charmacadminaccess.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 4004 ms crawled 2026-05-19

US · 40.80.155.102 · AS8075 Microsoft Corporation

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Log in - Charmac Trailers

Technology

Server
Kestrel
Fonts
  • Google Fonts

Third-party hosts loaded (2)

  • ajax.aspnetcdn.com×2
  • fonts.googleapis.com×2

Registration

Registrar
Squarespace Domains LLC
Created
2018-08-17
Expires
2029-08-17 1184 days left
Updated
2025-04-14
Name servers
  • dns1.p07.nsone.net
  • dns2.p07.nsone.net
  • dns3.p07.nsone.net
  • dns4.p07.nsone.net
  • ns01.squarespacedns.com
  • ns02.squarespacedns.com
  • ns03.squarespacedns.com
  • ns04.squarespacedns.com

DNS records live

NS
  • dns1.p07.nsone.net
  • dns2.p07.nsone.net
  • dns3.p07.nsone.net
  • dns4.p07.nsone.net
  • ns01.squarespacedns.com
  • ns02.squarespacedns.com
  • ns03.squarespacedns.com
  • ns04.squarespacedns.com
TXT
  • vpqnjsshc023o5p1jr5u4jrblb
  • 9ejstr5aqn5ha1q63penvuur0b
  • te2geu1s5k9jtsks7h610b9cuo

Email authentication no MX

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

GeoTrust TLS RSA CA G1
from 2026-02-20 to 2026-08-20
Expires in 91 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.charmacadminaccess.com/signin?returnUrl=%2Fconnect%2Fauthorize%2Fcallback%3Fclient_id%3Dcharmac.admin%26redirect_uri%3Dhttps%253A%252F%252Fwww.charmacadminaccess.com%252Fsignin-oidc%26response_type%3Did_token%26scope%3Dopenid%2520profile%2520email%2520charmac%26response_mode%3Dform_post%26nonce%3D639148058949931337.ZmM0ZDQzYzUtYjAzYS00YjBkLWJlMmYtYzU4MTRhZThjMDc3OWYxZWQ5MTYtZTdiMS00NWIyLWIwYTktYzE3NjUyMzlkMDVm%26state%3DCfDJ8AOZYAWmVt1IjVxELh20d_wd9tgxCceZoHF82W8xOrxVPIWXjivG2PN3JV7wOEiPkeq3n8TS8BdofPkFxSNC8JtGu-OfHRh6nEVryTplzKjIkXu_9nsKBpDCPjwb-u0eFjyiaAfcYoSXDQC4B0vqoXOqYkkZ09Ia3Xe8pErHDqPT%26x-client-SKU%3DID_NET%26x-client-ver%3D2.1.4.0

present
  • x-frame-options
findings
  • missing HSTS
  • missing Content Security Policy
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
SAMEORIGIN

Linked from (1)