Overview
The desktop review evaluated public-facing web presence for 143 public sector websites as a proxy for service readiness, transparency, and basic cyber hygiene. Indicators capture security posture, governance signals and service-related content.
Key Indicators
Percent of websites where each indicator was observed.
Indicator definitions
- HTTPS implemented: site served over HTTPS.
- Secure configuration (basic): proxy for TLS/cert configuration hygiene.
- ODPC registration: explicit registration/reference signal with the Office of the Data Protection Commissioner.
- ICTA registrar signals: evidence of ICTA-related compliance/registration signal on the website.
- Leadership info: leadership information or organizational profile present.
- Service / app resources: service/application resources (portals/apps) and guidance present.
- Forms present: downloadable or online forms for services.
- Feedback mechanisms: channels for public feedback/contact present.
- Financial reports: annual/financial reports or transparency artifacts posted.
Evidence Table
Click “Sort” above to reorder. “Gap to target” updates when you change the target.
| Indicator | Category | Observed (%) | Gap to target | Signal |
|---|
Percentages reflect observations recorded during the desktop review window.
What this means
HTTPS adoption is near-universal, supporting safer user interactions on public websites. Next: enforce security headers, modern TLS profiles and routine certificate monitoring.
Secure configuration posture is weaker; misconfiguration and operational hygiene need strengthening. Consider a baseline checklist and periodic external scanning.
ODPC registration and ICTA registrar signals appear in roughly half of websites, indicating uneven compliance signaling. Standardize footer compliance badges/links and require periodic updates.
Only 16.1% post financial reports, suggesting a major opportunity to improve transparency online. Introduce a minimum “Transparency page” template and compliance monitoring.
- HTTPS + modern TLS configuration baseline, monitored quarterly.
- Publish ODPC + ICTA compliance signals on every site footer.
- Provide service guidance: forms, how-to steps, contacts, and feedback channels.
- Publish annual reports/financials in a standardized “Transparency” section.