Is kinggle.com Safe? Security Analysis for 宁波金戈智能装备有限公司
Check if kinggle.com is a scam or legitimate. Free security scan and reviews.

AI Summary
宁波金戈智能装备有限公司是一家专注于吹塑机制造及自动化生产方案的中型制造企业,拥有丰富的行业经验和技术积累。公司产品涵盖多种塑料中空制品的吹塑机,服务于包装、汽车、医疗等多个行业。网站内容丰富,设计专业,支持移动端访问,体现了较高的数字化成熟度。技术栈包括传统的jQuery和Swiper等前端库,配合百度统计和OneAll社交插件进行用户行为分析。安全方面,网站启用了HTTPS并具备基础的表单验证机制,但缺少安全头和隐私合规政策,存在一定的合规风险。WHOIS信息缺失降低了域名的信任度,建议加强域名注册信息的透明度。整体风险适中,建议完善隐私政策和安全配置以提升合规性和安全性。
Detected Technologies
🧠AI Business Intelligence
Technology stack, business insights, and market analysis powered by AI.
Business Intelligence
Market & Strategic Analysis
该公司在塑料吹塑机制造行业中占据一定市场地位,提供定制化和自动化解决方案,目标客户为工业制造企业。通过展示丰富的行业应用案例和合作客户,体现了良好的市场认可度。业务模式以设备制造和技术服务为主,辅以人才培训和生产优化建议,形成较为完整的产业链服务。网站链接多个行业相关合作伙伴,显示出一定的生态合作网络。缺乏公开的财务和注册信息,限制了对其规模和增长潜力的深入评估。
Extracted Contact Information
Marketing Intelligence Data
Email Addresses (1)
Phone Numbers (2)
Security Posture Analysis
Comprehensive Security Assessment
网站采用HTTPS保障数据传输安全,表单中集成验证码防止自动提交,体现基础安全意识。缺少关键安全头如Content-Security-Policy和X-Frame-Options,存在潜在的点击劫持和内容注入风险。未发现敏感信息泄露或已知漏洞利用迹象。缺乏安全政策和事件响应联系方式,可能影响安全事件的及时处理和合规性。建议加强安全头配置,完善安全政策披露,并定期更新依赖库以降低安全风险。
Strategic Recommendations
Priority Actions for Security Improvement
尽快发布并显著展示隐私政策和Cookie政策,确保GDPR等法规合规
✨Observations
AI-powered comprehensive website and business analysis.
AI-Enhanced Website Analysis
Business Insights
宁波金戈智能装备有限公司
宁波金戈智能装备有限公司是一家提供全自动吹塑生产整合方案的现代化公司,拥有二十多年塑机行业经验,产品涵盖0.05-10000L塑料中空瓶桶、汽车件、箱包、托盘、面板等。公司提供吹塑工厂整体生产规划及自动化供料、破碎、供气、供水一站式服务,并支持后续切割、修边及人才培训等服务。
good
consistent
Technical Stack
moderate
good
basic
good
Security Assessment
- HTTPS enforced
- Form validation with captcha
- No exposed sensitive data in HTML
Analytics & Tracking
Advertising & Marketing
Website Quality Assessment
Key Observations
Website is fully accessible with rich content in Chinese language
🛡️Security Headers
HTTP security headers analysis and recommendations.
Security Headers
HTTP security headers analysis
Weak Referrer-Policy configuration
LOWCurrent value: "unsafe-url"
Missing Permissions-Policy header
MEDIUMControls browser features and APIs
Sensitive data may be cached
LOWCache-Control header should include "no-store" for sensitive pages
👤GDPR Compliance
Privacy and data protection assessment under GDPR regulations.
GDPR Compliance
Privacy and data protection assessment
No Privacy Policy found
HIGHGDPR requires a clear and accessible privacy policy
No Cookie Policy found
HIGHGDPR requires clear information about cookie usage
No Cookie Consent Banner found
HIGHGDPR requires explicit consent for non-essential cookies
GDPR Compliance Analysis
🛡️NIS2 Compliance
Network & Information Security Directive compliance assessment.
NIS2 Compliance
Network & Information Security Directive
No information security framework found
HIGHNIS2 requires documented cybersecurity and information security measures
No vulnerability disclosure policy
MEDIUMNIS2 encourages coordinated vulnerability disclosure
No security policy documentation found
HIGHNIS2 requires documented cybersecurity governance and risk management
No incident response procedures found
HIGHNIS2 requires documented incident response and business continuity plans
No business continuity planning found
MEDIUMNIS2 emphasizes operational resilience and business continuity
No security contact information
HIGHNIS2 requires clear incident reporting channels
No vulnerability reporting mechanism
MEDIUMClear vulnerability reporting supports coordinated disclosure
No NIS2 reference found
LOWConsider explicitly mentioning NIS2 compliance efforts
Critical sector without clear security compliance
HIGHDetected sectors: energy, transport, digital
📧Email Security
SPF, DKIM, and DMARC validation and email security assessment.
Email Security
SPF, DKIM, and DMARC validation
No DKIM record found
MEDIUMDKIM adds cryptographic signatures to emails
No BIMI Record
LOWBIMI displays brand logos in email clients
No MTA-STS Policy
MEDIUMMTA-STS enforces TLS for email delivery
No TLS-RPT Record
LOWTLS-RPT provides reporting for email TLS issues
SPF Details
🏆SSL/TLS Security
Certificate validity and encryption analysis.
SSL/TLS Security
Certificate validity and encryption analysis
Unable to retrieve SSL certificate
CRITICALCould not establish secure connection to retrieve certificate information
Mixed Content Detected
MEDIUM15 resources loaded over insecure HTTP
OCSP Status
📊DNS Health
DNS configuration and security assessment.
DNS Health
DNS configuration and security assessment
DNSSEC Not Enabled
MEDIUMDNSSEC is not configured for this domain
CAA Records Not Configured
LOWCertificate Authority Authorization (CAA) records not found
No DMARC Record
MEDIUMDMARC policy not configured
DNS Records
DNSSEC Status
⚡Network Security
Port scanning and network exposure analysis.
Network Security
Port scanning and network exposure analysis
Good Network Security Posture
LOWNo unnecessary services detected on common risky ports
🔧Technical Analysis
Detailed technical findings and analysis from AI assessment.
Technical Analysis
Comprehensive security assessment findings