mge.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- cdn.jsdelivr.net×2
- fonts.googleapis.com×2
- cdnjs.cloudflare.com×1
- fonts.gstatic.com×1
- kit.fontawesome.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 1995-05-04
- Expires
- 2027-05-05 350 days left
- Updated
- 2026-05-01
- Name servers
-
- dns1.cscdns.net
- dns2.cscdns.net
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 0 mxa-0032cd01.gslb.pphosted.com
- 0 mxb-0032cd01.gslb.pphosted.com
- TXT
-
Show 13 TXT records
YP/8ta4CNhE5bJHZy/0p8iEqjbP5QrhctqupFxEqzr3UlrR9IV9HhhXd5JjoZ8lUZouW4pppcGisKOKwFxuM3Q==hcp-domain-verification=3917089145b2c7c7c3f99a1c569b9bcb8b58a2215889cf1f16178f9770198dc6adobe-idp-site-verification=722118962f639c63bcd0f7e51c6b205c00f6ab875a31a841f4977986d93faa5fOATI<bKBHY>j632UF8?HYUdEDU6k_6nby6ciwqokxlz53ru82atwpxruaqmgcxk3rxbcqjf044qwmxbswdvmmpc24w6qkkx8k420s29p9cxmv36rl6zrxxvbfsvzmkl800p2633yl5rpl8r1g4gzpgd9n7djsfq5qwkr7tz7gj76vqvz5ygz5q96n9fz1588a635-4189-4bba-bb8d-9e2bbf1382f8e22403b7-784d-41fb-b07c-0155042cb6c0webexdomainverification.=4fc0e4ef-6d37-43ec-8757-60ad3267c233google-site-verification=GfpWhWEON3ZQni89mnd_5juWHv5wLe3q-oa2C1HK0bo
Email authentication strong
- SPF
-
v=spf1 include:_u.mge.com._spf.smart.ondmarc.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; sp=reject; rua=mailto:3e5a9877@inbox.ondmarc.com,mailto:dmarc-reports@mge.com; ruf=mailto:3e5a9877@inbox.ondmarc.com,mailto:dmarc-reports@mge.com; adkim=r; aspf=r; fo=1; rf=afrf; ri=3600policy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
Corporation Service Company RSA OV SSL CA 2
Expires in 300 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.mge.com *.mgeenergy.com *.energy2030together.com *.mge2050.com *.energizemadison.com *.genre2030.com *.daily.co cdn01.basis.net cdnjs.cloudflare.com cdn.jsdelivr.net *.adsrvr.org *.financialcontent.com *.fontawesome.com *.arcgis.com *.smarte3.ai *.smartcmobile.com *.smartcmobile.net platform.twitter.com script.hotjar.com static.hotjar.com web-2-tel.com *.clarity.ms www.highcharts.com www.google-analytics.com ajax.googleapis.com maps.googleapis.com www.googletagmanager.com *.youtube.com vimeo.com *.vimeo.com; script-src-elem 'self' 'unsafe-inline' *.smarte3.ai *.smartcmobile.com *.smartcmobile.net us.engage.app talkative-cdn.com www.google.com www.gstatic.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com cdn01.basis.net cdnjs.cloudflare.com cdn.jsdelivr.net *.adsrvr.org code.jquery.com script.hotjar.com static.hotjar.com web-2-tel.com *.clarity.ms img.en25.com connect.facebook.net platform.t- strict-transport-security
max-age=31536000