fontshop.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Cloudflare Insights
Third-party hosts loaded (1)
- static.cloudflareinsights.com×1
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1998-02-13
- Expires
- 2030-02-12 1365 days left
- Updated
- 2024-02-13
- Name servers
-
- peyton.ns.cloudflare.com
- tina.ns.cloudflare.com
DNS records live
- NS
-
- peyton.ns.cloudflare.com
- tina.ns.cloudflare.com
- MX
-
- 0 fontshop-com.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
MS=ms14521799google-site-verification=6ljpuA7G8Q_kJwIrx9ctJ5p92AI2bgbAD6ncwEzerZEgoogle-site-verification=r6TrBio7UMdetZwBKYPHMa2f-9rPWlg6FYkESfGEK1sgoogle-site-verification=xTkImg7jMQgjiJBaWmoH2P8gss3ymxOKQaUZdnTjY3Ml+nbhw4lz+rlV19kjAZje200Kov3IJhy5vHAjcNmEPnTRPwoHuhqa+5S3gmtnB/kgfSS5XF58h87prIz4qBN7g==v=spf1 ip4:192.5.106.0/24 ip4:167.89.14.37 ip4:63.241.211.130 ip4:63.241.211.131 ip4:63.241.211.132 include:_spf.salesforce.com include:mktomail.com include:_spf.createsend.com ~all
Certificate (current)
WE1
Expires in 23 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self';media-src 'self' js.intercomcdn.com; connect-src 'self' https://api.sail-track.com https://cdn.cookielaw.org api-iam.intercom.io nexus-websocket-a.intercom.io api-iam.intercom.io nexus-websocket-a.intercom.io wss://nexus-websocket-a.intercom.io geolocation.onetrust.com api.sail-personalize.com api.company-target.com www.google-analytics.com *.clarity.ms siteintercept.qualtrics.com cdn.cookielaw.org ak.sail-track.com stats.g.doubleclick.net tag-logger.demandbase.com;default-src 'self';frame-src 'self' js.driftt.com s.company-target.com intercom-sheets.com;script-src 'self' 'unsafe-inline' widget.intercom.io *.intercomcdn.com cdn.heapanalytics.com www.googletagmanager.com static.cloudflareinsights.com tag.demandbase.com www.clarity.ms ak.sail-horizon.com www.google-analytics.com siteintercept.qualtrics.com *.siteintercept.qualtrics.com cdn.cookielaw.org js.driftt.com *.clarity.ms;style-src 'self' 'unsafe-inline' www.googletagmanager.com fonts.googleapis.com;font-sr- strict-transport-security
max-age=31536000; includeSubDomains