Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 945 of 2974|Showing 47201-47250 of 148689
concur.com favicon

SAP Concur

concur.com

0
TechnologyUnited StatesenterpriseMEDIUM

SAP Concur is a leading provider of spend management software, integrating travel, expense, and invoice management on a unified platform. The company targets businesses of all sizes, offering AI-enabled tools to simplify and automate spend processes. As a subsidiary of SAP, Concur holds a strong market position with a comprehensive suite of products and global reach. The website reflects a mature digital presence with extensive product information, customer case studies, and multiple regional versions. Technically, the site is built on Drupal CMS with modern JavaScript libraries and integrates advanced analytics and performance monitoring tools such as New Relic and Adobe Target. The presence of TrustArc for cookie consent and Google reCAPTCHA for form security indicates a focus on privacy and security compliance. The site is mobile-optimized and accessible, providing a professional user experience. Security posture is strong with HTTPS enforced, security headers present, and no visible vulnerabilities. However, the absence of explicit security policy or incident response information is noted. Privacy compliance is well addressed with GDPR-consistent policies and consent mechanisms. Overall, the site demonstrates high trustworthiness and professionalism. Recommendations include publishing a dedicated security policy and vulnerability disclosure page, enhancing transparency around incident response, and maintaining continuous monitoring of third-party scripts and integrations to mitigate risks.

55
70
17
80
100
80
100
spendmanagementtravelexpenseinvoicesapconcur+5 more
Drupal CMSGoogle reCAPTCHATrustArc cookie consentNew Relic monitoring+1

Partner Domains:

www.concursolutions.com
partner
www.sap.com
parent

+1 more partners

2025-10-11T21:03:46.647Z
auvergnerhonealpes.fr favicon

Région Auvergne-Rhône-Alpes

auvergnerhonealpes.fr

0
GovernmentFrancelargeMEDIUM

The website www.auvergnerhonealpes.fr is the official institutional portal for the Auvergne-Rhône-Alpes regional government in France. It provides comprehensive information about regional governance, public services, aids, news, and events targeted at residents, professionals, students, and public entities within the region. The site is well-branded and professionally designed, reflecting its status as a government entity. Technically, it is built on Drupal 10 CMS, leveraging modern web technologies such as lazy loading images and Matomo analytics for privacy-conscious tracking. The site is mobile-optimized and accessible, with clear navigation and structured content. From a security perspective, the website enforces HTTPS and employs cookie consent mechanisms compliant with GDPR. However, it lacks explicit security headers and a published security policy or incident response page. No vulnerabilities or exposed sensitive data were detected in the HTML content. The WHOIS data for the domain is unavailable, which is common for domains under AFNIC registry or due to privacy protections, but the website's content and official branding strongly support its legitimacy. Overall, the site demonstrates a mature digital presence for a regional government entity, balancing user experience, privacy, and security reasonably well. Strategic improvements could include enhancing security headers, publishing a security policy, and adding a vulnerability disclosure mechanism to further strengthen trust and compliance.

65
25
17
75
-
80
100
governmentregionalpublicservicesauvergne-rhne-alpesfrance+4 more
Drupal 10Matomo AnalyticsBlazy (lazy loading images)Splide (carousel/slideshow)+1

Partner Domains:

www.laregionvoustransporte.fr
partner
2025-10-11T20:03:12.967Z
ferreira-batiment.fr favicon

Ferreira Bâtiment

ferreira-batiment.fr

0
Real EstateFrancemediumMEDIUM

Ferreira Bâtiment is a family-owned construction company with over 45 years of experience specializing in building, civil engineering, and large-scale projects in the Drôme Ardèche region of France. Positioned as a key regional player, the company offers expertise in béton armé, béton architectonique, and gros œuvre, serving clients primarily in the Valentinois basin. The website reflects a professional and consistent brand image, supported by testimonials and a clear presentation of services. Technically, the website is built on the Concrete5 CMS platform, utilizing modern JavaScript libraries such as jQuery and Bootstrap, and integrates Google Analytics for user tracking. The site is mobile-optimized with good SEO practices and a cookie consent mechanism compliant with GDPR. Performance is moderate, with room for improvement in accessibility and security headers. Security posture is solid with HTTPS enforced and privacy-focused cookie management, but lacks explicit security policies or incident response information. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data limits domain legitimacy verification, though the website content and business information appear trustworthy. Overall, Ferreira Bâtiment presents a credible and professional online presence with a strong focus on compliance and user privacy. Strategic improvements in security transparency and WHOIS data availability would enhance trust and risk posture.

