Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 100 of 107|Showing 4951-5000 of 5311
vrk.de favicon

Versicherer im Raum der Kirchen

vrk.de

0
FinanceGermanymediumHIGH

Versicherer im Raum der Kirchen (VRK) is a medium-sized German insurance provider specializing in sustainable and ethical insurance products tailored for individuals and church-related groups. The company offers a broad range of insurance services including auto, travel, home, liability, legal protection, health, and retirement products, with a strong emphasis on sustainability and customer-centric service. Their market position is niche but well-established within the church and non-profit sectors in Germany, supported by multiple sustainability and employer awards. Technically, the website is built on Adobe Experience Manager (AEM) and uses modern web technologies such as StencilJS components and responsive images. However, the site suffers from slow load times and lacks a valid SSL certificate, serving content over HTTP which significantly impacts security posture. Accessibility and SEO optimizations are well implemented, and the site is mobile-friendly with clear navigation. Security-wise, the absence of HTTPS and security headers is a critical weakness, exposing users to potential risks. No explicit security or incident response policies are found, and no vulnerability disclosure or security.txt files are present. Privacy compliance is strong with a comprehensive privacy policy and cookie consent mechanism in place. Overall, VRK's website demonstrates excellent content quality and business credibility but requires urgent improvements in security infrastructure to protect user data and enhance trust. Strategic recommendations include implementing HTTPS, adding security headers, and improving performance to align with best practices.

65
15
25
50
50
80
100
insurancesustainabilitycustomerportalgermanchurch+2 more
JavaScriptStencilJS componentsCustom VRK JS librariesPicturefill polyfill for responsive images+1
2025-06-14T19:39:33.930Z
ixopay.com favicon

IXOPAY GmbH

ixopay.com

0
FinanceAustriamediumMEDIUM

IXOPAY GmbH is a medium-sized enterprise based in Austria specializing in enterprise payment orchestration and tokenization solutions. The company offers a comprehensive platform designed to improve authorization rates, streamline PCI compliance, and unify payment data for merchants and enterprises globally. Their business model focuses on providing modular payment services and connectivity to multiple payment processors, targeting B2B clients in finance and technology sectors. The website demonstrates strong branding consistency, professional content, and trust indicators such as client testimonials and social media presence. Technically, the website leverages modern JavaScript technologies, integrates third-party services like Sentry for error tracking, ChiliPiper for lead routing, and TokenEx for tokenization. It is hosted behind Cloudflare, which provides DNS and CDN services. However, performance is currently slow, and accessibility is basic. SEO optimization is good with proper meta tags and structured data. From a security perspective, while the website implements several important HTTP security headers and secure cookie attributes, it suffers from a critical SSL/TLS misconfiguration with no valid certificate and no enabled TLS protocols. This severely impacts the security posture and trustworthiness of the site. Privacy compliance is generally good with a comprehensive privacy policy and GDPR indicators, but no explicit cookie consent mechanism was detected. Overall, IXOPAY presents a professional and credible business front with strong technical foundations but requires urgent remediation of SSL/TLS issues to ensure secure and trusted operations. Strategic improvements in performance and privacy consent mechanisms would further enhance their digital maturity.

75
43
25
50
50
85
100
paymentorchestrationtokenizationpcicompliancepaymentprocessingenterprisepayments
JavaScriptSentry (error tracking)ChiliPiper (lead routing)TokenEx (tokenization integration)+1

Partner Domains:

tokenex.com
partnerpending
chilipiper.com
partner68
2025-06-14T19:29:21.291Z
blackpeakgroup.com favicon

