Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 293 of 294|Showing 14601-14650 of 14699
vanillareply.com favicon

Reply

vanillareply.com

0
E-commerceGermanymediumMEDIUM

Vanilla Reply, a part of the Reply group, specializes in tailored e-commerce, CMS, and PIM solutions primarily serving the German market. The company leverages strong partnerships with leading technology providers such as Shopware, Sylius, Akeneo, Storyblok, and TYPO3 to deliver integrated and agile digital experiences. Their business model focuses on consulting, custom software development, and cloud-based operations, positioning them as a trusted medium-sized player in the e-commerce sector. Technically, the website employs modern web technologies including Google Tag Manager, reCAPTCHA, OneTrust for cookie consent, and Google Maps API. The hosting is managed via register.it with a valid SSL certificate supporting TLS 1.3 and 1.2, and OCSP stapling enabled. However, performance is somewhat slow with a page load time of over 8 seconds, indicating potential optimization opportunities. The site is well-optimized for mobile and accessibility, with good SEO practices. From a security perspective, the site demonstrates good practices such as strong TLS protocols and no known SSL vulnerabilities. However, it lacks DNSSEC, CAA records, and DMARC, which are recommended for enhanced DNS and email security. The cookie consent mechanism is robust and GDPR compliant, but no explicit security policy or incident response information is publicly available. Overall, Vanilla Reply presents a professional and trustworthy digital presence with strong business and technical foundations. Strategic improvements in DNS security, email authentication, and performance optimization would further enhance their security posture and user experience.

80
43
25
70
72
75
100
e-commercecontentmanagementdigitalexperienceakeneocelum+5 more
Google Tag ManagerGoogle reCAPTCHAOneTrust Cookie ConsentGoogle Maps API+2

Partner Domains:

shopware.com
partner56
sylius.com
partnerpending

+3 more partners

2025-06-14T18:20:05.966Z
score-media.de favicon

Score Media Group

score-media.de

0
MediaGermanymediumMEDIUM

Score Media Group operates as a national marketing platform for regional media brands in Germany, focusing on regional daily newspapers, their digital and print editions, and associated advertising services. The company holds a strong market position with a portfolio of over 420 regional newspaper titles reaching 62 million readers monthly. Their business model centers on cross-media advertising solutions, combining print, online, and e-paper channels to deliver targeted campaigns for advertisers and agencies. Technically, the website is built on WordPress with modern frameworks like React and uses various plugins and tools such as WPBakery, Slider Revolution, and Google Analytics, indicating a mature digital infrastructure but with room for performance optimization due to high page size and load times. Security-wise, the site supports modern TLS protocols and has valid SPF records but lacks advanced security headers like HSTS and OCSP stapling, and the DMARC policy is set to none, which could expose email spoofing risks. Overall, the site demonstrates good SEO, branding consistency, and user experience but would benefit from enhanced security configurations and clearer contact information.

15
18
17
65
87
80
100
regionalmediaadvertisingmediamarketingcrossmediae-paper+3 more
WordPressWPBakery Page BuilderSlider RevolutionjQuery+5

Partner Domains:

scoremedia.de
partnerpending
medien-systempartner.de
partnerpending
2025-06-14T18:19:37.147Z
tueh.de favicon

TÜH Staatliche Technische Überwachung Hessen

tueh.de

0
TransportationGermanymediumMEDIUM

TÜH Staatliche Technische Überwachung Hessen operates as a regional governmental authority providing digital tachograph cards and related services to individuals and businesses in Hessen, Germany. The website serves as an informational and transactional portal offering application forms and guidance for driver cards, company cards, and workshop cards. The organization positions itself as a trusted public service entity within the transportation sector, focusing on compliance and regulatory oversight. Technically, the website is built on TYPO3 CMS, hosted behind Cloudflare DNS and CDN services, and employs standard web technologies including Bootstrap and FontAwesome. Performance is moderate with good mobile optimization and basic accessibility. Security posture is adequate with a valid SSL certificate and cookie consent mechanisms; however, improvements are recommended such as enabling HSTS, DNSSEC, and security headers. No explicit terms of service or vulnerability disclosure policies are present, and contact information is limited to a contact form without direct emails or phone numbers. Analytics usage includes etracker and Google marketing cookies with user consent. Overall, the website demonstrates a professional and trustworthy presence aligned with its public service mission.