90
10
2
85
52
60
40
constructionbuildingcivilengineeringbtpgrosoeuvre+5 more
jQueryBootstrapFont AwesomeYouTube iframe API+2
2025-10-11T20:03:02.945Z
palfinger.fr favicon

Palfinger France

palfinger.fr

0
TransportationFrancemediumMEDIUM

Palfinger France is a specialized manufacturer and distributor of handling cranes, forestry cranes, recycling cranes, public works cranes, lifting arms, and related accessories. The company operates primarily in the French market, targeting businesses in construction, forestry, recycling, and transportation sectors. The website reflects a medium-sized enterprise with a long-established presence since 1997 and is part of the Groupe Vincent corporate group. The business model focuses on equipment sales, including new and used machinery, supported by a distributor network and after-sales services. Technically, the website uses a custom PHP-based CMS with Bootstrap and jQuery frameworks, enhanced by LightGallery for media display and Matomo for privacy-conscious analytics. The site is mobile-optimized with moderate performance and basic accessibility features. Hosting and domain registration align with French providers, ensuring regional consistency. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data or vulnerable libraries. However, it lacks important security headers and a cookie consent mechanism, which are critical for GDPR compliance. No explicit privacy or incident response policies are published, and no contact emails or phone numbers are directly visible on the main page, which could hinder user trust and compliance. Overall, the website is professional and trustworthy with good business credibility but requires improvements in privacy compliance and security best practices to enhance user trust and regulatory adherence.

40
10
2
75
42
70
100
cranesliftingequipmentmanufacturingtransportationfrance+3 more
BootstrapjQueryLightGalleryMatomo Analytics

Partner Domains:

groupe-vincent.fr
parent
srv.groupe-vincent.fr
service
2025-10-11T20:02:52.926Z
gjensidige.dk favicon

Gjensidige

gjensidige.dk

0
FinanceDenmarklargeMEDIUM

Gjensidige.dk is a well-established Danish insurance provider serving over 500,000 customers with a broad portfolio of insurance products including car, travel, home, health, accident, business, and agricultural insurance. The company positions itself as a trusted insurer with a strong customer focus, supported by positive Trustpilot reviews and comprehensive online services. The website is professionally designed, mobile-optimized, and provides clear navigation and relevant content tailored to private individuals, businesses, and agricultural clients. Technically, the site employs modern web technologies including JavaScript frameworks, consent management via Usercentrics, and analytics through Piwik PRO and Tealium. The site is served over HTTPS with good SSL configuration, though explicit security headers are not evident in the HTML source. The site demonstrates good privacy compliance with accessible privacy and cookie policies and a consent mechanism. From a security perspective, the site shows a mature posture with secure forms and no visible vulnerabilities or exposed sensitive data. However, it lacks published security policies, incident response contacts, and vulnerability disclosure programs, which are recommended for enhanced transparency and trust. The WHOIS data is unavailable due to privacy protection, which is common and justified for this business type. Overall, Gjensidige.dk presents a secure, professional, and trustworthy online presence suitable for its market. Strategic improvements in security transparency and header implementation would further strengthen its posture.

75
25
2
85
100
75
100
insurancefinanceprivacycustomerservicedanish+2 more
JavaScriptCSSHTML5Usercentrics (consent management)+2

Partner Domains:

www.gouda.dk
partner
www.gjensidige.com
related
2025-10-11T20:02:32.873Z
starapps.io favicon

StarApps Studio

starapps.io

0
E-commerceIndiamediumMEDIUM

StarApps Studio is a medium-sized Indian company specializing in developing Shopify apps aimed at enhancing e-commerce store performance, particularly variant management and user experience. Founded in 2016 and operating under XPER SOFTWARES PVT LTD, the company serves over 25,000 active merchants including 1000+ Shopify Plus stores, positioning itself as a trusted Shopify app provider with a strong market presence. Their key services include automation of product variant displays, swatches, and descriptions to boost conversions and streamline store management. Technically, the website is built on Webflow CMS, leveraging modern web technologies such as jQuery, Slick Carousel, and Google Tag Manager for analytics and marketing. Hosting is via AWS Cloudfront CDN ensuring good performance and availability. The site is mobile optimized with good accessibility and SEO practices, though some improvements in security headers and cookie consent mechanisms are recommended. From a security perspective, the site uses HTTPS with secure form inputs but lacks explicit security headers and publicly available security or incident response policies. WHOIS data is privacy protected, which is common and justified for this business type, but limits domain age verification. Overall, the security posture is moderate with room for improvement in compliance and transparency. The overall risk is low with no suspicious content or vulnerabilities detected. Strategic recommendations include implementing security headers, adding cookie consent for GDPR compliance, and publishing security policies to enhance trust and compliance posture.

