Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

149091
Websites
130
Industries
113
Countries
52
Avg Score
Page 34 of 53|Showing 1651-1700 of 2607
workzonecam.com favicon

Work Zone Cam, LLC

workzonecam.com

59
TechnologyN/amediumMEDIUM

Work Zone Cam, LLC operates a professional website offering advanced time-lapse construction camera technology designed for jobsite documentation and project management. The company targets construction professionals, architects, engineers, and enterprises requiring reliable, wireless 4G LTE cameras with AI-edited time-lapse video capabilities. Their business model includes sales and rentals of cameras, software services, and enterprise solutions with integrations to major platforms like Procore and Autodesk. The website demonstrates a strong market position within the niche construction technology sector, supported by partnerships with recognized industry players. Technically, the website employs modern web technologies including Bootstrap 5, jQuery, and integrates multiple analytics and marketing tools such as Google Analytics, Google Tag Manager, Facebook SDK, and ZoomInfo pixels. The site is mobile optimized and features a responsive design with good SEO practices. Security measures include HTTPS usage and Google reCAPTCHA for form protection, though explicit security headers are not detected. The absence of WHOIS data raises concerns about domain registration legitimacy, but the website content and partner ecosystem suggest a legitimate business presence. Security posture is moderate with room for improvement in publishing privacy and cookie policies, implementing security headers, and providing incident response information. The site collects user data via a contact form with validation and CAPTCHA, but lacks visible GDPR compliance documentation. Overall, the website is professional, trustworthy, and well-branded, with a high level of content quality and user experience. Strategically, the company should focus on enhancing transparency around privacy and security policies, verifying domain registration details, and strengthening security best practices to improve trust and compliance. These steps will support sustained growth and reinforce their market credibility in the competitive construction technology space.

35
35
2
70
65
85
100
constructiontime-lapsecamerajobsitetechnology+5 more
Bootstrap 5.2.3jQuery 3.7.0Font Awesome 4.7.0Google Analytics (GA4 and legacy)+3

Partner Domains:

earthcam.net
partner
marketplace.procore.com
partner

+2 more partners

2025-07-29T04:32:33.184Z
shoutmousepress.org favicon

Shout Mouse Press

shoutmousepress.org

60
Non-profitUnited StatessmallMEDIUM

Shout Mouse Press is a nonprofit organization dedicated to empowering marginalized youth aged 12 and above through writing workshops, book publication, and public speaking opportunities. The organization focuses on amplifying underrepresented voices in literature and operates primarily within the United States. Their business model centers on nonprofit activities with a strong community and educational focus, supported by book sales and donations. Technically, the website is built on the Squarespace platform, leveraging modern web technologies including Google Analytics and Facebook SDK for tracking and engagement. The site is mobile optimized with good SEO practices and a professional design, though some accessibility features are basic. Performance is moderate, typical for a Squarespace-hosted site. From a security perspective, the site uses HTTPS but lacks some advanced security headers such as HSTS and CSP, which could improve protection against certain web attacks. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is addressed with a clear privacy policy and cookie consent banner, indicating GDPR awareness. Overall, the website presents a trustworthy and professional front for a nonprofit organization with a clear mission and active social media presence. The lack of WHOIS data is due to privacy protection, which is justified for this type of entity. Recommendations include enhancing security headers and continuing to maintain privacy compliance and transparency.

35
50
2
70
62
80
100
nonprofityouthempowermentpublishingdiversityliterature+1 more
Squarespace CMSGoogle AnalyticsFacebook SDKTypekit Fonts+1

Partner Domains:

shout-mouse-press.networkforgood.com
partner
kickstarter.com
partner
2025-07-28T09:31:01.456Z
indianstartupnews.com favicon

