Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 287 of 294|Showing 14301-14350 of 14699
certified-senders.org favicon

Certified Senders Alliance

certified-senders.org

0
TechnologyGermanymediumMEDIUM

Certified Senders Alliance (CSA) is a technology-focused organization operating as a central whitelisting authority for commercial email senders and mailbox providers. Their primary mission is to improve the quality and deliverability of commercial emails such as newsletters, invoices, and order confirmations, while protecting recipients from spam and abuse. CSA offers certification services, monitoring tools, and data insights to help email service providers and senders maintain high reputation and compliance standards. The organization is positioned as a trusted intermediary in the email marketing ecosystem, supported by testimonials from major industry players and operated under the eco Association of the Internet Industry in Germany. Technically, the website is built on WordPress with common web technologies including Bootstrap, jQuery, and Font Awesome. It uses plugins for cookie consent (Borlabs Cookie) and bot protection (hCaptcha). However, the site suffers from a lack of a valid SSL certificate and does not support modern TLS protocols, which is a critical security shortfall. Performance is suboptimal with a slow page load time and a large page size, though mobile optimization and SEO practices are generally good. From a security perspective, the site implements DMARC with reporting and provides abuse contact emails, indicating some level of incident response readiness. However, the absence of HTTPS, security headers, and OCSP stapling significantly weakens the security posture. No explicit security policy or vulnerability disclosure mechanism is found. Privacy compliance is well addressed with comprehensive privacy and cookie policies and a consent mechanism. Overall, while the business credibility and content quality are strong, the technical and security implementations require urgent improvements to protect user data and enhance trust. Strategic recommendations include immediate SSL certificate installation, enabling modern TLS, adding security headers, and optimizing site performance.

15
43
17
50
100
80
100
emailcertificationwhitelistingemailmarketingdeliverability+2 more
WordPressPHPjQueryBootstrap+4
2025-06-15T13:47:03.774Z
E

ETTINGER GmbH

ettinger.de

0
ManufacturingGermanymediumHIGH

ETTINGER GmbH is a well-established German family-owned company specializing in fastening technology and electromechanical components, serving industrial and trade customers through a comprehensive B2B online shop. The company offers a wide range of over 25,000 products, including custom manufacturing and special procurement services, with a focus on quality and fast delivery. The website reflects a mature digital presence with professional design, clear navigation, and rich content tailored to its target audience of manufacturers and industrial clients. Technically, the site is built on the Shopware CMS platform, leveraging modern technologies like Algolia for search and Google Tag Manager for analytics. However, a critical security gap exists as the site lacks a valid SSL/TLS certificate, exposing users to potential risks and undermining trust. Security headers are partially implemented but ineffective without HTTPS. Privacy and cookie policies are present and compliant with GDPR, including consent mechanisms. The domain registration is consistent and legitimate, with no privacy protection or suspicious patterns, supporting the company's credibility. Overall, while the business and content aspects are strong, immediate attention is required to secure the website with HTTPS to protect user data and enhance trust.

60
-
-
50
-
70
40
b2be-commercemanufacturingelectromechanicsfasteningtechnology+1 more
Apache 2.4.62Debian LinuxShopware CMShtmx.js+4

Partner Domains:

portal.ettinger.de
service
katalog.ettinger.de
service
2025-06-15T13:07:57.644Z
s2labs.org favicon

IoT Smart Space Research Team (IoT-s2o)

s2labs.org

0
TechnologyGermanysmallHIGH

The website represents an academic research group led by Marc-Oliver Pahl, focusing on autonomous control and management in heterogeneous networks, specifically IoT Smart Space Orchestration. The group is affiliated with the Technical University of Munich and Institut Mines Telecom, targeting researchers, students, and industry partners interested in IoT technologies and smart spaces. The site serves as an informational and educational platform, offering research insights, teaching activities, project showcases, and open positions for students. Technically, the website is hosted on an Apache server running on Ubuntu, using a custom minimalistic CMS (miniCMS). The site lacks modern security implementations such as HTTPS, HSTS, and DNSSEC, and does not employ advanced web frameworks or performance optimizations. The content is primarily static HTML with embedded multimedia and social media widgets. Performance data is unavailable, and mobile optimization is basic. From a security perspective, the absence of HTTPS and valid SSL certificates is a critical vulnerability, exposing users to potential data interception risks. No security policies, incident response contacts, or vulnerability disclosure mechanisms are published. The site does not implement cookie consent or privacy compliance features beyond a basic privacy policy page. Analytics usage is minimal and disabled, reducing privacy concerns but also limiting insights. Overall, the website functions adequately as an academic informational resource but requires urgent security upgrades and privacy compliance improvements to protect users and enhance trustworthiness. Strategic recommendations include implementing HTTPS, adding security headers, publishing comprehensive privacy and security policies, and improving technical infrastructure for better performance and accessibility.

