bnncpa.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- www.googletagmanager.com×2
- dev.visualwebsiteoptimizer.com×1
- gmpg.org×1
- plausible.clearlyrated.com×1
Social
Contact
- Phone
- Address
- st Office Square12th FloorSuite S1210
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1995-09-16
- Expires
- 2030-09-15 1580 days left
- Updated
- 2020-09-16
- Name servers
-
- ns91.worldnic.com
- ns92.worldnic.com
DNS records live
- NS
-
- ns91.worldnic.com
- ns92.worldnic.com
- MX
-
- 10 us-smtp-inbound-1.mimecast.com
- 10 us-smtp-inbound-2.mimecast.com
- TXT
-
Show 10 TXT records
docusign=fd8a8e03-5fbb-457c-a78d-6bd45951c79batlassian-domain-verification=FsVmBxZVrYxn0qlTYB1MLciMFsTbSNtyMyvkfvMaenkjm/vLfrOtx7rYFD75Fpfs16b73dac-c151-477d-ad92-7d6dd864bd70atlassian-domain-verification=cNSalQRFjBntB8PDovjaz43NuKu2Co6B5WPwsUWZIaXkwEpIvliYjcn/uCUUvkqJgoogle-site-verification=xjooC1vA4Dlgz9GdDzf1OaRRYvJMv7ROyPxYnyHh_icamazonses:UMOQH87g7q4G/r02PdsENgQop5bX6fl1B2x5nLoVctg=zapier-domain-verification-challenge=16b73dac-c151-477d-ad92-7d6dd864bd70atlassian-domain-verification=Dc/rqRLT5OBZruUeiF9Hd4qB5VNk8uHTA3VrYJIFAcj2IIvYZr35tImet7LHj1JRsmartsheet-site-validation=_fHi2gr6q2_hFzEZ_sLa1SWhZRga8xB0AoAhRkdfYJLmeA8dGuFiQoUP3/VceTJnH8illYdq8mrMJQw5hhu7ZO1S2sJKXcoUvh7RoysJXPjgSqkpnla4WQ==
Email authentication strong
- SPF
-
v=spf1 include:us._netblocks.mimecast.com include:icprobounce.com ip4:208.105.168.164 ip4:52.1.234.206 ip4:52.70.152.226 ip4:54.165.79.164 ip4:13.68.220.52 include:39957525.spf01.hubspotemail.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; sp=reject; rua=mailto:dmarc_agg@vali.email,mailto:ahart@bnn365dev.com;policy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 39 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self), midi=(), microphone=(), camera=(), magnetometer=(), gyroscope=(), fullscreen=(self), payment=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: about: *;- strict-transport-security
max-age=31536000; includeSubDomains