napaliriders.com

.com crawl

First seen 2026-06-01 · Last seen 2026-06-01 · ok HTTP/1.1 200 494 ms crawled 2026-06-01

US · 172.67.197.165 · AS13335 Cloudflare, Inc.

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Nā Pali Riders: Kauai's Napali Coast & Caves Boat Tours
Description
Join our Nā Pali Coast Snorkel Raft Expedition with Nā Pali Riders in Kauai and experience the beauty of this remote area. Reserve your raft adventure today!
Language
en-US
Canonical
https://www.napaliriders.com/

Open Graph

url
https://www.napaliriders.com/
title
Nā Pali Riders: Kauai's Napali Coast & Caves Boat Tours
site name
Na Pali Riders
description
Join our Nā Pali Coast Snorkel Raft Expedition with Nā Pali Riders in Kauai and experience the beauty of this remote area. Reserve your raft adventure today!

Technology

CDN
Cloudflare
CMS
WordPress
jQuery
3.6.0
Analytics
  • Google Tag Manager

Third-party hosts loaded (5)

  • cdnjs.cloudflare.com×2
  • fareharbor.com×1
  • stats.wp.com×1
  • www.facebook.com×1
  • www.googletagmanager.com×1

Social

Contact

Email
Phone
Address
9600 Kaumuali'i Highway, 96796, Waimea, HI, US

Registration

Registrar
Bluehost Inc.
Created
2001-03-07
Expires
2027-03-07 277 days left
Updated
2026-02-20
Name servers
  • cody.ns.cloudflare.com
  • lucy.ns.cloudflare.com

DNS records live

NS
  • cody.ns.cloudflare.com
  • lucy.ns.cloudflare.com
MX
  • 1 smtp.google.com
Verified for
  • Google

Email authentication weak

SPF
v=spf1 include:_spf.google.com include:bluehost.com ~all
softfail (~all)
DMARC
not published
DKIM
  • google: v=DKIM1;k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoRgV3T7B4dKWB7dU8IkYcoulK8nygO1iXWiVvMeMh6kJKiIBoqhTSXuCwkiQ53JLkdQZPyWjvmS8d3U5…
selectors probed

Certificate (current)

WE1
from 2026-04-24 to 2026-07-23
Expires in 51 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.napaliriders.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • cross-origin-opener-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: blob:; style-src 'self' 'unsafe-inline' https:; img-src 'self' data: https: http: blob:; font-src 'self' data: https:; connect-src 'self' https: wss:; media-src 'self' https:; object-src 'none'; base-uri 'self'; frame-src 'self' https:; frame-ancestors 'self'
strict-transport-security
max-age=31536000
cross-origin-opener-policy
same-origin-allow-popups

Links to (9)

Linked from (1)