quran.com

.com toplist crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 506 ms crawled 2026-05-18

US · 172.67.68.105 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
The Noble Quran - Quran.com
Description
The Quran translated into many languages in a simple and easy interface
Language
en
Canonical
https://quran.com
Translations
  • ar
  • bn
  • en
  • es
  • fa
  • fr
  • id
  • it
  • ms
  • nl
  • pt
  • ru
  • sq
  • sw
  • th
  • tr
  • ur
  • vi
  • zh

Open Graph

url
https://quran.com
title
The Noble Quran - Quran.com
locale
en_US
site name
Quran.com
description
The Quran translated into many languages in a simple and easy interface

Technology

CDN
Cloudflare
CMS
Next.js
Analytics
  • Cloudflare Insights

Third-party hosts loaded (2)

  • api.qurancdn.com×1
  • static.cloudflareinsights.com×1

Registration

Registrar
Network Solutions, LLC
Created
1995-12-20
Expires
2035-12-19 3501 days left
Updated
2025-12-20
Name servers
  • jeremy.ns.cloudflare.com
  • vida.ns.cloudflare.com

DNS records live

NS
  • jeremy.ns.cloudflare.com
  • vida.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 aspmx2.googlemail.com
  • 10 aspmx3.googlemail.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
  • google-site-verification=vMHyj60JJlFlFW-YB7Gnl2NZrZZdUOb0QnzJPdUUyQA
  • openai-domain-verification=dv-vJH43DGS1kx9fT71DzIZ485p
  • qy013aetmp

Email authentication weak

SPF
not published
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@quran.com; ruf=mailto:dmarc@quran.com; fo=1; adkim=s; aspf=s; pct=100
policy: none (monitoring only)
DKIM
  • google: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAjvIkpjGk3F+6NwDlpluiy4ySvps2rAQTSxtg23S4yqDREGdDU/NML/Jo7fNIXDFHlBQl5/6Cxy0jLu…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

WE1
from 2026-03-27 to 2026-06-25
Expires in 37 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://quran.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
Header values
referrer-policy
origin-when-cross-origin
permissions-policy
camera=(), microphone=(self), geolocation=(self), fullscreen=*
x-content-type-options
nosniff
content-security-policy
default-src 'self' *.qurancdn.com cdn.plaid.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://www.google-analytics.com https://ssl.google-analytics.com https://vitals.vercel-insights.com https://www.givingloop.org https://code.jquery.com https://www.google.com https://js.stripe.com https://ipinfo.io https://snap.licdn.com https://cdn.mouseflow.com https://www.paypal.com https://wchat.eu.freshchat.com https://cdn.plaid.com https://cdnjs.cloudflare.com https://cdn.amplitude.com https://cdn.logrocket.io https://www.gstatic.com https://js.stripe.com https://www.clarity.ms https://static.cloudflareinsights.com; font-src 'self' 'unsafe-inline' 'unsafe-eval' givingloop.org fonts.gstatic.com https://www.givingloop.org; frame-src 'self' 'unsafe-inline' 'unsafe-eval' https://js.stripe.com/v3 js.stripe.com https://www.paypal.com www.paypal.com https://wchat.eu.freshchat.com https://www.google.com www.google.com www.youtube.com; style-src 'self' '
strict-transport-security
max-age=15552000; preload

Links to (7)

Linked from (10)