barona.com
HTML metadata
Technology
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- cdn.jsdelivr.net×2
- www.google.com×2
- fonts.googleapis.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- st San Diego Resort and Casino1932
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1996-08-18
- Expires
- 2027-08-17 454 days left
- Updated
- 2026-03-17
- Name servers
-
- ns65.worldnic.com
- ns66.worldnic.com
DNS records live
- NS
-
- ns65.worldnic.com
- ns66.worldnic.com
- MX
-
- 10 mx-01-us-west-2.prod.hydra.sophos.com
- 20 mx-02-us-west-2.prod.hydra.sophos.com
- TXT
-
Show 13 TXT records
google-site-verification=uxg5E2huRxHQr1__FqaPCnpbVBsohmMKhb5V4GIgCQcapple-domain-verification=7XGNZMwUbjX8QrLZgoogle-site-verification=qrei34lrOGcn6Fe_C9gi67X02AvLOJ38MnO5Gfm9OzYMS=A965F757A8C5674D4AE49DFA057005994056A45C644zs3cj49p6cps1qbllw5q6wsm7g0922cmq0pbqrwwzv0s4zc2hkjzxk1kgqz10kjc9ng375l8rtd1gtk0td83cg2zvp04c_globalsign-domain-verification=tOhsJdtSjuV6rEo8m3V0zTdQPBxWqlL67nKIuUD1vK28r42uh9rsp08hbjvrk6m079dd_6dffdse2gx5yhb1ws3s3655iefwhi008wmtm1kqswtfqpg8c4rfrmpf8qrw7v7rsophos-domain-verification=c7b42ed73e03d6b77129607f089d9b578155a147moUanKKHv/hzHJd1AkpsBrBYwW7jUgA503bbxTVwD92R
Email authentication partial
- SPF
-
v=spf1 +a +mx ip4:209.242.173.2 ip4:209.242.173.17 include:emailchecks.net include:_spf_uswest2.prod.hydra.sophos.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; fo=1; rua=mailto:abuse@barona.com;ruf=mailto:postmaster@barona.compolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 164 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), midi=(), sync-xhr=(self), microphone=(), camera=(), magnetometer=(), gyroscope=(), fullscreen=(self), payment=(self "https://js.stripe.com")- x-content-type-options
nosniff- content-security-policy
default-src * 'unsafe-inline' data: blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: https:; style-src * 'unsafe-inline' data:; img-src * data: blob:; connect-src * data: blob:; font-src * data:; frame-ancestors *; object-src *; base-uri *; form-action *;- strict-transport-security
max-age=63072000; includeSubDomains; preload