wqxr.org

.org crawl

First seen 2026-04-11 · Last seen 2026-05-20 · ok HTTP/1.1 200 1816 ms crawled 2026-05-19

US · 32.195.187.99 · AS14618 Amazon.com, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
WQXR | New York's Classical Music Radio Station
Language
en
Canonical
https://www.wqxr.org

Open Graph

url
https://www.wqxr.org
title
WQXR | New York's Classical Music Radio Station
site name
WQXR
description
WQXR - New York Public Radio

Technology

Server
nginx
CMS
Gatsby
Analytics
  • Google Tag Manager
Ads
  • Google Ads (DoubleClick)
Third-party hosts loaded (7)
  • api.wnyc.org×1
  • maps.googleapis.com×1
  • media.wnyc.org×1
  • pym.nprapps.org×1
  • securepubads.g.doubleclick.net×1
  • www.google.com×1
  • www.googletagmanager.com×1

Social

Registration

Registrar
Amazon Registrar, Inc.
Created
2003-10-19
Expires
2026-10-19 151 days left
Updated
2025-09-19
Name servers
  • ns-1270.awsdns-30.org
  • ns-1620.awsdns-10.co.uk
  • ns-450.awsdns-56.com
  • ns-800.awsdns-36.net

DNS records live

NS
  • ns-1270.awsdns-30.org
  • ns-1620.awsdns-10.co.uk
  • ns-450.awsdns-56.com
  • ns-800.awsdns-36.net
MX
  • 10 us-smtp-inbound-1.mimecast.com
  • 10 us-smtp-inbound-2.mimecast.com
TXT
Show 4 TXT records
  • nn054zcdqbqltx3rbvmf9q6fg0yyzd60
  • sophos-domain-verification=0e2e777a6e55aa2330c6898e0f7dd8d8964a10ec1f57608e102fc32bf72101e4
  • wh49y9dd28t27b5346w87why3w8ggn2x
  • have-i-been-pwned-verification=1bb11586fd24041b23b65a12831ac170
Verified for
  • Airtable
  • Apple
  • Canva
  • Google
  • Meta
  • Zoom

Email authentication partial

SPF
v=spf1 ip4:54.240.0.0/18 ip4:62.13.128.0/24 ip4:62.13.129.128/25 ip4:62.13.136.0/21 ip4:62.13.144.0/21 ip4:62.13.152.0/23 ip4:64.244.120.32/27 ip4:64.244.122.192/27 ip4:69.169.224.0/20 ip4:72.52.72.32/28 ip4:74.10.135.212/31 ip4:74.10.135.214/32 ip4:74.123.153.0/25 ip4:74.123.154.128/25 ip4:76.223.180.0/23 ip4:76.223.188.0/23 ip4:76.223.190.0/24 ip4:107.21.56.104/32 ip4:107.21.58.3/32 ip4:148.105.8.0/21 ip4:198.2.128.0/18 ip4:199.127.232.0/22 ip4:199.255.192.0/22 ip4:205.201.128.0/20 ip4:209.20.72.224/32 ip4:209.20.75.104/32 ip4:209.20.75.234/32 ip4:209.20.78.222/32 ip4:209.20.80.34/32 ip4:209.20.85.218/32 ip4:209.20.94.222/31 ip4:209.20.94.225/32 ip4:209.20.94.226/32 ip4:209.201.52.0/24 ip4:216.235.195.0/24 include:spf.protection.outlook.com include:_netblocks.mimecast.com -all
strict (-all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc-reports@wqxr.org; ruf=mailto:dmarc-reports@wqxr.org; fo=1;
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCmIqz078+kRVUjf7DigkAyo4vr0NbUTCi/zrmYdLPOhzoEmQwCrsXqy8DiHWwi/1tn7qxzDa4id7M9ZXu8qh…
  • k1: k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed

Certificate (current)

Amazon RSA 2048 M04
from 2026-01-30 to 2027-03-01
Expires in 284 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://www.wqxr.org/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
default-src https: 'unsafe-inline' 'unsafe-eval'; connect-src 'unsafe-inline' 'unsafe-eval' *; script-src 'unsafe-inline' 'unsafe-eval' *; img-src * data: about:; frame-src 'self' *; worker-src blob:; object-src https://wnyc-project-prod.s3.amazonaws.com; frame-ancestors 'self' localhost *; media-src 'self' *;
strict-transport-security
max-age=31536000; includeSubdomains;

Links to (13)

Linked from (12)