illustrationx.com

.com crawl

First seen 2026-04-30 · Last seen 2026-05-17 · ok HTTP/1.1 200 3757 ms crawled 2026-05-08

US · 54.85.226.61 · AS14618 Amazon.com, Inc.

Reputation 89/100 weak security headers dmarc monitor-only

sector other type homepage

HTML metadata

Title
Global Illustration Agency, Find Top Illustration Talent - IllustrationX
Description
IllustrationX is a leading international illustration agency, representing the most varied and diverse top illustration talent since 1929.
Language
en-US
Canonical
https://www.illustrationx.com/
Translations
  • de
  • en
  • en-au
  • en-gb
  • en-in
  • en-sg
  • en-us
  • es
  • es-ar
  • fr
  • ja
  • ko
  • pt
  • pt-br
  • zh

Open Graph

url
https://www.illustrationx.com/
title
Global Illustration Agency, Find Top Illustration Talent - IllustrationX
description
IllustrationX is a leading international illustration agency, representing the most varied and diverse top illustration talent since 1929.

Technology

CDN
Amazon CloudFront
CMS
Nuxt

Social

Contact

Email
Phone

Registration

Registrar
Register SPA
Created
2018-09-24
Expires
2029-09-24 1223 days left
Updated
2020-01-28
Name servers
  • ns0.phase8.net
  • ns1.phase8.net
  • ns2.phase8.net

DNS records live

NS
  • ns0.phase8.net
  • ns1.phase8.net
  • ns2.phase8.net
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
  • google-site-verification=seArzRr4ZARj7FWOzIeu-Yu1NTNjMjlLAyzY4eP1i64

Email authentication partial

SPF
v=spf1 include:emailsrvr.com include:mailgun.org include:amazonses.com include:_spf.google.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc_agg@vali.email;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

R12
from 2026-04-08 to 2026-07-07
Expires in 48 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.illustrationx.com/

present
  • content-security-policy
  • cross-origin-opener-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self' https: data: blob: 'unsafe-inline' 'unsafe-eval'; img-src * data: blob:; media-src * data: blob:; font-src * data:; connect-src *; frame-src *; object-src 'none'; base-uri 'self';
cross-origin-opener-policy
same-origin-allow-popups

Links to (8)

Linked from (2)