myheroesnetwork.org

.org crawl

First seen 2026-04-21 · Last seen 2026-05-11 · ok HTTP/1.1 200 1671 ms crawled 2026-05-14

US · 3.33.251.168 · AS16509 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
PeopleGrove
Language
en

Technology

CDN
Cloudflare
CMS
Gatsby
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (3)

  • fonts.googleapis.com×2
  • fonts.gstatic.com×1
  • www.googletagmanager.com×1

Registration

Registrar
GoDaddy.com, LLC
Created
2023-12-07
Expires
2030-12-07 1663 days left
Updated
2025-12-07
Name servers
  • ns71.domaincontrol.com
  • ns72.domaincontrol.com

DNS records live

NS
  • ns71.domaincontrol.com
  • ns72.domaincontrol.com
TXT
  • google-site-verification=THHixr_CyoTFEiOW4QhMzCPjtj7756XPfWG1cyyPqvM

Email authentication no MX

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

GoDaddy TLS Intermediate CA DV - R1v1
from 2026-03-23 to 2026-10-07
Expires in 141 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://www.myheroesnetwork.org

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(self "https://cdn.iframe.ly/" "https://peoplegrove.wistia.com"), battery=(), camera=(self), cross-origin-isolated=(self), display-capture=(self), document-domain=(self), encrypted-media=(self "https://cdn.iframe.ly/" "https://peoplegrove.wistia.com"), execution-while-not-rendered=(self), execution-while-out-of-viewport=(self), fullscreen=(self "https://cdn.iframe.ly/" "https://peoplegrove.wistia.com"), geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(self), midi=(), navigation-override=(), payment=(*)
x-content-type-options
nosniff
content-security-policy
default-src 'self' https: *.peoplegrove.com *.pg-test.com apis.google.com www.google.com fonts.googleapis.com www.gstatic.com fonts.gstatic.com *.filestackapi.com www.google-analytics.com www.googletagmanager.com maps.googleapis.com *.facebook.net *.pg.services *.intercom.io *.intercomcdn.com *.mxpnl.com *.stripe.com *.firebaseio.com www.youtube.com *.iframe.ly *.google.co.in *.pg.services cdn.jsdelivr.net *.getbee.io *.logrocket.io *.lr-ingest.io *.logrocket.com *.transloadit.com *.firebaseapp.com *.bootstrapcdn.com *.customer.io *.userway.org *.wistia.com *.wistia.net *.sentry-cdn.com *.trychameleon.com *.chameleon.io *.chmln-cdn.com *.typeform.com;connect-src * blob: data:;script-src 'self' https: *.peoplegrove.com *.pg-test.com apis.google.com www.google.com fonts.googleapis.com www.gstatic.com fonts.gstatic.com *.filestackapi.com www.google-analytics.com www.googletagmanager.com maps.googleapis.com *.facebook.net *.pg.services *.intercom.io *.intercomcdn.com *.mxpnl.com *.stripe.c
strict-transport-security
max-age=63072000; includeSubDomains; preload

Linked from (2)