IndianStartupNews

indianstartupnews.com

63
MediaIndiasmallMEDIUM

IndianStartupNews is a specialized Indian media platform delivering comprehensive news, stories, and analysis focused on the Indian startup ecosystem. Founded in 2019, it serves entrepreneurs, investors, and business professionals interested in startup funding, government policies, and innovation trends. The platform offers a variety of content including articles, videos, and reports, positioning itself as a niche media outlet in the Indian market. Technically, the website employs modern web technologies such as Bootstrap, Google Fonts, Google Analytics, and OneSignal for push notifications, hosted behind Cloudflare DNS services. The site demonstrates good SEO practices with structured data and meta tags, and is mobile optimized with a professional design and clear navigation. Security-wise, the site uses HTTPS with a good SSL configuration and employs Cloudflare DNS and Google reCAPTCHA to mitigate threats. However, DNSSEC is not enabled, and there is a lack of published privacy and cookie policies, which are important for compliance and user trust. No security.txt or vulnerability disclosure information is present, indicating room for improvement in transparency and incident response readiness. Overall, the website is accessible without WAF blocking, and the domain registration data is consistent and legitimate, supporting the credibility of the business.

40
65
17
55
75
75
100
indianstartupsentrepreneurshipbusinessnewsfundinggovernmentpolicy+3 more
Google FontsBootstrap CSSGoogle Analytics (GA4)Google Tag Manager+6
2025-07-28T07:13:46.351Z
826boston.org favicon

826 Boston

826boston.org

46
EducationUnited StatessmallHIGH

826 Boston is a well-established nonprofit organization focused on youth literacy, writing, tutoring, and publishing in the Boston area. The organization operates with a clear mission to empower students through hands-on literacy projects and community engagement. Their website reflects a professional and consistent brand image, with clear calls to action for donations and volunteer involvement. The target audience includes students, volunteers, donors, and community members interested in educational support. The business model relies on donations, volunteer support, and partnerships with organizations such as AmeriCorps and the Massachusetts Service Alliance. Technically, the website is built on WordPress with a modern tech stack including jQuery, Bootstrap components, and integrations with Google Tag Manager, Facebook SDK, and Mailchimp for marketing and analytics. Hosting is inferred to be via GoDaddy, consistent with the domain's WHOIS data. The site performs moderately well with good mobile optimization and basic accessibility features. However, SEO and accessibility could be further enhanced. From a security perspective, the site enforces HTTPS and uses security-related plugins like Jetpack and Akismet. There are no visible vulnerabilities or exposed sensitive data. However, the absence of security headers and lack of published privacy, cookie, or incident response policies represent compliance and security gaps. The domain registration is privacy protected but consistent with a legitimate nonprofit entity, with a domain age appropriate for the organization's history. Overall, 826 Boston's website is a credible and professional platform supporting its nonprofit mission. Strategic improvements in privacy compliance, security headers, and incident response transparency would enhance trust and regulatory adherence. The site is safe for general audiences with no adult or questionable content detected.

20
35
2
70
62
80
20
nonprofiteducationyouthliteracytutoring+3 more
WordPressjQueryGoogle Tag ManagerFacebook SDK+3

Partner Domains:

give.826boston.org
service
americorps.gov
partner

+3 more partners

2025-07-28T03:50:17.926Z
solarpowerportal.co.uk favicon

Solar Power Portal

solarpowerportal.co.uk

64
EnergyUnited KingdommediumMEDIUM

Solar Power Portal is a UK-based renewable energy information resource specializing in solar power and feed-in tariff data. Established in 2010, it serves as a leading portal for stakeholders interested in solar energy developments within the UK. The website offers news, updates, and comprehensive resources targeting industry professionals and consumers alike. Technically, the site employs modern JavaScript frameworks, including React, and integrates multiple analytics and tracking tools such as Google Analytics, Chartbeat, Microsoft Clarity, and New Relic for performance monitoring. The presence of a cookie consent mechanism indicates attention to privacy compliance, although no explicit privacy policy or terms of service pages were detected in the provided content. Security posture is solid with HTTPS enforced and monitoring tools in place, but explicit security policies and incident response contacts are absent. WHOIS data is unavailable due to domain naming rules errors, which introduces some uncertainty in domain legitimacy, though the website's professional presentation and consistent branding support its credibility. Overall, the site is well-positioned in its niche but would benefit from enhanced transparency in privacy and security policies.

