themay50k.com

.com crawl

First seen 2026-04-14 · Last seen 2026-05-08 · ok HTTP/1.1 200 6562 ms crawled 2026-05-08

AU · 52.63.14.105 · AS16509 Amazon.com, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
The May 50K - Leave Your Limits Behind
Description
Run or walk in The May 50K and leave your limits behind. Learn more!
Language
en
Canonical
https://www.themay50k.com

Open Graph

url
https://www.themay50k.com
title
The May 50K
site name
The May 50K
description
Join The May 50K and leave your limits behind by walking or running 50km in May to support research into multiple sclerosis.

Technology

Server
Apache
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts
Third-party hosts loaded (9)
  • dvtuw1sdeyetv.cloudfront.net×51
  • d1mibgy72px3y3.cloudfront.net×44
  • d2nqjh7h1uavry.cloudfront.net×12
  • fonts.googleapis.com×4
  • cdnjs.cloudflare.com×1
  • maps.googleapis.com×1
  • www.bugherd.com×1
  • www.facebook.com×1
  • www.googletagmanager.com×1

Social

Contact

Email

Registration

Registrar
123-Reg Limited
Created
2019-02-07
Expires
2031-02-07 1724 days left
Updated
2025-12-09
Name servers
  • amy.ns.cloudflare.com
  • clay.ns.cloudflare.com

DNS records live

NS
  • amy.ns.cloudflare.com
  • clay.ns.cloudflare.com
MX
  • 0 themay50k-com.mail.protection.outlook.com
TXT
  • MS=ms31026700
  • facebook-domain-verification=fjosv3hl9e5lp3vajlvzv1jmrl0tzu

Email authentication partial

SPF
v=spf1 ip4:109.232.63.27 ip4:109.232.63.28 include:eu.mailgun.org include:_spf.createsend.com include:spf.protection.outlook.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2026-03-05 to 2026-07-23
Expires in 64 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.themay50k.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src * blob: data: 'unsafe-inline' 'unsafe-eval'
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (7)

Linked from (1)