ION Analytics

blackpeakgroup.com

0
FinanceUnited StatesenterpriseMEDIUM

ION Analytics operates as an enterprise-level financial intelligence platform integrating multiple specialized services such as Mergermarket, Debtwire, Dealogic, and Blackpeak under the ION Group umbrella. The company targets capital markets participants including advisors, banks, corporates, investors, and lawyers, providing predictive analytics and market intelligence to empower decision-making. The website reflects a strong market position as a pioneer in combining human insight with machine intelligence for capital markets transformation. Technically, the website is built on WordPress with modern frameworks like Bootstrap and uses various JavaScript libraries for enhanced user experience. Hosting is supported by Microsoft Azure DNS infrastructure. While the site is rich in content and well-structured, performance is somewhat slow due to large page size and numerous resources. SEO and mobile optimization are well addressed, though accessibility is basic. Security posture is good with HTTPS enforced, TLS 1.3 support, OCSP stapling, and strong SPF and DMARC email policies. However, improvements such as enabling HSTS, DNSSEC, and CAA records would enhance security further. Privacy compliance is robust, featuring a comprehensive privacy policy, GDPR-compliant cookie consent mechanisms, and detailed user controls. Overall, the site demonstrates high professionalism and trustworthiness with clear business information and multiple trust signals. No critical security issues or blocking mechanisms were detected, allowing full content access and analysis.

90
43
25
85
62
85
100
financecapitalmarketsanalyticsmergersacquisitionsduediligence+3 more
WordPressBootstrap 5.2.3jQuery 3.7.1Masonry+6

Partner Domains:

mergermarket.com
subsidiary78
debtwire.com
subsidiaryanalyzing...

+3 more partners

2025-06-14T19:24:57.773Z
debtwire.com favicon

ION Group

debtwire.com

0
FinanceUnited StatesenterpriseMEDIUM

Debtwire is a specialized platform under the ION Group umbrella, providing predictive analytics and editorial insights focused on Leveraged Finance markets. The company leverages a combination of human expertise and AI-driven analytics to deliver market intelligence and restructuring data to financial professionals including advisors, banks, corporates, investors, and legal experts. Positioned as a next-generation service, Debtwire integrates community engagement and real-time alerts to maintain a competitive edge in the finance analytics sector. Technically, the website is built on WordPress with modern front-end frameworks and integrates multiple marketing and analytics tools, though it suffers from a critical lack of valid SSL/TLS configuration, impacting security posture. Privacy compliance is strong with GDPR-aligned cookie consent mechanisms and DMARC/SPF email policies. However, the absence of HTTPS and security headers lowers the overall security rating. The site is professionally designed with good content relevance and clear navigation, targeting enterprise-level finance professionals primarily in the United States. Strategic improvements in security infrastructure and explicit terms of service publication would enhance trust and compliance.

90
43
17
85
90
85
100
financeanalyticsleveragedfinancepredictiveanalyticsmarketintelligence+2 more
WordPressBootstrap 5.2.3jQuery 3.7.1Owl Carousel+9

Partner Domains:

ionanalytics.com
parent70
iongroup.com
parent77

+3 more partners

2025-06-14T19:24:57.712Z
mergermarket.com favicon

Mergermarket

mergermarket.com

0
FinanceUnited StatesenterpriseLOW

Mergermarket is a leading enterprise-level provider of predictive M&A intelligence, combining proprietary editorial insight with advanced analytics to serve a diverse audience including advisors, banks, corporates, investors, and legal professionals. The company operates under the parent organization ION Group and offers a suite of services such as predictive analytics, intelligent search, and investigative journalism to empower clients in the competitive M&A market. The website demonstrates a professional and consistent brand presence with excellent content quality and clear navigation tailored for its target audience. Technically, the website is built on WordPress with modern frameworks like Bootstrap 5 and integrates multiple analytics and marketing tools including Google Analytics, Microsoft Clarity, Hotjar, and Optimizely. Hosting and DNS services leverage Cloudflare and Microsoft Azure, ensuring reliable performance and security. The site is moderately performant with good mobile optimization and basic accessibility features. From a security perspective, the site enforces HTTPS with TLS 1.2, strong cipher suites, and HSTS policies. SPF and DMARC records are properly configured to protect email domains. Cookie consent mechanisms comply with GDPR requirements, and no critical vulnerabilities or exposed sensitive data were detected. However, the site could improve by enabling TLS 1.3, enhancing certificate transparency, and adding additional security headers. Overall, Mergermarket's digital presence reflects a mature and secure platform with strong business credibility and privacy compliance. The site effectively supports its business model and target market while maintaining a good security posture.

90
43
25
80
87
85
100
mapredictiveanalyticsfinancebusinessintelligencemarketintelligence
WordPressBootstrap 5jQueryOwl Carousel+10

Partner Domains:

ionanalytics.com
parent70
debtwire.com
subsidiaryanalyzing...

