Is greenpeace.org legit?
While greenpeace.org presents itself as a highly established and secure platform, a few notable gaps exist in its transparency and compliance. Users can generally trust this site, but missing legal pages and contact information are minor red flags.
Nonprofit average: 81/100 · based on 19 sites
Checked: April 18, 2026 at 8:09 AM UTC · Refresh
Is greenpeace.org a scam? Here's what we found.
The site boasts strong security with a modern TLS 1.3 encryption, HSTS enforcement, and a clean bill of health from Google Web Risk. While the Let's Encrypt certificate is functional, some larger organizations might opt for more premium CAs.
Greenpeace.org benefits from an exceptionally long domain history, indicating a well-established and persistent online presence. The domain is registered with a known registrar, giving confidence in its foundational credentials, though the upcoming expiry is an oddity for such an organization.
The site holds a very strong position in terms of web traffic, placing it among the most recognized domains globally. It's notably clean on all DNS blacklists, reinforcing its positive standing on the internet.
While the branding is complete, the lack of immediate contact information and social media links on the homepage is unusual for a prominent nonprofit, potentially hindering direct engagement and open communication with its audience.
The absence of a complete set of legal pages (privacy policy or terms of service) is a significant oversight for an organization dealing with public engagement and data, which is a key aspect of basic digital compliance.
The email and DNS infrastructure are robust, leveraging Google's services for reliable delivery and strong email authentication. The presence of DNSSEC further secures the domain from certain types of attacks, showcasing a well-maintained technical foundation.
Signals Detected
This is a well-known, high-traffic website
No structured data markup found
This business has no Trustpilot presence — not unusual for smaller or newer companies
robots.txt has 2 directives
Site has custom branding and social media metadata
Resolves to: 35.184.130.59
Mail servers: aspmx.l.google.com., alt1.aspmx.l.google.com., alt2.aspmx.l.google.com., aspmx2.googlemail.com., aspmx3.googlemail.com.
Domain has SPF email authentication configured
Domain has DMARC email authentication configured
DNS providers: ns-cloud-c1.googledomains.com., ns-cloud-c3.googledomains.com., ns-cloud-c4.googledomains.com., ns-cloud-c2.googledomains.com.
Valid certificate, expires in 48 days
Certificate issued by Let's Encrypt
Connection uses TLS 1.3
Not found on any DNS blacklists
Site enforces HTTPS via HSTS
Web server: cloudflare
No threats detected by Google Web Risk
Domain created 1992-06-15T04:00:00Z (33 years, 4 months ago)
Registered through Gandi SAS
Expires in 56 days
DNSSEC status from WHOIS
No sitemap found — common for smaller sites
Website is live and responding
No obvious contact information found on homepage
Website is missing either privacy policy or terms of service
No social media links found on homepage
Could not query Wayback Machine
Could not query certificate transparency logs
Fast page load
Stay Safe Online
Good habits to protect yourself, no matter the scan result.
Never reuse passwords across sites.
Add a second layer of security to your accounts.
Always verify unfamiliar stores before entering payment info.