cumbrestoltec.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- jQuery
- 3.6.0
- Analytics
-
- Google Tag Manager
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (10)
- cdnjs.cloudflare.com×2
- assets.adobedtm.com×1
- fareharbor.com×1
- insight.adsrvr.org×1
- jelly.mdhv.io×1
- stats.wp.com×1
- tag.brandcdn.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Contact
- Phone
- Address
- 5234 US Highway 285, 81120, Antonito, Colorado, US
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1999-12-07
- Expires
- 2031-12-07 2010 days left
- Updated
- 2025-02-12
- Name servers
-
- lady.ns.cloudflare.com
- rudy.ns.cloudflare.com
DNS records live
- NS
-
- lady.ns.cloudflare.com
- rudy.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- Verified for
-
Email authentication weak
- SPF
-
v=spf1 ip4:98.129.77.21/16 ip4:172.67.172.165 ip4:104.21.55.201 ip4:34.106.46.125 ip4:34.106.111.224 ip4:162.159.135.42 include:_spf.google.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnpKhj1w3M8jndzM4e8TSzYkDM9uGmbMvlvOrcuYrIq2f+8ZcfzLobXMP6KlhOL9tTCXRbyFmBN8EFX… - dkim:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDafUilK3zNsbREHy/Qq87Yf7zTOHje49cnjE/Amaz5HGqp/73fQRz+4ScKXXL4/1xB+7amz1sZJm75kTWNJZ…
selectors probed - google:
Certificate (current)
WE1
Expires in 84 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: blob:; style-src 'self' 'unsafe-inline' https:; img-src 'self' data: https: http: blob:; font-src 'self' data: https:; connect-src 'self' https: wss:; media-src 'self' https:; object-src 'none'; base-uri 'self'; frame-src 'self' https:; frame-ancestors 'self'- strict-transport-security
max-age=31536000- cross-origin-opener-policy
same-origin-allow-popups
cumbrestoltec.com