SaaS Ranking

HTTPS enforced with HSTS in Payment processing

We measure this ourselves on their own site. It is the cheapest security control there is.

88% here against 75% across every category we measure. Payment processing sits above the overall share for this criterion.

Back to HTTPS enforced with HSTS across all categories, or to Payment processing.

Published

HTTP redirects to HTTPS and the HSTS header is set.

VendorWhat we found
Adyen https://adyen.com/
Airwallex https://airwallex.com/
Braintree https://braintreepayments.com/
Chargebee https://chargebee.com/
Computop https://computop.com/
FastSpring https://fastspring.com/
GoCardless https://gocardless.com/
Klarna https://klarna.com/
Lemon Squeezy https://lemonsqueezy.com/
Mangopay https://mangopay.com/
Maxio https://maxio.com/
Mollie https://mollie.com/
Novalnet https://novalnet.de/
Nuvei https://nuvei.com/
Paddle https://paddle.com/
Payoneer https://payoneer.com/
Payrexx https://payrexx.com/
Paystack https://paystack.com/
Rapyd https://rapyd.net/
Razorpay https://razorpay.com/
Recurly https://recurly.com/
Square https://squareup.com/
Stancer https://stancer.com/
Stripe https://stripe.com/
SumUp https://sumup.com/
Unzer https://unzer.com/
Worldline https://worldline.com/
Zuora https://zuora.com/

No enforced HTTPS with HSTS found.

We reached at least one address for each of these vendors and none of them carried it. That is what we found at the addresses we checked, on the date we checked them, and not a statement about what the vendor has.

VendorWhat we found
Bolt 2 addresses checked
Checkout.com 2 addresses checked
Nexi 2 addresses checked
Xendit 2 addresses checked

Not measured

We could not look at these, or their robots.txt asks us not to. That says something about our measurement, not about them, and they are left out of the percentage above.

None. Every vendor here was measured for this criterion.

Found something we missed? Tell us and the next run picks it up.