Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 11 of 57|Showing 501-550 of 2820
shopware.com favicon

shopware AG

shopware.com

0
E-commerceGermanylargeLOW

Shopware AG operates a leading ecommerce platform designed to empower online businesses with a flexible, open-source solution that supports both B2B and B2C commerce. The platform integrates advanced features such as AI-powered commerce, automation tools, and comprehensive analytics, positioning Shopware as a competitive player in the ecommerce technology market. The company targets ecommerce businesses, developers, and agencies seeking scalable and innovative online store solutions. Technically, the website leverages modern JavaScript frameworks like Vue.js and Nuxt.js, integrates with marketing and analytics tools such as Google Tag Manager and HubSpot, and employs a consent management platform to ensure privacy compliance. The site is well-optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital infrastructure. Security-wise, Shopware enforces HTTPS, implements robust security headers, and manages cookie consent effectively. However, the absence of explicit incident response and vulnerability disclosure policies, as well as missing WHOIS registration details, slightly reduce the overall trust score. Overall, Shopware presents a professional, secure, and privacy-conscious online presence with strong market credibility.

95
85
72
77
85
80
100
ecommerceshopwareopen-sourcecloudai+6 more
JavaScriptVue.jsNuxt.jsHubSpot forms+4

Partner Domains:

store.shopware.com
partner
feedback.shopware.com
partner

+3 more partners

2025-10-12T00:31:33.410Z
getyourguide.com favicon

GetYourGuide

getyourguide.com

0
HospitalityN/alargeLOW

GetYourGuide is a leading global online platform specializing in booking tours, attractions, and travel experiences worldwide. Founded in 2008, it serves a broad audience of travelers seeking cultural, nature, sports, and food-related activities. The company operates a large-scale marketplace model connecting travelers with local suppliers, emphasizing direct booking and competitive pricing. The website demonstrates a mature digital presence with excellent content quality, clear navigation, and strong branding consistency. Technically, the site employs modern web technologies including Vue.js, Google Tag Manager, Hotjar, and a consent management platform (Usercentrics), ensuring a responsive, fast, and accessible user experience. Security is well addressed with HTTPS, Content Security Policy, and fraud prevention mechanisms like Forter. Privacy compliance is robust, with comprehensive policies and user consent mechanisms in place. While the WHOIS data for the domain is unavailable, which slightly reduces trust, the overall digital footprint, certifications, and social media presence strongly support the legitimacy of the business. No critical security vulnerabilities or compliance gaps were detected. The site is safe for general audiences and does not contain adult or questionable content. Overall, GetYourGuide presents a professional, secure, and user-friendly platform with strategic strengths in the travel and hospitality sector.

50
95
17
98
75
90
100
traveltoursactivitiesbookinghospitality+1 more
JavaScriptGoogle Tag ManagerHotjarUsercentrics CMP+2

Partner Domains:

supplier.getyourguide.com
partner
partner.getyourguide.com
partner

+3 more partners

2025-10-11T22:19:31.791Z
thetrainline.com favicon

Trainline.com Limited

thetrainline.com

0
TransportationUnited KingdomlargeLOW

Trainline.com Limited operates a leading independent rail and coach travel platform, providing users across Europe and the UK with the ability to search, compare, and purchase train and bus tickets. The company holds a strong market position as a trusted intermediary with over 270 operators and coverage in 45 countries. Their digital presence is supported by a modern, performant website and mobile app, enabling seamless journey management for millions of travelers. The platform emphasizes user convenience and competitive pricing, with a clear focus on the transportation sector. Technically, the website leverages contemporary web technologies including React, JavaScript, and integrates advanced analytics and monitoring tools such as New Relic and Google Tag Manager. The presence of anti-bot services like Datadome and tracking via Branch.io indicates a mature digital infrastructure designed for performance and security. The site is well optimized for mobile devices and accessibility, with good SEO practices evident from metadata and structured data. From a security standpoint, the website enforces HTTPS with strong SSL configuration and employs multiple security headers including CSP and HSTS. The use of bot mitigation and monitoring tools further strengthens its security posture. However, explicit security policies and incident response contacts are not publicly disclosed, representing an area for improvement. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, Trainline.com demonstrates a high level of professionalism, technical maturity, and business credibility. The lack of public WHOIS data is consistent with privacy protection practices common among large enterprises. The platform is safe for general audiences, with no adult or questionable content. Strategic recommendations include enhancing transparency around security policies and incident response to further build user trust and compliance.

