responsiblegambling.org
FHome
Find information, resources and advice on problem gambling prevention. Industry professional? Access accreditation criteria, consultancy and training services, research and latest the insights on responsible gambling around the world.
Built with
- CMS
- WordPress
Also detected
- Infrastructure
- Apache
- Third-party services
- Google Tag Manager
Overview
- Status
- alive
- Registered
- 1999-09-28 (27 years ago)
- First seen here
- 2026-09-22
- Security grade
- F (30/100, from headers & TLS)
- Privacy score
- 84/100 (0 third-party script hosts, 1 tracking/marketing services)
- Hosting
- Amazon.com, Inc. · AS14618 · United States
- Server header
Apache/2.4.58 (Ubuntu)- Response time
- 802 ms to first byte, measured from our crawler
- TLS certificate
- Let's Encrypt · TLSv1.3 · expires 2026-11-12
- Language
- en
- Mobile-ready
- yes (viewport meta tag)
- Linked to from
- 4 other sites seen so far
What to fix
- Add Strict-Transport-Security
Header: Strict-Transport-Security: max-age=31536000; includeSubDomains - Add a Content-Security-Policy
Limits which scripts can run, and is the main defense against XSS. Start with Content-Security-Policy-Report-Only to test. - Add X-Content-Type-Options
Header: X-Content-Type-Options: nosniff - Prevent clickjacking
Header: X-Frame-Options: DENY (or a CSP frame-ancestors directive). - Add a Referrer-Policy
Header: Referrer-Policy: strict-origin-when-cross-origin - Mark cookies Secure and HttpOnly
At least one cookie is sent without these flags, exposing it to interception or scripts. - Publish an SPF record
A DNS TXT record listing who may send email for this domain, which prevents spoofing.
Security & email signals
- ✓ HTTPS
- ✗ HSTS
- ✗ Content-Security-Policy
- ✗ X-Content-Type-Options
- ✗ X-Frame-Options
- ✗ Referrer-Policy
- ✗ Permissions-Policy
- ✗ SPF record
- ✓ DMARC record
- ✗ DKIM record
- ✗ Cookies set securely
- ✓ Has real content (not an empty shell)
- ✓ Valid TLS certificate
Badge
Show this site's security grade in a README or footer:

<a href="https://webtelemetry.dev/site/responsiblegambling.org"><img src="https://webtelemetry.dev/badge/responsiblegambling.org.svg" alt="Security grade"></a>
Generated automatically from passive, publicly observable data. Think something here is wrong or want this profile removed? See /bot. Machine-readable: JSON.