gifthealth.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (9)
- fonts.googleapis.com×5
- fonts.gstatic.com×2
- static.addtoany.com×2
- www.googletagmanager.com×2
- acsbapp.com×1
- cdn-cookieyes.com×1
- js.hs-banner.com×1
- js.hscollectedforms.net×1
- static.zdassets.com×1
Social
Registration
- Registrar
- NameCheap, Inc.
- Created
- 2009-04-27
- Expires
- 2034-04-22 2893 days left
- Updated
- 2024-08-22
- Name servers
-
- galilea.ns.cloudflare.com
- phil.ns.cloudflare.com
DNS records live
- NS
-
- galilea.ns.cloudflare.com
- phil.ns.cloudflare.com
- MX
-
- 1 smtp.google.com
- TXT
-
Show 8 TXT records
launchdarkly-domain-verification=3097dc5d-3332-439c-b903-cd054d5c3741fireflies-verification=01JYMV6KS3QFZKAVSN72KHX97R.ffverify.fireflies.ai-request-verification=2025-06-26T00:46:30Zjamf-site-verification=9sPcRdkrVM8IsBvMRZzoVAppe-199a37eb5ba171be54343822f752bc4816dafd9dmixpanel-domain-verify=8678ccef-9c6f-4f75-b689-519a071134a8_ht5cq26n0oau48q2hu4p96k9c6g8hujmonday-com-verification=WRzH86sD1y-48BUqHdirDSjhIEL7KFNzQTwfOJ5DLDAjetbrains-domain-verification=c5f5slz0y65uc6p04q6wr69em
- Verified for
-
- Adobe
- Anthropic
- Apple
- Atlassian
- Canva
- Cursor
- DocuSign
- Figma
- Linear
- Microsoft 365
- Miro
- Notion
- OpenAI
- Slack
- Stripe
Email authentication partial
- SPF
-
v=spf1 include:spf-00ad3501.pphosted.com include:_spf.google.com include:mail.zendesk.com ip4:168.245.44.103 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:7d79527507ac4f6ebbf6b6da18b5be51@dmarc-reports.cloudflare.net;policy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCSrrCtr7F3GgTr9iCiLUbxRBYqm5k2CsYibDKXyBqujiSpabNXrBfb0TMAf6PFMXZnXEXzBYccQxxr+aanTN… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1/yO+MbmxO5u/3cVcKzntkqM665lmtHR1hXnILQYGIdqa5urxLg1sgG0tbVS1UBuyHWyIo/ILeRi7wfnYp… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2zMDdpPAeBRaivCDiZ7hpeBLk22yu7gdQVHYew5cBIaLL6kbzwWV0D1+rOV2eiiQEa1Yh+ZB/5XPRXjpkg…
selectors probed - google:
Certificate (current)
R13
Expires in 75 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self' https: data: 'unsafe-inline' 'unsafe-eval';font-src 'self' https: data:;connect-src 'self' https:;img-src 'self' https: data:;frame-src https: blob:- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (9)
- bbb.org×1
- facebook.com×1
- instagram.com×1
- legitscript.com×1
- linkedin.com×1
- openbadges.me×1
- reddit.com×1
- urac.org×1
- vanta.com×1