30
53
2
60
72
75
100
shopifye-commercevariantmanagementshopifyappssaas+1 more
WebflowjQuerySlick CarouselGoogle Fonts+1

Partner Domains:

partners.starapps.io
partner
partners.starapps.studio
partner
2025-10-11T20:02:07.717Z
ethicaltrade.org favicon

Ethical Trading Initiative

ethicaltrade.org

0
Non-profitN/amediumHIGH

The Ethical Trading Initiative (ETI) is a well-established non-profit alliance comprising trade unions, NGOs, and businesses focused on promoting ethical trade and human rights in global supply chains. The website positions ETI as a leading organization in this space, offering membership, training, transparency frameworks, and resources to support responsible business practices. The presence of major retail and NGO members underscores its market position and credibility. Technically, the website is built on Drupal 10, leveraging modern web technologies including Google Analytics with IP anonymization, CookiesJSR for cookie consent management, and Vimeo for video content. The site demonstrates good mobile optimization, accessibility, and SEO practices, though some security headers are missing which could be improved. From a security perspective, the site enforces HTTPS and employs cookie consent mechanisms aligned with GDPR requirements. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not present, representing areas for enhancement. No critical vulnerabilities or exposed sensitive data were detected. Overall, the website is professional, trustworthy, and safe for general audiences. The lack of WHOIS data due to privacy protection is justified given the non-profit nature of the organization. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and providing direct security contact information to strengthen trust and compliance.

40
68
17
40
27
70
40
ethicaltradehumanrightscorporatetransparencynon-profitsupplychain+2 more
Drupal 10Google AnalyticsCookiesJSRVimeo Player+1

Partner Domains:

community.ethicaltrade.org
partner
etibd.org
partner

+3 more partners

2025-10-11T20:02:02.456Z
eutraveltech.eu favicon

EU Travel Tech

eutraveltech.eu

0
TransportationBelgiummediumHIGH

EU Travel Tech is a European travel technology organization that serves as a collaborative platform for travel tech companies and stakeholders. The organization focuses on industry advocacy, policy engagement, research, and hosting events to advance travel technology in Europe. The website reflects a medium-sized organization based in Belgium, established around 2019, with a clear focus on the transportation and technology sectors. The site features membership logos of prominent travel companies, indicating a strong market position within the travel tech industry. Technically, the website is built on WordPress with modern plugins such as All in One SEO and uses Google Analytics for tracking. The site is mobile-optimized with good SEO practices and moderate performance. Security-wise, HTTPS is enforced, and cookie consent mechanisms are in place, but there is a lack of advanced security headers and no visible incident response or vulnerability disclosure policies. Overall, the security posture is solid but could be improved by adding security headers and formalizing incident response contacts. The website is professional, trustworthy, and compliant with GDPR basics, making it a credible source for its target audience. No adult or questionable content is present, and the site is fully accessible without WAF or blocking mechanisms.

15
25
2
70
-
75
20
traveltechnologyeumembershippolicy+2 more
WordPress 6.8.3All in One SEO pluginGoogle Analytics (gtag.js)Barba.js (page transitions)+1

Partner Domains:

atelierdesign.be
partner
2025-10-11T20:01:47.374Z
reisezukunft.de favicon

ReiseZukunft

reisezukunft.de

0
OtherGermanysmallMEDIUM

ReiseZukunft is a specialized project focused on innovating and supporting the stationary travel agency sector in Germany. The website serves as a platform to provide new impulses, business models, service innovations, and technology insights tailored for travel agencies. It offers resources such as webinars, research results, a technology lab, and digitalization tests to empower travel professionals. The company positions itself as an innovator and knowledge hub within the travel distribution industry. Technically, the website is built on WordPress using the Astra theme and Elementor page builder, enhanced with Yoast SEO for search optimization. It employs Matomo analytics, reflecting a privacy-conscious approach to user tracking. The site is mobile-optimized and structured with modern web standards, including JSON-LD structured data for enhanced SEO and content clarity. From a security perspective, the site uses HTTPS with good SSL configuration and implements cookie consent mechanisms compliant with GDPR. However, explicit security headers and incident response policies are not evident. No critical vulnerabilities or exposed sensitive data were detected. The domain registration data is consistent and transparent, supporting the legitimacy of the business. Overall, ReiseZukunft presents a professional, trustworthy, and well-structured online presence that effectively supports its niche audience. Strategic improvements in security headers and explicit incident response information could further enhance its security posture and user trust.

