Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 106 of 151|Showing 5251-5300 of 7528
frtib.gov favicon

Federal Retirement Thrift Investment Board

frtib.gov

0
GovernmentUnited StatesmediumMEDIUM

The Federal Retirement Thrift Investment Board (FRTIB) is a U.S. government agency responsible for administering the Thrift Savings Plan (TSP), a retirement savings and investment plan for federal employees and uniformed services members. The website serves as the official portal providing strategic plans, regulatory information, procurement details, career opportunities, and participant resources. It positions itself as a trusted government entity focused on improving retirement outcomes for its participants. Technically, the site leverages modern web technologies including the U.S. Web Design System (USWDS) for accessibility and responsive design, Google Tag Manager, Google Analytics GA4, and the Digital Analytics Program for traffic and performance monitoring. The site is well-structured with clear navigation and mobile optimization, although some improvements in cookie consent and security headers could enhance compliance and security posture. From a security perspective, the site enforces HTTPS and uses a .gov domain, which are strong trust indicators. However, explicit security headers are not detected in the provided data, and no dedicated security or incident response policies are published. The WHOIS data is not publicly available, consistent with government domain privacy practices, and no suspicious patterns are detected. Overall, the site demonstrates a solid security posture but could benefit from enhanced transparency and security best practices. The overall risk assessment is low, with the site being a legitimate government resource with high trustworthiness. Strategic recommendations include implementing cookie consent mechanisms, publishing detailed security policies, adding security headers, and enhancing DNS security with DNSSEC to further strengthen the security and privacy posture.

55
53
35
85
95
85
100
governmentretirementinvestmenttspfederal+3 more
Google Tag ManagerGoogle Analytics GA4Digital Analytics Program (DAP)US Web Design System (USWDS)+1

Partner Domains:

www.tsp.gov
partner
2025-07-23T14:23:59.912Z
vg-altenkirchen-flammersfeld.de favicon

Verbandsgemeinde Altenkirchen-Flammersfeld

vg-altenkirchen-flammersfeld.de

0
GovernmentGermanymediumHIGH

The Verbandsgemeinde Altenkirchen-Flammersfeld website serves as the official digital presence of the local government authority in the Altenkirchen-Flammersfeld region of Rheinland-Pfalz, Germany. It provides comprehensive information and services to residents and visitors, including citizen services, local politics, tourism, water and wastewater management, and economic development support. The site is well-positioned as a trusted source for regional administrative and community information. Technically, the website is built on the TYPO3 CMS platform, leveraging modern web technologies such as jQuery, Bootstrap, and Slick Carousel for a responsive and user-friendly experience. The hosting is managed by agenturserver, with proper HTTPS encryption ensuring secure communications. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and employs secure form handling, but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear privacy and cookie policies and a consent mechanism in place, aligning with GDPR requirements. Overall, the website presents a low-risk profile with a solid foundation in content quality, technical implementation, and privacy compliance. Strategic improvements in security headers and incident response transparency would further enhance its security posture and trustworthiness.

30
43
17
65
62
70
-
governmentlocaladministrationtourismpublicservicestypo3
jQuery 3.5.1BootstrapSlick CarouselTYPO3 CMS
2025-07-23T14:21:43.923Z
tsp.gov favicon

The Thrift Savings Plan (TSP)

tsp.gov

0
GovernmentUnited StateslargeMEDIUM

The Thrift Savings Plan (TSP) website serves as the official online portal for the U.S. federal government's retirement savings and investment plan for federal employees and uniformed service members. Established by Congress in 1986, the TSP offers retirement savings options similar to private sector 401(k) plans. The website provides comprehensive information on plan management, fund options, performance, and withdrawal processes, targeting federal employees and service members. It maintains a strong market position as the authoritative source for TSP-related information and services. Technically, the website is built using modern web technologies including Jekyll as a static site generator, USWDS for design consistency, and integrates Google Analytics and Digital Analytics Program scripts for user behavior insights. The site is well-optimized for mobile devices, accessible, and demonstrates excellent SEO practices. Security is robust with HTTPS enforced, Content Security Policy headers, and anonymized IP tracking in analytics, although additional security headers could enhance protection. From a security perspective, the site shows maturity with no evident vulnerabilities or exposed sensitive data. It includes privacy and vulnerability disclosure policies, reflecting a commitment to compliance and transparency. The absence of WHOIS data is typical for .gov domains and does not detract from the site's legitimacy. Overall, the site is trustworthy, professional, and secure, serving a critical government function. The overall risk is low, with recommendations focusing on enhancing security headers, implementing DNSSEC, and publishing a security.txt file to further improve security posture and transparency.