90
18
25
60
67
75
100
governmentdigitaltachographtransportationhessentypo3+2 more
TYPO3 CMSBootstrap (implied by classes and data-bs-toggle)FontAwesomeJavaScript+2
2025-06-14T18:18:35.271Z
koelnmesse.com favicon

Koelnmesse GmbH

koelnmesse.com

0
OtherGermanylargeMEDIUM

Koelnmesse GmbH is a leading trade fair and event organizer based in Cologne, Germany, with a century-long history since its founding in 1924. The company operates over 80 trade fairs and exhibitions both locally and in key global markets, serving a diverse audience including exhibitors, visitors, and trade fair organizers. Koelnmesse has a strong market position, recognized for its sustainability efforts and industry leadership, including recent awards such as 'Company of the Year' 2025 and 'Pioneer in Sustainability 2024'. Technically, the website employs a modern tech stack including jQuery, OneTrust for privacy management, Google Tag Manager, and various third-party integrations for social media and advertising. Hosting is provided via Amazon AWS infrastructure. Performance is moderate with good mobile optimization and basic accessibility features. SEO practices are good, supporting the company's digital presence. From a security perspective, while email security is well managed with valid SPF and DMARC records, the absence of a valid SSL certificate and lack of modern TLS protocols represent significant vulnerabilities. The site lacks HSTS, OCSP stapling, and other advanced security headers, lowering its overall security posture. No vulnerability disclosure or security.txt files were found, indicating limited transparency in security incident handling. Overall, Koelnmesse presents a professional and trustworthy online presence with strong business credentials but requires urgent improvements in its SSL/TLS configuration and security best practices to protect user data and maintain compliance with modern security standards.

30
40
17
75
90
80
100
tradefairseventsexhibitionskoelnmessecologne+7 more
jQueryAdobe Illustrator SVGsOneTrust Cookie ConsentGoogle Tag Manager+5

Partner Domains:

koelncongress.de
subsidiarypending
softgarden.io
servicepending
2025-06-14T18:18:34.128Z
qwist.com favicon

Qwist GmbH

qwist.com

0
FinanceGermanymediumMEDIUM

Qwist GmbH is a leading open finance platform operating primarily in the DACH and Iberian markets, offering a comprehensive suite of B2B2X financial technology products. Their key offerings include digital account and portfolio switching, open banking compliance solutions, financial data analytics, and digital lending integration. The company positions itself as the #1 open finance company in its region, serving major banks and financial institutions with a strong investor backing from Finch Capital and Finleap. Technically, the website is built on WordPress with the Divi theme and leverages modern marketing and analytics tools such as HubSpot, Matomo, and SalesLoft. The site employs GDPR-compliant cookie consent via Cookiebot and maintains a valid SSL certificate, although some security enhancements like HSTS and DNSSEC are absent. Performance is moderate with good mobile optimization and SEO practices. From a security perspective, Qwist demonstrates solid foundational practices including SPF and DMARC email protections and encrypted communications. However, the absence of advanced DNS security measures and a public security or incident response policy suggests room for improvement. No critical vulnerabilities were detected in the current analysis. Overall, Qwist presents a professional and trustworthy digital presence aligned with its market leadership in open finance. Strategic security enhancements and transparency in incident response would further strengthen its risk posture and customer confidence.

30
43
25
80
67
85
100
openfinanceb2b2xapiplatformpsd2digitallending+5 more
WordPressDivi ThemeYoast SEOCookiebot+8

Partner Domains:

finchcapital.com
partnerpending
finleap.com
partnerpending

+3 more partners

2025-06-14T18:16:42.373Z
cdr-lab.de favicon

dimension2 economics & philosophy GmbH

cdr-lab.de

0
OtherGermanysmallMEDIUM

CDR Lab, operated by dimension2 economics & philosophy GmbH, is a German-based cooperative platform established in 2018 that focuses on Corporate Digital Responsibility (CDR). It serves as a participatory process for companies, academia, NGOs, and institutions to collaboratively develop knowledge, share experiences, and initiate joint CDR solutions through conferences, workshops, webinars, and research projects. The organization positions itself as a niche leader in responsible digital transformation and ethical digital business practices. The website is professionally built on WordPress with modern plugins and SEO optimization, targeting German-speaking audiences interested in digital responsibility and sustainability. Technically, the website leverages WordPress 6.6.1 with Colibri Page Builder Pro, Ultimate Member, The Events Calendar, and Forminator plugins. It is hosted on lima-city.de with multiple IPv4 and IPv6 addresses. Performance is moderate with a page load time of approximately 5 seconds and a page size of 450 KB. Mobile optimization and SEO are good, but accessibility is basic. The site lacks a valid SSL certificate and does not currently enforce HTTPS, which is a significant security concern. DNS records include valid SPF and DMARC policies, but DNSSEC and CAA are not enabled. From a security perspective, the absence of a valid SSL certificate and disabled TLS protocols expose the site to risks such as data interception and man-in-the-middle attacks. The site does not implement HSTS, OCSP stapling, or session resumption, further weakening its security posture. No explicit security policy, incident response contacts, or vulnerability disclosure mechanisms are present. The site collects personal data via a contact form but lacks visible cookie consent mechanisms, which may impact GDPR compliance despite having a comprehensive privacy policy hosted on a related domain. Overall, while the business and content aspects of CDR Lab are strong and professionally presented, the technical security posture requires urgent improvement to protect user data and enhance trust. Strategic recommendations include immediate SSL/TLS deployment, enabling modern security headers and protocols, and implementing cookie consent and vulnerability disclosure policies to align with best practices and regulatory requirements.

