allianztravelinsurance.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (4)
- cdn.cookielaw.org×1
- dev.visualwebsiteoptimizer.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- rd parties. Contact AGA Service Company at 800-284-8300
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2005-09-29
- Expires
- 2026-09-29 130 days left
- Updated
- 2025-09-25
- Name servers
-
- ns-1272.awsdns-31.org
- ns-1766.awsdns-28.co.uk
- ns-952.awsdns-55.net
- ns-97.awsdns-12.com
DNS records live
- NS
-
- ns-1272.awsdns-31.org
- ns-1766.awsdns-28.co.uk
- ns-952.awsdns-55.net
- ns-97.awsdns-12.com
- MX
-
- 10 relay1.netnames.net
- 100 relay2.netnames.net
- TXT
-
_ruq1r6zdkhe61f9eeg8b2dp8wt11w9b_0e3cj3ubqim61wa6klmupqsqhrtwazn
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Amazon RSA 2048 M04
Expires in 56 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
worker-src 'self' blob: *.io *.com *.net *.org; connect-src https://www.allianztravelinsurance.com/Jl4nNXzq0xk0XnYe2g/uOc9LNXVkNmNtGtE/RhRKT3wpKgg/NwUmYQ/F1DwIC 'unsafe-inline' https://azcontent.us 44.238.122.172 100.20.58.101 35.85.84.151 44.228.85.26 34.215.155.61 35.160.46.251 52.71.121.170 18.210.229.244 44.212.189.233 3.212.39.155 52.22.50.55 54.156.2.105 *.io *.com *.net *.org; style-src 'unsafe-inline' *.io *.com *.net *.org; script-src 'nonce-2f126b254c2e5e97307b1d4049b7f15d' applepay.cdn-apple.com 'nonce-ati-scripts' 'unsafe-eval' 'unsafe-hashes'; frame-src 'self' https://www.googletagmanager.com/ https://azeu.demdex.net https://c.sandbox.paypal.com *.visualwebsiteoptimizer.com app.vwo.com apps.joinsherpa.io map.joinsherpa.io www.sandbox.paypal.com www.paypal.com c.paypal.com www.paypalobjects.com checkout.paypal.com www.paypal.com static.sojern.com content-us-9.content-cms.com www.youtube.com widget.trustpilot.com www.google.com www.pages02.net td.doubleclick.net ct.pinteres- strict-transport-security
max-age=15768000 ; includeSubDomains ; preload