Skip to main content

Non-profit security reports

Browse 5,391 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

155885
Websites
130
Industries
113
Countries
52
Avg Score
Page 10 of 108|Showing 451-500 of 5391
frauenselbsthilfe.de favicon

Frauenselbsthilfe Krebs Bundesverband e. V.

frauenselbsthilfe.de

55
Non-profitGermanymediumMEDIUM

Frauenselbsthilfe Krebs Bundesverband e. V. is a German non-profit organization dedicated to supporting cancer patients and their families through self-help groups, counseling, and educational resources. The website serves as a comprehensive platform offering information, networking opportunities, and qualification programs tailored to cancer-affected individuals. It holds recognized certifications and partnerships with reputable health organizations, reinforcing its credibility and trustworthiness. Technically, the website is built on the Neos CMS platform using PHP and the Flow framework, with frontend technologies including Bootstrap 3 and jQuery. It employs Matomo for privacy-conscious analytics and implements GDPR-compliant cookie consent mechanisms. The site is mobile-optimized with good SEO practices, though some frontend libraries are somewhat outdated. From a security perspective, the site uses HTTPS and cookie consent but lacks visible security headers and published security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected. The WHOIS data shows standard domain registration with no privacy protection, consistent with the organization's public profile. Overall, the website presents a professional, trustworthy, and user-friendly experience for its target audience, with room for improvement in security headers and explicit security documentation to enhance its security posture.

15
43
2
85
42
70
100
cancerself-helpnon-profithealthcaresupport+4 more
PHPjQueryBootstrap 3Matomo Analytics+1

Partner Domains:

www.krebshilfe.de
partner
gesundheitsziele.de
partner

+3 more partners

2025-10-30T17:28:58.270Z
portaildescats.ca favicon

Tech-Accès Canada

portaildescats.ca

55
Non-profitCanadasmallMEDIUM

Tech-Accès Canada operates a French-language portal dedicated to CATs (Centres d'Adaptation Technologique) across Canada, providing information about member centers, equipment, specializations, and engagement opportunities. The organization appears to be a small non-profit entity founded in 2017, targeting French-speaking Canadian users interested in technology access and support. The website is professionally designed with clear navigation and consistent branding, supporting its niche market position. Technically, the site employs modern frontend technologies including jQuery, Bootstrap 4, Kendo UI, and Font Awesome, ensuring good mobile optimization and moderate performance. However, no CMS or advanced analytics tools are detected, indicating a relatively simple but effective technical infrastructure. The site uses HTTPS but lacks DNSSEC and security headers, which are recommended for enhanced security. From a security perspective, the website has a basic security posture with HTTPS enabled and domain transfer protection. However, it lacks privacy and cookie policies, security headers, and incident response information, which are important for compliance and user trust. No vulnerabilities or malware indicators were found, but improvements are needed to meet GDPR and general security best practices. Overall, the website is safe, professional, and functional but would benefit from enhanced privacy compliance, security hardening, and more transparent contact information to improve trust and regulatory adherence.

15
35
2
70
72
70
100
non-profittechnologyaccesscanadacatfrench
jQueryBootstrap 4.0.0Kendo UIFont Awesome 4.3.0+1

Partner Domains:

tech-access.ca
partner
catcoupdepouce.ca
partner

+2 more partners

2025-10-30T16:38:05.922Z
norbi.no favicon

Norges Birøkterlag

norbi.no

50
Non-profitNorwaymediumMEDIUM

Norges Birøkterlag is a well-established Norwegian non-profit organization dedicated to supporting beekeepers and promoting beekeeping activities. The website serves as a comprehensive resource hub offering membership services, educational courses, advocacy, and community engagement for hobbyist and professional beekeepers alike. The organization has a strong national presence with a domain registered since 2001, reflecting its longstanding role in the sector. Technically, the website is built on WordPress and leverages modern web technologies including jQuery, Yoast SEO, Google Tag Manager, and Google Analytics. The site demonstrates good mobile optimization, SEO practices, and a professional design that facilitates user navigation and content discovery. However, some technical improvements could be made in accessibility and performance tuning. From a security perspective, the site uses HTTPS with a good SSL configuration and avoids exposing sensitive data. Nonetheless, it lacks visible security headers and does not provide explicit security policies or incident response contacts. Privacy compliance is weak due to the absence of privacy and cookie policies or consent mechanisms, which is a notable compliance gap. Overall, the website is trustworthy and professional, serving its target audience effectively. Strategic improvements in privacy compliance and security transparency would enhance its risk posture and user trust.

