endpointprotector.com
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- fonts.googleapis.com×2
- fonts.gstatic.com×2
- secure.leadforensics.com×2
- www.googletagmanager.com×2
- dev.visualwebsiteoptimizer.com×1
- js.qualified.com×1
- lp.netwrix.com×1
Social
Contact
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2007-05-07
- Expires
- 2027-05-07 338 days left
- Updated
- 2026-05-16
- Name servers
-
- dave.ns.cloudflare.com
- ivy.ns.cloudflare.com
DNS records live
- NS
-
- dave.ns.cloudflare.com
- ivy.ns.cloudflare.com
- MX
-
- 0 endpointprotector-com.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
knowbe4-site-verification=f0b4bf8ec603727cb80b0b113f3d800a0kr4398v0sf6cc9jqkbzszy4ccjbrdxr9tdyqrgqhv3t788gy6kmrp48h84f2pm8Probely=20c8ce68-69c3-497c-b4ba-133c856854eb_8fr71y3z1j1420iegsad7yfi2mdd3ib_gkxhoosciurzge7fx13b03vcunf0xwl
- Verified for
-
- 1Password
- Atlassian
- Microsoft 365
- Zoom
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com mx a:mout.kundenserver.de a:mout-xforward.kundenserver.de ip4:5.9.3.238 ip4:144.76.167.6 ip4:81.196.156.49/28 ip4:178.63.3.86 ip4:81.196.156.62 ip6:2a01:4f8:201:44aa::2 a:www.cososys.com include:9381342.spf07.hubspotemail.net include:servers.mcsv.net -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@cososys.com; ruf=mailto:dmarc.forensic@cososys.com; fo=1; pct=100; adkim=r; aspf=rpolicy: quarantine - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnEyhI8ITePb3dUza5eGnyECyxZpzrfYV8RsFemxm1Vp/4EDJ2D1B5hlv5wYZIgP1BDF7JKWHjleDZW… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA25nm/CtvLxGS/bUss9BJ0jwGYLYI1RdURfB0/FGfUGe4UdYSI+PihMBIuc0QnYydhOKG/zCYlmR5qC… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - google:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 15 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; font-src 'self' data: https://script.hotjar.com https://*.stackpathcdn.com https://*.googleapis.com https://*.gstatic.com https://*.cloudfront.net; style-src 'self' 'unsafe-inline' https://lp.netwrix.com https://www.googletagmanager.com https://www.google-analytics.com https://tagmanager.google.com https://fonts.googleapis.com https://*.googleapis.com https://cdnjs.cloudflare.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://munchkin.marketo.net https://lp.netwrix.com https://js.qualified.com https://j.6sc.co https://dev.visualwebsiteoptimizer.com https://*.vimeo.com https://www.youtube.com https://*.googletagmanager.com https://tagmanager.google.com https://js.usemessages.com https://www.g2.com https://cmp.osano.com https://player.vimeo.com https://*.workable.com https://www.google.com https://googleads.g.doubleclick.net https://js.hs-analytics.net https://js.hsadspixel.net https://js.hscollectedforms.net https://*.ensighten.com https://cs.choozle.com ht- strict-transport-security
max-age=63072000; includeSubdomains;
endpointprotector.com