+3 more partners

2025-06-14T19:24:57.703Z
refinitiv.com favicon

LSEG

refinitiv.com

0
FinanceN/aenterpriseMEDIUM

LSEG Data & Analytics, part of the London Stock Exchange Group, is a leading global provider of financial market data, analytics, and workflow solutions serving a broad range of financial institutions worldwide. The company leverages strategic partnerships, such as with Microsoft, and exclusive access to Reuters News to deliver comprehensive and actionable financial insights. Their offerings span data feeds, analytics platforms, and specialized workflow tools designed for asset managers, investment bankers, traders, and wealth managers. Technically, the website is built on Adobe Experience Manager and integrates multiple modern technologies including Adobe Launch, Google Analytics, and OneTrust for privacy compliance. However, the site suffers from critical SSL/TLS misconfigurations, lacking a valid certificate and secure protocols, which severely impacts its security posture. Performance is moderate to slow, with a large page size and load time. Security-wise, while the site implements DMARC with a strict reject policy and uses cookie consent mechanisms, the absence of proper HTTPS and presence of a subdomain takeover vulnerability on ftp.refinitiv.com present significant risks. The site uses extensive analytics and marketing tools, indicating a mature digital marketing strategy but also raising privacy considerations. Overall, the website is professionally designed with excellent content quality and strong business credibility but requires urgent remediation of its SSL/TLS and subdomain security issues to improve trust and security compliance.

70
25
25
50
50
65
100
financedataanalyticsfinancialtechnologylsegrefinitiv
Adobe Launch (Adobe DTM)Google Analytics (gtag.js)Kaltura video playerDemandbase+2

Partner Domains:

lseg.com
parentpending
microsoft.com
partner69
2025-06-14T19:24:36.772Z
ionanalytics.com favicon

ION Analytics

ionanalytics.com

0
FinanceUnited StatesenterpriseMEDIUM

ION Analytics is a leading enterprise-level platform that integrates human insight with machine intelligence to transform global capital markets. The company offers a comprehensive suite of services including Mergermarket, Debtwire, Dealogic, and others, targeting advisors, banks, corporates, investors, and lawyers. Positioned as a pioneer in predictive intelligence for capital markets, ION Analytics operates under the parent company ION Group and maintains a strong market presence with multiple partner services integrated into its platform. The website reflects a professional and consistent brand image with excellent content quality and user experience. Technically, the website is built on WordPress and leverages modern technologies such as Bootstrap, jQuery, and various analytics and marketing tools including Google Tag Manager, Optimizely, and 6sense. Hosting is inferred to be on Microsoft Azure, with DNS and mail services managed via Azure and Microsoft Outlook protection. While the site is functionally rich, performance is somewhat slow due to a large page size and numerous resources. Mobile optimization is good, and SEO practices are well implemented. From a security perspective, the site enforces HTTPS with a valid SSL certificate, has SPF and DMARC records configured for email protection, and uses OCSP stapling. However, it lacks HTTP Strict Transport Security (HSTS) and DNSSEC, which are recommended for enhanced security. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is robust, featuring a comprehensive privacy policy, GDPR-compliant cookie consent mechanisms, and detailed user consent options. Overall, ION Analytics demonstrates a mature digital presence with strong business credibility and security posture. The main areas for improvement include enhancing DNS security, enabling HSTS, and optimizing site performance to improve user experience further.

90
43
25
50
62
85
100
financecapitalmarketsanalyticspredictiveintelligencegdpr+2 more
jQueryBootstrap 5.2.3MasonryHighstock+10