15
35
2
70
77
80
40
beekeepingnon-profiteducationnorwaymembership+1 more
jQuery 3.2.1Yoast SEO pluginGoogle Tag ManagerGoogle Analytics+2
2025-10-30T15:00:28.373Z
surfrider.org favicon

Surfrider Foundation

surfrider.org

67
Non-profitUnited StateslargeMEDIUM

The Surfrider Foundation is a well-established non-profit organization dedicated to the protection and enjoyment of the world's oceans, waves, and beaches. It operates through a large network of volunteers and chapters across the United States, focusing on environmental campaigns such as plastic reduction, ocean protection, beach access, and climate action. The organization engages its audience through advocacy, volunteer programs, and fundraising via donations and merchandise sales. The website reflects a strong market position within the environmental non-profit sector, with clear messaging and calls to action. Technically, the website is built on the HubSpot CMS platform, leveraging modern marketing and analytics tools including Google Tag Manager and Facebook Pixel. The site demonstrates good performance, mobile optimization, and accessibility standards. Security posture is strong with HTTPS enforced and appropriate security headers present, although explicit security policies and incident response information are not publicly detailed. Overall, the website is professional, trustworthy, and compliant with privacy regulations such as GDPR, featuring cookie consent mechanisms and a comprehensive privacy policy. The lack of publicly available WHOIS data is consistent with privacy protection practices common among non-profits. No critical vulnerabilities or suspicious indicators were found, supporting a high legitimacy score. Strategic recommendations include publishing explicit security and incident response policies, adding a vulnerability disclosure or security.txt file, and providing direct security contact information to enhance transparency and trust.

40
68
17
87
57
80
100
environmentnon-profitoceanprotectionvolunteeringenvironmentalactivism+2 more
HubSpot CMSGoogle Tag ManagerFacebook PixelFundraise Up widget

Partner Domains:

shop.surfrider.org
partner
www.surfridersd.org
partner

+1 more partners

2025-10-30T14:21:25.148Z
sas.org.uk favicon

Surfers Against Sewage

sas.org.uk

64
Non-profitUnited KingdommediumMEDIUM

Surfers Against Sewage is a UK-based grassroots environmental charity dedicated to protecting oceans, rivers, and beaches from pollution, particularly sewage and plastic pollution. The organization operates through community engagement, campaigning, data collection, and education, positioning itself as a leading voice in ocean activism within the UK. Their website reflects a mature digital presence with comprehensive content, active campaigns, and multiple avenues for public involvement including membership, fundraising, and volunteering. Technically, the website is built on WordPress with modern plugins such as Gravity Forms and Popup Maker, integrating analytics tools like Google Analytics and Facebook Pixel. The site is mobile-optimized, accessible, and SEO-friendly, with a cookie consent mechanism compliant with GDPR. Security measures include HTTPS enforcement and CAPTCHA on forms, though explicit security headers could be improved. The security posture is solid with no evident vulnerabilities or exposed sensitive data. Privacy compliance is well addressed with clear policies and consent mechanisms. However, WHOIS data for the domain is unavailable due to a domain naming rules error, which does not impact the legitimacy given the charity registration and consistent branding. Overall, the website demonstrates a strong commitment to transparency, user engagement, and compliance, making it a trustworthy platform for its audience and stakeholders.

