foreflight.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (7)
- d32dgjuo8qzfhk.cloudfront.net×25
- cookie-cdn.cookiepro.com×1
- foreflight-www.s3.amazonaws.com×1
- use.typekit.net×1
- www.facebook.com×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2005-07-21
- Expires
- 2026-07-21 62 days left
- Updated
- 2026-05-13
- Name servers
-
- ns-1372.awsdns-43.org
- ns-1620.awsdns-10.co.uk
- ns-497.awsdns-62.com
- ns-712.awsdns-25.net
DNS records live
- NS
-
- ns-1372.awsdns-43.org
- ns-1620.awsdns-10.co.uk
- ns-497.awsdns-62.com
- ns-712.awsdns-25.net
- MX
-
- 10 mxa-000f9d01.gslb.pphosted.com
- 10 mxb-000f9d01.gslb.pphosted.com
- TXT
-
Show 11 TXT records
pardot1079732=039993053448c5ac7f9983cab7e7427867f361d527edde8bfab1c20330ef0f81vmware-cloud-verification-c0900804-7d24-4db9-93f3-cef1b09f4079mandrill_verify.jQSN1HJVFA253Z6YI24ucQpardot1079732=e1f5f134c559e397c5ce7d8b18037787bd1ae25b4875c6a5d5bb53ab568d7904bitrise-verification=58dbeed8d17a1c3a-HS43k9lXXhxnstatus-page-domain-verification=45h7lhzrrll8jamf-site-verification=xOqtMGg1PimWxDtWsPcryAdocusign-FS-785f6d66-9223-49e6-a59c-0c8d25433df7taegis-domain-verification=ea483ea3f905e81a29932f4ff344d9d2ccfad7bc0c147f9d2546d0a802293b54sophos-domain-verification=b3faef0975906c00a8e8abf07c0fabe76326138aa3966dd1415c00ae0ee4d1ccbox-domain-verification=18a04749e2e57870bd69a6dad32d1a05e4cfcdfa09e3d6a589ae30b5b4834fbe
- Verified for
-
- Apple
- Atlassian
- Cisco
- Cisco Webex
- DocuSign
- Microsoft 365
- Segment
- Smartsheet
Email authentication strong
- SPF
-
v=spf1 include:_s00967175.autospf.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:ocyj5pru@ag.us.dmarcian.com; ruf=mailto:ocyj5pru@fr.us.dmarcian.com;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCLtd6+8EeSByBl6vngKK+9cfykuRezVxDgkPgpcOI2qY/ktDQCvnmjfjE34B5JUnpVqWFjbJZpzk5v4ox7rt… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2dbWrWiD5qudF3jjYuJvucv/wpHUGOOCUwlTEFVg+kidPjdfU2ZgpGsVKktV+oqc9C96VNjcwro80HyfdA… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDlZL56dSEjSIan5ptOmuuSujhHC4EsN3vH9oofsgrHAY9ROCJeH97XZ9axKL+VNV7CvbjDlecfxdSvNOIRKZ+m+O… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M01
Expires in 152 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- findings
-
- short HSTS max-age
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
img-src * data: blob:; base-uri 'self'; connect-src 'self' https://browser-http-intake.logs.datadoghq.com https://ekr.zdassets.com/ https://zendesk-eu.my.sentry.io https://foreflight.zendesk.com/ https://api.mapbox.com/styles/v1/foreflight/ https://www.google-analytics.com https://analytics.google.com https://api.segment.io https://cdn.segment.com https://foreflight.com data: https://www.facebook.com wss://foreflight.com https://cookie-cdn.cookiepro.com wss://widget-mediator.zopim.com zdassets.com zendesk.com wss://zopim.com braintreegateway.com *.doubleclick.net https://cdn.segment.com/ https://releases.django-cms.org https://raw.githubusercontent.com *.boxcloud.com https://foreflight-sync.s3.amazonaws.com/ https://static.hotjar.com https://metrics.hotjar.io https://cdn.linkedin.oribi.io/ https://www.google.com/ https://foreflight-www.s3.amazonaws.com/ https://public-api.wordpress.com/ https://vc.hotjar.io/ wss://ws.hotjar.com/ https://content.hotjar.io/ https://pagead2.googlesyndicat- strict-transport-security
max-age=3600- cross-origin-opener-policy
same-origin