fengate.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Drupal
- Fonts
-
- Adobe Fonts
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (4)
- use.typekit.net×10
- cdn.jsdelivr.net×2
- challenges.cloudflare.com×1
- player.vimeo.com×1
Social
Contact
- Phone
- Address
- St W, Suite 3410
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1997-10-16
- Expires
- 2034-10-15 3070 days left
- Updated
- 2024-10-15
- Name servers
-
- ns19.worldnic.com
- ns20.worldnic.com
DNS records live
- NS
-
- ns19.worldnic.com
- ns20.worldnic.com
- MX
-
- 10 mxa-008c9b01.gslb.pphosted.com
- 20 mxb-008c9b01.gslb.pphosted.com
- TXT
-
Show 11 TXT records
google-site-verification=cwpBF88F5m1amAPwd7Drsc5RxzN9RvRb0J9ZTqeqPekapple-domain-verification=x7le4HF9nqVy32rX20260223182858141pkt4wfphg7qxbegu0b5yov79lzj7tadk0uwkd662osgm3lmopenai-domain-verification=dv-5gOlwg2olrR8qkKQ6x4lLTQdl027vq3b3gltthk63qh9hghqcidocusign=95011a17-9d75-411e-9e16-2808a15ed75et2g809rm8qle35hqhedfd4rhldanthropic-domain-verification-jjq11x=CxcEuGLQOEqsrpFPNCIuC1Cbbsmartsheet-site-validation=CJzRUgpTbnXXgMKrzdFCWfRmknhwAZ2Yv9uutd2gr63u7g1457087265q9knowbe4-site-verification=f26d56546e0276c91120aa5a59dc55ec
Email authentication strong
- SPF
-
v=spf1 include:_spf.sendergen.com include:dayforcehcm.com include:spf.protection.outlook.com include:asp-spf1.yardi.com include:asp-spf2.yardi.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine;policy: quarantine - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnaJg7AQdDyXmyQyR3gewRlq0A+MMbXJZhyQDk0wJkVfZyNCJh1Z8g9p4C1YWlBk3F7la1RDtNsEa/L… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDJ7hn0SVLsibX+ZdjmjxxpRTRlgKxrtpSOSi3Qinr9xkxuH5DYa1EOFJD6s0lKCXIdM9Hk9bSq45O+Uy1Z4L… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAym0maNsBtb77eDdtGpJQi+clPf7W7cSLjTik2BKC9z4Z6KoyW0D8ME9kL4XVKQust4MlICy3MfE6efQbaY… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAziDe2z4pDPJR3tSa+K/yJs6Q70zU1hTiHKy7eRILZLKWZPiArQbMvOS+P/VXHzWCqgx6JQqKy+eZAYTkI2…
selectors probed - selector1:
Certificate (current)
R13
Expires in 49 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://edge.marker.io https://www.googletagmanager.com https://www.google-analytics.com https://*.google-analytics.com https://api.mapbox.com; object-src 'self'; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://p.typekit.net https://use.typekit.net https://api.mapbox.com; img-src 'self' data: https: blob:; media-src 'self' blob:; frame-src 'self' https://www.youtube.com https://www.youtube-nocookie.com https://player.vimeo.com; frame-ancestors 'self'; child-src 'self' blob:; font-src 'self' data: https://p.typekit.net https://use.typekit.net; connect-src 'self' blob: https://p.typekit.net https://use.typekit.net https://api.marker.io https://www.google-analytics.com https://*.google-analytics.com https://analytics.google.com https://www.googletagmanager.com https://stats.g.doubleclick.net https://api.mapbox.com https://- strict-transport-security
max-age=31536000; includeSubDomains, max-age=300