Skip to main content

Finance security reports

Browse 5,572 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156240
Websites
130
Industries
113
Countries
52
Avg Score
Page 73 of 112|Showing 3601-3650 of 5572
bitcoin.com favicon

Bitcoin.com

bitcoin.com

73
FinanceN/alargeMEDIUM

Bitcoin.com is a well-established cryptocurrency platform offering a comprehensive suite of services including wallets, exchange, news, education, and crypto rewards. The website targets cryptocurrency users and investors seeking an all-in-one platform to manage digital assets. With approximately 10 years in business, Bitcoin.com positions itself as a trusted gateway to Bitcoin and other cryptocurrencies, emphasizing ease of use and accessibility. Technically, the website is built on a modern React-based Gatsby framework, leveraging JavaScript and third-party services such as Google Analytics and CookieYes for tracking and compliance. The site demonstrates good mobile optimization and a professional design, although some accessibility features could be enhanced. The absence of explicit security headers and detailed privacy or terms of service pages suggests room for improvement in compliance and security transparency. From a security perspective, the site enforces HTTPS and uses cookie consent mechanisms, but lacks visible security policies, incident response contacts, or vulnerability disclosure information. The WHOIS data is unavailable, which limits domain registration transparency and slightly impacts trustworthiness. However, the overall content quality, user testimonials, and broad ecosystem of related domains support a positive security posture. Overall, Bitcoin.com presents a professional and trustworthy platform with moderate technical maturity and security posture. Strategic improvements in security headers, privacy documentation, and domain registration transparency would enhance its risk profile and user trust.

70
58
17
100
75
85
100
bitcoincryptocurrencywalletexchangecryptonews+1 more
React (Gatsby 5.11.0)JavaScriptGoogle Tag ManagerCookieYes for cookie consent+1

Partner Domains:

branch.wallet.bitcoin.com
partner
verse.bitcoin.com
partner

+1 more partners

2025-07-09T13:51:14.097Z
mogo.lv favicon

Mogo Latvia SIA

mogo.lv

67
FinanceLatviamediumMEDIUM

Mogo Latvia SIA operates as a financial services provider specializing in auto loans and leasing solutions for both individuals and legal entities within Latvia. The company is part of the larger Mogo Finance Group and has established a solid market presence since its founding in 2013. Their website clearly targets Latvian customers seeking vehicle financing, offering a range of loan and leasing products. The business model focuses on accessible auto financing, leveraging digital channels for customer engagement. Technically, the website employs modern web technologies including Vue.js and Tailwind CSS, with integration of Google Analytics and Google Tag Manager for performance and marketing insights. The site is mobile-optimized and demonstrates good SEO practices, although accessibility features are basic. Hosting details are not explicitly disclosed, but the site uses HTTPS with strong security headers, indicating a secure infrastructure. From a security perspective, the website enforces HTTPS, uses reCAPTCHA on forms to prevent abuse, and implements several security headers to mitigate common web vulnerabilities. However, there is no publicly available security policy or incident response information, and no vulnerability disclosure program or security.txt file was found. The overall security posture is good but could be enhanced by publishing formal security policies and disclosure mechanisms. Overall, the website is professional, trustworthy, and compliant with GDPR, featuring clear privacy and cookie policies with consent mechanisms. The domain registration data aligns well with the business claims, supporting legitimacy. Recommendations include enhancing accessibility, publishing security policies, and establishing a vulnerability disclosure process to further strengthen trust and security maturity.

