apptio.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- cdn.shortpixel.ai×1
- dev.visualwebsiteoptimizer.com×1
- gmpg.org×1
- www.googletagmanager.com×1
- www.ibm.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2007-09-25
- Expires
- 2033-09-25 2684 days left
- Updated
- 2024-09-19
- Name servers
-
- ns-1437.awsdns-51.org
- ns-2004.awsdns-58.co.uk
- ns-381.awsdns-47.com
- ns-739.awsdns-28.net
DNS records live
- NS
-
- ns-1437.awsdns-51.org
- ns-2004.awsdns-58.co.uk
- ns-381.awsdns-47.com
- ns-739.awsdns-28.net
- MX
-
- 0 apptio-com.mail.protection.outlook.com
- TXT
-
Show 9 TXT records
rzch4mn9vcbdlqc053zn6r6bh67cj2vy9fk2am1h97gstevb1iogi2gihnibmid=5f5e3869-55df-46f5-9699-713d5e58cb46zrrf6fpnzn0yb7gk26gh5c22ldzb6l4ydocker-verification=fa21840e-bc20-4d89-8134-24be9648b8f0atlassian-sending-domain-verification=8e53153d-b78d-4c46-9960-0d30a3cbbe52HCmbgjBCygGnaongeJluuu3cT90Q3C4T9Y7rSdrOBqSxrtIQGsNVWFi4Xuh54pU4tRixqRcxmSOBNS51Jc8UEw==status-page-domain-verification=qk75n24ywrg32z46bvq34vgtx8m1mq4h8pdfx5wr1mcv
- Verified for
-
- Apple
- Atlassian
- DocuSign
- Microsoft 365
- Miro
Email authentication strong
- SPF
-
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:spf.protection.outlook.com include:spf1.apptio.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc_agg@vali.email,mailto:rua@emaildefense.proofpoint.com; ruf=mailto:ruf@emaildefense.proofpoint.compolicy: quarantine - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArspJbh230DlxjWd5CxsYSIHioxE3EPkOeDl+bUNBCP966W5w3ARNXxmK07m9vqgpSrRZapPPxxu8Un… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2H47uB/7c5kOMYzyn7mdcxZr8cRECS+mjYSGp4k/jcDvna3n2/z0fdwSvSM8ur55ktRsbKrOu/7HzS… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4/b2znP3RijJbayX0LZ9pjc7kx89PMsBzDRE+znWZmvwNGgnPG0H97E231eljI6b1qD4T637C6ay3ord77… - smtpapi:
v=DKIM1; k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprz…
selectors probed - selector1:
Certificate (current)
R12
Expires in 40 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests; default-src https://*.apptio.com 'self'; script-src 'self' https://*.apptio.com https://cdn-app.pathfactory.com/ https://app.cdn.lookbookhq.com/production/jukebox/current/jukebox.js https://web.cvent.com https://www.cvent-assets.com https://bat.bing.com https://cdn.cookielaw.org https://cdnjs.cloudflare.com https://connect.facebook.net https://*.cloudfront.net/fullcircle.js https://dev.visualwebsiteoptimizer.com https://*.wistia.com https://*.wistia.net https://www.trustradius.com https://googleads.g.doubleclick.net https://*.clarity.ms https://js.driftt.com https://munchkin.marketo.net https://script.hotjar.com https://snap.licdn.com/li.lms-analytics/insight.min.js https://static.hotjar.com https://tag.demandbase.com https://tracking.intentsify.io https://www.gartner.com/reviews/public/Widget/js/widget.js https://www.google-analytics.com https://www.googleadservices.com/pagead/conversion_async.js https://www.googleoptimize.com/optimize.js https://www.googlet- strict-transport-security
max-age=31622400; includeSubDomains; preload