INDEX / DIRECTORY / DIOR / V-DIG

Dior V-DIG

DIGITAL INFRASTRUCTURE AUDIT UPDATED 2026-05-18
V-DIG Score 0.79 /10 E Dior — BDS-1000 165
V-DIG 0.79

Evidence-only forensic audit. Scoring happens downstream — see the main dossier for the composite assessment.

V-DIG Audit — Christian Dior SE

Prepared: 2026-05-01 | Audit Phase: V-DIG | Parent Entity: LVMH Moët Hennessy Louis Vuitton SE


Enterprise Technology Stack & Vendor Relationships

Controlling Shareholder Investment in Israeli-Origin Cybersecurity

The most significant documented link between Christian Dior SE’s ownership structure and Israeli technology concerns Wiz, the Israeli-founded cloud-native application protection platform (CNAPP). Aglaé Ventures — the investment vehicle of Bernard Arnault, who serves simultaneously as Chairman and CEO of both LVMH and Christian Dior SE — participated in a funding round for Wiz in 2023.12 This relationship sits at the level of Arnault’s personal and family-office capital deployment, not a corporate procurement or licensing contract entered into by Dior SE or LVMH as an operating enterprise.

Wiz was co-founded by Assaf Rappaport, Yinon Costica, Ami Luttwak, and Roy Reznik, all publicly documented alumni of Israeli military intelligence Unit 8200, who previously co-founded Adallom (acquired by Microsoft in 2015) and subsequently led Microsoft Azure’s Cloud Security Group before departing to found Wiz.13 The firm’s product line covers cloud workload protection, cloud security posture management (CSPM), and data security posture management (DSPM) across multi-cloud environments.

No public evidence has been identified of a direct licensing, subscription, or enterprise services contract between Christian Dior SE or LVMH and Wiz. The relationship is one of minority venture-capital investment by the group’s ultimate controlling shareholder.12 Arnault’s family holding structure — Financière Agache, which controls both LVMH and Christian Dior SE — provides the vehicle through which Aglaé Ventures operates.4

The Google–Wiz acquisition (reported at $32 billion, with European Commission review underway as of early 2025 reporting) is noted in the ecosystem context.2 Final closure status should be confirmed against EC and SEC primary filings.

Other Israeli-Origin Cybersecurity Vendors

Check Point Software Technologies issued external consumer-facing phishing-awareness commentary following the May 2025 Dior data breach.56 This constitutes independent threat-intelligence publication by a third party, not evidence of a vendor relationship. Check Point and Wiz announced a strategic partnership in 2024 covering end-to-end cloud security,7 but Dior or LVMH are not documented parties to that arrangement.

CyberArk and SentinelOne announced a joint endpoint and identity security partnership in 2024,8 and CyberArk separately entered a cloud-identity partnership with Wiz in 2024.9 None of these inter-vendor agreements document Dior or LVMH as a customer, user, or referenced deployment site.

For Verint, Nice Systems, Palo Alto Networks, and Claroty: no public evidence of direct licensing, subscription, integration, or services relationships with Christian Dior SE or LVMH has been identified in corporate filings, vendor press releases, procurement records, or credible trade reporting.

Digital Transformation Integrators

Publicis Sapient is publicly documented as a digital transformation integrator for Dior and the broader LVMH portfolio, engaged on unified commerce experiences and immersive retail activations.10 Publicis Sapient maintains global delivery operations including Israel-based resources, but no public evidence identifies Publicis Sapient as having mandated, procured, or deployed Israeli-origin cybersecurity or analytics products specifically within its Dior or LVMH engagement scope. No public evidence identified that these engagements introduced Israeli-origin technology products.

LVMH Innovation Award & Startup Ecosystem Pipeline

LVMH operates a structured startup co-development pipeline — La Maison des Startups (Station F, Paris)11 and the annual LVMH Innovation Award12 — through which technology startups are onboarded as commercial partners for Maisons including Dior. This pipeline has produced at least two confirmed Israeli-origin technology vendor relationships (detailed under Sections 2 and 6).


