cchwyo.org
HTML metadata
Technology
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (2)
- analytics.scorpion.co×1
- use.typekit.net×1
Social
Contact
- Phone
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2014-05-23
- Expires
- 2028-05-23 735 days left
- Updated
- 2026-03-15
- Name servers
-
- ns27.domaincontrol.com
- ns28.domaincontrol.com
DNS records live
- NS
-
- ns27.domaincontrol.com
- ns28.domaincontrol.com
- MX
-
- 1 cchwyo-org.mail.protection.outlook.com
- TXT
-
1password-site-verification=AY4E6XPTD5AK7MC6V55E6NULAU
Email authentication partial
- SPF
-
v=spf1 ip4:170.76.197.60/32 ip4:170.76.197.61/32 ip4:170.76.197.100/32 include:cchwyo-org.spf.smtp25.com include:spf.protection.outlook.com include:_spf.psm.knowbe4.com include:_spf01.mykronos.com include:sendgrid.net include:spf-1958529.jangomail.com include:servers.mcsv.net include:_spf01.ultipro.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; pct=100; ri=3600; ruf=mailto:dmarc@cchwyo.org; rua=mailto:dmarc@cchwyo.org; fo=1; sp=none; adkim=r; aspf=rpolicy: none (monitoring only) · sp=none - DKIM
-
- default:
v=DKIM1;t=s;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC3NRUJRUM3PDqjMdMiQop9T0J2FZc7AFdwGyUuoB+ok9Ajl/IA37LV8AzuurGSZjtugwo+91g/HRRbzXFFklq27b… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwJHx85QDRuQ40x3npOwU8POs4OsF3ypX6RfkENbr5cWjPWRQX+OmpYlWmnYWy94vU+gNKzqwO7DzDN… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0LJi+M009jpmm4Lx43/rAWt+PqbgiDvYgOSxnXhtJSF0853i4HXQLhh5Vi3W48yBjgyNK3TFi9mX/wlkaK… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCrxwcWosiNCF0vw4QQKKq2HbqfbP5acmAr0xlEO6+VraSEYHZ/G1rR3cwzSHsSN8QD043vOVim0xyw03TXdIqyfk…
selectors probed - default:
Certificate (current)
R12
Expires in 42 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src * blob: data: cid:; img-src * data: cid: 'unsafe-inline'; media-src * data: blob:; script-src * data: blob: 'unsafe-inline' 'unsafe-eval'; style-src * blob: data: 'unsafe-inline'; style-src-elem * blob: data: 'unsafe-inline', font-src * data:- strict-transport-security
max-age=63072000; includeSubDomains; preload