80
53
35
80
77
85
100
governmentretirementinvestmentfederalemployeesthriftsavingsplan+1 more
Google AnalyticsGoogle Tag ManagerJekylljQuery+2
2025-07-23T13:17:34.883Z
nationaalpark-dwingelderveld.nl favicon

Provincie Drenthe

nationaalpark-dwingelderveld.nl

0
GovernmentNetherlandsmediumMEDIUM

Nationaal Park Dwingelderveld is a governmental nature conservation entity managed under the Province of Drenthe in the Netherlands. The website serves as an informational portal for visitors and residents, providing details about the park's natural features, activities, and events. It holds a strong position as a key regional nature park within the Dutch National Parks network, focusing on wet heathland preservation and public engagement. The site offers comprehensive visitor information, event calendars, and accessibility guidelines, targeting a broad audience including tourists, local residents, and nature enthusiasts. Technically, the website is built on the iprox CMS platform, utilizing modern web technologies such as HTML5, CSS, and JavaScript. It integrates Google Analytics 4 for visitor tracking with a clear cookie consent mechanism, ensuring compliance with privacy regulations. The site demonstrates good mobile optimization, accessibility, and SEO practices, contributing to a positive user experience. From a security perspective, the website enforces HTTPS, implements standard security headers, and avoids exposing sensitive data. However, explicit security policies and incident response contacts are not publicly available, indicating room for improvement in transparency and preparedness. The domain registration aligns well with the website's governmental nature, reinforcing its legitimacy and trustworthiness. Overall, the website presents a professional, secure, and user-friendly platform that effectively supports the park's mission and visitor engagement. Strategic enhancements in security policy disclosure and vulnerability management would further strengthen its security posture and compliance.

90
68
2
70
90
65
100
naturenationalparkconservationdrenthevisitorinformation+2 more
iprox CMSJavaScriptCSSHTML5+1

Partner Domains:

www.provincie.drenthe.nl
partner
www.nationaleparken.nl
partner

+3 more partners

2025-07-23T13:17:09.489Z
wir-westerwaelder.de favicon

Wir Westerwälder gemeinsame Anstalt des öffentlichen Rechts (gAöR)

wir-westerwaelder.de

0
GovernmentGermanymediumMEDIUM

Wir Westerwälder is a regional government-backed digital portal serving the Westerwald region in Germany, encompassing the counties of Altenkirchen, Neuwied, and Westerwaldkreis. The platform focuses on regional marketing, networking of projects, businesses, and cultural and nature events to promote the region as an attractive economic and living space. It offers free registration for businesses and event organizers, fostering community engagement and regional development. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies including JavaScript and CSS, and incorporates a consent management system to comply with GDPR requirements. The site is well-optimized for mobile devices, fast loading, and accessible, with clear navigation and professional design. From a security perspective, the site enforces HTTPS and uses a consent mechanism for cookies, but lacks explicit security headers and a published security policy or incident response contact. No vulnerabilities or exposed sensitive data were detected. The domain registration data aligns well with the website's regional government affiliation, indicating high legitimacy. Overall, Wir Westerwälder presents a trustworthy, professional, and well-maintained regional portal with strong content quality and compliance, suitable for its target audience of residents, businesses, and tourists in the Westerwald region.

60
28
2
70
72
60
20
regionalgovernmentculturenaturebusiness+3 more
TYPO3 CMSJavaScriptCSSConsent Management via page-paper.com

Partner Domains:

kreis-altenkirchen.de
partner
kreis-neuwied.de
partner

+1 more partners

2025-07-23T13:12:07.445Z
carahsoft.com favicon

Carahsoft Technology Corp.

carahsoft.com

0
GovernmentUnited StatesenterpriseMEDIUM

Carahsoft Technology Corp. is a leading government IT solutions provider specializing in delivering comprehensive technology products and services to public sector customers across the United States and Canada. The company operates as a Master Government Aggregator® and distributor, partnering with a wide range of technology manufacturers and resellers to facilitate government procurement through numerous contract vehicles. Their market position is strong, supported by over 150 industry awards and more than 220 government contract vehicles, serving federal, defense, state, local, education, healthcare, and Canadian government sectors. Technically, the website is built on Concrete CMS and leverages modern web technologies including jQuery, Swiper.js, and various analytics and marketing tools such as Google Tag Manager, Hotjar, and LinkedIn Insight. The site demonstrates good performance, mobile optimization, and accessibility, with a professional design and clear navigation structure. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though explicit security headers and a dedicated security policy page are absent. The security evaluation indicates a mature posture with no critical vulnerabilities detected, but recommends improvements in security header implementation and publishing incident response information. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms. Business credibility is high, supported by transparent contact information, professional content, and trust indicators such as awards and partner ecosystem. Overall, the website and business present a low risk profile with strong legitimacy and professionalism. The only notable concern is the absence of WHOIS registration data in the provided raw output, which may be due to querying the www subdomain or privacy protection. Verification through registrar or alternate WHOIS sources is advised for full assurance.

