apligraf.com
HTML metadata
Technology
- Server
- nginx
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 1997-05-22
- Expires
- 2028-05-23 734 days left
- Updated
- 2026-04-21
- Name servers
-
- a1-254.akam.net
- a2-66.akam.net
- a24-65.akam.net
- a28-67.akam.net
- a7-64.akam.net
- a9-65.akam.net
- dns1.novartis.com
- dns2.novartis.com
- dns3.novartis.com
- dns4.novartis.com
DNS records live
- NS
-
- a1-254.akam.net
- a2-66.akam.net
- a24-65.akam.net
- a28-67.akam.net
- a7-64.akam.net
- a9-65.akam.net
- dns1.novartis.com
- dns2.novartis.com
- dns3.novartis.com
- dns4.novartis.com
- TXT
-
google-site-verification=VD_roJgIawh8GQwfWeGcpKCi_eLpFzGGTvWSds9Ujug_ot6l9phyn32vxugx79j8cqbfwtmlj7z
Email authentication no MX
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.compolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 294 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' *.googletagmanager.com *.google-analytics.com *.googletagservices.com js.hs-scripts.com js.hs-analytics.net js.hs-banner.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline' *.googleapis.com *.googletagmanager.com; img-src 'self' data: *.google-analytics.com *.googletagmanager.com *.gstatic.com www.google.com organogenesis-all-media-files.s3.us-west-2.amazonaws.com track.hubspot.com; font-src 'self' *.gstatic.com data:; connect-src 'self' *.organogenesis.com *.organogenesis.dev *.google-analytics.com *.googletagmanager.com stats.g.doubleclick.net organogenesis-all-media-files.s3.us-west-2.amazonaws.com; media-src 'self' organogenesis-all-media-files.s3.us-west-2.amazonaws.com; frame-src 'self' lookerstudio.google.com www.google.com; object-src 'none'; base-uri 'self'; form-action 'self'; frame-ancestors 'self';