Skip to main content

Non-profit security reports

Browse 5,239 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 61 of 105|Showing 3001-3050 of 5239
fsfe.org favicon

Free Software Foundation Europe

fsfe.org

0
Non-profitN/asmallMEDIUM

The Free Software Foundation Europe (FSFE) is a well-established non-profit organization founded in 2001, dedicated to advocating for software freedom and empowering users to control technology. The website serves as a comprehensive platform for news, events, campaigns, and community engagement related to free software in Europe. It targets users, contributors, and policy stakeholders interested in digital rights and software freedom. The organization operates with a clear mission and maintains a consistent brand presence with multilingual support and community testimonials. Technically, the website employs a modern yet somewhat dated technology stack including jQuery, Modernizr, and Bootstrap 3. It is hosted under the registrar Gandi SAS and shows moderate performance with good mobile optimization and accessibility. The site lacks a CMS indication, suggesting a custom or static site approach. SEO and metadata are well implemented with comprehensive Open Graph and Twitter card tags. From a security perspective, the site uses HTTPS and has domain transfer protections but lacks DNSSEC and visible security headers. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is strong with a comprehensive privacy policy, though no cookie consent mechanism was found. Contact is primarily via forms and a contact page, with no direct emails or phone numbers publicly listed. Social media presence is limited but includes Mastodon and Peertube. Overall, FSFE's website demonstrates a high level of professionalism, trustworthiness, and content quality suitable for its non-profit advocacy role. Recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, and publishing explicit security and incident response policies to further enhance trust and compliance.

45
53
2
55
65
80
40
non-profitfreesoftwareadvocacycommunityopensource
jQuery 3.5.1ModernizrBootstrap 3.0.3

Partner Domains:

www.fsf.org
sister
fsf.org.in
sister

+1 more partners

2025-10-08T20:32:03.726Z
issa.org favicon

ISSA International

issa.org

0
Non-profitN/alargeMEDIUM

ISSA International is a well-established non-profit professional association focused on information security. Founded in 1999, it provides networking, educational events, awards, and professional development services to information security professionals worldwide. The website reflects a mature digital presence with a professional design and good SEO practices, leveraging WordPress and modern web technologies. The domain age and registration details align with the organization's long-standing history, supporting its credibility. Technically, the website uses WordPress CMS with Yoast SEO and jQuery libraries, hosted with GoDaddy registrar and DNS managed by Cloudflare. Performance and mobile optimization are good, though accessibility features are basic. Security posture is adequate with HTTPS enabled and domain registration protections, but lacks advanced security headers and DNSSEC. Security-wise, no critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit privacy and cookie policies, security.txt, and incident response contacts indicates room for improvement in compliance and transparency. Analytics usage includes Google Analytics with moderate user tracking. Overall, the website is trustworthy and professional but would benefit from enhanced privacy compliance and security best practices to strengthen user trust and regulatory adherence.

15
53
55
75
52
85
100
informationsecuritynon-profitprofessionalassociationcybersecuritymembership+2 more
WordPressYoast SEO pluginjQueryBootstrap 3+1
2025-10-08T17:05:36.917Z
nobelpeacecenter.org favicon

Nobel Peace Center

nobelpeacecenter.org

0
Non-profitNorwaymediumMEDIUM

The Nobel Peace Center website serves as the official online presence of the museum dedicated to the Nobel Peace Prize in Oslo, Norway. It offers visitors information about exhibitions, events, and guided tours inspired by Nobel Peace Prize laureates. The site targets a broad audience including tourists, peace advocates, and the general public interested in peace and cultural heritage. The business operates as a non-profit cultural institution with a medium organizational size and a strong market position in Norway's museum sector. Technically, the website is built using modern web technologies including Next.js (React framework) and Sanity CMS, ensuring fast performance and excellent mobile optimization. The site integrates Cookiebot for cookie consent management and Google Tag Manager for analytics, reflecting a mature digital infrastructure. Accessibility and SEO optimizations are well implemented, contributing to a positive user experience. From a security perspective, the site enforces HTTPS and employs a comprehensive cookie consent mechanism with granular user controls, supporting GDPR compliance. No critical vulnerabilities or exposed sensitive data were detected. However, the absence of explicit security headers and a security.txt file suggests room for improvement in security best practices. The WHOIS data is unavailable due to query failure or privacy protection, but the domain and website content indicate legitimacy. Overall, the website demonstrates a strong security posture, good privacy compliance, and high business credibility. Strategic recommendations include enhancing security headers, publishing security and incident response policies, and improving contact information visibility to further strengthen trust and compliance.

