Skip to main content

Finance security reports

Browse 5,562 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156127
Websites
130
Industries
113
Countries
52
Avg Score
Page 20 of 112|Showing 951-1000 of 5562
finanzasostenibile.it favicon

Forum per la Finanza Sostenibile - ItaSIF

finanzasostenibile.it

53
FinanceItalysmallMEDIUM

Forum per la Finanza Sostenibile (ItaSIF) is a well-established non-profit association founded in 2001, dedicated to promoting knowledge and practice of sustainable and responsible investment in Italy. The website reflects a professional presence with a focus on advocacy and education in sustainable finance, targeting Italian investors and stakeholders interested in ESG and responsible investment. The organization holds a credible market position as a recognized entity in the sustainable finance sector in Italy. Technically, the website is built on WordPress using modern plugins such as Elementor and Yoast SEO, with good mobile optimization and SEO practices. Cookie consent is implemented via Cookiebot with blocking mode, indicating GDPR compliance awareness. The site uses HTTPS with DNSSEC enabled, contributing to a solid security foundation. However, explicit privacy policies, terms of service, and security policies are not found, which could be improved. Security posture is generally good with HTTPS enforced and no visible vulnerabilities or exposed sensitive data. The absence of explicit security headers and vulnerability disclosure mechanisms suggests room for enhancement. No signs of WAF or blocking mechanisms were detected, allowing full content accessibility. Overall, the website demonstrates a mature digital presence with good business credibility and technical implementation. Strategic recommendations include publishing comprehensive privacy and security policies, adding security headers, and implementing a vulnerability disclosure process to strengthen trust and compliance.

15
95
17
75
62
65
20
financesustainablefinancenon-profititalyinvestment+1 more
WordPressElementorYoast SEOjQuery+4
2025-10-22T09:47:58.623Z
ellisphere.com favicon

Ellisphere

ellisphere.com

67
FinanceFrancelargeMEDIUM

Ellisphere is a leading French company specializing in business information services, focusing on data marketing, risk management, and compliance solutions. The company targets business professionals and enterprises seeking to optimize their data-driven marketing strategies and manage financial and regulatory risks effectively. Their market position is strong within the French finance sector, supported by a professional and content-rich website that reflects their expertise and leadership. Technically, the website is built on WordPress with a modern technology stack including jQuery, Google Tag Manager, Matomo, Hotjar, and Cookiebot for analytics and privacy compliance. The site is well-optimized for SEO and mobile devices, with good performance and accessibility standards, although some accessibility features could be enhanced. From a security perspective, the website enforces HTTPS and implements cookie consent mechanisms, but lacks explicit published security policies or incident response information. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of WHOIS data for the domain raises concerns about domain registration transparency, which slightly impacts overall trust. Overall, Ellisphere presents a professional and trustworthy online presence with strong business credibility and technical maturity. The main risk lies in the opaque domain registration details, which should be addressed to improve trust and compliance posture.

40
88
2
85
67
80
100
financedatamarketingriskmanagementcompliancebusinessinformation+2 more
WordPressjQueryGoogle Tag ManagerMatomo Analytics+3
2025-10-22T07:30:01.010Z
easypay.bg favicon

Изипей АД

easypay.bg

58
FinanceBulgarialargeMEDIUM

EasyPay AD is a well-established Bulgarian payment services company founded in 2006, providing a broad range of financial services including utility bill payments, money transfers, and payment cards. The company operates both physical payment offices and digital platforms, targeting the general public and businesses within Bulgaria. Their market position is strong, supported by partnerships and certifications such as TUV and PCI DSS, which enhance their credibility and trustworthiness. Technically, the website employs standard web technologies including Bootstrap and jQuery, offering a responsive and user-friendly interface. While the site performs moderately well with good mobile optimization, there is room for improvement in accessibility and SEO. The absence of visible security headers and privacy policies indicates areas where the digital maturity could be enhanced. From a security perspective, the site uses HTTPS (assumed) and does not expose sensitive data visibly. However, the lack of explicit privacy and cookie policies, security headers, and incident response contacts suggests gaps in compliance and security best practices. No WAF or blocking mechanisms were detected, and the domain registration data aligns well with the business claims, indicating legitimacy. Overall, the website is professional and trustworthy but would benefit from improved privacy compliance and enhanced security measures to align with modern standards and regulatory requirements.

