Skip to main content

Finance security reports

Browse 5,562 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156127
Websites
130
Industries
113
Countries
52
Avg Score
Page 7 of 112|Showing 301-350 of 5562
myplann.cz favicon

SAB servis s.r.o.

myplann.cz

65
FinanceCzech RepublicmediumMEDIUM

SAB servis s.r.o. operates as a brokerpool providing comprehensive support services for financial advisors and leaders of advisory firms primarily in the Czech Republic. The company emphasizes simplifying the operational life of its clients through education, events, and a suite of tools designed to enhance advisory practices. Their market position is supported by a clear vision and active engagement with their target audience, positioning them as a proactive player in the financial advisory sector. Technically, the website is built on the Solidpixels CMS platform and leverages modern web technologies including Google Tag Manager and Facebook Pixel for analytics and marketing. The site is mobile-optimized with good SEO practices and a professional design, though some accessibility features could be improved. Performance is moderate, with a well-structured navigation system and clear content presentation. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms aligned with GDPR requirements. However, no advanced security headers were detected, and there is no visible security or incident response policy published. The absence of WHOIS data limits the ability to fully verify domain registration legitimacy, though the professional web presence and social media footprint support the company's credibility. Overall, SAB servis presents a trustworthy and professional digital presence with room for improvement in security transparency and domain registration disclosure. Strategic enhancements in security policies and WHOIS transparency would further strengthen their risk posture and trustworthiness.

80
40
17
75
52
80
100
brokerpoolfinancefinancialadvisorsczechrepublicprivacy+3 more
Google Tag ManagerFacebook PixelGoogle Fonts (Inter, Work Sans)Solidpixels CMS
2025-11-01T13:27:13.457Z
muenchener-assekuranz.de favicon

Münchener Verein Versicherungsgruppe

muenchener-assekuranz.de

63
FinanceGermanymediumMEDIUM

Münchener Assekuranz is an insurance service platform associated with the Münchener Verein Versicherungsgruppe, a well-established insurance group in Germany. The website serves primarily German-speaking customers, offering insurance brokerage and customer login services. The business model focuses on providing insurance products and customer service through a secure online portal. The company maintains a consistent brand presence and targets a medium-sized market segment within the finance industry in Germany. Technically, the website is built on TYPO3 CMS, leveraging modern web technologies including jQuery and Usercentrics for consent management. Hosting and DNS services are provided via Cloudflare, enhancing security and performance. The site demonstrates good mobile optimization, accessibility, and basic SEO practices, although there is room for improvement in metadata and structured content. From a security perspective, the site enforces HTTPS and uses secure login forms. However, it lacks visible security headers and does not publish a security policy or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is partially addressed through a cookie consent mechanism, but no explicit privacy policy or terms of service pages were found. Overall, the website presents a professional and trustworthy front for an insurance business but would benefit from enhanced privacy disclosures, security headers, and formalized security policies to improve compliance and user trust.

65
25
2
85
77
70
100
insurancefinancegermanycustomerportaltypo3+1 more
TYPO3 CMSjQueryUsercentrics CMPGoogle Tag Manager
2025-11-01T10:48:48.364Z
H

Helvetia

bvgonline.ch

61
FinanceSwitzerlandlargeMEDIUM

The website analyzed is a login page for Helvetia, a Swiss insurance company. The page content is minimal and appears to be blocked or protected by a security mechanism, likely a Web Application Firewall (WAF), as indicated by the hidden body and placeholder text. The site lacks visible privacy, cookie, or terms of service policies, and no contact information or forms are present. The technical infrastructure shows minimal publicly accessible content with a single JavaScript file loaded, and no metadata or structured data is available for deeper analysis. From a security perspective, the absence of visible security headers, privacy policies, and incident response contacts suggests a low transparency posture, although this may be due to the page's nature as an identity provider login portal. The lack of accessible content limits the ability to assess SSL configuration or other security best practices. No vulnerabilities or exposed sensitive data were detected, but the inability to access full content restricts comprehensive evaluation. Overall, the website's risk assessment is constrained by the blocked content, resulting in a low AI score. Strategic recommendations include improving transparency by publishing privacy and cookie policies, adding contact and incident response information, and ensuring security headers and SSL configurations are properly implemented and visible. These steps will enhance trust and compliance with data protection regulations.