45
58
55
98
72
85
100
governmentitsolutionspublicsectortechnologyevents+2 more
jQueryConcrete CMSGoogle Tag ManagerHotjar+2

Partner Domains:

aws.amazon.com
partner
microsoft.com
partner

+2 more partners

2025-07-23T12:02:49.760Z
alaveteli.org favicon

mySociety / UKCOD

alaveteli.org

0
GovernmentUnited KingdommediumMEDIUM

Alaveteli is an open-source Freedom of Information platform developed and maintained by mySociety, a UK-based non-profit organization. The platform enables citizens worldwide to make public information requests to government bodies, promoting transparency and accountability. With over 1,000,000 requests made across 25+ jurisdictions, Alaveteli holds a strong market position as a trusted tool for civic engagement and government openness. The website provides comprehensive documentation, community support, and access to the open-source codebase on GitHub, reflecting a collaborative and transparent business model. Technically, the website employs modern JavaScript libraries such as jQuery and Modernizr, integrates Google services for analytics and search, and features a responsive design optimized for multiple devices. While the site performs moderately well and offers good mobile optimization, it lacks some advanced security configurations such as DNSSEC and security HTTP headers. The absence of explicit privacy and cookie policies indicates room for improvement in privacy compliance. From a security perspective, the domain registration is consistent and legitimate, with no suspicious patterns detected. However, the lack of DNSSEC and security headers reduces the overall security posture. No critical vulnerabilities or WAF blocks were detected, and the site is fully accessible. The use of Google Analytics implies moderate user tracking, but no explicit data retention or privacy compliance details are provided. Overall, Alaveteli presents a professional, trustworthy, and well-established platform with a clear mission and community focus. Strategic improvements in privacy policy publication, security header implementation, and DNS security would enhance its security and compliance standing, further strengthening user trust and regulatory alignment.

15
35
2
70
72
70
100
opensourcefreedomofinformationgovernmenttransparencynon-profitcommunity+1 more
jQueryGoogle Tag ManagerGoogle Custom Search EngineModernizr+2

Partner Domains:

mysociety.org
parent
societyworks.org
subsidiary
2025-07-23T10:58:44.067Z
calalerts.org favicon

California Governor's Office of Emergency Services

calalerts.org

0
GovernmentUnited StatesmediumHIGH

The website calalerts.org is an official government portal managed by the California Governor's Office of Emergency Services. It provides critical information about Wireless Emergency Alerts and the Earthquake Early Warning system for residents and authorities in California. The site serves as a trusted source for emergency preparedness and alerting information, positioning itself as a key public safety resource within the state government ecosystem. The business model is non-commercial, focused on public service and information dissemination. Technically, the website employs a modern frontend stack including Bootstrap and jQuery, ensuring responsive design and good mobile optimization. The site is hosted under a domain registered with Network Solutions, LLC, with WHOIS data consistent with the official government entity. Performance is moderate, and SEO practices are adequate. However, some hidden off-screen spammy links to unrelated gambling and streaming domains were detected, which may indicate legacy or injected content that should be reviewed. From a security perspective, the site uses HTTPS and has domain transfer protections enabled, but lacks DNSSEC and explicit security headers such as Content-Security-Policy or Strict-Transport-Security. No privacy, cookie, or terms of service policies are present, which limits compliance with privacy regulations like GDPR. No vulnerability disclosure or security.txt files were found, reducing transparency for security researchers. Overall, the security posture is moderate but could be improved with standard best practices. The overall risk assessment is low given the official government nature and content safety. Strategic recommendations include adding privacy and cookie policies, enabling DNSSEC, implementing security headers, and publishing a vulnerability disclosure policy to enhance trust and compliance. Addressing the hidden spammy links is also advised to maintain content integrity and user trust.

