aurory.io
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Next.js
- Analytics
-
- Google Analytics
- Google Tag Manager
Third-party hosts loaded (2)
- www.google-analytics.com×1
- www.googletagmanager.com×1
Social
Contact
DNS records live
- NS
-
- ns-1469.awsdns-55.org
- ns-1903.awsdns-45.co.uk
- ns-304.awsdns-38.com
- ns-683.awsdns-21.net
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
o5h6PX6FeN1fJZoV-Go0FwOF0d0e197c2f5354f7dda5921ab672c84057492440bce6753f201ac2fc5f9e3f60
- Verified for
-
- Atlassian
- Brevo
- Cursor
- Slack
Email authentication strong
- SPF
-
v=spf1 include:spf.sendinblue.com include:_spf.google.com mx ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:dmarc@aurory.io,mailto:9529a36198@rua.easydmarc.us;ruf=mailto:dmarc@aurory.io,mailto:9529a36198@ruf.easydmarc.us;fo=1;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnEHu/3+eGIzRZpfCNiL5V31l4DPKq9IHLlvWKQ9sVQz1g+qGO9JQ5novSxHkktz1GPvEmH5QmvPVRL… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M04
Expires in 137 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self';script-src 'unsafe-inline' 'report-sample' 'self' https://www.googletagmanager.com;style-src 'unsafe-inline' 'report-sample' 'self' https://fonts.googleapis.com;object-src 'none';base-uri 'self';connect-src 'self' https://*.aurory.io https://www.google-analytics.com;font-src 'self' data: https://fonts.gstatic.com;frame-ancestors https://*.dev.aurory.io/;frame-src 'self' https://www.youtube.com;img-src 'self' data: https://*.aurory.io/ https://www.googletagmanager.com;manifest-src 'self';media-src 'self' https://images.cdn.aurory.io https://assets.cdn.aurory.io;worker-src 'none'- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (5)
- x.com×1
- apple.com×1
- epicgames.com×1
- google.com×1
- twitter.com×1