Skip to main content

Non-profit security reports

Browse 5,392 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

156014
Websites
130
Industries
113
Countries
52
Avg Score
Page 83 of 108|Showing 4101-4150 of 5392
ef2.nl favicon

EF2

ef2.nl

54
Non-profitNetherlandsmediumMEDIUM

EF2 is a Dutch creative and digital agency specializing in delivering pragmatic and comprehensive digital solutions primarily for non-profit organizations, wholesale businesses, and service providers. The company positions itself as a specialist agency focused on helping clients grow by rediscovering their strengths and renewing their digital presence. Their key services include strategy and concepting, digital and UX design, development, and SEO optimization. The website reflects a professional and consistent brand image with strong client case studies and technology partnerships, indicating a mature market presence. Technically, the website is built using modern JavaScript frameworks such as Vue.js and Nuxt.js, with integrations for analytics and user behavior tracking via Google Analytics, Hotjar, and Leadinfo. The site is mobile-optimized, fast-loading, and well-structured, demonstrating a high level of digital maturity. However, there is a lack of published privacy and cookie policies, which is a notable compliance gap. From a security perspective, the site uses HTTPS and asynchronous script loading, but lacks visible security headers and published security or incident response policies. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is consistent with the website's claims, reinforcing the legitimacy of the domain and business. Overall, EF2 presents a trustworthy and professional digital agency with room for improvement in privacy compliance and security transparency. Strategic recommendations include publishing comprehensive privacy and cookie policies, implementing security headers, and establishing incident response and vulnerability disclosure mechanisms to enhance trust and compliance.

30
28
2
70
72
50
100
digitalagencycreativeagencynon-profitb2be-commerceserviceprovider+1 more
JavaScriptVue.jsNuxt.jsGoogle Analytics+3

Partner Domains:

dutchlaravelfoundation.nl
partner
2025-07-23T17:50:34.181Z
gehandicaptekind.nl favicon

Stichting het Gehandicapte Kind

gehandicaptekind.nl

47
Non-profitNetherlandsmediumHIGH

Stichting het Gehandicapte Kind is a well-established Dutch non-profit organization dedicated to supporting children with disabilities by promoting inclusion in education, play, and sports. The website effectively communicates its mission, engages donors and volunteers, and provides clear calls to action. The organization holds recognized certifications such as ANBI and CBF, enhancing its trustworthiness and legitimacy. The domain age and WHOIS data align with the organization's claims, supporting a strong business credibility profile. Technically, the website is built on Drupal 9 and integrates modern tools including Google Tag Manager, reCAPTCHA, Cookiebot for consent management, and analytics platforms like SpotEffects and Leadinfo. The site is mobile-optimized, accessible, and SEO-friendly, providing a good user experience. Security practices include HTTPS enforcement and CAPTCHA protection on forms, though some security headers could be improved for enhanced protection. The security posture is solid with no detected vulnerabilities or exposed sensitive data. Privacy compliance is robust with clear privacy and cookie policies and GDPR adherence. However, the site lacks a published security policy or incident response contact, which could be areas for improvement. Overall, the website presents a professional, trustworthy, and secure platform for its charitable activities, with recommendations to enhance DNS security and security headers to further strengthen its security posture.

50
43
2
60
52
65
20
non-profitcharitychildrendisabilitydonation+3 more
Drupal 9Google Tag ManagerGoogle reCAPTCHA v2/v3Cookiebot+4

Partner Domains:

steun.gehandicaptekind.nl
partner
www.belastingdienst.nl
partner

+3 more partners

2025-07-23T16:42:20.569Z
toegankelijkerecreatie.nl favicon

Joint Projects

toegankelijkerecreatie.nl

60
Non-profitNetherlandssmallMEDIUM

Joint Projects operates a specialized community platform focused on accessible recreation in the Netherlands, connecting a diverse set of stakeholders including entrepreneurs, designers, manufacturers, and government bodies. The platform serves as a knowledge hub and networking space to promote inclusivity in recreation. The business is well positioned as a niche leader with recognized memberships in industry associations such as TEA and IAAPA. The website content is professional and targeted to a clearly defined audience, supporting the organization's mission. Technically, the website is built on WordPress using modern plugins and frameworks, including WooCommerce and Ultimate Member, with integration of Google Tag Manager and reCAPTCHA for analytics and security. The site demonstrates good mobile optimization, accessibility, and SEO practices, though there is room for improvement in security headers and cookie consent mechanisms. From a security perspective, the site uses HTTPS and implements reCAPTCHA, but lacks explicit security headers and a formal security policy or incident response contact. No vulnerabilities or exposed sensitive data were detected. The domain is well aged and consistent with the business claims, enhancing trustworthiness. Overall, the website presents a low-risk profile with good business credibility and technical maturity. Strategic improvements in security headers, cookie consent, and formal security policies would further strengthen the security posture and compliance standing.

