CallBegin recon →

BENCHMARK — INDIVIDUAL ENTRY

Saint John

saintjohn.ca

SCORE

64/100

GRADE

D

STACK

Custom / non-WordPress

§ I — FINDINGS BY SEVERITY01 / 03

critical

0

high

0

medium

3

low

4

info

2

§ II — SUBJECT FILE02 / 03
target.host
saintjohn.ca
server
cloudflare
tech
Custom / non-WordPress
tls
HTTPS reachable
hsts
2.0 years
spf
present
dmarc
p=none
civic-pages
7/7 categories present
trackers
18 external origins (1 known, 17 unclassified)
§ III — TOP FINDINGS03 / 03
  • medium

    No Content-Security-Policy

  • medium

    SPF policy is permissive (~all)

  • medium

    DMARC published with p=none — monitoring only

  • low

    robots.txt names 2 sensitive paths

  • low

    No MTA-STS policy on saintjohn.ca

NEXT STEP

A custom rebuild closes a category of these findings in one purchasing cycle.