hex.tech
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Cloudflare Insights
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- cdn.sanity.io×28
- fonts.googleapis.com×3
- fonts.gstatic.com×1
- js-na2.hs-scripts.com×1
- static.claydar.com×1
- static.cloudflareinsights.com×1
Social
Contact
- Address
- San Francisco, CA, US
DNS records live
- NS
-
- gabriel.ns.cloudflare.com
- jillian.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 10 TXT records
hubspot-domain-verification=NjZkNjQyZGUtMWRjMy00MGNmLWEyMmEtN2U3ODMzMDFkN2I3pylon-domain-verification-vbn2w2=wXkga9IxUYFyhVmr8kPJr2TYuccisso=7af4df19-f7fb-48a1-95db-b447fa5a808b00D5f000000HV37=1TBVU00000000hZTAILSCALE=3lmos69UeaCRm5z6AuUO7TceAQd9bA53launchdarkly-domain-verification=78322f4b-3f35-4f4b-93c5-05639f2cec9cendgame-domain-verification-wx7epc=zsW4q5qSWNjVor8QyIQOb0ce2rillet-domain-verification-p6kf6p=24mKUzTFN3mQwVoU6dPCHd4IGMS=AD0D19020572997EED743B0F1F0CCDE98C79244Eamazon-business-verification=5760fe291fe44f780a92d59ac9662c4cad7185bdefd966ff492b27f13e4350aa
- Verified for
-
- 1Password
- Anthropic
- Apple
- Atlassian
- Cursor
- Figma
- HackerOne
- Linear
- Microsoft 365
- Notion
- OpenAI
- Slack
- Stripe
- Zapier
- Zoom
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:243040889.spf05.hubspotemail.net include:_spf.salesforce.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; ri=3600; rua=mailto:dmarc-reports@hex.tech;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAgPi9gY4rueIRjcq90BbYtyCT0yTMS5rEicxM4Ee0X3NC/v53/7+I7HhQ+bEvTxJ778IrvaIuJC5IAy…
selectors probed - google:
Certificate (current)
WE1
Expires in 58 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
frame-ancestors https://app.netlify.com https://create.netlify.com https://create.netlifystg.com https://*.sanity.studio https://hex-studio.sanity.studio 'self'- strict-transport-security
max-age=31536000; includeSubDomains; preload- cross-origin-opener-policy
same-origin
Links to (4)
- g2.com×3
- linkedin.com×3
- twitter.com×3
- youtube.com×3