Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 260 of 294|Showing 12951-13000 of 14699
cts-umweltsimulation.de favicon

CTS GmbH

cts-umweltsimulation.de

0
ManufacturingGermanymediumMEDIUM

CTS GmbH is a medium-sized German manufacturing company specializing in environmental simulation devices that simulate various environmental conditions such as temperature, humidity, and pressure. The company also offers calibration services for these devices, including those from other manufacturers. Positioned as a leading expert in their niche, CTS targets industrial clients requiring high-quality testing and simulation equipment. Their website reflects a professional and consistent brand image with clear product and service information. Technically, the website is built on Joomla CMS with Bootstrap and Splide.js for UI components. It is mobile-optimized and uses HTTPS with a valid SSL configuration. However, some security best practices such as security headers and cookie consent mechanisms are missing. No analytics or tracking scripts were detected, indicating a privacy-conscious approach but also a lack of advanced marketing tools. From a security perspective, the site has a solid foundation with HTTPS and CSRF tokens but lacks published security policies, incident response contacts, and vulnerability disclosure mechanisms. The WHOIS data is minimal but consistent with the hosting and author information on the site, supporting legitimacy. Overall, the site is safe, professional, and trustworthy but could improve privacy compliance and security posture. Strategic recommendations include implementing cookie consent for GDPR compliance, adding security headers, publishing a security policy and incident response contacts, and considering a vulnerability disclosure program to enhance trust and security culture.

40
28
2
85
72
70
20
environmentalsimulationmanufacturingtestingequipmentcalibrationgermany+1 more
BootstrapJoomla CMSSplide.js slider
2025-07-14T04:56:53.234Z
G

Gesellschaft zur Förderung der Abwassertechnik e.V. (GFA)

gfa-news.de

0
OtherGermanymediumMEDIUM

Gesellschaft zur Förderung der Abwassertechnik e.V. (GFA) operates a professional German-language website providing specialized news, journals, and services focused on water, wastewater, and environmental technology sectors. The site targets professionals and stakeholders in these industries, offering news updates, quality mark testing services, newsletters, and advertising opportunities. The business model centers on information dissemination and industry service provision, positioning GFA as a niche media and service provider within the German water technology market. Technically, the website is built on the Contao Open Source CMS platform, utilizing modern frontend technologies such as Tiny Slider and jQuery. The site demonstrates good mobile optimization, accessibility, and SEO practices, supported by structured data markup. Performance is moderate, with a well-structured navigation and professional design. From a security perspective, the site enforces HTTPS and implements cookie consent with Matomo analytics disabled by default, reflecting good privacy compliance. However, no explicit security policies, incident response contacts, or vulnerability disclosure mechanisms are published. Security headers are not explicitly detected, suggesting room for improvement in hardening the site against common web threats. Overall, the website is trustworthy, professionally maintained, and compliant with GDPR requirements. The domain registration appears consistent with the business focus, and no blocking or WAF challenges were detected, allowing full content accessibility. Strategic recommendations include publishing security and incident response policies, enhancing security headers, and adding vulnerability disclosure information to strengthen the security posture and trustworthiness further.

80
28
17
70
72
60
100
waterwastewaterenvironmentnewsgfa+3 more
Contao Open Source CMSTiny SliderjQueryJavaScript+2

Partner Domains:

de.dwa.de
partner
bf.dwa.de
partner

+1 more partners

2025-07-14T04:56:18.060Z
D

Deutsche Vereinigung für Wasserwirtschaft, Abwasser und Abfall e. V.