35
83
17
70
72
70
100
museumnobelpeaceprizeosloexhibitionsevents+5 more
React (Next.js)CookiebotGoogle Tag ManagerSanity CMS

Partner Domains:

stripe.com
partner
paypal.com
partner

+3 more partners

2025-10-08T16:40:01.803Z
cyberesportsfoundation.org favicon

Cyber Esports Foundation

cyberesportsfoundation.org

0
Non-profitN/asmallMEDIUM

Cyber Esports Foundation is a 501c3 nonprofit organization dedicated to fostering a diverse, skilled, and collaborative global cybersecurity workforce through esports and cybersecurity games. The organization operates by engaging communities via cyber leagues, competitions, and research initiatives, supported by donors and partners. Their market position is niche but professionally established within the cybersecurity and esports intersection, targeting cybersecurity professionals, gamers, and supporters. Technically, the website is built on the HubSpot CMS platform, leveraging modern web technologies including jQuery, HubSpot forms, Facebook Pixel, and Donorbox for donations. The site is mobile-optimized, accessible, and performs moderately well. SEO and content quality are strong, with clear branding and consistent messaging. From a security perspective, the site enforces HTTPS and uses secure iframe sandboxing for embedded content. However, it lacks explicit security headers and published security policies such as privacy policy or terms of service, which are compliance gaps. The WHOIS data is incomplete, limiting domain trust verification. No vulnerabilities or malicious content were detected. Overall, the website presents a professional and trustworthy front for a nonprofit organization, but improvements in transparency, security headers, and WHOIS data availability are recommended to enhance trust and compliance.

45
50
55
70
75
75
100
cybersecurityesportsnonprofitcyberworkforcecybergames+3 more
HubSpot CMSjQuery 3.6.0HubSpot FormsFacebook Pixel+3

Partner Domains:

playcyber.com
partner
donorbox.org
partner
2025-10-08T16:39:26.641Z
pvoe.at favicon

Pensionistenverband Österreichs

pvoe.at

0
Non-profitAustrialargeMEDIUM

The Pensionistenverband Österreichs (PVÖ) is a well-established non-profit organization serving the senior citizen community in Austria. It offers membership benefits including discounts, advocacy, events, and free counseling services. The website is professionally designed using TYPO3 CMS, targeting the 50+ generation with a focus on community, support, and travel opportunities. The organization maintains a strong market position as a leading pensioners association in Austria, supported by clear contact information and social media presence. Technically, the website employs modern web technologies including TYPO3 CMS and Matomo analytics for user tracking. The site is mobile-optimized, accessible, and SEO-friendly, though performance is moderate. Security posture is good with HTTPS enforced and cookie consent implemented, but lacks some advanced security headers and explicit security policies. No blocking or WAF mechanisms were detected, allowing full content access. Security-wise, the site shows good practices but could improve by adding security headers, publishing a security policy, and implementing vulnerability disclosure mechanisms. Privacy compliance is basic, with cookie consent present but no explicit privacy policy or terms of service found on the main page. Contact information is clearly provided, enhancing business credibility. Overall, the PVÖ website is a trustworthy, mature platform serving its target audience effectively, with room for improvement in security and privacy transparency to further strengthen user trust and compliance.

