hermesawards.com
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Ads
-
- Google Ads
- Google Ads (DoubleClick)
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- fonts.googleapis.com×8
- amcprofessionals.com×6
- assets.adobedtm.com×1
- gmpg.org×1
- googleads.g.doubleclick.net×1
- www.facebook.com×1
- www.googleadservices.com×1
Social
Contact
- Phone
Registration
- Registrar
- Network Solutions, LLC
- Created
- 2007-01-27
- Expires
- 2027-01-27 252 days left
- Updated
- 2025-11-28
- Name servers
-
- ns.liquidweb.com
- ns1.liquidweb.com
DNS records live
- NS
-
- kai.ns.cloudflare.com
- ns.liquidweb.com
- ns1.liquidweb.com
- rafe.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
_globalsign-domain-verification=D_wNI5eY_Grtm4cSIx0QSBt17TXv7yY75JkHOT-wItgoogle-site-verification=GlMlfWrHGBx1TXkV_mqlnpsDYQXuVUimF_fvcldWMa0
Email authentication partial
- SPF
-
v=spf1 +a +mx +ip4:209.59.161.225 +include:spf.braintreegateway.com +include:_spf.google.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc-info@hermesawards.compolicy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzjSO6NuMQ/sTK3L7Sd6l2oRcBPs4a2GMKCK6yKEmZXmhuvl5OrhpftJEZ2DLP2UOc5joSv75uUI9LD… - google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuWFnu93Uh+ENlCZo15IucnvgooUc+xDiELLu9VOjNesxnxGnN/c6yRPpm8KWv54cSlznm5YV0xRBWC… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - dkim:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQD+dja4PjPMVLh1MHH0HOPIUt/2qki+twvpKE+m8HH0KBDP2yvvqG+0VzfA2solivf2mbKMlzv2SzHSis4Xn++b6fMGZk5…
selectors probed - default:
Certificate (current)
R12
Expires in 43 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=*, microphone=*, camera=*, fullscreen=*- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'nonce-txxz9qvLCZWgkPd10gGScA==' 'strict-dynamic' 'unsafe-hashes' 'unsafe-eval' 'sha256-89Jz+BzwhE31OWn9rOWxEU1h4yqiL+bS2cVl65q3gI8=' 'sha256-1jAmyYXcRq6zFldLe/GCgIDJBiOONdXjTLgEFMDnDSM=' 'sha256-wXbc6Ayf3iyguDceHMc4pF+rxsYdAiIJL7A+HBbtuwk=' 'sha256-mGF0+Y+ibSs+QY0F5+AiL/9NgMk8H1+uBLpsA3D8UpE=' 'sha256-t8B8sF2UNjgvbsRPVaiuTRN8bz/UxkT7u0IiirZXfhY=' ; style-src 'self' 'unsafe-inline' *; object-src 'none'; font-src * data:; base-uri 'self'; connect-src *; frame-src 'self' *; img-src 'self' * data:; manifest-src 'self'; media-src 'self' *; worker-src 'self' blob:;- strict-transport-security
max-age=31536000; includeSubDomains; preload