Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 16 of 151|Showing 751-800 of 7528
censec.dk favicon

CenSec

censec.dk

0
GovernmentDenmarksmallMEDIUM

CenSec is a Danish innovation cluster focused on the defense, space, and security industries. The organization supports business development, market knowledge expansion, and competence building within these sectors. The website reflects a professional presence with a clear focus on its niche market, targeting industry professionals and companies in Denmark. The domain has been active since 2006, indicating an established business history. Technically, the website is built on WordPress using Elementor and WooCommerce plugins, supported by modern JavaScript libraries such as jQuery and Moment.js. Cookie consent is managed via Cookiebot, ensuring compliance with cookie regulations. The site is hosted likely via Simply.com A/S, consistent with the Danish domain registration. Performance and mobile optimization are good, though accessibility features are basic. From a security perspective, the site uses HTTPS and a consent management platform but lacks DNSSEC and visible security headers, which are recommended for enhanced protection. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is moderate, with cookie consent mechanisms in place but no explicit privacy policy or terms of service found in the analyzed content. Overall, the website presents a trustworthy and professional digital presence for CenSec, with room for improvement in security headers, DNSSEC implementation, and explicit privacy documentation to strengthen compliance and security posture.

90
88
47
75
-
65
-
defensesecurityspaceinnovationcluster+3 more
WordPressWooCommerceElementorJetEngine+5
2025-10-30T00:03:50.565Z
digitalpaktschule.de favicon

Bundesministerium für Bildung und Forschung

digitalpaktschule.de

0
GovernmentGermanylargeMEDIUM

The website digitalpaktschule.de is an official German government platform managed by the Bundesministerium für Bildung und Forschung (Federal Ministry of Education and Research). It serves as the authoritative source for the DigitalPakt Schule initiative, which aims to enhance digital infrastructure and competencies in German schools. The site provides comprehensive information, resources, and updates targeted at schools, educators, students, parents, and related stakeholders. It holds a strong market position as a government-backed educational resource with clear branding and trust signals. Technically, the website employs modern JavaScript libraries such as jQuery and Modernizr, uses the Slick Carousel for UI elements, and integrates Matomo analytics with a privacy-conscious opt-in mechanism. The site is mobile-optimized, accessible, and SEO-friendly, though it appears to use a custom or proprietary CMS. Performance is moderate, with no critical technical issues detected. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms to comply with GDPR. However, it lacks explicit security policy pages, incident response contacts, and advanced security headers. No vulnerabilities or exposed sensitive data were found. Overall, the security posture is solid but could be improved with additional transparency and security best practices. The website is safe for general audiences, contains no adult or questionable content, and maintains high trustworthiness. The domain registration data aligns well with the website content, confirming legitimacy and consistency with a government entity. Strategic recommendations include publishing security policies, incident response information, and implementing additional security headers to enhance trust and compliance.

55
28
17
40
62
60
100
educationgovernmentdigitalizationschoolsdigitalpakt
jQuery 3.6.3ModernizrSlick CarouselMatomo Analytics
2025-10-30T00:02:04.353Z
nodvarsel.no favicon

Direktoratet for samfunnstryggleik og beredskap (DSB)

nodvarsel.no

0
GovernmentNorwaymediumMEDIUM

Nodvarsel.no is an official Norwegian government website operated by the Direktoratet for samfunnstryggleik og beredskap (DSB). It provides an emergency alert service that sends critical notifications to mobile phones in acute life-threatening situations. The website is positioned as a trusted public safety platform with strong government backing and partnerships with police and civil defense agencies. The content is focused on informing the public about the service, how it works, and providing accessibility features for all users. Technically, the site leverages Microsoft Azure for hosting and telemetry, uses modern web technologies including JavaScript and CSS modules, and implements a comprehensive cookie consent mechanism powered by Cookie Information. The site is mobile optimized, accessible, and SEO friendly, with good performance and no detected blocking or WAF interference. From a security perspective, the site enforces HTTPS and uses Application Insights for monitoring. While explicit security headers are not fully visible in the HTML, the overall posture is strong with no exposed sensitive data or vulnerabilities detected. Privacy compliance is well addressed with clear privacy and cookie policies, and GDPR adherence is evident. Overall, the website demonstrates a high level of professionalism, trustworthiness, and technical maturity suitable for a government emergency service. Recommendations include publishing a security policy or incident response contact, adding explicit security headers, and considering a vulnerability disclosure policy to further enhance trust and security posture.

