1lod.com
HTML metadata
Technology
- CDN
- Fastly
- CMS
- Drupal
Third-party hosts loaded (2)
- https×5
- code.jquery.com×1
Social
Registration
- Registrar
- Nameshield SAS
- Created
- 2017-05-18
- Expires
- 2026-05-18 expired 1 day ago
- Updated
- 2024-12-01
- Name servers
-
- nsa.perf1.fr
- nsb.perf1.com
- nsc.perf1.com
DNS records live
- NS
-
- nsa.perf1.fr
- nsb.perf1.com
- nsc.perf1.com
- MX
-
- 10 1lod-com.mail.protection.outlook.com
- TXT
-
ZOOM_verify_b7HRpPsNdQEwKCeuaVHB9Ugoogle-site-verification=ba9UDS4EjqxEQo6PlUlcS4nDdhKne69aof-QlbhANtIgoogle-site-verification=RRgFDe461jqDxnXkeqrLkDCOHMPcXhMLzWtUSkfwLwU
Email authentication strong
- SPF
-
v=spf1 mx include:_spf.salesforce.com include:spf.protection.outlook.com include:5138252m.risk.net include:spf.mailjet.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; rua=mailto:infopro.rua@emailsecurity.merox.io; ruf=mailto:dmarc.reports@infopro-insight.com; fo=1; aspf=r; adkim=rpolicy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0OCDBv/ZKp2IBMQZHzMuUNtIMzOWG7kOlOUSGUTwpq+PRUuDlhlG3PHLcAypZrRTyvvJZel8lHVVpz… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqkoWbcECxvd+13HKQzEfwCDhz9vLUFydUH6LxiZidCzSwzABpstPyPqv/cgECi1IFpvhFG4R5Nxm7u… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvf3aDkfkI89MVHs+VeuhcZQUa+4hMwQIh9i6I8qeqQ0BVPHt8agkP8CUkrfcofbXd0UzYqn5sLyypyeFfy… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDwsAoJGxdBPRrilKiBTMXuwDU3lKan2zM8K6UmVrkrDcJxahbDVzr7i5uBIXXecG+Iwc31YUlP1rXH/jLXr49gIG…
selectors probed - selector1:
Certificate (current)
Encryption Everywhere DV TLS CA - G2
Expires in 162 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' assets.risk.net assets.insurancehound.co.uk assets.waterstechnology.com assets.risklibrary.net assets.centralbanking.com assets.postonline.co.uk assets.incinsight.com assets.insuranceage.co.uk assets.euinsurancetech.com assets.fx-markets.com assets.risktech-forum.com assets.infopro-insight.com assets.chartis-research.com content.jwplatform.com videos-cloudfront-usp.jwpsrv.com securepubads.g.doubleclick.net blob: cdn.jwplayer.com jwplayer.com assets.1lod.com assets.energyrisk.com assets.insuranceawards.com cdn.thisishomeland.com integration.hotelmap.com; connect-src *; font-src 'self' data: fonts.gstatic.com cdnjs.cloudflare.com cdn.jsdelivr.net assets.risk.net assets.insurancehound.co.uk assets.waterstechnology.com assets.risklibrary.net assets.centralbanking.com assets.postonline.co.uk assets.incinsight.com assets.insuranceage.co.uk assets.euinsurancetech.com assets.fx-markets.com assets.risktech-forum.com assets.infopro-insight.com assets.chartis-re