dosu.dev
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Address
- 1841 Market St, 94103, San Francisco, CA, US
DNS records live
- NS
-
- ns-cloud-b1.googledomains.com
- ns-cloud-b2.googledomains.com
- ns-cloud-b3.googledomains.com
- ns-cloud-b4.googledomains.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
linkedin-site-verification=adbc872b-954e-4936-b024-890e14572370MS=ms34957333MS=ms29038866
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:mailgun.org ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; sp=none; pct=100; ri=604800; rua=mailto:security@dosu.dev; ruf=mailto:security@dosu.devpolicy: reject (enforced) · sp=none - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqWltuGjnAuvdE3cAKzbAZAAox5KQ1yyEiNI6omfqUXAHqSwlk1xaGCcYVv01e01d4vHtMP2LIN8kcl…
selectors probed - google:
Certificate (current)
R13
Expires in 43 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://googleads.g.doubleclick.net https://www.googleadservices.com https://pagead2.googlesyndication.com https://app.cal.com https://vercel.live js-na2.hs-scripts.com js-na2.hs-banner.com js-na2.hs-analytics.net js-na2.hscollectedforms.net; script-src-elem 'self' 'unsafe-inline' https://www.googletagmanager.com https://googleads.g.doubleclick.net https://www.googleadservices.com https://pagead2.googlesyndication.com https://app.cal.com https://vercel.live js-na2.hs-scripts.com js-na2.hs-banner.com js-na2.hs-analytics.net js-na2.hscollectedforms.net; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob: https:; font-src 'self' data:; connect-src 'self' https://www.google.com https://www.googletagmanager.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://pagead2.googlesyndication.com https://forms-na2.hscollectedforms.net https://*.posthog.com https://www.google-a- strict-transport-security
max-age=63072000
Links to (5)
- github.com×3
- linkedin.com×3
- google.com×2
- x.com×2
- twitter.com×1