theforestguardians.org

.org crawl

First seen 2026-04-13 · Last seen 2026-05-08 · ok HTTP/1.1 200 1483 ms crawled 2026-05-06

US · 188.114.97.3 · AS13335 Cloudflare, Inc.

Reputation 87/100 weak security headers no dmarc policy

Classifying

HTML metadata

Title
Forest Guardians
Description
Many feel powerless against rainforest deforestation. Forest Guardians connects you with Indigenous protectors so your care becomes real change.
Language
en

Open Graph

url
https://www.theforestguardians.org/
title
Forest Guardians
description
Many feel powerless against rainforest deforestation. Forest Guardians connects you with Indigenous protectors so your care becomes real change.

Technology

CDN
Cloudflare
CMS
Next.js
Analytics
  • Cloudflare Insights

Third-party hosts loaded (4)

  • cdn.venturatravel.org×2
  • get.geojs.io×2
  • media.venturatravel.org×1
  • static.cloudflareinsights.com×1

Registration

Registrar
Marcaria International LLC
Created
2025-08-20
Expires
2026-08-20 91 days left
Updated
2025-09-05
Name servers
  • ara.ns.cloudflare.com
  • pete.ns.cloudflare.com

DNS records live

NS
  • ara.ns.cloudflare.com
  • pete.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
Verified for
  • Google

Email authentication partial

SPF
v=spf1 include:_spf.google.com ~all
softfail (~all)
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-04-29 to 2026-07-28
Expires in 69 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.theforestguardians.org/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
font-src 'self' data: https://media.venturatravel.org https://static.klaviyo.com https://fonts.gstatic.com; style-src 'self' 'unsafe-inline' https://static.klaviyo.com *.ekonsilio.io https://fonts.googleapis.com; script-src * 'unsafe-inline' 'unsafe-eval' *.ekonsilio.io blob:; worker-src blob: 'self'; img-src * data: blob: *.ekonsilio.io; connect-src * ws: wss: *.ekonsilio.io *.simplelocalize.io;

Links to (1)

Linked from (8)