Surveillance, Biometrics & Retail Technology

Virtual Try-On Biometric Litigation (Illinois)

A proposed class-action was filed against Christian Dior Inc. in the United States alleging that the company unlawfully collected Illinois residents’ biometric information through a virtual try-on feature on its e-commerce website, in violation of the Illinois Biometric Information Privacy Act (BIPA).13 The technology vendor powering the virtual try-on feature is not named in the public case record. The ClassAction.org case listing records the case as dismissed.13 No public evidence connects the underlying try-on technology to an Israeli-origin vendor.

Kahoona — Confirmed AI Behavioral Analytics Deployment

Kahoona, an Israel-headquartered AI behavioral analytics company, is a confirmed Dior technology partner. Kahoona received the “Best Business Prize” at the 2025 LVMH Innovation Award ceremony, explicitly recognized for its collaboration with Christian Dior.1415

Kahoona’s published case studies document commercially attributed performance improvements from a “global luxury fashion leader” deployment — consistent with the LVMH award citation confirming the Dior relationship — including: a 24.2% improvement in click-through rate, 19.1% increase in pages per session, 12.8% growth in average order value, and 166% more new customer acquisitions.1617

Kahoona’s technology operates by ingesting in-page micro-interactions from unauthenticated website visitors — including mouse movement patterns, scroll velocity, click cadence, and hesitation intervals — and generating real-time predictive behavioral segmentation without reliance on third-party cookies or persistent login identity.1617 This is a confirmed live commercial deployment on Dior’s digital properties, not a pilot or inferred relationship.

No public evidence has been identified that Kahoona’s platform, as deployed by Dior, has been used for workforce surveillance, physical store monitoring, social media monitoring, or any application beyond e-commerce conversion optimization.

Physical Store Surveillance Technologies

Trigo (Israeli computer vision, frictionless checkout), AnyVision/Oosto (Israeli facial recognition), BriefCam (Israeli video analytics), and Trax Retail (Israeli shelf-intelligence and image recognition): no public evidence of direct deployment of any of these Israeli-origin surveillance or retail-intelligence vendors within Dior or LVMH boutiques has been identified. Claims in prior AI research that Trax “serves brands like Dior,” sourced from a comparison aggregator page rather than any primary corporate or vendor disclosure, are assessed as insufficiently verified.18


Cloud Infrastructure, Data Residency & Sovereign Cloud Participation

AWS Infrastructure — Confirmed via Breach Forensics

The May 2025 Dior data breach is confirmed by multiple independent sources.195206 The breach involved unauthorized access to a customer database and exposed the personal data of customers principally in Asia, with South Korea and China explicitly confirmed as affected markets.19521 Breach analysis sources cite AWS S3 as the storage environment involved,206 constituting the primary public confirmation of Dior’s use of AWS for customer data storage operations.

Technically granular forensic details appearing in some secondary analyses — including specific IP attribution, script filenames, IAM policy configurations, and TLS cipher specifications — are not corroborated by any primary source (vendor disclosure, regulatory notice, or credible investigative journalism) and should be treated as unverified pending primary confirmation.

Chinese PIPL Regulatory Investigation

Chinese data protection authorities initiated a regulatory investigation into Dior’s Shanghai subsidiary over alleged violations of the Personal Information Protection Law (PIPL), including cross-border personal data transfers conducted without adequate legal basis and deficiencies in encryption safeguards.21 China Briefing’s reporting on this investigation is the primary English-language source of record.21 The final penalty amount has not been confirmed in a primary regulatory notice available in public sources as of memo date.

South Korean PIPC Enforcement

A South Korean Personal Information Protection Commission (PIPC) enforcement action involving Dior Couture, Louis Vuitton, and Tiffany & Co., with a cited penalty of KRW 36.033 billion (~$25M USD), is referenced in the prior research but is not independently confirmed in a primary PIPC regulatory decision notice within available sources. This claim requires verification against PIPC official records before it can be treated as established fact.

