pulmonaryfibrosis.org
HTML metadata
Technology
- CMS
- Joomla
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (7)
- customer.cludo.com×3
- fonts.googleapis.com×3
- fonts.gstatic.com×1
- js.adsrvr.org×1
- translate.google.com×1
- www.freewill.com×1
- www.youtube.com×1
Social
Contact
- Phone
Registration
- Registrar
- Network Solutions, LLC
- Created
- 2000-08-24
- Expires
- 2031-08-24 1920 days left
- Updated
- 2021-08-24
- Name servers
-
- ns37.worldnic.com
- ns38.worldnic.com
DNS records live
- NS
-
- ns37.worldnic.com
- ns38.worldnic.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 8 TXT records
_bkne2yg23hczhqwab3q1qf3h654lix2_vork2rokbxs9v4c8sd8csgm7r7hauz4qdmlpgdd4dff5dgjr2bzvttfk0bqvphdMS=4EB535281227AEA2FD048B379FB5FFC7E7902D72x4tcczn3c6jrksxvngklq8cwk9zc716f_g6iz7va0p1m0tj0djl5azzrjg8bocl03e02a98945e23fad0ae9e1e46168eb67fts4m1sy4ds708g2x3k010g4tcvpjlsg
- Verified for
-
- GlobalSign
Email authentication partial
- SPF
-
v=spf1 include:_spf.google.com include:spf.hosting.americaneagle.com include:_spf.smtp.com include:mail.zendesk.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@pulmonaryfibrosis.org; ruf=mailto:dmarc@pulmonaryfibrosis.org; adkim=r; aspf=rpolicy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnSxxu+lfDE4zxHiIzeiryqN/FB1aa4K8QwkGFuQ7WpXc6+BPdPuJMVKiNdVs21WGotCC59EJi5sLDh…
selectors probed - google:
Certificate (current)
GlobalSign Atlas R3 DV TLS CA 2026 Q2
Expires in 65 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' *.googleapis.com *.gstatic.com www.google.com apis.google.com connect.facebook.net ajax.aspnetcdn.com https://www.youtube.com platform.twitter.com https://syndication.twitter.com/ https://s.ytimg.com https://publish.twitter.com *.twimg.com platform.linkedin.com http://platform.stumbleupon.com/1/widgets.js 'unsafe-inline' 'unsafe-eval' *.google-analytics.com https://www.youtube.com/iframe_api https://cdn.insight.sitefinity.com https://dec.azureedge.net/ munchkin.marketo.net *.eloqua.com js.hs-scripts.com js.hs-analytics.net *.en25.com cdn.ampproject.org http://translate.google.com/ http://s7.addthis.com/ https://z.moatads.com/ https://v1.addthisedge.com/ https://m.addthis.com/ https://doublethedonation.com/ https://app.dafwidget.com/ http://p2a.co/ http://pulmonary-fibrosis4.mybigcommerce.com/ https://www.googletagmanager.com/ https://www.google-analytics.com/ https://www.ads.google.com/ https://www.facebook.com/ https://js.adsrvr.org/ http://www.go- strict-transport-security
max-age=31536000; includeSubDomains