fitnessconnection.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Fonts
-
- Google Fonts
Third-party hosts loaded (12)
- cdn.prod.website-files.com×32
- ajax.googleapis.com×2
- fonts.googleapis.com×2
- vjs.zencdn.net×2
- cdn.cookielaw.org×1
- cdn.weglot.com×1
- clearout.io×1
- customer-8blbtfv8eme96rt1.cloudflarestream.com×1
- d3e54v103j8qbb.cloudfront.net×1
- fonts.gstatic.com×1
- js.hs-scripts.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1999-09-21
- Expires
- 2027-09-21 489 days left
- Updated
- 2024-09-22
- Name servers
-
- aitana.ns.cloudflare.com
- sri.ns.cloudflare.com
DNS records live
- NS
-
- aitana.ns.cloudflare.com
- sri.ns.cloudflare.com
- MX
-
- 0 fitnessconnection-com.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
nordpass-domain-verification=10c56589bbeda7c9aa4d65e6be64a2c6c11e96de908f747ac308e53b72010049teamviewer-sso-verification=70a52cc974864bcb96b9331323f86908v=DMARC1;p=rejectZOOM_verify_17jj61EARsarMA_o3v8sUwapple-domain-verification=qGenvaHMnHCRkoLUapple-domain-verification=wTgDNZMeVxvrJO3eaKCm8TYQA4TB1fAflMY0Wvbw20Qcdn.webflow.comdropbox-domain-verification=7x5oephysuhdgoogle-site-verification=6KiLIdCbi_JKxbXkgQxlXKQ_GB5B0bC96P5VdIhNsWogoogle-site-verification=DaibWkxbY4PCaI6E5oFeoSAYoS0k0dp7JODORFoXDXs
Email authentication partial
- SPF
-
v=spf1 ip4:70.113.251.148 ip4:70.113.241.250 ip4:168.245.7.222 include:spf.protection.outlook.com include:mail.zendesk.com include:_spf.sendergen.com include:spf.extole.io include:47285445.spf04.hubspotemail.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDJ3UVVyNWc3sMuPtgFEY/6iNJ/reM+HHitJZE+J5JHL8WoJQVkJNmfmQhKH1IPCJKGImeNwPGRBR2elGKupE… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwL1dJnnhVb3F62PrBlEhMGbEMSyemVDVlkYLgQr72GzdM3V61ECIcss2d3/n6sn4hCauuJHt2emKvuNAd3… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDN3IZ+By2LgyVu3F9jfG2ojtPYLgl66owZNU/tu4KHuAwVsHghfwfmDuFDAT69lok4gfJWqMQ/1lMBNNM45Q9ONf…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 31 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https 'strict-dynamic'; script-src 'self' 'nonce-MjA2MTUzNDg3MiwyMTU1NjgxMDE=' webcomponents.fitnessconnection.com d1bgtr3oqu8zxo.cloudfront.net jol.fitnessconnection.com ducwyw9klc3vc.cloudfront.net cdn.prod.website-files.com d3e54v103j8qbb.cloudfront.net webflow.com ajax.googleapis.com fitnessconnection.extole.io share.fitnessconnection.com *.xtlo.net js.hsadspixel.net *.hsforms.net *.hsforms.com *.hs-scripts.com js.hs-analytics.net js.hs-banner.com js.hubspot.com sdks.shopifycdn.com *.youtube.com *.livechat-static.com api.livechatinc.com cdn.livechatinc.com maps.googleapis.com vjs.zencdn.net extend.vimeocdn.com cdn.weglot.com wisepops.net cdn.wisepops.com cdn.wisepops.net assets.wisepops.net cdn.cookielaw.org *.clearout.io clearout.io cdn.pagesense.io static.zohocdn.com *.google.com https://tagmanager.google.com *.google.com www.gstatic.com https://www.googletagmanager.com https://www.googleadservices.com challenges.cloudflare.com pixel.byspotify.com www.redditsta- strict-transport-security
max-age=31536000