Skip to main content

Government security reports

Browse 7,671 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 1 of 154|Showing 1-50 of 7671
in.gov favicon

City of Carmel

in.gov

61
GovernmentUnited StatesmediumMEDIUM

The City of Carmel's official website serves as a comprehensive municipal portal offering residents, businesses, and visitors access to city hall information, departments, services, events, news, and contact details. The site is well-positioned as a local government authority, providing essential public services and community engagement tools. Its target audience includes local residents, businesses, and tourists seeking city resources and updates. Technically, the website employs a modern technology stack including jQuery, AlpineJS, Google Tag Manager, and Azure Application Insights, hosted on the CivicPlus CMS platform. The site demonstrates good mobile optimization, accessibility, and SEO practices, though performance is moderate. The presence of telemetry and analytics tools indicates a mature digital infrastructure. From a security perspective, the site uses HTTPS and anti-forgery tokens, but lacks explicit security headers and a vulnerability disclosure policy. No incident response contacts or security certifications are visible. Privacy compliance is basic with a privacy policy present but no cookie consent mechanism detected. Overall, the security posture is adequate but could be improved with enhanced headers and transparency. The website is trustworthy and professional, with clear contact information and official social media links. No adult or inappropriate content is present, making it safe for general audiences. The lack of WHOIS data is typical for government domains and does not detract from legitimacy. Strategic recommendations include implementing security headers, adding a security.txt file, improving privacy compliance, and enhancing incident response visibility.

55
53
2
60
57
75
100
governmentmunicipalcityindianapublicservices+3 more
jQuery 3.7.1jQuery UI 1.14.1AlpineJS 3.14.1Google Tag Manager+3
2026-08-14T08:44:36.612Z
mantech.com favicon

MANTECH

mantech.com

71
GovernmentN/aenterpriseMEDIUM

MANTECH is an enterprise-level government and technology services company specializing in defense, intelligence, homeland security, and commercial sectors. Their website showcases a broad portfolio of expertise including cyberspace superiority, data and AI, digital transformation, and intelligent engineering. The company targets government agencies and commercial clients requiring advanced technology and security solutions. The website is professionally designed, mobile optimized, and structured for clear navigation, reflecting a mature digital presence. Technically, the site is built on WordPress 7.0.4 with integrations such as Google Tag Manager, Parsely analytics, and OneTrust cookie consent, indicating a modern and compliant infrastructure. Performance is moderate with good accessibility and SEO optimization. Security posture is strong with HTTPS enforced and cookie consent mechanisms in place, though additional security headers and explicit privacy and terms policies are recommended. The WHOIS data is unavailable or obscured, which reduces transparency and trustworthiness from a domain registration perspective. However, the website content and structure strongly indicate a legitimate and professional enterprise. No signs of blocking or WAF challenges were detected, allowing full content analysis. No explicit contact emails or phone numbers were found, which is a gap in user engagement and trust. Overall, MANTECH presents a solid business and technical profile with room for improvement in privacy disclosures and security transparency. Strategic recommendations include publishing comprehensive privacy and terms policies, adding security headers, and providing clear contact information for security incidents.

80
88
10
80
52
80
100
governmenttechnologycybersecuritydefensedigitaltransformation+1 more
WordPress 7.0.4Google Tag ManagerOneTrust Cookie ConsentBoomerang (performance monitoring)+3

Partner Domains:

mantech.avature.net
partner
2026-08-13T07:05:18.722Z
apse.org.uk favicon

Association for Public Service Excellence

apse.org.uk

60
GovernmentUnited KingdommediumMEDIUM

The Association for Public Service Excellence (APSE) operates as a not-for-profit organization focused on supporting local authorities across the UK to improve frontline public services. Their offerings include networking, training, consultancy, performance benchmarking, and energy collaboration. The organization is well-positioned as a specialist in local authority services with a medium-sized footprint and a strong presence in the government sector. The website reflects a professional and consistent brand image with clear navigation and relevant content tailored to local government stakeholders. Technically, the website is built on Mura CMS with Bootstrap and jQuery frameworks, incorporating modern web technologies and responsive design. The site includes Google Analytics and AddThis for tracking and social sharing, indicating moderate digital maturity. Performance is moderate with good mobile optimization, though accessibility features are basic. The site lacks explicit security headers and published security policies, which are areas for improvement. From a security perspective, the site uses HTTPS and secure forms but does not publish incident response or vulnerability disclosure information. WHOIS data is unavailable due to domain naming issues, which impacts trustworthiness. Privacy and cookie policies are comprehensive and GDPR compliant, supporting good privacy practices. Overall, the security posture is moderate but could be enhanced by adding security headers and transparency around incident response. The overall risk assessment is moderate with recommendations to improve security transparency, implement security headers, and resolve domain registration inconsistencies. These steps will enhance trust and compliance while maintaining the organization's strong market position.

