hyperface.co
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×2
- www.google.com×2
- fonts.gstatic.com×1
- gmpg.org×1
Social
DNS records live
- NS
-
- ns-1269.awsdns-30.org
- ns-2037.awsdns-62.co.uk
- ns-38.awsdns-04.com
- ns-775.awsdns-32.net
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 15 67ac7vbp2spiducng2njodwxvfp4jzg5lo4rzh4ixb3w4zfswqca.mx-verification.google.com
- 5 alt1.aspmx.l.google.com
- TXT
-
Show 7 TXT records
atlassian-domain-verification=iGSeH6vOapiWGUzGRrxWmKEnh77mDnGQwJaI9C/o9/QhvO6zByT5b7Dbnex1ogxmbrevo-code:259cd899086b4f778f583f44b0734bf3google-site-verification=98Av1C_UnoHQTTaalw7XqV_E5N1buRyfiLh3bmSytAQgoogle-site-verification=cmrJQLHOUflAmGg7HD2mSCeQs615rOvxsnLvJrggG88google-site-verification=eVjlLAx9x9y5KFIS2PMpcSEMJBMvAOmhgTlkvAkqzywgoogle-site-verification=sHP5p2B4T7wboCL7k6FQ1D8XEXnteOdRvBnKpy5_89UMS=ms10816725
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:amazonses.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc-reports@hyperface.copolicy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCP865bnvyI0eQYT4Dye6H1DcaGT1g+OQUlrWA4bDun7AuG0LD3EFFFTTDRhmMYahTukv8F5J+ENiY8t1Pi26… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - google:
Certificate (current)
E7
Expires in 47 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' * data: blob: 'unsafe-inline' 'unsafe-eval'; img-src * data: blob:; worker-src 'self' blob:; script-src * 'unsafe-inline' 'unsafe-eval' blob:;