80
48
2
85
72
70
100
autoloansleasingfinancelatviavehiclefinancing
Tailwind CSSVue.jsGoogle Tag ManagerGoogle Analytics+1
2025-07-09T11:43:05.809Z
open-tax.info favicon

Open Tax Sp. z o.o.

open-tax.info

60
FinancePolandsmallMEDIUM

Open Tax Sp. z o.o. is a Polish small business specializing in comprehensive accounting, payroll, legal advisory, and company registration services. The company targets a broad range of Polish businesses, from sole proprietorships to larger companies, offering tailored financial and legal support. Their website is professionally designed, providing clear service descriptions, contact information, and legal documentation, positioning them as a trustworthy local service provider in the finance sector. Technically, the website uses standard web technologies with a custom CMS likely provided by a local web design firm. The site is mobile-optimized and SEO-friendly, though it lacks some advanced security headers and cookie consent mechanisms. No analytics or tracking scripts were detected, indicating a minimal data collection approach. From a security perspective, the site uses HTTPS but does not implement additional security headers or publish incident response contacts. The WHOIS data is unavailable due to privacy protection, which is common for small financial service providers but slightly reduces transparency. Overall, the site presents a low-risk profile with room for security and privacy improvements. Strategically, the company should enhance its security posture by adding security headers, implementing cookie consent for GDPR compliance, and considering publishing a security policy. These steps will improve trust and compliance, supporting business growth and client confidence.

25
35
17
65
77
80
100
accountinglegaladvisorypayrollcompanyregistrationpoland+1 more
HTML5CSS3JavaScript
2025-07-09T11:25:56.223Z
bva.hu favicon

Befektető-védelmi Alap

bva.hu

51
FinanceHungarysmallMEDIUM

Befektető-védelmi Alap operates as Hungary's Investor Protection Fund, providing compensation and protection services to investors within the Hungarian financial market. The website serves as an official informational portal detailing eligibility, compensation processes, regulatory framework, and organizational structure. The target audience primarily includes investors and financial market participants in Hungary. The business model is government-backed, focusing on investor protection and regulatory compliance. The site content is well-structured, professionally presented, and consistent with the organization's official role. Technically, the website is built on WordPress CMS using the Manduca theme, incorporating modern web technologies such as jQuery and MediaElement.js for multimedia content. The site demonstrates good mobile optimization, accessibility, and SEO practices, although some multimedia content has playback issues. Performance is moderate, with no significant technical deficiencies detected. From a security perspective, the site enforces HTTPS and implements a cookie consent mechanism, indicating attention to privacy compliance. However, explicit security headers are missing, and there is no publicly available security policy or incident response information. No vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms the domain's legitimacy and long-standing presence since 2000, consistent with a government or official entity. Overall, the website presents a trustworthy and professional front for the Investor Protection Fund, with minor recommendations to enhance security posture and transparency. The risk level is low, with no critical issues identified.

30
83
2
70
72
75
-
investorprotectioncompensationfinancehungarygovernment+2 more
WordPressjQueryMediaElement.jsGoogle Fonts
2025-07-09T06:44:30.647Z
oba.hu favicon

Országos Betétbiztosítási Alap

oba.hu

67
FinanceHungarymediumMEDIUM

Országos Betétbiztosítási Alap (OBA) is a Hungarian national deposit insurance fund that provides deposit protection and compensation services to bank customers in Hungary. It operates as a government-backed institution ensuring financial stability and depositor confidence. The website serves as an information portal for deposit insurance, compensation procedures, and related regulatory information, targeting Hungarian bank customers, financial institutions, and regulatory bodies. The business model is focused on deposit insurance and financial consumer protection within the Hungarian banking sector. Technically, the website is built on WordPress CMS, utilizing modern web technologies such as jQuery and Cookiebot for cookie consent management. It employs HTTPS with strong security headers and integrates Google Analytics for usage tracking. The site demonstrates good mobile optimization, accessibility, and SEO practices, reflecting a mature digital infrastructure suitable for a government-related entity. From a security perspective, the website enforces HTTPS, uses security headers, and implements a comprehensive cookie consent mechanism aligned with GDPR requirements. No critical vulnerabilities or exposed sensitive data were detected. However, the site lacks a publicly available security policy, incident response contact, and vulnerability disclosure page, which are recommended for enhanced transparency and security posture. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. It effectively communicates its services and maintains a secure environment for visitors. Strategic improvements in security policy publication and incident response transparency would further strengthen its security and compliance profile.

