brightvpn.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2014-12-11
- Expires
- 2027-12-11 570 days left
- Updated
- 2022-10-15
- Name servers
-
- angelina.ns.cloudflare.com
- nitin.ns.cloudflare.com
DNS records live
- NS
-
- angelina.ns.cloudflare.com
- nitin.ns.cloudflare.com
- MX
-
- 10 inbound-smtp.us-east-1.amazonaws.com
- 10 mx.brightvpn.com
- TXT
-
Show 17 TXT records
google-site-verification=sHQOdL54-oVQCeWk5a1W29C_8CYcJ2sl658lxkV3aLUgoogle-site-verification=7KAmZphMAmIgc9hJQwdWdli6pBVgLFOAclkisZJKG0Ugoogle-site-verification=xnSE9CH4ipj-Bw3EshDigrhS2zjIEvHSRBg4UTQAaPwgoogle-site-verification=IvGWt0wdOWJr5cL0BXjVysomPEHd66_Vu5JOd0i1JQwgoogle-site-verification=VndcE0WxHk0kNuXeobTUHnhoYeLPqQRBJ4cHGJaPPEEgoogle-site-verification=hZZ2-aKhDlHlDkedfrhLPWljcAwnlo2wUpVlVbsSFl0google-site-verification=wxobhXk3VXF8DAE-7hWqC0L0MOA9MpJn1J6kCIkrMeggoogle-site-verification=gTf_JNQet6zrHtoDdYFxM2BOn5rCH6Xt9hfXt9Rp9lQgoogle-site-verification=DQW8uC-DHXNMNSCPoqHQUCLxSot3k6TQjGLmFPo5_tsgoogle-site-verification=uHyewDD6-zYB4pB_wffdbjO4HOqtv8BcFY42A7uTLqQgoogle-site-verification=SRox08ztEypjodXc6hFj7PVVmkUHl8VwaLiBsMTOVw0google-site-verification=B6jiMvoHu4S7Ryi2hieAhW4FqBk-gKiVJSvzo3j_8IEmixpanel-site-verification=12742a23-e227-4def-8f62-b896924a2008google-site-verification=RkeqE9CeJbPBITiCSLmKTdwW5W7foHdOttorLTt_VqEmixpanel-site-verification=49ace32c-4b34-44aa-ae15-222d3babd369google-site-verification=nwZ4O_FsaH46n5MJJ2MI2nP-TKyVNs-LciBv2JMFVjIgoogle-site-verification=mcLPZXC4G76fzGz8fFQSfJZfRciyQCA7VsLzLUkdCXI
Email authentication strong
- SPF
-
v=spf1 ip4:50.16.61.184 ip4:50.19.167.127 ip4:52.2.193.101 ip4:52.200.201.152 ip4:72.44.56.225 ip4:75.101.224.12 ip4:149.72.167.103 ip4:159.183.10.36 ip4:159.183.141.128 include:_spf2.brightdata.com include:mail.zendesk.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:cf2xjsqm@ag.eu.dmarcian.com; ruf=mailto:cf2xjsqm@fr.eu.dmarcian.compolicy: reject (enforced) - DKIM
-
- dkim:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDNJwMFLsp7VGiqXP+zyKGAcE+xv5WB4S+jlop14jrgTSCXk4DjOvYrDY27DIg0xbpRRx7Yr1rptfIezZbsx4… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArGg1f2SaWe7HXpOsSgm2/BVpdm03kl2bSxiwiHmyEtpw6HnralbO+LvClohNUb6qJ0Hd9F+iUlR7AkcOW7… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0qZL4aIKRe2OsjQPeDEliUZ40b42epKCk9Wsfmj9HbBw6oh5P39y2dq2XctvQBmbexTcZfgrX0hnFDAWS4…
selectors probed - dkim:
Certificate (current)
WE1
Expires in 72 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' brightvpn.com *.brightvpn.com ws://127.0.0.1:4560 'unsafe-inline' 'unsafe-eval' data: *.google.ad *.google.ae *.google.al *.google.am *.google.as *.google.at *.google.az *.google.ba *.google.be *.google.bf *.google.bg *.google.bi *.google.bj *.google.bs *.google.bt *.google.by *.google.ca *.google.cat *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.cl *.google.cm *.google.cn *.google.co.ao *.google.co.bw *.google.co.ck *.google.co.cr *.google.co.id *.google.co.il *.google.co.in *.google.co.jp *.google.co.ke *.google.co.kr *.google.co.ls *.google.co.ma *.google.co.mz *.google.co.nz *.google.co.th *.google.co.tz *.google.co.ug *.google.co.uk *.google.co.uz *.google.co.ve *.google.co.vi *.google.co.za *.google.co.zm *.google.co.zw *.google.com *.google.com.af *.google.com.ag *.google.com.ar *.google.com.au *.google.com.bd *.google.com.bh *.google.com.bn *.google.com.bo *.google.com.br *.google.com.bz *.google.com.co *.google.com.cu *.google.com.cy *- strict-transport-security
max-age=31536000; preload- cross-origin-opener-policy
same-origin-allow-popups