65
35
2
40
67
70
20
wirelessemergencyalertscaliforniaemergencyservicesgovernmentpublicsafety+2 more
BootstrapjQueryscrollReveal.js
2025-07-23T10:58:03.558Z
C

Copyright Claims Board

ccb.gov

0
GovernmentUnited StatesmediumMEDIUM

The Copyright Claims Board (CCB) is a U.S. government tribunal established to provide an efficient and cost-effective alternative to federal court for resolving copyright disputes involving claims up to $30,000. The website serves as the official portal for information, electronic filing, and case management related to copyright claims. It targets claimants and respondents involved in copyright disputes, offering resources such as FAQs, handbooks, and regulatory information. The CCB operates under the U.S. Copyright Office, reflecting a strong government affiliation and trustworthiness. Technically, the website employs a modern technology stack including Bootstrap, jQuery, Popper.js, and JW Player for multimedia content. It leverages Cloudflare for DNS and likely CDN services, ensuring reliable hosting and security. The site is mobile-optimized, accessible, and SEO-friendly, with integration of Adobe's Dynamic Tag Manager and USA.gov search services. Performance is moderate, with room for optimization. From a security perspective, the site enforces HTTPS and uses Cloudflare DNS with serverTransferProhibited domain status, indicating good baseline security. However, DNSSEC is not enabled, and security headers are not explicitly detected in the provided data. There is no public security policy or incident response information, and no cookie consent mechanism is present, which may impact privacy compliance. No vulnerabilities or suspicious content were found. Overall, the website presents a professional, trustworthy, and well-structured government service portal with good content quality and business credibility. Strategic improvements include enabling DNSSEC, implementing security headers, publishing security and incident response policies, and adding cookie consent mechanisms to enhance privacy compliance and security posture.

55
53
2
70
47
70
100
copyrightclaimsboardgovernmentdisputeresolution+1 more
Bootstrap 4.4.1jQuery 3.5.1Popper.js 1.16.0JW Player 7.9.3+2
2025-07-23T10:56:12.473Z
N

Norway Grants / Norveški finančni mehanizem in Finančni mehanizem EGP

norwaygrants.si

0
GovernmentSloveniamediumHIGH

The website www.norwaygrants.si serves as the official portal for the Norway Grants and EEA Financial Mechanism 2014–2021 in Slovenia, providing information and support for grant programs aimed at fostering green, competitive, and inclusive Europe. It targets governmental bodies, NGOs, and project applicants within Slovenia, positioning itself as a key national contact point for these European funding mechanisms. The site offers detailed program information, project listings, legal documents, and contact points, reflecting a government-backed non-profit business model focused on grant management and bilateral cooperation facilitation. Technically, the site is built on WordPress with modern frameworks such as Bootstrap and utilizes common libraries like jQuery and FontAwesome. It employs Google reCAPTCHA v3 for bot protection and Google Tag Manager for analytics, indicating a moderate level of digital maturity. Security-wise, the site uses HTTPS and some security best practices but lacks explicit security headers and published security or incident response policies. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is limited due to the absence of explicit privacy and cookie policies. Overall, the website is professional, trustworthy, and well-branded but would benefit from enhanced privacy and security disclosures.

20
10
17
70
72
60
20
governmentgrantsfundingnorwaygrantseeafinancialmechanism+1 more
jQueryBootstrapFontAwesomeSlick Carousel+4

Partner Domains:

www.gov.si
partner
eeagrants.org
partner
2025-07-23T09:51:54.050Z
copyright.gov favicon

U.S. Copyright Office

copyright.gov

0
GovernmentUnited StateslargeMEDIUM

The U.S. Copyright Office website serves as the official portal for copyright registration, recordation, licensing, and research services provided by the U.S. government. It targets creators, legal professionals, researchers, and the general public seeking authoritative copyright information and services. The site is well-positioned as the primary federal authority on copyright matters, offering comprehensive resources and tools to support copyright law compliance and education. Technically, the website employs a modern and stable technology stack including Bootstrap, jQuery, Popper.js, and Adobe's tag management and analytics tools. It is hosted behind Cloudflare DNS and uses HTTPS with strong SSL configuration, ensuring secure and reliable access. The site is mobile-optimized and accessible, with good SEO practices and clear navigation. From a security perspective, the site demonstrates strong fundamentals such as HTTPS enforcement and no visible vulnerabilities or exposed sensitive data. However, it lacks DNSSEC and explicit security headers, and does not provide a public security policy or incident response contact. Privacy compliance is partial, with a clear privacy policy but no cookie consent mechanism despite tracking scripts. Overall, the website is highly trustworthy and professional, reflecting its status as a government entity. The risk profile is low, with recommendations focusing on enhancing security headers, DNS security, and privacy compliance to further strengthen user trust and regulatory adherence.