50
83
2
70
65
85
100
financedepositinsurancegovernmenthungarycookieconsent+2 more
WordPressjQueryCookiebotGoogle Analytics
2025-07-09T06:44:25.638Z
uwcu.org favicon

UW Credit Union

uwcu.org

63
FinanceUnited StateslargeMEDIUM

UW Credit Union is a well-established financial cooperative serving the Wisconsin community, particularly the University of Wisconsin population. The website offers a broad range of financial products including checking and savings accounts, credit cards, mortgages, auto and student loans, and investment services. The institution positions itself as a friendly, local lender with competitive rates and member-focused services. The digital presence is professional and comprehensive, reflecting a mature organization with a strong regional market position. Technically, the website leverages a modern technology stack including Kentico CMS, Google Analytics, Tag Manager, Hotjar, and various marketing pixels for user tracking and analytics. The site is mobile-optimized, accessible, and SEO-friendly, with good performance metrics. Security best practices are observed with HTTPS enforcement, security headers, and secure login portals, although explicit incident response and vulnerability disclosure information are not publicly available. The security posture is strong with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear privacy and cookie policies and consent mechanisms, aligning with GDPR standards. The lack of WHOIS transparency is typical for financial institutions and does not detract from the domain's legitimacy given the consistent branding and professional content. Overall, UW Credit Union's website demonstrates a high level of digital maturity, security awareness, and business credibility. Strategic recommendations include publishing incident response contacts, adding vulnerability disclosure policies, and enhancing security framework documentation to further strengthen trust and compliance.

15
53
10
82
75
85
100
financecreditunionbankingmortgagesloans+3 more
Google AnalyticsGoogle Tag ManagerHotjarTikTok Pixel+4
2025-07-09T05:37:59.658Z
fundrbird.com favicon

Fundrbird

fundrbird.com

68
FinanceN/amediumMEDIUM

Fundrbird is a specialized SaaS provider offering integrated fund operations software tailored for private equity and venture capital funds. The platform automates fund accounting, investor reporting, KYC & AML compliance, and investor onboarding, serving over 550 funds with EUR 50 billion assets under administration. The company positions itself as a mature and trusted solution with a strong client retention rate and ISO 27001:2022 certification, indicating a commitment to information security. Technically, the website is built on a modern Next.js framework with React, hosted with Cloudflare DNS and registered via Amazon Registrar. It employs Google reCAPTCHA v3 for form security and demonstrates excellent mobile optimization and performance. SEO and accessibility are well addressed, though some security headers are missing. Security posture is solid with HTTPS enforced and domain registration locks in place, but improvements are recommended such as enabling DNSSEC, adding security headers, and publishing incident response and security policies. Privacy compliance is partial; a privacy policy exists but lacks cookie consent mechanisms and GDPR compliance indicators. Overall, Fundrbird presents a professional, trustworthy, and technically sound online presence with minor gaps in privacy compliance and security best practices. Strategic enhancements in these areas would further strengthen their security posture and regulatory alignment.

40
53
17
85
77
85
100
privateequityventurecapitalfundaccountingkycaml+3 more
Next.jsReactCloudflare DNSGoogle reCAPTCHA v3
2025-07-09T04:25:55.520Z
M

Mastercard

mastercard.hu

66
FinanceHungaryenterpriseMEDIUM

Mastercard.hu is the Hungarian localized website of Mastercard, a global leader in payment technology and financial services. The site provides comprehensive information about Mastercard's mission, products, cybersecurity initiatives, and business solutions tailored for the Hungarian market. It targets both consumers and businesses, emphasizing secure, intelligent, and accessible payment transactions. The website reflects Mastercard's strong market position and enterprise scale with consistent branding and professional content. Technically, the site is built on Adobe Experience Manager with modern web technologies including JavaScript modules, Adobe DTM for tag management, and OneTrust for cookie consent. It is hosted via Akamai CDN, ensuring good performance and availability. The site is mobile optimized and includes SEO best practices, although accessibility features could be enhanced. From a security perspective, the website enforces HTTPS with strong SSL configuration and includes standard security headers. It integrates cookie consent mechanisms compliant with GDPR. However, explicit security policies and incident response information are not publicly detailed. No vulnerabilities or exposed sensitive data were detected in the HTML content. Overall, the site demonstrates a mature digital presence with strong business credibility and privacy compliance. Recommendations include publishing detailed security policies, adding vulnerability disclosure mechanisms, and improving accessibility to further enhance trust and compliance.

