omahazoo.com

.com crawl

First seen 2026-04-23 · Last seen 2026-05-17 · ok HTTP/1.1 200 6320 ms crawled 2026-05-16

US · 40.119.1.254 · AS8075 Microsoft Corporation

Reputation 100/100

Classifying

HTML metadata

Title
Omaha's Henry Doorly Zoo and Aquarium
Language
en-us
Canonical
//www.omahazoo.com/home

Technology

Analytics
  • Fathom
  • Google Tag Manager
Fonts
  • Google Fonts
Social widgets
  • Vimeo Embed
Third-party hosts loaded (11)
  • prod.speakcdn.com×6
  • www.googletagmanager.com×4
  • cdnjs.cloudflare.com×3
  • static.speakcdn.com×3
  • cdn.usefathom.com×1
  • darksky.net×1
  • fonts.googleapis.com×1
  • netdna.bootstrapcdn.com×1
  • player.vimeo.com×1
  • tag.simpli.fi×1
  • www.google.com×1

Contact

Email
Phone

Registration

Registrar
Network Solutions, LLC
Created
1996-12-09
Expires
2026-12-08 203 days left
Updated
2024-10-16
Name servers
  • ns45.worldnic.com
  • ns46.worldnic.com

DNS records live

NS
  • ns45.worldnic.com
  • ns46.worldnic.com
MX
  • 10 us-smtp-inbound-1.mimecast.com
  • 10 us-smtp-inbound-2.mimecast.com
TXT
  • google-site-verification=FR05yBW379XNAcpehiwD_ukqWR6xwW2Gm82YRvmN5Us
  • asv=06ad286bf698cc4496966a075a29a1b8

Email authentication strong

SPF
v=spf1 include:us._netblocks.mimecast.com ip4:66.37.232.210 ip4:69.87.157.214 ip4:69.87.157.215 ip4:69.87.157.216 ip4:69.87.157.217 include:wordfly.com ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; rua=mailto:605e71e8573a154@rep.dmarcanalyzer.com; ruf=mailto:605e71e8573a154@for.dmarcanalyzer.com; fo=1;
policy: reject (enforced)
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwwXC1dA82UJKKcRsQpo7vjWnqZHnBanU2MGRLBiCJm0Fy+Tm4FcCz7P735aGHtaU79DJHb3e8c6TbHTs+4…
  • s2: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwjHgXKD8ZZ2/fm+ORBIsiiw+QFDnR5+qP/jWyyTmM75ibmSlFyEVS0jF0IMtG89mm8539rXc2DVNKjG5dZ…
selectors probed

Certificate (current)

R12
from 2026-03-20 to 2026-06-18
Expires in 30 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.omahazoo.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-content-type-options
nosniff
content-security-policy
default-src https:; object-src 'none'; script-src https: 'unsafe-inline' 'unsafe-eval'; style-src https: 'unsafe-inline'; connect-src https: wss: data: blob:; img-src 'self' https: data: blob:; font-src 'self' https: data: blob:; worker-src 'self' https: blob:; frame-ancestors 'self' *.sitewrench.com *.speakcreative.com
strict-transport-security
max-age=31536000; includeSubDomains

Links to (12)

Linked from (5)