hwd.com

.com crawl

First seen 2026-05-30 · Last seen 2026-06-01 · ok HTTP/1.1 200 1571 ms crawled 2026-05-31

US · 20.114.211.29 · AS8075 Microsoft Corporation

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Helix Water District, CA | Official Website
Language
en

Technology

CDN
Cloudflare
jQuery
3.7.1
Stack
ASP.NET

Third-party hosts loaded (2)

  • civicclerkcdn.azureedge.net×1
  • docaccess.com×1

Social

Contact

Phone

Registration

Registrar
GoDaddy.com, LLC
Created
1995-07-28
Expires
2026-07-27 51 days left
Updated
2025-07-27
Name servers
  • ns39.domaincontrol.com
  • ns40.domaincontrol.com

DNS records live

NS
  • ns39.domaincontrol.com
  • ns40.domaincontrol.com
MX
  • 0 smtp.secureserver.net
  • 10 mailstore1.secureserver.net
Verified for
  • Apple

Email authentication weak

SPF
not published
DMARC
not published
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApgFle67LLkzIFc7WVJ2GfmuXoZKjBVB80BWpc8ufwSxug/q5iUfKCsAYFm10Ws70hM/Sro49NLEqTU8wyk…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCurm6KSfW/glGaWV5J/yqJpVp/pYzAU8TTsNgRlVBQj7O/F6dVzYjEHI/n2vKKrY+xTWD0G1eQ5HXD/JnAre6PGm…
selectors probed

Certificate (current)

R13
from 2026-05-16 to 2026-08-14
Expires in 70 days

HTTP security headers

Header hygiene 50/100 Checked live page: https://www.hwd.com/

present
  • content-security-policy
  • x-content-type-options
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' https://*.granicus.com https://platform.civicplus.com https://account.civicplus.com https://analytics.civicplus.com; img-src * data: blob:; worker-src * data: blob: 'unsafe-eval' 'unsafe-inline'; script-src * about: 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; media-src * blob:; font-src * data:; default-src *

Links to (8)

Linked from (2)