jfcsaz.org
HTML metadata
Technology
Third-party hosts loaded (1)
- analytics.scorpion.co×1
Social
Contact
- Phone
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2004-02-03
- Expires
- 2027-02-03 260 days left
- Updated
- 2026-01-27
- Name servers
-
- ns63.domaincontrol.com
- ns64.domaincontrol.com
DNS records live
- NS
-
- ns63.domaincontrol.com
- ns64.domaincontrol.com
- MX
-
- 10 mx-01-us-west-2.prod.hydra.sophos.com
- 15 mx-02-us-west-2.prod.hydra.sophos.com
- TXT
-
Show 5 TXT records
google-site-verification=wJScKTzH-QUlhzydFU2XSx3qBOZPYXrJBf7d_76iLsoMS=ms48891739sophos-domain-verification=f3f600b7c6108aeac5003deadb09b20c26a69c96apple-domain-verification=FrGwBOcpCduc0ym0WCFrRUePoNuDuyP5wQLxklDfOtvTPvkif2LJXlygWaECdPnII9XCWQ4jXqdSkoE0boJ/JNq6idWrw7KnUWJ4CQ==
Email authentication partial
- SPF
-
v=spf1 mx a ip4:50.112.39.248 ip4:76.9.185.196 ip4:103.219.222.47 include:spf.protection.outlook.com include:mail.zendesk.com include:sendgrid.net include:servers.mcsv.net include:_spf_uswest2.prod.hydra.sophos.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; sp=none; fo=1; ri=3600; rua=mailto:itadmins@jfcsaz.org; ruf=mailto:steven.wong@jfcsaz.orgpolicy: none (monitoring only) · sp=none - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCjLisx+HskS8pOLl30jttDnP0p4osVv6z1gWmBzYJSYMDBxyvXZAVFUP2ASqo65WFfFgQZ4jFd524ReJldBx… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4Uv7BwDL9SKJsa9ggk9hHwd2AcL9rGyRVQaSoM+Nf6zfn1kK82d5ziMs/8IPm0vZEkE74flnCPxGoa… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
R13
Expires in 81 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src * blob: data: cid:; img-src * data: cid: 'unsafe-inline'; media-src * data: blob:; script-src * data: blob: 'unsafe-inline' 'unsafe-eval'; style-src * blob: data: 'unsafe-inline'; style-src-elem * blob: data: 'unsafe-inline'; font-src * data:- strict-transport-security
max-age=63072000; includeSubDomains; preload