coterra.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (3)
- use.typekit.net×2
- hb.wpmucdn.com×1
- www.googletagmanager.com×1
Contact
- Phone
Registration
- Registrar
- Cloudflare, Inc.
- Created
- 1999-10-21
- Expires
- 2027-10-21 519 days left
- Updated
- 2026-02-07
- Name servers
-
- elma.ns.cloudflare.com
- lee.ns.cloudflare.com
DNS records live
- NS
-
- elma.ns.cloudflare.com
- lee.ns.cloudflare.com
- MX
-
- 0 us-smtp-inbound-1.mimecast.com
- 10 us-smtp-inbound-2.mimecast.com
- TXT
-
Show 9 TXT records
hibp-verify=dweb_ve5pm4iomoik3xbqghrhfkvkknowbe4-site-verification=ac475e6faff71c8116cf12eaa583bcb6recruitee-add-admin=bhakti.shah@coterra.comMS=ms43457672ZOOM_verify_5tVYcualb0H8nAaOdH0Rcf_pgpmhskgdj13yj3pb0spvt0ohyydmnwbw=yyVHHVOVn4QzdBKvi05wHzvitZRbvNlcGEVzirnSLRQ4docusign=67dbefa5-688b-43da-83b0-f2cc96475819google-site-verification=OhCkylmWlx6vDgDfXP2YckUmKTH-Z67XT_1pB4kutLk
Email authentication strong
- SPF
-
v=spf1 a mx ip4:216.117.60.250 ip4:149.72.75.134 ip4:167.172.20.75 ip4:65.36.11.154 ip4:4.2.238.219 ip4:198.21.6.113 ip4:168.245.40.179 ip4:4.2.238.216 ip4:4.2.238.221 ip4:52.171.218.246 ip4:64.207.242.100 ip4:174.78.67.228 ip4:64.207.242.121 ip4:174.78.67.249 include:us._netblocks.mimecast.com include:_spf.psm.knowbe4.com include:servers.mcsv.net include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; fo=1; pct=100; rua=mailto:dvzqy2ot@ag.us.dmarcian.com; ruf=mailto:dvzqy2ot@fr.us.dmarcian.compolicy: quarantine - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0gU8ORmnFX2ZCgD34JPBi1lkQ56rTs9BOltgvGr5NQqUR1EQjxwFTkj4UHT4/KQCURWrplPz/BGEPi… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnQhk2i/gbnkYOYSj/VQUnjEqrjbJqyXKygRKr+nrAB/iItG5f1I3G3+9zcbQg7IUG07vbsk4AgL3ko…
selectors probed - default:
Certificate (current)
R13
Expires in 54 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
sameorigin- permissions-policy
accelerometer=(self), autoplay=(self), camera=(self), encrypted-media=(self), fullscreen=(self), geolocation=(self), gyroscope=(self), magnetometer=(self), microphone=(self), midi=(self), payment=(self), usb=(self)- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests; img-src 'self' data: https://www.googletagmanager.com https://secure.gravatar.com ; default-src 'self'; script-src 'self' 'unsafe-inline' https://www.google.com https://www.googletagmanager.com 'unsafe-eval'; script-src-elem 'self' 'unsafe-inline' https://www.google.com https://www.gstatic.com https://www.googletagmanager.com https://jobs-widget.recruiteecdn.com https://cdnjs.cloudflare.com ; style-src 'self' 'unsafe-inline' https://use.typekit.net https://p.typekit.net ; style-src-elem 'self' 'unsafe-inline' https://use.typekit.net https://p.typekit.net ; font-src 'self' https://use.typekit.net data:; frame-src 'self' https://www.google.com https://www.energylink.com https://app.energylink.com ; frame-ancestors: 'self' ; connect-src 'self' https://region1.google-analytics.com https://www.google-analytics.com https://www.google.com https://career.recruitee.com;- strict-transport-security
max-age=31536000 ; includeSubDomains