lowesfoundation.org
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- TrustArc
Third-party hosts loaded (5)
- cdn.jsdelivr.net×3
- cdnjs.cloudflare.com×2
- consent.trustarc.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2022-12-21
- Expires
- 2026-12-21 193 days left
- Updated
- 2025-12-22
- Name servers
-
- dns1.cscdns.net
- dns2.cscdns.net
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 0 lowesfoundation-org.mail.protection.outlook.com
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.emailpolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtBIe008lVQsF5Ej3ZO/Fh/kFt4ACK4YrIKmJ+PVjkyTnOlbYNqg7GflJGkmRioQakqa/XNjvhCdWHT…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 16 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN- permissions-policy
autoplay=(self "https://*.investisdigital.com" "https://*.youtube.com" "https://*.vimeo.com" "https://*.vimeocdn.com"), encrypted-media=(self "https://*.investisdigital.com" "https://*.youtube.com" "https://*.vimeo.com" "https://*.vimeocdn.com"), fullscreen=(self "https://*.investisdigital.com" "https://*.youtube.com" "https://*.vimeo.com" "https://*.vimeocdn.com")- x-content-type-options
nosniff- content-security-policy
default-src 'self' edge.api.brightcove.com viz.tools.investis.com cdn.jsdelivr.net dev-api.investisdigital.com api.investisdigital.com dev-assets.investisdigital.com assets.investisdigital.com qaotp.tools.investisdigital.com cookiemanager.investisdigital.com www.google-analytics.com *.myidx.cloud consent.trustarc.com *.google-analytics.com consent-pref.trustarc.com *.google.com *.reddit.com *.stackadapt.com *.googleadservices.com *.google.co.in *.facebook.com googleads.g.doubleclick.net; script-src 'self' 'unsafe-inline' 'unsafe-eval' cdnjs.cloudflare.com ict.infinity-tracking.net www.gstatic.com viz.tools.investis.com www.google.com maps.googleapis.com maps.google.com www.linkedin.com ajax.googleapis.com pi.pardot.com bam.nr-data.net sjs.bizographics.com connect.facebook.net irs.tools.investis.com px.ads.linkedin.com d2wy8f7a9ursnm.cloudfront.net ssl.p.jwpcdn.com js-agent.newrelic.com cdn.jsdelivr.net edge.api.brightcove.com www.youtube.com youtube.com s.ytimg.com unpkg.com dev-api- strict-transport-security
max-age=15552000; includeSubDomains; preload
Links to (8)
Linked from (1)
Use this data via API
Everything on this page for lowesfoundation.org is available as JSON from the indexo.dev REST & MCP API.
curl "https://indexo.dev/api/v1/domains/lowesfoundation.org" \ -H "X-API-Key: idx_..."
lowesfoundation.org