25
100
17
85
42
55
100
environmentcharityoceancampaignplasticpollution+3 more
WordPressGravity FormsGoogle AnalyticsGoogle Tag Manager+5

Partner Domains:

sasshop.org.uk
partner
donate.sas.org.uk
partner

+1 more partners

2025-10-30T14:21:20.074Z
bixbyknollsinfo.com favicon

Bixby Knolls Business Improvement Association

bixbyknollsinfo.com

41
Non-profitUnited StatessmallHIGH

Bixby Knolls Business Improvement Association is a small, community-focused non-profit organization established in 2002, dedicated to supporting local businesses and residents in the Bixby Knolls area of Long Beach, California. The website serves as a hub for community events, business directories, donation campaigns, and programs aimed at fostering neighborhood engagement and economic growth. The organization recently transitioned to a 501(c)(3) nonprofit status to facilitate tax-deductible donations, reflecting its commitment to sustainable community support. The target audience includes local business owners, residents, and community members interested in neighborhood development and events. Technically, the website is built on WordPress using the Divi theme, supplemented by popular plugins such as LayerSlider, DataTables, Contact Form 7, and Bloom for newsletter management. Hosting is provided by Bluehost, with domain registration dating back to 2002, indicating a mature digital presence. The site demonstrates moderate performance and good mobile optimization, though accessibility and SEO optimizations are basic. Analytics integration via MonsterInsights is present but not configured, suggesting room for improvement in data-driven insights. From a security perspective, the website enforces HTTPS and has domain transfer protections in place. However, DNSSEC is not enabled, and no advanced security headers are detected, which could expose the site to certain DNS and web-based attacks. Privacy compliance is lacking, with no visible privacy or cookie policies, and no consent mechanisms for data collection, despite the presence of multiple forms collecting personal information. There is no public incident response or vulnerability disclosure information, which could be a concern for transparency and trust. Overall, the website is trustworthy and professional in its presentation and business credibility but requires enhancements in privacy compliance and security best practices to align with modern standards. Strategic improvements in these areas will strengthen user trust and regulatory adherence.

15
35
2
60
62
75
-
non-profitcommunitybusinessimprovementlocaleventsnewsletter+2 more
WordPressDivi ThemejQueryLayerSlider+5

Partner Domains:

checkout.square.site
partner
bixbyknollsinfo.us1.list-manage.com
service
2025-10-30T13:15:09.639Z
R

Rancho Los Alamitos

rancholosalamitos.com

57
Non-profitUnited StatessmallMEDIUM

Rancho Los Alamitos is a non-profit historic site and gardens located in Long Beach, California, dedicated to educating and engaging the public about California's rich history. The organization offers free public access to its historic ranch house and gardens, along with educational programs, events, and volunteer opportunities. The website reflects a community-focused mission with clear calls to action for visits, donations, memberships, and volunteering. Technically, the site is built on the EditMySite platform (a Weebly reseller), leveraging common web technologies such as jQuery, Google Analytics, and Microsoft Clarity for analytics, and EqualWeb for accessibility compliance. The site is mobile-optimized and provides a good user experience with consistent branding and clear navigation. Security posture is solid with HTTPS enforced and use of reCAPTCHA, but lacks explicit security headers and published privacy or cookie policies, which are areas for improvement. The WHOIS data is not publicly available, indicating privacy protection, which is typical for non-profit organizations. Overall, the website is trustworthy, professional, and serves its community-oriented purpose effectively.

20
35
2
85
62
70
100
historicsitenon-profiteducationcommunityevents+3 more
jQueryGoogle AnalyticsMicrosoft ClarityEqualWeb Accessibility+1

Partner Domains:

form-renderer-app.donorperfect.io
partner
rancholosalamitoslegacy.org
partner

+1 more partners

2025-10-30T13:14:49.422Z
impact-factory.de favicon

Impact Factory

impact-factory.de

65
Non-profitGermanymediumMEDIUM

Impact Factory is Germany's largest incubator and accelerator focused on startups addressing social and ecological challenges. The organization provides structured programs tailored to different startup development phases, fostering a community and network to support impact-driven entrepreneurs. The website reflects a professional and consistent brand presence, targeting impact startups and stakeholders in the social entrepreneurship ecosystem. Technically, the website is built on Webflow, leveraging modern web technologies including Google Tag Manager, Facebook Pixel, and Cookiebot for consent management. The site is mobile-optimized with good SEO practices and moderate performance. Security is well-handled with HTTPS and cookie consent mechanisms, though additional security headers and explicit security policies could enhance the posture. The security posture is solid with no detected vulnerabilities or exposed sensitive data. Privacy compliance is strong, with a comprehensive cookie consent banner and detailed cookie categorization. However, the absence of visible contact information and terms of service pages limits full business transparency. Overall, the website presents a low-risk profile with good digital maturity and compliance. Strategic improvements in security headers, incident response information, and contact transparency would further strengthen trust and resilience.