55
53
2
70
75
70
100
copyrightgovernmentlegalregistrationrecordation+2 more
Bootstrap 4.4.1jQuery 3.5.1Popper.js 1.16.0Font Awesome 4.7.0+3

Partner Domains:

publicrecords.copyright.gov
service
ccb.gov
partner
2025-07-23T09:46:06.575Z
asktheeu.org favicon

Access Info Europe

asktheeu.org

0
GovernmentSpainsmallMEDIUM

AsktheEU.org is a non-profit online platform operated by Access Info Europe, designed to facilitate Freedom of Information (FOI) requests to European Union institutions. It serves citizens seeking transparency and access to EU documents, positioning itself as a niche but important player in the government transparency sector. The platform offers key services including submitting FOI requests, browsing successful requests, and providing educational resources about FOI processes. The website is well-branded, consistent, and targets a general audience interested in EU governance and accountability. Technically, the website is built on the Alaveteli platform, leveraging modern web technologies such as Google Analytics for user insights and Google Fonts for typography. It demonstrates good mobile optimization, accessibility, and SEO practices, although some security headers are missing. The site uses HTTPS exclusively, ensuring encrypted communications. However, there is room for improvement in security policy transparency and cookie consent mechanisms. From a security perspective, the site shows a mature posture with no visible vulnerabilities or exposed sensitive data. The lack of explicit security policies and incident response information is a gap that could be addressed to enhance trust. WHOIS data is unavailable due to privacy protection or query failure, but the website's contact information and domain usage strongly indicate legitimacy. Overall, the site maintains a high trustworthiness level with moderate user tracking via Google Analytics. The overall risk assessment is low, with recommendations focusing on enhancing security headers, publishing security policies, and implementing cookie consent to improve privacy compliance and user trust. The platform's strategic importance in promoting EU transparency underscores the value of maintaining strong security and privacy standards.

60
68
17
70
85
75
100
foieutransparencynon-profitfreedomofinformation+1 more
Google AnalyticsjQueryAlaveteli platformGoogle Fonts

Partner Domains:

www.access-info.org
partner
alaveteli.org
partner
2025-07-23T08:39:50.188Z
african-union.org favicon

African Union

african-union.org

0
GovernmentN/aenterpriseMEDIUM

The African Union website serves as the official digital presence of the African Union Commission, an intergovernmental organization dedicated to promoting peace, security, economic development, and integration across the African continent. The site provides comprehensive information about the organization's structure, programs, events, and resources, targeting member states, citizens, and international partners. It holds a strong market position as the primary continental body for African cooperation and governance. Technically, the website is built on Drupal 7 with a mature technology stack including jQuery and Font Awesome. The site demonstrates good performance, mobile optimization, and accessibility, although some modernization opportunities exist. Security posture is solid with HTTPS enforced and no visible vulnerabilities, but could benefit from enhanced security headers and published security policies. Privacy compliance is partial; while a privacy policy is present, cookie consent mechanisms and GDPR compliance indicators are lacking. Business credibility is high, supported by clear organizational information, official social media presence, and consistent branding. Overall, the site is professional, trustworthy, and well-maintained. Recommendations include implementing cookie consent for privacy compliance, enhancing security headers, publishing incident response contacts, and updating the CMS to a supported version to maintain security and performance standards.

50
35
17
85
47
75
100
governmentafricaintergovernmentaldevelopmentpolicy+3 more
Drupal 7jQuery 1.10.2Font Awesome 4.4.0AdvAgg (Drupal aggregation module)+2

Partner Domains:

ecosocc.au.int
subsidiary
webmail.africa-union.org
service
2025-07-23T07:33:38.101Z
imamopravoznati.org favicon

Gong

imamopravoznati.org

0
GovernmentCroatiasmallMEDIUM

Imamo pravo znati is a Croatian non-profit online platform operated by the organization Gong, established in 2015. The website facilitates public access to government-held information by enabling citizens to submit Freedom of Information requests to over 6,800 public authorities in Croatia. It also archives and publicly publishes these requests and responses, promoting transparency and civic engagement. The platform is supported by Code for Croatia and Gong, maintained by volunteers, and targets Croatian citizens, journalists, and transparency advocates. Technically, the website is built on the Alaveteli framework, leveraging Ruby on Rails and jQuery, hosted behind Cloudflare for DNS and CDN services. It uses Google Analytics and Cloudflare Insights for traffic and performance monitoring. The site is mobile-optimized, accessible, and SEO-friendly, with a fast performance profile. Security is adequate with HTTPS enforced and clientTransferProhibited domain status, though DNSSEC is not enabled and some security headers are missing. From a security perspective, the site follows good practices such as CSRF protection and does not request sensitive personal data via forms. However, it lacks explicit security and incident response policies publicly available, and no vulnerability disclosure or security.txt files are present. Privacy compliance is supported by a comprehensive privacy policy and cookie policy, though no explicit cookie consent mechanism is implemented. Overall, the website is trustworthy, professionally maintained, and serves an important civic function. Recommendations include enabling DNSSEC, adding security headers, publishing security policies, and implementing cookie consent to enhance compliance and security posture.