85
88
2
85
82
85
100
traveltrainticketsbusticketsbookingtransportation+3 more
ReactJavaScriptGoogle Tag ManagerNew Relic+2

Partner Domains:

capitaine-train.com
subsidiary
2025-10-11T22:19:26.783Z
broadcom.com favicon

Broadcom Inc.

broadcom.com

0
TechnologyUnited StatesenterpriseLOW

Broadcom Inc. is a global technology leader specializing in semiconductor products, enterprise software, and security solutions. The company targets technology enterprises and IT professionals, offering a broad portfolio of products and services that position it as a dominant player in the technology sector. The website reflects a mature digital presence with professional design, clear navigation, and comprehensive content tailored to business customers worldwide. Technically, the website employs modern web technologies including React, Google Tag Manager, and OneTrust for cookie consent management. The site is mobile-optimized, accessible, and SEO-friendly, indicating a high level of digital maturity. Performance is moderate with efficient resource loading and asynchronous script usage. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes standard security headers. There is no evidence of exposed sensitive data or vulnerable libraries. Privacy compliance is robust, with clear privacy and cookie policies and consent mechanisms in place. However, explicit security policies, incident response details, and vulnerability disclosure programs are not publicly available. Overall, the website presents a low-risk profile with strong business credibility and technical implementation. The absence of WHOIS data limits domain registration trust analysis but does not detract from the evident legitimacy and professionalism of the site. Strategic recommendations include enhancing transparency around security policies and incident response, and improving WHOIS data completeness.

85
88
59
85
100
85
100
technologysemiconductorenterprisesoftwaresecuritysolutionsprivacy+2 more
ReactGoogle Tag ManagerOneTrust Cookie ConsentWebpack+1

Partner Domains:

support.broadcom.com
service
profile.broadcom.com
service

+2 more partners

2025-10-11T21:08:44.666Z
cloud.com favicon

Cloud Software Group, Inc.

cloud.com

0
TechnologyUnited StatesenterpriseLOW

Cloud Software Group, Inc. is a prominent enterprise software provider specializing in virtualization, integration, data management, automation, business intelligence, collaboration, networking, and security solutions. The company consolidates several well-known software brands including Citrix, TIBCO, Jaspersoft, NetScaler, ibi, Spotfire, and XenServer, positioning itself as a leader in the enterprise infrastructure software market. Founded in 2022 and headquartered in Fort Lauderdale, Florida, the company targets large enterprises requiring mission-critical software solutions. The website infrastructure leverages Adobe Experience Manager CMS, integrates modern analytics and consent management tools such as Google Analytics, LinkedIn Insight, and TrustArc, and is hosted on a performant Akamai CDN platform. The site demonstrates good mobile optimization, SEO practices, and accessibility features, reflecting a mature digital presence. However, some security best practices like explicit security headers and published incident response policies are absent. Security posture is solid with HTTPS enforced and no visible vulnerabilities, but the absence of WHOIS data for the domain www.cloud.com raises concerns about domain registration legitimacy. This discrepancy suggests either privacy protection or an unregistered domain, which should be verified to ensure trustworthiness. Privacy compliance is well addressed with clear policies and consent mechanisms. Overall, Cloud Software Group presents a professional and trustworthy online presence with strong business credibility and technical maturity. Strategic improvements in security transparency and domain registration verification are recommended to enhance trust and compliance.

