themahareport.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 2329 ms crawled 2026-05-19

US · 3.231.35.217 · AS14618 Amazon.com, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
The MAHA Report | Substack
Description
The official publication of MAHA Action Inc., reporting on food safety, scientific research, pharma influence, environmental toxins, and the political movement transforming American health. Click to read The MAHA Report, a Substack publication with hundreds of thousands of subscribers.
Language
en
Canonical
https://www.themahareport.com/
Feeds

Open Graph

url
https://www.themahareport.com/
title
The MAHA Report | Substack
description
The official publication of MAHA Action Inc., reporting on food safety, scientific research, pharma influence, environmental toxins, and the political movement transforming American health. Click to read The MAHA Report, a Substack publication with hundreds of thousands of subscribers.

Technology

CDN
Cloudflare
CMS
Gatsby
Analytics
  • Cloudflare Insights

Third-party hosts loaded (3)

  • substackcdn.com×263
  • js.sentry-cdn.com×1
  • static.cloudflareinsights.com×1

Social

Registration

Registrar
Cloudflare, Inc.
Created
2024-11-11
Expires
2026-11-11 175 days left
Updated
2025-11-20
Name servers
  • dax.ns.cloudflare.com
  • khloe.ns.cloudflare.com

DNS records live

NS
  • dax.ns.cloudflare.com
  • khloe.ns.cloudflare.com
MX
  • 1 smtp.google.com
TXT
  • google-site-verification=HDFCdkPA6Uvxyd4dpgWCIiUdJfp8uM4SHYmZikESVw4
  • google-site-verification=XXn2EBo8VyXLr06sQah3wsHsc-RH8p31unHCylk8OIQ
  • google-site-verification=mdzOKJsiJziU_5rxDYo7d5SJjaJSq4sF7Px0QXZXcxE

Email authentication weak

SPF
not published
DMARC
v=DMARC1; p=none; rua=mailto:dmarc-reports@themahapac.com
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

E7
from 2026-03-30 to 2026-06-28
Expires in 40 days

HTTP security headers

Header hygiene 65/100 Checked live page: https://www.themahareport.com/

present
  • strict-transport-security
  • content-security-policy
findings
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
frame-ancestors 'self' https://*.substack.com https://substack.com
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (6)

Linked from (4)