Skip to main content

Finance security reports

Browse 5,562 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156127
Websites
130
Industries
113
Countries
52
Avg Score
Page 31 of 112|Showing 1501-1550 of 5562
validatis.de favicon

Validatis

validatis.de

73
FinanceGermanysmallMEDIUM

Validatis is a German-based company specializing in providing data-driven knowledge and compliance solutions primarily for financial institutions and related sectors such as auditing, real estate, legal, and tax consulting. Their services focus on KYC compliance, PEP and sanctions list checks, and industry-specific compliance tools, supported by educational content like whitepapers and webinars. The website positions Validatis as a niche player in the compliance and risk management market with a clear B2B focus. Technically, the website is built on TYPO3 CMS and integrates modern tools such as Cookiebot for cookie consent management, Google Tag Manager, and Google Optimize for analytics and optimization. The site demonstrates good digital maturity with responsive design and structured navigation, although some accessibility features could be improved. Performance is moderate, with a well-implemented cookie consent mechanism ensuring GDPR compliance. From a security perspective, the site uses HTTPS and cookie consent with blocking mode, but lacks visible security headers such as Content-Security-Policy or X-Frame-Options. No critical vulnerabilities or exposed sensitive data were detected. The absence of a published security policy or incident response contacts suggests room for improvement in transparency and readiness. The domain registration data aligns well with the website's business claims, indicating legitimacy. Overall, Validatis presents a professional and trustworthy online presence with good privacy compliance and business credibility. Strategic recommendations include enhancing security headers, publishing terms of service and security policies, and improving accessibility to further strengthen their security posture and user trust.

80
83
2
85
95
60
100
compliancekycdatafinancecookieconsent+2 more
TYPO3 CMSCookiebotGoogle Tag ManagerGoogle Optimize+1
2025-10-12T10:51:42.898Z
brokerbuddha.com favicon

Broker Buddha

brokerbuddha.com

65
FinanceN/amediumMEDIUM

Broker Buddha is a technology company specializing in digital client experience solutions for insurance brokers and agents. Their platform streamlines insurance application and renewal processes through interactive, customer-friendly online forms and workflows. Positioned as a leader in the insurance technology sector, Broker Buddha targets commercial insurance brokers with scalable solutions for large, mid-market, and small businesses. The company was recently acquired by Acturis, indicating strategic growth and market consolidation. Technically, the website is built on Webflow with modern integrations including Google Fonts, Microsoft Clarity, LinkedIn Insight, and Facebook Pixel, reflecting a mature digital infrastructure. Security posture is solid with HTTPS and privacy policies in place, though explicit security headers and incident response contacts could be improved. The absence of WHOIS data is a notable anomaly but does not detract significantly from the overall legitimacy given the professional web presence. Strategic recommendations include enhancing security headers, publishing vulnerability disclosure policies, and improving transparency around incident response. Overall, Broker Buddha presents a trustworthy, professional digital front with room for incremental security and compliance enhancements.

30
83
2
63
75
85
100
insurancedigitalclientexperiencebrokerinsurancetechnologysaas+1 more
Webflow CMSGoogle Fonts (Karla)Google reCAPTCHAMicrosoft Clarity+4

Partner Domains:

trust.brokerbuddha.com
partner
acturis.com
parent
2025-10-12T06:17:28.833Z
solusiasain.com favicon

asian4d

solusiasain.com

56
FinanceIndonesiamediumMEDIUM

Asian4D operates as a crypto investment and online gambling platform primarily targeting Indonesian users. The platform offers a variety of gambling services including Togel, Slots, Live Casino, Sports betting, and interactive games, alongside crypto investment opportunities. The website is designed with a moderate level of professionalism, supporting both desktop and mobile users with responsive design and clear navigation. The business is relatively new, with domain registration in 2025, consistent with the site's founding year. Social media and chat integrations enhance user engagement, although direct company contact details are limited to forms and social channels. Technically, the site employs modern web technologies such as Bootstrap and jQuery, integrates multiple tracking and marketing tools including Google Analytics, Facebook Pixel, and PushEngage, and uses Cloudflare DNS services. Performance is moderate with good mobile optimization. However, the absence of DNSSEC and some security headers, along with multiple Facebook Pixel IDs, indicate areas for security and privacy improvement. From a security perspective, the site uses HTTPS and implements CAPTCHA on login and registration forms, which are positive controls. However, there is no published security policy or incident response contact, and cookie consent mechanisms are lacking despite cookie policy presence. These gaps reduce privacy compliance and security posture scores. The domain registration is transparent and consistent with the business claims, enhancing legitimacy. Overall, Asian4D presents a moderately trustworthy platform with good technical implementation but requires enhancements in security policies, privacy compliance, and transparency to improve user trust and regulatory adherence.

