Skip to main content

Finance security reports

Browse 5,572 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156240
Websites
130
Industries
113
Countries
52
Avg Score
Page 57 of 112|Showing 2801-2850 of 5572
monitoringrejstriku.cz favicon

Insolvence 2008 a.s.

monitoringrejstriku.cz

47
FinanceCzech RepublicmediumHIGH

Insolvence 2008 a.s. operates a professional online platform focused on monitoring insolvency registers and creditor claims primarily for insolvency administrators and businesses in the Czech Republic. The company holds a strong market position with approximately 65% of insolvency administrators in the country using its services. Their offerings include subscription-based monitoring services with free and paid tiers, complemented by additional modules and related services such as virtual assistants, shared office spaces, and training seminars. The website is well-structured, content-rich, and targets a specialized finance/legal audience. Technically, the site is built on WordPress with modern integrations such as Google Analytics, Tag Manager, and reCAPTCHA, ensuring a secure and user-friendly experience. Security posture is strong with HTTPS and EV SSL certificates, though some security headers could be improved. Privacy compliance is well addressed with GDPR policies and cookie consent mechanisms. However, the absence of WHOIS data reduces domain trustworthiness, warranting further verification. Overall, the site presents a credible and professional digital presence aligned with its business objectives.

15
45
17
60
85
75
-
insolvencymonitoringfinanceczechrepublicsoftware+1 more
WordPressGoogle Tag ManagerGoogle AnalyticsreCAPTCHA v3+3

Partner Domains:

insolvencnispravce.org
partner
monitoringrejstriku.cz
partner
2025-07-29T14:48:38.716Z
insolvencnispravce.info favicon

Insolvence 2008 a.s.

insolvencnispravce.info

47
FinanceCzech RepublicmediumHIGH

Insolvence 2008 a.s. operates a specialized platform providing comprehensive support services for insolvency administrators in the Czech Republic. Their offerings include proprietary software to automate insolvency case management, virtual assistant services, monitoring of insolvency registers, rental of fully equipped offices across all Czech regions, and professional seminars and conferences. The company holds a significant market position, serving approximately 65% of insolvency administrators in the country. Technically, the website is built on WordPress with integrations such as Google Tag Manager, reCAPTCHA, and Mailchimp, reflecting a modern and functional digital infrastructure. Security measures include HTTPS enforcement and CAPTCHA protections, though additional HTTP security headers could enhance their posture. Privacy compliance is well addressed with GDPR-aligned policies and cookie consent mechanisms. The absence of WHOIS data slightly reduces transparency but does not detract from the company's evident legitimacy and professional presence. Overall, Insolvence 2008 a.s. demonstrates a mature business model with strong market penetration and a solid digital footprint.

15
45
17
60
85
75
-
insolvencyfinancesoftwarevirtualassistantmonitoring+2 more
WordPressGoogle Tag ManagerGoogle reCAPTCHAMailchimp+2

Partner Domains:

insolvencnispravce.org
partner
monitoringrejstriku.cz
partner

+1 more partners

2025-07-29T13:47:20.192Z
anycoin.cz favicon

Anycoin

anycoin.cz

69
FinanceCzech RepublicmediumMEDIUM

Anycoin is a Czech-based cryptocurrency exchange platform specializing in fast and secure purchase of various cryptocurrencies including Bitcoin, Ethereum, Litecoin, and Cardano. The company targets both individual and corporate clients, offering a mobile app for iOS and Android to facilitate easy access. With over 110,000 registered users and a wide range of supported cryptocurrencies, Anycoin positions itself as a significant player in the Czech crypto market. The business operates under MP Developers s.r.o., with a professional online presence and certification from the Czech Cryptocurrency Association. Technically, the website employs modern web technologies such as React and Material-UI, integrates Google Tag Manager and Bing Ads for analytics and marketing, and maintains good SEO and mobile optimization standards. The site uses HTTPS with strong security headers, indicating a solid security posture. However, there is no publicly available security policy or incident response information, which could be improved. The security posture is strong with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with a comprehensive privacy policy and cookie consent mechanism, reflecting GDPR adherence. The lack of WHOIS data reduces domain trust signals but is mitigated by the professional website and social media presence. Overall, Anycoin presents a trustworthy and professional cryptocurrency exchange platform with room for improvement in transparency around security policies and incident response. Strategic recommendations include publishing explicit security policies, incident response contacts, and vulnerability disclosure information to enhance trust and compliance.