dwadirekt.de

0
EnergyGermanymediumMEDIUM

The Deutsche Vereinigung für Wasserwirtschaft, Abwasser und Abfall e. V. (DWA) operates as a professional association in Germany specializing in water management, wastewater, and waste. The organization provides a comprehensive suite of services including memberships, access to technical standards, e-learning platforms, certifications, publications, and event management. Their market position is strong within the German environmental and water sectors, serving professionals and organizations with authoritative resources and training. Technically, the website is built on the Contao CMS platform, utilizing modern JavaScript libraries such as jQuery and tiny-slider. The hosting is managed via vistec.net, with a moderate performance profile and good mobile optimization. The site employs HTTPS with secure session management and a cookie consent mechanism, reflecting a mature digital infrastructure. From a security perspective, the site demonstrates good practices including HTTPS enforcement, CSRF protection, and privacy-conscious analytics via Matomo. However, explicit security policies and incident response information are not present, representing an area for improvement. The cookie consent and privacy policies are comprehensive and GDPR compliant, supporting strong privacy compliance. Overall, the website is professional, trustworthy, and well-aligned with the organization's mission. The risk profile is low, with no detected vulnerabilities or suspicious activity. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility features to further strengthen the security posture and user experience.

75
28
2
55
62
65
100
watermanagementenvironmentwastewatermembershipeducation+3 more
jQuerytiny-sliderContao CMSContao ThemeManager

Partner Domains:

www.dwa-bw.de
partner
www.dwa-bayern.de
partner

+3 more partners

2025-07-14T04:56:13.051Z
dwa-digital.de favicon

Deutsche Vereinigung für Wasserwirtschaft, Abwasser und Abfall e.V. (DWA)

dwa-digital.de

0
GovernmentGermanymediumMEDIUM

The Deutsche Vereinigung für Wasserwirtschaft, Abwasser und Abfall e.V. (DWA) operates the website dwa-digital.de as a platform dedicated to the digital transformation of the water management sector in Germany and Europe. The organization is a leading non-profit association with approximately 14,000 members from diverse sectors including municipalities, academia, industry, and government. The website offers expert knowledge, educational programs such as the Digitale Akademie, and events like the Digitaler Dienstag to foster digital innovation and skills development in water and wastewater management. Technically, the website is built using RapidWeaver with Foundation framework and various stacks plugins, leveraging Matomo for analytics and CookieHub for consent management. The site is well-structured, mobile-optimized, and employs HTTPS with a good security posture. Privacy compliance is strong with clear cookie consent and a comprehensive privacy policy. However, formal security policies and incident response contacts are not publicly disclosed. Security-wise, the site shows good practices including encrypted connections and no visible vulnerabilities or exposed sensitive data. The use of privacy-respecting analytics and cookie management tools further supports compliance. No WAF or blocking mechanisms interfere with content access, ensuring full transparency and accessibility. Overall, the website represents a credible, professional, and trustworthy digital presence for the DWA, effectively supporting its mission to lead digital transformation in water management. Strategic improvements could include publishing explicit security policies and vulnerability disclosure information to enhance trust and preparedness.

15
68
2
70
72
60
100
digitalisierungwasserwirtschaftcybersicherheitdigitaletransformationdigitaleakademie+2 more
Matomo AnalyticsCookieHub Consent ManagementjQuery 2.2.4Font Awesome 4.0.3+3
2025-07-14T04:56:07.991Z
E

European Film Promotion

efp-online.com

0
MediaGermanymediumMEDIUM

European Film Promotion (EFP) is a well-established organization founded in 2001 that promotes European films and talent internationally. The website serves as a platform to showcase European cinema excellence and diversity, targeting film industry professionals and enthusiasts worldwide. It offers various programs, film sales support, and networking opportunities, positioning itself as a key player in the European film promotion sector. The site is professionally designed with consistent branding and clear navigation, supporting its mission effectively. Technically, the website uses a modern tech stack including jQuery, Bootstrap, Slick Carousel, and Typekit fonts, with a newsletter subscription powered by Brevo (Sendinblue). Hosting is provided by Cronon GmbH, a reputable registrar. The site is mobile-optimized and performs moderately well, though accessibility and SEO could be improved. Security measures such as cookie consent are implemented, but advanced security headers and DNSSEC are missing. From a security perspective, the site shows a moderate security posture with no critical vulnerabilities detected in the provided data. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. The WHOIS data confirms domain legitimacy with consistent registration details and appropriate domain age. Privacy compliance is supported by a clear privacy policy and cookie consent mechanism, indicating GDPR awareness. Overall, the website is trustworthy, professional, and serves its business purpose well. Strategic improvements in security headers, accessibility, and explicit policy disclosures would enhance its security posture and compliance standing.

