spotsylvania.va.us

.us user

First seen 2026-05-16 · Last seen 2026-05-16 · ok HTTP/1.1 200 1491 ms crawled 2026-05-16

US · 20.114.211.29 · AS8075 Microsoft Corporation

Reputation 94/100 dmarc monitor-only

sector government type homepage

HTML metadata

Title
Spotsylvania County, VA | Official Website
Language
en

Technology

CDN
Cloudflare

Third-party hosts loaded (5)

  • www.spotsylvania.va.us×40
  • answers-script.frase.io×1
  • app-script.monsido.com×1
  • docaccess.com×1
  • textmygov.com×1

Social

Contact

Phone

DNS records live

NS
  • dns41.cloudns.net
  • dns42.cloudns.net
  • dns43.cloudns.net
  • dns44.cloudns.net
MX
  • 10 us-smtp-inbound-1.mimecast.com
  • 10 us-smtp-inbound-2.mimecast.com
  • 100 mail.spotsylvania.va.us
TXT
Show 7 TXT records
  • 0ed1fe018a51461503e897481b8c2e8419f72ace70
  • d99e6c4c-5608-4066-8daa-608ea979dacd
  • 3533b7e3-b3ae-4eee-8c78-949b75045595
  • _bijsqlp3kbmefxgewxgm2udk6qtcfq9
  • _iekgxqkqkzz7jg0skt5as5uvrii53kb
  • MS=6613DBA81984F7F83F27A335AB87556B2CCDE39C
  • 64k23ssfvv8u07de535pjok72h
Verified for
  • Apple
  • Cisco
  • Google
  • Google Workspace
  • Microsoft 365

Email authentication partial

SPF
v=spf1 ip4:205.174.113.36 ip4:149.72.180.245 include:_spf.salesforce.com include:amazonses.com include:us._netblocks.mimecast.com include:spf.protection.outlook.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@spotsylvania.va.us; ruf=mailto:dmarc@spotsylvania.va.us; fo=1
policy: none (monitoring only)
DKIM
Show 4 DKIM selectors
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3wJdU2bwRYUyL2A8OQbWxvmD2ezh4/4z+rH6NUIXuzvOBUdX4zGnCKaB5ZUqL3waFdogIEObwFOl8q…
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzMH4f89h8D/+igGGgUigdQWEi1kzsOiIfkOlsXlpjF4xabgkDvuivaiPuSj72A+U74CkxtnZEE3Mi7iaAz…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC5t1E6IIonHx/t7bDoTaMsE4ptFXs4XhjSXe41JqZep29NigIdaVjbqV//9SSI4oOHR81CU8xZ1hra8rhbcrwBBv…
selectors probed

Certificate (current)

R13
from 2026-03-28 to 2026-06-26
Expires in 36 days

HTTP security headers

Header hygiene 50/100 Checked live page: https://www.spotsylvania.va.us//

present
  • content-security-policy
  • x-content-type-options
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' https://*.granicus.com https://platform.civicplus.com https://account.civicplus.com https://analytics.civicplus.com; img-src * data: blob:; worker-src * data: blob: 'unsafe-eval' 'unsafe-inline'; script-src * about: 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; media-src * blob:; font-src * data:; default-src *

Links to (12)