Skip to main content

Nonprofit Website Security Toolkit

Reusable tooling for volunteers keeping nonprofit websites secure

Easy to Use

One-command security checkup

Run recon_check.py their-domain.org against any nonprofit's site — hacked or healthy — and get a full markdown report: cloaking, Safe Browsing, WordPress exposure, security headers, SSL, DNS, and subdomain takeover risks.

Focus on What Matters

Built for volunteers, not vendors

Zero-dependency stdlib Python, gitignored per-engagement findings, and fill-in-the-blank templates — designed for a one-hour volunteer call, reusable across every nonprofit you help next, whether you're hardening a healthy site or recovering a hacked one.

Powered by React

From finding to fix

Beyond detection: a hardening checklist, an image optimizer, and (if a hack already happened) a recovery playbook and Google reconsideration-request draft — everything you need to hand the org a finished plan, not just a list of problems.