60
53
17
75
75
75
100
foitransparencygovernmentcroatiapublicinformation+1 more
Ruby on RailsjQueryCloudflareGoogle Analytics
2025-07-23T07:29:50.492Z
L

Lockdown Systems

watchice.org

0
GovernmentUnited StatessmallCRITICAL

The website 'ICE Detention Map' operated by Lockdown Systems provides an interactive and detailed visualization of ICE detention facilities across the United States. It offers data on detainee counts, criminal versus non-criminal status, and ICE threat levels, serving as a valuable resource for activists, researchers, and the general public interested in immigration detention transparency. The platform positions itself as a niche non-profit advocacy tool focused on government and immigration issues. Technically, the site employs modern web technologies including Leaflet.js for mapping and OpenStreetMap for base tiles. The infrastructure is straightforward, with moderate performance and good mobile optimization. The site uses minimal tracking via Plausible Analytics, reflecting a privacy-conscious approach. However, the absence of privacy and cookie policies, as well as missing security headers, indicates areas for compliance and security improvement. From a security perspective, the site uses HTTPS and has domain transfer protections, but lacks DNSSEC and security headers, which are recommended for enhanced security. The WHOIS data presents anomalies with a future domain creation date and no registrant details, which reduces trustworthiness but does not necessarily indicate malicious intent given the site's content and affiliations. Overall, the website is functional, informative, and safe for general audiences but would benefit from improved privacy compliance, security hardening, and clearer business contact information to enhance trust and regulatory adherence.

-
-
-
-
-
-
-
icedetentionmapimmigrationadvocacy+2 more
JavaScriptLeaflet.jsOpenStreetMapHTML5+1

Partner Domains:

lockdown.systems
partner
opencollective.com
partner
2025-07-23T06:41:39.412Z
highbury-defense.com favicon

Highbury Defense Group

highbury-defense.com

0
GovernmentUnited StatessmallMEDIUM

Highbury Defense Group is a Service-Disabled Veteran-Owned Small Business specializing in systems engineering, cybersecurity, logistics, program management, and foreign military sales support services primarily for US Department of Defense and Department of State agencies, as well as select foreign nations. The company operates as a small business under the parent company Accelint, positioning itself as a niche provider in the government contracting sector. Their key services include technical/systems engineering, foreign military sales, integrated logistics support, and maritime surveillance. The website reflects a professional and consistent brand image with clear messaging targeted at government and defense-related clients, veterans, and industry professionals. Technically, the website is built on WordPress using the Genesis Framework and several plugins such as Yoast SEO, WP Rocket, and Pojo Accessibility, indicating a modern and maintainable infrastructure. Hosting appears to be through GoDaddy, with moderate performance and good mobile optimization. SEO and accessibility features are well implemented, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks DNSSEC, explicit security headers, and published security or incident response policies, which are areas for improvement. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism detected. Contact information is available primarily via email and physical address, with no phone numbers found. The domain registration is consistent and legitimate, with protective statuses set to prevent unauthorized changes. Overall, the website is professional, trustworthy, and suitable for its target audience, but could enhance its security posture and privacy compliance to better align with industry best practices and regulatory requirements.

15
53
47
60
62
75
100
defenseengineeringveteran-ownedgovernmentcontractingcybersecurity+1 more
WordPressYoast SEO pluginjQuerySiteOrigin Panels+3
2025-07-23T06:40:59.189Z
eveques.ch favicon

Conférence des évêques suisses

eveques.ch

0
GovernmentSwitzerlandmediumHIGH

The website www.eveques.ch serves as the official digital presence of the Swiss Bishops' Conference, providing comprehensive information about the Catholic Church's activities, leadership, and societal engagement in Switzerland. It targets French-speaking Swiss Catholics and the broader public interested in religious affairs. The site offers news updates, document archives, and communication channels, positioning itself as a trusted institutional resource within the religious sector. Technically, the website is built on WordPress 6.6.2, leveraging popular plugins such as Contact Form 7 and Bootstrap for responsive design. The infrastructure supports moderate performance and good mobile optimization, with a clear navigation structure and professional design. Analytics are implemented via Google Tag Manager, indicating a moderate level of user tracking. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks several important security headers such as Content-Security-Policy and X-Frame-Options, which could enhance protection against common web attacks. There is no visible incident response or vulnerability disclosure information, and cookie consent mechanisms are absent, which may affect full GDPR compliance. Overall, the website demonstrates a solid business credibility and trustworthy presence with room for improvement in security hardening and privacy compliance. Strategic enhancements in these areas would strengthen the site's resilience and user trust.