60
88
2
60
57
75
100
emergencygovernmentnorwayalertsprivacy+2 more
Microsoft AzureCookie Information consent managementApplication Insights (Azure Monitor)Google Fonts (Open Sans)+1

Partner Domains:

www.emergencyalert.no
partner
www.dsb.no
partner

+2 more partners

2025-10-29T23:58:22.400Z
farligeprodukter.no favicon

Direktoratet for samfunnssikkerhet og beredskap

farligeprodukter.no

0
GovernmentNorwaymediumMEDIUM

Farligeprodukter.no is an official Norwegian government website operated by the Direktoratet for samfunnssikkerhet og beredskap (DSB). It serves as a centralized platform providing consumers and market actors with information about products that authorities have assessed as potentially harmful. The site offers product safety warnings, recommendations, and a mechanism for users to report dangerous products. It collaborates with multiple Norwegian governmental agencies, reinforcing its authoritative position in the market. The platform targets Norwegian consumers and businesses concerned with product safety, emphasizing public safety and regulatory compliance. Technically, the website employs modern web technologies including Vue.js and the Quasar Framework, delivering a responsive and accessible user experience. The site is structured as a Progressive Web App with appropriate meta tags for SEO and social sharing. Performance is moderate with good mobile optimization and accessibility features. The site uses HTTPS exclusively, ensuring secure communications. From a security perspective, the site demonstrates a solid posture with HTTPS enforcement and no visible vulnerabilities or exposed sensitive data. However, explicit security headers such as Content Security Policy or HSTS are not evident, and there is no published incident response or vulnerability disclosure policy. Privacy compliance is addressed with a clear privacy policy in Norwegian, aligned with GDPR requirements. No cookie consent mechanism was detected, which could be an area for improvement. Overall, the website is trustworthy, professionally maintained, and fulfills its role as a government information portal. Strategic recommendations include enhancing security headers, publishing incident response contacts, implementing cookie consent, and adding vulnerability disclosure information to further strengthen security and compliance.

65
50
2
60
72
75
100
governmentproductsafetyconsumerprotectionnorwaydangerousproducts
JavaScript (ES Modules)Quasar FrameworkVue.js (implied by q- classes and structure)Progressive Web App (manifest.webmanifest)
2025-10-29T23:58:17.352Z
ks-digital.no favicon

KS Digital

ks-digital.no

0
GovernmentNorwaymediumMEDIUM

KS Digital is a Norwegian government-related entity providing sustainable shared digital services tailored to the needs of the municipal sector in Norway. The website positions KS Digital as an important digital service provider for Kommune-Norge, focusing on delivering common digital solutions. The business is relatively new, with domain registration in mid-2024, aligning with a recent launch or rebranding effort. The company targets Norwegian municipalities and public sector entities, emphasizing sustainability and sector-specific digital needs. Technically, the website is built on WordPress CMS, enhanced with modern technologies such as React and jQuery, and optimized for SEO with the Yoast SEO plugin. The site demonstrates moderate performance and good mobile optimization, with structured data implemented for improved search engine visibility. The presence of Plausible Analytics indicates a privacy-conscious approach to user tracking. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks visible security headers and explicit security or incident response policies. No vulnerability disclosure or security.txt files are present, and no certifications or compliance badges are displayed. Privacy and cookie policies are not explicitly found, which may impact GDPR compliance and user trust. Overall, KS Digital's website reflects a professional and trustworthy digital presence suitable for its government sector audience. The site is well-structured and technically sound but would benefit from enhanced privacy disclosures, security policies, and contact information to improve compliance and user confidence.

55
35
25
80
72
85
100
governmentdigitalservicesnorwaymunicipalitieswordpress+2 more
WordPressYoast SEO pluginReactjQuery+2
2025-10-29T23:57:22.024Z
h2020.cz favicon

Technologické centrum AV ČR

h2020.cz

0
GovernmentCzech RepublicmediumHIGH

The website www.h2020.cz serves as the official Czech national portal for the EU Horizon 2020 research and innovation framework program. Operated by Technologické centrum AV ČR, it provides comprehensive information, news, event calendars, and documentation related to Horizon 2020. The portal targets researchers, innovators, industry stakeholders, and public institutions interested in EU research funding opportunities. It positions itself as a trusted government-affiliated resource with consistent branding and clear navigation. Technically, the site uses a combination of jQuery, Bootstrap 3.3.7, jQuery UI, and a custom CMS named FoxFrame. It integrates Google Tag Manager and Google Analytics for tracking. The site is mobile optimized and performs moderately well, though accessibility features are basic. The HTML structure and meta tags support good SEO practices. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks important security headers such as Content-Security-Policy and X-Frame-Options, which could improve protection. There is no visible privacy or cookie policy, which is a compliance gap especially under GDPR. No WHOIS data is available for the domain, which slightly reduces trust but the content and external links strongly indicate legitimacy. Overall, the site is a professional and trustworthy government information portal with good content quality and technical implementation. To enhance security and compliance, it should implement security headers, publish privacy and cookie policies, and provide clear contact information for security and privacy concerns.

20
10
17
80
62
70
20
euhorizon2020researchinnovationczechrepublic+3 more
jQuery 1.10.2Bootstrap 3.3.7jQuery UIFancybox 1.3.4+2

