wqxr.org
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Ads
-
- Google Ads (DoubleClick)
Third-party hosts loaded (7)
- api.wnyc.org×1
- maps.googleapis.com×1
- media.wnyc.org×1
- pym.nprapps.org×1
- securepubads.g.doubleclick.net×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2003-10-19
- Expires
- 2026-10-19 151 days left
- Updated
- 2025-09-19
- Name servers
-
- ns-1270.awsdns-30.org
- ns-1620.awsdns-10.co.uk
- ns-450.awsdns-56.com
- ns-800.awsdns-36.net
DNS records live
- NS
-
- ns-1270.awsdns-30.org
- ns-1620.awsdns-10.co.uk
- ns-450.awsdns-56.com
- ns-800.awsdns-36.net
- MX
-
- 10 us-smtp-inbound-1.mimecast.com
- 10 us-smtp-inbound-2.mimecast.com
- TXT
-
Show 4 TXT records
nn054zcdqbqltx3rbvmf9q6fg0yyzd60sophos-domain-verification=0e2e777a6e55aa2330c6898e0f7dd8d8964a10ec1f57608e102fc32bf72101e4wh49y9dd28t27b5346w87why3w8ggn2xhave-i-been-pwned-verification=1bb11586fd24041b23b65a12831ac170
- Verified for
-
- Airtable
- Apple
- Canva
- Meta
- Zoom
Email authentication partial
- SPF
-
v=spf1 ip4:54.240.0.0/18 ip4:62.13.128.0/24 ip4:62.13.129.128/25 ip4:62.13.136.0/21 ip4:62.13.144.0/21 ip4:62.13.152.0/23 ip4:64.244.120.32/27 ip4:64.244.122.192/27 ip4:69.169.224.0/20 ip4:72.52.72.32/28 ip4:74.10.135.212/31 ip4:74.10.135.214/32 ip4:74.123.153.0/25 ip4:74.123.154.128/25 ip4:76.223.180.0/23 ip4:76.223.188.0/23 ip4:76.223.190.0/24 ip4:107.21.56.104/32 ip4:107.21.58.3/32 ip4:148.105.8.0/21 ip4:198.2.128.0/18 ip4:199.127.232.0/22 ip4:199.255.192.0/22 ip4:205.201.128.0/20 ip4:209.20.72.224/32 ip4:209.20.75.104/32 ip4:209.20.75.234/32 ip4:209.20.78.222/32 ip4:209.20.80.34/32 ip4:209.20.85.218/32 ip4:209.20.94.222/31 ip4:209.20.94.225/32 ip4:209.20.94.226/32 ip4:209.201.52.0/24 ip4:216.235.195.0/24 include:spf.protection.outlook.com include:_netblocks.mimecast.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc-reports@wqxr.org; ruf=mailto:dmarc-reports@wqxr.org; fo=1;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCmIqz078+kRVUjf7DigkAyo4vr0NbUTCi/zrmYdLPOhzoEmQwCrsXqy8DiHWwi/1tn7qxzDa4id7M9ZXu8qh… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 284 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src https: 'unsafe-inline' 'unsafe-eval'; connect-src 'unsafe-inline' 'unsafe-eval' *; script-src 'unsafe-inline' 'unsafe-eval' *; img-src * data: about:; frame-src 'self' *; worker-src blob:; object-src https://wnyc-project-prod.s3.amazonaws.com; frame-ancestors 'self' localhost *; media-src 'self' *;- strict-transport-security
max-age=31536000; includeSubdomains;