demicon.org

.org crawl

First seen 2026-04-24 · Last seen 2026-05-15 · ok HTTP/1.1 200 6867 ms crawled 2026-05-18

US · 13.33.235.118 · AS16509 Amazon.com, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Welcome to DemiCon 37 - DemiCon 37
Language
en-US

Open Graph

url
https://demicon.org/37/index.html
title
DemiCon 37
description
Des Moines' 37th Annual Science Fiction, Fantasy, and Gaming Convention. May 1-3, 2026 at Holiday Inn & Suites Des Moines-Northwest.

Technology

CDN
Amazon CloudFront
Server
nginx
CMS
Gatsby

Social

Registration

Registrar
Tucows Domains Inc.
Created
2000-12-06
Expires
2026-12-06 201 days left
Updated
2025-12-10
Name servers
  • norah.ns.cloudflare.com
  • rory.ns.cloudflare.com

DNS records live

NS
  • norah.ns.cloudflare.com
  • rory.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
  • google-site-verification=5F8IPpoivXfBSJZrtxjZJ5P9IGpsJBGAFngENmHgopA

Email authentication partial

SPF
v=spf1 mx include:servers.mcsv.net include:_spf.google.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:webmaster@demicon.org; ruf=mailto:webmaster@demicon.org; fo=1
policy: none (monitoring only)
DKIM
  • google: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCE3Hj+9a/nXCRWw3qoRv9JJa75wKlOzzzW8DCEbYqta9SLIGgFd9BJpQOgzU2hLkNQD0r8tJIXvPEOLEHmG4…
  • k1: k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed

Certificate (current)

Amazon RSA 2048 M04
from 2026-04-18 to 2026-11-02
Expires in 167 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://demicon.org/37/index.html

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
permissions-policy
browsing-topics=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' https://static.demicon.org 'unsafe-inline'; style-src 'self' https://static.demicon.org 'unsafe-inline'; font-src 'self' https://static.demicon.org; img-src 'self' https://static.demicon.org data:
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (5)

Linked from (2)