30
83
17
72
72
65
100
incubatoracceleratorimpactstartupssocialentrepreneurshipcookieconsent+2 more
WebflowGoogle Tag ManagerFacebook PixelCookiebot+2
2025-10-30T13:12:28.508Z
meetthetacs.ca favicon

Tech-Access Canada

meetthetacs.ca

55
Non-profitCanadasmallMEDIUM

Tech-Access Canada operates as a Canadian non-profit organization providing access to assistive technology through a network of Technology Access Centres (TACs). The website serves as a member portal offering information about TACs, equipment, specialization, and engagement opportunities. The organization targets individuals and entities seeking assistive technology services across Canada, positioning itself as a national resource in this niche. The business model is centered on facilitating access and information rather than direct commercial sales. Technically, the website employs a modern but basic technology stack including jQuery, Bootstrap 4, Kendo UI, and Font Awesome. The site is mobile optimized with good navigation and professional design, though accessibility and SEO features are basic. Hosting and CMS details are not explicitly identified. Performance is moderate with no critical errors detected. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks DNSSEC and security headers such as Content-Security-Policy or X-Frame-Options. No privacy or cookie policies are present, indicating compliance gaps with GDPR and other privacy regulations. No incident response or vulnerability disclosure information is provided. The WHOIS data shows privacy protection but is consistent with a legitimate small non-profit domain registration. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, improved security headers, and clearer contact information. The risk level is moderate with no critical vulnerabilities detected but some compliance and security best practices gaps.

15
35
2
70
72
70
100
assistivetechnologynon-profitcanadatechnologyaccessmemberportal
jQueryBootstrap 4.0.0Kendo UIFont Awesome 4.3.0+1

Partner Domains:

interactivevisits.ca
partner
tacjumpball.ca
partner

+2 more partners

2025-10-30T12:06:22.222Z
creokultur.no favicon

Creo

creokultur.no

64
Non-profitNorwaymediumMEDIUM

Creo is Norway's largest union and interest organization for professionals in the arts and culture sector, boasting over 11,000 members. The organization focuses on securing better wages and working conditions for its members, who include both employees and self-employed individuals in artistic professions. Key services include legal advice, contract assistance, insurance offerings, and political advocacy. The website reflects a professional and well-structured digital presence, supporting its mission and member engagement effectively. Technically, the website is built on WordPress with modern plugins such as Yoast SEO Premium and integrates third-party services like Google Analytics, Visual Website Optimiser, and CookieFirst for consent management. It uses Cloudflare for CDN and security, ensuring good performance and protection against common web threats. The site is mobile-optimized and includes accessibility features, though some improvements could be made. From a security perspective, the site enforces HTTPS, uses security headers likely managed by Cloudflare, and implements a comprehensive cookie consent mechanism compliant with GDPR. No critical vulnerabilities or exposed sensitive data were detected. However, explicit security policies and incident response contacts are not published, which could be improved to enhance trust and compliance. Overall, Creo's website demonstrates a strong digital maturity level with good security posture and privacy compliance. Strategic recommendations include publishing dedicated security and incident response policies, implementing a security.txt file for vulnerability disclosures, and enhancing accessibility compliance to further strengthen the organization's online trustworthiness and user experience.