20
50
2
60
75
75
100
cryptoinvestmentgamblingtogelslot+3 more
Bootstrap 5.3.0-alpha3jQuery 3.6.4Cloudflare DNSFacebook Pixel+2

Partner Domains:

asian4dhope.com
partner
asian4dnanas.com
partner
2025-10-12T06:15:32.624Z
asian4dmasker.com favicon

asian4d

asian4dmasker.com

54
FinanceIndonesiasmallMEDIUM

Asian4D operates as an online gambling and cryptocurrency investment platform primarily targeting Indonesian users. The website offers a variety of services including lottery (togel), slot games, live casino, sports betting, arcade, and interactive games. The platform positions itself as a trusted and secure investment and gambling site, emphasizing layered security and transparency in transactions. However, the domain WHOIS data raises concerns due to a future creation date and lack of registrant details, which impacts overall trustworthiness. Technically, the website employs modern frontend technologies such as Bootstrap 5 and jQuery, integrates multiple Facebook Meta Pixels and Google Analytics for tracking, and uses Cloudflare DNS services. The site is mobile-optimized with responsive design and includes captcha verification on login and registration forms to mitigate automated abuse. Despite these strengths, the absence of DNSSEC, missing security headers, and lack of explicit cookie consent mechanisms highlight areas for security and privacy improvement. From a security posture perspective, the platform enforces HTTPS and uses clientTransferProhibited domain status, but lacks publicly available security policies or incident response contacts. The extensive user tracking via multiple pixels and absence of company contact emails or phone numbers reduce transparency. Overall, the site scores moderately on security and privacy compliance but is hindered by questionable domain registration data. Strategically, Asian4D should prioritize enhancing domain legitimacy, implementing robust security headers, enabling DNSSEC, and providing clear privacy and incident response information to build user trust. Improving cookie consent mechanisms and consolidating tracking pixels will also align the platform better with privacy regulations and user expectations.

20
50
2
60
75
70
100
gamblingcryptoinvestmenttogelslot+3 more
Bootstrap 5.3.0-alpha3jQuery 3.6.4Cloudflare DNSFacebook Meta Pixel+2

Partner Domains:

asian4dhope.com
partner
asian4dnanas.com
partner

+1 more partners

2025-10-12T05:11:34.807Z
tarjetayou.es favicon

Advanzia Bank

tarjetayou.es

60
FinanceSpainmediumMEDIUM

Tarjeta YOU is an online credit card service operated in partnership with Advanzia Bank, targeting residents in Spain. The website offers a no-annual-fee Mastercard Gold credit card with flexible payment options and travel insurance. The business model focuses on digital-first credit card issuance and management without requiring customers to change banks. The site is well-branded, professional, and provides comprehensive legal and privacy information, enhancing trustworthiness. Technically, the website uses AngularJS and Bootstrap frameworks, integrates Google Tag Manager for analytics, and employs Usercentrics for cookie consent management. Hosting includes Microsoft Azure Blob Storage for legal documents. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. Performance is moderate with room for improvement. Security posture is solid with HTTPS enforced and digital signature integration, but lacks some security headers and a public security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is good, with GDPR-aligned policies and consent mechanisms. Overall, the website presents a trustworthy and professional front for an online financial product, with minor technical and security enhancements recommended to further strengthen its posture.

50
10
17
75
67
80
100
financecreditcardonlinebankingconsumercreditspain+2 more
AngularJSBootstrapGoogle Tag ManagerUsercentrics (consent management)+2

Partner Domains:

advanzia.com
partner
mastercard.com
partner
2025-10-12T05:09:14.267Z
meaningful.business favicon

Meaningful Business Community

meaningful.business

50
FinanceN/amediumMEDIUM

Meaningful Business Community is a purpose-driven organization dedicated to supporting leaders who combine profit with social and environmental purpose. The website positions itself as a global community offering membership, events, mentorship, and networking opportunities to business leaders focused on impact and sustainability. The platform showcases stories and partners with reputable companies, reinforcing its market position as a credible and impactful business network. Technically, the website is built on WordPress using popular plugins such as WPBakery Page Builder and Slider Revolution, with integration of Google Tag Manager for analytics. The site is mobile-optimized and demonstrates good SEO practices, although some accessibility features could be improved. Performance is moderate, with room for optimization. From a security perspective, the site uses HTTPS and secure forms but lacks visible security headers and a published security or incident response policy. WHOIS data is unavailable or privacy-protected, which slightly reduces trust but is common for modern domains. No critical vulnerabilities or malicious content were detected. Overall, the website presents a professional and trustworthy front for a medium-sized business community focused on sustainability and impact. Strategic improvements in privacy compliance, security headers, and transparency would enhance its security posture and user trust.

