goodmantheatre.org
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (4)
- cdn.jsdelivr.net×1
- gmpg.org×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Contact
- Phone
- Address
- 170 N Dearborn Street, 60601, Chicago, Illinois, US
Registration
- Registrar
- Squarespace Domains II LLC
- Created
- 2003-06-18
- Expires
- 2026-06-18 28 days left
- Updated
- 2025-07-17
- Name servers
-
- ns-cloud-c1.googledomains.com
- ns-cloud-c2.googledomains.com
- ns-cloud-c3.googledomains.com
- ns-cloud-c4.googledomains.com
DNS records live
- NS
-
- ns-cloud-c1.googledomains.com
- ns-cloud-c2.googledomains.com
- ns-cloud-c3.googledomains.com
- ns-cloud-c4.googledomains.com
- MX
-
- 10 goodmantheatre-org.mail.protection.outlook.com
- TXT
-
godaddy=r5kdh4sqc5r0aingpbseo9ggbi52b3t40kvabkle4hhhi0kvgphbgodaddy=pf1s8010gs15d0agkgnrjtsio8
- Verified for
-
- Canva
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:rp.oracleemaildelivery.com include:wordfly.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@goodmantheatre.org;policy: quarantine - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCodse+NVAjh4CI0WPB5U20kd9/MwuChiWyYf5UjNzmAzkkMuLyIr+oHEEHLAZZH8YuvRH5mmrY363UDwL9N4… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvruqnv0GBBMgsJbkH30w5Mn6aktaEo3TY9nnZq7rMGwSo5KCHKC7NV4YrY/AQhI5uW8RpPAuusktV8… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvE45iTcIFXE+1KmktuJ2HGQPD4XLTUsn750yafdqoEw2L5+aOIqsPtpWD38U+fmc5i6acXSnFW+o3EK7iz… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuZDGtXorKDJBDUc6PoEVG0U82unlfrO8W+7EIHiyBtMWbpnThOBiccBJfnX2iZDRgc/+c+UMVGPLK4y+SH…
selectors probed - selector1:
Certificate (current)
E8
Expires in 73 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN- permissions-policy
autoplay=(), camera=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), publickey-credentials-get=(), usb=()- x-content-type-options
nosniff- content-security-policy
child-src blob:; default-src https: wss://*.hotjar.com; script-src https: blob: 'unsafe-inline' 'unsafe-eval'; style-src https: 'unsafe-inline'; img-src data: https: 'unsafe-inline'; font-src data: https: 'unsafe-inline';frame-ancestors 'self'; frame-src data: https:; media-src blob: data: https:; object-src 'self' blob:; worker-src blob: 'self'; upgrade-insecure-requests;- strict-transport-security
max-age=31536000; preload