bhamnow.com
HTML metadata
Technology
- Server
- Sucuri
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (10)
- i0.wp.com×14
- c0.wp.com×13
- secure.gravatar.com×11
- wp.fifu.app×10
- stats.wp.com×3
- www.googletagmanager.com×2
- gmpg.org×1
- player.vimeo.com×1
- wp.me×1
- www.youtube.com×1
Social
Contact
- Address
- 35203, Birmingham, AL, United States
Registration
- Registrar
- Wild West Domains, LLC
- Created
- 2015-08-09
- Expires
- 2027-08-09 446 days left
- Updated
- 2025-12-10
- Name servers
-
- pdns11.domaincontrol.com
- pdns12.domaincontrol.com
DNS records live
- NS
-
- pdns11.domaincontrol.com
- pdns12.domaincontrol.com
- MX
-
- 10 bhamnow-com.mail.protection.outlook.com
- TXT
-
v=verifydomain MS=5555105google-site-verification=Ut153zhqzieyLhlMON3PP_8I2zfPwT0SEQ4CgQZdcmcfacebook-domain-verification=nn83u3otnfjdndqwcvm5ll7wod1a15
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com a:mail.rushingwatersmediagroup.com include:spf.emailsignatures365.com a:mail.hominy.com include:send.aweber.com a:mail.bhamnow.com include:e.notification.intuit.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; ruf=mailto:webmaster@bhamnow.com; fo=1;rua=mailto:dmarc@fbl.optin.com;policy: quarantine - DKIM
-
Show 4 DKIM selectors
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA43SfL66FzRptrsoY0QtOb1gPrWkIXGEx50dIH2Bw0fskmKpufDipXg3iKYApWZHaBpOwmRpYABPPTm… - selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDobf0Bfpuu+4A+S2NlGUSstNIXeHGLzmqxnPCiqOTp7yGeBn2EiNFOfdO+ei/tUeoxsq7S/FoaKIjcCr1xqO… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv42hxloMHon6oM4C6H46wPudQ68FjtOSQ0vw8QzbLDWsuu6SDjWYfCwp9/FFdLpRJ41Loo+TN1x3ck… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - default:
Certificate (current)
Starfield Secure Certificate Authority - G2
Expires in 26 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
upgrade-insecure-requests;, frame-ancestors 'self' https://*.bhamnow.com https://*.thebamabuzz.com https://*.hvilleblast.com https://*.montgomeryup.com; base-uri 'self'- strict-transport-security
max-age=31536000; includeSubdomains; preload