foxwoodsesj.com
HTML metadata
Technology
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (5)
- epi-esj.main.mptn.org×2
- kit.fontawesome.com×1
- player.vimeo.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- NameCheap, Inc.
- Created
- 2021-01-05
- Expires
- 2027-01-05 229 days left
- Updated
- 2025-12-06
- Name servers
-
- ns1.mptn.org
- ns2.mptn.org
DNS records live
- NS
-
- ns1.mptn.org
- ns2.mptn.org
- MX
-
- 1 foxwoodsesj-com.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
wp5p4ftf9s9nsnkc2ghtl0fplc4lkh7q_r8t9yzftu6cz8cqo29hmbmwupajxjbq_hnewx9u5bf5xlg4sxmxbc5d5hctdopiknowbe4-site-verification=1bbe29c3eccde70696355b795a6af8f22sgy9gx66sb9rmclty716jk8cm707ycl
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com ip4:196.12.182.177 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; ri=3600; rua=mailto:foxwoods@rua.agari.com; ruf=mailto:foxwoods@ruf.agari.compolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 141 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; img-src * data: blob:; script-src 'self' 'unsafe-eval' 'unsafe-inline' *; style-src 'self' 'unsafe-inline' https://*.typekit.net https://tagmanager.google.com https://fonts.googleapis.com; child-src https://*.facebook.com https://*.youtube.com https://*.vimeo.com https://*.google.com https://issuu.com https://*.speedrfp.com/; font-src 'self' https://*.fontawesome.com https://*.typekit.net https://fonts.gstatic.com; media-src 'self' https://*.vimeo.com https://*.youtube.com https://youtu.be.com https://gcs-vimeo.akamaized.net; frame-src 'self' https://foxwoods.blindvalet.com https://*.sertifiguidedapi.com https://*.sertifi.com https://*.vimeo.com https://*.youtube.com https://foxwoods.mediaroom.com https://*.tintup.com https://*.doubleclick.net https://*.google.com https://*.facebook.com https://*.speedrfp.com https://*.videopoker.com https://*.spotify.com; connect-src 'self' https://*.fontawesome.com https://*.yimg.com https://*.google-analytics.com- strict-transport-security
max-age=31536000;