25
80
10
85
34
70
100
publicserviceslocalauthoritiesnetworkingtrainingconsultancy+2 more
Mura CMS 7.1.505Bootstrap CSSFont AwesomejQuery+2

Partner Domains:

apse.org.uk
subsidiary
sportfocus.co.uk
partner
2026-08-13T07:04:41.020Z
ncua.gov favicon

National Credit Union Administration

ncua.gov

81
GovernmentUnited StatesenterpriseLOW

The National Credit Union Administration (NCUA) is an independent U.S. federal government agency responsible for regulating federal credit unions, insuring deposits through the National Credit Union Share Insurance Fund, and protecting credit union members. The agency provides a broad range of services including regulatory supervision, consumer protection, financial data analysis, and support services to maintain the safety and soundness of the credit union system. The website serves as a comprehensive resource for credit unions, consumers, and stakeholders with extensive regulatory guidance, news, tools, and cybersecurity resources. Technically, the website is built on the Drupal CMS platform and employs modern analytics tools such as Google Tag Manager and Microsoft Clarity. The site is well-optimized for mobile devices, accessible, and features a professional design with clear navigation. While HTTPS is enforced and no sensitive data is exposed, the site lacks some security headers and a cookie consent mechanism despite using tracking scripts, which are areas for improvement. From a security perspective, the NCUA website demonstrates a solid posture with publicly available cybersecurity resources and incident reporting channels. The domain is a legitimate .gov domain with a long registration history and appropriate privacy protection. No critical vulnerabilities or suspicious content were detected. Overall, the site is trustworthy, authoritative, and serves its government regulatory function effectively.

80
53
87
85
77
80
100
governmentfinancecreditunionsregulationconsumerprotection+2 more
Google Tag ManagerMicrosoft ClarityDrupal CMSjQuery

Partner Domains:

mycreditunion.gov
partner
mapping.ncua.gov
partner

+2 more partners

2026-08-11T07:08:46.994Z
ncpc.gov favicon

National Capital Planning Commission

ncpc.gov

73
GovernmentUnited StatesmediumMEDIUM

The National Capital Planning Commission (NCPC) is a federal government agency responsible for planning and preserving the National Capital Region. The website serves as an official platform providing information about the agency's mission, planning initiatives, commission meetings, and public participation opportunities. It targets federal agencies, planners, residents, and visitors interested in the capital's development and preservation. The site is well-structured with clear navigation and professional design, reflecting its government status. Technically, the website employs modern web technologies including jQuery, Bootstrap, Font Awesome, and Google Analytics. It is mobile-optimized and accessible, with good SEO practices. The site uses HTTPS exclusively, ensuring secure communications. However, some security headers are missing, and there is no visible cookie consent mechanism, which could be improved for better privacy compliance. From a security perspective, the site demonstrates a solid posture with secure forms and no exposed sensitive data. The lack of explicit incident response contacts and security.txt files are areas for enhancement. The WHOIS data is incomplete but the .gov domain strongly supports legitimacy. Overall, the site is trustworthy and professionally maintained. The risk assessment is low given the official nature and secure implementation, but improvements in privacy compliance and security headers would further strengthen the security posture. Strategic recommendations include adding security headers, implementing cookie consent, publishing incident response contacts, and maintaining vigilance on third-party scripts.

95
53
28
85
72
70
100
governmentplanningnationalcapitalfederalagencypublicparticipation
jQueryBootstrapFont AwesomeGoogle Analytics+3
2026-08-11T07:08:36.467Z
ocgov.net favicon

Oneida County

ocgov.net

63
GovernmentUnited StatesmediumMEDIUM

Oneida County operates an official government website serving residents, businesses, and local government entities within Oneida County, New York. The site provides comprehensive information about government departments, resident services, business resources, and community events. It positions itself as the authoritative source for county-related information and services. The website is professionally designed with consistent branding and clear navigation, targeting a broad audience including residents, businesses, and government officials. The business model is typical of a government information portal, focusing on public service and transparency. Technically, the website employs modern web technologies including Cloudflare DNS, Google Tag Manager for analytics, FontAwesome icons, and accessibility enhancements via AccessiBe. The site is mobile optimized and includes SEO best practices such as meta tags and structured data. Hosting appears reliable with Cloudflare DNS and HTTPS enforced, contributing to good performance and security. From a security perspective, the site uses HTTPS and has domain transfer protections in place. However, DNSSEC is not enabled, and there is a lack of explicit security policies or incident response information publicly available. Cookie consent is managed via Termly, indicating some privacy compliance efforts, though no dedicated privacy policy or terms of service pages were found in the provided content. No vulnerabilities or suspicious domains were detected. Overall, the website demonstrates a solid security posture and technical maturity appropriate for a government entity, with room for improvement in privacy documentation and DNS security. The domain registration data aligns well with the official government entity, supporting legitimacy and trustworthiness.