30
25
47
70
82
85
100
financepaymentstechnologycorporatehungary+1 more
JavaScriptOneTrust Cookie ConsentAdobe DTM (Dynamic Tag Manager)DXP UI (Digital Experience Platform)+2

Partner Domains:

mastercard.com
parent
mastercardservices.com
subsidiary

+2 more partners

2025-07-09T03:23:31.892Z
simplepay.hu favicon

SimplePay

simplepay.hu

48
FinanceHungarylargeHIGH

SimplePay is a prominent Hungarian payment solutions provider offering a broad range of services including online payments, POS terminals, and mobile POS solutions. The company operates under the SimplePay brand, which is a continuation of OTP Mobil Kft.'s payment services, positioning itself as a key player in the Hungarian financial technology sector. Their offerings target both merchants and consumers, providing seamless payment experiences with innovative features such as the qvik instant transfer system. Technically, the website is built on WordPress with modern technologies like Bootstrap 5, Swiper.js, and jQuery 3.7.1. It employs SEO best practices via Yoast SEO Premium and integrates Google Analytics and Facebook Pixel for analytics and marketing. The site is mobile-optimized and includes accessibility features, though some improvements could be made in security headers. From a security perspective, the site uses HTTPS with a good SSL configuration and implements Google Invisible reCAPTCHA on forms to mitigate spam and abuse. Cookie consent mechanisms are robust and GDPR compliant. However, explicit security policies and incident response contacts are not publicly available, which could be improved. Overall, the website is professional, trustworthy, and compliant with relevant privacy regulations. It demonstrates a mature digital presence suitable for a large financial services provider, with strong branding and user experience. Minor technical and security enhancements could further strengthen its posture.

15
25
2
98
72
85
-
paymentfinancee-commercehungarysimplepay+3 more
jQuery 3.7.1Swiper.jsBootstrap 5Yoast SEO Premium+2

Partner Domains:

simple.hu
partner
hellopay.hu
partner
2025-07-09T03:21:06.489Z
denieuweschatkamer.nl favicon

De Nederlandsche Bank

denieuweschatkamer.nl

74
FinanceNetherlandslargeMEDIUM

De Nieuwe Schatkamer is a public-facing exhibition platform operated by De Nederlandsche Bank, the central bank of the Netherlands. The website offers visitors educational content about the economy, money collections, and art, supported by multimedia such as videos and games. It targets a broad audience including students, visitors, and the general public interested in finance and culture. The business model is government-driven, focusing on education and cultural engagement rather than commercial activities. The site is well-branded and consistent with the official bank identity. Technically, the website uses modern web technologies including Alpine.js and Google Tag Manager for analytics and marketing. The site is mobile-optimized, accessible, and SEO-friendly with proper metadata and structured navigation. Performance is moderate with good user experience and clear content presentation. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms compliant with GDPR. However, it lacks explicit security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is good with clear cookie and privacy notices. Overall, the website presents a low-risk profile with strong legitimacy and trust indicators. Strategic improvements include adding security headers, publishing a security policy, and providing direct contact information for privacy and security inquiries.

