commondef.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Cloudflare Insights
- Google Analytics
- Ads
-
- Google AdSense
- Google Ads (DoubleClick)
- Meta Pixel
- Fonts
-
- Google Fonts
- Social widgets
-
- Twitter Widget
- Vimeo Embed
Third-party hosts loaded (30)
- cdnjs.cloudflare.com×4
- googleads.g.doubleclick.net×2
- pagead2.googlesyndication.com×2
- a.vimeocdn.com×1
- analytics.adrevv.com×1
- api.twitter.com×1
- b.vimeocdn.com×1
- cdn.fluidplayer.com×1
- cdn.idpixel.app×1
- clients6.google.com×1
- cloudflare.com×1
- connect.facebook.net×1
- edge.quantserve.com×1
- facebook.com×1
- fonts.googleapis.com×1
- google-analytics.com×1
- google.com×1
- googletagservices.com×1
- graph.facebook.com×1
- img.youtube.com×1
- pixel.quantserve.com×1
- platform.twitter.com×1
- player.vimeo.com×1
- plus.google.com×1
- quantcast.com×1
- quantserve.com×1
- secure-a.vimeocdn.com×1
- secure-b.vimeocdn.com×1
- secure.quantserve.com×1
- static.cloudflareinsights.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2025-02-09
- Expires
- 2027-02-09 265 days left
- Updated
- 2026-02-10
- Name servers
-
- pat.ns.cloudflare.com
- paul.ns.cloudflare.com
DNS records live
- NS
-
- pat.ns.cloudflare.com
- paul.ns.cloudflare.com
- MX
-
- 1 smtp.google.com
- TXT
-
google-site-verification=Q2bij-k-2Bqap0dySWwrz3q2oIowZzKCnwuXy5UuK1ov=spf1 include:_spf.google.com ~allyahoo-verification-key=a4+N/06Dd7pu+isG3SHr0xFxwMVBFygShZEDbukn2JE=
Certificate (current)
WE1
Expires in 44 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
upgrade-insecure-requests; default-src data: 'unsafe-inline' 'unsafe-eval' https:; script-src data: 'unsafe-inline' 'unsafe-eval' https: blob:; style-src data: 'unsafe-inline' https:; img-src data: https: blob:; font-src data: https:; connect-src https: wss: blob:; media-src data: https: blob:; object-src https:; child-src https: data: blob:; form-action https:;- strict-transport-security
max-age=15768000; includeSubdomains; preload