65
68
57
85
27
80
40
governmentcountynewyorkoneidapublicservices+5 more
Cloudflare DNSGoogle Tag ManagerFontAwesomeFancyApps UI+2

Partner Domains:

oneidacountynyvotes.gov
partner
nyuastestsite.com
partner
2026-08-11T07:08:31.157Z
usda.gov favicon

U.S. Department of Agriculture

usda.gov

72
GovernmentUnited StatesenterpriseMEDIUM

The U.S. Department of Agriculture (USDA) website serves as the official digital presence of the federal agency responsible for supporting American agriculture, food safety, nutrition programs, rural development, forestry, sustainability, and trade. The site provides comprehensive information and resources targeted at farmers, ranchers, consumers, policymakers, and other stakeholders. It features a well-structured navigation system with detailed submenus covering key USDA mission areas and programs. The website is built on Drupal 10, leveraging modern web technologies and integrates multiple analytics services including Google Analytics and the US government's Digital Analytics Program, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS and displays trust indicators consistent with a government domain. While explicit security headers are not visible in the HTML, the use of a .gov domain and HTTPS suggests a strong security posture. However, the absence of a cookie consent mechanism and a publicly accessible vulnerability disclosure or security.txt file indicates areas for improvement in privacy compliance and security transparency. The WHOIS data is unavailable or incomplete, which is typical for US government domains, and does not detract from the site's legitimacy. Overall, the USDA website demonstrates excellent content quality, professional design, and a high level of trustworthiness appropriate for a federal agency. It is well-optimized for accessibility and mobile devices, providing a positive user experience. Strategic recommendations include implementing explicit cookie consent, publishing vulnerability disclosure information, and verifying security headers to enhance compliance and security posture.

45
53
43
85
82
85
100
governmentagriculturefoodsafetynutritionruraldevelopment+3 more
Drupal 10Google AnalyticsGoogle Tag ManagerYouTube iframe API+1
2026-08-09T07:07:36.110Z
principalforensicservices.com favicon

Principal Forensic Services (PFS) Ltd

principalforensicservices.com

46
GovernmentUnited KingdomsmallHIGH

Principal Forensic Services (PFS) Ltd is a UK-based independent forensic science company established following the closure of the UK's Forensic Science Service. The company is led by experts with over 300 years of combined experience, providing expert witness services and forensic consultancy to solicitors, police forces, companies, and private individuals. Their market position is strong within the forensic science sector, offering a comprehensive range of forensic disciplines and bespoke training services. The website is professionally designed, well-structured, and targets legal and law enforcement professionals as well as private clients. Technically, the website is built on WordPress using the Pro Cornerstone theme and employs modern technologies such as Yoast SEO and Google reCAPTCHA for spam protection. The site is mobile-optimized with good SEO practices and moderate performance. However, some security best practices such as security headers are missing, and there is no cookie consent mechanism, which could be improved. From a security perspective, the site uses HTTPS and reCAPTCHA, which are positive indicators. The absence of security headers and lack of published security or incident response policies are areas for improvement. The WHOIS data is missing or inaccessible, which raises some concerns about domain registration transparency, although the professional nature of the site and consistent branding support legitimacy. Overall, the website presents a credible and professional business with room for technical and security enhancements. Strategic recommendations include implementing security headers, adding cookie consent, publishing security policies, and resolving WHOIS transparency issues to enhance trust and compliance.

20
53
2
70
57
75
20
forensicforensicscienceexpertwitnessukconsultancy+2 more
WordPressYoast SEO pluginGoogle reCAPTCHAjQuery
2026-08-08T07:23:16.700Z
policyinpractice.co.uk favicon

Policy in Practice

policyinpractice.co.uk

69
GovernmentUnited KingdommediumMEDIUM

Policy in Practice is a UK-based company specializing in data-driven software and analytics aimed at identifying vulnerability and maximizing income for individuals and organizations, particularly within the public sector. Their flagship offerings include the Better Off Calculator, Low Income Family Tracker (LIFT), Multi Agency Safeguarding Tracker (MAST), and expert policy analysis services. The company has a strong market presence with over 100 local authority clients and millions of users, positioning itself as a leader in social policy analytics and benefits maximization. Technically, the website is built on WordPress with a modern tech stack including Yoast SEO, Gravity Forms, WP Rocket for performance optimization, and integration with marketing and analytics tools such as ActiveCampaign, LinkedIn Insight Tag, and Google Tag Manager. The site demonstrates excellent mobile optimization, accessibility, and SEO practices, contributing to a fast and user-friendly experience. From a security perspective, the site enforces HTTPS, employs content security policy monitoring, and uses cookie consent mechanisms compliant with GDPR. While explicit security policies and incident response contacts are not published, the overall security posture is strong with no visible vulnerabilities or exposed sensitive data. The domain registration data is consistent with the business claims, indicating legitimacy and trustworthiness. Overall, Policy in Practice presents a professional, secure, and compliant digital presence aligned with its mission to support vulnerable populations through innovative technology and data analytics.

