Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1 of 1|Showing 1-40 of 40
swissquote.ch favicon

Swissquote

swissquote.ch

0
financial servicesSwitzerlandlargeMEDIUM

The website demonstrates a generally strong technical security foundation, with excellent SSL/TLS, network security, and DNS health scores. However, significant gaps exist in compliance with GDPR and NIS2 regulations, indicated by missing privacy and cookie policies, absence of consent mechanisms, and lack of documented security and incident response procedures. These deficiencies expose the business to regulatory risks, potential fines, and reputational damage, especially in regions governed by GDPR and NIS2 mandates. While some medium severity issues like missing X-XSS-Protection header and lack of DKIM records impact security, the primary concern is the absence of governance frameworks and policies. Addressing these will not only reduce compliance risk but also improve overall security posture and stakeholder trust. Immediate prioritization of privacy compliance and formal security documentation is critical to align with legal obligations and industry best practices. The organization's proactive network and SSL/TLS configurations provide a solid base to build upon. Overall, the security posture is solid technically but requires urgent policy and compliance enhancements to mitigate business risks effectively.

85
40
25
85
100
90
100
financial servicestrading platforminvestmentbrokerageSwissquote
ReactReactDOMRequireJSJavaScript+4

Partner Domains:

swissquote.eu
subsidiarypending
swissquote.sg
subsidiarypending

+3 more partners

2025-06-13T18:13:52.511Z
tell.group favicon

Dubai Tell Limited, Geneva Tell SA, Algiers Tell Markets SPA

tell.group

0
financial servicesUAE, Switzerland, AlgeriamediumHIGH

The website's security posture is critically weak, exposing the business to significant risks including data breaches, regulatory non-compliance, and operational disruptions. The absence of HTTPS encryption is a critical vulnerability that compromises all data transmissions, severely impacting user trust and violating GDPR and NIS2 requirements. Missing essential security headers further increase susceptibility to common web attacks such as clickjacking, XSS, and content injection. Lack of privacy and cookie policies, as well as the absence of consent mechanisms, place the business at high risk of legal penalties under data protection regulations. Critical services like MySQL and FTP are publicly exposed, providing easy attack vectors for threat actors. Additionally, there is a notable deficit in security governance, including lack of incident response, security policies, and information security frameworks, which undermines the organization's ability to manage and mitigate risks effectively. While email and DNS security show some strengths, these are overshadowed by critical gaps in network and application security. Immediate action is required to address these issues to protect business assets, customer data, and maintain regulatory compliance.

35
15
5
85
-
85
60
financial servicescoming soonWordPressDFSACOSOB
jQueryTailwind CSSFontAwesomeFont Awesome

Partner Domains:

dfsa.ae
servicepending
cosob.org
servicepending
2025-06-13T18:10:50.348Z