90
28
17
72
75
85
100
cryptocurrencybitcoinethereumlitecoincryptoexchange+3 more
ReactGoogle Tag ManagerGoogle AnalyticsBing Ads+1

Partner Domains:

www.ckma.cz
partner
2025-07-29T11:28:12.338Z
finarbitr.cz favicon

Kancelář finančního arbitra

finarbitr.cz

57
FinanceCzech RepublicmediumMEDIUM

The website finarbitr.cz serves as the official portal for the Czech Republic's Financial Arbitrator Office, a state-established authority dedicated to resolving disputes between consumers and financial institutions. The site provides comprehensive information about the arbitration process, legal guidance, downloadable forms, and frequently asked questions, targeting consumers seeking dispute resolution in financial matters. The business model is focused on non-judicial dispute resolution, offering free and efficient services to the public, positioning itself as a trusted government-related entity in the finance sector. Technically, the website employs a traditional web stack including jQuery 1.9.1, Bootstrap 3.3.7, and Modernizr 2.6.2, with Google Analytics for visitor tracking. The site is moderately optimized for mobile devices and SEO, though some technologies are outdated, which may pose security and performance risks. The cookie consent mechanism is implemented, reflecting some privacy compliance efforts, but explicit privacy and terms of service pages are absent. From a security perspective, the site uses HTTPS and has a cookie consent banner, but lacks visible security headers and uses older JavaScript libraries, which could expose it to vulnerabilities. No incident response or vulnerability disclosure information is present. The WHOIS data confirms the domain's legitimacy and long-standing registration since 2003, consistent with the official nature of the business. Overall, the website is professional and trustworthy but would benefit from enhanced security practices, explicit privacy policies, and updated technical components to improve compliance and reduce risk.

35
25
17
70
62
75
100
financedisputeresolutionconsumerprotectionfinancialarbitratorczechrepublic
jQuery 1.9.1Bootstrap 3.3.7Modernizr 2.6.2Google Analytics+1
2025-07-29T09:10:48.987Z
T

TSYS

tsys.com

74
FinanceN/aenterpriseMEDIUM

TSYS is a leading payment solutions provider specializing in scalable issuer solutions and payment processing technology. As part of the Global Payments family, TSYS serves a broad audience including financial institutions, fintech companies, and retailers worldwide. Their cloud-native, API-driven platform supports a wide range of services from digital onboarding to fraud management and loyalty programs. The website reflects a mature digital presence with professional design, clear navigation, and multimedia content that highlights their expertise and market leadership. Technically, the site leverages modern web technologies, including Sitecore CMS, advanced analytics tools, and a robust cookie consent mechanism, indicating a commitment to user privacy and data protection. Security posture is solid with HTTPS usage and privacy compliance tools, though explicit security policies and incident response contacts are not published. WHOIS data is unavailable, which is a minor concern but does not detract significantly from the site's legitimacy given the strong brand presence and content quality. Overall, TSYS presents a trustworthy and professional online presence aligned with its enterprise-scale business model.

55
85
40
75
75
80
100
paymentstsysprocessingfinancialinstitutionspaymentstack+3 more
Cloud-native platformMicroservices architectureJavaScriptCSS+6

Partner Domains:

developers.tsys.com
partner
jobs.globalpayments.com
parent
2025-07-29T05:43:45.963Z
engageware.com favicon

Engageware

engageware.com

76
FinanceUnited StatesenterpriseLOW

Engageware is an enterprise-grade AI-powered customer engagement platform specializing in conversational and generative AI technologies to enhance sales, customer service, and employee efficiency. The company serves over 700 clients across finance, retail, and technology sectors, offering solutions such as virtual assistants, appointment scheduling, knowledge management, and digital communications. Their market position is strong, supported by trusted partnerships and a comprehensive product suite tailored for enterprise needs. Technically, Engageware leverages a modern WordPress-based infrastructure enhanced with advanced marketing and analytics tools including Google Analytics, HubSpot, and Facebook Pixel. The site is optimized for performance, mobile responsiveness, and SEO, reflecting a mature digital presence. Hosting and DNS services are managed via Amazon Registrar, indicating reliable infrastructure. From a security perspective, the website enforces HTTPS and domain registration protections, though it lacks DNSSEC and some advanced security headers. Privacy compliance is robust with clear policies and consent mechanisms aligned with GDPR standards. However, incident response contact details and security.txt files are not explicitly provided, representing an area for improvement. Overall, Engageware presents a low-risk profile with high business credibility and technical maturity. Strategic recommendations include enhancing DNS security, publishing vulnerability disclosure mechanisms, and strengthening security headers to further improve trust and compliance.

