fpf.org

.org crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 406 ms crawled 2026-05-18

US · 104.26.7.95 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
The Future of Privacy Forum
Description
Future of Privacy Forum and the FPF Education and Innovation Foundation are non-profit organizations that serve as catalysts for privacy leadership and scholarship, advancing principled data practices in support of emerging technologies.
Language
en-US
Generator
WordPress 6.9.4
Canonical
https://fpf.org/

Open Graph

url
https://fpf.org/
title
The Future of Privacy Forum
locale
en_US
site name
Future of Privacy Forum
description
Future of Privacy Forum and the FPF Education and Innovation Foundation are non-profit organizations that serve as catalysts for privacy leadership and scholarship, advancing principled data practices in support of emerging technologies.

Technology

CDN
Cloudflare
CMS
WordPress
Analytics
  • Google Tag Manager
Fonts
  • Adobe Fonts
Third-party hosts loaded (7)
  • cdn.jsdelivr.net×3
  • ajax.googleapis.com×2
  • cdnjs.cloudflare.com×2
  • use.typekit.net×2
  • cdn-cookieyes.com×1
  • gmpg.org×1
  • www.googletagmanager.com×1

Social

Registration

Registrar
NameCheap, Inc.
Created
2003-11-13
Expires
2026-11-13 178 days left
Updated
2025-12-28
Name servers
  • igor.ns.cloudflare.com
  • lola.ns.cloudflare.com

DNS records live

NS
  • igor.ns.cloudflare.com
  • lola.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 5 TXT records
  • MS=ms38806983
  • amazonses:Ai4CKtpd2jlIrO60keI9NhXkQxI3esiSpTCmb5QYExc=
  • apple-domain-verification=inIpA6gVZCj5fxv7
  • google-site-verification=j120_X04c6ElZajbLfmK37_51LkEZ99J0ZCplYFGF-8
  • google-site-verification=qU2_tu_v1Ntn04T01Xi1db_xKi7HMNj39uV7TtuzbVQ

Email authentication partial

SPF
v=spf1 include:_spf.google.com include:servers.mcsv.net ip4:207.58.139.204 ~all
softfail (~all)
DMARC
v=DMARC1;p=none;pct=1;rua=mailto:eb466496d3@rua.easydmarc.us,mailto:admin@fpf.org;ruf=mailto:eb466496d3@ruf.easydmarc.us;fo=1;
policy: none (monitoring only) · pct=1
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAiCApp/Mb+ToL67MnNBYiPtFe3hgZUzlm/gtkAfKfFSn3y94xkovW1Leiog7y2tOtsJti4jty0r9bFr…
  • k1: k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed

Certificate (current)

WE1
from 2026-04-22 to 2026-07-21
Expires in 63 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://fpf.org/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
no-referrer
x-frame-options
SAMEORIGIN
permissions-policy
sync-xhr=*, autoplay=(), accelerometer=(), camera=(), geolocation=self, gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=(), interest-cohort=()
x-content-type-options
nosniff
content-security-policy
default-src 'none'; connect-src 'self' 'unsafe-inline' https://cdn.cookielaw.org/ https://cdn-cookieyes.com/ https://directory.cookieyes.com/ https://www.google-analytics.com/ https://*.facebook.com/ https://geolocation.onetrust.com/ https://fpf.org/ https://www.cloudflare.com/ https://vimeo.com/ https://log.cookieyes.com/; font-src 'self' data: https://cdnjs.cloudflare.com/ https://*.google.com/ https://*.typekit.net/ https://fonts.gstatic.com/; img-src 'self' data: https://*.gravatar.com/ https://*.ytimg.com/ https://*.gstatic.com/ https://*.google.com/ https://www.google-analytics.com/ https://fpf.org/ https://img.youtube.com/ https://i.vimeocdn.com/ https://cdn-cookieyes.com/; frame-src 'self' https://www.youtube-nocookie.com/ https://*.twitter.com/ https://*.google.com/ https://*.facebook.com https://*.youtube.com https://*.eventbrite.com/ https://player.vimeo.com/; style-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net/ https://cdnjs.cloudflare.com/ https://*.gstatic.com/ http
strict-transport-security
max-age=31622400; includeSubDomains; preload

Links to (6)

Linked from (13)