fortisbc.com
HTML metadata
Technology
- CDN
- Cloudflare
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (2)
- use.typekit.net×4
- cdn.insight.sitefinity.com×1
Social
Contact
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2004-01-08
- Expires
- 2030-01-08 1330 days left
- Updated
- 2022-09-10
- Name servers
-
- courtney.ns.cloudflare.com
- robert.ns.cloudflare.com
DNS records live
- NS
-
- courtney.ns.cloudflare.com
- robert.ns.cloudflare.com
- MX
-
- 0 fortisbc-com.mail.protection.outlook.com
- TXT
-
Show 40 TXT records
apple-domain-verification=msP3W4kjugUPnnIrqj4008cl55302ko4b9hge9oum4v=spf1 ip4:199.60.25.7 ip4:199.60.24.7 ip4:208.181.106.225 include:spf.protection.outlook.com include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email -all14d4r27ahcbh97t84dpbel7gngt3o8eutklkts2ju1s4s736gqodsi58r25h607tviaaq41rje1la98pbasmkbmiufg206mt6ao4vn6v7aqo5hjv7pccb4bskqgvnfglkejat3u1rsga7ei8gviub5mgd6uovonfsthf0urc793mm6ganjnc2cisco-ci-domain-verification=74481dfe289b573a1af906792dc657b5fcbbe5c621f81d1d0cf8280f0f28a50av6hb2aup71q57leie27q12nd7egoogle-site-verification=e0woIpRuK1RQGrNatFtoahYnyZpkn5VvA9MP4EUG5JU4ocq4e40mq6q7h26nn6kg6jkgonnejm79u6ngpnvrms8qke867jk8buio2h4m8lolonj7tj7bnbfgl04h8siss716kpvuempdsuqv6kfn8dhju3mhd0a1grkvp8vleupt96b2aqfillu8a8r8smc245cul3s6mm56aqs6c37rps0eaiat00qb4mh7p55i9m1c4850oshc4vp7intersight=30c37b452e8cea8680d3ddc824f05598143cae129c7d1e9fce92c9029318f604sf7bamijtfugaoupp65d5ljqc5nqsnsjguhdd8lbsug0sm820gdrpu3vdiml6bq85p4vsvitcis8g2vC5wlldvFMCYE6gM9jVONqJDLzrOD2JrxTbuzUdB3iSInKX+HgXBECeh7pMQXBdlGRmjQyUoAGXcZ5MudqUPIQ==jo5ohi21isgenpf23nat9av0m08d2ae55edqkn9r80o4onh07kbjefaqenu4dhg34ts4sv50b3vn724dfcv41a2no1dl8ss4uqje5vqvatlassian-domain-verification=8ocUxe75HI7ZvYxO6gttRg27Qb0pEJo6vDTKPTGn1Cap3Ji7YO2s1TAVFohkrl8eMS=ms10685086ls83j83mkne541lp0u95q213rfqq71kfk4sgcm9b7an5b3f7uuajl8hassne848uedccunms13qsf8nintex.629e6c65ab0e66006828367c22ebp0hg4buid07lc5vrmkpo5re87jgf88l3jmidh0doqgdordv7facebook-domain-verification=enfpyoy7jjf3perrshoonqmqn11xsi2ulmtstqnhcsees9lr4e1hf1a5
Certificate (current)
WE1
Expires in 65 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https:; script-src 'self' www.google.com apis.google.com ajax.aspnetcdn.com platform.twitter.com https://syndication.twitter.com/ https://s.ytimg.com https://publish.twitter.com *.twimg.com platform.linkedin.com 'unsafe-inline' 'unsafe-eval' https://view.ceros.com/ https://s.amazon-adsystem.com https://fbcdotcomorcdev.blob.core.windows.net https://fbcdotcomorcdevcdn.azureedge.net https://code.jquery.com www.pinterest.com https://fbcdotcomprod.blob.core.windows.net https://www.cdn.fortisbc.com https://subscriptions.fortisbc.com https://webforms.fortisbc.com https://www.gstatic.com https://dev-fortisbc.managemailing.com https://script.hotjar.com https://www.googletagmanager.com https://tagmanager.google.com https://*.eyereturn.com https://static.hotjar.com https://connect.facebook.net maps.googleapis.com ajax.googleapis.com *.google-analytics.com https://www.youtube.com/iframe_api https://www.gstatic.com/recaptcha/api2/v1552285980763/recaptcha__en.js https://www.google- strict-transport-security
max-age=31536000; includeSubDomains