boatus.com
HTML metadata
Technology
- Server
- volt-adc
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Key-Systems GmbH
- Created
- 1995-06-01
- Expires
- 2027-05-31 377 days left
- Updated
- 2026-04-29
- Name servers
-
- cbru.br.ns.els-gms.att.net
- cmtu.mt.ns.els-gms.att.net
DNS records live
- NS
-
- cbru.br.ns.els-gms.att.net
- cmtu.mt.ns.els-gms.att.net
- MX
-
- 15 mxa-00306701.gslb.pphosted.com
- 15 mxb-00306701.gslb.pphosted.com
- TXT
-
Show 10 TXT records
globalsign-domain-verification=F5FD7BABB407C8B7A9D4591D1C71AD26google-site-verification=E5DoWfzkKYIoYzEDL0CjcOCn3kEbJesLoAX_wafFOg0globalsign-domain-verification=0B906008E179483A8202DE9A5CB007F1zscaler-verification-941050-16122025-766hYpphfvaws-domain-controls-verification=a3556907-2948-4691-b7ea-b4006c207996MS=E20E357135EE843C98EC7700C0599E641BF488AEMS=ms87825653prod-boatus-cd.azurewebsites.netknowbe4-site-verification=4b983413f58c41b00e1876d3387619b9MS=ms37025819
Email authentication strong
- SPF
-
v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com include:helpscoutemail.com include:aspmx.pardot.com include:mail.zendesk.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com;policy: reject (enforced) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoAVO6Ux4I/Ic0nBnpV7gAZ70LkHKXNTjgtq/RW4olVsnn3n6RSZqQIyze8IcsNf4T96fbo16slB1X0NtkP… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCxeNI6N5nqfW+p6ldo5QN6YQ1Kss54nBp2AD0+7WcQ/tsw47fj5fdixT/olsN4ZA+lGx0fTqyhJ1zOyXEiiv1mD8…
selectors probed - s1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 167 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
no-referrer-when-downgrade- permissions-policy
accelerometer=(), camera=(), gyroscope=(), microphone=(), usb=()- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' ; default-src 'self' 'unsafe-eval' 'unsafe-inline' blob: data: *.amazonaws.com *.adobedtm.com *.bazaarvoice.com *.geico.com *.boatus.com *.cloud.geico.net *.google.com *.googleapis.com *.gstatic.com *.omtrdc.net *.optimizely.com *.qualaroo.com *.ringcentral.com *.youtube.com https://*.amazon-adsystem.com https://*.bing.com https://*.branch.io https://*.ceros.com https://*.clarity.ms https://*.cloudflare.com https://*.cookielaw.org https://capig.datah04.com https://boatus.pxf.io https://*.demdex.net https://*.doubleclick.net https://*.evergage.com https://*.facebook.com https://*.force.com https://*.google-analytics.com https://*.instagram.com https://*.onetrust.com https://*.qualtrics.com- strict-transport-security
max-age=63072000; includeSubDomains; preload