homnya.com
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- cdn.cookie-script.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Tucows Domains Inc.
- Created
- 2024-05-27
- Expires
- 2027-05-27 373 days left
- Updated
- 2024-10-21
- Name servers
-
- ns1-36.azure-dns.com
- ns2-36.azure-dns.net
- ns3-36.azure-dns.org
- ns4-36.azure-dns.info
DNS records live
- NS
-
- ns1-36.azure-dns.com
- ns2-36.azure-dns.net
- ns3-36.azure-dns.org
- ns4-36.azure-dns.info
- MX
-
- 0 homnya-com.mail.protection.outlook.com
- TXT
-
Show 8 TXT records
google-site-verification=TATnpqS0ddLgYj9gwN-R9aaynH80_vRH4YmCBvVUcQEapple-domain-verification=lhtx5r1F2ceyMBzEsitecore-domain-verification=0768ff96bdfd4ff5a27108dcd0cc59c5canva-site-verification=3BkUlg6VIMCt4sKpLcTaPwopenai-domain-verification=dv-hSSdQAS8wOpFJWVj8Ln1bgpeMS=ms61522504docusign=8e8301b6-d79a-415d-80bc-23f95c9635fafigma-domain-verification=2d2ad2e31a0b99df608a691dad7d5458b175e6cc1b8b1e6e64b940519fe94458-1728305773
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:musvc.com include:sendgrid.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:dmarc_rua@consulcesi.com,mailto:dmarc_agg@vali.email; ruf=mailto:dmarc_ruf@consulcesi.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx+fgBTeMZVputMsgu30BYknsMmiH8s9ZdUUYn2b0yf5woXOQgTadndMSIkNiPTGsPsTscSyudTog1Q… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAweUeb1Vm27GDkz4Vetfp6qFJlOdzosnQkLs9FdB25KM/e6Rzn+OHm7DSMX98ESIkXDdGiPDStZ2Ytf… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu/FjQhg2Lsu8mTN9W7/jY/2aSd/CNz7Kgf6Xn9CmRys1A9DMwxbi/JNCpFnjVLQMb5A0DYa1IUkcwuS7dQ… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDLSqp/HKmRi1uDDJfLRUaNQUk++e35+sCNyl39MKnhNUgFUDvu9XqyeWtrHAP0suojAiB42Q+teWYhwye3xWbcA+…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 78 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self'; block-all-mixed-content; default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdnjs.cloudflare.com https://beacon-v2.helpscout.net https://m.stripe.network https://fast.wistia.com https://beacon-v2.helpscout.net https://cdn.cookie-script.com https://googletagmanager.com https://tagmanager.google.com https://www.gstatic.com https://www.google.com https://www.googletagmanager.com https://report.cookie-script.com; style-src 'self' 'unsafe-inline' ams.wpml.org fonts.googleapis.com tagmanager.google.com www.googletagmanager.com; object-src 'none'; frame-src 'self' https://m.stripe.network *.wp-rocket.me *.google.com *.googletagmanager.com; child-src 'self' *.wpml.org *.googletagmanager.com; img-src 'self' data: *.w.org *.gravatar.com *.google.com *.google.it fonts.gstatic.com *.googletagmanager.com; font-src 'self' data: fonts.googleapis.com fonts.gstatic.com; connect-src 'self' https://m.stripe.network *.wpml.org *.cookie-script.com fonts.gsta- strict-transport-security
max-age=31536000; includeSubDomains; preload