35
88
17
60
65
70
100
solarrenewableenergyuksolarpowerfeed-intariff+2 more
JavaScriptReact (implied by modulepreload and JS assets)Google Tag ManagerFacebook SDK+4
2025-07-28T02:41:41.206Z
wypr.org favicon

WYPR

wypr.org

64
MediaUnited StatesmediumMEDIUM

WYPR is a well-established public radio station serving the Baltimore metropolitan area and surrounding Maryland regions. The organization operates a comprehensive media platform including radio broadcasts, podcasts, news coverage, and community events. Their market position is that of a regional public media leader with a focus on local news and cultural programming. The website reflects a mature digital presence with consistent branding and a user-friendly interface targeting the general public and local community members. The business model relies on membership, donations, and underwriting support typical of public media entities. Technically, the website employs a modern tech stack including Brightspot CMS, Cloudflare DNS, and integrates multiple analytics and advertising services such as Google Analytics, Chartbeat, and Facebook SDK. The site is mobile optimized and demonstrates good SEO and accessibility practices, though performance is moderate. Security posture is solid with HTTPS enforced and clientTransferProhibited domain status, but could be improved by enabling DNSSEC and adding additional security headers. No WAF or blocking mechanisms were detected, allowing full content access. Security-wise, the site shows good practices but lacks published security policies or incident response information. Privacy compliance is partial; a privacy policy is present and comprehensive, but no explicit cookie consent mechanism or GDPR compliance indicators were found. The domain WHOIS data is consistent and supports the legitimacy of the organization, with a long registration history dating back to 2001. Overall, WYPR's website is professional, trustworthy, and serves its audience effectively. Strategic recommendations include enhancing DNS security with DNSSEC, implementing a cookie consent mechanism to improve privacy compliance, publishing security and incident response policies, and adding security headers to strengthen defenses against web threats.

30
53
17
85
65
80
100
publicradionewspodcastsmediabaltimore+1 more
JavaScriptGoogle Tag ManagerGoogle AnalyticsFacebook SDK+3

Partner Domains:

baltimorepublicmedia.org
parent
donate.nprstations.org
partner
2025-07-28T02:37:19.089Z
gamehouse.cz favicon

gamehouse.cz

gamehouse.cz

54
RetailCzech RepublicmediumMEDIUM

Gamehouse.cz is a Czech Republic based e-commerce retailer specializing in video games, toys, and IT components. The website targets gamers, toy buyers, and tech enthusiasts primarily in the Czech market. It offers a broad product catalog including consoles, games, accessories, and related merchandise. The business model is retail-focused with additional services such as authorized repairs and personal pickup locations. The site demonstrates a consistent brand presence and customer trust with over 25 years of experience claimed. Technically, the site is built on the Shoptet CMS platform, leveraging modern web technologies including jQuery, Google Analytics 4, Google Tag Manager, and Facebook SDK for marketing and analytics. The site is mobile optimized and provides a good user experience with clear navigation and professional design. Security posture is strong with HTTPS enforced, CSRF protection on forms, and standard security headers. However, no explicit security or incident response policies are published, which could be improved. Privacy compliance is addressed with cookie consent mechanisms and a privacy policy page in Czech. The absence of WHOIS data is a concern for domain legitimacy and reduces trust scores, but the website content and business operations appear legitimate and professional. Overall, the site is a well-maintained e-commerce platform with moderate to good security and privacy practices, serving a local Czech audience effectively.

40
25
2
57
52
80
100
e-commercevideogamestoysitcomponentsczechrepublic+2 more
jQuery 1.11.3Google Tag ManagerGoogle Analytics 4Shoptet CMS+3

