herost.org

.org crawl

First seen 2026-05-01 · Last seen 2026-05-15 · ok HTTP/1.1 200 2507 ms crawled 2026-05-08

SG · 103.138.189.66 · AS204800 WHG Hosting Services Ltd

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Herost - Positive travel experiences powered by local heroes
Description
Herost is a positive travel guide and toolkit promoting tourism for good
Language
en-US
Generator
WordPress 6.9.4
Canonical
https://herost.org/
Translations
  • en
  • fr
Feeds

Technology

Server
LiteSpeed
CMS
WordPress
Fonts
  • Google Fonts

Third-party hosts loaded (5)

  • hb.wpmucdn.com×28
  • cdnjs.cloudflare.com×5
  • fonts.googleapis.com×4
  • fonts.gstatic.com×2
  • gmpg.org×1

Social

Contact

Address
st StoriesEnglishFrançais© 2026

Registration

Registrar
PDR Ltd. d/b/a PublicDomainRegistry.com
Created
2018-12-01
Expires
2028-12-01 927 days left
Updated
2025-11-21
Name servers
  • ns1.sg8.fcomet.com
  • ns2.sg8.fcomet.com

DNS records live

NS
  • ns1.sg2.fcomet.com
  • ns2.sg2.fcomet.com
MX
  • 10 s11741.sgp1.stableserver.net

Email authentication partial

SPF
v=spf1 ip4:103.138.189.66 include:spf.mysecurecloudhost.com +a +mx +ip4:139.162.13.242 +ip4:172.104.41.128 +include:spf.antispamcloud.com -all
strict (-all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuSj5RW4tr9Ewcu52ZtKGuMr//hr1QxDgmqOC5pYliu9beoLCD93e9HQwaTOZnqpHAmLT8Z2V/NQHYg…
selectors probed

Certificate (current)

R13
from 2026-04-25 to 2026-07-24
Expires in 66 days

HTTP security headers

Header hygiene 55/100 Checked live page: https://herost.org/

present
  • content-security-policy
  • permissions-policy
findings
  • missing HSTS
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
Header values
permissions-policy
private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")
content-security-policy
upgrade-insecure-requests

Links to (5)

Linked from (50)