15
68
17
75
90
65
20
europeanfilmpromotionfilmeuropeancinematalentdevelopmentfilmsalessupport+2 more
jQuerySlick CarouselBootstrapTypekit Fonts+1
2025-07-14T03:53:37.944Z
E

EWA European Water Association

ewa-online.eu

0
OtherGermanysmallMEDIUM

The European Water Association (EWA) is a well-established non-profit organization focused on the management and improvement of the water environment across Europe. It serves a diverse audience including national member associations, corporate members, research members, and sponsors. The association provides key services such as membership management, organizing conferences and events, publishing reports and newsletters, and advocating for water quality, safety, and sustainability policies at the European level. The website reflects a professional and consistent brand image with clear navigation and relevant content tailored to its target audience. Technically, the website is built on the Contao Open Source CMS platform, utilizing modern JavaScript libraries such as Tiny Slider for interactive content. The site is mobile-optimized, accessible, and SEO-friendly, with a moderate performance profile. Security best practices are partially implemented, including HTTPS enforcement and cookie consent mechanisms, though some security headers and explicit security policies are absent. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent banner, indicating GDPR awareness. However, incident response and vulnerability disclosure information are missing, which could be improved to enhance trust. Overall, the website and organization present a low-risk profile with strong business credibility and a good technical foundation. Strategic recommendations include enhancing security headers, publishing a security policy, and adding incident response contacts to further strengthen the security posture and compliance.

80
28
25
70
72
75
100
europeanwaterassociationwatermanagementnon-profitenvironmentalmembership+2 more
Contao CMSTiny SliderJavaScriptHTML5+1
2025-07-14T02:45:10.530Z
dae-europe.org favicon

DAE Dachverband Europäischer Dokumentarfilm / Documentary Association of Europe e.V.

dae-europe.org

0
MediaGermanysmallMEDIUM

DAE Dachverband Europäischer Dokumentarfilm / Documentary Association of Europe e.V. is a non-profit membership association serving documentary professionals primarily in Europe but also globally. Founded in 2019, it offers a collaborative network, expert advice, curated resources, discounts, and advocacy grounded in progressive social principles. The association positions itself as a fast-growing community with over 700 members, emphasizing inclusivity and sustainability. Technically, the website is built on WordPress with modern frameworks like Bootstrap 5, supporting good mobile responsiveness and user experience. The site employs standard plugins for cookie consent, analytics, and email marketing, reflecting a mature digital infrastructure. Security-wise, the site enforces HTTPS, uses domain locking statuses, and provides cookie consent mechanisms, though it lacks DNSSEC and explicit security policies or incident response contacts. Overall, the website is professional, trustworthy, and compliant with GDPR, with moderate tracking via Google Analytics and Mailchimp. The absence of phone contact and physical address is noted but common for such associations. Strategic recommendations include enabling DNSSEC, publishing security and incident response policies, and implementing a security.txt file to enhance transparency and trust.

30
80
17
65
72
85
100
documentarymembershipnon-profitfilmcommunity+3 more
WordPressBootstrap 5jQueryFontAwesome+4
2025-07-14T01:31:58.708Z
etg24.de favicon

etg24 GmbH

etg24.de

0
Real EstateGermanysmallHIGH

etg24 GmbH is a German-based company specializing in digital real estate management solutions. Positioned as the original and first provider of online customer portals tailored specifically for property management, etg24 targets property managers, owners, tenants, and service providers. Their business model centers on providing SaaS platforms that streamline and modernize property management processes. The website reflects a professional and consistent brand image with good content quality and clear target audience focus. Technically, the website is built on WordPress using Elementor and WooCommerce, supported by modern tools such as Yoast SEO and Google Tag Manager. Hosting is managed via INWX, a reputable German hosting provider. The site demonstrates moderate performance and good mobile optimization, with basic accessibility features and solid SEO practices. From a security perspective, the site enforces HTTPS and uses a cookie consent mechanism via Borlabs Cookie, indicating awareness of privacy regulations. However, explicit security headers are not fully implemented, and no formal privacy policy or terms of service are found, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected, and no WAF or blocking mechanisms interfere with access. Overall, etg24 presents a trustworthy and professional digital presence with a solid foundation. Strategic improvements in privacy documentation and security header implementation would enhance compliance and security posture, supporting their market credibility and customer trust.