Partner Domains:

shopsys.gamehouse.cz
partner
2025-07-27T23:17:28.693Z
nu-pure.com.au favicon

Nu-Pure Beverages

nu-pure.com.au

48
ManufacturingAustraliamediumHIGH

Nu-Pure Beverages is a medium-sized Australian family-owned company specializing in manufacturing 100% Australian-made spring water and related beverages. Established in 2005, the company positions itself as an expert in natural hydration with a strong commitment to quality, sustainability, and innovation. Their product portfolio includes spring water, private label beverages, lightly sparkling water, ultra purified drinking water, and alkaline water. The company maintains partnerships with prominent Australian sporting organizations, enhancing its market presence and brand trust. Technically, the website is built on a modern WordPress platform using WooCommerce for e-commerce capabilities and Elementor for design. It employs popular plugins such as Slider Revolution and integrates tracking and marketing tools like Google Analytics, Google Tag Manager, and Facebook Pixel. Hosting appears to be via Microsoft Azure DNS services. The site demonstrates good mobile optimization and SEO practices but lacks some accessibility features. From a security perspective, the site uses HTTPS and includes reCAPTCHA on forms, indicating basic security hygiene. However, it lacks visible security headers and published security or incident response policies, representing areas for improvement. Privacy compliance is weak due to the absence of privacy and cookie policies, which is a notable compliance gap. Overall, Nu-Pure Beverages presents a professional and trustworthy online presence with solid business credibility. Strategic improvements in privacy compliance, security headers, and incident response transparency would enhance their security posture and regulatory adherence.

20
58
17
65
62
65
20
springwateraustralianbeveragesnaturalhydrationsustainabilityalkalinewater+4 more
WordPress 6.8.2WooCommerce 10.0.4Slider Revolution 6.4.11jQuery 3.7.1+4

Partner Domains:

nu-purepromotions.com.au
partner
2025-07-27T18:40:51.990Z
hqonline.com favicon

Shenzhen Huaqiu Electronics Co., Ltd.

hqonline.com

67
TechnologyChinalargeMEDIUM

HQ Online is a leading distributor of electronic components headquartered in Shenzhen, China, operating as a subsidiary of Shenzhen Huaqiu Electronics Co., Ltd. The company offers a vast inventory of over 600,000 components from more than 3000 international and Asian brands, targeting electronics manufacturers and procurement professionals. Their business model focuses on B2B distribution complemented by related services such as PCB manufacturing and assembly through their subsidiary NextPCB. The website demonstrates a professional digital presence with good content quality and clear navigation, supporting their market position as a major player in the electronics distribution sector. Technically, the website is built on modern frameworks such as Nuxt.js and integrates multiple analytics and marketing tools including Google Tag Manager, Yandex Metrika, and Facebook SDK. The site is mobile-optimized and performs moderately well, with good SEO and basic accessibility features. Security is robust with HTTPS enforced and appropriate security headers in place, though there is room for improvement in publishing explicit security policies and incident response information. From a security perspective, the site shows no signs of vulnerabilities or malicious activity. Privacy and cookie policies are present and indicate GDPR compliance, though the consent mechanism could be enhanced for transparency. Contact information is clearly provided, enhancing business credibility. WHOIS data aligns well with the business claims, supporting legitimacy and trustworthiness. Overall, HQ Online presents a secure, professional, and credible online presence suitable for its business domain. Strategic recommendations include enhancing security policy transparency, improving accessibility, and formalizing vulnerability disclosure processes to further strengthen trust and compliance.

20
83
17
70
100
60
100
electronicscomponentsdistributorb2bshenzhen+2 more
Vue.js (Nuxt.js framework)Google Tag ManagerFacebook SDKYandex Metrika+1

Partner Domains:

nextpcb.com
subsidiary
hqdfm.com
subsidiary
2025-07-27T17:29:34.822Z
qorvo.com favicon

Qorvo

qorvo.com

68
TechnologyN/alargeMEDIUM

Qorvo is a leading technology company specializing in innovative radio frequency (RF) and power solutions. Their website presents a professional and comprehensive overview of their products and services, targeting global technology customers and engineers. The company offers a broad portfolio including RF amplifiers, power management, sensors, and integrated products, positioning itself as a key player in the semiconductor and RF industry. The website is well-structured with clear navigation and multiple language options, reflecting a mature digital presence. Technically, the website employs modern web technologies including Google Analytics, Marketo for marketing automation, and social media SDKs for Facebook, LinkedIn, and Twitter. The site uses HTTPS with a strong SSL configuration and includes cookie consent mechanisms compliant with GDPR. Performance and mobile optimization are good, though accessibility features are basic. The site lacks some advanced security headers and explicit security or incident response policies. From a security perspective, the site demonstrates good practices such as HTTPS enforcement and privacy compliance, but the absence of a security.txt file and incident response contact information indicates room for improvement. The WHOIS data is unavailable, which raises concerns about domain registration transparency, but the website's professional appearance and consistent branding support its legitimacy. Overall, Qorvo's website is a solid representation of a large technology enterprise with good content quality, technical implementation, and privacy compliance. Strategic recommendations include enhancing security headers, publishing security policies, and improving WHOIS transparency to strengthen trust and security posture.

