hollowayvarsity.com
HTML metadata
Technology
Third-party hosts loaded (1)
- code.jquery.com×2
Contact
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2025-09-24
- Expires
- 2026-09-24 126 days left
- Updated
- 2025-09-24
- Name servers
-
- udns1.cscdns.net
- udns2.cscdns.uk
DNS records live
- NS
-
- udns1.cscdns.net
- udns2.cscdns.uk
- MX
-
- 10 us-smtp-inbound-1.mimecast.com
- 10 us-smtp-inbound-2.mimecast.com
- TXT
-
_f3qy2ocj71ry4mxuajavnmmn1j2ieji0ed1fe018a763bb574cb014300850fcde0056d25df
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:us._netblocks.mimecast.com ip4:192.189.112.14 ip4:192.189.112.15 ip4:208.95.134.127 ip4:169.53.9.208/28 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:5455e7f70244938@rep.dmarcanalyzer.com; ruf=mailto:5455e7f70244938@for.dmarcanalyzer.com; fo=1;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 131 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' https://www.neffco.com https://neffco.com; default-src 'self'; object-src 'self' *.neffjacketshop.com *.customizetool.com *.neffco.com *.rennoc.com *.delongsports.com *.texaspatchshop.com *.neffhome.com *.jostens.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.bootstrapcdn.com cdn.jsdelivr.net *.jquery.com https://www.google.com/recaptcha/ *.gstatic.com *.googleapis.com *.google-analytics.com www.googletagmanager.com *.livechatinc.com dnn506yrbagrg.cloudfront.net https://cdnjs.cloudflare.com https://maps.google.com https://cdn.sstatic.net https://oss.maxcdn.com https://stats.g.doubleclick.net static.getclicky.com in.getclicky.com script.crazyegg.com *.neffjacketshop.com *.customizetool.com *.neffco.com *.rennoc.com *.delongsports.com *.texaspatchshop.com *.neffhome.com *.jostens.com; connect-src 'self' *.google-analytics.com script.crazyegg.com *.neffjacketshop.com *.customizetool.com *.neffco.com *.rennoc.com *.delongsports.com *.texaspatchshop.com *.neff- strict-transport-security
max-age=2592000; includeSubDomains