buildingminds.com
HTML metadata
Technology
- CMS
- Nuxt
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (4)
- images.ctfassets.net×6
- use.typekit.net×2
- js-eu1.hsforms.net×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- IONOS SE
- Created
- 2003-06-13
- Expires
- 2026-06-13 25 days left
- Updated
- 2025-12-09
- Name servers
-
- nora.ns.cloudflare.com
- paul.ns.cloudflare.com
DNS records live
- NS
-
- nora.ns.cloudflare.com
- paul.ns.cloudflare.com
- MX
-
- 0 buildingminds-com.mail.protection.outlook.com
- TXT
-
Show 15 TXT records
d365mktkey=73s6h4lxtdwi4cfuc7dduaguvgoogle-site-verification=VtPKPVOEGx2q-gCNvK-J4EOQGjt992P46V-ne3bQ4MEgoogle-site-verification=bnKasSnVB5leuu1ZNXKsCHc1Ln-Hb9qG2njcO_4wjucgoogle-site-verification=ofcnhZT4ONDQ-yPCSOSOH6H5c-2Bms7Y3T0WQ_aoChMgoogle-site-verification=r_SHhHCvleMHz21aSIzFo92imYSw0YKw_1IfJwM08k8launchdarkly-domain-verification=9da4aafb-bc89-4a3e-afaa-31c47bf54280miro-verification=85f65b1b6581d495245202c55ec371fc0619cab2mongodb-site-verification=Z64ZfHdtSDBBMFjokd3V6L5qyZ31ET3dmsfpkey=75s7qpvd20w1mk9syyg2yusu9status-page-domain-verification=tyzby7lmr90233y9y0yy4w51h8vsg37kyj3z4y8kzm72MS=ms58807683apple-domain-verification=SEBkPkAmWUJldmRKatlassian-domain-verification=Da0aIFfhURXk64eXcd76sp0LglMaM1A0x7xuIne4JPsDE//qk0Kq0O2bgRHRqvV4autodesk-domain-verification=ve_e7azR5UzXiR2vwAww
Email authentication strong
- SPF
-
v=spf1 include:spf.mailjet.com include:spf.protection.outlook.com include:servers.mcsv.net include:144874399.spf07.hubspotemail.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:security@buildingminds.com,mailto:dqvhmtcflh7jgej@securemailanalytics.com; ruf=mailto:security@buildingminds.com,mailto:7vccu4qtbedg8gaa@securemailanalytics.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyUWwV8m+XDsqW0qX6cRUaBzpSYYXyvl6sYRegyTurpIq69WMHp/NgFHfis2SkiIZJ2c5NqsL099Pnx… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuObxvWabV7S3j2V5uIgxqAil9Gas4JeeoSEi64hCC5ifxs9yehSsqvTVLjsBRA+TNChxByNLSBczPd…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 90 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
same-origin- permissions-policy
accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(), encrypted-media=(), fullscreen=(self), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(self), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(self), xr-spatial-tracking=(), clipboard-read=(self), clipboard-write=(self), gamepad=(), hid=(), idle-detection=(), interest-cohort=(), serial=(), unload=()- x-content-type-options
nosniff- content-security-policy
default-src ws: wss: https: data: 'self'; frame-ancestors https://*.buildingminds.com https://*.onbuildingminds.com 'self' https://*.contentful.com; script-src ws: wss: https: data: 'self' 'unsafe-eval' 'unsafe-inline'; style-src https: data: 'self' 'unsafe-inline'- strict-transport-security
max-age=10886400; includeSubDomains; preload