry studies from over 22,500 sources covering more than 60,000 topics. The platform targets business professionals, researchers, marketers, and academics, offering subscription-based access to comprehensive statistical data and market research. The website is professionally designed, mobile-optimized, and features consistent branding with strong trust indicators such as HTTPS and structured data markup. Technically, Statista employs modern web technologies including JavaScript frameworks, Google Tag Manager, OneTrust for consent management, and analytics tools like Hotjar and Braze. The site demonstrates good performance and accessibility standards, with a comprehensive cookie consent mechanism and GDPR compliance. However, explicit security policies and incident response information are not publicly disclosed. From a security perspective, the site enforces HTTPS, uses multiple security headers, and integrates consent management to comply with privacy regulations. No vulnerabilities or exposed sensitive data were detected in the analyzed content. The absence of WHOIS registration details slightly reduces trust but is likely due to privacy protection services common among large enterprises. Overall, Statista presents a low-risk profile with a mature digital presence, strong privacy compliance, and a professional business model. Strategic recommendations include publishing explicit security and incident response policies, adding vulnerability disclosure mechanisms, and enhancing transparency around data protection officer contacts and certifications.

90
100
17
80
72
85
100
statisticsmarketdatamarketresearchconsumersurveysdataportal+1 more
JavaScriptGoogle Tag ManagerOneTrust Consent ManagementUserlike Chat Widget+4
2025-09-05T22:28:07.603Z