gurusup.com
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2023-10-30
- Expires
- 2026-10-30 164 days left
- Updated
- 2024-09-19
- Name servers
-
- jason.ns.cloudflare.com
- leia.ns.cloudflare.com
DNS records live
- NS
-
- jason.ns.cloudflare.com
- leia.ns.cloudflare.com
- MX
-
- 1 smtp.google.com
- TXT
-
google-site-verification=-4zSUg0y8d1FU-iR-mdzhfj_9WG7tf3cX3lHfTDQ7o0google-site-verification=NRcmLR80K25CLaa5xOvEGB_2qD-dFTxbX-bZKxGjO4Ygoogle-site-verification=n4ksiYtg46vFC22QdBPem_q5Nc4rVGyshC1fsV7i3RE
Email authentication partial
- SPF
-
v=spf1 include:49557561.spf07.hubspotemail.net include:_spf.google.com -allstrict (-all) - DMARC
-
v=DMARC1;p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 58 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(), geolocation=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.googletagmanager.com *.google-analytics.com *.doubleclick.net *.googleadservices.com *.googlesyndication.com connect.facebook.net www.clarity.ms scripts.clarity.ms js.hs-scripts.com js.hubspot.com js.hs-analytics.net js.hsforms.net js-na1.hsforms.net js.hsadspixel.net js.hs-banner.com js.hscollectedforms.net cdn.mxpnl.com *.mixpanel.com app.gurusup.com vercel.live cdn.socket.io cdn.jsdelivr.net eu-assets.i.posthog.com snap.licdn.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com; img-src 'self' data: blob: res.cloudinary.com *.googletagmanager.com *.google-analytics.com *.doubleclick.net *.googleadservices.com framerusercontent.com *.facebook.com *.facebook.net www.google.com www.google.es track.hubspot.com *.hsforms.com *.googlesyndication.com cdn.simpleicons.org hatscripts.github.io flagcdn.com api.iconify.design *.clarity.ms px.ads.linkedin.com; font-src 'self' fonts.gstatic.com data:; connect-src 'self' *- strict-transport-security
max-age=63072000; includeSubDomains; preload