45
18
17
50
90
85
90
cdrlabworkshopsconferenceswebinarsevents+3 more
WordPress 6.6.1Yoast SEO pluginColibri Page Builder ProUltimate Member plugin+8

Partner Domains:

dimension2.consulting
partnerpending
bayern-innovativ.de
partneranalyzing...

+1 more partners

2025-06-14T17:36:04.368Z
bayern-innovativ.de favicon

Bayern Innovativ

bayern-innovativ.de

0
GovernmentGermanymediumHIGH

Bayern Innovativ is a publicly commissioned innovation support organization based in Bavaria, Germany, established in 1995. It focuses on fostering innovation by connecting businesses, research institutions, and organizations through networks, services, and events. The organization supports the entire innovation lifecycle, from idea development to market introduction, with a strong emphasis on sectors such as energy, transportation, healthcare, manufacturing, and creative industries. Their market position is well-established as a key facilitator of innovation in the Bavarian economy. Technically, the website is built on TYPO3 CMS and incorporates modern web technologies including Bootstrap, jQuery, and various third-party services such as ReadSpeaker for accessibility and Google Tag Manager for marketing analytics. The site demonstrates good mobile optimization and accessibility features, though performance is somewhat slow with a high load time and resource count. From a security perspective, the site supports TLS 1.3 and 1.2 with no known SSL vulnerabilities, but lacks advanced security headers like HSTS and DNSSEC. Cookie consent mechanisms are implemented comprehensively, supporting GDPR compliance. Certifications such as ISO 37301 and audit badges enhance trustworthiness. However, no explicit security or incident response policies are publicly available. Overall, Bayern Innovativ presents a professional and trustworthy digital presence with room for improvement in security hardening and performance optimization. Strategic enhancements in these areas would strengthen their security posture and user experience.

25
18
25
50
87
85
50
innovationbavariatechnologynetworkingevents+6 more
TYPO3 CMSBootstrap (implied by classes and navbar)jQueryReadSpeaker+5
2025-06-14T17:36:04.346Z
cdr-award.digital favicon

Corporate Digital Responsibility Award

cdr-award.digital

0
OtherGermanymediumMEDIUM

The Corporate Digital Responsibility Award website serves as a platform to recognize and promote outstanding corporate responsibility in digital transformation within the DACH region. It targets organizations committed to sustainable and ethical digital practices, offering awards, conferences, and networking opportunities. The site is well-branded, content-rich, and supported by reputable partners, positioning it as a leading initiative in its niche. Technically, the website is built on WordPress with common plugins such as Contact Form 7 and Borlabs Cookie for consent management. Despite good SEO practices including structured data and meta tags, the site suffers from performance issues with a high load time and large page size. Mobile optimization and accessibility are rated good, but the lack of a valid SSL certificate and modern TLS protocols significantly undermines the security posture. Security-wise, the absence of HTTPS and modern encryption protocols exposes users to risks, and no advanced security headers or incident response information are present. The site does implement SPF for email protection and shows no signs of subdomain takeover vulnerabilities. Overall, the security maturity is low, requiring urgent improvements to protect user data and enhance trust. Strategically, the site should prioritize securing its infrastructure with valid SSL certificates and modern protocols, enhance security headers, and provide clearer contact and incident response information. These steps will improve user trust, compliance with regulations, and overall resilience against cyber threats.

