insighttimer.com
HTML metadata
Technology
- Server
- CMS
- Gatsby
Third-party hosts loaded (2)
- apis.google.com×1
- firebase.googleapis.com×1
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2011-02-16
- Expires
- 2028-02-16 638 days left
- Updated
- 2026-02-20
- Name servers
-
- ns-cloud-c1.googledomains.com
- ns-cloud-c2.googledomains.com
- ns-cloud-c3.googledomains.com
- ns-cloud-c4.googledomains.com
DNS records live
- NS
-
- ns-cloud-c1.googledomains.com
- ns-cloud-c2.googledomains.com
- ns-cloud-c3.googledomains.com
- ns-cloud-c4.googledomains.com
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 14 TXT records
google-site-verification=YTaFmwL1w3lYMLrpmLNcn8fagyvcUVuIfaqISMKJ_Ncstripe-verification=72b9b0c1f238dfd0e4ed05d1bf3e56560e8906d5561ce42de8aa878af9ec4be3google-site-verification=DpaoO0dImzfimF4u4LCutvn3ldbw6RRH1b_4xtL0rV8figma-domain-verification=5d048440155d6126219b23ccfa6a674e4a284efa3857aaf959a48aad6442d238-1740981714google-site-verification=vXVdfIl0VuRWvRkb2IkcGP2Vbc_mrbVg_blNlu_axcogoogle-site-verification=lIi46xZ6EfA56VrRc1e2coz1yvw7t0lYzMBB_hiizakgoogle-site-verification=4Kglbvh41sX-xj-NZx0F0HY5c1iw13e4P6kVIAjke7Inuf10846hpo4lirjth9ssr1pogstripe-verification=3b8aa0d6ed08f46a9be0ba2896c93f1b7c3ad5b750202f7422dfdf5fd44fa00aknowbe4-site-verification=2fd9823dba4766e4e3738f98b5e0637fpinterest-site-verification=cb76fd4101d9cb23f26ed275eb2383e2google-site-verification=VF3I_MsbR26kxgRFubxZZItsg1OaTKcuvVI5JmFpKAQfirebase=insight-timer-a1ac7bchorv5hb3uh4tjepqjg8j3nbn
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:sendgrid.com include:_spf.firebasemail.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; pct=100; fo=1; ri=3600; rua=mailto:faa8105c@dmarc.mailgun.org,mailto:1b571c08@inbox.ondmarc.com; ruf=mailto:faa8105c@dmarc.mailgun.org,mailto:1b571c08@inbox.ondmarc.com;policy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC6Pf8vGrG4bgkJi5RnPW1wKrs5tnw3VqzSrgq/zoVBHZABCatABqgLeavWp/7PU3Zd/ZioOfomKQdHZ5Vy8b… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxq2HK8+7iTROrMoHt2pAfHLm4tfkUBLaDixmXjqqWXjuXXzljXS3u2pet9EKQHgiQARQ5p1asSxpC/mnj8… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA10xd4iaCO/ikkG84DKMAStx3WorBt0oFTrNcFakcm/GRUJoSX7CyvXNK7RtqRBo5cCljbkBrazWyuEMfoL… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
WR3
Expires in 53 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(self "https://*.insighttimer.com"), microphone=(self "https://*.insighttimer.com"), fullscreen=(self "https://*.insighttimer.com")- x-content-type-options
nosniff- content-security-policy
default-src https:; script-src https: 'unsafe-inline' 'unsafe-eval'; style-src https: 'unsafe-inline'; style-src-elem https: 'unsafe-inline'; media-src https: blob:; img-src https: data:; font-src https: data:; worker-src https: blob:; connect-src https: wss:- strict-transport-security
max-age=31556926