20
88
25
75
67
85
100
rfsolutionspoweramplifierssemiconductorstechnologyprivacy+2 more
Google AnalyticsMarketoFacebook SDKLinkedIn Insight+4

Partner Domains:

orders.qorvo.com
service
ir.qorvo.com
service

+2 more partners

2025-07-27T16:23:44.761Z
jumpropeforheart.ca favicon

Heart and Stroke Foundation of Canada

jumpropeforheart.ca

65
Non-profitCanadalargeMEDIUM

The website jumpropeforheart.ca represents the Heart and Stroke Foundation of Canada's Jump Rope for Heart fundraising program. It serves as an informational and transactional platform to support fundraising activities, provide educational resources, and facilitate donations and registrations. The site targets schools, teachers, families, and donors interested in supporting heart health initiatives. The business model is non-profit, focusing on community engagement and fundraising for health research and education. The website is professionally designed with consistent branding and clear navigation, reflecting a reputable organization in the Canadian non-profit sector. Technically, the site employs modern JavaScript libraries and tracking tools such as Google Tag Manager and Facebook SDK, indicating a mature digital infrastructure. The site is mobile optimized and uses HTTPS with service workers for progressive web app features. However, some improvements could be made in accessibility and explicit privacy and cookie policy disclosures. From a security perspective, the site benefits from HTTPS and no visible vulnerabilities in the HTML content. The lack of explicit security headers and incident response contact information suggests room for enhancement in security posture. The WHOIS data is not publicly available, likely due to privacy protection, but the domain aligns with the known foundation, supporting legitimacy. Overall, the site is a credible and professional platform for a non-profit fundraising initiative, with moderate technical sophistication and a good security baseline. Strategic improvements in privacy compliance and security transparency would further strengthen trust and compliance.

70
53
17
70
62
70
100
non-profitfundraisingeducationhealthheart+3 more
JavaScriptGoogle Tag ManagerFacebook SDKCurator.io+2
2025-07-26T19:14:04.577Z
sghfoundation.org favicon

Stratford General Hospital Foundation

sghfoundation.org

67
HealthcareCanadasmallMEDIUM

The Stratford General Hospital Foundation is a well-established non-profit organization focused on raising funds for medical equipment and facility improvements at the Stratford General Hospital in Ontario, Canada. The foundation leverages community support and donor engagement to fulfill its mission, positioning itself as a trusted regional healthcare fundraising entity. The website reflects this mission with clear content, consistent branding, and active social media integration. Technically, the website uses a combination of legacy and modern web technologies including jQuery, Bootstrap, Swiper.js, and integrates Google Analytics and Facebook SDK for tracking and marketing. The site is hosted behind Cloudflare DNS services, ensuring reliable performance and security. Mobile optimization and SEO practices are adequately implemented, though some JavaScript libraries could benefit from updates. From a security perspective, the site enforces HTTPS and uses domain transfer and update prohibitions to protect domain integrity. However, DNSSEC is not enabled, and security headers are not explicitly detected, indicating room for improvement. Privacy compliance is well addressed with a clear privacy policy and cookie consent mechanism. No incident response or vulnerability disclosure policies are found, which could be enhanced to improve trust and security posture. Overall, the website presents a professional and trustworthy front for the foundation, with a good balance of content quality, technical implementation, and privacy compliance. Strategic improvements in security headers, updated libraries, and published security policies would further strengthen the site's security and compliance standing.