15
43
22
80
77
85
100
seniorpensionersaustrianon-profitmembership+3 more
TYPO3 CMSJavaScriptCSSMatomo Analytics
2025-10-08T16:03:30.257Z
onetreeplanted.org favicon

One Tree Planted

onetreeplanted.org

0
Non-profitUnited StatesmediumMEDIUM

One Tree Planted is a well-established nonprofit environmental organization focused on global tree planting initiatives. Founded in 2014, it operates primarily through donations and corporate partnerships to restore habitats and promote sustainability. The website reflects a strong market position with clear messaging, comprehensive content, and a consistent brand image targeting environmentally conscious individuals and organizations. Technically, the website is built on the Shopify platform, leveraging modern web technologies and third-party integrations such as Klaviyo for marketing, Recharge for subscription payments, and Microsoft Clarity for analytics. The site demonstrates excellent mobile optimization, fast performance, and good SEO practices, indicating a mature digital infrastructure. From a security perspective, the site enforces HTTPS, employs domain locking mechanisms, and uses cookie consent banners to comply with privacy regulations. However, it lacks publicly available security policies, incident response contacts, and vulnerability disclosure mechanisms, which are areas for improvement. No critical vulnerabilities or suspicious activities were detected. Overall, the website presents a low-risk profile with strong business credibility and privacy compliance. Strategic enhancements in security transparency and DNS security (e.g., enabling DNSSEC) would further strengthen its posture.

75
73
2
90
52
85
100
nonprofitenvironmenttreeplantingsustainabilityshopify+2 more
ShopifyjQuerySmoothScrollKlaviyo+7

Partner Domains:

rechargepayments.com
partner
klaviyo.com
partner

+2 more partners

2025-10-08T13:16:28.513Z
U

Underserved Project

underserved-project.eu

0
Non-profitIrelandsmallMEDIUM

The Underserved Project is an EU-funded initiative aimed at empowering law enforcement agencies to support humanitarian actors and NGOs in cyberspace. The project focuses on informing vulnerable sectors about cybercrime impacts, preventing cybercrime through capacity building, and connecting NGOs with law enforcement and CERTs to create a comprehensive cybercrime reporting network. The website serves as a platform for project information, deliverables, news, and open-source code repositories, targeting a niche audience within the non-profit and humanitarian sectors. Technically, the website is built using modern technologies including Astro framework, hosted on Vercel, and integrates Google Analytics and Vercel Analytics for tracking. It features responsive design and good SEO practices, with fast performance and basic accessibility. The site uses HTTPS with excellent SSL configuration but lacks some security headers that could enhance protection. From a security perspective, the site demonstrates good practices such as no exposed sensitive data and secure hosting. However, it lacks a cookie consent mechanism, published security or incident response policies, and a vulnerability disclosure program. The WHOIS data is consistent with the website's EU project nature, registered via a reputable registrar, indicating high legitimacy. Overall, the website is professional, trustworthy, and well-aligned with its mission, though improvements in privacy compliance and security policies would strengthen its posture and user trust.

30
28
47
70
72
75
100
cybersecurityngoeuprojectlawenforcementhumanitarian+1 more
AstroJavaScriptGoogle Analytics (gtag.js)Cloudflare Stream (video hosting)+1
2025-10-08T12:46:39.510Z
digitalinclusion.org favicon

National Digital Inclusion Alliance

digitalinclusion.org

0
Non-profitUnited StatesmediumMEDIUM

The National Digital Inclusion Alliance (NDIA) is a non-profit organization dedicated to advancing digital equity across the United States. Their website serves as a comprehensive resource hub, connecting organizations, supporting community programming, and equipping policymakers to act on digital inclusion issues. NDIA positions itself as a leading national voice in the digital inclusion space, offering key services such as program support, policy advocacy, research, and event organization. The site content is rich, professionally designed, and well-structured, targeting digital inclusion practitioners, advocates, and policymakers. Technically, the website is built on WordPress with modern plugins such as Yoast SEO, Google Analytics, and Google Tag Manager, ensuring good SEO and analytics capabilities. The site is mobile-optimized, fast-loading, and accessible, with no visible technical debt or vulnerabilities. Security posture is strong with HTTPS enforced and no exposed sensitive data, although explicit security headers and a vulnerability disclosure page are absent. Overall, the security posture is solid with room for improvement in cookie consent and security policy transparency. The WHOIS data is unavailable, likely due to privacy protection, which is justified for this type of organization. No suspicious patterns or vulnerabilities were detected. The website is trustworthy, professional, and serves its mission effectively. Strategic recommendations include implementing explicit security headers, adding a vulnerability disclosure or security.txt page, introducing a cookie consent mechanism to enhance privacy compliance, and regularly auditing third-party scripts for vulnerabilities.