50
45
2
70
75
60
100
communityaccessiblerecreationnon-profitnetworkinclusive+1 more
WordPressPHPjQueryWooCommerce+4

Partner Domains:

jointprojects.online
partner
creativepassenger.com
partner

+2 more partners

2025-07-23T14:25:19.757Z
mysociety.org favicon

mySociety

mysociety.org

63
Non-profitUnited KingdommediumMEDIUM

mySociety is a UK-based not-for-profit social enterprise focused on empowering citizens through digital technologies in the areas of democracy, transparency, and community engagement. With over 20 years of experience and a presence in more than 40 countries, it operates a suite of popular civic technology services and provides commercial services through its subsidiary SocietyWorks to fund its charitable mission. The website reflects a mature organization with a clear mission and strong market position in the civic tech sector. Technically, the website is built on WordPress with modern web technologies including jQuery, Google Analytics with IP anonymization, and social media integrations. The site is well-structured, mobile-optimized, and SEO-friendly, though performance is moderate. Security posture is good with HTTPS enforced and no visible vulnerabilities, but could be improved by adding security headers and explicit cookie consent mechanisms. Security-wise, the organization demonstrates good practices such as anonymizing analytics data and avoiding exposed sensitive information. However, the lack of visible security policies, incident response contacts, and vulnerability disclosure mechanisms suggests room for improvement in transparency and readiness. The absence of WHOIS data limits domain trust verification but is mitigated by strong business signals on the site. Overall, mySociety presents a trustworthy, professional, and well-maintained online presence with minor gaps in privacy compliance and security transparency. Strategic improvements in cookie consent, security headers, and incident response visibility would enhance its security posture and user trust.

15
53
2
85
85
80
100
civictechnologynon-profittransparencydemocracycommunity+3 more
WordPressjQueryGoogle AnalyticsFacebook SDK+2

Partner Domains:

societyworks.org
subsidiary
2025-07-23T12:10:32.367Z
danesjenovdan.si favicon

Danes je nov dan - Inštitut za druga vprašanja

danesjenovdan.si

58
Non-profitSloveniasmallMEDIUM

Danes je nov dan is a Slovenian non-profit institute focused on advancing digital rights, democratic participation, transparency, and community solidarity. Established in 2012, it operates through advocacy, research, public engagement, and publication of a monthly newsletter. The organization maintains a strong online presence with active social media channels and collaborative projects with recognized partners such as EDRi and Pravno mrežo za varstvo demokracije. The website reflects a professional and consistent brand image with excellent content quality and user experience. Technically, the website employs modern JavaScript libraries including Alpine.js and htmx, and uses Plausible Analytics for privacy-respecting user tracking. The site is hosted by a Slovenian registrar HITROST.COM and demonstrates fast performance and excellent mobile optimization. However, there is room for improvement in security headers and explicit cookie consent mechanisms. From a security perspective, the site uses HTTPS and secure forms with consent checkboxes, but lacks published security policies and incident response contacts. No vulnerabilities or exposed sensitive data were detected. Overall, the security posture is good but could be enhanced by adopting additional best practices. The overall risk assessment is low, with the site being trustworthy and professionally maintained. Strategic recommendations include implementing cookie consent banners, publishing security and incident response policies, and adding vulnerability disclosure information to further strengthen trust and compliance.

