bluefieldproject.org

.org crawl

First seen 2026-04-22 · Last seen 2026-05-15 · ok HTTP/1.1 200 1994 ms crawled 2026-05-15

US · 34.192.255.123 · AS14618 Amazon.com, Inc.

Reputation 67/100 wrong cert no dmarc policy

Classifying

HTML metadata

Title
Frontotemporal dementia | The Bluefield Project to Cure FTD
Description
The Bluefield Project was established in 2010 to fund research directed towards curing frontotemporal dementia (FTD). FTD is a devastating, early-onset degenerative brain disease and is recognized as a common cause of dementia in people under the age of 60 years.

Technology

Server
Apache
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • ajax.googleapis.com×1
  • www.googletagmanager.com×1

Registration

Registrar
GoDaddy.com, LLC
Created
2010-03-12
Expires
2027-03-12 296 days left
Updated
2024-06-27
Name servers
  • ns17.domaincontrol.com
  • ns18.domaincontrol.com

DNS records live

NS
  • ns17.domaincontrol.com
  • ns18.domaincontrol.com
MX
  • 10 aspmx.l.google.com
  • 20 alt1.aspmx.l.google.com
  • 30 alt2.aspmx.l.google.com
  • 40 aspmx2.googlemail.com
  • 50 aspmx3.googlemail.com

Email authentication weak

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current) wrong cert

R13
from 2026-04-26 to 2026-07-25
Expires in 67 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.bluefieldproject.org/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' data:; report-uri /csp.cfm; style-src 'self' 'unsafe-inline' fonts.googleapis.com *.typekit.net *.twimg.com *.twitter.com; font-src 'self' data: https:; frame-ancestors 'self'; frame-src 'self' player.vimeo.com *.youtube.com www.google.com *.twitter.com prezi.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' ajax.googleapis.com www.google-analytics.com www.googletagmanager.com maps.googleapis.com *.twimg.com *.twitter.com; img-src 'self' data: *.google-analytics.com maps.googleapis.com maps.gstatic.com www.googletagmanager.com *.twimg.com *.twitter.com www.paypalobjects.com; connect-src 'self' *.google-analytics.com
strict-transport-security
max-age=15768000

Links to (3)

Linked from (1)