70
43
25
65
90
85
100
cdrawardsustainabilitydigitalresponsibilitydachregionaward2024+2 more
WordPressPHPjQueryUltimate VC Addons+4

Partner Domains:

bvdw.org
partner70
bayern-innovativ.de
partnerpending

+3 more partners

2025-06-14T13:58:52.331Z
amalytix.com favicon

AMALYTIX GmbH

amalytix.com

0
E-commerceGermanysmallMEDIUM

AMALYTIX GmbH operates a specialized SaaS platform focused on providing Amazon sellers and vendors with comprehensive business intelligence and monitoring tools. Positioned as an official Amazon Software Partner and Amazon Ads Software Partner, AMALYTIX offers a suite of services including Amazon BI dashboards, intelligent alerts, content monitoring, and agency tools. The company targets Amazon marketplace participants primarily in Germany and offers a 14-day free trial to attract users. Their digital presence is robust, featuring bilingual content, extensive knowledge bases, and customer testimonials that reinforce trust and professionalism. Technically, the website leverages modern frameworks such as Nuxt.js and Vue.js, hosted on Netlify Edge, with TailwindCSS for styling and Umami Analytics for privacy-focused user tracking. While the site demonstrates good SEO, mobile optimization, and user experience, performance metrics are moderate, and accessibility is basic. The SSL configuration is notably deficient, with no valid certificate and no modern TLS protocols enabled, posing a significant security risk. From a security perspective, the site implements some best practices such as HSTS headers but lacks a valid SSL certificate, OCSP stapling, session resumption, and certificate transparency compliance. There is no visible security policy or incident response information, which could impact trust and compliance. Cookie consent mechanisms are implemented and appear GDPR compliant, supported by a comprehensive privacy policy. Overall, AMALYTIX presents a professional and trustworthy e-commerce SaaS offering with strong market positioning but requires urgent improvements in SSL/TLS security to protect user data and maintain compliance. Strategic enhancements in security posture and incident response readiness will further strengthen their market credibility and operational resilience.

30
43
25
50
50
85
100
amazonbimonitoringsellervendor+3 more
Nuxt.jsVue.jsNetlify EdgeTailwindCSS+3
2025-06-14T13:53:38.191Z
ad-agents.com favicon

ad agents GmbH

ad-agents.com

0
TechnologyGermanymediumMEDIUM

ad agents GmbH is a well-established digital marketing agency based in Germany, specializing in online and performance marketing services. Founded in 2006, the company offers a comprehensive portfolio including search engine advertising, SEO, Amazon marketplace services, affiliate management, social media advertising, consulting, analytics, and product data management. The agency serves a broad business audience seeking to enhance their digital marketing performance nationally and internationally. The website reflects a mature digital presence with excellent content quality, strong branding consistency, and multiple trust indicators such as client testimonials and industry certifications. Technically, the site is built on WordPress with modern performance optimizations and integrates advanced marketing and analytics tools like HubSpot, Usercentrics CMP, and eTracker. Security posture is good with valid SSL, HSTS enabled, and SPF records configured, though TLS protocols are currently disabled, which is a notable gap. Privacy compliance is well addressed with GDPR-aligned cookie consent mechanisms. Overall, the company demonstrates a strong market position with a professional and trustworthy online presence.

25
43
17
100
85
85
75
digitalmarketingperformancemarketingseoseaaffiliate+4 more
WordPressYoast SEOWP RocketHubSpot+6

Partner Domains:

adtraction.com
partnerpending
amalytix.com
partnerpending

+3 more partners

2025-06-14T13:03:27.397Z
solarisgroup.com favicon

Solarisbank AG

solarisgroup.com

0
FinanceGermanylargeMEDIUM

Solarisbank AG operates as a leading embedded finance platform in Europe, providing a comprehensive Banking-as-a-Service solution that enables businesses to integrate digital banking, payments, lending, and identification services via advanced APIs. The company holds a full German banking license, allowing it to operate across the EU with a strong compliance and regulatory framework. Solarisbank's market position is reinforced by partnerships with notable clients such as American Express and Tomorrow, and a clear focus on customer-centric financial product innovation. Technically, Solarisbank employs modern web technologies including React and Gatsby, hosted on AWS infrastructure, with a cloud-based banking platform emphasizing scalability and international expansion. The website demonstrates good performance, mobile optimization, accessibility, and SEO practices, supported by a robust API-driven backend. From a security perspective, Solarisbank maintains a valid SSL certificate, enforces HSTS with preload, and implements SPF DNS records. However, the absence of enabled TLS 1.2 or higher protocols and lack of DNSSEC and CAA records present areas for improvement. The company provides clear privacy policies, cookie consent mechanisms, and incident response contact channels, reflecting a mature security posture. Overall, Solarisbank presents a high-trust, professional digital presence with strong business and technical foundations. Strategic enhancements in security protocols and transparency around vulnerability disclosures would further strengthen its risk profile and customer confidence.