55
35
2
85
62
60
20
businesscommunitysustainabilitypurpose-drivennetworking+1 more
WordPressWPBakery Page BuilderSlider RevolutionjQuery+1

Partner Domains:

accenture.com
partner
capgemini.com
partner

+3 more partners

2025-10-12T04:05:47.659Z
C

CSC

cscglobal.com

69
FinanceUnited StatesenterpriseMEDIUM

CSC is a global enterprise specializing in registered agent, compliance, tax, fund administration, capital markets, and digital brand and cyber-risk solutions. The company targets Fortune 500 corporations and large enterprises, providing comprehensive business services across more than 140 jurisdictions. Their market position is strong, supported by a consistent brand presence and trust indicators such as BBB accreditation and client testimonials. The website content is professional, well-structured, and designed to serve a sophisticated B2B audience. Technically, the website employs modern web technologies including Bootstrap, jQuery, Google Tag Manager, and Optimizely for analytics and optimization. The site is mobile-optimized, accessible, and SEO-friendly, delivering a good user experience with moderate performance. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though some security headers and explicit security policies are absent. The WHOIS data is notably missing or unavailable, which is unusual for a domain of this profile and introduces some uncertainty regarding domain registration transparency. However, the website content and external trust signals strongly support the legitimacy of the business. Privacy and cookie policies are present with consent mechanisms, indicating compliance with data protection regulations. Overall, CSC presents as a credible, enterprise-level business with a mature digital presence. The main risk lies in the lack of WHOIS transparency and absence of published security policies, which should be addressed to enhance trust and compliance.

40
68
17
80
77
90
100
registeredagentcompliancetaxfundsolutionscapitalmarkets+5 more
BootstrapjQueryGoogle Tag ManagerOptimizely

Partner Domains:

www.cscdbs.com
partner
blog.cscglobal.com
related

+3 more partners

2025-10-12T02:48:57.653Z
ergo-reiseversicherung.de favicon

ERGO Reiseversicherung

ergo-reiseversicherung.de

64
FinanceGermanylargeMEDIUM

ERGO Reiseversicherung is a prominent German travel insurance provider offering a range of travel protection products including trip cancellation, international health insurance, and annual travel insurance. The website positions itself as a reliable and comprehensive travel companion, targeting travelers primarily in Germany. The business model focuses on direct online sales and customer service, supported by a strong brand presence under the ERGO Group umbrella. Technically, the website leverages modern web technologies such as React and Adobe Experience Manager, with integrated privacy and consent management tools like OneTrust. The site demonstrates good mobile optimization and SEO practices, although some accessibility features could be enhanced. Performance is moderate, with a clean and professional design. From a security perspective, the site enforces HTTPS, employs security headers, and integrates cookie consent mechanisms, reflecting a mature security posture. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a public security policy or vulnerability disclosure page suggests room for improvement in transparency. Overall, the website is trustworthy, compliant with GDPR, and professionally maintained. Strategic recommendations include publishing a dedicated security policy, implementing a vulnerability disclosure program, and enhancing accessibility to further strengthen user trust and compliance.

60
43
17
70
77
60
100
travelinsurancereiseversicherungergoinsurancetravelprotection+1 more
Adobe Helix RUMOneTrust Cookie ConsentReactAEM (Adobe Experience Manager)+1
2025-10-12T01:46:53.098Z
amf-france.org favicon

Autorité des marchés financiers

amf-france.org

72
FinanceFrancelargeMEDIUM

The Autorité des marchés financiers (AMF) is the French financial markets regulatory authority responsible for protecting savings, informing investors, and ensuring the proper functioning of financial markets. The website serves as a comprehensive portal offering regulatory information, news, sanctions, and resources for both professionals and the general public. It holds a strong market position as a key government entity in the finance sector in France. Technically, the website is built on Drupal CMS with modern JavaScript libraries and includes cookie consent management tools. It is mobile-optimized, accessible, and performs moderately well. The site uses HTTPS with good SSL configuration and employs some security best practices, although explicit security headers are not fully confirmed. From a security perspective, the site shows a mature posture with no visible vulnerabilities or exposed sensitive data. Privacy compliance is strong with clear GDPR-aligned policies and cookie consent mechanisms. However, WHOIS data is unavailable or malformed, which limits domain registration verification and slightly impacts trustworthiness. Overall, the website is professional, trustworthy, and well-maintained, serving its regulatory and informational role effectively. Strategic recommendations include enhancing security header implementation, improving incident response visibility, and publishing vulnerability disclosure information to further strengthen security and trust.

