shenandoahalliance.org
HTML metadata
Technology
- CDN
- Fastly
- Server
- Flywheel
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- fonts.googleapis.com×5
- fonts.gstatic.com×1
- gmpg.org×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Contact
Registration
- Registrar
- Bluehost Inc.
- Created
- 2018-05-10
- Expires
- 2027-05-10 355 days left
- Updated
- 2026-04-30
- Name servers
-
- ns1.bluehost.com
- ns2.bluehost.com
DNS records live
- NS
-
- ns1.bluehost.com
- ns2.bluehost.com
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx3.googlemail.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=kNDRVN7kL0sjxoy2wZyhV8sELErIYKXDhi8QwOBoC_AMS=BDCC4A7FF29955C82A086A71AD7C3934E1D20EA0
Email authentication partial
- SPF
-
v=spf1 +a +mx +ip4:69.195.74.225 +ip4:50.87.21.73 +include:_spf.google.com +include:_spfprod.ngpvan.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@shenandoahalliance.orgpolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 29 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- weak content type protection
Header values
- referrer-policy
no-referrer-when-downgrade, no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), midi=(),sync-xhr=(),accelerometer=(), gyroscope=(), magnetometer=(), camera=(), fullscreen=(self), private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")- x-content-type-options
nosniff, nosniff- content-security-policy
upgrade-insecure-requests- strict-transport-security
max-age=31536000; includeSubDomains; preload