85
83
2
80
85
70
100
financeeducationmuseumbankexhibition+2 more
HTML5CSS3JavaScriptAlpine.js+2
2025-07-09T02:13:24.468Z
cardgate.com favicon

CardGate B.V.

cardgate.com

54
FinanceNetherlandsmediumMEDIUM

CardGate B.V. operates a professional online payment gateway service tailored for webshops, primarily targeting Dutch and European e-commerce businesses. The company offers a broad range of payment methods, easy integration via plugins and APIs, and a management dashboard called Mijn CardGate. The business model is transaction-based with volume discounts, positioning CardGate as a competitive player in the payment services market. The website is well-structured, multilingual, and provides clear business and contact information, enhancing user trust and accessibility. Technically, the website is built on WordPress with a modern tech stack including jQuery, Google Analytics, and various UI libraries. It employs HTTPS with strong SSL configuration and uses Google reCAPTCHA v3 for form security. However, some security headers are missing, and no explicit cookie consent mechanism was detected, indicating areas for improvement in privacy compliance. The site is mobile-optimized and SEO-friendly, supporting good user experience and discoverability. From a security perspective, CardGate demonstrates good practices such as encrypted connections and input sanitization. The partnership with CURO Payments, a licensed payment service provider under Dutch Central Bank supervision, adds a strong trust signal. The absence of WHOIS domain registration data is a notable concern, potentially indicating privacy protection or registration issues that should be clarified to avoid trust erosion. Overall, CardGate presents a secure, professional, and user-friendly payment gateway service with minor gaps in privacy compliance and domain registration transparency. Strategic improvements in security headers, cookie consent, and WHOIS data transparency would enhance trust and compliance.

35
53
17
65
-
85
100
paymentgatewaye-commercewebshoponlinepaymentsdutchbusiness+2 more
WordPressPHPjQueryGoogle Analytics+9

Partner Domains:

curo-payments.nl
partner
dnb.nl
partner

+2 more partners

2025-07-08T23:51:27.390Z
money.pl favicon

Grupa Wirtualna Polska

money.pl

55
FinancePolandlargeMEDIUM

Money.pl is a leading Polish financial news portal operated by Grupa Wirtualna Polska, providing comprehensive financial, economic, and business information to a Polish-speaking audience. The site offers real-time stock market data, currency exchange rates, economic indicators, business guides, and calculators, positioning itself as a trusted source for finance-related content in Poland. The website is part of a large media group, which enhances its market credibility and reach. Technically, Money.pl employs modern web technologies including React, service workers, and advanced ad monetization frameworks such as Prebid.js and Google AdSense. The site is well-optimized for desktop and mobile platforms, with good SEO and accessibility features. Privacy and cookie consent mechanisms are robust and GDPR compliant, reflecting a mature digital infrastructure. From a security perspective, the website enforces HTTPS and demonstrates good security practices, although explicit security headers were not fully confirmed in the HTML. No vulnerabilities or exposed sensitive data were detected. The absence of public WHOIS data is typical for .pl domains and does not detract from the site's legitimacy, given its affiliation with a reputable media group. Overall, Money.pl presents a low-risk profile with strong business credibility, good technical implementation, and solid privacy compliance. Strategic recommendations include enhancing explicit security headers, publishing a security.txt file for vulnerability disclosure, and providing clearer incident response contacts to further strengthen trust and security posture.

15
10
17
60
72
80
100
financebusinessstockmarketcurrencyeconomicnews+2 more
React (indicated by react-helmet meta tags)Service WorkersJavaScript ES6+Prebid.js (header bidding for ads)+5

Partner Domains:

wp.pl
partner
holding.wp.pl
parent
2025-07-08T06:20:05.044Z
incore.ch favicon

Incore Holding AG

incore.ch

58
FinanceSwitzerlandmediumMEDIUM

Incore Holding AG is a Swiss-based owner-managed group specializing in innovative financial and ICT solutions, serving banks, asset managers, financial intermediaries, and corporates. With over 40 years of experience, the group operates through subsidiaries including Incore Bank AG, Incore Technology AG, and Incore Asset Management Solution AG, offering a comprehensive suite of services from traditional banking to digital asset management and modular banking platforms. The company holds a strong market position in Switzerland with international branches and a focus on B2B services. Technically, the website is built on TYPO3 CMS with modern web technologies including Bootstrap and integrates Google Tag Manager and Cookiebot for analytics and privacy compliance. The site is mobile-optimized, well-structured, and performs moderately well. Security practices include HTTPS enforcement and cookie consent mechanisms, though some security headers could be improved. The security posture is solid with no visible vulnerabilities or exposed sensitive data. Privacy compliance is robust, featuring a comprehensive privacy policy and cookie consent. However, explicit security policies and incident response contacts are not published. The domain WHOIS data aligns well with the business claims, supporting legitimacy. Overall, Incore demonstrates a mature digital presence with strong business credibility and compliance, suitable for its financial and technology sector audience.