15
83
17
80
52
85
100
artscultureunionnorwaymembership+4 more
WordPress 6.8.3Yoast SEO PremiumjQuery 3.7.1Visual Website Optimiser (VWO)+2
2025-10-30T11:41:52.379Z
T

The Shadowserver Foundation

shadowserver.org

72
Non-profitN/amediumMEDIUM

The Shadowserver Foundation is a well-established nonprofit organization dedicated to improving Internet security globally by providing free, actionable cyber threat intelligence and remediation reports. Their services target network providers, national governments, law enforcement, and industry sectors, positioning them as a key player in the cybersecurity nonprofit space. The website reflects a professional and consistent brand image with comprehensive content and strong trust indicators such as media coverage and partnerships. Technically, the website is built on WordPress 6.8.3 with modern web technologies including Google reCAPTCHA for form security and Google Fonts for typography. The site is mobile-optimized, accessible, and SEO-friendly, with moderate performance. Security best practices are observed with HTTPS enforced and GDPR-compliant cookie consent mechanisms, although explicit security headers and a dedicated security policy page are absent. The security posture is strong with no visible vulnerabilities or exposed sensitive data. However, the absence of a security.txt file and incident response contact details suggests room for improvement in vulnerability disclosure and incident management transparency. WHOIS data is unavailable due to privacy protection, which is justified for this nonprofit entity. Overall, the website is trustworthy, secure, and professionally maintained. Strategic recommendations include enhancing security headers, publishing a formal security policy and incident response contacts, and implementing a security.txt file to facilitate vulnerability reporting. These steps will further strengthen the organization's security posture and stakeholder trust.

15
65
55
98
72
85
100
cybersecuritynonprofitthreatintelligencenetworksecuritymalware+3 more
WordPress 6.8.3Google reCAPTCHA v3Google FontsJavaScript+1
2025-10-30T09:07:55.790Z
jazzclub-sondershausen.de favicon

Jazzclub Sondershausen e.V.

jazzclub-sondershausen.de

55
Non-profitGermanysmallMEDIUM

Jazzclub Sondershausen e.V. is a small non-profit cultural organization based in Germany dedicated to promoting jazz music through live events and concerts. The website serves as a platform to announce upcoming events, showcase photo galleries from past concerts, and provide contact avenues primarily via a contact form. The organization leverages reputable external ticketing platforms to facilitate event ticket sales, enhancing trust and convenience for attendees. The site targets jazz enthusiasts and the local community, positioning itself as a key cultural player in the Sondershausen region. Technically, the website is built on WordPress 6.8.3 with Bootstrap 5 and jQuery, ensuring a modern and responsive design. The site demonstrates good SEO practices with comprehensive meta tags and Open Graph data, supporting social media sharing and discoverability. Mobile optimization is good, and the site loads with moderate performance. However, there is room for improvement in accessibility and security headers implementation. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. There are no detected vulnerabilities or malicious scripts. However, the absence of security headers and a vulnerability disclosure policy indicates potential areas for enhancement. Privacy compliance is partially addressed with a privacy policy present, but no cookie consent mechanism is implemented, which may be a compliance gap under GDPR. Overall, the website is professional, trustworthy, and well-aligned with its business purpose. Strategic recommendations include implementing cookie consent, adding security headers, publishing a vulnerability disclosure or security.txt file, and providing clearer direct contact information to improve user trust and compliance posture.

15
28
17
70
72
60
100
jazzmusiceventsnon-profitgermany+1 more
WordPress 6.8.3PHPjQuery 3.7.1Bootstrap 5+1
2025-10-30T07:18:03.882Z
S

Sonneberger Jazzfreunde e.V.

son-jazz.de

49
Non-profitGermanysmallHIGH

Sonneberger Jazzfreunde e.V. is a non-profit cultural organization dedicated to promoting jazz music and small arts in the Thüringisch-Fränkischer region of Germany. The website serves as the official portal for the International Sonneberger Jazztage, a well-established jazz festival entering its 39th year. The organization relies on ticket sales, sponsorships, and partnerships with local businesses and cultural institutions to operate. The website provides detailed event information, partner acknowledgments, and ticket purchasing links, targeting jazz enthusiasts and regional visitors. Technically, the website is built on the Contao CMS platform and employs modern web technologies such as jQuery, Tiny Slider, and Usercentrics for consent management. The site is mobile-optimized and presents a professional design with clear navigation. Hosting is provided by a German hosting provider, consistent with the regional focus of the organization. Performance is moderate with room for improvement in accessibility and SEO. From a security perspective, the site uses HTTPS and implements GDPR-compliant consent management. However, no explicit security headers or incident response policies are published, and no vulnerability disclosures or security certifications are evident. The absence of a terms of service page and limited security documentation suggests areas for enhancement. No critical vulnerabilities or suspicious activities were detected. Overall, the website is trustworthy, professionally maintained, and compliant with privacy regulations. Strategic improvements in security headers, incident response transparency, and SEO could further strengthen its posture and user trust.