15
35
2
55
62
80
20
catholicchurchswitzerlandreligiousinstitutionbishopsconferencefaith+2 more
WordPress 6.6.2jQuery 3.7.1BootstrapSlick Carousel+3

Partner Domains:

www.vatican.va
partner
www.cath.ch
partner

+3 more partners

2025-07-23T01:11:33.245Z
gemin.cz favicon

QCM, s.r.o.

gemin.cz

0
GovernmentCzech RepublicmediumMEDIUM

Elektronické tržiště Gemin is a Czech Republic-based electronic marketplace platform designed to facilitate public sector procurement and government contracts. Operated by QCM, s.r.o., it serves as a B2B platform enabling public administration and self-government entities to electronically issue public tenders with minimal costs. The platform positions itself as the first next-generation electronic marketplace in the Czech Republic, emphasizing simplicity, efficiency, and transparency in public sector commerce with commercial entities. The website targets government bodies and suppliers interested in public procurement processes. Technically, the website employs a custom CMS named Gemin, utilizing legacy JavaScript libraries such as jQuery 1.8.3, jQuery UI 1.10.2, Prototype.js, and Scriptaculous. It uses Google Fonts and Google Analytics for tracking. The site is served over HTTPS, but the use of outdated libraries introduces potential security risks. The website demonstrates moderate performance and basic mobile optimization and accessibility features. From a security perspective, the site enforces HTTPS and uses cookies with domain and expiry settings. However, it lacks modern security headers like Content-Security-Policy and uses outdated JavaScript libraries that may expose vulnerabilities. No explicit privacy, cookie, or security policies are found, and no incident response or vulnerability disclosure information is provided. WHOIS data is unavailable, likely due to privacy protection, limiting domain registration trust verification. Overall, the security posture is moderate but could be improved by updating libraries and adding security policies. The overall risk assessment indicates a legitimate and professionally presented public sector platform with moderate technical maturity and some security gaps. Strategic recommendations include updating JavaScript libraries, implementing security headers, publishing privacy and cookie policies, enhancing accessibility and mobile responsiveness, and conducting regular security audits to strengthen trust and compliance.

20
10
17
85
67
30
100
elektronicktritveejnzakzkyeaukcegovernmentpublicprocurement+1 more
jQuery 1.8.3jQuery UI 1.10.2Prototype.jsScriptaculous+2
2025-07-22T23:42:47.350Z
businesslocationcenter.de favicon

Berlin Partner für Wirtschaft und Technologie GmbH

businesslocationcenter.de

0
GovernmentGermanylargeMEDIUM

The Business Location Center website serves as the official economic development portal for Berlin, targeting companies, investors, startups, and scientific institutions interested in establishing or expanding their presence in Berlin. It offers comprehensive information on sectors, services, and location advantages, positioning itself as a central hub for business facilitation in the region. The site is professionally designed with consistent branding and rich content, supporting a positive user experience and clear navigation. Technically, the website is built on the TYPO3 CMS platform, utilizing jQuery and third-party libraries for galleries and consent management. The site demonstrates good mobile optimization and accessibility, though performance is moderate. Consent management is implemented via Comply-App, indicating attention to privacy compliance, although explicit privacy and terms of service pages were not detected in the provided content. From a security perspective, the site uses HTTPS and includes consent management scripts but lacks visible security headers and published security policies or incident response contacts. No vulnerabilities or suspicious patterns were detected, but improvements in security headers and transparency are recommended to enhance trust and compliance. Overall, the website is a credible and professional platform with a strong business focus and good technical foundation. Strategic enhancements in privacy disclosures, security policies, and contact transparency would further strengthen its security posture and user trust.

40
33
2
70
72
60
100
berlinwirtschaftinvestorenstandortwirtschaftsfrderung+4 more
TYPO3 CMSjQuery 1.11.1Comply-App Consent ManagementUnite Gallery+1
2025-07-22T20:16:00.728Z
arttix.org favicon

