heal.me
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Cloudflare Insights
- Google Analytics
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (8)
- www.googletagmanager.com×2
- dev.visualwebsiteoptimizer.com×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- px.ads.linkedin.com×1
- static.cloudflareinsights.com×1
- www.facebook.com×1
- www.google-analytics.com×1
DNS records live
- NS
-
- pete.ns.cloudflare.com
- rihana.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 6 TXT records
facebook-domain-verification=4lhznka24v8ugyefty82s8mbyatxv3google-site-verification=0aNjpg0_X6BWs0nxf1g7O4Lhhcxjeiul7qmyx8Tg5Lwgoogle-site-verification=VmpdS-e_W9MWbbaK6yKDG01GxhjZ-151-H4QYrWyj_sgoogle-site-verification=hr4Gz_wtlpQkCCLc79zznKIOm81Fr3EON6Q383nm6Pcgoogle-site-verification=nC6yNhJA9d6YyFQK1tRyJdu75e-ARj-_MBNL0LYxExgzoom-domain-verification=ZOOM_verify_f6d2f3306edd407bb178858b14210b38
Email authentication partial
- SPF
-
v=spf1 include:_spf.google.com include:sendgrid.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:maildelivery@heal.mepolicy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAj4kp0hQfIkTk7xZEMtrpbYQgOa+/DGO7A7qqxEhoF/J3Azjnjf1Zkt1rUjOspEWSbAefAJVz99k472… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzjMJNzrU7yl0jYvMjSPDQkzGN74yehdhzdg2KjOKWNKWs85AHvHTaV9EQmOWboDfGIe6DK2RFD3n1R4ooN… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6o0TWtE89vowBZsIPs02TLpMWGBrf6h0UdYGWD3PNGkfWjlSoJ7TxdWn2VIiXnQ6qE2e6k8DdTj17ZMvbF…
selectors probed - google:
Certificate (current)
WE1
Expires in 77 days
HTTP security headers
- present
-
- strict-transport-security
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing Content Security Policy
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=63072000; includeSubDomains