heartlandadvisors.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Termly
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- app.termly.io×1
- cdnjs.cloudflare.com×1
- fonts.googleapis.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Name.com, Inc.
- Created
- 1998-02-13
- Expires
- 2027-02-12 267 days left
- Updated
- 2026-01-21
- Name servers
-
- ns1.name.com
- ns2.name.com
- ns3.name.com
- ns4.name.com
DNS records live
- NS
-
- ns1.name.com
- ns2.name.com
- ns3.name.com
- ns4.name.com
- MX
-
- 10 us-smtp-inbound-1.mimecast.com
- 20 us-smtp-inbound-2.mimecast.com
- TXT
-
0ed1fe018a84f7e386c724402cb25b9adafce2f786pardot_302721_*=1683539364a7abb9c68e72220364be90681c679366831956b60cb6c6f4f4a5fa
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 include:_netblocks.mimecast.com include:aspmx.pardot.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject;rua=mailto:f64cd4f80b7f998@rep.dmarcanalyzer.com;ruf=mailto:f64cd4f80b7f998@for.dmarcanalyzer.com;fo=1;policy: reject (enforced) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvrGeUtihF9PVdWVLY+y43oaNtPFfaG85s6gmP9PXUFXgzZDOt+RunjVUVsRX+AHx+NufJ66uHC7KRyCR/4… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzm+SZ/Gxd9e+4mKUmRcR9IDxuwzp2OOOl3UQ/ENM7vEtgoneHfP5xKvxzfzb4zXBFTr+PlVIS1WAt7qONS…
selectors probed - s1:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 148 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- permissions-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self), camera=(self)- x-content-type-options
nosniff- content-security-policy
default-src https: data: 'unsafe-inline' 'unsafe-eval'; frame-ancestors 'self'- strict-transport-security
max-age=31536000; includeSubDomains- cross-origin-resource-policy
same-site- content-security-policy-report-only
default-src https: data: 'unsafe-inline' 'unsafe-eval'
Links to (3)
- linkedin.com×2
- termly.io×2
- youtube.com×2