85
50
2
75
72
85
100
financeinsuranceloginidentityproviderhelvetia
JavaScript
2025-11-01T10:39:50.245Z
lukb.ch favicon

Luzerner Kantonalbank

lukb.ch

75
FinanceSwitzerlandlargeMEDIUM

Luzerner Kantonalbank (LUKB) is a leading regional bank based in Luzern, Switzerland, providing a broad range of financial services including retail banking, mortgages, investment products, and personalized financial advisory. The website targets private customers primarily in the Luzern and Central Switzerland region, emphasizing personal service and innovative banking solutions. The bank maintains a strong market position as a trusted cantonal bank with a professional digital presence. Technically, the website employs modern web technologies such as Google Tag Manager, Cookiebot for consent management, and HTMX for dynamic content. It is well-optimized for mobile devices and accessibility, with good SEO practices and comprehensive metadata. The site uses HTTPS with strong security headers, ensuring secure communications and protecting user data. From a security perspective, the site demonstrates good practices including secure cookie handling, consent mechanisms, and no visible vulnerabilities or exposed sensitive data. However, explicit security policies and incident response information are not publicly detailed, representing an area for improvement. The privacy and cookie policies are comprehensive and GDPR compliant, reflecting a mature approach to data protection. Overall, the website is professional, trustworthy, and secure, with extensive content relevant to its audience. It integrates multiple analytics and marketing tools responsibly, maintaining transparency and user control over data. Strategic recommendations include publishing detailed security policies, vulnerability disclosure mechanisms, and enhancing transparency around data protection officers to further strengthen trust and compliance.

80
83
17
75
77
80
100
bankingfinanceswitzerlandprivacycookie-consent+4 more
Google Tag ManagerCookiebotHTMXJavaScript+2

Partner Domains:

boersenundmaerkte.lukb.ch
subsidiary
strukturierteprodukte.lukb.ch
subsidiary

+3 more partners

2025-11-01T10:26:17.238Z
kendris.com favicon

KENDRIS Ltd

kendris.com

74
FinanceSwitzerlandmediumMEDIUM

KENDRIS Ltd is a Swiss-based international advisory and fiduciary services firm with a strong focus on wealthy individuals, family offices, corporations, and institutional clients. The company emphasizes its Swiss entrepreneurial roots, confidentiality, and independence from banks and financial institutions. With over 110 years of history and a presence in multiple countries, KENDRIS offers a broad range of services including trusts, corporate services, tax and legal advice, family office services, and alternative investment fund solutions through its subsidiary KENDRIS Capital Limited. The website is professionally designed, well-structured, and provides comprehensive information about its services and corporate group. Technically, the website employs modern technologies such as Google Tag Manager, CookieYes for consent management, and Mautic for marketing automation. It is mobile-optimized, accessible, and SEO-friendly. Security posture is strong with HTTPS enforced and secure forms, though it lacks explicit security policy and incident response information. Privacy compliance is well addressed with clear cookie and privacy policies and GDPR adherence. However, the absence of WHOIS data for the domain raises concerns about domain registration legitimacy, which partially impacts the overall trustworthiness score. Despite this, the professional presentation and detailed business information mitigate some risks. Overall, the website represents a credible and mature financial services firm with room for improvement in transparency around security policies and domain registration verification.

85
83
17
75
72
80
100
financefiduciaryadvisorywealthmanagementcorporateservices+5 more
Google Tag ManagerCookieYes Consent ManagementMautic FormsMapbox+2

Partner Domains:

www.kendriscapital.com
subsidiary
2025-11-01T09:44:33.422Z
companywebcast.com favicon

Euronext Corporate Solutions

companywebcast.com

76
FinanceN/aenterpriseLOW

Euronext Corporate Solutions operates as a comprehensive platform offering corporate services, compliance solutions, and investor relations tools tailored for listed companies and capital market participants. The website positions itself as a trusted partner in governance, regulatory compliance, and market communications, leveraging its affiliation with the reputable Euronext group. The platform provides a broad suite of products including IR.Manager, Shareholder Analysis, ESG advisory, and governance tools, targeting corporate clients seeking to optimize their capital market readiness and compliance frameworks. Technically, the website is built on HubSpot CMS, integrating advanced marketing and analytics tools such as Google Analytics, Microsoft Clarity, and Segment, reflecting a mature digital infrastructure with good performance and mobile optimization. Security posture is strong with HTTPS enforced, use of Google reCAPTCHA Enterprise, and cookie consent mechanisms, although explicit security headers and a public security policy are not evident. The absence of WHOIS data for the subdomain is expected and does not detract from the legitimacy of the site, which aligns with the main euronext.com domain. Overall, the site demonstrates high professionalism, trustworthiness, and compliance with privacy regulations.