80
80
35
85
52
90
100
aicustomerengagementappointmentschedulingconversationalaienterprise+2 more
jQueryGoogle Tag ManagerGoogle AnalyticsHubSpot+4

Partner Domains:

timetrade.com
partner
2025-07-29T04:37:30.094Z
paymentexpress.com favicon

Windcave

paymentexpress.com

71
FinanceN/amediumMEDIUM

Windcave operates as a global payment gateway and EFTPOS solutions provider, delivering omni-channel payment processing services to a diverse range of industries including retail, finance, hospitality, and government. The company positions itself as a trusted platform facilitating seamless payment experiences for thousands of recognizable brands worldwide. Their key offerings include online, in-store, and unattended payments, supported by features such as global acquiring, tokenization, and data insights. Technically, the website is built with standard web technologies including HTML5, CSS, JavaScript, and leverages Cloudflare for performance and security monitoring. The site demonstrates good mobile optimization, clear navigation, and professional design quality. However, some accessibility features could be enhanced, and no CMS or hosting provider beyond Cloudflare is explicitly identified. From a security perspective, the site enforces HTTPS and includes secure login mechanisms. While no critical vulnerabilities or exposed sensitive data were detected, the absence of explicit security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement. Privacy compliance is supported by a comprehensive privacy policy and terms of use, though the lack of a cookie consent mechanism is a notable gap. Overall, the website presents a professional and trustworthy front for a payment services company, but the missing WHOIS data and limited direct contact information slightly reduce trustworthiness. Strategic improvements in privacy compliance and security transparency would enhance the company's security posture and user confidence.

75
53
2
85
82
90
100
paymentgatewayeftposonlinepaymentspcicompliantmerchantservices+1 more
HTML5CSSJavaScriptCloudflare Insights
2025-07-29T04:36:39.827Z
regions.com favicon

Regions Bank

regions.com

68
FinanceUnited StatesenterpriseMEDIUM

Regions Bank is a large, enterprise-level financial institution offering a comprehensive range of personal, small business, commercial, and wealth management banking services. The website reflects a mature digital presence with clear navigation, professional design, and extensive content tailored to a broad customer base in the United States. Key services include checking and savings accounts, credit cards, mortgages, home equity loans, and digital banking solutions. The bank maintains strong brand consistency and trust indicators such as FDIC insurance and equal housing lender disclosures. Technically, the website leverages a modern technology stack including Adobe Experience Manager, various analytics and marketing tools, and robust tag management systems. The site is mobile-optimized, accessible, and SEO-friendly, providing a positive user experience. Security posture is strong with HTTPS enforced and privacy policies clearly presented, although explicit security headers were not fully confirmed in the HTML content. The site integrates multiple trusted third-party services for login, mortgage, investment, and payroll functionalities. Security-wise, the site shows good practices with no visible vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with comprehensive privacy and cookie policies, including consent mechanisms and GDPR considerations. The WHOIS data could not be retrieved, which is unusual but likely due to registry or privacy protections rather than malicious intent. Overall, the site is trustworthy and professionally maintained. Strategically, Regions Bank should continue to monitor third-party scripts for vulnerabilities, ensure all security headers are implemented and documented, and consider publishing a formal vulnerability disclosure policy to enhance transparency and security culture.

55
53
2
75
82
90
100
bankingfinancepersonalbankingsmallbusinesscommercialbanking+4 more
JavaScriptGoogle Tag ManagerYouTube iframe APIRFI Hub+8

Partner Domains:

regionsmortgage.com
partner
seic.com
partner

+3 more partners

2025-07-29T03:22:12.011Z
mszafir.pl favicon

Krajowa Izba Rozliczeniowa Spółka Akcyjna (KIR)

mszafir.pl

64
FinancePolandlargeMEDIUM

The mSzafir website is a professionally designed platform operated by Krajowa Izba Rozliczeniowa Spółka Akcyjna (KIR), a reputable Polish financial infrastructure entity. It offers qualified electronic signature and seal services compliant with the eIDAS regulation, targeting businesses and individuals requiring secure digital signing solutions. The platform supports both one-time and long-term certificates accessible via a web portal and mobile applications for iOS and Android. The site includes comprehensive user guides, FAQs, and activation instructions, enhancing user experience and trust. Technically, the website employs modern web technologies including JavaScript frameworks, Google Tag Manager, and Google reCAPTCHA for security. The site is mobile-optimized and uses a custom CMS likely provided by Ideo/edito. Security best practices such as HTTPS, CSRF tokens, and cookie consent mechanisms are implemented, though some security headers could be improved. Analytics and marketing tools are used responsibly with clear privacy policies and GDPR compliance. From a security perspective, the site demonstrates a strong posture with no visible vulnerabilities or exposed sensitive data. The lack of public WHOIS data is typical for .pl domains and is justified given the nature of the business. Overall, the domain and website present a trustworthy and professional digital presence suitable for handling sensitive electronic signature services. Strategically, the company should continue to enhance security headers and accessibility features while maintaining transparency in privacy and data protection. The integration with official KIR resources and partner domains strengthens its market position and credibility.