Project Nimbus — Indirect Infrastructure Relationship

Project Nimbus is a confirmed $1.2 billion contract between the Israeli government and Amazon Web Services and Google Cloud to construct sovereign cloud infrastructure for the Israeli government and military.222324 AWS opened its Israel (Tel Aviv) Region with three availability zones in 2023.2526

No public evidence has been identified that Christian Dior SE or LVMH routes any workloads to the AWS Israel (Tel Aviv) region specifically, holds any contractual relationship with the Nimbus programme, or provides services marketed for Israeli state digital sovereignty or military data resilience. The relationship between Dior’s documented AWS usage and Project Nimbus is structural and indirect: Dior’s global AWS spend contributes to Amazon’s corporate revenues as a company that also operates the Nimbus contract. No operational overlap has been publicly documented.

Proprietary Data Centre Presence in Israel

No public evidence has been identified that Christian Dior SE or LVMH operates, leases, or co-locates proprietary data centre infrastructure within Israel. The group’s confirmed in-country presence is limited to commercial retail.


Defence, Intelligence & Security Sector Technology Relationships

Military & Intelligence Contracts

No public evidence identified of any contract, partnership, memorandum of understanding, or services agreement between Christian Dior SE, LVMH, or any confirmed subsidiary and the Israeli Ministry of Defence, Israel Defense Forces (IDF), or Israeli intelligence agencies (Mossad, Shin Bet, Unit 8200 as an institutional body).

Dual-Use Technology Provision

No public evidence identified that any commercially deployed Dior or LVMH technology — including the confirmed Kahoona behavioral analytics deployment — has been reported, documented, or alleged to have been repurposed or made available for military, intelligence, or law-enforcement surveillance operations within Israel or the Occupied Palestinian Territory.

Offensive Cyber Capabilities

No public evidence identified. Christian Dior SE and LVMH are luxury goods, fashion, and retail conglomerates. No involvement in offensive cyber capability development, digital weapons programs, or state-level signals intelligence infrastructure has been identified.


AI, Algorithmic & Autonomous Systems

AI Provision to State or Security Bodies

No public evidence identified of any provision of AI systems, machine learning models, computer vision infrastructure, or autonomous decision-support technology by Christian Dior SE or LVMH to Israeli state, military, or security entities.

Confirmed Commercial AI Deployments

The confirmed AI deployment footprint at Dior includes:

Training Data Provenance

No public evidence identified that Dior’s or LVMH’s AI or ML models have been trained on surveillance-derived datasets, occupied-territory data, or data originating from Israeli state or military operations. Where Israeli-origin startup technologies (Kahoona, Apply Design) are refined against LVMH/Dior proprietary commercial data (e-commerce behavioral data, product imagery), this is documented in a commercial context exclusively.

Autonomous Systems & Lethal Applications

No public evidence identified.


Technology Ecosystem & R&D Footprint

R&D and Engineering Presence in Israel

No public evidence identified that Christian Dior SE or LVMH operates R&D facilities, engineering offices, innovation labs, or technical centres within Israel. The group’s confirmed in-country footprint is retail-only.

Physical Retail Presence in Israel

Dior operates confirmed physical retail boutiques in Israel:

Investment & Venture Capital — Israeli Technology Companies

No corporate acquisitions of Israeli technology companies by Dior SE or LVMH as the direct acquiring entity have been identified.

Patent & IP Relationships with Israeli Research Institutions

No public evidence identified of patent portfolios, co-invention filings, licensing agreements, or joint research and development arrangements between Dior or LVMH and Israeli universities (Technion, Hebrew University, Weizmann Institute, Ben-Gurion University) or Israeli state research bodies.


Civil Society Scrutiny & Regulatory History

NGO and Advocacy Reporting

LSESU Palestine Society — Stakes in Settler Colonialism (2025)31: This document, published by the London School of Economics Students’ Union Palestine Society, addresses LVMH and Arnault in the context of the Aglaé Ventures investment in Wiz. It should be read as an advocacy document rather than a peer-reviewed academic or independent NGO report. Its factual claims regarding the Wiz investment align with independently confirmable press coverage.12 No UN Special Rapporteur reports, peer-reviewed academic studies, or major human rights organization publications specifically auditing Dior’s or LVMH’s technology relationships with Israeli state entities have been identified in available sources.