50
80
2
85
65
70
100
hospitalequipmentfundraisingcharityhealthcare+4 more
jQuery 1.11.2Bootstrap CSS and JSSwiper.jsGoogle Analytics (gtag.js)+1

Partner Domains:

inourhands.ca
partner
sgh5050.ca
partner
2025-07-26T18:01:02.125Z
fundraiseyourway.ca favicon

Heart and Stroke Foundation

fundraiseyourway.ca

65
Non-profitCanadalargeMEDIUM

The website 'fundraiseyourway.ca' serves as a dedicated fundraising platform for the Heart and Stroke Foundation of Canada, enabling individuals and groups to create personalized fundraising campaigns to support heart disease and stroke research and awareness. It offers multiple fundraising options including social media challenges, livestream fundraising, memorial giving, and virtual canvassing. The platform is well-branded, consistent with the parent organization's identity, and targets Canadian donors and supporters. Technically, the site uses a modern tech stack with jQuery, Google Tag Manager, Snowplow Analytics, Facebook SDK, and other tools, hosted on a CDN-backed infrastructure with good performance and mobile optimization. Security posture is strong with HTTPS, security headers, and captcha protections, though it lacks visible cookie consent and formal security policies. WHOIS data for the domain is missing, which raises some concerns about domain registration legitimacy, but the content and external references strongly associate it with the legitimate Heart and Stroke Foundation. Overall, the site is professional, trustworthy, and effective for its non-profit fundraising mission.

70
53
2
70
72
70
100
non-profitfundraisinghealthcareheartdiseasestroke+2 more
jQuery 3.7.0Google Tag ManagerSnowplow AnalyticsCurator.io social feed+6

Partner Domains:

heartandstroke.ca
parent
heartandstroke.crowdchange.ca
partner

+1 more partners

2025-07-26T15:48:05.719Z
F

Fondation des maladies du cœur et de l’AVC du Canada

coeuretavc.ca

63
HealthcareCanadalargeMEDIUM

The Fondation des maladies du cœur et de l’AVC du Canada is a prominent Canadian non-profit organization dedicated to combating heart disease and stroke through research funding, public awareness, and patient support. The website is professionally designed, primarily in French, targeting a broad audience including patients, healthcare professionals, and donors. It offers comprehensive information on cardiovascular diseases, healthy living, and ways to contribute financially or through volunteering. Technically, the website employs a modern tech stack with multiple third-party analytics and marketing tools such as Google Tag Manager, Hotjar, Optimizely, and Facebook SDK. The site is mobile-optimized, accessible, and SEO-friendly, though some security headers could be improved. HTTPS is enforced, and forms use reCAPTCHA v3 for spam protection. Security posture is strong with no visible vulnerabilities or exposed sensitive data, but explicit security headers like Content-Security-Policy and X-Frame-Options are not detected in the HTML source, which are recommended for enhanced protection. Privacy and cookie policies are present and GDPR compliant, reflecting good privacy practices. However, the absence of WHOIS data for the domain raises concerns about domain registration transparency and trustworthiness. While the website content and branding strongly indicate legitimacy, the missing WHOIS information lowers the overall trust score. This discrepancy should be investigated further to ensure domain registration aligns with organizational claims.

20
58
2
85
90
70
100
healthcarenon-profitheartdiseasestrokedonation+3 more
JavaScriptGoogle Tag ManagerOptimizelyHotjar+4

Partner Domains:

app-hsfdonation.heartandstroke.ca
partner
www.heartandstroke.ca
partner

+3 more partners

2025-07-26T15:47:55.677Z
revolutionride.ca favicon

Amyotrophic Lateral Sclerosis Society of Canada

revolutionride.ca

63
Non-profitCanadamediumMEDIUM

The ALS Canada Revolution Ride website serves as a professional and well-branded platform for promoting the 2025 fundraising cycling event organized by the Amyotrophic Lateral Sclerosis Society of Canada. The site effectively communicates the event's purpose, target audience, and key services including fundraising, community support, research funding, advocacy, and information dissemination. The organization behind the site is a reputable Canadian non-profit established in 1977, with a strong market position in ALS awareness and support. The website's content is relevant, well-structured, and visually appealing, targeting cyclists and supporters of ALS causes. From a technical perspective, the site employs a modern technology stack including jQuery, TinyMCE, Google reCAPTCHA, Facebook SDK, and Very Good Vault for secure data collection. Hosting appears to be on Rackspace infrastructure. The site is mobile optimized and SEO friendly, though accessibility features could be improved. Security posture is strong with HTTPS enforced and use of security tools, but lacks some security headers and publicly available security policies. Privacy compliance is weak due to missing privacy and cookie policies. Overall, the security posture is good with no detected vulnerabilities or WAF blocking. The domain WHOIS data is unavailable, likely due to privacy protection, which is justified for this non-profit event site. Trust indicators such as charity registration and certifications bolster credibility. The site is safe for general audiences with no adult or questionable content. Strategic recommendations include publishing comprehensive privacy and cookie policies, adding security headers, providing clear contact information for security and privacy matters, and enhancing accessibility compliance to improve overall trust and compliance posture.

45
35
2
80
75
85
100
non-profitfundraisingalscyclingcharity+2 more
jQueryjQuery UITinyMCEGoogle reCAPTCHA+2

Partner Domains:

als.ca
partner
2025-07-26T14:35:54.974Z
crohnetcolite.ca favicon

Crohn's and Colitis Canada

crohnetcolite.ca

59
HealthcareCanadalargeMEDIUM

Crohn's and Colitis Canada is a well-established national non-profit organization dedicated to supporting individuals affected by Crohn's disease and ulcerative colitis through research funding, patient support, education, and advocacy. The website serves as a comprehensive resource hub for patients, caregivers, healthcare providers, and donors, offering multilingual content primarily in French with English options. The organization holds a strong market position as the sole national volunteer-based charity focused on inflammatory bowel diseases in Canada, supported by a large network of donors, volunteers, and partners. Technically, the website is built on the Kentico CMS platform and leverages modern web technologies including jQuery, Bootstrap, and various third-party integrations for social media, analytics, and marketing. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance is moderate. The presence of multiple tracking and advertising scripts indicates extensive user data collection for marketing and engagement purposes. From a security perspective, the site uses HTTPS with domain transfer protections but lacks DNSSEC and explicit security headers, representing areas for improvement. Privacy and cookie policies are present and include consent mechanisms, but GDPR compliance is not explicitly confirmed. No incident response or vulnerability disclosure information is found, which could be enhanced to improve trust and security posture. Overall, the website is professional, trustworthy, and content-rich, serving its community effectively. Strategic recommendations include enhancing DNS security, implementing security headers, improving privacy compliance transparency, and establishing formal vulnerability disclosure and incident response channels to strengthen security and compliance maturity.

35
68
17
35
67
65
100
crohnetcolitecanadamiicrohncoliteulcreusesoutienpatient+4 more
jQueryBootstrapSlick CarouselFeatherlight+5

Partner Domains:

crohnsandcolitiscanada.akaraisin.com
partner
crohnsandcolitisconnect.ca
partner

+3 more partners

2025-07-26T14:35:19.077Z
H

Heart and Stroke Foundation of Canada

heartandstroke.ca

67
HealthcareCanadalargeMEDIUM

The Heart and Stroke Foundation of Canada is a prominent non-profit health charity dedicated to eliminating heart disease and stroke through research, advocacy, and public education. The organization operates a comprehensive website offering health information, fundraising opportunities, and volunteer engagement, targeting a broad audience including patients, health seekers, and professionals. Their market position is strong as a leading Canadian health charity with a large operational scale and consistent branding. Technically, the website is built on a modern CMS platform (Sitecore) and employs a robust tech stack including Google Tag Manager, Optimizely, Hotjar, and Facebook SDK for analytics, marketing, and user experience optimization. The site is well-optimized for mobile devices, accessibility, and SEO, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses secure forms with reCAPTCHA, and includes privacy and cookie policies with consent mechanisms, indicating good compliance with privacy regulations such as GDPR. No critical vulnerabilities or exposed sensitive data were detected, though explicit security headers could be confirmed for enhanced security posture. Overall, the website presents a low-risk profile with strong trust indicators and professional content. The lack of WHOIS data is likely due to privacy protection, which is justified for this type of organization. Strategic recommendations include publishing a vulnerability disclosure policy, incident response contacts, and confirming security headers to further strengthen security and trust.