30
68
17
70
72
75
40
bankingtechnologyfinanceb2bdigitalassets+2 more
TYPO3 CMSBootstrap (navbar classes)Google Tag ManagerCookiebot+2

Partner Domains:

ebanking.incorebank.ch
subsidiary
ext01.360t.com
partner

+1 more partners

2025-07-08T01:00:39.591Z
pointsforts.ch favicon

Banque Cantonale Vaudoise

pointsforts.ch

65
FinanceSwitzerlandlargeMEDIUM

Banque Cantonale Vaudoise (BCV) operates a professional online magazine focused on the economy of the Vaud canton in Switzerland. The website provides financial market commentary, investment strategies, regional economic news, and entrepreneurship insights targeted at residents and businesses in the region. BCV leverages this platform to engage its audience with relevant financial content and maintain its position as a leading regional bank. The site is well-branded, consistent, and offers subscription options including RSS feeds and email notifications. Technically, the website is built on Adobe Experience Manager (AEM) CMS, utilizing modern JavaScript libraries and Adobe Launch for tag management. Performance is moderate with good mobile optimization and basic accessibility features. The site uses HTTPS and includes monitoring scripts from Dynatrace, but lacks visible security headers and explicit cookie consent mechanisms. From a security perspective, the site shows good practices such as secure forms and no exposed sensitive data. However, it lacks published security policies, incident response contacts, and vulnerability disclosure information. The WHOIS data confirms the domain's legitimacy and consistency with the bank's identity, supporting a high trust level. Overall, the website is professional, trustworthy, and content-rich, but could improve its privacy compliance and security posture by adding cookie consent, security headers, and incident response information.

75
35
2
70
77
80
100
financeeconomyinvestmentregionalnewsbanking
JavaScriptAdobe LaunchDynatrace Ruxit agentFontAwesome icons
2025-07-07T23:52:35.649Z
indexcoop.com favicon

Index Cooperative

indexcoop.com

66
FinanceN/amediumMEDIUM

Index Cooperative is a decentralized autonomous organization (DAO) focused on providing innovative DeFi products such as leveraged tokens and yield optimization strategies. The company positions itself as a market leader in on-chain structured products, offering automated and user-friendly tools for crypto investors and traders. Their product suite includes leverage tokens with built-in liquidation protection and smart looping strategies to amplify returns. The website demonstrates a high level of professionalism, with comprehensive content, strong branding, and clear navigation. Technically, the site is built using modern frameworks including Astro and React, with performance and mobile optimization rated as excellent. The use of advanced frontend technologies and integration with DeFi platforms like Ethereum and Arbitrum reflects a mature digital infrastructure. Analytics and error monitoring are implemented via Sentry, and cookie consent mechanisms are in place to ensure privacy compliance. From a security perspective, the project has undergone multiple independent smart contract audits and maintains an active bug bounty program through Immunefi, indicating a strong commitment to security best practices. The website enforces HTTPS and likely employs standard security headers, although explicit header details are not visible. No vulnerabilities or exposed sensitive data were detected in the analysis. Overall, the website and project present a low-risk profile with strong trust indicators, though the absence of WHOIS registrant data and explicit incident response contacts slightly reduce the business credibility score. Strategic recommendations include publishing clearer incident response contacts, security.txt files, and enhancing transparency around data protection roles to further strengthen trust and compliance.

30
53
35
85
72
65
100
defifinancecryptocurrencyleveragetokensyieldfarming+2 more
AstroReactTailwind CSSSlick Carousel+1
2025-07-07T23:52:10.558Z