50
10
17
70
72
60
100
digitalrightsparticipationtransparencycommunitynon-profit+3 more
Alpine.jshtmxPlausible AnalyticsCustom CSS and JS bundles

Partner Domains:

edri.org
partner
treecompany.be
partner

+2 more partners

2025-07-23T08:39:35.147Z
smokersassociation.org favicon

Smokers Association

smokersassociation.org

53
Non-profitN/asmallMEDIUM

Smokers Association is a small non-profit organization advocating for the rights and freedoms of smokers worldwide. The website serves as a community hub offering articles, media, and event information related to smokers' rights and lifestyle choices. It positions itself as a defender of personal liberty against segregation and restrictive policies. The site has been active since at least 2008, with content reflecting ongoing advocacy and community engagement. Technically, the website is built on Drupal CMS with common web technologies such as jQuery and integrates Google Analytics and Adsense for tracking and monetization. The site is mobile-friendly and moderately optimized but lacks advanced SEO and accessibility features. Security posture is adequate with HTTPS enabled but lacks important security headers and formal security policies. The absence of WHOIS data and registrant information reduces domain trustworthiness, although the website content and historical presence suggest legitimacy. Privacy compliance is minimal, with no privacy or terms of service pages found, but a cookie consent mechanism is implemented. Contact is only available via a web form, with no direct emails or phone numbers provided. Overall, the site is functional and serves its advocacy purpose but would benefit from improved transparency, security practices, and privacy compliance to enhance trust and professionalism.

65
50
17
70
62
75
20
smokersadvocacynon-profittobaccorights+1 more
Drupal CMSjQueryGoogle AnalyticsGoogle Adsense+1

Partner Domains:

www.asociatiafumatorilor.ro
partner
www.shilma.com
partner
2025-07-23T08:38:49.935Z
ivn.nl favicon

IVN Nederland

ivn.nl

48
Non-profitNetherlandslargeHIGH

IVN Nederland is a well-established Dutch non-profit organization dedicated to nature education and engagement for children and adults. The organization offers a wide range of services including nature activities, courses, volunteer programs, and a nature routes app. IVN holds recognized certifications such as ANBI and CBF, reinforcing its credibility and trustworthiness in the non-profit sector. The website is professionally designed with excellent content quality, clear navigation, and strong branding consistency, targeting a broad audience interested in nature and environmental education. Technically, the website is built on WordPress with modern technologies including jQuery, Google Maps API, and various marketing and analytics tools like Google Tag Manager, Hotjar, and Microsoft Clarity. The site demonstrates good mobile optimization, accessibility, and SEO practices. Security posture is solid with HTTPS enforced and no visible vulnerabilities, though some security headers could be improved. Privacy compliance is strong with comprehensive privacy and cookie policies and active consent mechanisms. Overall, IVN Nederland's digital presence reflects a mature and trustworthy organization with a clear mission and effective online engagement. The absence of critical security issues and the presence of multiple trust indicators support a high level of business credibility and user trust.

15
68
2
65
42
65
40
natureeducationnon-profitenvironmentcommunity+3 more
WordPress 6.7.2jQuery 3.6.0Google Maps APITiny Slider+4
2025-07-23T06:46:51.999Z
thesignalsnetwork.org favicon

The Signals Network

thesignalsnetwork.org

66
Non-profitN/asmallMEDIUM

The Signals Network is a small non-profit organization dedicated to supporting whistleblowers and coordinating international media investigations focused on corporate misconduct and human rights abuses. The organization positions itself as a trusted intermediary for whistleblowers and media, emphasizing accountability and public good. The website reflects this mission with professional design and relevant content targeting whistleblowers, journalists, and the public. Technically, the website is built on WordPress using the Avada theme, hosted on DigitalOcean, and employs modern performance optimizations such as WP Rocket and lazy loading. It integrates several marketing and analytics tools including Google Analytics, Google Tag Manager, and LinkedIn Insight Tag. Mobile optimization and SEO practices are good, though accessibility is basic. From a security perspective, the site uses HTTPS with a good SSL configuration and enforces client transfer protection on the domain. However, DNSSEC is not enabled and security headers are minimal or absent. There is no visible security policy or vulnerability disclosure mechanism, and no explicit incident response contacts. Cookie consent is implemented via Termly with auto-blocking, indicating some privacy compliance effort. Overall, the website is trustworthy and professional with a solid business credibility score. Security posture is moderate with room for improvement in headers and disclosure policies. Privacy compliance is basic due to missing explicit privacy and terms pages. Recommendations include enabling DNSSEC, adding security headers, publishing security and privacy policies, and providing direct contact channels for security incidents.

