emplifyhealth.org
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
Third-party hosts loaded (3)
- gundersen.widen.net×4
- dev.visualwebsiteoptimizer.com×1
- siteimproveanalytics.com×1
Social
Contact
- Phone
Registration
- Registrar
- eNom, LLC
- Created
- 2023-08-11
- Expires
- 2028-08-11 814 days left
- Updated
- 2025-06-18
- Name servers
-
- guy.ns.cloudflare.com
- julissa.ns.cloudflare.com
DNS records live
- NS
-
- guy.ns.cloudflare.com
- julissa.ns.cloudflare.com
- MX
-
- 10 mxa-007e2002.gslb.pphosted.com
- 10 mxb-007e2002.gslb.pphosted.com
- TXT
-
Show 11 TXT records
apple-domain-verification=o4lrWvuw32sBObLUatlassian-domain-verification=d1iD3JxQebQn6WWHq87G1hLXOHui95nPGPHp8TF64WVJTWMIdC68IWGyZzgR1qyEcisco-ci-domain-verification=348992b4603ccdd68e36b839f9c85d2dfcd9f7eb20a3c9efe0a6d6dd4f56122fcisco-ci-domain-verification=3f89d7c187707e9dd9b282e2fff43715b1d9f869b06dbf45f1d5d869a026dddadropbox-domain-verification=t3nog13eld7pgoogle-site-verification=Y97z1uo8nWJ98XWhmgdd2CWUv9IC-lY27vIO0fmAK5Yinfor-cloudsuite-domain-verification=8Q7L4GT2KCX6TLZ3RBC79A3R6A9TZUDR2EKMUX3NCC485YE7FXHJZ9XRJ4LLRE6Gintersight=79cc63c4061b4fd5d43f8616e46a9e342a35794c038e42507d63ad5e56fba2bewfbxcgxv5ysjfhbz774k200n9853wq2rMS=ms19499319_xd089a87zfrto7k9t0ntd7lfcfqblwp
Email authentication strong
- SPF
-
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc_agg@vali.emailpolicy: quarantine - DKIM
-
- k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - k1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 117 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), browsing-topics=(), geolocation=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://gundersen.widen.net localhost; script-src 'self' 'unsafe-eval' 'unsafe-inline' siteimproveanalytics.com js-agent.newrelic.com www.youtube.com *.visualwebsiteoptimizer.com app.vwo.com *.formstack.com; style-src 'self' 'unsafe-inline' *.visualweboptimizer.com app.vwo.com; img-src * data:; font-src 'self' *.formstack.com; object-src https://gundersen.widen.net localhost; base-uri 'self'; form-action 'self' *.formstack.com; frame-ancestors *; connect-src 'self' https://bam.nr-data.net *.visualwebsiteoptimizer.com app.vwo.com *.formstack.com; frame-src 'self' https://www.youtube-nocookie.com https://gundersen.widen.net *.visualwebsiteoptimizer.com app.vwo.com; worker-src 'self' blob:;- strict-transport-security
max-age=31536000; includeSubDomains