spmcf.org
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Analytics
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (11)
- de4vzavwp1bb7.cloudfront.net×17
- cdnjs.cloudflare.com×11
- fonts.googleapis.com×3
- player.vimeo.com×3
- tags.tiqcdn.com×3
- cdn.jsdelivr.net×2
- www.googletagmanager.com×2
- fonts.gstatic.com×1
- www.google-analytics.com×1
- www.googleoptimize.com×1
- www.gstatic.com×1
Social
Contact
- Phone
- Address
- 370 Wabasha Street North, Suite 300, 55102, Saint Paul, MN, US
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2017-05-12
- Expires
- 2027-05-12 358 days left
- Updated
- 2026-05-13
- Name servers
-
- ns1.atomicdata.com
- ns2.atomicdata.com
- ns3.atomicdata.com
DNS records live
- NS
-
- ns1.atomicdata.com
- ns2.atomicdata.com
- ns3.atomicdata.com
- MX
-
- 0 spmcf-org.mail.protection.outlook.com
- TXT
-
Show 14 TXT records
_aab840kwpdwxfinywt8oa0agl2cdnsfngjiFYKw4yPkOYlAP4Tz5LePtxngz+vs79pC3c19xUb9Rj11IQUKPtTjk/hz7LL5lyWHUCcEwOqnNs2Xme/1gw==nB9aTDTp6oFAiT0p8oDesA==MS=ms90310762fj0fcw9py1zgb9lt4zgpjt7mzlxw51qxgoogle-site-verification=EQQc6WUL39xoQ1FQ9zgokmTMgLDUrPPayHevs3YpTS4apple-domain-verification=E1naDqL6jlTxu9VTamazonses:CPV/fFnvO/ESpu4y7CRBXA6KzpF0Y9MJEKyO0nCogeU=MS=EC4266892F70C2273387216DC99DDF02218C0D52google-site-verification=5TAC2dF06FdvjyeOETQrTBjDP1ZIUVwsHoDYwQPSS_Mjt07v8x9j9syx6fdwwsw3jmb75812f1qr9h4kpnvllhr523ep8a87l15l7_k1yg2iszeg3v44nhyywd41fet1o3bzpgoogle-site-verification=q0LpHjsArdkyf8ZTg3NqYZP8XbhH3lFsHh8vxfdqak4
Email authentication strong
- SPF
-
v=spf1 a ip4:129.33.239.234 ip4:64.27.172.242 a:acquiamail10.acquia.com include:hubspotfree.net include:spmcf-org.spf.smtp25.com include:emsd1.com include:spf.protection.outlook.com include:_spf.spf.atomicdata.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc@spmcf.org; ruf=mailto:dmarc@spmcf.org; fo=1policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0b73gX+ixmza0GQ4HEUln0/S7nAbV6/+bCgH+4DEBez8Whb2YGvQtL08PEKo3UUTzMaFL9ZwIQmDs4…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 250 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer-when-downgrade, no-referrer- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(),midi=(),notifications=(),push=(),sync-xhr=(),microphone=(),camera=(),magnetometer=(),gyroscope=(),speaker=(self),vibrate=(),fullscreen=(self),payment=()- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests; default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.hs-scripts.com/ https://*.hs-scripts.net/ https://scripts.clarity.ms/ https://*.hs-analytics.net/ https://*.hscollectedforms.net/ https://*.hs-banner.com/ https://*.hsadspixel.net/ https://zoom.us/ https://cdn.mgln.ai/ https://maps.googleapis.com/ https://unpkg.com/ https://spmcf.org/ https://script.hotjar.com/ https://static.hotjar.com/ https://www.clarity.ms/ https://www.gstatic.com/ https://www.google.com/ https://tgbwidget.com/ https://c1.rfihub.net/ https://cdn.boomtrain.com/ https://live.rezync.com/ https://wilderresearch.org/ https://connect.facebook.net/ https://googleads.g.doubleclick.net/ https://js.hsleadflows.net/ https://js.hsadspixel.net/ https://js.hs-analytics.net/ https://js.hs-banner.com/ https://js.hscollectedforms.net/ https://www.googletagmanager.com/ https://js-na1.hs-scripts.com/ https://siteimproveanalytics.com/ https://static.ads-twitter.com/ https://www.goo- strict-transport-security
max-age=31536000; includeSubDomains; preload