85
73
17
85
100
85
100
enterprisesoftwarevirtualizationbusinessintelligencecloudcomputingprivacy+2 more
Adobe Experience Manager (AEM)Google Tag ManagerGoogle Analytics (gtag.js)TrustArc Consent Management+4

Partner Domains:

citrix.com
subsidiary
tibco.com
subsidiary

+3 more partners

2025-10-11T21:07:58.725Z
employinc.com favicon

Employ, Inc.

employinc.com

0
TechnologyN/aenterpriseLOW

Employ, Inc. is a prominent technology company specializing in AI-powered hiring solutions and applicant tracking systems. As the parent company of well-known ATS platforms such as JazzHR, Lever, and Jobvite, Employ positions itself as a leader in the recruitment technology space, offering adaptable and intelligent hiring tools to enterprises and HR professionals. The website reflects a mature digital presence with comprehensive content, clear branding, and a focus on AI integration in hiring workflows. Technically, the website is built on WordPress with modern plugins and integrations including Google Tag Manager, Google Analytics, and CookieYes for consent management. The site demonstrates good performance, mobile optimization, and accessibility, supported by structured data for SEO and rich metadata. Security practices include HTTPS enforcement and cookie consent mechanisms, although explicit security headers and vulnerability disclosure policies are not evident. From a security standpoint, the site shows a solid posture with no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data suggests privacy protection, which is common for commercial entities, though it slightly reduces transparency. Overall, the site is trustworthy, professional, and compliant with privacy regulations such as GDPR. Strategically, Employ should enhance its security posture by implementing recommended HTTP security headers, publishing a security policy, and establishing a vulnerability disclosure program. These steps will strengthen trust and compliance while supporting its enterprise market position.

95
83
17
80
95
85
100
hiringairecruitmentatstechnology+3 more
WordPressGoogle Tag ManagerGoogle AnalyticsCookieYes Consent Management+3

Partner Domains:

jazzhr.com
subsidiary
lever.co
subsidiary

+1 more partners

2025-10-11T21:07:22.941Z
jobvite.com favicon

Jobvite

jobvite.com

0
TechnologyUnited StatesenterpriseLOW

Jobvite is a leading enterprise SaaS provider specializing in recruitment software and applicant tracking systems. The company offers a comprehensive suite of products including applicant tracking, recruitment marketing, onboarding, career sites, employee referrals, and analytics. Positioned strongly in the technology sector, Jobvite targets recruiters, HR leaders, and talent acquisition professionals seeking to optimize hiring processes. The website reflects a mature digital presence with professional design, clear navigation, and extensive content tailored to its audience. Technically, the site is built on WordPress CMS with a modern tech stack incorporating Google Tag Manager, Marketo, New Relic, Hotjar, Mouseflow, and CookieYes for consent management. The site demonstrates good mobile optimization, SEO practices, and accessibility features. Performance is moderate, supported by various analytics and marketing tools. From a security perspective, the website enforces HTTPS and employs monitoring tools but lacks explicit security headers and published security policies or incident response contacts. The absence of WHOIS data for the domain is notable and warrants further verification, although the website's branding and content strongly indicate legitimacy. Overall, Jobvite's website is professional, secure, and privacy-conscious, with room for improvement in transparency around security policies and domain registration details. Strategic recommendations include enhancing security header implementation, publishing incident response information, and verifying domain registration data to strengthen trust.

95
83
17
75
85
85
100
recruitmentapplicanttrackingsystemhrsoftwaresaasenterprise+4 more
WordPress CMSGoogle Tag ManagerMarketoNew Relic Browser monitoring+7

Partner Domains:

employinc.com
parent
2025-10-11T19:56:42.249Z
lidl.de favicon

Lidl

lidl.de

0
RetailGermanyenterpriseLOW

Lidl operates as a major retail supermarket chain in Germany with both physical stores and an online shopping platform. The website reflects a professional retail business model targeting general consumers with a focus on local and online shopping convenience. The company maintains consistent branding and provides comprehensive privacy and cookie policies compliant with GDPR, including consent mechanisms for tracking and personalization. Technically, the website uses modern JavaScript libraries and tracking tools such as Kameleoon and OneTrust, along with YouTube integration for video content. The site is mobile-optimized and accessible, with good SEO practices and structured data for organization information. Performance is moderate, with room for optimization. Security posture is solid with HTTPS enforced and no exposed sensitive data, though the absence of explicit security headers and a public security policy or incident response contact suggests areas for improvement. Privacy compliance is strong, with clear policies and consent management. Overall, the website is trustworthy and professional, suitable for a large enterprise retail business. Strategic recommendations include enhancing security headers, publishing a security policy, and adding vulnerability disclosure information to further strengthen trust and security posture.

