boxio.at
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Shopify
Third-party hosts loaded (26)
- cdn.shopify.com×21
- boxio.de×8
- boxio.nl×4
- boxio.fr×3
- boxio.es×2
- boxio.it×2
- boxio.uk×2
- shop.app×2
- 1328970971.boxio.de×1
- api.judge.me×1
- app.consentmo.com×1
- backinstock.useamp.com×1
- cdn.codeblackbelt.com×1
- cdn.consentmo.com×1
- cdn.judge.me×1
- cdn1.judge.me×1
- dev.visualwebsiteoptimizer.com×1
- fonts.shopifycdn.com×1
- integrations.etrusted.com×1
- monorail-edge.shopifysvc.com×1
- script.crazyegg.com×1
- static.klaviyo.com×1
- storage.consentmo.com×1
- workers.consentmo.com×1
- www.paypal.com×1
- www.paypalobjects.com×1
Social
Contact
DNS records live
- NS
-
- ns-cloud-a1.googledomains.com
- ns-cloud-a2.googledomains.com
- ns-cloud-a3.googledomains.com
- ns-cloud-a4.googledomains.com
- MX
-
- 1 mx.boxio.at.cust.b.hostedemail.com
Email authentication partial
- SPF
-
v=spf1 include:_spf.hostedemail.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 48 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;- strict-transport-security
max-age=7889238
Links to (13)
- boxio.de×1
- boxio.es×1
- boxio.fr×1
- boxio.it×1
- boxio.nl×1
- boxio.uk×1
- facebook.com×1
- instagram.com×1
- linkedin.com×1
- myboxio.com×1
- pinterest.de×1
- tiktok.com×1
- youtube.com×1
Linked from (5)
- boxio.nl×1
- boxio.it×1
- boxio.es×1
- myboxio.com×1
- boxio.de×1