unjspf.org
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- cdn.weglot.com×1
- cdnjs.cloudflare.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 1996-06-02
- Expires
- 2034-04-12 2884 days left
- Updated
- 2026-05-06
- Name servers
-
- ns-1291.awsdns-33.org
- ns-116.awsdns-14.com
- ns-1973.awsdns-54.co.uk
- ns-611.awsdns-12.net
DNS records live
- NS
-
- ns-116.awsdns-14.com
- ns-1291.awsdns-33.org
- ns-1973.awsdns-54.co.uk
- ns-611.awsdns-12.net
- MX
-
- 10 unjspf-org.mail.protection.outlook.com
- TXT
-
MS=ms46815427
Email authentication weak
- SPF
-
v=spf1 include:un.org ip4:193.239.220.10/31 ip4:193.239.220.12 -allstrict (-all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0pyJX0h4GhCIH9GLectWmrAvrP/AlbCDIr6oorbL7VHJ2QF1D/7dH3nnJltTTNm/UlzQTLQ4wL6ytV…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 287 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self' q.clarity.ms www.clarity.ms cdn-api-weglot.com cdn.weglot.com app.powerbi.com ajax.cloudflare.com teams.microsoft.com app.sli.do www.youtube.com www.google-analytics.com www.google.com region1.analytics.google.com www.unjspf.org www.googletagmanager.com analytics.google.com stats.g.doubleclick.net 'unsafe-inline'; font-src 'self' maxcdn.bootstrapcdn.com fonts.googleapis.com fonts.gstatic.com 'unsafe-inline'; img-src 'self' c.clarity.ms data: www.unjspf.org www.google-analytics.com stats.g.doubleclick.net via.placeholder.com elements.oxy.host www.google.co.in www.google.com *.google-analytics.com *.googletagmanager.com 'unsafe-inline'; media-src 'self' www.unjspf.org 'unsafe-inline'; script-src 'self' cdn.weglot.com www.google.com www.unjspf.org www.googletagmanager.com analytics.google.com stats.g.doubleclick.net www.google-analytics.com www.gstatic.com cdnjs.cloudflare.com *.googletagmanager.com scripts.clarity.ms 'unsafe-inline'; script-src-attr 'self' cdn.weglot.c- strict-transport-security
max-age=31536000; includeSubDomains