enpass.io
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- stackpath.bootstrapcdn.com×3
- cdn.jsdelivr.net×2
- cdnjs.cloudflare.com×2
- fonts.gstatic.com×1
- sbl.onfastspring.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns-1429.awsdns-50.org
- ns-1964.awsdns-53.co.uk
- ns-515.awsdns-00.net
- ns-65.awsdns-08.com
- MX
-
- 0 enpass-io.mail.protection.outlook.com
- TXT
-
Show 9 TXT records
atlassian-domain-verification=aBwYfOLo1SFzD3VTToIP2ON+uE31ex1epybyUDC8//T4IJqgtgsaJE/z7THL2eDtatlassian-sending-domain-verification=be39cb87-d06e-4f0f-8a8c-1970c0d3f4e9google-site-verification=6R45ynVdpohAltfKQNQTQqug32d5_q4_osKhvb3li0kgoogle-site-verification=TLU38k6CBC4Dwb8At_ohSdC7aME0CYcInqYHJLqeGVwgoogle-site-verification=_2j88sZlLwKfN8paq9EPKhHXHxvmB0ykh1iHzmJoPeAstripe-verification=04DC725FD539DD8ACA70AEA9511051BBD819ED8CB8C2B15766F09DD8C86C54FEMS=ms25620623apple-domain-verification=XT4LoWzi7quwIABeatlassian-domain-verification=5PB5gcd0CKe4sPeawVV5sopN0Owd68fXaGrxq4fwmXJP7udU3iqfaTPPx1bJGhbz
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.atlassian.net include:amazonses.com include:48191671.spf08.hubspotemail.net -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;sp=reject;pct=100;rua=mailto:reports_dmarc@enpass.io;ruf=mailto:reports_dmarc@enpass.io;ri=86400;aspf=s;adkim=s;fo=1policy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwAdVSqsFdArDUHn6SjuIVbx6VXooLJ+ARloqoL/J/lk5lEejkt0C71zmsR3RpmVn3PYfdYG9nqYeS3… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw1gU64wM331J2x42nJ5l0VWV9mz2yyXOQwlgqvQ5eOkANWTV43m7GSCUU9MBBKHDpm6+8o9nY+5vm506tZ… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC8tvSmzHnj/KkHIVAuonmai05ZFiat3Js8GETYTxg0Pfb3773i53A56TIx89vrodwSgVPFTQFqQ1Tg/KOpQM6YlC…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 131 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), geolocation=(), fullscreen=(self), payment=()- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self'; default-src 'self' https: data:; script-src 'self' https: 'unsafe-inline' 'unsafe-eval' blob:; style-src 'self' https: 'unsafe-inline'; img-src 'self' https: data: blob:; connect-src 'self' https: wss:; frame-src 'self' https: data: blob: about:; child-src 'self' https: data: blob: about:;- strict-transport-security
max-age=2592000
Links to (4)
- linkedin.com×2
- reddit.com×2
- x.com×2
- youtube.com×2