55
95
47
83
57
85
100
corporatesolutionscapitalmarketsinvestorrelationscompliancegovernance+3 more
HubSpot CMSGoogle Tag ManagerGoogle AnalyticsBing Ads+4

Partner Domains:

www.ibabs.com
partner
2025-11-01T09:43:23.146Z
bnro.ro favicon

Banca Națională a României

bnro.ro

70
FinanceRomanialargeMEDIUM

The website www.bnr.ro represents the official online presence of the National Bank of Romania (BNR), the country's central bank. It provides comprehensive information about the bank's functions, currency issuance, statistics, publications, and contact points, targeting a broad audience including the general public, financial institutions, and government entities. The site is professionally designed with consistent branding and clear navigation, reflecting its authoritative role in Romania's financial sector. Technically, the website employs modern web standards including HTML5, CSS3, and JavaScript, with integration of Google Tag Manager and Cookiebot for analytics and cookie consent management. The site is mobile-optimized and performs moderately well, though there is room for improvement in accessibility and SEO metadata completeness. From a security perspective, the site enforces HTTPS and implements a GDPR-compliant cookie consent mechanism. However, explicit security headers are not evident in the provided data, and no public security or incident response policies are published. The WHOIS data is not publicly available due to ROTLD privacy policies, which is typical for .ro domains and justified for a government entity. Overall, the website demonstrates a strong business credibility and privacy compliance posture, with moderate technical and security maturity. There are no indications of malicious activity or content safety concerns. Strategic recommendations include enhancing security headers, improving accessibility, and publishing explicit security policies to further strengthen trust and compliance.

75
83
17
70
72
60
100
centralbankfinancegovernmentromaniabnr+3 more
HTML5CSS3JavaScriptGoogle Tag Manager+1
2025-11-01T09:13:43.836Z
zaba.hr favicon

Zagrebačka banka

zaba.hr

68
FinanceCroatialargeMEDIUM

Zagrebačka banka is a leading Croatian financial institution offering a broad range of retail and corporate banking services. The website reflects a mature digital presence with comprehensive information on loans, savings, insurance, and digital banking platforms such as mobile and internet banking. The bank targets a wide audience including individuals, small and large businesses, and private banking clients. The site is professionally designed with consistent branding and clear navigation, supporting a strong market position within Croatia and under the UniCredit Group umbrella. Technically, the website employs modern JavaScript libraries and analytics tools such as Adobe Analytics and Tealium, hosted on Akamai infrastructure for performance and reliability. The site is mobile-optimized and accessible, with good SEO practices. Security posture is solid with HTTPS enforced and cookie consent mechanisms in place, though explicit security policies and incident response disclosures are absent. Overall, the website demonstrates a high level of professionalism, trustworthiness, and compliance with privacy regulations such as GDPR. No critical vulnerabilities or suspicious activities were detected. The domain's WHOIS data confirms legitimacy with a long registration history and consistent registrant information. Strategic recommendations include publishing a dedicated security policy, incident response plan, and vulnerability disclosure guidelines to enhance transparency and trust. Regular security audits and header enhancements would further strengthen the security posture.

80
25
17
73
72
90
100
bankingfinancedigitalbankingloyaltyprogramcredit+5 more
JavaScriptjQueryModernizrFlickity slider+7

Partner Domains:

unicreditleasing.hr
subsidiary
zane.hr
subsidiary

+1 more partners

2025-11-01T08:56:44.231Z
hnb.hr favicon

Hrvatska narodna banka

hnb.hr

63
FinanceCroatialargeMEDIUM

Hrvatska narodna banka (HNB) is the central bank of the Republic of Croatia, responsible for monetary policy, financial stability, banking supervision, and currency issuance. The website serves as an official portal providing comprehensive information about the bank's functions, regulatory framework, statistics, publications, and consumer protection. It targets a broad audience including the general public, financial institutions, and government entities. The site is well-structured and professionally maintained, reflecting the bank's authoritative position in the Croatian financial sector. Technically, the website is built on the Liferay CMS platform, utilizing modern JavaScript frameworks such as React and Alloy UI. It employs Google Tag Manager for analytics and tracking, and the site is optimized for both desktop and mobile devices with a moderate performance profile. Accessibility and SEO practices are basic but adequate for the target audience. From a security perspective, the site enforces HTTPS, includes standard security headers, and avoids exposing sensitive data. However, explicit security policies, incident response contacts, and vulnerability disclosure mechanisms are not publicly documented, representing areas for improvement. Privacy and cookie policies are present and indicate GDPR compliance, with consent mechanisms implemented. Overall, the website demonstrates a strong business credibility and security posture appropriate for a national central bank. Strategic recommendations include publishing detailed security and incident response policies, enhancing accessibility features, and maintaining regular audits of third-party scripts to ensure ongoing security and compliance.