55
68
17
75
100
80
100
financeregulationinvestorprotectiongovernmentamf+1 more
Drupal CMSJavaScriptjQueryTarteaucitron.js (cookie consent)+1

Partner Domains:

bdif.amf-france.org
service
geco.amf-france.org
service

+3 more partners

2025-10-11T23:24:28.758Z
nordeafinance.fi favicon

Nordea Rahoitus Suomi Oy

nordeafinance.fi

64
FinanceFinlandlargeMEDIUM

Nordea Rahoitus Suomi Oy operates the website www.nordeafinance.fi, providing a range of financial services primarily focused on personal customers in Finland. As part of the Nordea Group, it offers auto financing, credit cards, consumer loans, and digital banking services. The website is professionally designed, multilingual, and targets Finnish consumers seeking flexible financing solutions. The company maintains a strong market position as a reputable financial institution within the Nordic region. Technically, the website employs modern web technologies including JavaScript, SVG graphics, and a proprietary CMS (dotXX2017). It is mobile-optimized, accessible, and SEO-friendly. The infrastructure appears robust with good performance and secure hosting likely managed internally by Nordea. Analytics and marketing tools such as Tealium and CookieReports are used for user tracking and consent management. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes standard security headers. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response contacts are not publicly available, which could be improved to enhance transparency and trust. Overall, the website demonstrates a high level of professionalism, security, and compliance with privacy regulations such as GDPR. The absence of direct contact emails and phone numbers on the site is typical for large financial institutions that prefer controlled communication channels. Strategic recommendations include publishing a dedicated security policy, incident response information, and vulnerability disclosure details to further strengthen security posture and customer trust.

80
10
2
70
82
85
100
financebankingautofinancingconsumerloansnordea+1 more
JavaScriptSVGCSSHTML5

Partner Domains:

nffleet.fi
subsidiary
tukirahoitus.fi
subsidiary

+3 more partners

2025-10-11T21:08:29.638Z
nordeapension.dk favicon

Nordea Pension

nordeapension.dk

75
FinanceDenmarklargeMEDIUM

Nordea Pension is a well-established Danish financial services provider specializing in pension and insurance products. The company offers a broad range of services including pension savings, health insurance, life insurance, and investment funds, targeting both private individuals and businesses. The website reflects a professional and consistent brand presence with clear navigation and relevant content tailored to its audience. Technically, the website employs modern JavaScript libraries such as jQuery and Bootstrap, integrates Microsoft Application Insights and Google Tag Manager for analytics and monitoring, and uses a comprehensive cookie consent management system from CookieInformation.com. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and security headers. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. However, explicit security headers are missing, and there is no publicly available security policy or incident response information. The WHOIS data is unavailable or privacy protected, which limits domain trust verification but is common for financial institutions. Overall, the website demonstrates a strong security posture and compliance with privacy regulations, with minor technical and transparency improvements recommended. The risk level is low, and the site is suitable for its intended audience.

75
88
17
85
82
70
100
financepensioninsurancedanishcookieconsent+3 more
JavaScriptjQuery 3.7.1BootstrapMicrosoft Application Insights+2

Partner Domains:

topdanmarkliv.dk
partner
cookieinformation.com
partner
2025-10-11T21:08:09.460Z
issgovernance.com favicon

Institutional Shareholder Services

issgovernance.com

75
FinanceN/aenterpriseMEDIUM

Institutional Shareholder Services (ISS) is a globally recognized leader in providing corporate governance and responsible investment solutions. The company targets institutional investors and governance professionals, offering services that help clients make informed investment decisions and promote sustainable business practices. ISS holds a strong market position as a trusted provider in the finance sector, with a business model focused on B2B service delivery. The website reflects this professionalism with comprehensive content, clear branding, and a user-friendly interface. Technically, the website is built on WordPress using the Jupiter theme and WPBakery Page Builder, enhanced with Yoast SEO for search optimization. It integrates multiple marketing and analytics tools such as HubSpot and Google Analytics, and employs OneTrust for cookie consent management, indicating a mature digital infrastructure. The site is mobile-optimized and performs moderately well, though accessibility features could be improved. From a security perspective, the site enforces HTTPS, uses standard security headers, and implements cookie consent mechanisms, demonstrating good security hygiene. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of a public security policy or incident response contact suggests areas for improvement in transparency and readiness. Overall, ISS's website presents a low-risk profile with strong business credibility and technical implementation. The missing WHOIS data is likely due to privacy protection and does not detract significantly from the site's legitimacy. Strategic recommendations include publishing a security policy, adding vulnerability disclosure information, and enhancing accessibility to further strengthen trust and compliance.

70
88
17
80
77
85
100
corporategovernanceresponsibleinvestmentfinanceinstitutionalinvestorsprivacypolicy+4 more
WordPressWPBakery Page BuilderYoast SEO PremiumGoogle Analytics+2
2025-10-11T21:08:04.447Z