85
100
10
75
100
65
100
retaile-commercesupermarketgrocerycookie-consent+2 more
JavaScriptYouTube iframe APIOneTrust cookie consentKameleoon (A/B testing and personalization)+1
2025-10-11T18:53:07.743Z
tryg.no favicon

Tryg Forsikring

tryg.no

0
FinanceNorwaylargeLOW

Tryg Forsikring is a major Norwegian insurance company providing a range of insurance products for individuals and families, including property and personal insurance. The website is professionally designed, with consistent branding and clear content targeting Norwegian customers. It offers online insurance services with benefits such as a 10% online discount. The company maintains a strong market position in the Norwegian finance sector. Technically, the website uses modern web technologies including Drupal CMS, Bootstrap for responsive design, and integrates advanced tag management and analytics tools such as Tealium and Adobe Experience Cloud. The site is hosted on Amazon Web Services, ensuring scalability and reliability. Mobile optimization and accessibility features are well implemented, contributing to a good user experience. From a security perspective, the site enforces HTTPS and implements a comprehensive cookie consent mechanism compliant with GDPR. However, security headers are not explicitly detected, and no public security policy or incident response contact is found. The absence of WHOIS data suggests privacy protection for domain registration, which is justified for a large financial institution. Overall, the security posture is strong but could be enhanced by publishing additional security policies and headers. The overall risk assessment is low, with no critical vulnerabilities or suspicious indicators detected. Strategic recommendations include improving security header implementation, publishing a vulnerability disclosure policy, and enhancing contact information transparency to further build trust and compliance.

65
88
43
70
77
80
100
insurancefinancenorwaycookieconsentprivacy+1 more
JavaScriptBootstrap CSSTealium Tag ManagementCookie Information Consent Management+1
2025-10-11T18:51:47.494Z
tealium.com favicon

Tealium Inc.

tealium.com

0
TechnologyUnited StatesenterpriseLOW

Tealium Inc. is a well-established enterprise founded in 2007, specializing in real-time customer data integration and management through its Customer Data Platform (CDP) and tag management solutions. Positioned as a leader in the market, recognized by Gartner's Magic Quadrant, Tealium serves a global enterprise audience with a comprehensive suite of products designed to unify, activate, and leverage customer data across multiple touchpoints in real-time. Their offerings include advanced AI data streaming, cloud data activation, and privacy-first healthcare solutions, targeting marketing, IT, and data analytics teams. Technically, the website is built on WordPress with a modern tech stack including Google Analytics, Marketo forms, and Tealium's own tag management scripts. The site demonstrates good SEO, accessibility, and mobile optimization, with a moderate performance profile. Hosting and domain registration are consistent with enterprise standards, leveraging Amazon Registrar and AWS DNS infrastructure. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms, but lacks explicit security headers and a published security.txt file. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong, with clear policies and GDPR adherence. Contact information is transparent, including phone and physical address, enhancing business credibility. Overall, Tealium's website reflects a mature, professional, and trustworthy enterprise with a strong market position in customer data platforms. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure policies, and enabling DNSSEC to further strengthen security posture.

85
83
47
75
82
85
100
customerdataplatformreal-timedataaimarketingtechnologydataprivacy+3 more
Google AnalyticsMarketo FormsCookieConsent v3.1.0jQuery 3.7.1+3

Partner Domains:

aws.amazon.com
partner
2025-10-11T18:51:37.471Z
adb.org favicon

Asian Development Bank

adb.org

0
GovernmentN/aenterpriseLOW

The Asian Development Bank (ADB) is a leading multilateral development bank focused on fostering sustainable, inclusive, and resilient growth across Asia and the Pacific. Founded in 1966, it serves 69 members and provides loans, grants, technical assistance, and equity investments to promote social and economic development. The website reflects a mature, enterprise-level organization with a clear mission and extensive service offerings targeting governments, investors, and development partners. Technically, the website is built on Drupal 10 with modern frameworks like Bootstrap and integrates advanced analytics and tracking tools such as Google Tag Manager, Facebook Pixel, and Microsoft Clarity. The site is mobile-optimized, accessible, and SEO-friendly, demonstrating a high level of digital maturity. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, though explicit security headers could be more visible. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is unavailable, likely due to privacy protection, which is justified for an international organization of this nature. Overall, the website is professional, trustworthy, and compliant with privacy regulations, making it a reliable source of information and services related to development banking in the Asia-Pacific region.