Partner Domains:

ec.europa.eu
partner
www.tc.cz
partner

+1 more partners

2025-10-29T23:28:27.832Z
sipo.cz favicon

Česká pošta

sipo.cz

0
GovernmentCzech RepubliclargeMEDIUM

The website sipo.cz represents the SIPO payment tool operated by Česká pošta, the Czech national postal service. It offers a consolidated payment solution for regular bills such as utilities, rent, and broadcasting fees, simplifying payment processes for the general public in the Czech Republic. The site is well-branded, consistent with the parent company, and provides clear information about the service and contact details. The domain is long-established, dating back to 2001, aligning with the service's history and legitimacy. From a technical perspective, the website uses standard web technologies including HTML5, CSS, and JavaScript. It is mobile-optimized and provides a good user experience with clear navigation and professional design. However, there is no explicit CMS or advanced frameworks detected, and some accessibility and SEO optimizations are basic. Security headers and explicit security policies are not visible in the provided content, though HTTPS usage is implied. No signs of tracking or advertising scripts were found, indicating a privacy-conscious approach. Security posture is moderate with no critical vulnerabilities detected in the content. The site links to comprehensive privacy and cookie policies hosted on the official Czech Post domains, indicating GDPR compliance. Contact information is clearly provided, but there is no visible incident response or vulnerability disclosure information. The domain WHOIS data is consistent with the business claims, enhancing trustworthiness. Overall, the website is a trustworthy, government-backed payment service platform with good content quality and business credibility. Strategic improvements could focus on enhancing security headers, adding explicit security and incident response policies, and implementing cookie consent mechanisms to further strengthen privacy compliance and security posture.

15
40
2
70
72
85
40
paymentgovernmentpostalczechrepublicsipo
JavaScriptCSSHTML5

Partner Domains:

www.ceskaposta.cz
parent
www.postaonline.cz
partner
2025-10-29T23:23:56.669Z
G

Galileo Corporation s.r.o.

centralni-adresa.net

0
GovernmentCzech RepublicsmallHIGH

The website centralni-adresa.net serves as an informational portal for a Czech government registry concerning declarations of activities, property, income, gifts, and liabilities under law 159/2006 Sb. The site is operated by Galileo Corporation s.r.o., a small company providing niche registry services to public officials and government entities. The content is primarily legal and regulatory in nature, targeting officials and citizens interested in conflict of interest declarations. The site is modest in design and content quality, with basic navigation and limited interactivity. Technically, the website employs standard web technologies including HTML5, CSS, and JavaScript, with resources hosted on the same domain. The site uses HTTPS, but lacks visible advanced security headers such as CSP or HSTS. There is no evidence of a CMS or modern frameworks, and the site appears to have been last updated in 2017, indicating potential technical debt and outdated content. Mobile optimization and accessibility are basic but present. From a security perspective, the site does not expose sensitive data or forms on the main page, which reduces risk. However, the absence of security headers and privacy/cookie policies indicates gaps in compliance and best practices. The WHOIS data is missing or unavailable, which raises concerns about domain registration transparency and legitimacy, although the site content and footer indicate a legitimate business operator. Overall, the site is functional and serves its informational purpose but requires improvements in security posture, privacy compliance, and domain registration transparency to enhance trustworthiness and regulatory compliance.

35
50
2
65
62
80
40
registroznmenstetzjmzkon1592006sbgovernmentregistryconflictofinterest
JavaScriptCSSHTML5
2025-10-29T22:18:07.843Z
statnipokladna.cz favicon

Ministerstvo financí České republiky

statnipokladna.cz

0
GovernmentCzech RepubliclargeMEDIUM

The website statnipokladna.cz serves as the official portal for the Ministry of Finance of the Czech Republic, specifically focusing on the State Treasury functions. It provides centralized financial management services including revenue centralization, expenditure control, asset management, liquidity and debt management, financial planning, payment processing, and reporting. The site targets government entities and public sector organizations, positioning itself as a critical government service platform. The content is professionally presented, with clear navigation and good mobile optimization, reflecting a mature digital presence. Technically, the website employs standard web technologies including HTML5, CSS3, and JavaScript, with integrations of Cookiebot for cookie consent management and analytics tools such as Google Analytics and Matomo. The site uses HTTPS and shows good security practices, although explicit security headers are not visible in the HTML source. The performance is moderate, and accessibility features are adequately implemented. From a security standpoint, the site benefits from HTTPS encryption and a robust cookie consent mechanism compliant with GDPR. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement in transparency and security maturity. Overall, the website demonstrates a strong business credibility as a government portal with high trustworthiness. The risk profile is low, but strategic enhancements in security policy publication and contact information disclosure would further strengthen its posture.

90
88
17
70
62
75
100
financegovernmentstatetreasuryczechrepubliccookieconsent+1 more
HTML5CSS3JavaScriptCookiebot+2
2025-10-29T22:17:47.001Z
hacknime.to favicon

Ministerstvo investícií, regionálneho rozvoja a informatizácie SR

hacknime.to

0
GovernmentSlovakiamediumHIGH

Hacknime.to is a Slovak government-backed digital platform managed by the Ministry of Investment, Regional Development and Informatization of the Slovak Republic. The website promotes and organizes hackathons aimed at accelerating digital transformation and innovation within public administration. It targets the tech community, startups, and public sector stakeholders, offering financial incentives and opportunities to implement innovative solutions. The platform is funded through the Slovak Recovery and Resilience Plan, positioning it as a key player in national digitalization efforts. Technically, the website employs modern JavaScript libraries such as jQuery, Swiper.js, and fslightbox, alongside Google Tag Manager and Facebook Pixel for analytics and marketing. The site is built on TYPO3 CMS, optimized for mobile devices, and includes cookie consent mechanisms to comply with privacy regulations. Performance is moderate, with room for improvement in accessibility and SEO. From a security perspective, the site enforces HTTPS and implements cookie consent but lacks explicit security policies, incident response contacts, and advanced security headers. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data aligns with the government entity, confirming legitimacy and consistency. Overall, Hacknime.to presents a professional, trustworthy, and well-branded digital presence supporting Slovakia's public sector innovation. Strategic improvements in security transparency and compliance documentation would enhance its posture and stakeholder confidence.

