hiltonfoods.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (4)
- agencydatacreative.com×2
- fonts.googleapis.com×1
- player.vimeo.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- TLDS L.L.C. d/b/a SRSPlus
- Created
- 2004-10-28
- Expires
- 2026-10-28 149 days left
- Updated
- 2025-10-29
- Name servers
-
- dns1.tibus.net
- dns2.tibus.net
DNS records live
- NS
-
- dns1.tibus.net
- dns2.tibus.net
- MX
-
- 0 hiltonfoods-com.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
22AYbZ0yHGnuiipRUJFmWolx/gpys5IUu1/r9bbLmgtyvpxof+uOvXX/m8VB6h8Qeqc5Uy1Xe41tICTrlASG4w==knowbe4-site-verification=52a79231c6869e126b2e78e63d8bdc52886300bt2mdgpqt97ha2rpnfghmepf5p438vlsag4fnv2gjon54vpexip-ms-tenant-domain-verification=e6e92dd2-a82f-453d-bdf5-894bd3d4231e
Email authentication strong
- SPF
-
v=spf1 include:spf1.hiltonfoods.com include:spf2.hiltonfoods.com include:spf3.hiltonfoods.com include:spf.protection.outlook.com include:spf-00331a03.pphosted.com ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=quarantine;rua=mailto:dmarc-rua@Hiltonfoods.compolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyN3KgzW/nBiiirWaW4qZiCn+BHdRFBojAG7josXM5chAhGY7+FGMTGfAnnRqiajJKG6kyyh5Y4rtF5… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4PcCU6Lj92TtY3voR//6kXaaz4jsiq3rDSxacrBpvl4arvoWmQvtcoM9w9r4o3NA0y4acDflaI+CQP… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
R13
Expires in 39 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
microphone=(), payment=(), sync-xhr=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self';base-uri 'self';object-src 'none';script-src 'self' 'unsafe-inline' 'unsafe-eval' 'report-sample' www.google.com www.gstatic.com cc.cdn.civiccomputing.com maps.googleapis.com player.vimeo.com *.googletagmanager.com googletagmanager.com https://agencydatacreative.com https://cdn.jsdelivr.net;script-src-elem 'self' 'unsafe-inline' 'unsafe-eval' 'report-sample' www.google.com www.gstatic.com cc.cdn.civiccomputing.com maps.googleapis.com player.vimeo.com *.googletagmanager.com googletagmanager.com https://agencydatacreative.com https://cdn.jsdelivr.net;style-src 'self' 'unsafe-inline' 'report-sample' fonts.googleapis.com;connect-src 'self' maps.googleapis.com our.umbraco.com *.google-analytics.com google-analytics.com apikeys.civiccomputing.com clapi.civiccomputing.com;font-src 'self' data: fonts.gstatic.com;frame-src 'self' www.google.com polaris.brighterir.com youtube.com www.youtube.com player.vimeo.com;img-src 'self' data: i.vimeocdn.com our.umbraco.com dashboard.umb- strict-transport-security
max-age=31536000 ; includeSubDomains
Links to (1)
- csod.com×1