45
25
2
85
77
85
100
centralbankfinancegovernmentcroatiabanking+2 more
JavaScriptReactYUILiferay Portal+1
2025-11-01T08:56:39.221Z
swedbank.ee favicon

Swedbank AS

swedbank.ee

68
FinanceEstonialargeMEDIUM

Swedbank AS is a leading Estonian bank providing a wide range of financial services including daily banking, financing, insurance, investment, and savings solutions. The website serves both private and business clients with a strong focus on digital banking services such as internet and mobile banking. The company holds a strong market position in Estonia and is part of the larger Swedbank Group, with several subsidiaries specializing in leasing, investment funds, and insurance. The website content is professionally designed, localized primarily in Estonian with English translations, and demonstrates a high level of GDPR compliance and user privacy awareness. Technically, the website employs modern web technologies including Web Components, JavaScript frameworks, and optimized asset loading strategies. It supports multiple authentication methods including Smart-ID, Mobile-ID, and biometrics, indicating a mature digital infrastructure. Performance and mobile optimization are excellent, with good accessibility and SEO practices observed. From a security perspective, the site uses HTTPS with strong SSL configuration and implements best practices such as ARIA labels for accessibility and cookie consent mechanisms. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response contacts are not prominently published, suggesting room for improvement in transparency. Overall, the website is trustworthy, professional, and secure, reflecting the reputation of a major financial institution. Recommendations include publishing detailed security policies, adding a security.txt file for vulnerability disclosures, and enhancing visible security headers to further strengthen the security posture.

85
40
17
70
77
70
100
bankingfinanceinvestmentinsurancegdpr+2 more
Web Components (webjars/webcomponents 3.25.0)JavaScriptCSSMoment.js+2

Partner Domains:

swedbankliising.ee
subsidiary
swedbankinvesteerimisfondid.ee
subsidiary

+3 more partners

2025-11-01T08:55:54.029Z
world-exchanges.org favicon

The World Federation of Exchanges

world-exchanges.org

70
FinanceUnited KingdommediumMEDIUM

The World Federation of Exchanges (WFE) operates as a global industry association representing market infrastructure providers such as exchanges and clearing houses. The organization provides a broad range of services including membership management, educational programs, research, statistics, and regulatory affairs support. Positioned as a key industry player, WFE serves over 136 market infrastructure providers and thousands of listed companies worldwide, emphasizing its significant market presence and influence in the finance sector. The website reflects a professional and authoritative image consistent with its role as an industry association headquartered in the United Kingdom. Technically, the website is built on a modern stack including the UIkit framework, jQuery, and October CMS, hosted on DigitalOcean infrastructure. It demonstrates good mobile optimization, accessibility, and SEO practices. Analytics are implemented via Google Analytics and Cloudflare Insights, with a cookie consent mechanism in place, indicating attention to privacy compliance. The site is fully accessible with no blocking or WAF challenges detected. From a security perspective, the site enforces HTTPS and uses cookie consent banners but lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the content. The absence of WHOIS data due to privacy protection is typical for such organizations and does not detract from the site's legitimacy. Overall, the security posture is solid but could be improved by adding security headers and formal incident response information. The overall risk assessment is low, with the site demonstrating strong business credibility, technical maturity, and privacy compliance. Strategic recommendations include enhancing security headers, publishing security policies, and establishing a vulnerability disclosure program to further strengthen trust and security culture.

