mgeenergy.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- cdn.jsdelivr.net×1
- kit.fontawesome.com×1
- markets.financialcontent.com×1
- www.googletagmanager.com×1
Contact
- Phone
- Address
- st Company, N.A.PO Box 43078
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2001-11-02
- Expires
- 2026-11-02 167 days left
- Updated
- 2025-10-29
- Name servers
-
- dns1.cscdns.net
- dns2.cscdns.net
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 0 mxa-0032cd01.gslb.pphosted.com
- 0 mxb-0032cd01.gslb.pphosted.com
- TXT
-
adobe-idp-site-verification=722118962f639c63bcd0f7e51c6b205c00f6ab875a31a841f4977986d93faa5f
Email authentication strong
- SPF
-
v=spf1 include:_u.mgeenergy.com._spf.smart.ondmarc.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; sp=reject; rua=mailto:3e5a9877@inbox.ondmarc.com,mailto:dmarc-reports@mge.com; ruf=mailto:3e5a9877@inbox.ondmarc.com,mailto:dmarc-reports@mge.com; adkim=r; aspf=r; fo=1; rf=afrf; ri=3600policy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
Corporation Service Company RSA OV SSL CA 2
Expires in 301 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.mge.com *.mgeenergy.com *.energy2030together.com *.mge2050.com *.energizemadison.com *.genre2030.com *.daily.co cdn01.basis.net cdnjs.cloudflare.com cdn.jsdelivr.net *.adsrvr.org *.financialcontent.com *.fontawesome.com *.arcgis.com *.smarte3.ai *.smartcmobile.com *.smartcmobile.net platform.twitter.com script.hotjar.com static.hotjar.com web-2-tel.com *.clarity.ms www.highcharts.com www.google-analytics.com ajax.googleapis.com maps.googleapis.com www.googletagmanager.com *.youtube.com vimeo.com *.vimeo.com; script-src-elem 'self' 'unsafe-inline' *.smarte3.ai *.smartcmobile.com *.smartcmobile.net us.engage.app talkative-cdn.com www.google.com www.gstatic.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com cdn01.basis.net cdnjs.cloudflare.com cdn.jsdelivr.net *.adsrvr.org code.jquery.com script.hotjar.com static.hotjar.com web-2-tel.com *.clarity.ms img.en25.com connect.facebook.net platform.t- strict-transport-security
max-age=31536000