certaqa.com

.com crawl

First seen 2026-04-13 · Last seen 2026-05-02 · ok HTTP/1.1 200 210 ms crawled 2026-05-06

US · 108.156.22.8 · AS16509 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Certa
Language
en

Technology

CDN
Amazon CloudFront
Server
AmazonS3
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • fonts.googleapis.com×3
  • fonts.gstatic.com×1
  • www.gstatic.com×1
  • www.recaptcha.net×1

Registration

Registrar
Amazon Registrar, Inc.
Created
2019-05-01
Expires
2027-05-01 347 days left
Updated
2025-12-23
Name servers
  • ns-1316.awsdns-36.org
  • ns-1722.awsdns-23.co.uk
  • ns-195.awsdns-24.com
  • ns-766.awsdns-31.net

DNS records live

NS
  • ns-1316.awsdns-36.org
  • ns-1722.awsdns-23.co.uk
  • ns-195.awsdns-24.com
  • ns-766.awsdns-31.net
TXT
  • google-site-verification=uwCGH37OviBooxLEaMjJ-hmPMWwM6mmfIzEfx78JZ98

Email authentication no MX

SPF
v=spf1 include:sendgrid.net ~all
softfail (~all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzS2ykghOAhbO4hTX67Hp+1SwjsCYdaTGQrflmYOAx4eGIyZOK6xrkZ3bZisHS6Yy6G75S9JvWos26Wtn6y…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCs3F0p3OwGQu/W/X/PKxZYiEzfimY7gx9H+i5QHEu5mAS/LP6uknP7S7nQ9/2b2QtIK/gZs6X3h42rYVI1j9/kUA…
selectors probed

Certificate (current)

Amazon RSA 2048 M04
from 2025-10-08 to 2026-11-07
Expires in 172 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://certaqa.com/

present
  • strict-transport-security
  • content-security-policy
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
frame-ancestors 'self' https://developer-payments.qa.roku.com https://developer-payments.staging.roku.com https://developer.roku.com https://dev.qa.roku.com https://iframetest.certa.dev
strict-transport-security
max-age=63072000; includeSubDomains; preload
content-security-policy-report-only
default-src 'self'; base-uri 'self'; form-action 'self' https://developer-payments.qa.roku.com https://developer-payments.staging.roku.com https://developer.roku.com https://dev.qa.roku.com https://iframetest.certa.dev; script-src 'self' 'unsafe-inline' https://www.gstatic.com https://uboviz-stg.dnb.com https://www.datadoghq-browser-agent.com; style-src 'self' https://fonts.googleapis.com https://uboviz-stg.dnb.com; img-src 'self' data: blob: https://client-uat-media.s3.amazonaws.com https://uboviz-stg.dnb.com; worker-src blob:; font-src 'self' https://fonts.gstatic.com; connect-src 'self' https://*.certaqa.com https://analytics.certa.dev https://o4382.ingest.us.sentry.io https://developer-payments.qa.roku.com https://developer-payments.staging.roku.com https://developer.roku.com https://dev.qa.roku.com https://uboviz-stg.dnb.com https://browser-intake-datadoghq.com wss://*.certaqa.com wss://developer-payments.qa.roku.com wss://developer-payments.staging.roku.com wss://dev.qa.roku.com;

Linked from (1)