15
43
17
50
50
85
40
iotsmartspaceresearcheducationdistributedsystems
Apache 2.4.41UbuntuHTML5CSS+2
2025-06-14T22:20:39.750Z
stella-projects.de favicon

ivy.mayhem GmbH

stella-projects.de

0
TechnologyGermanysmallHIGH

stella.projects is a small, specialized web agency based in Hamburg, Germany, with over 15 years of experience in web design and development. They focus on delivering custom digital products including websites, online platforms, consulting, and hosting services. The company positions itself as a reliable partner for startups, SMEs, and private clients, emphasizing clarity, focus, and quality in their offerings. Their market position is strengthened by an official partnership with Statamic CMS and a portfolio of diverse clients. Technically, the website uses modern frameworks such as Laravel and Statamic CMS, with frontend technologies including Alpine.js and a well-structured responsive design. However, the site lacks a valid SSL certificate and HTTPS support, which is a critical security flaw. Security headers are mostly present but the absence of HTTPS and HSTS significantly reduces the security posture. Privacy compliance is addressed with a privacy and cookie policy, though no explicit cookie consent mechanism is implemented. Contact information is clearly provided, including phone, email, physical address, and a contact form. Overall, the website is professional and trustworthy but requires urgent security improvements to protect user data and improve trust.

55
18
25
70
85
85
40
webagenturwebdesignwebentwicklungstatamiclaravel+2 more
PHPLaravelStatamic CMSJavaScript+3

Partner Domains:

mayhem.de
partnerpending
2025-06-14T21:57:55.461Z
anqa-itsecurity.de favicon

Anqa IT-Security GmbH

anqa-itsecurity.de

0
TechnologyGermanymediumHIGH

Anqa IT-Security GmbH is a German-based Managed Security Service Provider specializing in comprehensive IT security solutions including UTM firewalls, pentesting, endpoint protection, dark web monitoring, and cyber security awareness trainings. The company serves over 7,000 businesses and partners with more than 500 IT system houses, positioning itself as a trusted and experienced player in the German IT security market. Their offerings are designed to be flexible with monthly cancellable contracts and include a free managed service component, enhancing customer value and operational reliability. Technically, the website is built on WordPress with modern plugins for SEO and GDPR compliance, but suffers from slow load times and lacks a valid SSL certificate, which critically impacts security posture. The absence of HTTPS and security headers represents a significant vulnerability that should be addressed immediately. Privacy compliance is strong, with clear cookie consent mechanisms and a comprehensive privacy policy. Business credibility is supported by certifications such as ISO27001 and TÜV, testimonials, and a professional online presence. Overall, while the business model and content quality are excellent, the technical security shortcomings reduce the overall risk rating and require urgent remediation.

15
18
22
75
50
80
20
it-securitymanagedservicecybersecurityawarenessutmfirewallpentesting+4 more
WordPressYoast SEO pluginjQuerySwiper.js+4

Partner Domains:

network-box.com
partnerpending
enginsight.com
partnerpending

+2 more partners

2025-06-14T21:55:38.694Z
ivymayhem.io favicon

ivy.mayhem GmbH

ivymayhem.io

0
TechnologyGermanysmallMEDIUM

ivy.mayhem GmbH is a Germany-based digital product and service studio specializing in SaaS platform development. Founded in 2016, the company develops and operates multiple SaaS products such as eniston, releasesapp, deftform, and others, serving a diverse clientele from startups to large corporations. The company recently expanded by acquiring stella.projects, a full-service web development agency, enhancing its service offerings. The website presents a professional and modern design with clear navigation and responsive layout, targeting technology-focused businesses and entrepreneurs. Technically, the site uses modern frontend technologies including Alpine.js and Tailwind CSS, hosted with Cloudflare DNS and agenturserver.de mail services. However, the website lacks a valid SSL certificate, resulting in no HTTPS support, which is a significant security concern. Security best practices such as HSTS, security headers, and OCSP stapling are absent, reducing the overall security posture. Privacy compliance is addressed with a comprehensive privacy policy and GDPR compliance statements, but no cookie consent mechanism is implemented. The site uses minimal user tracking via Fathom Analytics, respecting user privacy. Overall, the website is functional and professional but requires urgent improvements in SSL configuration and security headers to enhance trust and security.

