actawear.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Shopify
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (7)
- cdn.shopify.com×91
- sdk.postscript.io×1
- shop.app×1
- static.affiliatly.com×1
- static.klaviyo.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Tucows Domains Inc.
- Created
- 2019-02-26
- Expires
- 2027-02-26 282 days left
- Updated
- 2026-04-13
- Name servers
-
- kurt.ns.cloudflare.com
- liv.ns.cloudflare.com
DNS records live
- NS
-
- kurt.ns.cloudflare.com
- liv.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
facebook-domain-verification=nwzp4khufnysw24z3s9on0t8yml7j2google-site-verification=GvIbuck54wInes3kpkpS4NCsMpxy1qRwH_S2XLxi_j4klaviyo-site-verification=XwtAyv
Email authentication partial
- SPF
-
v=spf1 include:_spf.google.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dee2b766758b46cb87ee2bb37d997d9d@dmarc-reports.cloudflare.netpolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 71 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self' localhost:* https://cdn.shopify.com https://www.google.com https://www.gstatic.com https://d3hw6dc1ow8pp2.cloudfront.net https://d3g5hqndtiniji.cloudfront.net https://dov7r31oq5dkj.cloudfront.net https://cdn-static.okendo.io https://surveys.okendo.io https://api.okendo.io https://assets.gorgias.chat data: 'self' 'nonce-1f77472cad146849edabc1017e0c067a' https://cdn.shopify.com https://shopify.com; frame-ancestors 'none'; style-src 'self' 'unsafe-inline' https://cdn.shopify.com https://fonts.googleapis.com https://fonts.gstatic.com https://d3hw6dc1ow8pp2.cloudfront.net https://cdn-static.okendo.io https://surveys.okendo.io https://use.typekit.net/ https://p.typekit.net/ https://static.klaviyo.com/ 'self' 'unsafe-inline' https://cdn.shopify.com; connect-src 'self' https://monorail-edge.shopifysvc.com localhost:* ws://localhost:* ws://127.0.0.1:* https://gorgias-convert.com/ https://api.okendo.io https://cdn-static.okendo.io https://surveys.okendo.io htt- strict-transport-security
max-age=31536000