heartgard.com
HTML metadata
Technology
- CMS
- Drupal
Contact
- Phone
Registration
- Registrar
- Nameshield SAS
- Created
- 1996-11-22
- Expires
- 2027-11-21 550 days left
- Updated
- 2025-11-19
- Name servers
-
- nsa.perf1.fr
- nsb.perf1.com
- nsc.perf1.com
DNS records live
- NS
-
- nsa.perf1.fr
- nsb.perf1.com
- nsc.perf1.com
- MX
-
- 10 relaymx.ordipat.eu
- TXT
-
Show 5 TXT records
google-site-verification=MNBWp17IfXLqTjKn6MkTicYVKiYAE1ED8Da7Bgn8TlIglobalsign-domain-verification=8D7FD58B8C67ECA64BE19E47576C08FEljxpk70xyk184phxh88wkjh9sdbb6p1zgoogle-site-verification=aKgHDouLGrJOEvTUDvEldFo79NfGIpYO0a2YP4EfVeoglobalsign-domain-verification=ecd237cc6ec4977ed77e090f3a81ff62
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
GlobalSign Atlas R3 DV TLS CA 2026 Q1
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.googleapis.com *.youtube.com *.productfruits.com *.doubleclick.net *.adsrvr.org; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.googletagmanager.com *.connect.facebook.net *.bi-instatag.com *.googleapis.com *.adobedtm.com *.cookielaw.org *.youtube.com *.everesttech.net *.demdex.net *.facebook.net https://trkn.us; object-src 'none'; style-src 'self' 'unsafe-inline' *.googleapis.com; img-src 'self' 'unsafe-inline' data: *.productfruits.com *.pricespider.com *.googleapis.com *.gstatic.com https://cdn.cookielaw.org *.facebook.com *.omtrdc.net *.doubleclick.net *.googletagmanager.com *.googlesyndication.com *.wayvia.com https://trkn.us; frame-src 'self' *.adsrvr.org *.doubleclick.net *.youtube.com; font-src 'self' 'unsafe-inline' *.gstatic.com data: ; connect-src 'self' *.bi-instatag.com *.googleapis.com *.cookielaw.org *.onetrust.com *.google.com *.omtrdc.net *.doubleclick.net *.demdex.net *.bi-oneweb.com *.productfruits.com *.facebook.net *.facebook.com *.googlesyn- strict-transport-security
max-age=31536000