manateepao.gov
HTML metadata
Technology
- CMS
- WordPress
- jQuery
- 3.7.1
- Stack
- PHP
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- www.manateepao.gov×71
- cdn.jsdelivr.net×5
- fonts.googleapis.com×5
- www.googletagmanager.com×2
- cdn.userway.org×1
- fonts.gstatic.com×1
DNS records live
- NS
-
- pdns09.domaincontrol.com
- pdns10.domaincontrol.com
- MX
-
- 10 mx1.us.mailhop.org
- 20 mx1.us.mailhop.us
- 30 mx1.us.mailhop.co
- TXT
-
Show 6 TXT records
qnlvgo6518so69o7dr7ibdq2ml0ed1fe018aa239c24a651544c9ad90fb28577562b32ql719bfhlirk5c7hkl11lh74i298snmsuuj1ifp35q33ric54gav=verifydomain MS=1572753knowbe4-site-verification=19ce781898d11fc2b6508b1bbd13fb9f
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:outbound.mailhop.org include:secureserver.net ip4:18.130.40.2 ip4:35.179.0.159 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; sp=none; rua=mailto:cad55fd4d593.a@dmarcinput.com,mailto:subgi7yj@ag.dmarcian.com; ruf=mailto:cad55fd4d593.f@dmarcinput.com; ri=86400; fo=1policy: none (monitoring only) · sp=none - DKIM
- no key found at common selectors
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 175 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), autoplay=(self), camera=(), display-capture=(), encrypted-media=(), fullscreen=(self), geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=(), clipboard-read=(self), clipboard-write=(self), gamepad=(self), hid=(), idle-detection=(), serial=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; object-src 'self'; connect-src 'self' https://cdn.elementor.com https://drop.manateepao.gov https://www.google-analytics.com https://www.google.com https://www.gstatic.com https://maps.googleapis.com https://gis.manateepao.gov https://www.mymanatee.org https://ajax.googleapis.com https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://cdn.datatables.net https://www.arcgis.com https://js.arcgis.com https://cdn.arcgis.com https://basemaps.arcgis.com https://static.arcgis.com https://api.userway.org https://cdn.userway.org; form-action 'self' https://www.manateepao.gov; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.recaptcha.net https://recaptcha.google.com https://www.google.com https://code.jquery.com https://www.gstatic.com https://ajax.googleapis.com https://cdn.jsdelivr.net https://cdn.datatables.net https://js.arcgis.com https://cdn.userway.org; script-src-elem 'self' 'unsafe-inline' https://cdn.elementor.com https://www.recaptcha.net https://- strict-transport-security
max-age=31536000; includeSubDomains- cross-origin-opener-policy
same-origin- cross-origin-resource-policy
same-origin