70
80
25
75
64
50
100
benefitscalculatorsocialpolicydataanalyticspublicsectoruk+3 more
WordPressYoast SEOGravity FormsWP Rocket+5

Partner Domains:

betteroffcalculator.co.uk
partner
liftdashboard.co.uk
partner
2026-08-08T07:14:20.917Z
kadeshdc.com favicon

Kadesh & Associates

kadeshdc.com

51
GovernmentUnited StatessmallMEDIUM

Kadesh & Associates is a bipartisan federal advocacy and lobbying firm positioned among the top 15 in its sector, specializing in congressional strategy, federal funding, and government relations. The website presents a professional image with clear descriptions of services and a focus on Washington, D.C. clientele including government agencies and private sector clients seeking federal advocacy. The firm leverages bipartisan expertise and longstanding relationships within Congress and federal agencies to deliver results. Technically, the website employs modern web technologies including Google Analytics and Tag Manager for tracking, uses web fonts for branding consistency, and is mobile optimized with good navigation clarity. However, there is no detected CMS or advanced frameworks, indicating a relatively straightforward static or custom-built site. Performance is moderate with no blocking or WAF detected, but accessibility features are basic. From a security perspective, the site uses HTTPS (implied by external script URLs), but lacks visible security headers and formal privacy or cookie policies, which are important for compliance and user trust. The absence of WHOIS registration data is a significant red flag, suggesting either a lookup anomaly or domain registration issue, which impacts overall trustworthiness. No incident response or vulnerability disclosure information is provided. Overall, the site is professional and functional but would benefit from improved privacy compliance, security hardening, and clarification of domain registration legitimacy to enhance trust and reduce risk.

15
35
2
75
37
75
100
lobbyingfederalfundingcongresswashingtondcgovernmentaffairs
Google AnalyticsGoogle Tag ManagerjQueryWebFont Loader+2
2026-08-08T07:05:55.930Z
northportmaine.org favicon

Town of Northport, Maine

northportmaine.org

62
GovernmentUnited StatessmallMEDIUM

The Town of Northport, Maine operates an official municipal website serving its residents and visitors with comprehensive information about local government departments, services, ordinances, and community events. The site is positioned as a trusted local government resource with a clear focus on accessibility and community engagement. The business model is typical for a municipal government entity, providing public information and services online. Technically, the website is built on WordPress using the Genesis Framework and several plugins including Yoast SEO and Smart Slider 3. It employs Google Analytics and Google Tag Manager for visitor tracking. Hosting and domain registration are managed through GoDaddy, with standard domain protections in place. The site demonstrates good mobile optimization, accessibility, and SEO practices, though performance is moderate. From a security perspective, the site uses HTTPS and has domain status protections but lacks DNSSEC and security headers, which are recommended for enhanced security. No explicit security or incident response policies are published, representing an area for improvement. Privacy compliance is weak due to the absence of privacy and cookie policies. Overall, the website is a professionally maintained government portal with high trustworthiness and good content quality. Strategic improvements in privacy compliance and security hardening would enhance its risk posture and user trust.

30
58
25
55
69
80
100
governmentmunicipalcommunityeventsservices+2 more
WordPressYoast SEO pluginSmart Slider 3Google Analytics+2
2026-08-08T07:05:50.606Z
A

Arkansas Department of Finance and Administration

arkansas.gov

68
GovernmentUnited StateslargeMEDIUM

The Arkansas Department of Finance and Administration (DFA) operates as the official state government agency responsible for managing the state's financial and administrative functions. The website serves as a comprehensive portal offering services and information to citizens, businesses, taxpayers, and drivers within Arkansas. It provides access to tax divisions, state accounting and budget information, and various online services tailored to different user groups. The site positions itself as a trusted government resource with consistent branding and official state imagery. Technically, the website is built on the WordPress platform using Elementor for page building and Yoast SEO for search engine optimization. It integrates modern analytics and tracking tools such as Google Tag Manager, Facebook Pixel, and LogRocket, indicating a mature digital infrastructure. The site is mobile-optimized and demonstrates good performance and accessibility standards, although some accessibility features could be enhanced. From a security perspective, the site enforces HTTPS and employs asynchronous loading of scripts to maintain performance and security. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not evident, and no vulnerability disclosure or incident response policies are publicly available. Privacy and cookie policies are also not clearly presented, which may impact compliance with privacy regulations. Overall, the website reflects a high level of business credibility and trustworthiness consistent with a government entity. The absence of WHOIS data is typical for .gov domains and does not detract from legitimacy. Strategic improvements in privacy compliance and security header implementation would further strengthen the site's security posture and user trust.

15
70
47
85
67
80
100
governmentfinancetaxarkansasstate+1 more
WordPressElementorYoast SEOjQuery+3
2026-08-08T07:05:02.021Z
mmwlobbyists.com favicon

McMahan Winstead & Richardson Lobbyists

mmwlobbyists.com

39
GovernmentUnited StatessmallHIGH

McMahan Winstead & Richardson Lobbyists is a well-established Tennessee-based government relations and lobbying firm offering a comprehensive suite of services including legislative drafting, bill monitoring, advocacy, consulting, procurement, and PAC management. The firm positions itself as a leading lobbying powerhouse in Tennessee with a strong track record of client successes and industry recognition. Their target audience includes nonprofits, corporations, and businesses seeking effective legislative advocacy within Tennessee. Technically, the website is built on WordPress using Elementor and Yoast SEO, with integrations for Google Analytics and FontAwesome, reflecting a modern and professional digital presence. The site is mobile-optimized and SEO-friendly, though performance is moderate and accessibility is basic. Security posture is adequate with HTTPS enabled and no exposed sensitive data, but lacks advanced security headers and DNSSEC. Privacy compliance is weak due to the absence of privacy and cookie policies. Overall, the domain registration is consistent with the business claims, enhancing trustworthiness. Strategic improvements in privacy compliance and security headers would strengthen the firm's digital trust and compliance standing.