25
65
17
70
72
60
-
governmenthackathondigitalizationinnovationpublicadministration+3 more
jQuerySwiper.jsfslightboxGoogle Tag Manager+2

Partner Domains:

planobnovy.sk
partner
mirri.gov.sk
partner

+2 more partners

2025-10-29T21:05:40.520Z
dolniredice.cz favicon

Obec Dolní Ředice

dolniredice.cz

0
GovernmentCzech RepublicsmallCRITICAL

Obec Dolní Ředice operates an official municipal website serving the local community in the Czech Republic. The site provides comprehensive information including municipal news, official notices, practical resident information, and contact details. It targets residents and visitors seeking local government services and updates. The website is positioned as a trusted local government portal with a focus on community engagement and transparency. Technically, the website employs a modern but standard technology stack including jQuery, Bootstrap, Swiper.js, and Highslide JS, likely managed via the Galileo CMS platform. The site is mobile-optimized and accessible, with good SEO practices and clear navigation. Cookie consent and privacy policies are implemented, indicating GDPR compliance. From a security perspective, the site uses HTTPS and has cookie consent mechanisms but lacks visible advanced security headers and explicit incident response policies. The absence of WHOIS data for the domain is a concern, potentially indicating privacy protection or registration issues, which slightly impacts trustworthiness. No vulnerabilities or malicious content were detected. Overall, the website is a well-maintained municipal portal with good content quality and user experience. The main risks relate to domain registration transparency and security header implementation. Strategic improvements in these areas would enhance trust and security posture.

-
-
-
-
-
-
-
municipalitygovernmentlocalczechrepublicofficial+2 more
jQueryBootstrap 4.4.1Swiper.js 4.5.0Highslide JS+1
2025-10-29T21:04:17.737Z
chvojenec.cz favicon

Obec Chvojenec

chvojenec.cz

0
GovernmentCzech RepublicsmallHIGH

Obec Chvojenec is the official website of the municipality of Chvojenec in the Czech Republic, serving as a local government portal providing community information, public notices, and municipal services. The website targets residents and visitors seeking information about local governance, events, and services. The site is well-structured with clear navigation and consistent branding, reflecting a small government entity focused on community engagement. Technically, the website employs standard web technologies including jQuery, YouTube API integration, and Google Analytics for visitor tracking. It uses HTTPS to secure communications and implements a cookie consent mechanism, indicating some level of privacy awareness. However, the absence of a dedicated privacy policy and security headers suggests room for improvement in compliance and security hardening. From a security perspective, the site shows moderate maturity with HTTPS enabled and no visible vulnerabilities in the provided content. The lack of WHOIS data limits domain trust verification, but the website content and external references support its legitimacy. No signs of malicious or adult content were found, and the site appears safe for general audiences. Overall, the website is functional and professional for its purpose but would benefit from enhanced privacy disclosures, improved security headers, and better transparency in domain registration to strengthen trust and compliance.

15
10
2
65
62
85
20
municipalitygovernmentczechrepubliclocalcommunityofficialsite+2 more
jQueryYouTube Player APIGoogle Analytics (gtag.js)HTML5+2
2025-10-29T21:04:12.723Z
dolniroven.cz favicon

Obec Dolní Roveň

dolniroven.cz

0
GovernmentCzech RepublicsmallCRITICAL

Obec Dolní Roveň operates an official municipal website serving the local community in the Czech Republic. The site provides comprehensive local government information including news, events, official notices, and contact details for municipal offices. It targets residents and visitors seeking authoritative information about the municipality. The business model is a public service portal typical for local government entities, focusing on transparency and community engagement. Technically, the website employs a modern frontend stack including jQuery, Bootstrap 4, Swiper.js for slideshows, and Highslide for image viewing. The CMS appears to be Ocelot, a platform commonly used for municipal websites in the region. The site is mobile optimized, accessible, and uses HTTPS, but lacks some advanced security headers. Cookie consent and privacy policies are implemented, indicating awareness of GDPR compliance. From a security perspective, the site shows good basic practices such as HTTPS and cookie consent but lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data for the domain is a concern and should be investigated to ensure domain legitimacy and continuity. Overall, the website is a trustworthy and professional municipal portal with good content quality and user experience. Strategic improvements in security headers, incident response transparency, and domain registration verification are recommended to enhance trust and resilience.

