eiger.io
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (3)
- www.googletagmanager.com×2
- cdnjs.cloudflare.com×1
- use.typekit.net×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns-1517.awsdns-61.org
- ns-1639.awsdns-12.co.uk
- ns-183.awsdns-22.com
- ns-857.awsdns-43.net
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 4 TXT records
bq3n4c81pumhro0drmkunndtqhnhh29sq7634uskv45fl3kq7g7lra7sg1p0q12fhrm44i2m3dcrhbvhmd9bnb1mlu5vtj2hrqk7l8ls
Email authentication partial
- SPF
-
v=spf1 include:amazonses.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; pct=100; rua=mailto:re+hsuxaunfrly@dmarc.postmarkapp.com; sp=none; aspf=r;policy: none (monitoring only) · sp=none - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA89VJc+o+O+dsZwstKQxEd4noLOnQi3Q603MLWyi2gYX3EsQxMvTq+n7UG0NorXmWWOlqPOn/2vnmi/qvhx… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC9Bto7Ao5VQpb/gJn9YqbTktJ8ek8hsCAnpxIZnn4axs8NkmKkHNtwo4fgNTT1xR0O54xbGqc6zcElHLp8rHPqj9…
selectors probed - s1:
Certificate (current)
Starfield Secure Certificate Authority - G2
Expires in 321 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
Deny- x-content-type-options
nosniff- content-security-policy
report-uri /api/report-csp-violation; script-src 'self' 'wasm-unsafe-eval' cdn.eiger.io cdn.dev.eiger.io cmp.osano.com consent.api.osano.com disclosure.api.osano.com tattle.api.osano.com *.google-analytics.com *.googletagmanager.com app.pendo.io pendo-io-static.storage.googleapis.com cdn.pendo.io pendo-static-5533347562455040.storage.googleapis.com data.pendo.io widget.intercom.io app.intercom.io js.intercomcdn.com content.product.eiger.io data.product.eiger.io tagmanager.google.com use.typekit.net performance.typekit.com cdnjs.cloudflare.com js.stripe.com connect-js.stripe.com www.datadoghq-browser-agent.com 'sha256-1eJArrmrWAFkIw+mfskp4IYAwyLTHlG7k2ticca+J/Y=' 'nonce-8cb473fc-bb6f-4656-80b1-cf88ca01feca'; style-src 'self' 'unsafe-inline' cdn.eiger.io cdn.dev.eiger.io tagmanager.google.com *.googletagmanager.com fonts.googleapis.com use.typekit.net app.pendo.io cdn.pendo.io pendo-static-5533347562455040.storage.googleapis.com content.product.eiger.io data.product.eiger.io; font-src 's- strict-transport-security
max-age=15552000; includeSubDomains