cscca.org

.org crawl

First seen 2026-05-09 · Last seen 2026-05-20 · ok HTTP/1.1 200 1211 ms crawled 2026-05-15

US · 52.87.105.192 · AS14618 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Home - Collegiate Strength and Conditioning Coaches Association
Description
To improve, serve, and empower the strength and conditioning coach
Language
en

Technology

Third-party hosts loaded (5)

  • images.clubexpress.com×4
  • s3.amazonaws.com×4
  • cse.google.com×1
  • s3.us-east-1.amazonaws.com×1
  • static.addtoany.com×1

Social

Registration

Registrar
GoDaddy.com, LLC
Created
2000-05-31
Expires
2026-05-31 10 days left
Updated
2025-09-18
Name servers
  • a.dns.clubexpress.com
  • b.dns.clubexpress.com

DNS records live

NS
  • a.dns.clubexpress.com
  • b.dns.clubexpress.com
  • c.dns.clubexpress.com
  • d.dns.clubexpress.com
MX
  • 0 mx1-us1.ppe-hosted.com
  • 5 mx2-us1.ppe-hosted.com

Email authentication strong

SPF
v=spf1 include:_spf-us.ppe-hosted.com a:mailer.clubexpress.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; sp=quarantine; adkim=s; aspf=s; pct=100;
policy: quarantine · sp=quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDZis8YU7mr9Cp/6rg4U7LkXOkmhw4SeKWjsnyP/fUdjTSH3AY4PE9h+AGAuyQtnJPqgB86rAeBIOBNrA0z5n…
selectors probed

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2025-09-03 to 2026-10-05
Expires in 137 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://cscca.org/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src https: *; script-src https: 'unsafe-inline' 'unsafe-eval' *;img-src data: https:;font-src data: https:;style-src https: 'unsafe-inline' *;upgrade-insecure-requests;frame-ancestors 'self'; base-uri 'none'; frame-src mailto: *; worker-src blob: * ; child-src blob: ;
strict-transport-security
max-age=31536000; includeSubDomains; preload, max-age=31536000

Links to (8)

Linked from (2)