biohorizons.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Social widgets
-
- Vimeo Embed
- YouTube Embed
Third-party hosts loaded (5)
- player.vimeo.com×2
- dk98ddgl0znzm.cloudfront.net×1
- www.google.com×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Contact
- Phone
- Address
- Global Headquarters2300 Riverchase CenterBirmingham, AL 35244USA
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1995-09-28
- Expires
- 2026-09-27 131 days left
- Updated
- 2024-09-27
- Name servers
-
- a1-25.akam.net
- a10-67.akam.net
- a24-66.akam.net
- a26-67.akam.net
- a3-66.akam.net
- a5-65.akam.net
DNS records live
- NS
-
- a1-25.akam.net
- a10-67.akam.net
- a24-66.akam.net
- a26-67.akam.net
- a3-66.akam.net
- a5-65.akam.net
- MX
-
- 0 d139997a.ess.barracudanetworks.com
- 1 d139997b.ess.barracudanetworks.com
- TXT
-
Show 7 TXT records
ZOOM_verify_Nk17HXldxM17Nk5JDOT3oOanthropic-domain-verification-78hpr0=ZLx3iRWNf7KSNDHUA6EF2DpYgd365mktkey=4MpJM6JCkOrZ21xSwviuQtsDQBOxccExzzUyp9WAonkx+fVxjEppZLSueb2XZOlJqJ3WAjLjJyFm/VUwTj9JjIff518K9ib+9OwKp9oW0sst+wztfM+FrUkVIWJAKw2AdQ==MS=1E06F598729991D3FC513B0B7BA80AAAF68B03C8apple-domain-verification=TdQvCGFquTjr2tuRd365mktkey=w5xQMmFsxZVocC3xofZ5dPxHV6kglJvaPFHdoc74oh8x
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:sendgrid.net include:spf.ess.barracudanetworks.com include:_spf.salesforce.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; fo=1; rua=mailto:postmaster@biohorizons.com,mailto:rua+biohorizons.com@dmarc.barracudanetworks.com; ruf=mailto:ruf+biohorizons.com@dmarc.barracudanetworks.compolicy: quarantine - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCEYqgwMjtkcjstSzzVkd90ExKgzHM7kFvpZf+uzQcNxdAoyUfIFgWjkZFEpLjPTwScm34/YiplxzLaXxwYiq… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCmGeCnrL5MEDSGpqKXW68U+MooJ6SpfsKhXmf/uCCXnY3kyOn6HgXOEQMGa6VhqRyA298vBH1uipMwBRIrVa…
selectors probed - google:
Certificates
Loading certificate
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAME-ORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'unsafe-inline' 'unsafe-eval' 'self' https://ep2.adtrafficquality.google https://ep2.adtrafficquality https://partner.googleadservices.com https://cse.google.com https://cxppusa1formui01cdnsa01-endpoint.azureedge.net http://dk98ddgl0znzm.cloudfront.net http://emma-content-aggregates-prd.s3.amazonaws.com https://f.vimeocdn.com https://player.vimeo.com https://www.googletagmanager.com https://dk98ddgl0znzm.cloudfront.net https://emma-content-aggregates-prd.s3.amazonaws.com https://www.google-analytics.com https://www.google.com https://www.gstatic.com https://dk98ddgl0znzm.cloudfront.net https://emma-content-aggregates-prd.s3.amazonaws.com https://www.google-analytics.com https://www.google.com https://www.gstatic.com https://dk98ddgl0znzm.cloudfront.net; style-src 'unsafe-inline' 'self' https://www.google.com https://fonts.googleapis.com https://dk98ddgl0znzm.cloudfront.net; object-src 'none'; base-uri 'self'; connect-src 'self' https://ep1.adtrafficqualit- strict-transport-security
max-age=31536000- content-security-policy-report-only
base-uri 'self'; block-all-mixed-content; default-src 'self'; form-action 'self'; frame-ancestors 'self'; plugin-types 'none'; script-src 'self' 'report-sample' 'unsafe-inline'; style-src 'self' 'report-sample' 'unsafe-inline'; object-src 'none'; worker-src 'none'; report-uri https://prod.ap.batic.cudasvc.com/xenios/api/v1/error/report??paid=151&spid=26912&v=v1.0&payload=FSAHmqSHa6wuUd0r-QkGsQbnInCrsPZHNsKp9EHURP1snHhfaubNCu_vgQ7ptu-61dxa3MDPRd-WsRB5YImmARf0Zky0vdo4xp9XUvVggSYA-7a52XP45_VzCbhXpEPSYeEzzZahzUPB4XsjkPSpsX5stdvN3PWRiI3E3VBvFM4=;