50
43
25
55
85
80
40
saasdigitalproductstechnologygdpriso27001+2 more
JavaScript (ES Modules)Tailwind CSS (inferred from class names)Cloudflare DNS and nameserversVideo embedding with HTML5 video tag+1

Partner Domains:

stella-projects.de
subsidiarypending
2025-06-14T21:52:20.578Z
gft.com favicon

GFT Technologies SE

gft.com

0
TechnologyGermanylargeMEDIUM

GFT Technologies SE is a global technology company specializing in digital transformation and IT modernization services, primarily serving the banking, insurance, and manufacturing sectors. The company leverages advanced technologies such as cloud computing, AI, blockchain, and IoT to deliver innovative solutions that help enterprises stay competitive. Their strong partner ecosystem includes major cloud providers and fintech innovators, reinforcing their market position. Technically, the website is built on modern frameworks like Vue.js and managed via Magnolia CMS, with integrations for analytics and consent management tools such as Google Tag Manager, Microsoft Clarity, and Cookiebot. While the site is mobile-optimized and well-structured for SEO and accessibility, performance metrics were not available. The hosting is supported by Fastly CDN, ensuring global content delivery. From a security perspective, the site implements several best practices including a Content Security Policy, secure cookie flags, and security headers. However, the SSL certificate is invalid or missing, and modern TLS protocols are not supported, which significantly impacts the security posture. No explicit security policy or incident response information is publicly available, and no vulnerability disclosure or security.txt file was found. Overall, the website presents a professional and trustworthy image with comprehensive privacy and cookie policies, but the lack of valid SSL and modern TLS support are critical issues that should be addressed promptly to improve security and user trust.

85
25
25
85
50
85
100
digitaltransformationcloudaiblockchainfinancialservices+2 more
JavaScriptVue.jsGoogle Tag ManagerCookiebot+4
2025-06-14T21:35:59.120Z
exaroton.com favicon

Aternos GmbH

exaroton.com

0
TechnologyGermanymediumMEDIUM

exaroton.com is a specialized service offering high-end, on-demand Minecraft game servers with a unique pay-per-use pricing model. The platform targets Minecraft players and server administrators who desire flexible, customizable, and cost-efficient server hosting. The service is backed by Aternos GmbH, a German company, and integrates features such as DDOS protection, automatic backups, and API access to enhance user experience and operational control. The website demonstrates a professional design with clear navigation and comprehensive content tailored to its niche audience. Technically, the site employs modern web technologies including JavaScript, HTML5, and CSS3, with DNS and CDN services provided by Cloudflare. The platform supports both Minecraft Java and Bedrock editions, offering a wide range of server software and modpacks. Despite good SEO and accessibility practices, the website suffers from a critical security flaw: the absence of a valid SSL certificate and HTTPS support, which severely impacts its security posture. Security-wise, the site has implemented SPF and DMARC DNS records with a strict reject policy, uses Google MX servers for email, and has no subdomain takeover vulnerabilities. However, the lack of HTTPS, TLS protocols, HSTS, and OCSP stapling exposes users to potential risks. Privacy compliance is strong, with a comprehensive privacy policy and terms of service hosted on the parent company domain. Analytics usage is moderate and privacy-conscious, utilizing Matomo. Overall, exaroton.com presents a strong business and technical foundation but must urgently address its SSL/TLS deficiencies to ensure user trust and data security. Strategic improvements in security configuration will elevate the platform's credibility and protect its user base effectively.

50
43
25
87
100
85
100
minecraftgameserversondemandhostingcloudgamingddosprotection+1 more
JavaScriptHTML5CSS3Cloudflare DNS+6

Partner Domains:

aternos.org
parent67
2025-06-14T21:31:50.152Z