mhdpc.com

.com crawl

First seen 2026-06-01 · Last seen 2026-06-01 · ok HTTP/1.1 200 459 ms crawled 2026-06-02

US · 104.21.59.179 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
MacLean Holloway Doherty & Sheehan, P.C.
Language
en-US
Generator
WordPress 6.9.4
Canonical
https://mhdpc.com/

Open Graph

url
https://mhdpc.com/
title
Home
locale
en_US
site name
MacLean Holloway Doherty & Sheehan, P.C.

Technology

CDN
Cloudflare
CMS
WordPress 6.9.4
jQuery
1.9.1 known XSS (<3.5)
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • ajax.googleapis.com×2
  • www.googletagmanager.com×1

Contact

Phone

Registration

Registrar
Register.com - Network Solutions, LLC
Created
2003-03-07
Expires
2027-03-07 276 days left
Updated
2026-02-05
Name servers
  • dina.ns.cloudflare.com
  • jim.ns.cloudflare.com

DNS records live

NS
  • dina.ns.cloudflare.com
  • jim.ns.cloudflare.com
MX
  • 0 d351824a.ess.barracudanetworks.com
  • 0 d351824b.ess.barracudanetworks.com
TXT
  • duo_sso_verification=hWmoyZoxvUMHIZUccOuRrN2BRJwPHU5P82PKaIIkFTAp6L9tcgyAKAVerbwBMafH
Verified for
  • Google
  • Microsoft 365

Email authentication partial

SPF
v=spf1 mx a ip4:69.167.150.14 ip4:104.247.61.242/32 ip4:104.247.61.254/32 include:_spf.smtp.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:2e06277219834a999ad5cc936134726f@dmarc-reports.cloudflare.net;
policy: none (monitoring only)
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtA83kv1hCPgoPhSE3Wqwx45sQ6bxCPUw0xgcAyZ8qh/M7GRIHkj8rcYaNkqtqi/cu7Ah4tOhgA4z/f…
selectors probed

Certificate (current)

WE1
from 2026-04-13 to 2026-07-12
Expires in 39 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://mhdpc.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
autoplay=(self), fullscreen=(self), vertical-scroll=(self)
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' https: data:
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (2)

Linked from (1)