gatesphilanthropypartners.org

.org crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 1937 ms crawled 2026-05-18

US · 104.18.42.63 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Home - Gates Philanthropy Partners
Description
Established by Gates Foundation as a way for donors to give to ambitious solutions—backed by leading experts—that address today’s toughest challenges.
Language
en-US
Generator
Site Kit by Google 1.176.0
Canonical
https://www.gatesphilanthropypartners.org/
Feeds

Open Graph

url
https://www.gatesphilanthropypartners.org/
title
Home - Gates Philanthropy Partners
locale
en_US
site name
Gates Philanthropy Partners
description
Established by Gates Foundation as a way for donors to give to ambitious solutions—backed by leading experts—that address today’s toughest challenges.

Technology

CDN
Cloudflare
CMS
WordPress
Analytics
  • Google Tag Manager
Fonts
  • Adobe Fonts
  • Google Fonts
Third-party hosts loaded (7)
  • fonts.googleapis.com×3
  • fonts.gstatic.com×2
  • www.googletagmanager.com×2
  • www.youtube.com×2
  • challenges.cloudflare.com×1
  • gmpg.org×1
  • use.typekit.net×1

Registration

Registrar
MarkMonitor Inc.
Created
2015-03-03
Expires
2027-03-03 286 days left
Updated
2025-05-14
Name servers
  • romina.ns.cloudflare.com
  • rustam.ns.cloudflare.com

DNS records live

NS
  • romina.ns.cloudflare.com
  • rustam.ns.cloudflare.com
MX
  • 1 gatesfoundation-org.mail.protection.outlook.com
TXT
  • q0rh6ndk6hfz7fth4p29zgg5nx4kfmrh
  • rl9jtyfzqsvh8w2qwstnyxhnkqnnf0kw
  • pardot844003=84d0db49084f65c768b3c505f779acff08f2fa046d24cabf4aa51c7437d828db
Verified for
  • Microsoft 365

Email authentication strong

SPF
v=spf1 exists:%{i}._i.%{d}._d.espf.agari.com include:%{d}.7c.spf-protect.agari.com ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; fo=1; ri=3600; rua=mailto:gates-foundation@rua.agari.com; ruf=mailto:gates-foundation@ruf.agari.com
policy: reject (enforced)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCr3/Li32dNtmr3S4fezrl2Ce8FgnG1JQlx8JEhiWHJ0x4hcKmNU2ZRu8oZOzXw4Jv0FYgTLkn7B8KUltCK10…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqqiFPZU7kh6ll/8Ke7RrulHj9q2cGU4VCwNh7XVzLaRZiw7hGdKhl95lGVndKpMrXat1ZD1eRbtwl+…
selectors probed

Certificate (current)

WE1
from 2026-05-11 to 2026-08-09
Expires in 81 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.gatesphilanthropypartners.org/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
strict-origin-when-cross-origin
permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=*, geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-script=(), sync-xhr=(), usb=(), vertical-scroll=(), web-share=*, xr-spatial-tracking=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' http: https://*.f1gf.dev https://*.f1gf.live https://*.gatesphilanthropypartners.org https://*.gatesfoundation.org https://*.youtube.com; script-src 'unsafe-inline' 'unsafe-eval' http: https://fonts.googleapis.com https://ajax.googleapis.com https://jnn-pa.googleapis.com https://*.youtube.com https://*.ytimg.com https://cdnjs.cloudflare.com https://cdn.cookielaw.org https://cookie-cdn.cookiepro.com https://privacyportal.onetrust.com https://geolocation.onetrust.com https://fundraiseup.com https://*.stripe.com https://m.stripe.network https://googletagmanager.com https://tagmanager.google.com https://*.googletagmanager.com https://www.googleadservices.com https://www.google.com https://pagead2.googlesyndication.com https://googleads.g.doubleclick.net; style-src 'unsafe-inline' http: https://ajax.googleapis.com https://jnn-pa.googleapis.com https://*.youtube.com https://cdn.cookielaw.org https://cookie-cdn.cookiepro.com https://privacyportal.onetrust.com https://geoloc
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (7)

Linked from (1)