15
83
17
80
72
80
100
whistleblowernon-profitmediainvestigativejournalismprivacy+3 more
WordPressAvada ThemejQueryWP Rocket+5
2025-07-23T06:42:19.897Z
iccl.ie favicon

Irish Council for Civil Liberties

iccl.ie

10
Non-profitIrelandmediumCRITICAL

The Irish Council for Civil Liberties (ICCL) is Ireland's oldest human rights organization, established in 1976. It operates as a non-profit advocacy group focused on promoting and protecting human rights across various sectors including justice, equality, digital rights, and democratic freedoms. The organization is independent and non-partisan, funded primarily through members and donors. The website serves as a platform for news, campaigns, petitions, and educational resources aimed at the general public interested in human rights issues in Ireland. Technically, the website is built on WordPress with modern SEO and analytics tools such as Yoast SEO and Matomo Analytics. It uses HTTPS and includes responsive design elements for mobile optimization. The site demonstrates good performance and accessibility basics, though there is room for improvement in security headers and cookie consent mechanisms. From a security perspective, the site employs HTTPS and disables cookies in analytics to enhance privacy. However, it lacks explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. No critical vulnerabilities or exposed sensitive data were detected in the content. The absence of WHOIS data limits domain trust verification, but the website content and contact information align with a legitimate non-profit entity. Overall, the website presents a professional and trustworthy front for ICCL, with strong content quality and business credibility. Strategic recommendations include enhancing security headers, implementing cookie consent, publishing security and incident response policies, and establishing a vulnerability disclosure process to further strengthen trust and compliance.

-
-
-
-
-
-
-
humanrightsnon-profitirelandadvocacydigitalrights+3 more
WordPressYoast SEOMatomo AnalyticsjQuery+1
2025-07-23T06:42:04.858Z
techcultivation.org favicon

Center for the Cultivation of Technology gGmbH

techcultivation.org

49
Non-profitGermanysmallHIGH

The Center for the Cultivation of Technology is a small non-profit organization based in Germany that provides fiscal sponsorship and backend organizational support for international Free Software and open source projects. Their services include donation processing, budget management, asset stewardship, and expert knowledge sharing, enabling developers to focus on software development while the Center handles administrative and financial tasks. The website clearly communicates their mission and services, targeting open source projects and developers seeking a legal and financial host. Technically, the website is built using the Hugo static site generator with Bootstrap 3, jQuery, and Font Awesome for styling and interactivity. The site is mobile-optimized and presents a professional design with clear navigation. However, some technical aspects such as DNSSEC are not enabled, and no advanced security headers were detected. The site does not appear to use analytics or tracking scripts, indicating a privacy-conscious approach. From a security perspective, the website uses HTTPS and has domain transfer protections in place, but lacks published privacy and cookie policies, security policies, and incident response information. No direct contact emails or phone numbers are provided, only contact forms. These gaps reduce privacy compliance and security transparency. No suspicious or malicious content was detected, and the domain registration data is consistent with the organization's claims. Overall, the website is trustworthy and professional but would benefit from improved privacy compliance, enhanced security headers, and more transparent contact and security policy information to strengthen user trust and regulatory adherence.

25
50
17
55
95
75
-
non-profitopensourcefiscalsponsorshiptechnologyfreesoftware
Hugo static site generatorBootstrap 3jQueryFont Awesome+2
2025-07-22T23:41:32.448Z
vsg-animation.ch favicon

Villars-Animation

vsg-animation.ch

49
Non-profitSwitzerlandsmallHIGH

Villars-Animation is a local socio-cultural animation service operating under the commune of Villars-sur-Glâne, Switzerland. It focuses on providing activities and community support primarily for youth aged 6 to 25, as well as families, elderly, and migrants. The organization offers a variety of creative, cultural, and sports activities across multiple centers and locations. The website serves as an informational portal for these services and upcoming events. Technically, the website is built on Drupal 7 with a moderate technology stack including jQuery 1.12 and Matomo analytics. While the site is functional and provides good content quality and navigation, it lacks modern security headers and uses outdated JavaScript libraries, which could pose security risks. The site is accessible via HTTPS, but no explicit security policies or privacy notices are present. From a security perspective, the site shows moderate maturity with no visible critical vulnerabilities but lacks important compliance elements such as privacy and cookie policies, GDPR indicators, and incident response contacts. The use of Matomo analytics without a visible cookie consent mechanism suggests potential privacy compliance gaps. No WAF or blocking mechanisms were detected, and the content is safe for general audiences. Overall, the website is a trustworthy local community service platform but would benefit from enhanced security practices, privacy compliance improvements, and clearer contact information to improve user trust and regulatory adherence.

