gavdi.com
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- jQuery
- 3.7.1
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
- Fonts
-
- Google Fonts
Third-party hosts loaded (10)
- fonts.googleapis.com×5
- www.googletagmanager.com×3
- consent.cookiebot.com×2
- fonts.gstatic.com×2
- cdnjs.cloudflare.com×1
- consentcdn.cookiebot.com×1
- js.zi-scripts.com×1
- px.ads.linkedin.com×1
- secure.cart8draw.com×1
- snap.licdn.com×1
Social
Contact
Registration
- Registrar
- Gandi SAS
- Created
- 2007-09-06
- Expires
- 2026-09-06 93 days left
- Updated
- 2025-08-06
- Name servers
-
- ns-107-c.gandi.net
- ns-226-b.gandi.net
- ns-39-a.gandi.net
DNS records live
- NS
-
- ns-107-c.gandi.net
- ns-226-b.gandi.net
- ns-39-a.gandi.net
- MX
-
- 0 gavdi-com.i-v1.mx.microsoft
- TXT
-
Show 7 TXT records
_85gv4hr1r9if7ui0fjjjkevkgyxj9fo2DC76489A1mdggt03xkqw3yhpgr8znyjr02sfdmq3ratlassian-sending-domain-verification=d6a32247-7894-4cfc-9e3c-9833fc0b11f0_mk1t0c55uvo4n0kydt5r3wq04s9uooexwttm2tlrs4zzn4yt0swbmk7bgn6j6ml5115AF4F96
- Verified for
-
- Apple
- Atlassian
- Brevo
- Smartsheet
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.eu.exclaimer.net include:service-now.com a:gavdi.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email; pct=100;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAphspsyyPbK4bGssTktwMkDNLbLQwkI+uqHqMwF1udu4WURFOKpcBfw3L1Dgq6lDoHzeIbsOIunDJhG… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzXqGwDavdlXNVoC36yy32eMsgWQtO9e/zPydgj4cryUFR8LAoUCuSHM7E2Kp3ft++EqmMs0brFc+kB… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - selector1:
Certificate (current)
R13
Expires in 36 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
frame-ancestors 'self'; block-all-mixed-content; default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: https://www.googletagmanager.com https://www.google-analytics.com https://region1.google-analytics.com https://app.intercom.io https://consentcdn.cookiebot.com https://consent.cookiebot.com https://f.vimeocdn.com https://js.intercomcdn.com https://maps.google.com https://maps.googleapis.com https://player.vimeo.com https://secure.cart8draw.com https://www.vimeo.com https://widget.intercom.io https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://js.zi-scripts.com https://ws.zoominfo.com https://tags.clickagy.com https://snap.licdn.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com; object-src 'none'; frame-src 'self' *.vimeo.com consentcdn.cookiebot.com maps.googleapis.com maps.google.com vimeo.com www.intercom-reporting.com www.youtube.com youtube.com https://hemsync.clickagy.com; child-src 'self' *.vimeo.com fast.wistia.net intercom-sheets.co- strict-transport-security
max-age=63072000; preload
gavdi.com