golfnow.eu
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Ghost
- Analytics
-
- Google Tag Manager
- Ads
-
- Google Ads (DoubleClick)
- Cookie consent
-
- OneTrust
Third-party hosts loaded (11)
- 0dyufi7a.cdn.imgeng.in×19
- cds.golfnow.com×3
- www.golfnow.com×3
- www.golfnow.co.uk×2
- www.googletagmanager.com×2
- cdn.cookielaw.org×1
- exddilid.cdn.imgeng.in×1
- sb.scorecardresearch.com×1
- securepubads.g.doubleclick.net×1
- static.golfchannel.com×1
- www.golfnow.com.au×1
Social
DNS records live
- NS
-
- dns1.p01.nsone.net
- dns2.p01.nsone.net
- dns3.p01.nsone.net
- dns4.p01.nsone.net
- ns05.sportsdns.net
- ns06.sportsdns.net
- ns07.sportsdns.net
- ns08.sportsdns.net
- MX
-
- 10 mxa-00a17301.gslb.pphosted.com
- 10 mxb-00a17301.gslb.pphosted.com
- 20 mx0a-00a17301.pphosted.com
- 20 mx0b-00a17301.pphosted.com
- TXT
-
sending_domain463852=16dd45d2b9806796a3e407e3554be0bb571ce41c522828f41a04e2b84b4832dbgoogle-site-verification=rIo4ylKOvhuQT66ZqHHDFlZHlhuXL31wfhW5_FuC9UEMS=ms77397338
Email authentication strong
- SPF
-
v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com include:_spf.salesforce.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.compolicy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 20 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
ch-viewport-width=(self "https://0dyufi7a.cdn.imgeng.in/"), ch-width=(self "https://0dyufi7a.cdn.imgeng.in/"), ch-dpr=(self "https://0dyufi7a.cdn.imgeng.in/"), ch-ect=(self "https://0dyufi7a.cdn.imgeng.in/")- x-content-type-options
nosniff- content-security-policy
media-src * blob:; worker-src * data: blob:; default-src https: *.cdn.imgeng.in *.akamaized.net *.golfnow.com *.golfnow.io *.golfnow.com.au *.golfnow.eu *.teeoff.com *.teeitup.com *.golfid.io data: blob; connect-src http: ws: self; script-src https: data: *.cdn.imgeng.in *.akamaized.net *.golfnow.com *.golfnow.io *.golfnow.com.au *.golfnow.eu *.teeoff.com 'unsafe-inline' 'unsafe-eval' https://www.google-analytics.com; style-src https: data: blob: *.cdn.imgeng.in *.akamaized.net *.golfnow.com *.golfnow.io *.golfnow.com.au *.golfnow.eu *.teeoff.com https://fonts.googleapis.com 'unsafe-inline'; img-src https: blob: data: *.cdn.imgeng.in *.akamaized.net *.golfnow.com *.golfnow.io *.golfnow.com.au *.golfnow.eu *.teeoff.com s3.amazonaws.com https://www.google-analytics.com *.googleusercontent.com; font-src https: data: *.cdn.imgeng.in *.akamaized.net *.golfnow.com *.golfnow.io *.golfnow.com.au *.golfnow.eu *.teeoff.com https://fonts.gstatic.com; frame-src https: data: *.cdn.imgeng.in *.akama- strict-transport-security
max-age=31536000; includeSubDomains; preload