15
73
2
62
-
65
40
realestatepropertymanagementdigitalserviceswordpresssaas
WordPressWooCommerceElementorYoast SEO+3
2025-07-14T00:27:38.012Z
passcreator.com favicon

Fobi AI Germany GmbH

passcreator.com

0
TechnologyGermanymediumMEDIUM

Passcreator, operated by Fobi AI Germany GmbH, is a mature SaaS platform specializing in the creation and management of digital Wallet passes compatible with Apple Wallet and Google Wallet. Established since 2012, it serves a broad business audience with solutions including loyalty cards, coupons, event tickets, and membership cards. The platform emphasizes seamless integration, real-time updates, and personalized customer engagement without requiring dedicated apps. Its market position is reinforced by partnerships with notable global brands and certifications such as ISO 27001, underscoring its commitment to security and quality. Technically, the website is built on the Neos CMS and Flow PHP framework, leveraging modern web technologies including JavaScript and integrations with payment gateways like Stripe and PayPal. The site demonstrates good mobile optimization, accessibility, and SEO practices. Analytics and marketing tools such as Google Analytics, Hubspot, and Zapier are employed with privacy considerations like IP anonymization and explicit cookie consent mechanisms. From a security perspective, Passcreator shows a strong posture with HTTPS enforcement and ISO 27001 certification. However, the absence of WHOIS data and lack of explicit security headers or public incident response policies represent areas for improvement. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, Passcreator presents a professional, trustworthy, and technically sound digital service platform with minor gaps in transparency around domain registration and incident response. Strategic enhancements in these areas would further strengthen its security and compliance profile.

60
83
17
85
65
85
100
walletpassesapplewalletgooglewalletloyaltycardscoupons+5 more
PHPJavaScriptjQueryStripe+2

Partner Domains:

omr.com
partner
personio.de
partner
2025-07-14T00:27:32.994Z
h-hotels.com favicon

H-Hotels.com

h-hotels.com

0
HospitalityGermanylargeMEDIUM

H-Hotels.com operates as a European hospitality business offering multiple hotel brands including Hyperion, H4, H2, and H+ Hotels. The website provides direct booking services with exclusive benefits and best price guarantees, targeting leisure and business travelers across Germany, Austria, Switzerland, Hungary, and France. The company positions itself as a large hotel chain with a strong presence in key European cities. Technically, the website is built on the Neos CMS platform using the Flow PHP framework, incorporating modern JavaScript libraries and third-party services such as Google Tag Manager, Jentis, Usercentrics, and Sentry for analytics, tracking, and error monitoring. The site is well-optimized for mobile devices and SEO, with a professional design and clear navigation. Security posture is strong with HTTPS enforced and security headers present, though explicit security policies and incident response contacts are not published. Privacy compliance is partially addressed with a cookie consent mechanism but lacks a clearly accessible privacy policy and terms of service. The WHOIS data is missing or unavailable, which raises concerns about domain registration legitimacy despite the professional appearance of the site. Overall, the website is functional, secure, and user-friendly but would benefit from improved transparency in privacy and legal policies and verification of domain registration.

35
58
2
80
75
70
100
hospitalityhotelbookingtraveleuropebusinesstravel+3 more
PHPJavaScriptGoogle Tag ManagerJentis+2
2025-07-14T00:27:12.715Z
flownative.com favicon

