Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 757 of 775|Showing 37801-37850 of 38713
swissquote.ch favicon

Swissquote

swissquote.ch

74
financial servicesSwitzerlandlargeMEDIUM

The website demonstrates a generally strong technical security foundation, with excellent SSL/TLS, network security, and DNS health scores. However, significant gaps exist in compliance with GDPR and NIS2 regulations, indicated by missing privacy and cookie policies, absence of consent mechanisms, and lack of documented security and incident response procedures. These deficiencies expose the business to regulatory risks, potential fines, and reputational damage, especially in regions governed by GDPR and NIS2 mandates. While some medium severity issues like missing X-XSS-Protection header and lack of DKIM records impact security, the primary concern is the absence of governance frameworks and policies. Addressing these will not only reduce compliance risk but also improve overall security posture and stakeholder trust. Immediate prioritization of privacy compliance and formal security documentation is critical to align with legal obligations and industry best practices. The organization's proactive network and SSL/TLS configurations provide a solid base to build upon. Overall, the security posture is solid technically but requires urgent policy and compliance enhancements to mitigate business risks effectively.

85
40
25
85
100
90
100
financial servicestrading platforminvestmentbrokerageSwissquote
ReactReactDOMRequireJSJavaScript+4

Partner Domains:

swissquote.eu
subsidiarypending
swissquote.sg
subsidiarypending

+3 more partners

2025-06-13T18:13:52.511Z
superfund.de favicon

Die neue Dimension der Geldanlage-Investieren in eine digitale Zukunft

superfund.de

51
financeGermanymediumMEDIUM

The website's security posture is currently weak, with significant deficiencies across multiple critical areas including privacy compliance, email authentication, and security policy frameworks. Critical gaps in GDPR adherence expose the business to regulatory penalties and reputational damage, especially given its EU operations without adequate privacy measures. The absence of key HTTP security headers leaves the site vulnerable to common web-based attacks such as clickjacking, content injection, and cross-site scripting. Email infrastructure lacks essential authentication mechanisms, increasing risks of phishing and email spoofing. Additionally, missing incident response and security documentation undermines the organization’s ability to detect, respond to, and recover from security incidents effectively. While SSL/TLS and DNS configurations are relatively stronger, urgent attention is needed to enable HSTS and extend certificate validity. Overall, this assessment reveals a pressing need to implement foundational security controls and compliance policies to safeguard the business and its customers. Failure to address these issues promptly could result in severe operational, financial, and legal consequences.

15
15
17
55
80
85
90
financeinvestmentdigital financecookie consent
JavaScriptCookiebotnginxJavaScript modules

Partner Domains:

superfundgroup.com
subsidiarypending
wirecard.com
paymentpending

+1 more partners

2025-06-13T18:13:49.869Z
credit-agricole.com favicon

Crédit Agricole

credit-agricole.com

52
bankingFranceenterpriseMEDIUM

The website exhibits serious security deficiencies, particularly the complete absence of HTTPS encryption, which critically exposes data in transit and undermines user trust. Compliance with GDPR and NIS2 regulations is severely lacking, with missing cookie policies, consent mechanisms, and essential security governance documentation, posing significant legal and operational risks. While network security and email security demonstrate relatively strong postures, foundational issues around encryption and policy frameworks significantly elevate the organization's exposure to data breaches and regulatory penalties. Security headers and DNS configurations are suboptimal but less urgent relative to the critical gaps. Immediate remediation is necessary to protect customer data, maintain regulatory compliance, and uphold the organization's reputation. Without urgent action, the business remains vulnerable to interception, data leakage, and potential loss of customer confidence. Prioritizing HTTPS implementation alongside privacy and incident response policies will substantially improve the security stance. Overall, the current posture demands urgent attention to align with industry best practices and regulatory mandates.

80
18
5
85
-
85
100
bankingfinanceCrédit AgricoleFrancefinancial services+2 more
JavaScriptGoogle Maps APIAT Internettarteaucitron.js+3

Partner Domains:

credit-agricole.fr
subsidiarypending
2025-06-13T18:10:50.379Z