15
43
2
70
100
60
100
travelinnovationtechnologyseogdpr+3 more
WordPress 6.8.1Yoast SEO plugin v26.0Elementor 3.32.4Matomo Analytics+2
2025-10-11T20:01:37.350Z
D

Deutscher Reisesicherungsfonds GmbH

drsf.reise

0
GovernmentGermanymediumMEDIUM

The Deutscher Reisesicherungsfonds GmbH (DRSF) operates as a German insolvency protection fund for package travel customers and travel providers. It ensures that travelers receive refunds and safe return travel in case of travel provider insolvency, fulfilling a legal mandate. The website is professionally designed using WordPress and Elementor, providing clear information, registration portals, and updates related to insolvency cases. The company targets travelers and travel providers in Germany, positioning itself as a trusted non-profit entity in the travel security sector. Technically, the website uses a modern CMS stack with WordPress 6.8.3, Elementor, and various plugins including Friendly Captcha for form security. The site is mobile optimized and accessible, with good SEO practices. However, some security headers are not detected, and no explicit security or incident response policies are published on the site. Security posture is solid with HTTPS enforced and CAPTCHA protection on forms, but could be improved by adding security headers and publishing vulnerability disclosure information. Privacy compliance is good, with a comprehensive privacy policy and GDPR adherence, though no cookie consent mechanism was found. Overall, the website is trustworthy and professional, with no signs of malicious or adult content. WHOIS data is unavailable due to TLD restrictions but does not detract from the site's legitimacy. Strategic recommendations include enhancing security headers, publishing security policies, and implementing cookie consent mechanisms to further improve compliance and trust.

20
58
2
68
95
85
100
travelinsolvencyreimbursementsecuritygermany+3 more
WordPress 6.8.3ElementorjQueryFontAwesome+2
2025-10-11T20:01:12.283Z
iris-rail.org favicon

International Railway Industry Standard (IRIS)

iris-rail.org

0
TransportationN/amediumMEDIUM

The IRIS Portal website represents the International Railway Industry Standard, a globally recognized certification system for rail sector companies. The organization provides certification, audit, and training services aligned with ISO/TS 22163 standards. The website targets rail industry companies and certification bodies, offering resources such as certificate searches, news updates, and membership applications. The business is well-established, with a domain age dating back to 2005, indicating a mature presence in the railway certification market. Technically, the website employs a custom CMS with a technology stack including HTML5, CSS3, JavaScript, jQuery, and Google Maps API. The site is hosted via Hostbasket and uses HTTPS with a good SSL configuration. Performance and mobile optimization are moderate, with room for improvement in accessibility and modern framework adoption. The site includes interactive elements such as charts and maps, enhancing user engagement. From a security perspective, the website demonstrates basic best practices including HTTPS enforcement and CAPTCHA on login forms. However, DNSSEC is not enabled, and no explicit security headers were detected, representing areas for enhancement. No incident response or security policy pages are present, which could improve transparency and trust. No vulnerabilities or exposed sensitive data were found in the content. Overall, the website is professional, trustworthy, and focused on its niche market. It scores well on content quality and business credibility but could improve technical implementation and security posture. Strategic recommendations include enabling DNSSEC, adding security headers, updating libraries regularly, and publishing security and incident response policies to strengthen compliance and user trust.