65
50
55
85
100
80
100
developmentbankasiapacificloansgrantstechnicalassistance+5 more
Drupal 10jQueryBootstrapGoogle Tag Manager+2
2025-10-11T18:48:47.097Z
diehl.com favicon

Diehl Group

diehl.com

0
TechnologyGermanyenterpriseLOW

Diehl Group is a globally active German technology enterprise headquartered in Nürnberg, Germany, with a diversified product range across multiple industrial sectors including metal processing, electronic systems, defence, aviation, and metering technologies. The company employs approximately 18,700 people worldwide and generates annual sales of 4.7 billion euros, positioning it as a significant player in the technology and manufacturing industry. The website reflects a professional corporate presence with clear branding and structured content aimed at industrial customers, partners, suppliers, and job seekers. Technically, the website employs modern web technologies such as HTMX, lazy loading for images, and Matomo analytics for user tracking, combined with a cookie consent mechanism to ensure privacy compliance. The site is mobile optimized, accessible, and SEO-friendly, indicating a mature digital infrastructure. The CMS appears to be Ibexa (formerly eZ Platform), a robust enterprise content management system. From a security perspective, the site enforces HTTPS and implements cookie consent, with no visible security vulnerabilities or exposed sensitive data. However, explicit security headers like X-Frame-Options and X-Content-Type-Options are not clearly detected and could be improved. The absence of a dedicated security policy or incident response information is noted, as is the lack of a security.txt file for vulnerability disclosure. Overall, the website and business appear legitimate and professionally managed, with a strong security posture and good privacy compliance. The missing WHOIS data for the subdomain is typical and does not detract from the trustworthiness of the site. Strategic recommendations include enhancing security header implementation, publishing security policies, and improving contact information visibility for security and compliance inquiries.

80
88
2
98
72
85
100
technologymanufacturingcorporatecomplianceprivacy+2 more
JavaScriptHTMXMatomo AnalyticsLazySizes (lazy loading images)+1

Partner Domains:

www.diehl.com
parent
2025-10-11T17:42:39.487Z
O

Ovarro

ovarro.com

0
TechnologyUnited KingdommediumLOW

Ovarro is a UK-based technology company specializing in monitoring, control, analytics, and SCADA solutions for critical infrastructure sectors including water, oil & gas, broadcast, transportation, energy, and process industries. The company positions itself as a trusted partner with over 25 years of experience and a global network of certified channel partners. Their business model focuses on providing B2B technology solutions that enhance operational efficiency, safety, and security through data-driven insights. The website reflects a mature digital presence with professional design, clear navigation, and multilingual support, targeting industrial clients worldwide. Technically, the website is built on a custom ASP.NET WebForms platform, leveraging Microsoft Ajax and Bootstrap 4.3.1 for responsive design. Hosting and DNS services are supported by Cloudflare, ensuring reliable performance and security. The site implements GDPR-compliant cookie consent mechanisms and maintains good SEO and accessibility standards, although some accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and uses domain locking statuses to prevent unauthorized changes. However, DNSSEC is not enabled, and there is no publicly available security policy or incident response information. No vulnerabilities or exposed sensitive data were detected in the analysis. Privacy compliance is strong with clear privacy and cookie policies. The absence of a vulnerability disclosure program or security.txt file is noted as an area for improvement. Overall, Ovarro's website demonstrates a high level of professionalism, security awareness, and compliance suitable for its industry and clientele. The risk profile is low, with recommendations to enhance DNS security and publish explicit security policies to further strengthen trust and transparency.

