oregon.gov
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Microsoft-IIS
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- www.oregon.gov×4
- cdn.oregon.gov×2
- cdnjs.cloudflare.com×1
- fonts.gstatic.com×1
- kit.fontawesome.com×1
- siteimproveanalytics.com×1
Registration
- Registrar
- get.gov
- Created
- 2001-07-30
- Expires
- 2027-06-30 406 days left
- Updated
- 2026-05-06
- Name servers
-
- lion.state.or.us
- puma.state.or.us
DNS records live
- NS
-
- lion.state.or.us
- puma.state.or.us
- MX
-
- 0 oregon-gov.mail.protection.outlook.com
- TXT
-
Show 9 TXT records
MS=ms13446976MS=ms85627398VxIWElxqbFa6vg6b+RSDPcT5+Gw6u51rCADf+zvDwecKxYnogD24uK3g+nvpy/vP9p+UPlWaXK2bqiVdDc+xgA==_mshkaybtrzj8jvzfxx763xq7dc8cv3u_48r3s61o0ssgbz37n2v5vpsb0kpv9k3smartsheet-site-validation=4BJDuv2e6Csh2WF2sDaX5W9BTlzRpu0Nzxz2hph1qrn8qnf2hlpybxv27nwgdfjyapple-domain-verification=ayYd1MAZLS3RsocUadobe-idp-site-verification=9d3db4f5ea25997ab3196ccccc242b6888b71f86717827a35105753c3f4dfd0b
Email authentication strong
- SPF
-
v=spf1 ip4:198.177.16.66/28 ip4:159.121.206.33 include:_spf.orshared.oregon.gov -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dy7qn6pf@ag.us.dmarcian.com, mailto:eso.soc@oregon.gov; ruf=mailto:eso.soc@oregon.gov; sp=none; fo=1; ri=86400;policy: quarantine · sp=none - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw6m0OcnANSR0QgAvK0ILA3dEyVl7t9ya43acBFRm9kqR6O7Gw5yQypO0PglQwIfkjcDzwyot5CGocC… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzpNkRWALH+fvzSDkYjOyCPprEMrwp07QIrz8J6ewM1Z+V3xDFwO10WqQ9DcbRXZdq3cwvBHJsVVDwx…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 85 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' teams.microsoft.com *.teams.microsoft.com *.skype.com *.teams.microsoft.us local.teams.office.com *.powerapps.com *.yammer.com *.officeapps.live.com *.office.com *.stream.azure-test.net *.microsoftstream.com *.dynamics.com *.microsoft.com onedrive.live.com *.onedrive.live.com;- strict-transport-security
max-age=31536000; includeSubDomains; preload