alphasights.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- jQuery
- 3.7.1
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
- Hotjar
- Ads
-
- Google Ads (DoubleClick)
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (13)
- use.typekit.net×2
- www.googletagmanager.com×2
- cdn-cookieyes.com×1
- googleads.g.doubleclick.net×1
- js-na1.hs-scripts.com×1
- js.hs-analytics.net×1
- js.hs-banner.com×1
- js.hsadspixel.net×1
- js.hubspot.com×1
- script.hotjar.com×1
- static.cloudflareinsights.com×1
- static.hotjar.com×1
- widget.trustpilot.com×1
Social
Registration
- Registrar
- Cloudflare, Inc.
- Created
- 2008-03-21
- Expires
- 2027-03-21 289 days left
- Updated
- 2026-04-10
- Name servers
-
- ed.ns.cloudflare.com
- leah.ns.cloudflare.com
DNS records live
- NS
-
- ed.ns.cloudflare.com
- leah.ns.cloudflare.com
- MX
-
- 1 mxa-009ed501.gslb.pphosted.com
- 1 mxb-009ed501.gslb.pphosted.com
- 32767 ms85926504.msv1.invalid
- TXT
-
Show 6 TXT records
zywave-domain-verification=V14bUoX6klcfdnU8ajLegnY09rxfKDauTsi3xV+nznE=jamf-site-verification=KoUDj_claDSfsGNDwGBYbg_ru2ked2n00wo0qjf7h4smd97bzmineuttqt48q20vv58jm33lw9y7240xypfgbcIDQCWVKABamazonses:pfrmZtWSlBxasJFy4jR213MBNCscd7pFF0ZqOPMNmCI=
- Verified for
-
- Anthropic
- Apple
- Atlassian
- Cursor
- Figma
- Meta
- Microsoft 365
- OpenAI
- Zapier
- Zoom
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.google.com a:sympmail.symplicity.com include:amazonses.com include:servers.mcsv.net ip4:50.31.54.133 ip4:168.245.12.66 include:mg-spf.greenhouse.io ip4:67.225.202.247 include:myisolved.com include:14540808.spf08.hubspotemail.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; aspf=r; rua=mailto:dmarc@alphasights.com; pct=100; ruf=mailto:znbmecu9@fr.dmarcian.compolicy: reject (enforced) - DKIM
-
Show 6 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC25hmpVhPGXVPpbtk05rH/ibaZNOQcMiNPjIzVdeBB7hUD03drRDvK5s7u5bkKrLLEZuQOG3HMmN0eut3wNx… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApU0i1ocN+lW+R+C8WskP4a/SJxHbuSw3yH0HwI0Pfdqf2yYWUEOa9Q0cwhnLhaXU36lYmBfW1CVfQv… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuukrmDTBqmODZUXVTGy2Hi3yI7ir36QSPkAQ4NpkvEV9A66/HlTMBs8cetvnjfmgpJ/0UpTs58m9ULB5x5… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDca4L62S9p0OneDZCQB6JP6o/LID9y89mW3m20Ss7DJWS2FFsPLQFdLthTC20yji+I5Ltlt1CQoYibdOjdvt1OmF… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
WE1
Expires in 74 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'self'; upgrade-insecure-requests; img-src 'self' data: https:; font-src 'self' data: https://use.typekit.net https://p.typekit.net https://fonts.gstatic.com; style-src 'self' 'unsafe-inline' https://use.typekit.net https://p.typekit.net https://fonts.googleapis.com https://www.googletagmanager.com; script-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://www.google-analytics.com https://region1.google-analytics.com https://googleads.g.doubleclick.net https://js.hs-analytics.net https://js-na1.hs-scripts.com https://js.hubspot.com https://js.hs-banner.com https://js.hsadspixel.net https://static.hsappstatic.net https://track.hubspot.com https://widget.trustpilot.com https://static.cloudflareinsights.com https://cdn-cookieyes.com https://log.cookieyes.com https://*.hotjar.com https://analytics.ahrefs.com; connect-src 'self' https://www.google-analytics.com https://region1.google-analytics.com https- strict-transport-security
max-age=7776000; includeSubDomains; preload