50
35
2
70
85
60
20
drupalcommunitysocio-culturalyouthnon-profit+1 more
Drupal 7jQuery 1.12Matomo AnalyticsMasonry layout+1
2025-07-22T22:40:02.212Z
bensjohnson.com favicon

Ben Stocker Johnson

bensjohnson.com

41
Non-profitUnited StatessmallHIGH

Ben Stocker Johnson is a seasoned art director, designer, and illustrator specializing in visual storytelling for social good. The website serves as a professional portfolio showcasing a broad range of creative services including art direction, user experience, brand identity, illustration, and print design. The target audience primarily consists of mission-driven organizations such as nonprofits, government agencies, and social innovators. The business model is consultancy and creative services with a strong emphasis on cause-based projects. The website reflects over 20 years of experience, consistent with the domain age dating back to 2000. Technically, the website employs standard web technologies including HTML5, CSS3, JavaScript, jQuery, and Font Awesome icons. It integrates Google Analytics and Google Tag Manager for tracking and analytics. Hosting appears to be managed via Google Cloud DNS with domain registration through Squarespace Domains II LLC. The site is moderately optimized for performance and mobile devices, with good SEO practices but basic accessibility features. From a security perspective, the site uses domain status flags to prevent unauthorized domain transfer or deletion but lacks DNSSEC and visible security headers. There is no privacy or cookie policy present, which impacts compliance with GDPR and other privacy regulations. No incident response or vulnerability disclosure information is published. The site does not appear to be behind a WAF or security challenge, and no malicious or suspicious content is detected. Overall, the website is professional, trustworthy, and well-aligned with its business purpose. However, it would benefit from enhanced privacy compliance, improved security headers, and explicit policies to strengthen its security posture and regulatory adherence.

15
35
2
55
62
80
-
portfolioartdirectordesignerillustratorvisualstorytelling+2 more
HTML5CSS3JavaScriptjQuery+3
2025-07-22T19:04:31.931Z
commitchange.com favicon

CommitChange LLC

commitchange.com

62
Non-profitN/asmallMEDIUM

CommitChange LLC operates an all-in-one fundraising platform tailored for nonprofit organizations and social impact movements. The platform offers donation processing, fundraising campaigns, supporter management, event ticketing, and reporting tools, positioning itself as an accessible and intuitive solution for nonprofits to efficiently manage their fundraising efforts. The business model is SaaS-based with no monthly fees or contracts, appealing to organizations seeking flexible and cost-effective fundraising software. The company has been established since 2012, indicating a mature presence in the nonprofit technology sector. Technically, the website is built on WordPress 6.6.2 with jQuery and uses the Fluent Forms plugin for data collection. Hosting and DNS services leverage Cloudflare, providing a reliable infrastructure. The site demonstrates good mobile optimization and SEO practices but lacks advanced security headers and DNSSEC, which are areas for improvement. The website content is professionally designed with clear navigation and relevant information for its target audience. From a security perspective, the site uses HTTPS and has domain transfer protections enabled, but it lacks DNSSEC and security headers such as Content-Security-Policy and Strict-Transport-Security. No explicit security policies or incident response contacts are published, which could be a gap in transparency and readiness. The absence of cookie consent mechanisms may also impact privacy compliance, especially under GDPR. Overall, the security posture is moderate but could be enhanced with additional controls and disclosures. The overall risk assessment is low to moderate. The website is trustworthy and professional, serving a clear nonprofit market niche. Strategic recommendations include enabling DNSSEC, implementing security headers, publishing security and incident response policies, and adding cookie consent mechanisms to improve compliance and user trust. These steps will strengthen the platform's security posture and regulatory adherence, supporting its growth and reputation in the nonprofit sector.

35
53
2
80
65
85
100
fundraisingnonprofitdonationeventssupportermanagement+1 more
WordPress 6.6.2jQueryFluent Forms pluginCloudflare DNS

Partner Domains:

commitchange.youcanbook.me
partner
2025-07-22T19:04:01.691Z