bold.co
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- CloudFront
Social
Contact
DNS records live
- NS
-
- ns-1094.awsdns-08.org
- ns-1758.awsdns-27.co.uk
- ns-346.awsdns-43.com
- ns-873.awsdns-45.net
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 32 TXT records
google-site-verification=8nzF0tOGyMjGfhjbwYRReOSHuZoRCDwvawXp-MsROJQstytch_verification_dns=piquant-replace-8823amazonses:hl0Nf4sOqXurlbDt7o0u5ZoQfJCt16b6/tp8aVCLj1Q=amazonses:MfI1XYT1zyeHEmiJYvbUb+ItKJwt5WU8YgrnXNxssT4=amazonses:6Zg28mzgSlY0u9dIdSssheuiRysb9yT23YHYQESO0pA=facebook-domain-verification=ey02eym13xsys59qio3ydxfckw39ofamazonses:DSryOzMRU5X0KqnLBj/tukZS18ZmE7Rz1gn1O4Eh/to=asv=eba9c444c46cd8ecba5b5051bb517cf1amazonses:ao1bEUhQaEWN22XTcSGvkHLnfDlAX2LthJ3lMAypcVE=amazonses:PIha46U7ou64yNKOb0cLs+BybsSKl+ZpYrxUscJZxb8=amazonses:20IhYinP2UdX7p8b1IBDq5HGHuFFQmETd7sMl0n6J28=atlassian-sending-domain-verification=18f59730-60e8-4e71-b0ea-c939adfc88a7hj=1796744-09052023h1-domain-verification=6BAur18M57zLpHGKisgQV5CwdRT2RnecoL7JyNF8HAb1ANb8amazonses:LFsWbBxgY6WaYxoyLfgY1jnn3dRG1ZMAgZB+5VHCiuU=amazonses:9VcWGnALb+iPUkzA8h/3rf10h6Wx1cVbttXPp5pPQsA=apple-domain-verification=BT0DoPU1SQVLsRMPshopify-verification-code=43ib4n2vjPADkTTu70UuyuKFzG48j4amazonses:wJQp9LXD3Gjr8dx4MMwh1dfAvu8Q61S4uw3nMfAJ4ak=amazonses:TXCkR0fRa2cAwyJnvKc/Eijz96IiYcIa8HJQI5Earzc=MS=ms22826963amazonses:lkgFHzV0cXldUczMOZxknt3sVyuJTMVvEZCzhc3rbrk=amazonses:RJPbDLz6XRnKESXnV7Hzo0jO3/eDTt45KRo6pDdu0g4=anthropic-domain-verification-ghrwyf=CwXQ2BeA6CI0sjQSaG7Ai8nA9amazonses:vdx6PyHMWlV881doBK0GNmEMfd0ijPd925F5iauxXho=amazonses:LEQ+SJcUJbqRaZ+4LBvbum2Th/JCKgHQncAXh3RxKl4=amazonses:S76XAXU+sD/2ReeFwKxy4fqx9V9J1L2XL8AMU6VL8cw=446613ee6797464b557dac3603a700ae.bold.comailerlite-domain-verification=21e81fc0f8185d44b858ceb50f4eccb241301fd2amazonses:c/LUUmwS9bWS0I58hODXO8R9iewBLj3N/EwDdVmJCLY=amazonses:fYUuVpNSEH7r8pRiVm9nnx/MALrATkoc8ZEDQ6y3fDw=atlassian-domain-verification=gdE4/N9SeFfFIUKXKeCz7PF6zij2CtQMEl3Rk7xRrSmkb16SmuQifKKV6UDq4Hyfamazonses:Nd+9hsCOxA5b416OkVvYiRLi7sdEM1zU9tRgN0MrDaI=
Email authentication strong
- SPF
-
v=spf1 include:amazonses.com include:_spf.google.com include:_spf.mlsend.com include:sendgrid.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@bold.co; ruf=mailto:dmarc@bold.copolicy: quarantine - DKIM
-
Show 5 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCjlQ85Z/ZYjy8DeR/XexINBhc1smySutbMAbw2nFuQGosfiOyG7LteT50abvIC2Osx1jnwEiewT4FJd0qt4N… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwiUvKaQMDfpijMeM90yOhp0tGH6IE5qXeexN/p3TLkdWdNKkHWtM3AJJiCqimWzl9cOd7eAsjtqQcqYPze… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC9z8EAGgrtjfjK7jkE+ohKMbwoN5UrIeqM+dDue/i9/qiR/dk/vSCUiqgHlU0pPBHheo/XbSHXoAYacuEqyA+l8c… - smtpapi:
k=rsa;t=s;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76yo…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M04
Expires in 247 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' ; script-src 'self' *.bluemscdn.net 'unsafe-inline' 'unsafe-eval' blob: https://*.segment.com https://*.boost.ai https://*.hotjar.com https://connect.facebook.net https://www.googletagmanager.com https://www.google-analytics.com https://*.visualwebsiteoptimizer.com https://www.google.com https://*.gstatic.com https://*.appboycdn.com https://*.doubleclick.net https://*.northbeam.io https://*.appsflyer.com https://*.tiktok.com https://*.segmentstream.com https://maps.googleapis.com https://*.iesnare.com https://*.typeform.com https://*.rudderlabs.com https://cdn.jsdelivr.net *.bluems.com/ https://*.getblue.io/ https://www.googletagmanager.com ; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://*.typeform.com *.bluemscdn.net/ https://www.googletagmanager.com;img-src 'self' data: https: https://*.typeform.com https://www.googletagmanager.com *.getblue.io; font-src 'self' data: https:; connect-src 'self' data: wss://*.boost.ai *.appsflyersdk.com *.blue- strict-transport-security
max-age=31536000; includeSubDomains; preload