-
-
-
-
-
-
-
municipalitygovernmentlocalnewscommunityczechrepublic+3 more
jQueryBootstrap 4.4.1Swiper.jsHighslide JS
2025-10-29T21:04:07.710Z
horniredice.cz favicon

Obec Horní Ředice

horniredice.cz

0
GovernmentCzech RepublicsmallHIGH

Obec Horní Ředice operates an official municipal website serving the local community in the Czech Republic. The site provides comprehensive information about the municipality, including local government news, event calendars, public notices, educational institutions, and community services. It targets residents and visitors seeking official information about Horní Ředice. The business model is that of a government information portal, focusing on transparency and community engagement. The website is well-branded and consistent with its official purpose, reflecting a small-sized local government entity founded in 2003. Technically, the website uses standard web technologies including HTML5, CSS, JavaScript, and integrates external resources such as YouTube for video content and Smart App Banner for mobile app promotion. The hosting is managed through a Czech registrar and name servers, indicating local infrastructure. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Performance is moderate, with no major technical issues detected. From a security perspective, the site benefits from HTTPS encryption and avoids exposing sensitive data. However, it lacks explicit security headers and formal security policies such as vulnerability disclosure or incident response contacts. Privacy compliance is weak due to the absence of privacy and cookie policies, which is a notable gap given GDPR applicability. No tracking or advertising scripts were detected, indicating minimal user tracking. Overall, the website is trustworthy and professional, serving its governmental function effectively. The main risks relate to privacy compliance and security policy transparency. Strategic improvements in these areas would enhance user trust and regulatory adherence.

15
10
2
65
62
85
20
municipalitygovernmentczechrepubliclocalgovernmentcommunity+3 more
HTML5CSSJavaScriptjQuery+2
2025-10-29T21:03:52.668Z
hornijeleni.cz favicon

Město Horní Jelení

hornijeleni.cz

0
GovernmentCzech RepublicsmallMEDIUM

The website www.hornijeleni.cz serves as the official online presence of the municipal government of Horní Jelení, a small town in the Czech Republic. It provides comprehensive information about the city, local administration, community services, events, and public notices. The site targets residents and visitors seeking official information and municipal services. The business model is that of a government entity focused on public service and communication. Technically, the website employs standard web technologies including jQuery, Google Analytics, and Google Tag Manager for analytics and tracking. It uses web fonts and a cookie consent mechanism compliant with GDPR. The site is moderately optimized for performance and mobile devices, with good SEO and basic accessibility features. However, no CMS or hosting provider details are evident, and security headers are not visibly implemented. From a security perspective, the site uses HTTPS and includes a cookie consent banner with detailed settings, indicating attention to privacy compliance. However, the absence of security headers and lack of visible incident response or security policy pages suggest room for improvement. The WHOIS data is missing, which reduces trustworthiness from a domain registration perspective, although the site content and contact details strongly indicate legitimacy. Overall, the website is a well-structured, professional municipal portal with good content quality and privacy compliance. The main risks relate to missing WHOIS data and limited visible security controls. Strategic recommendations include enhancing security headers, verifying domain registration, and publishing explicit security policies to improve trust and compliance.

35
25
17
80
62
85
20
municipalgovernmentczechrepubliclocaladministrationpublicservices+2 more
jQueryGoogle AnalyticsGoogle Tag ManagerOpen Sans font+1
2025-10-29T21:03:42.603Z
B

BeSt Bernauer Stadtmarketing GmbH

welterbe-bernau.de

0
GovernmentGermanysmallHIGH

The website www.welterbe-bernau.de serves as the official online presence for the UNESCO World Heritage Bauhaus site in Bernau, Germany. It provides comprehensive visitor information including guided tours, workshops, exhibitions, podcasts, and a merchandise shop. The business operates under BeSt Bernauer Stadtmarketing GmbH, focusing on cultural heritage promotion and tourism services. The site targets tourists, educators, and cultural enthusiasts with a clear and professional presentation. Technically, the website is built on the Contao CMS platform using Bootstrap for responsive design and jQuery for interactivity. It employs Matomo analytics for user tracking, indicating a privacy-conscious approach. The site is mobile-optimized with lazy loading images and structured navigation, though accessibility features are basic. Hosting appears stable with multiple authoritative nameservers. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks security headers and a cookie consent mechanism, which are recommended for enhanced protection and GDPR compliance. No incident response or vulnerability disclosure policies are published, representing an area for improvement. Overall, the website is trustworthy, professionally maintained, and serves its cultural mission well. Strategic enhancements in security policies and privacy compliance would further strengthen its posture and user trust.

50
28
2
60
72
60
20
unescobauhausworldheritageculturaltourismbernau+5 more
jQueryBootstrapMatomo AnalyticsContao CMS+1

Partner Domains:

bernau.ticketfritz.de
partner
www.best-bernau.de
partner
2025-10-29T20:57:42.360Z
nsm.no favicon

Nasjonal sikkerhetsmyndighet

nsm.no

0
GovernmentNorwaymediumCRITICAL

Nasjonal sikkerhetsmyndighet (NSM) is the Norwegian National Security Authority, a government agency established in 2016 responsible for national security and cybersecurity in Norway. The website serves as the official portal for disseminating security alerts, guidelines, and protective security information to the public sector, businesses, and citizens. It positions itself as the primary national authority in its domain, providing critical services related to cybersecurity and incident response coordination. Technically, the website is built on the Corepublish CMS platform, utilizing standard web technologies such as JavaScript, SVG, CSS, and HTML5. The site is accessible over HTTPS and includes Google site verification, indicating a legitimate and verified presence. The design is professional and mobile-optimized, though accessibility and SEO optimizations are basic. No advertising or tracking technologies were detected, reflecting a focus on information dissemination rather than commercial activity. From a security perspective, the site benefits from HTTPS and some best practices but lacks explicit security headers and formalized privacy or cookie policies. There is no visible vulnerability disclosure or security.txt file, and no direct contact information for incident response was found in the provided content. These gaps suggest room for improvement in transparency and security posture. Overall, the website is trustworthy and professional, consistent with a government entity. The domain registration data aligns well with the agency's profile, supporting legitimacy. However, the absence of privacy and cookie policies and limited contact information slightly reduce the privacy compliance score. Strategic enhancements in these areas would strengthen the site's security and compliance posture.

