climatefinanceaccelerator.com

.com crawl

First seen 2026-05-04 · Last seen 2026-05-11 · ok HTTP/1.1 200 1971 ms crawled 2026-05-11

US · 45.60.71.185 · AS19551 Incapsula Inc

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Home - CFA
Description
The CFA is part of the UK’s efforts to support climate action at scale by providing practical ways to help governments in emerging economies finance and deliver their climate commitments
Language
en

Technology

Server
Microsoft-IIS

Third-party hosts loaded (2)

  • cdn.jsdelivr.net×4
  • cdn3.devexpress.com×3

Social

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2017-10-12
Expires
2027-10-12 509 days left
Updated
2026-01-25
Name servers
  • pdns1.cscdns.net
  • pdns2.cscdns.net

DNS records live

NS
  • pdns1.cscdns.net
  • pdns2.cscdns.net
MX
  • 10 climatefinanceaccelerator-com.mail.protection.outlook.com
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 -all
strict (-all)
DMARC
v=DMARC1; p=none; aspf=s; adkim=s; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

GlobalSign Atlas R3 DV TLS CA 2026 Q1
from 2026-03-13 to 2026-06-11
Expires in 22 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.climatefinanceaccelerator.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
base-uri 'self'; default-src 'self'; form-action 'self'; img-src 'self' data: https://www.googletagmanager.com https://www.google-analytics.com; object-src 'none'; script-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://cdn.jsdelivr.net https://cdn3.devexpress.com; style-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net https://cdn3.devexpress.com; font-src 'self' https://cdn.jsdelivr.net https://cdn3.devexpress.com; connect-src 'self' http: ws: wss:; upgrade-insecure-requests; block-all-mixed-content
strict-transport-security
max-age=31536000; includeSubDomains

Links to (3)

Linked from (1)