bastion.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Registration
- Registrar
- NameCheap, Inc.
- Created
- 1995-11-27
- Expires
- 2034-11-26 3112 days left
- Updated
- 2024-12-01
- Name servers
-
- raegan.ns.cloudflare.com
- yisroel.ns.cloudflare.com
DNS records live
- NS
-
- raegan.ns.cloudflare.com
- yisroel.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 19 TXT records
slack-domain-verification=c3DguY57DWQTYo3FMD6QR9zqBtBMnxA679NfbTrkcursor-domain-verification-1q2y5s=TdsVPv1He9tbY3Tx2rdJLIXqbanthropic-domain-verification-vhjset=GmUNQL8iV1HN0EFq2aEqzgGfm1password-site-verification=2BMMAN5GPBDJBNVY2NLZBVDLGAlinear-domain-verification=k96rx7ybh74rstripe-verification=856380586877ede1bbe76bf1a81abdecbff41809d18c6123a7cc45fc4ae87261jamf-site-verification=lAyJXFJV6wlTe8FfWEplFwstripe-verification=6CC18DFCCFE27929DD9B8D5F6AF60A96076B21E257BE6A249B621D9FE9A52436google-site-verification=b-XGUtqoiMx3fDuKYt7dJbTcIHxQOPTtK7REHZvtXmw00266638box-domain-verification=1dbef42a9b17a812f400200df429d9cd40fc5b73f4687b7958e8d23c7c3fdbf6zapier-domain-verification-challenge=758693de-a53f-4bcb-bffc-ed3caf80a509hubspot-domain-verification=YjVkMzhiN2YtMjJmYi00OGI3LTkwMzQtMGNmMzVhMDRkNWE0MS=ms77539110openai-domain-verification=dv-SxFr5xu6DpT0iheD9zQhwPv4fireflies-verification=01KFQ9Y7QGVDX0KD68MSQER32G.ffverify.fireflies.ai-request-verification=2026-01-24T06:09:24Zapple-domain-verification=447cwbACuytVAbbGgoogle-site-verification=EpsU34KNz1O0EHX6SM4iL8qgAQ9TnUaKR00k3c6881wnotion-domain-verification=0ICDcHBpcHI1UqAo9sTJi174EUXcBd5BxEVfqCWKuZ
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:43794141.spf08.hubspotemail.net ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=quarantine;rua=mailto:a707a6af66@rua.easydmarc.us;ruf=mailto:a707a6af66@ruf.easydmarc.us;fo=1;policy: quarantine - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhaYaIIikCYCUK/uCHZQgTJ/cdRmgGOAiNb+atw3BokxNB0av4SWU1rLP4UUJR1RFq0GXAqF5VMNFbH…
selectors probed - google:
Certificate (current)
WE1
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://consentcdn.cookiebot.com https://consent.cookiebot.com https://vercel.live https://*.googletagmanager.com https://js.hs-scripts.com https://js.hs-banner.com https://js.hscollectedforms.net https://js.hs-analytics.net https://track.hubspot.com https://static.hotjar.com https://app.cal.com https://s3-us-west-2.amazonaws.com/b2bjsstore/b/0NW1GH7VZ7O4/0NW1GH7VZ7O4.js.gz https://jobs.ashbyhq.com https://hooks.zapier.com https://script.hotjar.com https://b-code.liadm.com https://js.hsforms.net; connect-src 'self' https://consentcdn.cookiebot.com https://forms.hscollectedforms.net https://pro.ip-api.com https://alocdn.com https://a.usbrowserspeed.com https://vc.hotjar.io wss://ws.hotjar.com https://content.hotjar.io https://hooks.zapier.com https://idx.liadm.com https://rp.liadm.com https://metrics.hotjar.io https://brdhybro.api.sanity.io https://*.api.sanity.io https://*.google-analytics.com https://*.analytics.google.com https://- strict-transport-security
max-age=63072000