flikisdining.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 971 ms crawled 2026-05-18

US · 13.227.231.104 · AS16509 Amazon.com, Inc.

Reputation 89/100 weak security headers dmarc monitor-only

Classifying

HTML metadata

Title
Nutrislice Lookup
Language
en

Technology

CDN
Amazon CloudFront
Server
AmazonS3
Fonts
  • Google Fonts

Third-party hosts loaded (2)

  • fonts.googleapis.com×1
  • fonts.gstatic.com×1

Registration

Registrar
Network Solutions, LLC
Created
2015-03-31
Expires
2027-03-31 316 days left
Updated
2024-01-31
Name servers
  • ns1.dnsimple.com
  • ns2.dnsimple.com
  • ns3.dnsimple.com
  • ns4.dnsimple.com

DNS records live

NS
  • ns1.dnsimple.com
  • ns2.dnsimple.com
  • ns3.dnsimple.com
  • ns4.dnsimple.com
MX
  • 10 mail.protonmail.ch
  • 20 mailsec.protonmail.ch
TXT
  • ALIAS for d1536g4erf8lzi.cloudfront.net
  • protonmail-verification=63f2cac95752fe437321e36665d78176a9225e3e

Email authentication partial

SPF
v=spf1 include:_spf.protonmail.ch mx ~all
softfail (~all)
DMARC
v=DMARC1; p=none
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2025-09-25 to 2026-10-06
Expires in 140 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://menus.flikisdining.com

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self' 'unsafe-inline' nutrislice.com *.nutrislice.com *.nutrislice-engage.com *.flikisdining.com https://*.amazonaws.com https://*.googleapis.com https://*.google.com https://*.gstatic.com https://www.googletagmanager.com https://*.typekit.net https://www.google-analytics.com https://*.freedompay.com http://*.cbord.com https://*.stripe.com https://*.payrix.com https://*.heartlandportico.com https://*.elementexpress.com; font-src https: data:; img-src https: data:; media-src https: data:; worker-src https: blob:; frame-ancestors https:; object-src 'none'; base-uri 'self';

Linked from (4)