alisweb.org
HTML metadata
Technology
- Server
- III
Registration
- Registrar
- Cloudflare, Inc.
- Created
- 1998-01-14
- Expires
- 2027-01-13 223 days left
- Updated
- 2025-12-19
- Name servers
-
- guy.ns.cloudflare.com
- priscilla.ns.cloudflare.com
DNS records live
- NS
-
- guy.ns.cloudflare.com
- priscilla.ns.cloudflare.com
- MX
-
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 30 alt2.aspmx.l.google.com
- 40 aspmx2.googlemail.com
- 50 aspmx3.googlemail.com
- TXT
-
f322rf94uf3pudmbm08pj97n5a
- Verified for
-
Email authentication weak
- SPF
-
v=spf1 a mx ip4:216.17.113.155 ip4:206.15.51.5/32 include:_spf.google.com include:email.freshdesk.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 37 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self' alisweb.org; script-src 'unsafe-inline' 'unsafe-eval' 'self' https://google.com https://*.google.com https://maps.googleapis.com https://ebscohost.com https://*.ebscohost.com https://cdn.appdynamics.com https://prototypejs.org https://o.aolcdn.com https://s7.addthis.com https://www.gstatic.com ; connect-src 'self' https://col.eum-appdynamics.com ; upgrade-insecure-requests; block-all-mixed-content; style-src 'unsafe-inline' https:; img-src https: blob: data:; media-src https: blob: data:; font-src https: data:; object-src 'none';, frame-ancestors 'self' alis-enc.iii.com alis-encore.iii.com encore.alisweb.org;