Salt Lake County Arts & Culture

arttix.org

0
GovernmentUnited StatesmediumMEDIUM

Salt Lake County Arts & Culture operates as a government-affiliated organization dedicated to promoting arts and cultural events within Salt Lake County, Utah. The website serves as a comprehensive portal for event listings, ticketing, venue information, and community engagement programs. It targets residents and visitors interested in cultural activities, providing a centralized platform for arts-related information and services. The business model is primarily government-supported, focusing on cultural enrichment and community outreach rather than commercial profit. Technically, the website is built on WordPress with a modern technology stack including Bootstrap, jQuery, and various plugins such as Yoast SEO and Google Tag Manager. The site demonstrates good mobile optimization and SEO practices, though performance is moderate. Security measures include HTTPS enforcement, security headers, and reCAPTCHA integration, reflecting a solid security posture. However, the absence of explicit privacy and cookie policies indicates room for improvement in privacy compliance. From a security perspective, the site shows no signs of vulnerabilities or exposed sensitive data. The use of privacy protection in WHOIS data is typical for such organizations and does not raise immediate concerns. The lack of incident response or vulnerability disclosure information suggests an opportunity to enhance transparency and preparedness. Overall, the site is trustworthy, professional, and safe for general audiences. Strategically, the organization should prioritize publishing clear privacy and cookie policies to align with GDPR and other regulations, implement a vulnerability disclosure mechanism, and enhance accessibility features. These steps will strengthen compliance, user trust, and security culture, ensuring the site remains a reliable resource for the community.

25
58
22
85
62
85
100
artscultureeventsticketingsaltlakecounty+2 more
WordPress 5.7.12jQuery 3.5.1Bootstrap 3.3.4Slick Carousel+3

Partner Domains:

my.arttix.org
partner
2025-07-22T20:09:05.171Z
saltlakecountyarts.org favicon

Salt Lake County Arts & Culture

saltlakecountyarts.org

0
GovernmentUnited StatesmediumMEDIUM

Salt Lake County Arts & Culture is a government agency dedicated to fostering arts and cultural engagement within the Salt Lake County community. The organization provides a variety of services including event promotion, venue management, community outreach programs, and ticketing services through partnerships. The website reflects a well-established entity with over 40 years of history, targeting residents and visitors interested in arts and culture. The business model is focused on public service and community enrichment rather than commercial profit. Technically, the website is built on WordPress with a modern but somewhat dated technology stack including jQuery, Bootstrap, and various tracking pixels for analytics and marketing. The site is mobile optimized and SEO friendly, with good content quality and navigation. However, some technical improvements could be made to enhance security headers and update libraries. From a security perspective, the site uses HTTPS and includes common tracking and analytics scripts. While no critical vulnerabilities were detected, the absence of advanced security headers and a cookie consent mechanism indicates room for improvement in privacy compliance and security posture. The WHOIS data is unavailable due to privacy protection, which is typical for government domains but limits domain age and registrant verification. Overall, the website presents a trustworthy and professional front for a government arts agency, with solid business credibility and good user experience. Strategic improvements in security and privacy compliance would further strengthen its posture and user trust.

25
58
2
85
62
85
100
artsculturegovernmenteventsnon-profit+1 more
WordPress 5.7.12jQueryBootstrap 3.3.4Slick Carousel+6

Partner Domains:

my.arttix.org
partner
www.louderdesign.com
partner
2025-07-22T19:08:33.034Z
dstv.de favicon

Deutscher Steuerberaterverband e.V.

dstv.de

0
GovernmentGermanymediumMEDIUM

The Deutscher Steuerberaterverband e.V. (DStV) is a well-established professional association representing tax advisors in Germany. The website serves as an information hub for members and interested parties, offering updates on tax law, professional standards, and association activities. The organization is positioned as a key player in the German tax advisory sector with a focus on member services, education, and advocacy. The site targets tax professionals and related stakeholders, providing relevant content and resources in German. Technically, the website employs a modern but straightforward technology stack centered around jQuery and related plugins for UI and interactivity. It uses Matomo for privacy-conscious analytics and implements a robust cookie consent mechanism aligned with GDPR requirements. The site is mobile-optimized and accessible, with good SEO practices evident in meta tags and structured navigation. From a security perspective, the site enforces HTTPS and respects user privacy by disabling cookies until consent is given. However, it lacks some advanced security headers and explicit security policies or incident response contacts. No vulnerabilities or sensitive data exposures were detected. Overall, the security posture is solid but could be improved with additional headers and transparency. The risk assessment is low given the professional nature of the site, absence of suspicious content, and compliance with privacy regulations. Strategic recommendations include enhancing security headers, publishing a security.txt file, and maintaining regular audits of third-party scripts to ensure ongoing security and compliance.

20
83
2
85
62
70
100
taxsteuerberaterprofessionalassociationgermanygdpr+2 more
jQuery 3.4.1jQuery UI 1.12.1jQuery SelectricjQuery Sumoselect+4
2025-07-22T17:58:35.569Z