-
-
-
-
-
-
-
governmentsecuritycybersecuritynorwaynationalsecurity
JavaScriptSVGCSSHTML5
2025-10-29T19:51:20.818Z
udir.no favicon

Utdanningsdirektoratet

udir.no

0
GovernmentNorwaylargeMEDIUM

Utdanningsdirektoratet (Udir) operates as the Norwegian Directorate for Education and Training, responsible for overseeing kindergartens, primary schools, and secondary education. The website serves as a comprehensive portal offering educational frameworks, curricula, examination information, regulations, statistics, and research resources. It targets educational institutions, educators, students, and parents within Norway, positioning itself as the authoritative government source for educational matters. The content is well-structured, professionally presented, and consistently branded, reflecting its official status. Technically, the website leverages a modern technology stack including Microsoft Azure hosting, Episerver CMS, and various analytics and consent management tools such as Hotjar, Piwik PRO, and CookieInformation. The site demonstrates good performance, mobile optimization, accessibility, and SEO practices. Security is robust with HTTPS enforced, multiple security headers present, and no evident vulnerabilities. Privacy compliance is strong, featuring detailed privacy and cookie policies, GDPR adherence, and user consent mechanisms. The security posture is solid, though the absence of a public security.txt and explicit incident response policies suggests room for improvement. The WHOIS data is unavailable due to Norid's privacy policies, but the domain's .no TLD and content legitimacy strongly support trustworthiness. Overall, the site presents a low-risk profile with high professionalism and compliance. Strategic recommendations include publishing a security.txt file, enhancing incident response transparency, and expanding contact information. These steps would further strengthen trust and security culture. The website is a well-maintained government portal with a mature digital presence and sound security practices.

70
100
17
75
62
80
100
educationgovernmentnorwayprivacycookieconsent+2 more
Microsoft AzureEpiserver CMSCloudflareHotjar+4
2025-10-29T19:51:15.803Z
digdir.no favicon

Digitaliseringsdirektoratet

digdir.no

0
GovernmentNorwaymediumMEDIUM

Digitaliseringsdirektoratet (Digdir) is the Norwegian government agency responsible for driving efficient, user-oriented, and coordinated digitalization across the public sector. The agency focuses on increasing participation, value creation, and innovation within government digital services. The website serves as a comprehensive resource hub offering guidance, tools, common solutions, and information security best practices to public sector entities and digital service developers in Norway. Digdir holds a strong national position as the authoritative body for digital transformation in the Norwegian public sector. Technically, the website is built on Drupal CMS with modern frontend frameworks such as Bootstrap and FontAwesome. It features embedded Vimeo videos and uses Siteimprove analytics for performance and accessibility monitoring. The site is well-optimized for mobile devices, accessible, and SEO-friendly. The presence of privacy and cookie policies, along with a data protection officer contact page, reflects a mature approach to privacy compliance. From a security perspective, the site enforces HTTPS and uses secure embedding practices. However, explicit security headers are not detected, and there is no visible incident response or vulnerability disclosure information. No vulnerabilities or exposed sensitive data were found in the HTML content. The lack of WHOIS data limits domain registration verification, but the official Norwegian .no domain and consistent government branding strongly support legitimacy. Overall, the website presents a professional, trustworthy, and comprehensive digital presence for a government agency. Strategic recommendations include enhancing security headers, publishing incident response and vulnerability disclosure policies, and implementing a cookie consent mechanism to improve GDPR compliance and security posture.

65
50
2
88
77
90
100
governmentdigitalizationnorwaypublicsectorinformationsecurity+3 more
Drupal CMSBootstrap (data-bs-toggle attributes)FontAwesome iconsVimeo embedded video+1
2025-10-29T19:51:05.775Z
datatilsynet.no favicon

Datatilsynet

datatilsynet.no

0
GovernmentNorwaymediumMEDIUM

Datatilsynet is the Norwegian Data Protection Authority, serving as both a supervisory and ombudsman body responsible for ensuring compliance with privacy regulations and protecting individuals from misuse of personal data. The website provides comprehensive information on privacy rights, obligations for businesses, and regulatory frameworks, targeting Norwegian citizens, organizations, and privacy professionals. It holds a strong market position as a national government agency with authoritative content and services. Technically, the website employs a modern tech stack including Vue.js and jQuery, is built on the EPiServer CMS platform, and demonstrates good mobile optimization and accessibility. The site uses HTTPS and implements a cookie consent mechanism aligned with GDPR requirements, reflecting a mature digital infrastructure suitable for a government entity. From a security perspective, the site benefits from HTTPS and secure cookie handling but lacks explicit security headers and a published security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data is consistent with Norwegian domain registry policies and does not detract from the site's legitimacy. Overall, Datatilsynet's website is professional, trustworthy, and compliant with privacy regulations, offering valuable resources and guidance on data protection. Strategic improvements could include enhancing security headers, publishing incident response information, and adding vulnerability disclosure mechanisms to further strengthen security posture.