Partner Domains:

mergermarket.com
partnerpending
debtwire.com
partnerpending

+3 more partners

2025-06-14T19:02:41.002Z
dealogic.com favicon

Dealogic

dealogic.com

0
FinanceN/aenterpriseMEDIUM

Dealogic is a leading provider of software and data solutions for the global capital markets, serving top financial firms worldwide. As part of ION Analytics, Dealogic offers platforms tailored for investment banking, capital markets, syndicate, sales, trading, research, investment managers, and corporations. Their business model focuses on delivering industry-standard data and connectivity solutions that enhance deal-making, compliance, and market insights. The company maintains a strong market position as a trusted partner with extensive media presence and client base. Technically, the website is built on WordPress hosted on Microsoft Azure, leveraging modern web technologies including TLS 1.3, OCSP stapling, and multiple analytics and marketing tools such as Google Analytics, Facebook Pixel, LinkedIn Insight Tag, and 6sense. The site supports multiple languages and demonstrates good performance and mobile optimization, although accessibility is basic. From a security perspective, Dealogic implements strong email authentication with SPF and DMARC policies, uses secure TLS protocols, and has OCSP stapling enabled. However, it lacks HSTS enforcement, DNSSEC, and certificate transparency compliance. No explicit security policy or incident response information is published, and cookie consent mechanisms are not evident. The security posture is good but could be improved with additional best practices. Overall, Dealogic's website reflects a mature enterprise with strong branding, comprehensive business offerings, and a solid technical foundation. Strategic improvements in security transparency and privacy compliance would enhance trust and reduce risk exposure.

85
25
25
80
62
85
100
financeinvestmentbankingcapitalmarketsdataanalyticssoftwaresolutions+2 more
WordPressGoogle AnalyticsGoogle Tag ManagerFacebook Pixel+7

Partner Domains:

iongroup.com
parentpending
ionanalytics.com
partnerpending
2025-06-14T18:45:06.507Z
norisbank.de favicon

norisbank GmbH

norisbank.de

0
FinanceGermanylargeMEDIUM

norisbank GmbH is a direct bank subsidiary of Deutsche Bank Gruppe, headquartered in Bonn, Germany. The company offers a range of financial products including credit, checking accounts (Girokonto), savings accounts (Tagesgeld), credit cards, and securities depot services. The website demonstrates a strong market position with multiple awards and certifications, targeting private customers, business clients, students, and youth. The business model focuses on digital banking services with an emphasis on online and mobile banking platforms. Technically, the website is built on Adobe Experience Manager with integrations for Adobe Analytics and Usercentrics for consent management, reflecting a mature digital infrastructure. However, the website currently lacks a valid SSL/TLS certificate, which is a critical security vulnerability. Email security is well configured with SPF and DMARC policies. Privacy and cookie policies are present and GDPR compliant, but no explicit security or incident response policies are found. Overall, the site is professional, trustworthy, and well-optimized for SEO and accessibility, but requires urgent improvements in SSL security to protect user data and maintain trust.

65
18
25
70
50
85
100
bankingfinancedirectbankonlinebankingcredit+4 more
Adobe Experience Manager (AEM)Adobe LaunchUsercentrics Consent ManagementJavaScript+5

Partner Domains:

deutsche-bank.de
parent64
maxblue.de
partner61

+1 more partners

2025-06-14T18:32:19.516Z
berenberg.com favicon

Berenberg

berenberg.com

0
FinanceGermanylargeMEDIUM

Berenberg is a historic and well-established financial institution founded in 1590, headquartered in Hamburg, Germany, with a strong presence across Europe and the United States. The company offers a comprehensive suite of financial services including investment banking, corporate banking, asset management, and fund management. It is recognized as one of Europe's leading advisors with a large equity research team covering over 800 European companies. The website reflects a mature digital presence with detailed business information, multiple international office locations, and a focus on client service and sustainability. Technically, the website employs modern web technologies such as JavaScript frameworks, SVG graphics, lazy loading, and structured data for SEO. Hosting is on Microsoft Azure with DNS managed by Colt, and the SSL configuration is robust with TLS 1.2 and strong cipher suites. Cookie consent is managed via CookieFirst, ensuring compliance with privacy regulations. However, there is room for improvement in security headers and protocols, such as enabling HSTS, DNSSEC, and TLS 1.3. From a security perspective, the site demonstrates good practices including SPF and DMARC email protections, OCSP stapling, and no detected SSL vulnerabilities. The privacy policy and cookie consent mechanisms are comprehensive and GDPR compliant. No explicit incident response or vulnerability disclosure pages were found, which could be enhanced to improve transparency and security posture. Overall, Berenberg's website and digital infrastructure reflect a high level of professionalism and trustworthiness, supporting its position as a major player in the financial services sector. Strategic improvements in security protocols and transparency could further strengthen its risk management and client confidence.

