Northwind Studio

Northwind Studio · Website and email configuration report

Period 01 Aug 2026 to 31 Aug 2026 · checked every six hours · generated 2026-09-01 00:00 UTC
What this report is. A dated record of externally observable configuration for 3 domains: DNS records, permitted email senders (SPF), DKIM selectors, DMARC policy, HTTPS certificate, redirect and security headers. It records what was observed and when. It does not test email delivery, scan for vulnerabilities, or assess compliance, and it does not state that maintenance was performed or that any incident was prevented.
3review changes
2certificate actions
1expected changes
7configuration notes
1coverage gaps
0pending confirmation

Acme Bakery · acme-bakery.test

Review changes (2)

CheckWhat changedObserved
SPF permitted senders New SPF senders
  • ip4 192.0.2.128/25 (via spf.marketingtool.test)
  • include _spf.mtool-sub.test (via spf.marketingtool.test > _spf.mtool-sub.test)
first seen 2026-08-10 06:00 UTC
confirmed 2026-08-10 12:00 UTC
Security headers Content-Security-Policy: directive frame-ancestors removed
  • was: 'none'
first seen 2026-08-10 06:00 UTC
confirmed 2026-08-10 12:00 UTC

Expected change (1)

CheckWhat changedObserved
Mail servers (MX) MX records changed
  • added: 10 aspmx.bigmail.test, 20 alt1.aspmx.bigmail.test
  • removed: 10 mx1.mailhost.test, 20 mx2.mailhost.test
first seen 2026-08-10 06:00 UTC
confirmed 2026-08-10 12:00 UTC

Configuration note (1)

CheckWhat changedObserved
Website address (A) A records changed
  • added: 192.0.2.12, 192.0.2.13
  • removed: 192.0.2.10, 192.0.2.11
first seen 2026-08-03 00:00 UTC

Current configuration at period end

CheckObserved value
Website address (A)192.0.2.12, 192.0.2.13
Mail servers (MX)10 aspmx.bigmail.test, 20 alt1.aspmx.bigmail.test
Nameserversns1.dnshost.test, ns2.dnshost.test
DKIM selector mh1present, rsa 2048 bits
DMARC policyp=quarantine, pct=100, published at the exact name
SPF permitted senders5 permitted senders; ends -all; 4 lookups
Security headers8 security headers present
HTTP to HTTPS redirectredirects; status 301
HTTPS certificatevalid until 2026-11-28T00:00:00Z (Example CA R3)

Coverage

CheckStatusLast successful observation
Website address (A)observed2026-08-31 18:00 UTC
Mail servers (MX)observed2026-08-31 18:00 UTC
Nameserversobserved2026-08-31 18:00 UTC
DKIM selector mh1observed2026-08-31 18:00 UTC
DMARC policyobserved2026-08-31 18:00 UTC
SPF permitted sendersobserved2026-08-31 18:00 UTC
Security headersobserved2026-08-31 18:00 UTC
HTTP to HTTPS redirectobserved2026-08-31 18:00 UTC
HTTPS certificateobserved2026-08-31 18:00 UTC

Harbour Goods (shop) · shop.harbour-goods.test

Review change (1)

CheckWhat changedObserved
DKIM selector selector1 DKIM selector selector1 removed
  • The selector previously published a key and now returns no record.
first seen 2026-08-18 12:00 UTC
confirmed 2026-08-18 18:00 UTC

Certificate action (1)

CheckWhat changedObserved
HTTPS certificate Certificate expires within 14 days
  • not after 2026-09-12T00:00:00Z
  • 11 days remaining
first seen 2026-08-31 18:00 UTC

Configuration notes (5)

CheckWhat changedObserved
DMARC policy DMARC policy inherited from organisational domain
  • harbour-goods.test publishes the record; effective policy quarantine.
first seen 2026-08-01 00:00 UTC
Security headers Content-Security-Policy not set
  • Observed as absent; not a vulnerability claim.
first seen 2026-08-01 00:00 UTC
Security headers X-Frame-Options not set
  • Observed as absent; not a vulnerability claim.
first seen 2026-08-01 00:00 UTC
Security headers Permissions-Policy not set
  • Observed as absent; not a vulnerability claim.
first seen 2026-08-01 00:00 UTC
Security headers Cross-Origin-Resource-Policy not set
  • Observed as absent; not a vulnerability claim.
first seen 2026-08-01 00:00 UTC

Current configuration at period end

CheckObserved value
Website alias (CNAME)shops.platform-host.test
Mail servers (MX)10 mx.harbour-goods.test
DKIM selector googleno record
DKIM selector selector1no record
DMARC policyp=quarantine, pct=100, inherited from harbour-goods.test
SPF permitted senders1 permitted sender; ends ~all; 1 lookups
Security headers4 security headers present
HTTP to HTTPS redirectredirects; status 308
HTTPS certificatevalid until 2026-09-12T00:00:00Z (Example CA R3)

Coverage

CheckStatusLast successful observation
Website alias (CNAME)observed2026-08-31 18:00 UTC
Mail servers (MX)observed2026-08-31 18:00 UTC
DKIM selector googleobserved2026-08-31 18:00 UTC
DKIM selector selector1observed2026-08-31 18:00 UTC
DMARC policyobserved2026-08-31 18:00 UTC
SPF permitted sendersobserved2026-08-31 18:00 UTC
Security headersobserved2026-08-31 18:00 UTC
HTTP to HTTPS redirectobserved2026-08-31 18:00 UTC
HTTPS certificateobserved2026-08-31 18:00 UTC

Bluefin Legal · bluefin-legal.test

Certificate action (1)

CheckWhat changedObserved
HTTPS certificate Certificate expires within 30 days
  • not after 2026-09-29T00:00:00Z
  • 28 days remaining
first seen 2026-08-31 18:00 UTC

Configuration note (1)

CheckWhat changedObserved
DMARC policy No DMARC record observed
  • No record at the exact name or at the organisational domain.
first seen 2026-08-01 00:00 UTC

Coverage gap (1)

CheckWhat changedObserved
Security headers Check has not succeeded for 12 hours
  • last successful observation 2026-08-19T18:00:00+00:00
  • latest state: error
first seen 2026-08-19 18:00 UTC
confirmed 2026-08-20 06:00 UTC

Current configuration at period end

CheckObserved value
Website address (A)198.51.100.20
Mail servers (MX)10 mail.bluefin-legal.test
DMARC policyno record
SPF permitted senders1 permitted sender; ends -all; 1 lookups
Security headers8 security headers present
HTTP to HTTPS redirectredirects; status 301
HTTPS certificatevalid until 2026-09-29T00:00:00Z (Example CA R3)

Coverage

CheckStatusLast successful observation
Website address (A)observed2026-08-31 18:00 UTC
Mail servers (MX)observed2026-08-31 18:00 UTC
DMARC policyobserved2026-08-31 18:00 UTC
SPF permitted sendersobserved2026-08-31 18:00 UTC
Security headersstale2026-08-19 18:00 UTC
HTTP to HTTPS redirectobserved2026-08-31 18:00 UTC
HTTPS certificateobserved2026-08-31 18:00 UTC

0 checks never observed successfully; 1 stale at period end. Gaps are reported, never assumed fine.