85
10
17
60
62
50
100
paymentfinancemoneytransferutilitybillseasypay+1 more
HTML5CSS3BootstrapjQuery

Partner Domains:

epay.bg
partner
epaygo.bg
partner
2025-10-22T05:51:54.542Z
wenetclub.pl favicon

WeNet

wenetclub.pl

64
FinancePolandmediumMEDIUM

Wenet Club is a Polish business-focused platform offering a variety of financial and business management services targeted primarily at small and medium enterprises. The company provides solutions such as management systems, quick loans, payment terminals, loyalty programs, and leasing options, positioning itself as a comprehensive business benefits provider. The website demonstrates a professional and consistent brand presence with multiple certifications and partner badges, indicating a reputable market position. Technically, the website employs modern web technologies including Bootstrap, Font Awesome, HubSpot integrations, and Hotjar for analytics and user behavior tracking. The site is mobile-optimized and features a cookie consent mechanism aligned with GDPR requirements. Performance is moderate with good SEO and accessibility basics in place. From a security perspective, the site uses HTTPS with secure form handling including CSRF tokens. However, explicit security headers are not detected, and no dedicated security or incident response policies are published. The absence of WHOIS data limits domain trust assessment, but the overall site content and certifications support legitimacy. Overall, the website presents a low-risk profile with good business credibility and privacy compliance. Strategic improvements in security headers and transparency around incident response would enhance trust and security posture further.

85
40
2
75
52
80
100
businessfinanceloanspaymentsb2b+4 more
Bootstrap 5.3.3Font Awesome 5.15.4Google Fonts (Poppins)HubSpot scripts+3

Partner Domains:

wenet.pl
partner
2025-10-22T04:42:47.446Z
oenb.at favicon

Oesterreichische Nationalbank (OeNB)

oenb.at

65
FinanceAustrialargeMEDIUM

The Oesterreichische Nationalbank (OeNB) serves as Austria's central bank, playing a critical role in monetary policy, financial market stability, banking supervision, and statistical data provision. It operates as part of the Eurosystem, reflecting its integral position in European financial governance. The website targets a broad audience including the general public, financial institutions, researchers, and policymakers, offering extensive information on its functions, services, and educational resources. The OeNB's market position is that of a large, essential government financial institution with a long history dating back to 1925. Technically, the website employs a modern technology stack including jQuery, Highcharts for data visualization, and Matomo for privacy-conscious analytics. It uses a consent management platform to comply with cookie regulations and demonstrates good mobile optimization and accessibility features. The site is well-structured with clear navigation and professional design, supporting a positive user experience. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes standard security headers. It uses a consent mechanism to control tracking scripts, enhancing privacy compliance. However, explicit privacy policies, terms of service, and incident response contacts are not found in the provided content, representing areas for improvement. No vulnerabilities or suspicious elements were detected, and the WHOIS data confirms the domain's legitimacy and consistency with the institution's identity. Overall, the OeNB website is a trustworthy, professional, and secure platform reflecting the stature of a national central bank. Strategic recommendations include publishing comprehensive privacy and security policies, providing clear incident response contacts, and establishing a vulnerability disclosure program to further enhance transparency and trust.

