la84.org
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2007-01-19
- Expires
- 2027-01-19 244 days left
- Updated
- 2026-03-05
- Name servers
-
- austin.ns.cloudflare.com
- roxy.ns.cloudflare.com
DNS records live
- NS
-
- austin.ns.cloudflare.com
- roxy.ns.cloudflare.com
- MX
-
- 0 mx1-us1.ppe-hosted.com
- 0 mx2-us1.ppe-hosted.com
- TXT
-
Show 7 TXT records
google-site-verification=WMrxJWRTg3tJURg3iY9FSh_TQ1dk71HzoYwl3447aKwgoogle-site-verification=a-wrvQOuUBCcAK1Te3jlxMxSIwsfPE1-WC-Q6hinUB400872644MS=ms16419335apple-domain-verification=DF3428WDDadjsGklasv=0cb6c98e5b97c4636d77750640343b62box-domain-verification=1e600b46a3ce5c70850623dbed853ae0f3fb60f42eeaff082f68a2d6b66c44c3
Email authentication strong
- SPF
-
v=spf1 mx include:spf.protection.outlook.com a:dispatch-us.ppe-hosted.com include:servers.mcsv.net include:_spf.google.com include:_spf.salesforce.com ip4:208.80.200.0/21 ip4:76.79.215.250 ip4:75.18.209.209 ip4:67.225.147.82 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; sp=none;policy: quarantine · sp=none - DKIM
-
Show 5 DKIM selectors
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxvLOkqTrnQnZ9Dbn5pIzJkPwS1wLmsAWmJ/RzzX7zYalJNCEM9Ib9eYp8NSjZ7Ilci/eGlzd/unoJk… - selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDYa/bYqDNLJaRRetg5ymLnFSn/w1BId02kaGCdMJM85M4paUIBUZ1fBNTdtN777uX188T88pa0Hif/L02bze… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvkb/AEBpnNbW931Mw+kOKYF24mO17F+ZsHc6DAtgTNhKziG9E0SBQhRF1K8f3tLZvIMTvbrpLD37ot9EPL… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAubY5OkjA9McaahM580DdEX9CatVIrUZFzQk5W76wbbYxe3NsG5fKr4Q0d/ijoynOwYsH4uEYSNz83du/sc…
selectors probed - default:
Certificate (current)
R12
Expires in 71 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(), microphone=(), geolocation=(), interest-cohort=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://acsbapp.com https://cdn.acsbapp.com https://www.googletagmanager.com https://www.google-analytics.com https://widgets.givebutter.com https://*.givebutter.com https://connect.facebook.net; style-src 'self' 'unsafe-inline' https://cdn.acsbapp.com; img-src 'self' https://placehold.co https://images.ctfassets.net https://la84.s3.us-west-1.amazonaws.com https://la84-public.s3.us-west-1.amazonaws.com https://cdn.acsbapp.com https://*.givebutter.com https://www.facebook.com data:; font-src 'self' https://cdn.acsbapp.com data:; connect-src 'self' https://acsbapp.com https://cdn.acsbapp.com https://la84.s3.us-west-1.amazonaws.com https://la84-public.s3.us-west-1.amazonaws.com https://www.google-analytics.com https://www.googletagmanager.com https://*.givebutter.com https://www.facebook.com https://connect.facebook.net; media-src 'self' https://videos.ctfassets.net https://la84.s3.us-west-1.amazonaws.com https://la84-public.s3.us-west- strict-transport-security
max-age=63072000; includeSubDomains; preload- cross-origin-opener-policy
same-origin- cross-origin-resource-policy
same-origin