hexagram.io
HTML metadata
Technology
- Server
- Squarespace
- CMS
- Squarespace
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (6)
- images.squarespace-cdn.com×17
- definitions.sqspcdn.com×15
- assets.squarespace.com×10
- static1.squarespace.com×5
- use.typekit.net×2
- p.typekit.net×1
Social
Contact
DNS records live
- NS
-
- ns-1218.awsdns-24.org
- ns-1913.awsdns-47.co.uk
- ns-6.awsdns-00.com
- ns-970.awsdns-57.net
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
Email authentication weak
- SPF
-
v=spf1 include:_spf.google.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4wE9usagxPHGS9mxgQojP/wIcBvV85lzz1wcfLgL0u0kR36wwnI3RCvwD579T0dR9mfTNqiSGhK847Cxpd… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2zboL2Xf9MM7ou8RSZLtQQaxuP6LqhkFWFAaMLZ5S+V11osINqkoV/cK7vOmS/D0KJXCXu9Ddv5wqqeCLI…
selectors probed - s1:
Certificate (current)
R12
Expires in 66 days
HTTP security headers
- present
-
- strict-transport-security
- x-frame-options
- x-content-type-options
- findings
-
- missing Content Security Policy
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=15552000