unitedcoolair.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress 7.0
- jQuery
- 3.7.1
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (5)
- www.google.com×2
- gmpg.org×1
- kit.fontawesome.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- 491 E Princess St., 17403, York, PA, United States
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1999-05-10
- Expires
- 2027-05-10 343 days left
- Updated
- 2026-02-05
- Name servers
-
- ns1.javelincms.com
- ns2.javelincms.com
DNS records live
- NS
-
- ns1.javelincms.com
- ns2.javelincms.com
- ns3.javelincms.com
- ns4.javelincms.com
- MX
-
- 0 unitedcoolair-com.mail.protection.outlook.com
- TXT
-
5ppa0177g4lans2ehr06kcua8l7qkld4a731alt0v3d5a7qltv9cr5tu0cvr1b9qbafi8964s302jb
Email authentication strong
- SPF
-
v=spf1 ip4:13.90.95.93 ip4:50.221.33.74 ip4:50.73.22.141 include:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; ruf=mailto:dmarcreports@unitedcoolair.com; rua=mailto:dmarcreports@unitedcoolair.compolicy: quarantine - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2qWOudOpoIcbBI/5IimvkDruuYSVrw79Y2XnFy5jXCu85L5zLiHynixWxlb8MZ/CqVPAktiIH+DWqdREJm… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9N6OaBeCQjp0o5LTm/uTDMfL+3U2T3DZkYRw9qgqOXRCwHRpQJ9m2bIxhV0U4D6eV3j8839fhP+HOxkbQQ…
selectors probed - s1:
Certificate (current)
R13
Expires in 47 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self' 'unsafe-inline'; script-src 'unsafe-inline' *.cloudwaysapps.com *.userway.org *.typekit.net *.gravatar.com *.google.com *.googletagmanager.com *.gstatic.com *.youtube.com *.fontawesome.com; img-src * data:; style-src * 'unsafe-inline'; media-src *; frame-src *.cloudwaysapps.com *.userway.org *.typekit.net *.gravatar.com *.google.com *.googletagmanager.com *.gstatic.com *.doubleclick.net *.youtube.com; font-src * data: 'unsafe-inline'; connect-src 'self' *.cloudwaysapps.com *.userway.org *.typekit.net *.gravatar.com *.google.com *.googletagmanager.com *.gstatic.com *.fontawesome.com; script-src-elem * 'unsafe-inline'- strict-transport-security
max-age=60