hendersonbeachresort.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress 4.9.3 outdated (current 6.8)
- jQuery
- 2.9.22 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (9)
- newbooking.azds.com×3
- www.google.com×2
- cdn.cookielaw.org×1
- components.flip.to×1
- elfsightcdn.com×1
- integration.flip.to×1
- the-henderson-beach-resort-spa.by.beachyapp.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- 200 henderson resort way, 32541, Destin, FL, USA
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2011-08-03
- Expires
- 2026-08-03 74 days left
- Updated
- 2025-09-01
- Name servers
-
- pdns09.domaincontrol.com
- pdns10.domaincontrol.com
DNS records live
- NS
-
- pdns09.domaincontrol.com
- pdns10.domaincontrol.com
- MX
-
- 0 mxa-0036e702.gslb.pphosted.com
- 1 mxb-0036e702.gslb.pphosted.com
- TXT
-
wombat-verification=3KwxVCQV1HEp-aRXRTKKaZ5G0frhk
- Verified for
-
- Microsoft 365
- Smartsheet
Email authentication partial
- SPF
-
v=spf1 ip4:205.220.177.160 ip4:69.85.249.163 include:ivvy.net include:spf.protection.outlook.com include:sendgrid.net ip4:209.164.5.203 a:opt2u.com a:hdm01.com ip4:209.216.38.208 ip4:205.220.165.160 include:sendgrid.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDWXQOao2ty507z69HLM9xNUGX7Al5oQqqWCFI8pi+kk46cQju4hIn8lE+YYHVTBMqPUmbceHM9fRJ9Esxnfv… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxJBYr4yWW8np/O8sqahO83C4dZ04wIuvkfiuDu3iaqJy2fLMYg9fPMBY6NiURiVIhZ2HXkDfZWogZfdbkM… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDI2siPBu2hPVrIfHkikExMad1/EF/VnIpTWI5IeFNa9QFcnohW7sEEDHjXqJKErFYTSa1seaFdH9ksJazlt5cl9G…
selectors probed - selector2:
Certificate (current)
R12
Expires in 50 days
HTTP security headers
- present
-
- strict-transport-security
- x-frame-options
- findings
-
- missing Content Security Policy
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- strict-transport-security
max-age=63072000; includeSubDomains