60
68
2
55
77
65
100
certificationrailisots22163auditrailwayindustry+1 more
HTML5CSS3JavaScriptjQuery 3.6.0+3
2025-10-11T20:00:34.874Z
development.asia favicon

Asian Development Bank

development.asia

0
GovernmentUnited StateslargeMEDIUM

Development Asia is a knowledge collaboration platform operated by the Asian Development Bank, focusing on sharing development expertise, best practices, and technology relevant to Sustainable Development Goals in Asia. The platform targets professionals, government officials, civil society organizations, researchers, and students interested in economic and social development. It offers a wide range of content including case studies, policy briefs, technical notes, and interactive communities, positioning itself as a key regional knowledge resource. Technically, the website is built on Drupal 10 CMS with modern frameworks like Bootstrap 5 and Font Awesome 6, hosted on Microsoft Azure DNS infrastructure. It integrates analytics and marketing tools such as Google Analytics and Mailchimp for user engagement and tracking. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate. From a security perspective, the site uses HTTPS with domain status protections but lacks DNSSEC and explicit security headers. No public security or incident response policies are found, and no vulnerability disclosure mechanisms are published. Privacy compliance is partial, with a privacy policy and terms of use present but no cookie consent mechanism detected. Overall, the site is professional, trustworthy, and well-positioned in its niche, with recommendations to enhance DNS security, implement security headers, and improve privacy compliance to strengthen its security posture and user trust.

50
35
25
85
67
85
100
knowledgesharingsustainabledevelopmentasiandevelopmentbankpolicybriefscasestudies+2 more
Drupal 10Bootstrap 5.1.3Font Awesome 6Google Analytics+1

Partner Domains:

events.development.asia
partner
rksi.adb.org
partner

+3 more partners

2025-10-11T20:00:19.847Z
uicore.co favicon

UiCore PRO

uicore.co

0
TechnologyN/amediumMEDIUM

UiCore PRO is a professional WordPress theme provider offering a comprehensive subscription-based service that includes unlimited website creation, a powerful theme and page builder, and a vast design cloud library. The company targets marketers and agencies seeking modern, customizable WordPress themes with WooCommerce support and white-label capabilities. The website is well-positioned in the market with over 20,000 users and endorsements from reputable web design blogs, indicating strong market presence and trust. The technical infrastructure is built on WordPress with Elementor as the page builder, enhanced by modern JavaScript libraries and marketing tools such as Google Tag Manager, Facebook Pixel, Hotjar, and Sendinblue. The site demonstrates excellent performance, mobile optimization, and SEO practices, reflecting a mature digital presence. Hosting details are not explicit, but the site uses HTTPS with a good SSL configuration. Security posture is solid with HTTPS enforced and no visible sensitive data exposure. However, explicit security headers are not detected, and no cookie consent mechanism is present, indicating areas for improvement in compliance and security hardening. The absence of WHOIS registrant data is due to TLD limitations but is mitigated by the professional nature of the site and privacy protection justification. Overall, UiCore PRO presents a low-risk profile with strong business credibility and technical maturity. Strategic recommendations include implementing explicit security headers, adding cookie consent for privacy compliance, and publishing a security policy with incident response contacts to enhance trust and compliance.

45
65
17
85
75
75
100
wordpressthemepagebuilderwoocommercedesigncloud+3 more
WordPressElementorjQueryGoogle Tag Manager+3

Partner Domains:

uicore.co
partner
my.uicore.co
service

+1 more partners

2025-10-11T20:00:04.822Z
klimaschutz.de favicon

Nationale Klimaschutzinitiative des Bundesministeriums für Wirtschaft und Klimaschutz

klimaschutz.de

0
EnergyGermanylargeMEDIUM

The website www.klimaschutz.de represents the Nationale Klimaschutzinitiative, an official climate protection initiative under the German Federal Ministry for Economic Affairs and Climate Action. It serves as a platform to promote climate protection projects, provide information, and foster a community for citizens, companies, and municipalities engaged in climate action. The site is well-branded, professional, and targets a broad German audience interested in sustainability and energy efficiency. Technically, the site is built on Drupal 10, leveraging modern web technologies including Matomo for analytics and Cookiebot for GDPR-compliant cookie management. The site is mobile-optimized, accessible, and performs moderately well. Security best practices such as HTTPS and consent management are implemented, though some security headers could be improved. From a security perspective, the site shows a good posture with no visible vulnerabilities or exposed sensitive data. However, the absence of explicit security or incident response policies and minimal WHOIS registrant information slightly reduce trust. The domain uses managed IP name servers, which is common but lacks registrant transparency. Overall, the website is a trustworthy, professional government initiative with strong privacy compliance and a solid technical foundation. Strategic improvements in security headers, incident response transparency, and WHOIS data disclosure would further enhance its security and credibility.

55
83
17
70
77
60
100
climategovernmentenergyenvironmentsustainability+4 more
Drupal 10Matomo AnalyticsCookiebot Consent ManagementFont Awesome+1
2025-10-11T19:59:19.065Z