65
25
17
70
77
75
100
electronicsignaturequalifiedcertificateeidasdigitalsignaturemobileapp+3 more
Google Tag ManagerGoogle reCAPTCHAJavaScriptCSS+1

Partner Domains:

www.elektronicznypodpis.pl
partner
www.kir.pl
parent
2025-07-29T02:20:15.673Z
B

Bread Financial

comenity.com

69
FinanceN/alargeMEDIUM

Bread Financial is a technology-forward financial services company offering a range of products including credit cards, personal loans, savings accounts, and payment solutions tailored for both personal and business customers. The company maintains a strong market presence with partnerships for branded credit cards such as AAA, NFL, Victoria’s Secret, and Ulta Beauty. Their website reflects a professional and consistent brand image with comprehensive product information and financial education resources. Technically, the site is built on Adobe Experience Manager, leveraging modern analytics and marketing tools such as Adobe Target and OneTrust for cookie consent, ensuring a mature digital infrastructure. Security posture is solid with HTTPS and privacy compliance mechanisms in place, though some security headers and explicit incident response contacts are not evident. The absence of WHOIS data for the domain raises minor concerns but does not detract significantly from the overall legitimacy given the professional content and external references. Strategic recommendations include enhancing security header implementation and publishing a vulnerability disclosure policy to further strengthen trust.

55
58
2
100
72
85
100
financecreditcardsloanssavingspaymentsolutions+5 more
Adobe TargetAdobe Launch (DTM)jQueryOneTrust Cookie Consent+3

Partner Domains:

mysavings.breadfinancial.com
subsidiary
member-portal.breadpayments.com
subsidiary

+3 more partners

2025-07-29T00:01:39.905Z
megastock.com favicon

WebMoney

megastock.com

56
FinanceN/amediumMEDIUM

MegaStock is a specialized online catalog operated under the WebMoney ecosystem, providing a directory of merchants, exchangers, and payment service providers that accept WebMoney payments. The platform targets online shoppers and merchants within the WebMoney payment network, facilitating e-commerce transactions and offering access to certified sellers with dispute resolution via WebMoney Arbitrage. The website is well-branded and consistent with WebMoney's identity, supporting a medium-sized business model focused on finance and e-commerce sectors. Technically, the website employs standard web technologies including JavaScript, Google Analytics, and WebMoney's own SDK scripts. It uses HTTPS for secure communication but lacks some advanced security headers and explicit privacy or cookie policies, indicating room for improvement in compliance and security best practices. The site is moderately optimized for mobile and SEO, with a good user experience and clear navigation. From a security perspective, the site demonstrates a good baseline with HTTPS and no exposed sensitive data, but it lacks visible security headers and formal incident response contacts or vulnerability disclosure mechanisms. The absence of privacy and cookie policies also presents compliance gaps, particularly regarding GDPR. Overall, the security posture is adequate but could be enhanced with additional controls and transparency. The domain is well-established since 2003, registered with a reputable registrar, and consistent with the business history, supporting high legitimacy. The site links extensively to WebMoney's ecosystem and partner domains, reinforcing its credibility. No adult or questionable content is present, making it safe for general audiences.

30
35
2
60
72
75
100
financee-commercepaymentwebmoneymerchantdirectory
JavaScriptGoogle AnalyticsWebMoney SDK scriptsCustom CSS+1

Partner Domains:

web.money
parent
plati.market
partner

+3 more partners

2025-07-28T23:58:41.069Z
web.money favicon

WebMoney Transfer

web.money

48
FinanceRussialargeHIGH

WebMoney Transfer is a well-established international online payment system and business platform primarily targeting Russian-speaking individuals and businesses. The company offers a broad range of financial services including cryptocurrency wallets, P2P exchanges, payment acceptance, mass payouts, loans, crowdfunding, and secure transaction mechanisms such as escrow and arbitration. The website demonstrates a high level of professionalism with consistent branding, comprehensive service descriptions, and integration with multiple partner and subsidiary domains. Technically, the site employs modern web technologies including JavaScript frameworks, Google Analytics, and Microsoft SignalR for real-time features. It supports multiple platforms including iOS, Android, Windows, and MacOS, with excellent mobile optimization and accessibility. Security posture is strong with HTTPS enforced, secure authentication via E-NUM, and transaction protection services, though some security headers could be more explicitly declared. Privacy compliance is partially addressed with a comprehensive privacy policy but lacks visible cookie consent mechanisms. WHOIS data is privacy protected, which is typical for financial services, and does not raise immediate concerns. Overall, WebMoney Transfer presents a trustworthy and mature digital financial ecosystem.

-
-
-
70
62
70
100
onlinepaymentscryptocurrencyfinancialservicesbusinesstoolscrowdfunding+3 more
HTML5CSS3JavaScriptGoogle Analytics+2

Partner Domains:

digiseller.ru
partner
cashbox.ru
partner

+3 more partners

2025-07-28T23:58:20.920Z