85
95
17
80
72
85
100
rtusdataloggersleakdetectionscadamonitoring+10 more
ASP.NETMicrosoft AjaxBootstrap 4.3.1Cloudflare DNS

Partner Domains:

citplatform.com
partner
atriumiot.com
partner
2025-10-11T17:38:23.831Z
heycar.com favicon

Mobility Trader UK Limited

heycar.com

0
TransportationUnited KingdommediumLOW

heycar UK, operated by Mobility Trader UK Limited, is a well-established online marketplace specializing in quality checked used cars from trusted dealers across the United Kingdom. Founded in 2019, the company leverages a modern digital platform to provide car buyers with extensive listings, dealer access, car valuation tools, finance information, and expert reviews. The website demonstrates a strong market position within the UK automotive sector, targeting consumers seeking reliable used vehicles with transparent dealer relationships. The technical infrastructure is robust, utilizing Next.js and React frameworks hosted on AWS, integrating multiple third-party services such as Stripe for payments, Google Maps for location services, and advanced analytics platforms including Snowplow and Quantcast. The site is optimized for performance, mobile responsiveness, and accessibility, reflecting a mature digital presence. From a security perspective, heycar enforces HTTPS with a solid SSL configuration and employs a comprehensive cookie consent mechanism compliant with GDPR. While explicit security policies and incident response contacts are not publicly found, the domain registration is consistent and trustworthy, with no suspicious indicators. The absence of DNSSEC is a minor security gap. Overall, the security posture is strong but could be enhanced by publishing formal security and vulnerability disclosure policies. The overall risk assessment is low, with the website presenting a professional, secure, and user-friendly experience. Strategic recommendations include enabling DNSSEC, publishing privacy and security policies, and enhancing transparency around incident response to further strengthen trust and compliance.

90
85
17
80
82
85
100
usedcarscarsalesukautomotiveonlinemarketplace+3 more
ReactNext.jsStripeGoogle Maps API+4

Partner Domains:

app.carsale24.com
partner
cmp.inmobi.com
partner

+1 more partners

2025-10-11T15:19:52.631Z
freshservice.com favicon

Freshworks Inc.

freshservice.com

0
TechnologyUnited StatesenterpriseLOW

Freshworks Inc. operates the Freshservice platform, an AI-powered IT service management solution designed for enterprises seeking scalable and efficient ITSM capabilities. Positioned as a leader in the ITSM market, Freshservice emphasizes ease of deployment, AI assistance, and integration with existing technology stacks to improve IT team productivity and employee satisfaction. The company targets IT departments across various industries, offering a SaaS subscription model with enterprise-grade features and certifications such as ISO 27001 and SOC 2. Technically, the website leverages modern frameworks like React and Next.js, integrates multimedia content via Wistia, and employs robust analytics and consent management tools including Google Tag Manager and OneTrust. The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital infrastructure. From a security perspective, Freshservice enforces HTTPS, implements comprehensive security headers, and maintains privacy and cookie policies aligned with GDPR requirements. While WHOIS data is unavailable, possibly due to privacy protection, the overall security posture is strong with no evident vulnerabilities or exposed sensitive data. The company also maintains a vulnerability disclosure policy and provides contact for its Data Protection Officer. Overall, Freshservice presents a trustworthy, professional, and secure online presence suitable for enterprise customers. The main risk lies in the lack of publicly available WHOIS data, which should be monitored for legitimacy confirmation. Strategic recommendations include publishing a dedicated security policy page and enhancing incident response contact visibility.

65
100
27
95
77
85
100
itsmaienterprisesoftwareitservicemanagementfreshservice+1 more
ReactNext.jsGoogle Tag ManagerWistia video embed+2
2025-10-11T14:17:44.851Z
gleif.org favicon

Global Legal Entity Identifier Foundation

gleif.org

0
GovernmentSwitzerlandmediumLOW

The Global Legal Entity Identifier Foundation (GLEIF) is a reputable non-profit organization responsible for managing the Global LEI System, which provides unique legal entity identifiers worldwide. The organization operates globally with offices in Switzerland and Germany, targeting financial institutions, regulators, and businesses requiring standardized entity identification. Their website reflects a professional and consistent brand presence, offering clear information about their mission and services. Technically, the website employs a modern technology stack including jQuery, Lodash, MathJax, Cookiebot for consent management, and Piwik Analytics for visitor tracking. The site is well-optimized for mobile devices and includes essential privacy and cookie policies, demonstrating digital maturity and compliance with GDPR requirements. The use of HTTPS and reCAPTCHA enhances security, though some security headers could be improved. From a security perspective, the site shows good practices such as encrypted connections, consent mechanisms, and bot protection. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a published security policy or incident response contact is a minor gap. The WHOIS data is privacy protected or unavailable, which is typical for organizations handling sensitive data, and does not detract from the site's legitimacy. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. Strategic recommendations include enhancing security headers, publishing a security policy, and improving accessibility features to further strengthen the site's security posture and user trust.