55
83
2
100
57
80
100
financeexchangesmarketinfrastructureindustryassociationeducation+2 more
jQuery 3.3.1UIkit frameworkVimeo Player APIGoogle Analytics+1

Partner Domains:

focus.world-exchanges.org
partner
members.world-exchanges.org
partner

+1 more partners

2025-11-01T07:53:43.926Z
5nej.cz favicon

Přední český portál pro recenze a srovnání online služeb

5nej.cz

38
FinanceCzech RepublicmediumHIGH

The website www.5nej.cz is a leading Czech portal specializing in reviews and comparisons of online services, particularly in finance, e-commerce, lifestyle, and online tools. It targets Czech-speaking consumers seeking objective and comprehensive information to make informed decisions about financial products, online shopping, and digital services. The business model revolves around content creation, likely monetized through affiliate links and advertising. Technically, the site is built on WordPress CMS with a modern tech stack including jQuery, Yoast SEO Premium, WP Rocket for performance optimization, and analytics tools such as Microsoft Clarity and Google Tag Manager. The site demonstrates good SEO practices and mobile optimization, though accessibility features are basic. Performance is moderate, with room for improvement in security headers and explicit privacy disclosures. From a security perspective, the site uses HTTPS and avoids exposing sensitive data in its HTML. However, it lacks visible security headers and explicit privacy and cookie policies, which are important for GDPR compliance and user trust. No vulnerabilities or malware indicators were detected. The absence of WHOIS data suggests domain privacy protection, which is common and acceptable for this business type. Overall, the website presents a professional and trustworthy front for its target audience but would benefit from enhanced privacy disclosures, security headers, and clearer contact information to improve compliance and user confidence.

15
25
2
55
52
80
-
reviewscomparisonfinancee-commerceonlinetools+3 more
WordPressjQueryYoast SEO PremiumWP Rocket+5
2025-11-01T07:50:58.244Z
cssf.lu favicon

Commission de Surveillance du Secteur Financier

cssf.lu

76
FinanceLuxembourgmediumLOW

The Commission de Surveillance du Secteur Financier (CSSF) is a public institution responsible for supervising professionals and products within the Luxembourg financial sector. It serves both professionals and consumers by providing regulatory frameworks, publications, and guidance. The CSSF holds a key market position as Luxembourg's financial regulatory authority, offering services such as supervision of financial entities and dissemination of financial data. The website targets financial sector stakeholders and consumers seeking authoritative information and regulatory updates. Technically, the website is built on WordPress, utilizing modern web technologies including jQuery and Font Awesome, and integrates Matomo for analytics. The site demonstrates good digital maturity with responsive design, accessibility features, and a cookie consent mechanism compliant with GDPR. Performance is moderate with room for optimization. From a security perspective, the site enforces HTTPS and employs cookie-based security measures. However, explicit HTTP security headers are not detected, and no public security or incident response policies are found. No vulnerabilities or exposed sensitive data are evident. The absence of WHOIS data limits domain trust verification, but the official nature and content quality support legitimacy. Overall, the CSSF website is a professional, secure, and compliant platform serving as a trusted source for financial regulation in Luxembourg. Strategic recommendations include enhancing HTTP security headers, publishing security policies, and improving WHOIS transparency to strengthen trust and security posture.

80
83
17
85
77
85
100
financeregulationluxembourgfinancialsupervisioncssf+1 more
WordPressjQueryFont Awesome 6Matomo Analytics
2025-11-01T04:59:38.453Z
apieceofluxembourg.lu favicon

Banque centrale du Luxembourg

apieceofluxembourg.lu

60
FinanceLuxembourgmediumMEDIUM

The website 'A Piece of Luxembourg' is an official platform managed by the Banque centrale du Luxembourg, offering unique numismatic products that celebrate Luxembourg's culture, history, and heritage. It targets collectors and enthusiasts interested in Luxembourg-themed euro coins and related products, positioning itself as a niche leader in this specialized market. The business model revolves around e-commerce sales combined with cultural promotion, leveraging the authority and trust of the central bank. Technically, the website is built on WordPress and employs modern web technologies such as jQuery, FontAwesome, Swiper.js, and integrates Google Tag Manager for analytics. The site is mobile-optimized with good SEO practices and a moderate performance profile. Privacy compliance is well addressed with clear privacy and cookie policies and a consent mechanism. From a security perspective, the site uses HTTPS with an excellent SSL configuration and implements cookie consent. However, it lacks explicit security headers and publicly available security policies or incident response information. No vulnerabilities or exposed sensitive data were detected. The absence of WHOIS data reduces domain registration transparency but does not significantly detract from the site's legitimacy given its official affiliation. Overall, the website presents a low-risk profile with strong business credibility and good technical and security posture. Strategic recommendations include enhancing security headers, publishing security policies, and improving accessibility features to further strengthen trust and compliance.

15
68
2
70
62
80
100
numismaticluxembourgcentralbankeurocoinsculture+2 more
WordPressjQueryFontAwesomeSwiper.js+4
2025-11-01T04:54:20.121Z