heysummit.com
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
Social
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2018-08-24
- Expires
- 2026-08-24 97 days left
- Updated
- 2025-07-20
- Name servers
-
- justin.ns.cloudflare.com
- miki.ns.cloudflare.com
DNS records live
- NS
-
- justin.ns.cloudflare.com
- miki.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 7 TXT records
amazonses:uHKJUzN0OYpDl4ulG8Ccdln8P7XI56uOCiZqzbBvABo=google-site-verification=IoEqE32Yy7Zbyc8gIfhpajeewlB3vafykHa6Gxb0vCkgoogle-site-verification=RN90cH3u5crETu9VILSo8rQ9BFNkBZIGzSYpW3029BIhubspot-developer-verification=OGM1ODQyYTAtYTJmNy00NGVjLWE2ZGYtMmQ4YWU0YzM2NjVimandrill_verify.EsiZVV6VtPTab_3wr2mmJgopenai-domain-verification=dv-H9sYabmeAWyQrgST5DXjsraLpostman-domain-verification=f5592282551623b3ad1e76c34fd5add9256f427273ad33154151124649fb817a78a6b1e6776b34d79d50c54e8cfddd03c37719b775ca5f6ba142e33a2a96f47e
Email authentication strong
- SPF
-
v=spf1 include:spf.mandrillapp.com include:amazonses.com include:_spf.google.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:d1f66047fa9b4a088e5f1925aaf58423@dmarc-reports.cloudflare.net,mailto:re+5d4e41a819f1@inbound.dmarcdigests.compolicy: quarantine - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2OdrjXn5Q+988PTfqzIBsDeFiejzsiPOS1YRZmDNsVEhJzbYKV7LZvmuYeBxZEis9Y7wGNWiULX86/… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
R12
Expires in 42 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(), geolocation=(), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'nonce-ZDA0ZjFlYjYtZjQxOS00ZDc1LTgxOGYtZTFlMmNkMjJjMGVi' 'unsafe-inline' blob: *.intercom.io *.intercomcdn.com *.bing.com *.google-analytics.com *.googletagmanager.com https://js.stripe.com https://checkout.stripe.com https://www.youtube.com https://player.vimeo.com https://cdn.vercel-insights.com https://va.vercel-scripts.com https://vercel.live https://js.hs-scripts.com https://js.hs-analytics.net https://eu.i.posthog.com https://eu-assets.i.posthog.com https://us-assets.i.posthog.com script.crazyegg.com connect.facebook.net snap.licdn.com cdn.firstpromoter.com ; style-src 'self' 'unsafe-inline'; img-src 'self' blob: data: https://heysummit-web.s3.us-east-1.amazonaws.com *.googleusercontent.com *.bing.com *.bing.net *.intercomcdn.com *.intercomassets.com *.facebook.com *.linkedin.com googleads.g.doubleclick.net *.google.com *.google.co.uk; font-src 'self' data: *.intercomcdn.com https://fonts.gstatic.com; media-src 'self' *.intercomcdn.com; conne- strict-transport-security
max-age=63072000