80
83
17
70
85
85
100
legalentityidentifierfinancialcompliancenon-profitglobalregistrydataprivacy+2 more
jQueryLodashMathJaxCookiebot+3
2025-10-11T11:57:40.563Z
moodle.com favicon

Moodle Pty Ltd

moodle.com

0
EducationN/alargeLOW

Moodle Pty Ltd operates the website moodle.com, providing the world's most popular Learning Management System (LMS) and related educational technology solutions. The company targets educators, trainers, and institutions across K-12, higher education, and workplace learning sectors. Moodle offers a range of products including Moodle LMS, Moodle Workplace, MoodleCloud, and the Moodle App, supported by a global network of certified partners and integrations. The website reflects a mature, well-established business with a strong market position and a commitment to open source principles and educational equity. Technically, the website is built on WordPress with modern web technologies such as jQuery, Google Tag Manager, and Intercom for customer engagement and analytics. Hosting and DNS services leverage Cloudflare, ensuring reliable performance and security. The site is mobile-optimized, accessible, and SEO-friendly, with comprehensive metadata and structured data enhancing search visibility. From a security perspective, the site enforces HTTPS, employs domain transfer and update protections, and integrates cookie consent mechanisms compliant with GDPR. However, DNSSEC is not enabled, and explicit security policies or incident response contacts are not published, representing areas for improvement. No vulnerabilities or exposed sensitive data were detected. Overall, moodle.com demonstrates a high level of professionalism, trustworthiness, and compliance, making it a reliable platform for educational technology services. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and providing clearer security policy disclosures to further enhance trust and security posture.

50
88
47
82
75
85
100
lmseducationopensourcee-learningtraining+3 more
jQueryGoogle Tag ManagerIntercomCloudflare DNS+1
2025-10-11T09:38:02.261Z
axelspringer.de favicon

Axel Springer SE

axelspringer.de

0
MediaGermanyenterpriseLOW

Axel Springer SE is a leading German media and technology company with a strong focus on AI-driven journalism and digital innovation. The company aims to shape the future of journalism in the free world, continuing its legacy since its founding approximately 80 years ago. The website reflects a professional corporate presence with comprehensive content, including corporate blogs, press releases, and stories highlighting company initiatives and values. The target audience is broad, encompassing general users interested in media and technology news. Technically, the website is built on WordPress with modern JavaScript and CSS, integrating a consent management platform (Sourcepoint) and Tealium tag management for analytics and marketing. The site is mobile-optimized and performs moderately well, with good SEO and accessibility features. However, some security headers are not explicitly detected, and no dedicated security or incident response policies are published. Security posture is strong with HTTPS enforced and GDPR compliance evident through consent mechanisms. No critical vulnerabilities or exposed sensitive data were found. The absence of WHOIS data for the domain suggests privacy protection or alternative registration, but the website's branding and social media presence strongly support its legitimacy. Overall, the website is trustworthy, professional, and compliant with privacy regulations, though improvements in security header implementation and transparency around security policies could enhance its posture.

85
70
2
85
100
85
100
mediatechnologyjournalismaicorporate+2 more
JavaScriptHTML5CSS3Sourcepoint CMP+1

Partner Domains:

queer.axelspringer.com
subsidiary
career.axelspringer.com
subsidiary
2025-10-11T09:37:06.576Z
J

