dash.org
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- cdn.jsdelivr.net×4
- fonts.googleapis.com×2
- widget.trustpilot.com×2
- fonts.gstatic.com×1
- hcaptcha.com×1
- static.cloudflareinsights.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- NameCheap, Inc.
- Created
- 2000-03-28
- Expires
- 2027-03-28 312 days left
- Updated
- 2026-03-03
- Name servers
-
- angela.ns.cloudflare.com
- owen.ns.cloudflare.com
DNS records live
- NS
-
- angela.ns.cloudflare.com
- owen.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
keybase-site-verification=gQn-pfy4G3r6UUZaJgfOix36jcm88fPKq5KqBOTbtsIgoogle-site-verification=3e0TT0FPsVFPnx8GfgTZaQlYml-Es6UrmMue2XWq0AQgoogle-site-verification=bFqKaMrPi1rJHgoRTWYUIR4kkyfQ7vK_KZq09rURnnU
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:sendgrid.net include:fdspfus.freshemail.io -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@dash.org; ruf=mailto:dmarc@dash.org; pct=100; fo=1;policy: quarantine - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApE6qIxiq89Y89xNBgESbod1JreJjQYGYfYiwh58WzJ8ieaWvkrh0hFflQI+PsE0c3LMDhCRkTofX4c7X7T… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx/Owxmaq4va5EA7O9/MkGnRnmsUW8zePxqbL7k4ZvFvHpFdLfM5ZAbPKhzuc/D2ljT0KPbRqksEI4dUhYW…
selectors probed - s1:
Certificate (current)
WE1
Expires in 43 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src https: 'self' https://*.hotjar.com:* http://*.hotjar.io https://*.hotjar.io wss://*.hotjar.com 'unsafe-eval'; script-src https: 'self' 'unsafe-inline' 'unsafe-eval' cdnjs.cloudflare.com cdn.jsdelivr.net www.coincap.io www.google-analytics.com ; img-src https: 'self' data: www.dashpay.io ; style-src https: 'self' 'unsafe-inline' fonts.googleapis.com ; font-src https: data: 'self' fonts.googleapis.com fonts.gstatic.com ; frame-src https: 'self' www.youtube.com w.soundcloud.com html5-player.libsyn.com player.youku.com v.youku.com ; child-src https: 'self' www.youtube.com w.soundcloud.com html5-player.libsyn.com ; object-src 'self';
Links to (10)
- crowdnode.io×2
- discordapp.com×2
- github.com×2
- instagram.com×2
- linkedin.com×2
- reddit.com×2
- t.me×2
- trustpilot.com×2
- twitter.com×2
- youtube.com×2