cartstack.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- cdn.jsdelivr.net×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2010-08-08
- Expires
- 2029-08-08 1176 days left
- Updated
- 2024-08-13
- Name servers
-
- ns-1175.awsdns-18.org
- ns-1538.awsdns-00.co.uk
- ns-301.awsdns-37.com
- ns-617.awsdns-13.net
DNS records live
- NS
-
- ns-1175.awsdns-18.org
- ns-1538.awsdns-00.co.uk
- ns-301.awsdns-37.com
- ns-617.awsdns-13.net
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=qMyLdJSpdX8v2ArUtw24a5coAh6wBhenRKVbwHHixqo
Email authentication partial
- SPF
-
v=spf1 include:_spf.cartstack_com._d.easydmarc.pro ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=none;rua=mailto:f553555da0@rua.easydmarc.us,mailto:re+zzovjsbpqvj@dmarc.postmarkapp.com;ruf=mailto:f553555da0@ruf.easydmarc.us;fo=1;policy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAgzs1SBRF7f8oWrjBQxwTlJjklGgySrhVrPPbKFuIKQE2vAavIVvdhRxxB6F2NOH7o3pPjg/gavjgwA…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M01
Expires in 276 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing Content Security Policy
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=31536000; includeSubDomains; preload- content-security-policy-report-only
script-src 'self' 'unsafe-inline' cdn.jsdelivr.net cdnjs.cloudflare.com ajax.googleapis.com js.pusher.com use.fontawesome.com sdk.amazonaws.com app-rsrc.getbee.io loader.getbee.io localhost:3000 localhost:8080 127.0.0.1:3000 127.0.0.1:8080; style-src 'self' 'unsafe-inline' cdn.jsdelivr.net cdnjs.cloudflare.com fonts.googleapis.com; img-src 'self' secure.gravatar.com cartstack.s3.amazonaws.com; font-src 'self' data: fonts.googleapis.com fonts.gstatic.com; connect-src 'self' api.cartstack.com ws-us3.pusher.com wss://ws-us3.pusher.com bee-auth.getbee.io bee-utils.getbee.io bee-stats.getbee.io bee-sentry.beefree.io bee-bumper.getbee.io localhost:3000 localhost:8080 ws://localhost:3000 ws://localhost:8080; frame-src 'self' app.getbee.io; default-src 'none'; object-src 'none'; media-src 'self'; worker-src 'self'; manifest-src 'self'; base-uri 'self'; form-action 'self'; frame-ancestors 'self'; report-uri /csp-report.php