65
28
17
70
72
60
-
jazzfestivalculturenon-profitgermany+2 more
jQueryTiny SliderColorboxUsercentrics Consent Management

Partner Domains:

sonnebergerjazztage.reservix.de
partner
www.reservix.de
partner

+3 more partners

2025-10-30T07:17:38.821Z
osta-officiel.org favicon

Organisation du Sport Africain Travailliste et Amateur (OSTA)

osta-officiel.org

57
Non-profitCameroonsmallMEDIUM

The Organisation du Sport Africain Travailliste et Amateur (OSTA) is a non-profit international sports organization founded in 2001, focused on promoting and coordinating amateur and workers' sports activities across Africa. It holds official recognition from the African Union and other continental sports bodies, positioning itself as a key player in African amateur sports governance. The organization operates from its headquarters in Yaoundé, Cameroon, and engages with multiple national sports organizations through regional liaison offices. The website serves as an informational platform detailing its history, structure, and activities, primarily targeting African sports organizations and amateur athletes. Technically, the website is built on the WordPress platform hosted by Automattic Inc. (WordPress.com), utilizing standard WordPress technologies including Jetpack, jQuery, and Swiper.js. The site demonstrates moderate performance with good mobile optimization and basic accessibility features. SEO practices are adequately implemented with proper meta tags and Open Graph data. From a security perspective, the site enforces HTTPS with a valid SSL certificate and has domain transfer protections in place. However, it lacks advanced security headers such as Content-Security-Policy and X-Frame-Options. No privacy or cookie policies are published, indicating gaps in compliance with data protection regulations. No incident response or vulnerability disclosure information is available, which could be improved to enhance trust. Overall, the website is functional and professional but would benefit from enhanced privacy compliance, improved security headers, and clearer contact information. These improvements would strengthen its security posture and regulatory adherence, thereby increasing stakeholder confidence.

30
35
17
65
52
80
100
sportsnon-profitafricanorganizationworkersamateursports+1 more
WordPressJetpackjQuerySwiper.js+2
2025-10-30T07:16:48.717Z
catchandserve-ball.com favicon

ICSBF - International Catch’n Serve Ball Sports Federation

catchandserve-ball.com

46
Non-profitSwitzerlandsmallHIGH

The International Catch’n Serve Ball Sports Federation (ICSBF) operates as a niche non-profit organization dedicated to promoting the sport of Catch'n Serve Ball globally. The website provides comprehensive information about the federation's activities, including event calendars, membership details, and news updates, positioning ICSBF as a specialized sports federation with a clear focus on community engagement and international sports development. The target audience includes sports enthusiasts, athletes, and sports clubs interested in this emerging sport. Technically, the website employs modern web standards with HTML5, CSS, and JavaScript, and integrates Matomo analytics for user tracking, reflecting a moderate level of digital maturity. The site is mobile-optimized and offers good navigation and content relevance. However, some technical improvements are recommended, such as implementing security headers and enhancing accessibility features. From a security perspective, the site benefits from HTTPS encryption and does not expose sensitive data. Nonetheless, the absence of security headers and lack of published security or incident response policies indicate room for improvement. The missing WHOIS data raises concerns about domain legitimacy, although the professional presentation and valid contact information mitigate some trust issues. Overall, the website is functional, professional, and safe for general audiences, but strategic enhancements in security posture, privacy compliance, and domain registration transparency are advised to strengthen trust and compliance.

20
35
17
55
62
60
40
sportsfederationcatchnserveballeventsnon-profit+2 more
HTML5CSSJavaScriptMatomo Analytics
2025-10-30T07:16:08.638Z