insulfoam.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (6)
- dam.carlisle.com×14
- dam.henry.com×9
- cdn.cookielaw.org×2
- www.googletagmanager.com×2
- js.hs-scripts.com×1
- js.hsforms.net×1
Social
Registration
- Registrar
- GoDaddy Corporate Domains, LLC
- Created
- 1998-02-12
- Expires
- 2027-02-11 268 days left
- Updated
- 2026-01-11
- Name servers
-
- brenda.ns.cloudflare.com
- mario.ns.cloudflare.com
DNS records live
- NS
-
- brenda.ns.cloudflare.com
- mario.ns.cloudflare.com
- MX
-
- 1 carlisle-com.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
dropbox-domain-verification=werhqrln83pegoogle-site-verification=X5a0PzK2MGPBo0wuF64HX5BruiPpu4e4_0cskuv5v9Agoogle-site-verification=ssCeOks7Ew9EOOfYj4o6LBgzndWm_IzTW1ThLOUNv_cIVMjwZ4MHoq1zNk7gSfUlVxo81dq3Wq24puYcqFqi0rZr9KTic4uc725Av5GSjsy00Bre52rhoXyTUsBBp35vA==adobe-idp-site-verification=c4f61c193089a91c705a788d2345d323c48839d29b0e31dad6713bb43321be77atlassian-domain-verification=4tKwdVCjalaoMFF1afcvaA6JOOhJyqb9An94BsbB2F/zRj4ZhkGzbIAE4J48HluM
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.salesforce.com ip4:4.15.193.202 ip4:4.15.193.208 ip4:67.228.89.126 ip4:8.43.178.239 ip4:159.89.252.133 ip4:205.139.110.102 include:118964.spf10.hubspotemail.net -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;pct=100;rua=mailto:dmarca@carlisle.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtzObOaPQaejA5jW1QpOc6k9iEd6nhGMXJmHXyVNYnkDFZTeuQ5sriJjz/qwEbFlKFfy1ZfPOxY9ha6… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqC58oJ7CEJlWGu6if+eg13D7OGVmHv1QWyWFSsJnRXQ/3REHumJDMoVWNYwNk0Ni7GWy0XNfv2eUiFCBzj… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAks5FnpeAhLmzn0AjlvwtEmE0AmJmJmVQsmWvvis9eKcozWRmbGzvq7PYDDqv0fLEu4DdPhV7XIIlWurUv5…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 75 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(),camera=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),payment=(),usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; base-uri 'self'; connect-src 'self' https://*.henry.com https://*.carlislehvac.com https://*.carlislebuildingsolutions.com https://*.dxcloud.episerver.net https://*.clarity.ms https://*.mktoresp.com https://*.visualstudio.com https://*.facebook.com https://cdn.cookielaw.org https://*.googletagmanager.com https://*.google.com https://google.com https://*.doubleclick.net https://*.onetrust.com https://*.googleapis.com https://*.hsforms.com https://*.hubspot.com https://*.hubapi.com https://hubspot-forms-static-embed.s3.amazonaws.com https://*.cloudfront.net https://static.hsappstatic.net https://*.acsbapp.com https://acsbapp.com https://*.google-analytics.com https://*.doubleclick.net https://px.ads.linkedin.com https://*.stape.biz https://insight.adsrvr.org https://*.ecs.us-east-1.on.aws https://*.us-central1.run.app https://js.monitor.azure.com https://*.applicationinsights.azure.com; font-src 'self' data: https://*.henry.com https://*.carlislehvac.com https://*.car- strict-transport-security
max-age=0
Links to (6)
- adp.com×2
- carlisle.com×2
- facebook.com×2
- flickr.com×2
- linkedin.com×2
- youtube.com×2