shelbyal.com

.com crawl

First seen 2026-05-05 · Last seen 2026-05-18 · ok HTTP/1.1 200 2476 ms crawled 2026-05-12

US · 208.90.191.148 · AS36489 IP Pathways, LLC

Reputation 100/100

Classifying

HTML metadata

Title
Shelby County, AL - Official Website | Official Website
Language
en

Technology

Third-party hosts loaded (1)

  • docaccess.com×1

Contact

Address
st College StreetColumbiana, AL 35051

Registration

Registrar
Network Solutions, LLC
Created
2006-08-15
Expires
2028-08-15 817 days left
Updated
2025-03-19
Name servers
  • ns25.worldnic.com
  • ns26.worldnic.com

DNS records live

NS
  • ns25.worldnic.com
  • ns26.worldnic.com
MX
  • 10 d270589a.ess.barracudanetworks.com
  • 15 d270589b.ess.barracudanetworks.com
TXT
  • MS=07153132F84C52632B861526B8A7ABA735CABBCA
  • duo_sso_verification=sK3nZrqGOA0vTduVUzCjYfPPCdV1LtaCkXuQFpt6gq3DeHjPPzUWUoQRA5v2Jhr7
Verified for
  • Apple
  • DocuSign
  • Google
  • Microsoft 365
  • Zoom

Email authentication strong

SPF
v=spf1 ip4:12.181.18.38 ip4:35.130.149.226 ip4:35.130.134.179 include:spf.ess.barracudanetworks.com include:spf.protection.outlook.com include:amazonses.com ip4:208.117.56.57 ~all
softfail (~all)
DMARC
v=DMARC1;p=quarantine;pct=100;fo=1;rua=mailto:dmarc@shelbyal.com,mailto:rua+shelbyal.com@dmarc.barracudanetworks.com;ruf=mailto:dmarc@shelbyal.com,mailto:ruf+shelbyal.com@dmarc.barracudanetworks.com;ri=86400;aspf=r;adkim=r
policy: quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvBaxFvmNBvRXgqT39eqgB7rdOi+aLpqwKuNt1J19aTnDQYzWn++bCn3NtYCaDXesJv4H2mT1dua/SL…
  • selector2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5EpVaczW+NQcmxXoixvXpSph4GYjxgg70rYkPpShgoYJli3srvUmp+kOhjU/s0VXI8uphhmx8GpQDF…
selectors probed

Certificate (current)

Network Solutions RSA OV SSL CA 3
from 2026-03-20 to 2026-10-05
Expires in 137 days

HTTP security headers

Header hygiene 50/100 Checked live page: https://shelbyal.com/

present
  • content-security-policy
  • x-content-type-options
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' https://*.granicus.com https://platform.civicplus.com https://account.civicplus.com https://analytics.civicplus.com; img-src * data: blob:; worker-src * data: blob: 'unsafe-eval' 'unsafe-inline'; script-src * about: 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; media-src * blob:; font-src * data:; default-src *

Links to (10)

Linked from (3)