ADARx Pharmaceuticals · Domain Security

Adarx Pharmaceuticals Domain Security

Domain security

Domain security posture for ADARx Pharmaceuticals, probed live across 2 host(s) and 2 registrable domain(s). 2 host(s) serve HTTPS (up to TLSv1.3); 0 advertise HSTS. Email/DNS controls: DNSSEC present, SPF present, DMARC present (p=quarantine).

Companybiotechnologybiopharmaceuticalsrna-therapeuticssirnarna-editingclinical-trialsrare-diseasedrug-developmentlife-sciencessan-diegocontent-api

Transport & Host Security

www.adarx.com
HTTPS: yes · TLS: TLSv1.3 · HSTS: no · cert expires: Jan 15 22:56:16 2027 GMT
stophae.com
HTTPS: yes · TLS: TLSv1.3 · HSTS: no · cert expires: Sep 11 23:30:44 2026 GMT

Domain (DNS/Email) Security

adarx.com
DNSSEC: yes · SPF: yes · DMARC: yes (p=quarantine) · CAA: none
stophae.com
DNSSEC: yes · SPF: yes · DMARC: yes (p=reject) · CAA: none

Source

Domain Security

Raw ↑
generated: '2026-08-06'
method: probed
source: >-
  Live DNS (dig) and TLS/HTTP HEAD probes of the hosts ADARx Pharmaceuticals actually controls, run
  on 2026-08-06. The upstream documentation host developer.wordpress.org, which appears as a
  humanURL on the content API because it defines the wp/v2 contract, is deliberately excluded — it
  is not an ADARx property and its posture says nothing about this provider.
hosts:
- host: www.adarx.com
  https: true
  tls_version: TLSv1.3
  cert_expires: Jan 15 22:56:16 2027 GMT
  hsts: false
  server: Apache
  security_headers:
    x_content_type_options: nosniff
    note: >-
      nosniff is present on REST responses. No Strict-Transport-Security, no Content-Security-Policy
      and no X-Frame-Options were returned on the document root.
- host: stophae.com
  https: true
  tls_version: TLSv1.3
  cert_expires: Sep 11 23:30:44 2026 GMT
  hsts: false
  server: cloudflare
  note: >-
    Fronted by Cloudflare. www.stophae.com does not resolve — the apex is the only valid host.
domains:
- domain: adarx.com
  dnssec: true
  dnssec_detail: Two DS records present, algorithm 13 (ECDSAP256SHA256).
  caa: []
  caa_detail: No CAA record. Any public CA may issue for this domain.
  spf: true
  spf_record: 'v=spf1 ip4:12.236.144.50 ip4:176.53.157.130 include:spf.protection.outlook.com include:sent-via.netsuite.com -all'
  dmarc: true
  dmarc_policy: quarantine
  dmarc_record: 'v=DMARC1; p=quarantine; pct=100; rua=mailto:dmarc-reports@adarx.com; fo=1'
- domain: stophae.com
  dnssec: true
  dnssec_detail: One DS record present, algorithm 13 (ECDSAP256SHA256).
  caa: []
  caa_detail: No CAA record.
  spf: true
  spf_record: 'v=spf1 -all'
  spf_detail: >-
    A hard-fail null SPF — the domain declares it sends no mail at all. Good hygiene for a
    site-only domain.
  dmarc: true
  dmarc_policy: reject
  dmarc_record: 'v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com;'
  dmarc_detail: Delegated via CNAME to Proofpoint Email Defense.
summary:
  strong:
  - DNSSEC signed on both domains.
  - SPF and DMARC published on both; stophae.com is at p=reject with a null SPF.
  - TLS 1.3 on both hosts, certificates valid.
  gaps:
  - No CAA record on either domain — any public CA may issue.
  - No HSTS on either host.
  - adarx.com DMARC is p=quarantine rather than p=reject.
  - No security.txt on either host (see well-known/adarx-pharmaceuticals-well-known.yml).