Boycott, Divestment & Sanctions Campaigns

No major BDS organization has published a formal, structured campaign targeting Christian Dior SE or LVMH specifically on grounds of Israeli technology provision, state infrastructure participation, or military-relevant technology as of memo date. Individual activist references are consistent with the LSESU document31 but do not constitute an organized cross-organizational campaign.


End Notes

Footnotes

  1. https://www.timesofisrael.com/luxury-goods-magnate-bernard-arnault-invests-in-israeli-cybersecurity-firm-wiz/ 2 3 4 5

  2. https://observer.com/2024/08/lvmh-bernard-arnault-ai-startup-investment/ 2 3 4 5

  3. https://www.timesofisrael.com/from-waze-to-wiz-how-google-learned-to-love-israeli-tech/

  4. https://en.wikipedia.org/wiki/Financi%C3%A8re_Agache 2

  5. https://www.cityam.com/dior-latest-retailer-to-be-targeted-by-cyber-attack/ 2 3 4

  6. https://firecompass.com/dior-data-breach/ 2 3 4

  7. https://www.checkpoint.com/press-releases/check-point-software-technologies-and-wiz-enter-strategic-partnership-to-deliver-end-to-end-cloud-security/

  8. https://www.cyberark.com/press/cyberark-and-sentinelone-team-up-to-enable-step-change-in-endpoint-and-identity-security/

  9. https://www.cyberark.com/press/cyberark-and-wiz-team-up-to-provide-complete-visibility-and-control-for-cloud-created-identities/

  10. https://www.publicissapient.com/industries/consumer-products/luxury-transformation

  11. https://www.lvmh.com/en/startups-tech-partners/la-maison-des-startups-lvmh 2

  12. https://www.lvmh.com/en/commitment-in-action/for-people/lvmh-innovation-award 2

  13. https://www.classaction.org/news/dior-collected-illinois-residents-biometric-info-through-try-online-tool-lawsuit-says 2 3 4

  14. https://www.lvmh.com/en/news-lvmh/lvmh-recognizes-three-tech-partners-for-exceptional-collaborations-with-its-maisons-at-2025-lvmh-innovation-award-ceremony 2 3

  15. https://www.luxurytribune.com/en/lvmh-at-vivatech-three-startups-receive-awards 2

  16. https://www.kahoona.io/case-studies/premium-user-conversion-with-ai-predictive-segments 2 3

  17. https://www.kahoona.io/case-studies/global-luxury-fashion-leader 2 3

  18. https://retailtechinnovationhub.com/home/2025/12/17/rtih-ai-in-retail-awards-physical-stores-category-finalists-announced-including-trigo-and-sensei

  19. https://www.prnewswire.com/news-releases/privacy-alert-house-of-dior-under-investigation-for-data-breach-of-customer-records-302511310.html 2 3

  20. https://www.sangfor.com/blog/cybersecurity/cyberattack-dior-2025-data-breach 2 3

  21. https://www.china-briefing.com/news/diors-pipl-violations-china-key-lessons/ 2 3 4

  22. https://en.wikipedia.org/wiki/Project_Nimbus

  23. https://www.972mag.com/project-nimbus-contract-google-amazon-israel/

  24. https://cloud.google.com/blog/topics/inside-google-cloud/google-cloud-selected-to-provide-cloud-services-to-the-state-of-israel

  25. https://aws.amazon.com/blogs/aws/now-open-aws-israel-tel-aviv-region/

  26. https://aws.amazon.com/local/israel/

  27. https://www.lvmh.com/en/news-lvmh/fancytech-wins-2024-lvmh-innovation-award-grand-prize-at-viva-technology

  28. https://www.lvmh.com/en/news-lvmh/meet-the-18-finalists-of-the-2023-lvmh-innovation-award 2

  29. https://www.tlvmall.com/en-US/stores/dior1

  30. https://diorboutique-il.com/pages/our-boutiques 2

  31. https://lsepalestine.github.io/documents/LSESUPALESTINE-Stakes-in-Settler-Colonialism-2025-Web.pdf 2