eriecanalway.org

.org crawl

First seen 2026-04-14 · Last seen 2026-05-15 · ok HTTP/1.1 200 2961 ms crawled 2026-05-08

US · 192.252.149.85 · AS8739 ICDSoft Ltd.

Reputation 89/100 weak security headers dmarc monitor-only

Classifying

HTML metadata

Title
Home
Description
The official website of the Erie Canalway National Heritage Corridor, New York.
Language
en-US
Generator
Concrete CMS
Canonical
https://eriecanalway.org/

Open Graph

title
Home
locale
en_US
site name
Erie Canalway National Heritage Corridor
description
The official website of the Erie Canalway National Heritage Corridor, New York.

Technology

Server
Apache
CMS
Joomla
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • cdn.jsdelivr.net×2
  • www.googletagmanager.com×2
  • fonts.googleapis.com×1
  • www.facebook.com×1

Social

Contact

Email
Phone

Registration

Registrar
Cloudflare, Inc.
Created
2002-12-23
Expires
2026-12-23 216 days left
Updated
2025-11-21
Name servers
  • maria.ns.cloudflare.com
  • pete.ns.cloudflare.com

DNS records live

NS
  • maria.ns.cloudflare.com
  • pete.ns.cloudflare.com
MX
  • 0 eriecanalway-org.mail.protection.outlook.com
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 a mx include:s2157.smtp-spf.sureserver.com include:server271.smtp-spf.sureserver.com include:spf.protection.outlook.com include:_spf.neonemails.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@eriecanalway.org
policy: none (monitoring only)
DKIM
  • dkim: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC62dDQ+sdPCHI1TxPfy17XUzsiDtFBMP5VEdOpO+1X3BaLBSjYU93EySvo0/jmbxrp9i8gG18YYnk9zQ2Swr…
selectors probed

Certificate (current)

R13
from 2026-04-22 to 2026-07-21
Expires in 61 days

HTTP security headers

Header hygiene 35/100 Checked live page: https://eriecanalway.org/

present
  • x-frame-options
findings
  • missing HSTS
  • missing Content Security Policy
  • weak frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN, deny

Links to (5)

Linked from (2)