Flownative GmbH

flownative.com

0
TechnologyGermanysmallMEDIUM

Flownative GmbH is a specialized technology company focused on providing expert support, coaching, training, and cloud hosting services around the Neos CMS and Flow PHP framework. The company positions itself as a niche expert in the Neos ecosystem, catering primarily to developers and businesses using Neos and Flow. Their offerings include professional support, upgrade assistance, and a cloud hosting platform called Flownative Beach, emphasizing scalability and GDPR compliance. The website content is professional and well-structured, reflecting a small but focused business entity based in Germany. Technically, the website is built on the Neos CMS platform and leverages the Flow PHP framework. It uses modern web technologies including PHP and JavaScript, with Matomo analytics for privacy-conscious user tracking. The site is mobile-optimized, accessible, and SEO-friendly, with a moderate performance profile. The SSL configuration is excellent, ensuring secure HTTPS connections. From a security perspective, the site follows good practices such as HTTPS enforcement and privacy-respecting analytics. However, it lacks some security headers and does not provide explicit security policies or incident response contacts. The absence of a cookie consent mechanism is a minor compliance gap. The WHOIS data is notably missing or unavailable, which raises some concerns about domain registration transparency, although the website content and business information appear legitimate. Overall, Flownative GmbH presents a trustworthy and professional online presence with a strong focus on Neos CMS services. The main risk lies in the incomplete WHOIS data, which should be investigated further. Strategic improvements in security headers, cookie consent, and published security policies would enhance their security posture and compliance standing.

85
65
2
85
85
85
40
phpneosflowcmssupport+4 more
PHPJavaScriptMatomo Analytics

Partner Domains:

sitegeist.de
partner
h-hotels.com
partner

+3 more partners

2025-07-13T23:17:57.044Z
neos.social favicon

Neos Foundation e.V.

neos.social

0
TechnologyGermanysmallMEDIUM

Neos.social is a niche Mastodon instance operated by Neos Foundation e.V., focused on providing a social networking platform for discussions related to Neos and connecting users to the broader Fediverse. The platform leverages the open-source Mastodon software (version 4.4.1) and modern web technologies such as React and JavaScript ES modules, delivering a responsive and user-friendly experience. The website content is well-structured and relevant to its target audience, with a consistent branding approach and clear community focus. From a technical perspective, the site employs modern frameworks and technologies, including WebSockets for real-time communication, and uses CDN resources for media delivery. However, some security best practices such as enabling DNSSEC and implementing security headers are not observed, which could be improved to enhance the overall security posture. The absence of cookie consent mechanisms and limited privacy compliance indicators suggest room for improvement in regulatory adherence. Security-wise, the domain registration is transparent and consistent with the organization's identity, enhancing trustworthiness. The domain is protected against unauthorized transfers, but lacks DNSSEC. No critical vulnerabilities or exposed sensitive data were detected in the analyzed content. Overall, the site maintains a moderate security posture but would benefit from enhanced security policies and compliance measures. Strategically, Neos.social serves a small but focused community, positioning itself as a specialized social platform within the Fediverse ecosystem. The lack of commercial advertising and tracking aligns with privacy-conscious user expectations. To strengthen its market position and trust, the platform should consider publishing more comprehensive privacy and security policies, implementing cookie consent, and improving technical security controls.

75
58
17
60
52
75
100
socialnetworkmastodonfediverseneoscommunity+2 more
Mastodon 4.4.1ReactJavaScript ES ModulesSVG icons+2
2025-07-13T23:17:52.022Z
ionos-group.com favicon

IONOS Group SE

ionos-group.com

0
TechnologyGermanyenterpriseLOW

IONOS Group SE is a leading European digitalization partner specializing in SMB and enterprise cloud and web presence solutions. The company operates multiple well-known brands and serves approximately 6.4 million customers across 18 markets in Europe and North America. Their business model focuses on providing comprehensive hosting, cloud, and domain registration services supported by strong customer care and infrastructure. The website reflects a mature digital presence with investor relations, corporate governance, and press information, indicating a publicly listed and transparent organization. Technically, the website is built on TYPO3 CMS, uses modern web technologies, and integrates Adobe Analytics for user tracking. The site is mobile optimized and demonstrates good SEO and accessibility practices, although some accessibility features could be improved. Hosting appears to be managed internally or via a dedicated CDN. Performance is moderate with room for optimization. Security posture is strong with HTTPS enforced and a robust cookie consent mechanism supporting GDPR compliance. However, explicit security headers are missing, and no public security policy or incident response contacts are published. The WHOIS data is incomplete or privacy protected, which is common for large enterprises but reduces transparency. No vulnerabilities or suspicious content were detected. Overall, the website and business present a low risk profile with strong credibility and compliance. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility to further strengthen trust and compliance.

