goodwillswpa.org
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- fonts.googleapis.com×2
- maps.googleapis.com×2
- www.googletagmanager.com×2
- px.ads.linkedin.com×1
- widget.resupplyapp.com×1
- www.facebook.com×1
Social
Contact
- Phone
- Address
- 118 52nd St.Pittsburgh,PA15201USAPhone:P412-632-1800
Registration
- Registrar
- Netregistry Wholesale Pty Ltd
- Created
- 2007-12-04
- Expires
- 2026-12-04 198 days left
- Updated
- 2025-12-09
- Name servers
-
- dns23.doteasy.com
- dns24.doteasy.com
- dns3.doteasy.com
- dns4.doteasy.com
DNS records live
- NS
-
- dns23.doteasy.com
- dns24.doteasy.com
- dns3.doteasy.com
- dns4.doteasy.com
- MX
-
- 10 d96683a.ess.barracudanetworks.com
- 20 d96683b.ess.barracudanetworks.com
- TXT
-
Show 5 TXT records
openai-domain-verification=dv-gif6sOA8CVAgopCeOOWMJNogcanva-site-verification=Chs-uo5Nnqy1WV8snr7w8wWrike-verification=Njk2NzQzMjo2ZjM0OTUwODVhZTQ2Y2ZmZTJjYWFjYjdjMWEzMzE2M2ZmNjkwZGJjYTI3YjViNzlmODI1NWVmMjA3Y2RiNzdlgc6any3rmTVtrf7+plkbHAYUuBSEkYbBDFVuyz9+i11oSRq+DJSmycAzJ1Gj62iTwf3vg8xFlqSNy2H0jz9s4w==apple-domain-verification=SpGmhHRNan8KgpyO
Email authentication partial
- SPF
-
v=spf1 ip4:208.103.127.58 ip4:98.111.204.146 ip4:64.132.201.93 ip4:74.203.211.13 ip4:207.67.44.189 ip4:209.166.164.165 ip4:209.166.164.171 include:salsalabs.org include:spf.ess.barracudanetworks.com -allstrict (-all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCu22DitUDw1YkTkhpfSuSyLTwibXKo3an/reYSDUZrcJV7WrKpyDpbkIWsqxA08dU787BURYX3+HzxV/jeRl… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC8bb6Dk1nOHWXF7zkT/menMIN3UUAsmBVVVr9dNViCJPQUGhU9leYULuDd5s7zpzcy2Td+UqJrGzU76Ar849…
selectors probed - selector1:
Certificate (current)
E8
Expires in 59 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'report-sample' 'self' 'unsafe-eval' 'unsafe-inline' https://acsbapp.com/apps/app/dist/js/app.js https://ajax.googleapis.com/ajax/libs/webfont/1.6.26/webfont.js https://cdnjs.cloudflare.com/ajax/libs/underscore.js/1.13.7/underscore-min.js https://connect.facebook.net https://doublethedonation.com/api/js/ddplugin.js https://maps.googleapis.com https://secure.wufoo.com https://gwswpa.wufoo.com https://stats.g.doubleclick.net https://snap.licdn.com/li.lms-analytics/insight.min.js https://static.ctctcdn.com/js/signup-form-widget/current/signup-form-widget.min.js https://widget.resupplyapp.com https://www.google.com https://www.googletagmanager.com/gtag/js https://www.gstatic.com/; style-src 'report-sample' 'self' 'unsafe-inline' https://gwswpa.wufoo.com https://stats.g.doubleclick.net https://doublethedonation.com https://fonts.googleapis.com https://static.ctctcdn.com; object-src 'none'; base-uri 'self'; connect-src 'self' https://gwswpa.wufoo.com https://st- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (7)
- facebook.com×2
- humanitix.com×2
- instagram.com×2
- issuu.com×2
- linkedin.com×2
- tiktok.com×2
- youtube.com×2