fruitoftheloom.eu
HTML metadata
Technology
- Server
- sfdcedge
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (4)
- cdn.fruitactivewear.com×1
- cdn.tailwindcss.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
DNS records live
- NS
-
- udns1.cscdns.net
- udns2.cscdns.uk
- MX
-
- 10 mx0.webpack.hosteurope.com
- TXT
-
i6427one92iv64thk2k38d1uksp2qbqen1uu0uru86tgh2tua1t
Email authentication partial
- SPF
-
v=spf1 a mx include:spf.server-he.de -allstrict (-all) - DMARC
-
v=DMARC1; p=none; fo=1; ri=3600; rua=mailto:fruit@rua.agari.com; ruf=mailto:fruit@ruf.agari.compolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 91 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
ALLOWALL- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests, frame-ancestors *; report-uri /_/commcsp?disposition=enforce- strict-transport-security
max-age=63072000; includeSubDomains- content-security-policy-report-only
frame-src *.force.com https://player.vimeo.com 'self' https://stats.g.doubleclick.net https://use.typekit.net *.youtube.co.uk https://sfdc-link-preview.hk.salesforce.com https://p.typekit.net https://checkoutshopper-test.adyen.com/ https://www.facebook.com https://pal-test.adyen.com *.cybersource.com *.youtube.es https://www.iubenda.com https://tagassistant.google.com *.adis.ws https://www.gstatic.com https://online.flippingbook.com https://fotlinc.file.force.com https://cdn.linkedin.oribi.io *.youtube.ie https://www.youtube.com https://hits-i.iubenda.com *.cloudinary.com https://www.google.com https://pay.google.com *.vimeo.com *.youtube.jp bcove.video *.clarity.ms https://usa748.sfdc-8tgtt5.salesforce.com *.youtube.fr https://*.a.forceusercontent.com https://player.cloudinary.com fotlinc.my.site.com https://sfdc-link-preview-staging.sfdc.sh https://s1.adis.ws *.forceusercontent.com *.brightcove.net *.youtube.com https://ssl.gstatic.com https://cdn.iubenda.com *.iubenda.com *.youtube.