15
35
2
70
47
60
-
lobbyinggovernmentrelationsconsultingadvocacytennessee+2 more
WordPressElementorYoast SEOGoogle Analytics+2
2026-08-08T07:03:04.920Z
teamusa.org favicon

United States Olympic & Paralympic Committee

teamusa.org

63
GovernmentUnited StateslargeMEDIUM

The website www.teamusa.com serves as the official digital presence of the United States Olympic & Paralympic Committee, providing comprehensive information about Team USA athletes, news, events, and merchandise. It holds a strong market position as the authoritative source for Olympic and Paralympic sports in the United States, targeting sports enthusiasts, athletes, and the general public. The site is well-branded and professionally maintained, reflecting the organization's stature and mission. Technically, the website employs modern web technologies including Google Tag Manager, OneTrust for consent management, and Google Publisher Tags for advertising. The infrastructure supports good mobile optimization, accessibility, and SEO practices, ensuring a positive user experience across devices. The use of secure HTTPS and nonce-based script loading indicates a mature approach to web security. From a security perspective, the site demonstrates strong practices such as HTTPS enforcement, consent-based tracking, and no visible vulnerabilities in the provided content. However, explicit security headers could be further verified and enhanced. The absence of WHOIS data limits domain registration transparency but does not detract from the site's legitimacy given its official nature and content quality. Overall, the website presents a low-risk profile with robust content quality, technical implementation, and privacy compliance. Strategic recommendations include enhancing security header visibility, continuous monitoring of third-party scripts, and maintaining transparent domain registration information where possible.

50
58
17
50
57
85
100
sportsolympicsparalympicsteamusaathletes+2 more
React (implied by component styles and structure)Google Tag ManagerOneTrust Cookie ConsentGoogle Publisher Tags (GPT) for ads+1
2026-08-08T07:02:54.274Z
mathematica-mpr.com favicon

Mathematica

mathematica-mpr.com

78
GovernmentUnited StateslargeLOW

Mathematica is a well-established, employee-owned research and advisory firm specializing in evidence-based solutions that integrate data science, policy expertise, and technology to improve public well-being. The company serves a broad audience across public, private, and philanthropic sectors, focusing on analytics, data solutions, and research to support better decision-making and program outcomes. The website reflects a mature digital presence with comprehensive content, clear navigation, and professional branding consistent with its market position. Technically, the site leverages modern web technologies including jQuery, Modernizr, Google Tag Manager, and the Sitecore CMS platform, ensuring good performance, mobile optimization, and accessibility. The integration of Coveo search enhances user experience for content discovery. While performance is moderate, the site is well-structured and SEO optimized. From a security perspective, the site enforces HTTPS and employs domain status locks to protect domain integrity. However, DNSSEC is not enabled, and no explicit security policies or incident response contacts are published, representing areas for improvement. No vulnerabilities or suspicious content were detected. Privacy compliance is strong, with clear privacy and cookie policies and consent mechanisms in place. Overall, Mathematica's website demonstrates a high level of professionalism, trustworthiness, and digital maturity, supporting its role as a credible research and policy advisory organization.

85
85
17
80
82
85
100
employee-ownedresearchpolicydatascienceanalytics+2 more
jQuery 3.5.1Modernizr 3.6.0Google Tag ManagerCoveo Search UI+3
2026-08-07T07:02:35.477Z
brzostek.pl favicon

Urząd Miejski w Brzostku

brzostek.pl

66
GovernmentPolandsmallMEDIUM

The website brzostek.pl serves as the official information portal for the Gmina Brzostek municipal government in Poland. It provides residents and visitors with news, practical information, tourism details, and e-government services. The site is well-structured, localized in Polish, and targets local citizens and stakeholders interested in municipal affairs. The business model is that of a public sector information portal, focusing on transparency and community engagement. Technically, the site employs modern web technologies including service workers for push notifications, a custom CSS framework (Trolstrap), and JavaScript libraries for UI components. It is mobile-optimized and includes accessibility features, ensuring usability for a broad audience. The CMS appears to be 2ClickPortal, a platform commonly used by Polish municipalities. Performance is moderate with good SEO and accessibility practices. From a security perspective, the site uses HTTPS and implements cookie consent mechanisms compliant with GDPR. However, DNSSEC is not enabled, and no explicit security headers were detected in the HTML source. There is no published security policy or incident response contact, which could be improved. No vulnerabilities or suspicious content were found, and the WHOIS data indicates a stable and legitimate domain registration consistent with the municipal nature of the site. Overall, brzostek.pl is a trustworthy and professional municipal website with good content quality and compliance. Strategic improvements in DNS security and security headers, along with publishing a security policy, would enhance its security posture and trustworthiness further.

