blocksurety.net
HTML metadata
Technology
- Server
- Apache
- CMS
- Next.js
- Fonts
-
- Google Fonts
Third-party hosts loaded (1)
- fonts.googleapis.com×2
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2024-07-18
- Expires
- 2026-07-18 59 days left
- Updated
- 2025-07-18
- Name servers
-
- ns07.domaincontrol.com
- ns08.domaincontrol.com
DNS records live
- NS
-
- ns07.domaincontrol.com
- ns08.domaincontrol.com
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 84 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- findings
-
- missing HSTS
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin, origin-when-cross-origin- x-frame-options
DENY, SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self';connect-src 'self' *.blocksurety.net blocksurety.net https://blocksurety.net wss://blocksurety.net https://main.blocksurety.net:484/ https://infragrid.v.network raw.githubusercontent.com api.github.com coinzilla.com *.coinzilla.com https://request-global.czilladx.com servedbyadbutler.com *.slise.xyz app.specify.sh fonts.gstatic.com https://www.google.com/recaptcha/api2/clr https://delegated-ipfs.dev https://trustless-gateway.link *.web3modal.com *.web3modal.org *.walletconnect.com *.walletconnect.org wss://relay.walletconnect.com wss://relay.walletconnect.org wss://www.walletlink.org;script-src 'self' *.blocksurety.net blocksurety.net 'sha256-yYJq8IP5/WhJj6zxyTmujEqBFs/MufRufp2QKJFU76M=' 'sha256-5+YTmTcBwCYdJ8Jetbr6kyjGp0Ry/H7ptpoun6CrSwQ=' coinzillatag.com servedbyadbutler.com 'sha256-wMOeDjJaOTjCfNjluteV+tSqHW547T89sgxd8W6tQJM=' 'sha256-47DEQpj8HBSa+/TImW+5JCeuQeRkm5NMpJWZG3hSuFU=' *.slise.xyz static.cloudflareinsights.com https://www.google.com/recaptcha/api.js h- cross-origin-opener-policy
same-origin