70
83
2
100
77
90
100
technologycloudhostingdigitalizationsmb+4 more
TYPO3 CMSJavaScriptCSSHTML5

Partner Domains:

arsys.com
subsidiary
fasthosts.co.uk
subsidiary

+3 more partners

2025-07-13T23:16:08.661Z
by-cz.eu favicon

Bayerisches Staatsministerium für Wirtschaft, Landesentwicklung und Energie

by-cz.eu

0
GovernmentGermanymediumMEDIUM

The website www.by-cz.eu serves as the official platform for the INTERREG Bayern - Tschechien program, a European Union funded cross-border cooperation initiative between Bavaria and the Czech Republic for the 2021-2027 funding period. It provides comprehensive information about funding opportunities, project application processes, and program updates. The site is managed under the auspices of the Bavarian State Ministry for Economic Affairs, Regional Development and Energy, reflecting a strong governmental affiliation and public sector focus. Technically, the website is built on TYPO3 CMS, a robust open-source content management system, and employs Matomo analytics configured to respect user privacy. The site is well-structured, mobile-optimized, and includes accessibility features such as easy language and sign language options. Security is well-handled with HTTPS enforced and cookie consent mechanisms in place, although some security headers could be improved. From a security and compliance perspective, the site shows good privacy compliance with GDPR-aligned cookie consent and a detailed privacy policy. However, no explicit security policy or incident response contact information is published, and WHOIS data is unavailable due to registry privacy protections. Despite this, the presence of official ministry logos and consistent branding supports the site's legitimacy. Overall, the website is a trustworthy, professional government portal with a clear mission to support cross-border regional development projects. Strategic recommendations include enhancing security headers, publishing a security.txt file, and providing explicit incident response contacts to further strengthen security posture and user trust.

70
43
17
60
72
75
100
governmentinterregbavariaczechrepubliceufunding+2 more
TYPO3 CMSMatomo AnalyticsJavaScriptCSS+1
2025-07-13T19:53:41.805Z
B

BMI Deutschland GmbH

kloberfinder.com

0
ManufacturingGermanymediumMEDIUM

Klöberfinder.com is a specialized configurator platform operated by BMI Deutschland GmbH, focusing on roofing accessories such as ventilation, roof penetrations, and drainage solutions for pitched and flat roofs. The site targets roofing professionals and end customers seeking tailored product solutions. The business operates in the manufacturing sector with a medium-sized profile and a relatively recent domain registration dating back to 2021. Technically, the website employs modern JavaScript technologies including jQuery and module scripts, with Google Tag Manager for analytics. The site is mobile optimized and presents a professional user experience with clear navigation and consistent branding. Security posture is adequate with HTTPS enforced and nonce usage in scripts, but lacks DNSSEC and visible security headers, which are recommended for improvement. Privacy compliance is basic, with a cookie consent mechanism present but no privacy policy or terms of service found. No contact emails or phone numbers are explicitly provided on the analyzed page, which could be improved for better user trust and compliance. Overall, the website is safe, professional, and trustworthy with moderate technical and security maturity.

60
35
2
60
72
60
40
roofingconfiguratorconstructionbuildingmaterialsventilation+2 more
JavaScriptjQueryiframeResizerGoogle Tag Manager

Partner Domains:

kloeber.de
partner
flavent.kloberfinder.com
service
2025-07-13T17:29:00.740Z
stg-cottbus.com favicon