80
25
25
65
92
85
100
financeinvestmentbankingassetmanagementcorporatebanking+4 more
JavaScriptSVGLazy loading imagesJSON-LD structured data+3

Partner Domains:

berenbergbank.de
partnerpending
berenberg-us.com
partnerpending

+3 more partners

2025-06-14T18:32:18.705Z
finstar.ch favicon

Finstar AG

finstar.ch

0
FinanceSwitzerlandmediumMEDIUM

Finstar AG is a Swiss-based company specializing in integrated IT solutions for private and universal banks as well as fintechs. With over 40 years of experience, the company offers customized and cost-effective banking software and services, positioning itself as a trusted partner in the financial technology sector. Their offerings include a broad range of products and services such as APIs, digital onboarding, and digital asset platforms, supported by a strong ecosystem of partner banks and financial institutions. The company is a subsidiary of Hypothekarbank Lenzburg AG and holds the prestigious 'swiss made software' label, underscoring its commitment to quality and reliability. Technically, the website is built on the Umbraco CMS and leverages modern JavaScript libraries including GSAP and ScrollMagic for enhanced user experience. It integrates Cookiebot for GDPR-compliant cookie consent management and Google Tag Manager for analytics and marketing. However, the website currently lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical security gap. Performance is slow, likely due to the large page size and resource count, but mobile optimization and accessibility are rated good. From a security perspective, the domain has well-configured SPF and DMARC records with a strict reject policy, reducing email spoofing risks. Despite this, the absence of HTTPS and security headers significantly lowers the security posture. No explicit security policy, incident response contacts, or vulnerability disclosure mechanisms were found. The cookie consent mechanism is comprehensive and transparent, supporting GDPR compliance. Overall, Finstar AG presents a professional and trustworthy digital presence with strong business credentials and compliance in privacy and cookie management. The primary risk lies in the lack of HTTPS, which should be addressed urgently to protect user data and maintain trust. Strategic improvements in security infrastructure and transparency around security policies would enhance the company's risk profile and customer confidence.

45
43
25
95
75
85
100
openbankingbankingsolutionsfintechintegrateditsolutionsswissmadesoftware+2 more
JavaScriptGoogle Tag ManagerCookiebotPhotoswipe+2

Partner Domains:

ersparniskassespeicher.ch
partnerpending
slwynigen.ch
partnerpending

+2 more partners

2025-06-14T18:32:03.834Z
bonify.de favicon

Forteil GmbH

bonify.de

0
FinanceGermanymediumMEDIUM

bonify.de is a German financial technology platform operated by Forteil GmbH, specializing in credit management and financial fitness services. The company provides users with free and transparent access to their SCHUFA credit data, credit scores, and personalized financial insights. With over 2.5 million users and certifications from TÜV Saarland and BaFin, bonify holds a strong market position in Germany's finance sector. The platform offers a comprehensive suite of services including credit monitoring, tenant credit reports, contract management, and credit offers, targeting consumers seeking to improve their financial health. Technically, bonify employs modern web technologies such as React with Next.js, Prismic CMS, and Cloudflare for hosting and DNS. The site integrates various third-party services including Google Tag Manager, Usercentrics for cookie consent, and Adjust for app marketing. Performance is moderate with good mobile optimization and SEO practices. Privacy compliance is well addressed with GDPR-aligned policies and cookie consent mechanisms. From a security perspective, bonify uses SSL encryption and domain verification but lacks advanced DNS security features like DNSSEC and HSTS. The DMARC policy is set to none, which could be strengthened to reduce email spoofing risks. The presence of a responsible disclosure page indicates security awareness, though no explicit incident response contacts were found. Overall, bonify.de demonstrates a mature digital presence with strong business and security fundamentals. Opportunities exist to enhance DNS and email security configurations and to publish more explicit security policies and incident response information to further build user trust and compliance posture.

85
18
35
85
67
80
100
financecreditschufabonittfinanzen+5 more
React (Next.js)Cloudflare DNS and CDNGoogle Tag ManagerUsercentrics (cookie consent)+8

Partner Domains:

schufa.de
partnerpending
tuev-saar.de
partnerpending
2025-06-14T18:22:14.276Z