70
33
2
73
72
85
100
centralbankfinancegovernmentmonetarypolicystatistics+2 more
jQueryjQuery UIHighchartsMatomo Analytics+1
2025-10-22T02:20:22.389Z
sparkassen-kundenportal.de favicon

Sparkasse

sparkassen-kundenportal.de

63
FinanceGermanyenterpriseMEDIUM

The website www.sparkassen-kundenportal.de serves as a customer portal for the Sparkasse banking group in Germany, providing users access to regional banking services, offers, and advantages. The portal is designed primarily for Sparkasse customers and supports login functionality to access personalized services. The site is built using modern web technologies including Angular 18 and ASP.NET WebForms, with a CMS identified as onpublix 7. The design is professional, mobile-optimized, and accessible, supporting a good user experience for its target audience. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms compliant with GDPR. However, explicit security headers such as CSP or HSTS are not evident in the provided data, and no published security policy or incident response contacts are found. The site uses Google Tag Manager and TradeDoubler for analytics and affiliate marketing, with moderate user tracking levels. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the domain and website appear legitimate and consistent with a regional banking service portal. The WHOIS data shows the domain uses third-party DNS providers but no privacy protection or suspicious patterns. The site maintains good privacy compliance and business credibility but could improve security posture by publishing security policies and implementing additional HTTP security headers. Strategic recommendations include enhancing security headers, publishing incident response and vulnerability disclosure information, and continuing to maintain GDPR compliance and user trust through transparent privacy practices.

85
43
2
60
72
65
100
sparkassebankingcustomerportalfinancegermany+4 more
Angular 18.2.13ASP.NET WebFormsPrimeNG UI componentsJavaScript+1
2025-10-22T01:08:54.320Z
cfp.net favicon

Certified Financial Planner Board of Standards, Inc.

cfp.net

61
FinanceUnited StatesmediumMEDIUM

The Certified Financial Planner Board of Standards, Inc. operates the website www.cfp.net as the authoritative source for CFP® certification information and resources. The organization is a leading certification body in the finance sector, providing rigorous education, ethical standards, and professional development for financial planners. The website targets prospective candidates, current CFP® professionals, and the general public seeking trustworthy financial planning advice. The business model centers on certification, education, and public awareness, positioning CFP Board as a trusted industry standard bearer. Technically, the website is built on the Sitecore CMS platform, leveraging modern JavaScript libraries such as jQuery and integrating Cloudflare Turnstile CAPTCHA for bot mitigation. The site demonstrates good mobile optimization, accessibility, and SEO practices, with a moderate performance profile. Analytics and marketing tools include Google Tag Manager and Simpli.fi tracking pixels, indicating a moderate level of user tracking balanced with privacy compliance. From a security perspective, the site enforces HTTPS and uses CAPTCHA to protect forms, but lacks visible security headers and published security policies or incident response information. No vulnerabilities or exposed sensitive data were detected in the HTML content. The absence of WHOIS data is a notable anomaly, reducing trust slightly, but the overall professional presentation and consistent branding strongly support legitimacy. Overall, www.cfp.net is a high-quality, professional website serving an essential role in the financial planning certification ecosystem. Strategic improvements in security header implementation and transparency around security policies would enhance trust and compliance further.

20
53
2
70
100
60
100
financecertificationfinancialplanningeducationprofessionalstandards
jQuery 3.2.1Cloudflare Turnstile CAPTCHASitecore CMSGoogle Tag Manager+1

Partner Domains:

www.letsmakeaplan.org
partner
cfpprostore.com
partner
2025-10-22T00:20:04.533Z
letsmakeaplan.org favicon

