airmic.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- cdn.jsdelivr.net×3
- addevent.com×1
- maxcdn.bootstrapcdn.com×1
- www.googletagmanager.com×1
- www.w3.org×1
Registration
- Registrar
- NameCheap, Inc.
- Created
- 1999-09-30
- Expires
- 2032-05-23 2196 days left
- Updated
- 2022-05-23
- Name servers
-
- ns0.dnsmadeeasy.com
- ns1.dnsmadeeasy.com
- ns2.dnsmadeeasy.com
- ns3.dnsmadeeasy.com
DNS records live
- NS
-
- ns0.dnsmadeeasy.com
- ns1.dnsmadeeasy.com
- ns2.dnsmadeeasy.com
- ns3.dnsmadeeasy.com
- ns4.dnsmadeeasy.com
- MX
-
- 0 airmic-com.mail.protection.outlook.com
- 50 airmic-com.mail.protection.outlook.com
- TXT
-
nps0phdl7gb93bml82vnvsrm2gt4gvlqgoogle-site-verification=I890gvRsuK3jUarokblJ4kESoc69xJNRrMdoonAKiKEbw=lmD4B4Y0XEllBqB5JH6ykeq1k46iOZXZjUD4vycQKtNy
Email authentication partial
- SPF
-
v=spf1 mx ip4:35.176.197.43/32 include:spf.protection.outlook.com include:_spf.alchemer.eu ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:report@airmic.com; ruf=mailto:report@airmic.com; fo=1policy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCmHqMJSYX3hde0iIia1bWWUJ94SYasJFlsmbjy+EXEQ3d8vmStNiK2bQSxBFNhxbaDmnpaQa3+9L8Y4i3Am+Iss5wrn… - selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCwbyfBq3RotyvL7gGqdp/+jvVQCpnYyr5xYtB66FFyAdL2vb7kh18OvuUaEwZc5r3k+zfl9RbYb5WVxnMB6s… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtdLMXtHN0aeGHgWsXXJ+BCA0tENAFhEem2ugWV08wm45gryD3/+dsx1CKRkLhQQh91AvQdwak7XEsDw1f0… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz78+vLMRfls5iOIwi7zc36fCPNCRQDJjxlVLeUVIj5yyP5jijFOXBqQH6qPAebZ18Wberu/jqOnvONd/De…
selectors probed - default:
Certificate (current)
R10
Expired 450 days ago
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
ALLOW-FROM https://marketplace.marsh.com- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.jsdelivr.net *.google-analytics.com *.googletagmanager.com addevent.com *.addevent.com *.twitter.com browser-update.org *.twimg.com *.bootstrapcdn.com *.googleapis.com *.doubleclick.net *.gstatic.com *.github.io *.cloudflare.com *.youtube.com *.sharethis.com *.consensu.org *.airmic.com *.salesforce.com *.force.com *.soundcloud.com avt-stream.com publuu.com; object-src 'self'; style-src 'self' 'unsafe-inline' *.jsdelivr.net *.google-analytics.com *.googletagmanager.com addevent.com *.addevent.com *.twitter.com browser-update.org *.twimg.com *.bootstrapcdn.com *.googleapis.com *.doubleclick.net *.gstatic.com *.github.io *.cloudflare.com *.youtube.com *.sharethis.com *.consensu.org *.airmic.com *.salesforce.com *.force.com *.soundcloud.com avt-stream.com publuu.com; img-src 'self' 'unsafe-inline' data: *.jsdelivr.net *.google-analytics.com *.googletagmanager.com addevent.com *.addevent.com *.twitter.com browser-update.o- strict-transport-security
max-age=31536000; includeSubDomains, max-age=31536000