jfcsaz.org

.org crawl

First seen 2026-04-22 · Last seen 2026-05-16 · ok HTTP/1.1 200 6110 ms crawled 2026-05-16

US · 52.11.37.152 · AS16509 Amazon.com, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Greater Phoenix Behavioral Health Services | Counseling in Maricopa County
Description
Jewish Family & Children’s Service provides behavioral health and primary care medical services for families in accordance with a Jewish value system.
Language
en
Canonical
https://www.jfcsaz.org/

Open Graph

url
https://www.jfcsaz.org/
title
Greater Phoenix Behavioral Health Services | Counseling in Maricopa County
site name
Jewish Family & Children's Service
description
Jewish Family & Children’s Service provides behavioral health and primary care medical services for families in accordance with a Jewish value system.

Technology

Third-party hosts loaded (1)

  • analytics.scorpion.co×1

Social

Contact

Phone

Registration

Registrar
GoDaddy.com, LLC
Created
2004-02-03
Expires
2027-02-03 260 days left
Updated
2026-01-27
Name servers
  • ns63.domaincontrol.com
  • ns64.domaincontrol.com

DNS records live

NS
  • ns63.domaincontrol.com
  • ns64.domaincontrol.com
MX
  • 10 mx-01-us-west-2.prod.hydra.sophos.com
  • 15 mx-02-us-west-2.prod.hydra.sophos.com
TXT
Show 5 TXT records
  • google-site-verification=wJScKTzH-QUlhzydFU2XSx3qBOZPYXrJBf7d_76iLso
  • MS=ms48891739
  • sophos-domain-verification=f3f600b7c6108aeac5003deadb09b20c26a69c96
  • apple-domain-verification=FrGwBOcpCduc0ym0
  • WCFrRUePoNuDuyP5wQLxklDfOtvTPvkif2LJXlygWaECdPnII9XCWQ4jXqdSkoE0boJ/JNq6idWrw7KnUWJ4CQ==

Email authentication partial

SPF
v=spf1 mx a ip4:50.112.39.248 ip4:76.9.185.196 ip4:103.219.222.47 include:spf.protection.outlook.com include:mail.zendesk.com include:sendgrid.net include:servers.mcsv.net include:_spf_uswest2.prod.hydra.sophos.com -all
strict (-all)
DMARC
v=DMARC1; p=none; sp=none; fo=1; ri=3600; rua=mailto:itadmins@jfcsaz.org; ruf=mailto:steven.wong@jfcsaz.org
policy: none (monitoring only) · sp=none
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCjLisx+HskS8pOLl30jttDnP0p4osVv6z1gWmBzYJSYMDBxyvXZAVFUP2ASqo65WFfFgQZ4jFd524ReJldBx…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4Uv7BwDL9SKJsa9ggk9hHwd2AcL9rGyRVQaSoM+Nf6zfn1kK82d5ziMs/8IPm0vZEkE74flnCPxGoa…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

R13
from 2026-05-10 to 2026-08-08
Expires in 81 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.jfcsaz.org/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer-when-downgrade
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src * blob: data: cid:; img-src * data: cid: 'unsafe-inline'; media-src * data: blob:; script-src * data: blob: 'unsafe-inline' 'unsafe-eval'; style-src * blob: data: 'unsafe-inline'; style-src-elem * blob: data: 'unsafe-inline'; font-src * data:
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (8)

Linked from (1)