STG Combustion Control GmbH & Co KG

stg-cottbus.com

0
EnergyGermanymediumMEDIUM

STG Combustion Control GmbH & Co KG is a medium-sized German company specializing in advanced combustion control and process optimization technologies primarily for the glass industry, with additional clients in steel, chemical, and biotechnology sectors. Founded in 1990, the company has a strong market position supported by over 30 years of experience and recognized certifications such as Siemens Solution Partner. Their key offerings include process control systems, oxygen measurement technologies, calorimeters, and burner technologies, tailored to industrial clients seeking energy efficiency and emission reduction. Technically, the website is built on a modern WordPress platform with a comprehensive multilingual setup and SEO optimizations. The site features a cookie consent mechanism compliant with GDPR, professional design, and good mobile and accessibility standards. The technical stack includes popular plugins for SEO, downloads, and consent management, indicating a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses cookie consent for privacy compliance. However, explicit security headers and incident response policies are not evident, suggesting room for improvement in security transparency and defense-in-depth. No vulnerabilities or exposed sensitive data were detected in the content. Overall, the website presents a professional and trustworthy digital presence aligned with the company's industrial B2B focus. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to strengthen trust and compliance.

15
100
2
70
72
65
20
industrialcombustioncontrolglassindustryprocessoptimizationengineering+3 more
WordPress 6.7.2Yoast SEO pluginConsentmanager.net for cookie consentjQuery 3.7.1+3

Partner Domains:

www.stg-cottbus.com
partner
flammtatec.com
subsidiary
2025-07-13T16:18:33.456Z
stg-cottbus.de favicon

STG Combustion Control GmbH & Co KG

stg-cottbus.de

0
EnergyGermanymediumMEDIUM

STG Combustion Control GmbH & Co KG is a German-based company specializing in advanced process control systems and sensor technologies for the glass melting industry and related sectors such as steel, chemical, and biotechnology. Founded in 1990, the company has grown to a medium-sized enterprise with over 60 specialized engineers and technicians. Their offerings include modern process control systems, high-temperature oxygen sensors, advanced signal evaluation, and burner technologies, positioning them as a trusted partner in industrial process optimization. The website reflects a professional and well-established business with a clear market focus on industrial clients requiring energy-efficient and low-emission solutions. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO and multilingual support via WPML. It features good mobile optimization, accessibility, and SEO practices. The site employs HTTPS and a comprehensive cookie consent mechanism, indicating a strong commitment to privacy compliance. However, some security headers are missing, and no explicit security or incident response policies are published. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and no visible vulnerabilities or exposed sensitive data. The cookie consent banner is well implemented, supporting GDPR compliance. No signs of WAF or blocking mechanisms were detected, allowing full content access. The domain WHOIS data aligns with the business claims, supporting legitimacy. Overall, the website is professional, secure, and compliant with privacy regulations, serving a specialized industrial market. Strategic improvements could include adding security headers, publishing incident response information, and enhancing transparency around security policies.

15
100
2
70
72
65
20
industrialglassindustryprocesscontroloxygensensorsenergyefficiency+2 more
WordPress 6.7.2Yoast SEO pluginSitepress Multilingual CMS (WPML)Contact Form 7+3

Partner Domains:

www.stg-cottbus.com
partner
2025-07-13T15:15:25.657Z
kloeber.de favicon

Klöber GmbH

kloeber.de

0
ManufacturingGermanymediumMEDIUM

Klöber GmbH is a well-established German manufacturer specializing in innovative roofing accessories for pitched and flat roofs, serving primarily B2B customers such as roofing professionals, architects, and distributors. The company boasts over 60 years of experience and holds recognized certifications like ISO 9001 and ISO 14001, reinforcing its market position as a leading specialist in Europe. The website reflects a mature digital presence with comprehensive product information, configurators, and resource centers, supporting customer engagement and technical support. Technically, the website employs modern web technologies including Bootstrap, jQuery, Swiper, and Google reCAPTCHA, ensuring responsive design and security against spam. The site is well-optimized for mobile devices and SEO, with clear navigation and professional design. Security practices include HTTPS enforcement and CSRF tokens, although some HTTP security headers could be improved. Privacy compliance is robust, featuring detailed cookie consent mechanisms and a comprehensive privacy policy. The security posture is strong with no evident vulnerabilities or exposed sensitive data. However, the absence of a public security policy or incident response contact is noted. The domain WHOIS data aligns well with the business claims, showing consistent registration and no privacy protection, which supports legitimacy. Overall, the website is trustworthy, professional, and secure, with minor areas for enhancement in security headers and incident response transparency. Strategically, Klöber should focus on publishing a formal security policy and incident response contacts, enhancing HTTP security headers, and maintaining their strong privacy compliance to further build customer trust and meet evolving regulatory requirements.

