feefty.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Ghost
- Analytics
-
- Cloudflare Insights
- Fonts
-
- Google Fonts
Third-party hosts loaded (2)
- fonts.googleapis.com×1
- static.cloudflareinsights.com×1
Social
Contact
- Phone
Registration
- Registrar
- NameCheap, Inc.
- Created
- 2018-10-17
- Expires
- 2026-10-17 150 days left
- Updated
- 2025-01-09
- Name servers
-
- april.ns.cloudflare.com
- arch.ns.cloudflare.com
DNS records live
- NS
-
- april.ns.cloudflare.com
- arch.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 7 TXT records
openai-domain-verification=dv-OuFTbgsOI1m939TYwEL07QKWpardot185952=46b71bd6f3685e523b9706f2c259366bb5dbdf7fd56fa91a4511d0821c9fd516sending_domain185952=96a8d2908b45d116e95c18819a111895199d7b2123570319666f1e2b2f2d4bb4MS=ms88485143atlassian-domain-verification=iJpbrmaJ7SzczcglYKCmZvGrxG3/oKMvMi5UQ9ZMrB3nticgMNfNbViDtks4HHpzgoogle-site-verification=7lhzDw6preSsoH0nVtVAHltfh4omeOjXE8Wimk07Xbsgoogle-site-verification=WOGeuAiVADAemAqC3euxPFhYPVcUaji_B3rftGhiFpM
Email authentication partial
- SPF
-
v=spf1 include:25900102.spf10.hubspotemail.net include:_spf.google.com include:sendgrid.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA13SdDscjQ8xCdtPN5FyaQ0vmgMKhq+HvplLrzAO6BeSq86pAbskglKfP/nATKmUnU0kRsWxfUKAsD6HBK6… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC53IB0ghroea4jQpG6HZ3604IkEsk6IS6PJu3E1pwsIIk0G4SeWHAB1PNhfPtzeAKLZA3xHY/cxkedfta5g3p3xd…
selectors probed - s1:
Certificate (current)
E7
Expires in 65 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src https: * 'unsafe-inline' data: blob:; upgrade-insecure-requests;- strict-transport-security
max-age=15552000; includeSubDomains; preload- content-security-policy-report-only
default-src 'self';