theintrepidfoundation.org

.org crawl

First seen 2026-05-02 · Last seen 2026-05-18 · ok HTTP/1.1 200 6161 ms crawled 2026-05-09

US · 213.188.193.176 · AS40509 Fly.io, Inc.

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
The Intrepid Foundation
Description
We empower our travellers to make real impact in the communities they visit
Language
en
Canonical
https://www.theintrepidfoundation.org/

Technology

Server
Fly
Ads
  • Meta Pixel
Fonts
  • Adobe Fonts

Third-party hosts loaded (6)

  • cdn.raisely.com×8
  • api.raisely.com×2
  • connect.facebook.net×1
  • js.stripe.com×1
  • raisely-images.imgix.net×1
  • use.typekit.net×1

Registration

Registrar
CSC Corporate Domains, Inc.
Created
2005-03-22
Expires
2027-03-22 306 days left
Updated
2026-03-23
Name servers
  • dns1.cscdns.net
  • dns2.cscdns.net

DNS records live

NS
  • ns.domainnetwork.se
  • ns2.domainnetwork.se
  • ns3.domainnetwork.com
MX
  • 10 mxa-0034ee01.gslb.pphosted.com
  • 10 mxb-0034ee01.gslb.pphosted.com
TXT
  • MS=ms29760553
  • google-site-verification=tDT1tpdOP9YcpNDWDbdiGQdGAOhcJiEaISpubNSM7-c
  • v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com

Email authentication strong

SPF
v=spf1 include:spf.protection.outlook.com include:_spf.salesforce.com include:spf-0034ee01.pphosted.com a:mr1.intrepidgroup.travel a:mr2.intrepidgroup.travel include:servers.mcsv.net include:shops.shopify.com ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com
policy: reject (enforced)
DKIM
  • k1: k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed

Certificate (current)

E7
from 2026-05-07 to 2026-08-05
Expires in 77 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://www.theintrepidfoundation.org/

present
  • strict-transport-security
findings
  • short HSTS max-age
  • missing Content Security Policy
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
strict-transport-security
max-age=86400;

Linked from (2)