-
25
17
85
67
85
100
governmentmunicipalitylocaladministrationpolandpublicservices+3 more
JavaScriptCSSHTML5Service Workers+1

Partner Domains:

ebom.brzostek.pl
partner
brzostek.esesja.pl
partner

+3 more partners

2026-08-06T07:25:07.953Z
lacers.org favicon

Los Angeles City Employees' Retirement System

lacers.org

63
GovernmentUnited StateslargeMEDIUM

The Los Angeles City Employees' Retirement System (LACERS) website serves as the official portal for the City of Los Angeles' government pension system. It provides comprehensive resources and services for city employees, retirees, survivors, and board members, including retirement benefits information, health benefits, pension payment schedules, and educational seminars. The site is well-branded with official city seals and maintains a professional and consistent presentation aligned with its government entity status. Technically, the website is built on Drupal CMS and incorporates modern web technologies such as Google Analytics, Google Tag Manager, hCaptcha for bot protection, and New Relic for performance monitoring. The site is mobile-optimized, accessible, and SEO-friendly, offering a good user experience with clear navigation and relevant content. Security-wise, the website enforces HTTPS, employs security headers, and uses secure login portals, reflecting a strong security posture. However, it lacks visible cookie consent mechanisms and published incident response or vulnerability disclosure policies, which are areas for improvement. The WHOIS data is unavailable, likely due to privacy protection, but the website's official nature and consistent trust indicators support its legitimacy. Overall, LACERS demonstrates a mature digital presence suitable for a large government organization, with recommendations to enhance privacy compliance and transparency in security practices.

40
58
10
70
69
75
100
governmentpensionretirementlosangelespublicsector+3 more
Drupal CMSjQueryGoogle AnalyticsGoogle Tag Manager+2
2026-08-06T07:11:03.338Z
P

Prince George's County Government

princegeorgescountymd.gov

51
GovernmentUnited StateslargeMEDIUM

The website www.princegeorgescountymd.gov is the official domain for Prince George's County Government, a local government entity serving residents and businesses in Prince George's County, Maryland. The site is intended to provide public services, community resources, and government information. However, the website content is currently inaccessible due to a Web Application Firewall (WAF) or security mechanism blocking access, resulting in an 'Access Denied' page. This limits the ability to perform a full technical and content analysis. From a technical perspective, no metadata, scripts, or technology stack information could be extracted due to the blocked content. The WHOIS data is incomplete, lacking registrar, creation, expiry, and registrant details, which reduces confidence in domain registration transparency. The domain appears consistent with a government entity based on its name but cannot be fully verified. Security posture evaluation is limited by the lack of accessible content and headers. No privacy, cookie, or security policies were found, and no contact or incident response information is available. The site does not expose any adult or explicit content and is rated safe for general audiences. Overall, the site’s security and privacy compliance cannot be fully assessed, and the AI score is low due to blocked access and missing data. Strategic recommendations include enabling HTTPS with valid certificates, publishing clear privacy and cookie policies, providing contact and incident response information, and ensuring the site is accessible without WAF blocking for legitimate users. Improving WHOIS transparency would also enhance trustworthiness.

25
50
17
75
44
75
100
governmentsecurityblockedaccessdeniedwaf
2026-08-06T07:10:58.112Z
state.nj.us favicon

State of New Jersey

state.nj.us

60
GovernmentUnited StatesenterpriseMEDIUM

The website www.nj.gov serves as the official online portal for the State of New Jersey, providing comprehensive access to government programs, services, and resources for residents, businesses, and visitors. It holds a strong market position as the authoritative source of state government information, featuring key services such as resident assistance programs, business resources, employment services, and transportation information. The site targets a broad audience including residents, government employees, and businesses, operating under a government service portal business model. Technically, the site employs a modern and mature infrastructure leveraging Bootstrap, jQuery, Google Tag Manager, Facebook Pixel, and other contemporary web technologies. The design is responsive and accessible, with good SEO practices and performance characteristics. The site integrates multiple social media platforms and uses feedback widgets to engage users. From a security perspective, the site enforces HTTPS and employs secure forms with proper accessibility features. However, it lacks explicit security headers, a published security policy, incident response contacts, and a vulnerability disclosure mechanism. The WHOIS data is incomplete but consistent with government domain policies, and no WAF or blocking mechanisms were detected. Overall, the site demonstrates a high level of professionalism, trustworthiness, and content quality, with minor areas for improvement in privacy compliance and security transparency. Strategic recommendations include implementing security headers, adding cookie consent mechanisms, publishing security policies, and enhancing incident response visibility.

15
53
2
85
62
80
100
governmentnewjerseystateservicespublicresourcesofficial+1 more
BootstrapjQueryGoogle Tag ManagerFacebook Pixel+3
2026-08-06T07:10:26.428Z
L

Larimer County

larimer.co.us

64
GovernmentUnited StateslargeMEDIUM

Larimer County's official government website serves as a comprehensive portal for residents and businesses in Larimer County, Colorado. It provides access to a wide range of public services including property search, vehicle licensing, tax payments, parks and recreation information, and emergency management resources. The site targets local citizens and stakeholders, positioning itself as a trusted and authoritative source for county-related information and services. Technically, the website is built on the Drupal CMS platform, leveraging modern web technologies such as Bootstrap for responsive design, jQuery for interactivity, and FontAwesome for iconography. The site integrates third-party services like Cludo for search functionality and Google Tag Manager for analytics, indicating a mature digital infrastructure. Mobile optimization and accessibility features are well implemented, enhancing user experience across devices. From a security perspective, the website enforces HTTPS, employs multiple security headers, and uses CAPTCHA mechanisms on forms to prevent abuse. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit incident response contacts and vulnerability disclosure policies suggests areas for improvement in security transparency and readiness. Overall, the website demonstrates a strong balance of usability, security, and compliance suitable for a government entity. The incomplete WHOIS data is a minor concern but likely due to domain privacy or registry restrictions common with .gov domains. Strategic recommendations include enhancing security policy disclosures, publishing vulnerability handling procedures, and maintaining up-to-date third-party components to sustain a robust security posture.