55
53
17
70
75
75
100
digitalinclusionnon-profitdigitalequityadvocacycommunity+3 more
WordPressYoast SEO pluginGoogle AnalyticsGoogle Tag Manager+4
2025-10-08T12:46:24.479Z
W

Women's Society of Cyberjutsu

womenscyberjutsu.org

0
Non-profitUnited StatesmediumMEDIUM

The Women's Society of Cyberjutsu (WSC) is a well-established 501(c)3 nonprofit organization dedicated to empowering women and girls in cybersecurity careers. Founded in 2012, WSC offers a comprehensive suite of services including networking events, technical training, mentoring, and career resources. The organization maintains a strong market position as a leading community for women in cybersecurity, supported by reputable sponsors and a professional online presence. Technically, the website leverages a mature technology stack including Bootstrap, jQuery, YUI, and YourMembership CMS, with integrations for analytics and bot protection such as Google Analytics, LinkedIn Insight Tag, New Relic, and DataDome. The site demonstrates good mobile optimization and SEO practices, though some accessibility features could be improved. From a security perspective, the site enforces HTTPS and employs bot protection and monitoring tools. However, it lacks certain security headers and an explicit cookie consent mechanism, which are recommended for enhanced security and privacy compliance. The WHOIS data confirms domain legitimacy with consistent registration details and a domain age appropriate for the organization's history. Overall, the website is professional, trustworthy, and functional, serving its target audience effectively. Strategic improvements in privacy compliance and security headers would further strengthen its posture.

80
100
55
53
47
55
42
cybersecuritywomennon-profiteducationcommunity+2 more
Bootstrap 3.4.1jQuery 3.6.3jQuery UI 1.13.2YUI 2.9.0+5

Partner Domains:

womenscyberjutsu.myshopify.com
partner
ws.yourmembership.com
service

+1 more partners

2025-10-08T11:41:04.500Z
jobpaths.com favicon

JobPaths

jobpaths.com

0
Non-profitUnited StatesmediumMEDIUM

JobPaths is a specialized platform founded in 2013 that provides technology solutions to nonprofits and government agencies focused on workforce development for diverse populations including veterans, military spouses, people with disabilities, and second chance candidates. The platform offers a comprehensive suite of services such as skills assessments, online training, resume generation, mentorship, and personalized dashboards. It also supports employers with job posting and candidate sourcing capabilities. The company maintains strong partnerships with reputable organizations and operates multiple microsites tailored to specific user groups, enhancing its market niche in veteran and diversity employment support. Technically, JobPaths employs a modern technology stack centered around React and Next.js, hosted likely on AWS infrastructure with media assets served via S3. The site integrates Stripe for payment processing and Google reCAPTCHA v3 for bot mitigation, alongside Google Tag Manager for analytics. The website demonstrates excellent design quality, mobile optimization, and SEO practices, providing a professional and user-friendly experience. From a security perspective, the site enforces HTTPS, uses domain status locks to prevent unauthorized domain changes, and employs bot protection mechanisms. However, DNSSEC is not enabled, and explicit security headers such as Content-Security-Policy are not detected. Privacy compliance is supported by a comprehensive privacy policy and terms of service, though a cookie consent mechanism is absent. No incident response or security policy pages were found, indicating room for improvement in transparency and readiness. Overall, JobPaths presents a trustworthy and mature online presence with a strong focus on social impact and workforce development. Strategic recommendations include enabling DNSSEC, implementing additional security headers, publishing a security policy and incident response contacts, and adding a cookie consent mechanism to enhance GDPR compliance and user trust.

85
-
85
100
17
20
53
veteransjobtrainingnonprofitgovernmentdiversity+3 more
ReactNext.jsStripeGoogle reCAPTCHA v3+2

Partner Domains:

yourjobpath.com
partner
spouses.yourjobpath.com
partner

+3 more partners

2025-10-08T11:20:53.757Z