alwaysdiscreet.com
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- Next.js
- Analytics
-
- Google Analytics
- Google Tag Manager
- Segment
- Ads
-
- Amazon Ads
- Meta Pixel
- Fonts
-
- Google Fonts
Third-party hosts loaded (20)
- images.ctfassets.net×10
- fonts.gstatic.com×3
- google-analytics.com×2
- quilt-cdn.janrain.com×2
- api.segment.io×1
- cdn.pricespider.com×1
- cdn.segment.com×1
- click2cart.co×1
- cloudfront.net×1
- connect.facebook.net×1
- googletagmanager.com×1
- insight.adsrvr.org×1
- js.adsrvr.org×1
- match.adsrvr.org×1
- pixel.tapad.com×1
- rpxnow.com×1
- s.amazon-adsystem.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
- z.moatads.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2009-10-18
- Expires
- 2026-10-18 152 days left
- Updated
- 2025-10-14
- Name servers
-
- ns1-02.azure-dns.com
- ns2-02.azure-dns.net
- ns3-02.azure-dns.org
- ns4-02.azure-dns.info
DNS records live
- NS
-
- ns1-02.azure-dns.com
- ns2-02.azure-dns.net
- ns3-02.azure-dns.org
- ns4-02.azure-dns.info
- TXT
-
Show 4 TXT records
facebook-domain-verification=po3lzj80pv85jp2p5o0cxt7o23dn7yD113-7367-A238-B5BF-ED68-9453-A793-2B5Bgoogle-site-verification=vnUa46mGUvZLhrnMKWYrUMbrfgPoQTERDyzJemxtQkEalwaysdiscreet-us-en.azurewebsites.net
Email authentication no MX
- SPF
- not published
- DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc_agg@vali.email; ruf=mailto:MTY1NjYy@ruf.vali.email; fo=1; ri=3600policy: quarantine - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvBplI0V7tmDRHnvJXTOhuUo96BwWJtPVIi6E6r0KJmmFAlxctg6JHCPRWnEe1jlh+Zn4+tAcWdNO+TNAmm…
selectors probed - s1:
Certificate (current)
Sectigo Public Server Authentication CA OV R40
Expires in 217 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src https://*.ctfassets.net 'self' blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.googletagmanager.com https://*.google-analytics.com https://tagmanager.google.com https://pghub.io https://*.cookielaw.org https://*.bazaarvoice.com https://*.smartcommerce.co https://*.click2cart.com https://*.algolianet.com https://*.rpxnow.com https://rpxnow.com https://*.segment.com https://*.janrain.com https://*.cloudfront.net https://script.crazyegg.com https://*.facebook.net https://www.facebook.com https://z.moatads.com https://*.adsrvr.org https://pixel.tapad.com https://c.lytics.io https://s.amazon-adsystem.com https://*.pricespider.com https://*.segment.io https://*.click2cart.co https://*.lightboxcdn.com https://*.janraincapture.com https://*.iesnare.com https://*.segmanta.com https://s3.us-west-2.amazonaws.com https://*.google.com/recaptcha/ https://*.google.com https://*.gstatic.com https://cdn.rudderlabs.com https://*.rudderstack.com/; connect-src 'self' * https- strict-transport-security
max-age=15724800
Links to (7)
- always.com×2
- facebook.com×2
- instagram.com×2
- pg.com×2
- pinterest.com×2
- tampax.com×2
- tiktok.com×2