phelpshealth.org
HTML metadata
Technology
- Server
- nginx
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- cdnjs.cloudflare.com×13
- assets.yourdiseaserisk.org×4
- maxcdn.bootstrapcdn.com×3
- fonts.googleapis.com×2
- cdn.jsdelivr.net×1
- tag.simpli.fi×1
- www.googletagmanager.com×1
Contact
- Phone
DNS records live
- NS
-
- ns10.dnsmadeeasy.com
- ns11.dnsmadeeasy.com
- ns12.dnsmadeeasy.com
- ns13.dnsmadeeasy.com
- ns14.dnsmadeeasy.com
- ns15.dnsmadeeasy.com
- MX
-
- 10 mxa-006fe102.gslb.pphosted.com
- 10 mxb-006fe102.gslb.pphosted.com
- TXT
-
Show 5 TXT records
4957mxqzc4kvhh71tff2xfzh1t3kl051SFMC-cKefBwdtiSF-YLtUC6ik-w0FTdDWEw7vznaC2nu4_4fw3i93e87ut8tfrhzucnlv1l4ne8j138mx8tm2g9nxfsbcvb5j33qqn9byx6hhMS=B7106BE4229419F7905EEFABCA652694128B4909
- Verified for
-
- Adobe
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx a ip4:205.220.170.220 ip4:205.220.182.220 include:spf-006fe102.pphosted.com include:mailgun.org include:salsalabs.org include:_spf.neonemails.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:DMARCreports@phelpshealth.org,mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:DMARCreports@phelpshealth.org,mailto:dmarc_ruf@emaildefense.proofpoint.com;fo=1policy: none (monitoring only) - DKIM
-
- s1:
v=DKIM1; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxfMOppabXowzYagXj5uSw1X0LOtN7NAJG05d7CaRUDmMxVYUwET0pTLCb7916ei0R2/Sxv6e5hp8f/CgAap2e…
selectors probed - s1:
Certificate (current)
R12
Expires in 49 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
object-src 'none'; script-src * 'report-sample' 'unsafe-inline'; style-src * 'report-sample' 'unsafe-inline'; webrtc 'block'; worker-src 'self'; base-uri 'self'; form-action 'self'; frame-ancestors 'self' https://redcap.wustl.edu- strict-transport-security
max-age=300- content-security-policy-report-only
object-src 'none'; script-src 'self' 'report-sample' assets.yourdiseaserisk.org cdn.jsdelivr.net cdnjs.cloudflare.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://maps.googleapis.com https://polyfill-fastly.io https://transparency.nrchealth.com https://unpkg.com https://www.google.com maxcdn.bootstrapcdn.com; style-src 'self' 'report-sample' assets.yourdiseaserisk.org cdnjs.cloudflare.com fonts.googleapis.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://unpkg.com maxcdn.bootstrapcdn.com; webrtc 'block'; worker-src 'self'; base-uri 'self'; form-action 'self'; frame-ancestors 'self'