ivancarlos.me
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×2
Social
Contact
DNS records live
- NS
-
- ns-1138.awsdns-14.org
- ns-1900.awsdns-45.co.uk
- ns-450.awsdns-56.com
- ns-865.awsdns-44.net
- MX
-
- 1 smtp.google.com
- TXT
-
google-site-verification=ikdmI-KHeikQG-w2fi79KEXZyUmbFzfxeivrQ5Ji75gpinterest-site-verification=665e31a7ee514530c4ce1bbafe00e239
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; fo=1; adkim=r; aspf=r; pct=100; rua=mailto:dmarc@ivancarlos.com.br; ruf=mailto:dmarc@ivancarlos.com.br; rf=afrf; ri=86400;policy: reject (enforced) · sp=reject - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArqaRhUWDbXzINkVWdcUuHNljmi0/1iKPzQ5G2D2fBzKDyn70kiMMMPvgppKqzTSdpC2BK3N/z+Au4w…
selectors probed - google:
Certificate (current)
R12
Expires in 32 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), microphone=(), accelerometer=(), camera=(), gyroscope=(), magnetometer=(), payment=(), usb=(), display-capture=(), midi=()- x-content-type-options
nosniff- content-security-policy
img-src https: data:; script-src 'unsafe-inline' 'unsafe-eval'; script-src-elem 'self' 'unsafe-inline' blob: https:; style-src 'self' 'unsafe-inline'; style-src-elem 'self' 'unsafe-inline' https:; frame-src 'self' blob: https:; worker-src 'self' blob:; frame-ancestors 'self'; object-src 'none'; base-uri about: https:; upgrade-insecure-requests;- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (50)
- 2r2.io×1
- 4based.com×1
- 9gag.com×1
- about.me×1
- amazonaws.com×1
- artstation.com×1
- aws.com×1
- beacons.ai×1
- behance.net×1
- bento.me×1
- bsky.app×1
- buymeacoffee.com×1
- buzzfeed.com×1
- cal.com×1
- clouthub.com×1
- codeberg.org×1
- credly.com×1
- dentity.com×1
- deviantart.com×1
- disqus.com×1
- ebay.com×1
- facebook.com×1
- fansly.com×1
- fiverr.com×1
- foundation.app×1
- g.dev×1
- github.com×1
- gitlab.com×1
- hoo.be×1
- imgur.com×1
- instagram.com×1
- itch.io×1
- keepo.io×1
- kickstarter.com×1
- link.me×1
- linkbio.co×1
- linkedin.com×1
- myportfolio.com×1
- onlyfans.com×1
- opencollective.com×1
- opensea.io×1
- openwebui.com×1
- passes.com×1
- patreon.com×1
- picpay.me×1
- pinterest.com×1
- poosting.com×1
- primal.net×1
- quora.com×1
- rarible.com×1