massachealth.org

.org crawl

First seen 2026-05-08 · Last seen 2026-05-08 · ok HTTP/1.1 200 2363 ms crawled 2026-05-15

US · 12.133.50.35 · AS7018 AT&T Enterprises, LLC

Reputation 69/100 wrong cert dmarc monitor-only

Classifying

HTML metadata

Title
Connection denied by Geolocation
Language
en

Registration

Registrar
Network Solutions, LLC
Created
2005-11-08
Expires
2030-11-08 1632 days left
Updated
2025-09-14
Name servers
  • ns75.worldnic.com
  • ns76.worldnic.com

DNS records live

NS
  • ns75.worldnic.com
  • ns76.worldnic.com
MX
  • 0 massachealth-org.mail.protection.outlook.com
TXT
Show 7 TXT records
  • ig302010ee9k13ucbqg13djfuv
  • jv26iuekr9e67p2nhbeguj7uu6
  • dc3ist7mf7gh7d87976k44ommv
  • n0o8itbdql3ohdnjk4h5ferb76
  • jv26iuekr9e67p2nhbeguj7uu6.
  • u23nl91609enff0op5ctt0mmu1
  • MS=B39813B28FF87950A16768172D89187623D3289E
Verified for
  • Apple

Email authentication partial

SPF
v=spf1 include:_spf.massachealth_org._d.easydmarc.pro ~all
softfail (~all)
DMARC
v=DMARC1;p=none;rua=mailto:6361a133bf@rua.easydmarc.us;ruf=mailto:6361a133bf@ruf.easydmarc.us;fo=1
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2PmePP7JjU06ihU/wI02BrfgPA7YoUX0xzYEy/DpRDjqb+Spn9ux4+ZG1/P6UmnXYGyDB+Br4Qe0JG…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuajAYUxcX9b2ztvIVTo/VJfHUmhDfmnAuifJf9zI83J6D8sYl4XYaZ/rlxxF3/8nqPasCA5btEpyK3…
selectors probed

Certificate (current) wrong cert

Fireware web CA
from 2026-02-18 to 2036-03-17
Expires in 3589 days

HTTP security headers

Header hygiene 70/100 Checked over plain HTTP: http://massachealth.org/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • checked over plain HTTP
  • CSP allows unsafe inline scripts/styles
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; connect-src 'self'; font-src 'self'; object-src 'self'; media-src 'self'; child-src 'self'
strict-transport-security
max-age=31536000

Linked from (1)