Name Servers

TTL

SOA Details

TTL
20m
SOA Responsible
dns.cloudflare.com
SOA Serial
2402277354
SOA Times
Refresh 2h
Retry 40m
Expire 7d
Minimum TTL 30m

Certificate Authority Authorization

TTL
0 issue digicert.com ; cansignhttpexchanges=yes
20m
0 issue pki.goog ; cansignhttpexchanges=yes
20m
20m
20m
0 issuewild digicert.com ; cansignhttpexchanges=yes
20m
0 issuewild pki.goog ; cansignhttpexchanges=yes
20m
0 issuewild ssl.com
20m

DMARC

TTL
DMARC Policy

Organizational policy (p): how receivers treat mail that fails aligned DMARC checks — none (monitor only), quarantine (often junk), or reject (block).

none quarantine reject
5m
DMARC Percentage

pct: share of mail that gets quarantine/reject; 100 = all failing messages (default).

100
DMARC RUA

Aggregate DMARC reports (ZIP/XML). Optional but recommended for visibility.

No aggregate report URIs (RUA).
DMARC RUF

Forensic (per-failure) reports. Often omitted for privacy or volume.

No forensic report URIs (RUF).

DKIM

TTL

No DKIM TXT with `v=DKIM1` was returned for the selector names we probe automatically.

SPF (Sender Policy Framework)

TTL

No SPF TXT record was returned (`v=spf1` / `spf2.0/`). SPF tells receivers which hosts may send mail for this domain; without it, aligned DMARC and spoofing defenses are weaker.

MTA-STS

TTL

This hostname does not publish an MTA-STS policy (no v=STSv1 TXT at _mta-sts.<name> and/or no policy at https://mta-sts.<name>/.well-known/mta-sts.txt).

Text Content

TTL
google-site-verification=5ZLsXsYqtcRYMMxpCB1k9xmhl6xTs2hmTK9rjKcByVg
5m
onetrust-domain-verification=31f4c6a3865da7862921066b99b08931ff1f4fc0205ab8eeb50f6760c6f8f76f
5m
onetrust-domain-verification=f3aff075dda32127e5e0295b7fa351fbb2bdc69312db58f58e8af1092e00865b
5m
rovag_verification_token=38AAEED322A7422D85BFFB9230D1ED87
5m