75
35
25
75
44
75
100
governmentcountypublicservicescoloradolarimer+3 more
Drupal CMSjQueryBootstrapFontAwesome+1
2026-08-05T07:11:04.398Z
pueblo.us favicon

City of Pueblo

pueblo.us

62
GovernmentUnited StatesmediumMEDIUM

The City of Pueblo's official website serves as a comprehensive portal for residents, businesses, and visitors, providing access to government services, community events, public meetings, and essential city information. The site is well-structured and targets a broad audience within the Pueblo, Colorado area, positioning itself as a key resource for municipal engagement and services. The business model is that of a government entity focused on public service delivery and community engagement. Technically, the website leverages a modern tech stack including jQuery, AlpineJS, and the CivicPlus CMS platform, with integrations for analytics and user tracking via Google Tag Manager, Facebook Pixel, and Azure Application Insights. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate and could benefit from further optimization. From a security perspective, the site enforces HTTPS, employs security headers, and uses anti-forgery tokens in forms, indicating a mature security posture. However, the absence of visible cookie consent mechanisms and published security or incident response policies suggests room for improvement in privacy compliance and transparency. The lack of WHOIS data reduces domain trust slightly but is mitigated by the official nature of the site and its .us domain. Overall, the website is a trustworthy and professional government portal with solid technical and security foundations. Strategic enhancements in privacy compliance, transparency, and WHOIS data availability would further strengthen its credibility and user trust.

40
35
17
85
57
85
100
governmentcitypublicservicescommunityevents+4 more
jQuery 3.7.1jQuery UI 1.14.1AlpineJS 3.14.1Google Tag Manager+3
2026-08-04T07:08:38.982Z
ncjfcj.org favicon

National Council of Juvenile and Family Court Judges

ncjfcj.org

55
GovernmentUnited StatesmediumMEDIUM

The National Council of Juvenile and Family Court Judges (NCJFCJ) is a well-established non-profit organization focused on improving juvenile and family court systems across the United States. The organization provides education, training, research, and policy development services aimed at professionals working in juvenile justice, family law, and domestic violence cases. Their market position is strong as a leader and trusted source in this specialized legal and social services sector. The website reflects a mature digital presence with comprehensive resources, events, and partnerships showcased clearly. Technically, the website is built on WordPress using modern tools such as Elementor, Google Tag Manager, and Hotjar for analytics and user experience enhancement. The site is mobile-optimized, accessible, and SEO-friendly, with a professional design and clear navigation. Security posture is good with HTTPS enforced and some security best practices observed, though explicit security headers could be improved. Privacy compliance is moderate, with a privacy policy present but lacking a visible cookie consent mechanism. Overall, the security posture is solid with no visible vulnerabilities or exposed sensitive data. The WHOIS data is unavailable, likely due to privacy protection, which is justified for this type of organization. The website is trustworthy, professional, and safe for general audiences, with no adult or questionable content detected. Strategic recommendations include enhancing security headers, implementing cookie consent, and publishing incident response policies to further strengthen trust and compliance.

15
53
2
65
37
85
100
non-profitjuvenilejusticefamilycourteducationtraining+3 more
WordPressElementorGoogle FontsGoogle Tag Manager+2

Partner Domains:

ncjfcj.users.membersuite.com
partner
2026-08-04T07:08:33.849Z
centrecountypa.gov favicon

Centre County, PA

centrecountypa.gov

54
GovernmentUnited StatesmediumMEDIUM

Centre County, PA operates an official government website serving residents, businesses, and visitors with information and public services. The site provides key government resources including elections, tax payments, public safety, and event calendars. The website is positioned as the authoritative digital presence for Centre County government, targeting local constituents and stakeholders. The business model is public service and information dissemination typical of government entities. The site demonstrates consistent branding and trust indicators such as official .gov domain and verified social media accounts. Technically, the site uses modern JavaScript libraries including jQuery and AlpineJS, integrates Google Tag Manager and Azure Application Insights for analytics, and is built on the CivicPlus CMS platform. The site is mobile optimized and provides a good user experience with clear navigation and relevant content. Security posture shows some strengths like HTTPS usage and anti-forgery tokens but lacks visible security headers and explicit privacy or cookie policies, which are areas for improvement. WHOIS data is incomplete but the .gov domain and website content strongly support legitimacy. Overall, the site is a reliable government resource but could enhance privacy compliance and security best practices.

