gradimages.com
HTML metadata
Technology
- Server
- Microsoft-IIS
- CMS
- Gatsby
- ASP.NET
- 4.0.30319
- Stack
- ASP.NET
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (6)
- iconic-assets.azureedge.net×9
- script.crazyegg.com×1
- static.klaviyo.com×1
- www.facebook.com×1
- www.googletagmanager.com×1
- www.sc.pages04.net×1
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2002-06-19
- Expires
- 2026-11-04 155 days left
- Updated
- 2025-11-05
- Name servers
-
- ns-1168.awsdns-18.org
- ns-1696.awsdns-20.co.uk
- ns-377.awsdns-47.com
- ns-706.awsdns-24.net
DNS records live
- NS
-
- ns-1168.awsdns-18.org
- ns-1696.awsdns-20.co.uk
- ns-377.awsdns-47.com
- ns-706.awsdns-24.net
- MX
-
- 0 gradimages-com.mail.protection.outlook.com
- TXT
-
klaviyo-site-verification=WvZcER
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:relay.corp-inet.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=quarantine; pct=100; fo=1; rua=mailto:68d15cf4e8205@ag.dmarcly.com,mailto:rua@balfour.com; ruf=mailto:68d15cf4e8205@fo.dmarcly.com,mailto:ruf@balfour.compolicy: quarantine · sp=quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzZNFDcorgoEP6n6ILZHSZ7j0bXUsuqrljZeIo7VRRm2VfcN42ZSNnEANbU0Ss0mf1Xpu8KJWhKLmph… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - selector1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 242 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' iconic-assets.azureedge.net blob:; connect-src *; font-src *; frame-src *; img-src * blob: data:; media-src * blob:; object-src *; script-src * blob: 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline';- strict-transport-security
max-age=86400; includeSubDomains