80
65
17
85
77
85
100
privacypersonverngdprinformationsecuritynorway+2 more
jQuery 3.2.1jQuery UIVue.jsSVG for icons+1

Partner Domains:

personvernbloggen.no
partner
dubestemmer.no
partner

+1 more partners

2025-10-29T19:51:00.763Z
nceclusters.no favicon

Innovasjon Norge

nceclusters.no

0
GovernmentNorwaymediumMEDIUM

Norwegian Innovation Clusters (NIC) is a government-backed collaborative program managed by Innovasjon Norge in partnership with Siva and Forskningsrådet. The program aims to enhance cooperation and innovation among Norwegian companies to address challenges and build competitive advantages collectively. The website serves as an informational and engagement platform for Norwegian businesses involved in innovation clusters, offering program modules such as NIC Connect, NIC Explore, and NIC Impact. The site is well-branded, consistent, and professionally designed, targeting a Norwegian audience with clear contact information and partner links. Technically, the website is built using modern web technologies including React, Next.js, and Sanity CMS, ensuring good performance, mobile optimization, and accessibility. Google Tag Manager is used for analytics and tracking, with a cookie consent mechanism implemented to comply with privacy regulations. However, explicit privacy policy and terms of service pages are not found, representing a compliance gap. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and published incident response or vulnerability disclosure policies. WHOIS data is unavailable due to .no domain privacy norms, but the association with official government agencies and consistent branding supports legitimacy. Overall, the site demonstrates a solid security posture with room for improvement in privacy compliance and security transparency. Strategically, the site should prioritize publishing comprehensive privacy and terms policies, implement security headers, and establish clear vulnerability disclosure channels to enhance trust and compliance. The technical infrastructure is modern and scalable, supporting the program's mission effectively.

95
35
2
80
52
85
100
innovationnorwaygovernmentclusterscollaboration+1 more
ReactNext.jsSanity CMSGoogle Tag Manager

Partner Domains:

www.innovasjonnorge.no
partner
siva.no
partner

+1 more partners

2025-10-29T19:50:55.750Z
flib-erzbistum-paderborn.de favicon

Erzbistum Paderborn - FLIB-Bestellung

flib-erzbistum-paderborn.de

0
GovernmentGermanymediumMEDIUM

The website 'Erzbistum Paderborn - FLIB-Bestellung' serves as an online platform for ordering FLIB websites, primarily targeting church institutions affiliated with the Erzbistum Paderborn in Germany. It operates within a niche religious service sector, providing digital services to its community. The platform leverages WordPress CMS with WooCommerce for e-commerce capabilities, enhanced by plugins such as Yoast SEO Premium and Real Cookie Banner Pro for SEO and privacy compliance respectively. The technical infrastructure is modern and well-maintained, with moderate performance and good mobile optimization. From a security perspective, the website demonstrates a solid posture by enforcing HTTPS, utilizing the Wordfence security plugin, and integrating hCaptcha to mitigate bot activity. Cookie consent management aligns with GDPR requirements, and Matomo analytics is used for user behavior tracking with appropriate consent mechanisms. However, some security headers like Content-Security-Policy and X-Frame-Options are not explicitly detected and could be improved. Overall, the website is professional, trustworthy, and compliant with privacy regulations. It does not exhibit any signs of malicious activity or vulnerabilities. The content is safe for general audiences, focusing on church-related services without any adult or questionable material. Strategic recommendations include enhancing security headers, publishing a vulnerability disclosure policy, and improving accessibility features to further strengthen the site's security and compliance posture.

30
100
17
70
52
60
100
churche-commercewordpressgdprprivacy+3 more
WordPressWooCommerceYoast SEO PremiumReal Cookie Banner Pro+3
2025-10-29T19:34:27.921Z
hinweisgeberschutzsystem.de favicon

Digitaler Meldekanal Hinweisgeberschutz

hinweisgeberschutzsystem.de

0
GovernmentGermanysmallHIGH

The website www.hinweisgeberschutzsystem.de serves as a digital reporting channel for whistleblower protection in Germany. It is a password-protected portal designed to securely receive whistleblower reports, indicating a focus on compliance and secure communication. The site is built on WordPress and uses standard CSS and PHP technologies. However, the public content is minimal due to password protection, limiting visibility into detailed business information or policies. The target audience appears to be organizations or individuals in Germany seeking secure whistleblower reporting mechanisms. From a technical perspective, the site uses WordPress CMS with standard admin CSS files and no visible advanced frameworks or analytics. The performance and mobile optimization are basic, and SEO optimization is poor due to lack of metadata and structured data. Security posture shows some basic best practices such as password protection but lacks critical security headers and visible HTTPS enforcement details. No privacy or cookie policies are present, and no contact information is publicly available, which limits transparency and compliance indicators. Security evaluation reveals moderate security measures but also gaps such as missing security headers, no CSRF tokens on forms, and absence of incident response or vulnerability disclosure information. The domain WHOIS data is limited but does not show suspicious patterns. Overall, the site is functional for its purpose but lacks comprehensive security and privacy transparency. The overall risk is moderate due to limited public information and security best practices. Strategic improvements in security headers, privacy policies, and contact transparency are recommended to enhance trust and compliance.

