demcnabb.com

.com crawl

First seen 2026-04-22 · Last seen 2026-05-16 · ok HTTP/1.1 200 4673 ms crawled 2026-05-16

US · 159.89.33.199 · AS14061 DigitalOcean, LLC

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Your Flooring Source in Milford, MI | Donald E. McNabb Flooring
Description
Learn why Donald E. McNabb Flooring is the Milford, MI area’s most trusted provider of high-quality, affordable flooring products & services for your home.
Language
en-US
Canonical
https://www.demcnabb.com/

Open Graph

url
https://www.demcnabb.com/
title
Your Flooring Source in Milford, MI | Donald E. McNabb Flooring
locale
en_US
site name
Donald E. McNabb Flooring
description
Learn why Donald E. McNabb Flooring is the Milford, MI area’s most trusted provider of high-quality, affordable flooring products & services for your home.

Technology

Server
LiteSpeed
CMS
WordPress
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts
Third-party hosts loaded (12)
  • fonts.gstatic.com×2
  • mm-media-res.cloudinary.com×2
  • viz.broadlu.me×2
  • fonts.googleapis.com×1
  • gmpg.org×1
  • mmllc-images.s3.amazonaws.com×1
  • session.mm-api.agency×1
  • static.floorforce.com×1
  • www.floorlytics.broadlu.me×1
  • www.google.com×1
  • www.googletagmanager.com×1
  • www.roomvo.com×1

Social

Contact

Phone
Address
rd RdMilford, MI 48381

Registration

Registrar
GoDaddy.com, LLC
Created
1996-04-13
Expires
2027-04-14 328 days left
Updated
2023-11-08
Name servers
  • ns31.domaincontrol.com
  • ns32.domaincontrol.com

DNS records live

NS
  • ns31.domaincontrol.com
  • ns32.domaincontrol.com
MX
  • 0 mx1-us1.ppe-hosted.com
  • 10 mx2-us1.ppe-hosted.com
TXT
  • ppe-bdfc91e2b52620e0d65e015ac53e9458f30de104
Verified for
  • GlobalSign
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:spf.protection.outlook.com ip4:98.161.118.103 ip4:50.206.212.162 ip4:70.88.91.113 ip4:50.206.212.163 a:dispatch-us.ppe-hosted.com include:relay.qfloors.com -all
strict (-all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8HG56W3UecdAmipE+f2mwZ6i/v2N/zhdEiSIfLCcjoH9iO1ZpvQh/ncIK8pSJJU+kqRzyME4LcBt1khttA…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDuzx+yf87S0G1d3JMwSWGGV6k3wdl2Wk+8D86noKR+auqFI1KIONy6LIivZRVILXwBYAAjbYsPkR5gUeJ7aKvXmy…
selectors probed

Certificate (current)

R12
from 2026-03-22 to 2026-06-20
Expires in 31 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.demcnabb.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=(), geolocation=(self "")
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: session.mm-api.agency mmllc-images.s3.amazonaws.com www.roomvo.com mm-media-res.cloudinary.com https://session.mm-api.agency/init facebook.com connect.facebook.net https://www.gstatic.com/wcm/loader.js googleadservices.com *.stripe.com https://i.vimeocdn.com/video/ https://player.vimeo.com https://vimeo.com/api/oembed.json http://www.googletagservices.com https://cdnjs.cloudflare.com https://i.simpli.fi/ https://*.audioeye.com/ https://sampleproduct.mm-dev.agency/ https://insight.adsrvr.org/ *.slabcloud.com *.cloudflareinsights.com *.vimeo.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.cloudflareinsights.com *.stripe.com https://slabcloud.com *.slabcloud.com *.sentry.io *.amazonaws.com *.yourgreatfloors.com *.tvsquared.com *.nomipix.com *.trkn.us *.birdeye.com https://reviewtube.com/ *.reportingsolution.net https://reviews.nextadagency.com/ *.hibu.com *.userway.org session.mm-api.agency www.roomvo.com https://session.mm-api
strict-transport-security
max-age=63072000, max-age=31536000;
cross-origin-opener-policy
unsafe-none
cross-origin-embedder-policy
unsafe-none; report-to='default'
cross-origin-resource-policy
cross-origin

Links to (3)

Linked from (1)