CFP Board

letsmakeaplan.org

69
FinanceUnited StateslargeMEDIUM

Let's Make a Plan (letsmakeaplan.org) is a professionally designed and content-rich website operated by CFP Board, a leading non-profit organization in the financial planning sector. The site serves as a consumer education platform and a directory to find CERTIFIED FINANCIAL PLANNER® professionals across the United States. It offers comprehensive educational resources, a robust search tool for locating CFP® professionals by location or name, and emphasizes fiduciary duty and ethical financial planning. The website is well-branded, consistent, and trusted within its niche, supported by references to CFP Board's official site and social media presence. Technically, the site leverages modern web technologies including Sitecore CMS, Google Tag Manager, Google Maps API, jQuery, and Cloudflare Turnstile CAPTCHA for form security. It demonstrates good mobile optimization, accessibility, and SEO practices. Privacy compliance is evident through a clear privacy policy, cookie consent mechanisms, and GDPR awareness. However, the site lacks explicit security policies and incident response information. From a security perspective, the site uses HTTPS and CAPTCHA protections effectively, with no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data due to a malformed response limits domain registration trust analysis, but the strong brand presence and external references mitigate concerns. Overall, the site presents a secure, professional, and trustworthy platform for financial planning consumers. Strategically, the site should improve transparency by publishing security policies and incident response contacts, and address WHOIS data visibility to enhance domain trustworthiness. These steps will strengthen user confidence and compliance posture.

55
53
25
70
100
70
100
financefinancialplanningcfpcertifiedfinancialplannerconsumereducation+1 more
Google Tag ManagerGoogle Maps APIjQueryCloudflare Turnstile CAPTCHA

Partner Domains:

www.cfp.net
partner
2025-10-21T23:15:46.355Z
psa.at favicon

PSA Payment Services Austria GmbH

psa.at

64
FinanceAustriamediumMEDIUM

PSA Payment Services Austria GmbH is a specialized financial services company operating primarily in Austria, focusing on debit card issuing support and ATM acquiring services. Established in 2012 as a successor to PayLife Bank GmbH's relevant operations, PSA positions itself as a key player in the Austrian payment ecosystem, facilitating smart transactions between people and devices. The website reflects a professional and consistent brand image, targeting financial institutions, businesses, and consumers within Austria. The multilingual support indicates a readiness to serve diverse audiences. Technically, the website is built on TYPO3 CMS with modern frontend frameworks like Bootstrap and jQuery, and integrates Matomo analytics for privacy-conscious user tracking. The site is mobile-optimized and accessible, with good SEO practices. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though explicit security headers and incident response information are absent. The lack of WHOIS data limits domain trust verification, but the website content and business information appear legitimate and professional. Overall, PSA demonstrates a mature digital presence aligned with its business objectives.

65
43
2
70
72
85
100
paymentservicesfinancebankingatmcards+3 more
TYPO3 CMSBootstrap 4.3.0jQuery 3.3.1Slick Carousel 1.8.1+2

Partner Domains:

careers.psa.at
partner
world-direct.at
partner
2025-10-21T22:50:10.222Z
cardcomplete.com favicon

card complete Service Bank AG

cardcomplete.com

73
FinanceAustrialargeMEDIUM

card complete Service Bank AG is a leading Austrian financial services provider specializing in credit cards, prepaid cards, and comprehensive payment solutions for private and corporate customers. The company positions itself as a fully integrated card service provider, managing everything from product development to acceptance devices and transaction processing. The website reflects a mature digital presence with professional design, clear navigation, and comprehensive service information targeted primarily at Austrian customers. Technically, the site employs modern web technologies including Google Tag Manager, Cookiebot for consent management, and ReadSpeaker for accessibility enhancements. The site is mobile-optimized and demonstrates good SEO and accessibility practices. Security-wise, the site enforces HTTPS, uses CSRF protection cookies, and provides a detailed cookie consent mechanism aligned with GDPR requirements. However, no explicit security policy or incident response contact is publicly available. The absence of WHOIS registration data is a notable anomaly that slightly reduces trustworthiness, though the website content and branding strongly indicate a legitimate business. Overall, the site scores well on content quality, technical implementation, and privacy compliance, with room for improvement in business credibility and transparency of security policies.

85
83
2
85
77
75
100
financecreditcardspaymentsolutionsaustriacookieconsent+2 more
Google Tag ManagerCookiebotReadSpeakerFontFont Webfonts+2

Partner Domains:

www.phishen-impossible.at
partner
2025-10-21T22:49:55.037Z