a16zcrypto.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- AmazonS3
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- eabcc4bf3667.edge.sdk.awswaf.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2018-05-22
- Expires
- 2027-05-22 366 days left
- Updated
- 2022-06-30
- Name servers
-
- ha1.markmonitor.zone
- ha2.markmonitor.zone
- ha3.markmonitor.zone
- ha4.markmonitor.zone
DNS records live
- NS
-
- ha1.markmonitor.zone
- ha2.markmonitor.zone
- ha3.markmonitor.zone
- ha4.markmonitor.zone
- MX
-
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 30 alt2.aspmx.l.google.com
- 40 aspmx2.googlemail.com
- 50 aspmx3.googlemail.com
- TXT
-
TAILSCALE-pl91IOJFIclFjBKRr0hv
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:21zezn4c@ag.us.dmarcian.com;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA7ggdZZg8muFJIILYFyKWV2bF2kzapacO24oLnf6ms3C9GA5Sp6oma3XpDUVZr+VjP6qAxEQkak68F7…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M01
Expires in 150 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'none'; font-src 'self' data:; img-src * data:; script-src 'unsafe-inline' 'unsafe-eval' 'self' blob: cdnjs.cloudflare.com *.parsely.com www.google-analytics.com www.googletagmanager.com *.hs-scripts.com *.hs-analytics.net *.hs-banner.com *.hscollectedforms.net *.hubspot.com info.a16z.com platform.twitter.com js.hsforms.net *.awswaf.com; style-src 'unsafe-inline' 'self' a16zcrypto.com; connect-src * *.awswaf.com; frame-src *; worker-src 'self' blob: *.awswaf.com; media-src d2hguprl3w2sje.cloudfront.net; script-src-attr 'unsafe-inline' 'unsafe-eval';- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (7)
- a16z.com×3
- github.com×3
- instagram.com×3
- linkedin.com×3
- twitter.com×3
- warpcast.com×3
- youtube.com×3