40
35
2
60
47
75
100
governmentcountypublicservicescentrecountypennsylvania+1 more
jQuery 3.7.1jQuery Migrate 3.5.2AlpineJS 3.14.1Google Tag Manager+2
2026-08-04T07:08:18.296Z
C

City of Peabody

peabody-ma.gov

61
GovernmentUnited StatesmediumMEDIUM

The City of Peabody official website serves as a comprehensive digital portal for municipal services, public information, and community engagement for residents and businesses in Peabody, Massachusetts. It provides access to payments, permits, property searches, city budget details, job openings, trash and recycling information, and official news updates. The site targets local citizens, government employees, and visitors, positioning itself as a trusted source of city governance and services. The business model is that of a government entity focused on transparency, accessibility, and public service delivery. Technically, the website employs modern web technologies including Bootstrap, jQuery, FontAwesome, and Google Fonts, ensuring a responsive and accessible user experience. It integrates search functionality and accessibility tools such as ReciteMe. The site is mobile optimized and includes SEO best practices, although some security headers are missing. Analytics are implemented via Google Analytics and Google Tag Manager, with moderate user tracking. From a security perspective, the site uses HTTPS and includes an exit modal warning users when navigating to certain external payment or service domains, enhancing user awareness. However, the absence of key security headers and a formal security policy or incident response page indicates room for improvement. WHOIS data is incomplete, but the .gov domain status and consistent official content support legitimacy. Privacy compliance is basic, with no explicit cookie consent mechanism detected. Overall, the website is a well-structured, professional municipal portal with good content quality and user experience. Strategic recommendations include implementing security headers, publishing a security policy, adding cookie consent for GDPR compliance, and maintaining regular security audits to enhance trust and compliance.

65
35
2
75
57
75
100
governmentmunicipalcitypublicservicespeabody+4 more
Bootstrap 5.1.3jQueryFontAwesome 6.4.2Google Fonts+2

Partner Domains:

peabodybusiness.com
partner
peabodyma.portal.opengov.com
partner

+3 more partners

2026-08-04T07:07:52.052Z
gbboxing.org.uk favicon

GB Boxing

gbboxing.org.uk

56
GovernmentUnited KingdommediumMEDIUM

GB Boxing is the official national governing body responsible for managing the World Class Programme for Olympic boxing in Great Britain. Established in 2008, it focuses on training and developing elite male and female boxers to achieve Olympic success. The organization operates as a non-profit entity within the government and sports sector, targeting athletes, coaches, and the wider sports community. The website reflects a professional and consistent brand presence with comprehensive content about its programs, governance, and community engagement. Technically, the website is built on WordPress, utilizing modern plugins such as All in One SEO and Complianz GDPR for SEO and privacy compliance. It employs jQuery and Slick Carousel for interactive elements and integrates Google Analytics for minimal user tracking. The site is mobile-optimized, accessible, and performs moderately well, with a good SEO foundation. From a security perspective, the site enforces HTTPS and implements cookie consent mechanisms, indicating a good security posture. However, explicit security headers like Content-Security-Policy and X-Frame-Options are not visibly configured, and there is no published vulnerability disclosure or incident response contact information. No critical vulnerabilities or suspicious activities were detected. Overall, GB Boxing's website is trustworthy, compliant with GDPR, and professionally maintained. It serves its audience effectively while maintaining a solid security and privacy baseline. Strategic improvements in security headers and incident response transparency could further enhance its security posture.

15
80
2
70
37
60
100
boxingsportsolympicgbboxingnon-profit+3 more
WordPressjQueryGoogle AnalyticsAll in One SEO+2
2026-08-01T07:04:10.302Z
kppanigp.org favicon

Kentucky Public Procurement Association

kppanigp.org

65
GovernmentUnited StatessmallMEDIUM

Kentucky Public Procurement Association (KPPA) is a state chapter affiliated with the National Institute of Governmental Purchasing (NIGP), focused on supporting public procurement professionals in Kentucky. The organization provides professional development, networking, educational resources, and membership services tailored to public officials and procurement practitioners. The website reflects a professional association model with a clear focus on education and community engagement within the government and non-profit sectors. Technically, the website is built on the ClubExpress platform using ASP.NET WebForms, jQuery, and Telerik UI components. It integrates third-party services such as Zendesk for support and AdButler for advertising. The site demonstrates moderate performance and basic mobile optimization, with room for improvement in accessibility and SEO. Privacy and terms policies are present but basic, and no cookie consent mechanism was detected. From a security perspective, the site uses HTTPS and does not expose sensitive data in the HTML. However, no security headers were detected, and there is no published security or incident response policy. WHOIS data is unavailable due to a malformed response, limiting domain trust verification. Overall, the site appears legitimate and professional but could enhance its security posture and privacy compliance. The overall risk is moderate with recommendations to improve security headers, implement cookie consent, enhance mobile and accessibility features, and publish security policies to increase trust and compliance.

80
53
2
55
72
80
100
procurementgovernmenteducationmembershipprofessionaldevelopment+2 more
jQueryTelerik.Web.UIClubExpress platformAddToAny sharing+2

Partner Domains:

nigp.org
parent
sourcewell-mn.gov
partner

+3 more partners

2026-08-01T07:00:18.742Z