45
83
17
75
62
65
40
roofingconstructionmanufacturingbuildingmaterialsroofaccessories+2 more
Bootstrap 4.2.1jQuery 3.6.4Swiper 4.4.1Slick Carousel 1.8.1+4

Partner Domains:

kloberfinder.com
partner
flavent.kloberfinder.com
partner

+1 more partners

2025-07-13T15:14:35.408Z
stihl-sso.com favicon

ANDREAS STIHL AG & Co. KG

stihl-sso.com

0
ManufacturingGermanyenterpriseMEDIUM

The website analyzed is the official STIHL dealer portal login page, designed to provide authorized dealers and partners access to account management and related services. STIHL, a well-established German manufacturer of power tools and equipment, uses this portal to facilitate secure Single Sign-On (SSO) authentication for its dealer network. The site is professionally branded, consistent with the corporate identity, and targets a B2B audience. The portal includes essential features such as login, password reset, and registration completion links, with clear references to privacy and terms documents hosted on trusted cloudfront URLs. Technically, the site employs modern web technologies including JavaScript ES modules and likely a SPA framework such as Vue.js, hosted on AWS infrastructure. The site is mobile optimized with a responsive design and uses HTTPS to secure communications. However, some security best practices such as DNSSEC and security headers are not enabled or visible in the provided data. The site lacks a cookie consent mechanism, which is a minor compliance gap. From a security perspective, the portal demonstrates a solid baseline with encrypted login forms and no exposed sensitive data. The domain registration is consistent with the business, and the domain age is appropriate for a corporate SSO service. No signs of phishing, malware, or blocking by WAFs were detected. Privacy policies and terms of service are clearly linked, supporting GDPR compliance. Overall, the site is trustworthy and professionally maintained. The overall risk is low, but improvements in security headers, DNSSEC, and cookie consent would enhance the security posture and compliance. Strategic recommendations include implementing these controls and publishing explicit security and incident response policies to strengthen trust and readiness.

80
53
2
70
72
80
100
logindealerportalstihlssocorporate
JavaScript ES ModulesAWS DNS hostingModern CSS
2025-07-13T14:01:47.416Z
marcsiemering.de favicon

Marc Siemering Business Coaching

marcsiemering.de

0
OtherGermanysmallMEDIUM

Marc Siemering Business Coaching is a small, professional coaching service based in Hannover, Germany, specializing in business coaching, team development, and organizational consulting. The website presents a clear and focused business model targeting individuals and organizations seeking to leverage change as an opportunity for growth. The company appears to have been founded around 2020, consistent with the domain registration data. The site uses WordPress with the Enfold theme and is optimized for SEO and mobile devices, indicating a moderate level of digital maturity. Technically, the website employs modern technologies including Yoast SEO, Real Cookie Banner Pro for GDPR compliance, Google Tag Manager for analytics, and Wordfence for security. Hosting is provided by a German hosting provider, and the site enforces HTTPS with good SSL configuration and security headers. The cookie consent mechanism is comprehensive and compliant with GDPR requirements. From a security perspective, the site benefits from Wordfence firewall protection and proper cookie consent management, with no visible vulnerabilities or exposed sensitive data. However, there is no publicly available security policy or incident response information, which could be improved to enhance trust and preparedness. The absence of a vulnerability disclosure policy or security.txt file is noted. Overall, the website is professional, secure, and compliant with privacy regulations, suitable for its business purpose. Strategic recommendations include publishing security and incident response policies, adding vulnerability disclosure information, and maintaining regular updates to software components to mitigate risks.

15
100
17
70
62
60
-
businesscoachingteamdevelopmentorganizationalconsultinghannovergdpr+3 more
WordPressYoast SEOReal Cookie Banner ProGoogle Tag Manager+1
2025-07-13T11:48:40.682Z