70
70
25
20
2
30
72
whistleblowersecuritycompliancepassword-protecteddigitalreporting+1 more
WordPressPHPCSS
2025-10-29T19:05:02.023Z
T

Technické služby Lanškroun, s.r.o.

tslan.cz

0
GovernmentCzech RepublicsmallHIGH

Technické služby Lanškroun, s.r.o. is a municipal service provider based in the Czech Republic, offering a range of public services including waste management, maintenance of green areas, public lighting, transport and construction works, sports facility management, and cemetery services. The company primarily serves the town of Lanškroun and its residents, positioning itself as a local essential service provider. The website content is well-structured and relevant to its audience, with clear navigation and consistent branding. However, the absence of WHOIS data and lack of explicit contact information on the site limits external verification of legitimacy. From a technical perspective, the website employs standard web technologies such as jQuery and custom JavaScript, with basic mobile optimization and accessibility features. The site includes a cookie consent mechanism indicating some level of privacy awareness, but lacks comprehensive privacy and security policies. No evidence of modern CMS or advanced frameworks was found, and performance is moderate. Security posture is weak due to missing HTTPS confirmation, absence of security headers, and no visible incident response or vulnerability disclosure information. The lack of WHOIS data further reduces trustworthiness. There are no signs of malicious content or adult material, and the site appears safe for general audiences. Overall, while the business appears legitimate and focused on municipal services, the website would benefit from improved security measures, transparency in privacy practices, and clearer contact information to enhance trust and compliance.

20
25
2
70
52
75
20
municipalserviceswastemanagementpubliclightingtransportsportsfacilities+3 more
jQueryjQuery UICustom JavaScriptCSS
2025-10-29T19:04:26.919Z
heilig-kreuz-ffo.de favicon

Katholische Kirchengemeinde Heilig Kreuz

heilig-kreuz-ffo.de

0
GovernmentGermanysmallHIGH

The website represents the Katholische Kirchengemeinde Heilig Kreuz, a Catholic church community located in Frankfurt (Oder), Germany. It serves as an information and communication platform for parishioners and the local community, offering details on religious services, community events, youth programs, and kindergarten services. The site is positioned as a trusted local religious institution with a clear focus on community engagement and spiritual care. Technically, the website is built on TYPO3 CMS, utilizing jQuery and other JavaScript libraries for enhanced user experience. It features a responsive design with good accessibility and SEO practices. Privacy is respected through a comprehensive cookie consent mechanism that blocks third-party content like YouTube videos until user consent is given, aligning with GDPR requirements. From a security perspective, the site enforces HTTPS and employs cookie consent controls to manage user data privacy. However, it lacks explicit security headers and formal security or incident response policies. No vulnerabilities or suspicious activities were detected in the content or domain registration data, which aligns well with the church's legitimate and transparent operations. Overall, the website demonstrates a solid balance of content quality, technical implementation, privacy compliance, and business credibility, making it a reliable and professional digital presence for the church community.

25
43
17
70
62
60
20
catholicchurchcommunityfrankfurtoderreligious+3 more
TYPO3 CMSjQueryShadowbox.js

Partner Domains:

www.erzbistumberlin.de
partner
www.katholisch-muencheberg.de
partner

+3 more partners

2025-10-29T18:12:44.786Z
lanskroun.eu favicon

Městský úřad Lanškroun

lanskroun.eu

0
GovernmentCzech RepublicsmallHIGH

The website www.lanskroun.eu serves as the official municipal portal for the city of Lanškroun in the Czech Republic. It provides comprehensive information about the city administration, local news, cultural events, tourism, and public services. The site targets residents, visitors, and businesses in the Lanškroun region, offering multilingual support and various e-government services. The business model is focused on public service and community engagement, positioning itself as a trusted local government resource. Technically, the website is built on the Vismo CMS platform, utilizing standard web technologies such as HTML5, CSS, and JavaScript. It integrates Google Analytics and Google Tag Manager for visitor tracking and employs Google reCAPTCHA v2 to protect forms from spam. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some improvements in security headers could be made. From a security perspective, the site enforces HTTPS and uses reCAPTCHA for form protection. However, no explicit security policies or incident response contacts are published, and security headers appear to be missing or not detected in the provided content. The WHOIS data is not publicly available due to EURid privacy policies, which is typical for .eu domains and does not raise immediate concerns. Overall, the security posture is moderate with room for enhancement. The overall risk assessment indicates a well-maintained official government website with no signs of malicious activity or content safety issues. Strategic recommendations include implementing HTTP security headers, publishing a security policy, and adding a vulnerability disclosure mechanism to enhance trust and security maturity.

25
25
17
70
62
75
20
governmentmunicipalczechrepubliclankrounofficial+4 more
HTML5CSSJavaScriptGoogle Analytics+2

Partner Domains:

dzierzoniow.pl
partner
serock.pl
partner

+3 more partners

2025-10-29T18:11:19.420Z