80
43
25
95
75
85
100
solarisbankbankbankingplatformdigital+6 more
ReactGatsbyRESTful APIsCloud-based infrastructure+1

Partner Domains:

whispli.com
serviceanalyzing...
americanexpress.com
partner72

+1 more partners

2025-06-14T13:03:15.572Z
volkswagen-versicherungsdienst.de favicon

Volkswagen Financial Services

volkswagen-versicherungsdienst.de

0
FinanceGermanyenterpriseMEDIUM

Volkswagen Financial Services AG operates the volkswagen-versicherungsdienst.de website, providing a comprehensive portfolio of automotive insurance products including liability, partial and full coverage, warranty extensions, leasing rate insurance, credit protection, and travel insurance. The site targets primarily German private and business customers, leveraging the strong Volkswagen brand and integrated financial services ecosystem. The website is built on Adobe Experience Manager with extensive use of modern web technologies and content delivery networks, ensuring excellent performance and user experience. However, the SSL configuration is critically flawed with a self-signed certificate and no enabled TLS protocols, which undermines secure communications. Security headers are well implemented, but the absence of a cookie consent mechanism and explicit security or incident response policies indicates gaps in compliance and transparency. The site integrates multiple marketing and analytics tools, including Adobe Analytics, Google Tag Manager, and UserZoom, reflecting extensive user tracking. Overall, the site is professional, content-rich, and trustworthy from a business perspective but requires urgent security improvements to protect user data and comply with best practices.

80
18
25
85
72
85
100
insuranceautomotiveleasingfinancingvolkswagen+5 more
Adobe Experience Manager (AEM)Adobe Launch (Tag Manager)Helix RUM (Adobe Helix Real User Monitoring)UserZoom (UX feedback tool)+7

Partner Domains:

volkswagenbank.de
partner69
vwfs.de
partner69

+2 more partners

2025-06-14T13:02:51.574Z
V

Volkswagen Financial Services AG

volkswagen-bank.com

0
FinanceGermanylargeMEDIUM

Volkswagen Financial Services AG operates as the financial and mobility services provider for the Volkswagen Group across Europe, managing financing, leasing, insurance, and mobility solutions in 17 markets. The company holds a strong market position as a wholly-owned subsidiary of Volkswagen AG, with a large operational footprint and a focus on sustainability and customer mobility. The website reflects a professional and consistent brand presence with comprehensive investor relations and media content. Technically, the site is built on Adobe Experience Manager, leveraging modern content delivery and third-party integrations for analytics and marketing. Security headers and policies are well implemented, though some SSL/TLS configuration anomalies were detected, likely due to scanning artifacts or misconfigurations. Overall, the security posture is solid but could be improved by enabling modern TLS protocols and publishing explicit security policies. The site demonstrates good privacy compliance with a comprehensive privacy policy and consent mechanisms for external data sources. Social media presence and trust indicators support a high level of trustworthiness.

80
43
22
75
80
85
100
volkswagenfinancialservicessustainabilityinvestorrelationscareer+4 more
Adobe Experience Manager (AEM)Adobe Launch (Tag Manager)JavaScriptHelix RUM+7

Partner Domains:

vwfs.com
subsidiary73
volkswagenbank.de
subsidiary69

+1 more partners

2025-06-14T12:59:57.378Z
arri.com favicon

ARRI GmbH

arri.com

0
MediaGermanylargeMEDIUM

ARRI GmbH is a well-established leader in the media industry, specializing in the design and manufacture of professional camera and lighting systems for the film and broadcast sectors. With a history dating back to 1917, ARRI maintains a strong market position supported by a comprehensive product portfolio including camera systems, lenses, lighting, rental services, and virtual production solutions. The company targets industry professionals and production companies worldwide, leveraging a large-scale operational footprint and partnerships such as ARRI Rental and Claypaky. Technically, the website is built on a modern stack including CoreMedia CMS, React, and is hosted on AWS CloudFront, delivering fast performance and good mobile optimization. Security measures include a valid SSL certificate and several HTTP security headers, though the lack of modern TLS protocols and DNSSEC indicates room for improvement. Privacy and cookie policies are present and GDPR compliant, with a consent mechanism implemented via Usercentrics. Overall, ARRI demonstrates a mature digital presence with strong branding, comprehensive content, and good security hygiene, though enhancements in encryption protocols and security disclosures could further strengthen its posture.

60
25
25
100
85
85
100
camerasystemslightingfilmindustrybroadcastvirtualproduction+3 more
nginxCoreMedia CMSJavaScriptReact (react-bundle)+7

Partner Domains:

arrirental.com
partnerpending
claypaky.it
partnerpending
2025-06-14T12:59:19.393Z