Jscrambler

jscrambler.com

0
TechnologyN/amediumLOW

Jscrambler is a technology company specializing in client-side protection platforms, offering advanced JavaScript obfuscation and third-party tag protection solutions. Established in 2010, it serves enterprises and businesses seeking to secure their web applications and comply with regulations such as PCI DSS. The company positions itself as a leader in client-side security with a comprehensive suite of services tailored to various industries including finance, e-commerce, and healthcare. The website reflects a professional and consistent brand image with detailed product information and resources to support customer engagement. Technically, the website leverages modern web technologies including JavaScript frameworks, HubSpot for marketing and analytics, and Cloudflare for DNS and security. The site is mobile-optimized and demonstrates good SEO practices, although accessibility features are basic. Performance is moderate, with multiple third-party scripts for analytics and marketing, indicating a mature digital infrastructure. From a security perspective, the site enforces HTTPS and uses Cloudflare DNS, but lacks visible advanced security headers and explicit security policies on the site. No vulnerability disclosure or incident response information is provided, which could be improved to enhance trust. The domain WHOIS data is consistent and transparent, supporting the legitimacy of the business. Overall, Jscrambler presents a secure and professional online presence with room for improvement in privacy compliance transparency and security policy disclosures. The risk profile is low, with no critical vulnerabilities detected in the analysis.

50
95
65
98
100
85
100
javascriptobfuscationpcidsscompliancesecuritycompliancetechnology
JavaScriptHubSpot analyticsGoogle Tag ManagerHotjar+1
2025-10-11T09:36:27.609Z
bosch-home.com favicon

BSH Hausgeräte GmbH

bosch-home.com

0
ManufacturingN/aenterpriseLOW

Bosch Home Appliances International operates as a global leader in manufacturing and retailing high-quality home appliances. The website serves as a global portal directing users to localized country-specific sites, targeting both consumers and builders. The company offers a comprehensive range of services including product sales, customer support, and builder business solutions. The brand is well-established with a consistent and professional online presence, reflecting its enterprise scale and global market position. Technically, the website employs a modern infrastructure leveraging Adobe Experience Platform Launch for tag management, consent management solutions for GDPR compliance, and optimized media formats such as WebP and SVG for performance and visual quality. The site is mobile-optimized, accessible, and SEO-friendly, indicating a mature digital strategy. From a security perspective, the site enforces HTTPS and integrates consent management for cookies and tracking, demonstrating compliance with privacy regulations. While explicit security headers are not clearly visible in the HTML, the presence of a vulnerability reporting mechanism and privacy policies indicates a proactive security posture. No vulnerabilities or suspicious activities were detected in the content or scripts. Overall, the website presents a low-risk profile with strong business credibility and technical maturity. The main concern is the absence of publicly available WHOIS data, which is unusual for a major brand but likely due to privacy policies. Strategic recommendations include enhancing transparency with explicit security headers, publishing a dedicated security policy, and providing clear contact information for data protection officers.

75
85
17
90
80
85
100
homeappliancesboschglobalconsumerelectronicsmanufacturing+5 more
Adobe DTM/LaunchConsent Manager (consentmanager.net)ModernizrjQuery (implied by vendor scripts)+2
2025-10-11T09:36:12.540Z
youtube.de favicon

Google LLC

youtube.de

0
TechnologyUnited StatesenterpriseLOW

YouTube, owned by Google LLC, is the world's leading online video sharing and streaming platform, offering a vast array of user-generated and professional content. It serves a global audience with a business model primarily based on advertising revenue complemented by premium subscription services. The platform is highly recognized for its extensive content library and user engagement features. Technically, YouTube employs a modern web technology stack including Polymer framework, web components, and extensive use of Google APIs. The site is optimized for performance, accessibility, and mobile responsiveness, hosted on Google Cloud infrastructure ensuring scalability and reliability. From a security perspective, YouTube enforces HTTPS, employs strong security headers, and integrates advanced bot protection mechanisms. Privacy policies and cookie consent mechanisms are comprehensive and GDPR compliant, reflecting a mature approach to data protection and user privacy. Overall, YouTube demonstrates a high level of digital maturity, security posture, and business credibility. The domain is well-established and consistent with the company's history. No critical vulnerabilities or compliance gaps were detected in the accessible content. Strategic recommendations include maintaining continuous security audits and enhancing incident response transparency.

90
73
25
85
75
90
100
videostreamingmediasocialentertainment+1 more
JavaScriptPolymerWeb ComponentsHTML5+3

Partner Domains:

google.com
parent
2025-10-11T07:56:37.471Z