mcohio.org
HTML metadata
Technology
- CDN
- Cloudflare
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (3)
- www.youtube.com×4
- docaccess.com×1
- www.elocallink.tv×1
Social
Contact
- Address
- st Third StreetDayton, OH 45422
Registration
- Registrar
- Tucows Domains Inc.
- Created
- 2001-03-01
- Expires
- 2028-03-01 652 days left
- Updated
- 2023-04-26
- Name servers
-
- ns1.hcst.net
- ns2.hcst.net
- ns3.hcst.net
DNS records live
- NS
-
- ns1.hcst.net
- ns2.hcst.net
- MX
-
- 10 mcohio-org.mail.protection.outlook.com
- TXT
-
Show 13 TXT records
F6OBvr7um8i9NBy10/XvIM/Muab62vQzCVh6/s0P3y1Br4zCUadGYuvmWpQa5YwW26x6f4uMYCbEddDi9pNHJw==sp8I00kg15Re5vSsysdoufbqVqzm+X5TUCh7OZm0EssUgXN0bW6UCSkOYLT87wa/lQ8qm0ryKpRbZCgLx76ryg==MS=ms83582486google-site-verification=EA86VmNLwVi3VziG2SbExNFBPV-TKIALtk15v6oSU1cidentrust_validate=a7bpo5372FraVcNsytTGkxoaxlOhE0cj/4QdTr6s3X7widentrust_validate=yladr6i05dFHf4Mh4wNE23ybEduASXm1hsJpUhL7gyRLMS=ms15550892MS=40271E2502940D978A5AC3D06042599566B04865zoho-verification=zb85878423.zmverify.zoho.comiEXV8TlZU9p0muryPF1RubePCgNT4h9uw1WZR+4yLwTMsnCiHV0J7rHQNyBbqsjJQEdaBkxM7uALFxVVQMIZQw==identrust_validate=w/0bfC4++Lq+dSOcwJnMKhh1EcieR+b/AsxCyKnI9rzyapple-domain-verification=yIJvvJdjncNV7gx7MS=ms44363972
Email authentication strong
- SPF
-
v=spf1 a mx ip4:151.181.209.173 ip4:151.181.209.192 include:mta.doxim.com include:secure-mailgate.com include:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=30; rua=mailto:abuse@mcohio.org; ruf=mailto:abuse@mcohio.org; fo=1policy: quarantine · pct=30 - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCCGL2vUWhiXUXC+wH2d6VDCLxxou8DXBXyj3kQk2qlB8/oOly/ah/ZI8qU0VGi4+unuYOKgz+8DT6kd+luDt… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC8ViFkfOoOAl8i5ZhMt/KegBeIOnzR7Frd381krg/yt9DieQdsTOh+ZF7Gne5VfCtErFlVUBuOH5AXC30P7s…
selectors probed - selector1:
Certificate (current)
R12
Expires in 83 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' https://*.granicus.com https://platform.civicplus.com https://account.civicplus.com https://analytics.civicplus.com; img-src * data: blob:; worker-src * data: blob: 'unsafe-eval' 'unsafe-inline'; script-src * about: 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; media-src * blob:; font-src * data:; default-src *