20
58
2
87
100
80
100
heartdiseasestrokehealthylivingbloodpressurehealthyeating+15 more
JavaScriptGoogle Tag ManagerOptimizelyHotjar+4

Partner Domains:

app-hsfdonation.heartandstroke.ca
service
www.coeuretavc.ca
partner

+3 more partners

2025-07-26T13:25:49.459Z
commissionsantementale.ca favicon

Mental Health Commission of Canada

commissionsantementale.ca

58
HealthcareCanadamediumMEDIUM

The Mental Health Commission of Canada operates a comprehensive bilingual website focused on improving mental health outcomes for Canadians. The organization provides education, research, and resources to individuals, families, caregivers, and professionals, positioning itself as a national leader in mental health advocacy. The website is professionally designed with excellent content quality, clear navigation, and strong branding consistency, reflecting a mature digital presence. Technically, the site is built on WordPress with Elementor and leverages modern analytics and marketing tools such as Google Tag Manager, Microsoft Clarity, and social media integrations. Hosting is provided by a Canadian registrar, and the site uses HTTPS with good SSL configuration. However, DNSSEC is not enabled, and some security headers are not explicitly detected, indicating room for improvement in security hardening. Security posture is solid but could be enhanced by publishing explicit security policies, incident response contacts, and vulnerability disclosure mechanisms. Privacy compliance is partial; while a privacy policy and terms of service are present, no explicit cookie consent mechanism was found, which may pose compliance risks under GDPR or similar regulations. Overall, the site is trustworthy and professional with a high legitimacy score based on WHOIS data and content analysis. Strategic recommendations include enabling DNSSEC, implementing cookie consent, and publishing security-related policies to strengthen compliance and security posture.

25
35
17
55
72
75
100
mentalhealthnon-profitcanadahealthcareeducation+2 more
WordPressElementorJetEngineYoast SEO+5

Partner Domains:

mentalhealthcommission.ca
partner
healthpartners.ca
partner

+2 more partners

2025-07-26T11:07:02.227Z
R

Resicert Portal

resicertportal.com

49
OtherN/asmallHIGH

The Resicert Portal website serves as a membership login platform primarily focused on user authentication and account management. It supports traditional email/password login as well as social login options via Google, Facebook, and Microsoft, indicating an intent to provide flexible access methods for its users. The portal appears to be part of a membership or certification service, targeting users who require access to specific resources or services behind a login. The business model is centered around membership management, likely supporting a small to medium-sized organization founded in 2022. From a technical perspective, the website leverages modern front-end technologies including Materialize CSS for UI components, Google Fonts for typography, and integrates third-party authentication SDKs from major providers. The platform is hosted with DNS services via Cloudflare and registered through Dreamscape Networks International. The use of Ontraport indicates reliance on a marketing and membership management platform, which also handles tracking and analytics. The site demonstrates moderate performance and good mobile optimization but lacks advanced SEO and accessibility features. Security posture is adequate but could be improved. The site uses HTTPS and secure login forms, including OAuth-based social logins, which are positive indicators. However, the absence of DNSSEC, security headers like CSP or HSTS, and lack of published security policies or incident response contacts represent gaps. No critical vulnerabilities or exposed sensitive data were detected in the provided content. Privacy compliance is weak, with no visible privacy or cookie policies, which could pose regulatory risks. Overall, the website is functional and moderately professional but lacks comprehensive privacy and security disclosures. The domain registration is consistent and appropriate for the business age. Strategic improvements in security headers, privacy compliance, and transparency would enhance trust and reduce risk.

15
35
2
60
52
60
100
membershiploginportalauthenticationsocial-login+1 more
Materialize CSSGoogle FontsGoogle Identity ServicesFacebook SDK+2
2025-07-26T08:53:43.492Z