mardag.org

.org crawl

First seen 2026-04-22 · Last seen 2026-05-16 · ok HTTP/1.1 200 7313 ms crawled 2026-05-16

US · 69.67.30.98 · AS25694 Atomic Data LLC

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Mardag Foundation - Investing in the East Metro and Greater Minnesota
Description
Mardag Foundation invests in nonprofit organizations and builds strategic partnerships with philanthropy in the East Metro and Greater Minnesota.
Language
lang=
Canonical
https://mardag.org/

Open Graph

url
https://mardag.org/
title
Mardag Foundation - Investing in the East Metro and Greater Minnesota
locale
en_US
site name
Mardag Foundation
description
Mardag Foundation invests in nonprofit organizations and builds strategic partnerships with philanthropy in the East Metro and Greater Minnesota.

Technology

Server
Apache
CMS
WordPress
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • siteimproveanalytics.com×1
  • www.googletagmanager.com×1

Social

Contact

Email
Phone
Address
370 Wabasha Street North, Suite 300Saint Paul, MN 55102651.224.5463800.875.6167info@mardag.org

Registration

Registrar
GoDaddy.com, LLC
Created
1998-03-24
Expires
2027-03-23 308 days left
Updated
2026-05-07
Name servers
  • ns1.atomicdata.com
  • ns2.atomicdata.com
  • ns3.atomicdata.com

DNS records live

NS
  • ns1.atomicdata.com
  • ns2.atomicdata.com
  • ns3.atomicdata.com
MX
  • 0 mardag-org.mail.protection.outlook.com
TXT
Show 4 TXT records
  • MS=ms45412172
  • 202409121432010cput0ndtkm8w3oax5hcg9qxggknafrjcnwba0t4onvk6orq38
  • 202509101225065e6mdmn500xm35js3529fupdk4k25ancl72krg4ypzm4gjg8kt
  • bPhneXlmEbxUv/N1NXhiQpF29sIoO3udvAsR6pyIDl2nNhLS5bh5THLfDCl/XOpv8wuQZgOYHQYClHbOE4llew==

Email authentication weak

SPF
v=spf1 include:spf.protection.outlook.com -all
strict (-all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

GeoTrust TLS RSA CA G1
from 2025-09-10 to 2026-10-11
Expires in 145 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://mardag.org/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
strict-origin-when-cross-origin
permissions-policy
camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=()
x-content-type-options
nosniff
content-security-policy
upgrade-insecure-requests; default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://js-na2.hscollectedforms.net/ https://js-na2.hs-banner.com/ https://js-na2.hsadspixel.net/ https://js-na2.hs-scripts.com/ https://js-na2.hs-analytics.net/ https://cdn.jsdelivr.net/ https://*.siteimproveanalytics.com/ https://siteimproveanalytics.com/ https://js.hsforms.net/ https://translate-pa.googleapis.com/ https://translate.googleapis.com/ https://translate.google.com/ https://widget.intercom.io/widget/ https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://cdn.siteimprove.net/ https://connect.facebook.net/ https://snap.licdn.com/ https://googleads.g.doubleclick.net/ https://js.hs-banner.com/ https://js.hscollectedforms.net/ https://js.hsleadflows.net/ https://js.hsadspixel.net/ https://js-na1.hs-scripts.com/ https://www.googletagmanager.com/ https://js.hs-analytics.net/; style-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net/ https://www.gstatic.com/; img-
strict-transport-security
max-age=31536000; includeSubDomains

Links to (7)

Linked from (5)