jalios.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress 7.0
- jQuery
- 3.7.1
- Analytics
-
- Google Tag Manager
- Fonts
-
- Font Awesome
- Google Fonts
Third-party hosts loaded (14)
- fonts.googleapis.com×3
- cdn-cookieyes.com×1
- cdn.popt.in×1
- cdnjs.cloudflare.com×1
- fonts.gstatic.com×1
- gmpg.org×1
- js-eu1.hs-analytics.net×1
- js-eu1.hs-banner.com×1
- js-eu1.hs-scripts.com×1
- js-eu1.hsadspixel.net×1
- js-eu1.hscollectedforms.net×1
- js-eu1.hubspot.com×1
- use.fontawesome.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Gandi SAS
- Created
- 2001-10-10
- Expires
- 2026-10-10 129 days left
- Updated
- 2025-09-09
- Name servers
-
- ns-114-b.gandi.net
- ns-168-a.gandi.net
- ns-5-c.gandi.net
DNS records live
- NS
-
- ns-114-b.gandi.net
- ns-168-a.gandi.net
- ns-5-c.gandi.net
- MX
-
- 10 smtp-protect.alinto.net
- 50 smtp-protect.alinto.net
- TXT
-
ekqej3fc8jbddfec2fcfqhkfs
- Verified for
-
- Apple
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.xsalto.com include:spf4.sbr-master.net include:spfa.alinto.net include:mailing-smtp.safetyhost.net include:140588103.spf06.hubspotemail.net ip4:185.179.114.4 -allstrict (-all) - DMARC
-
v=DMARC1; p=none;ruf=mailto:dmarc-ruf@jalios.com;fo=1;rua=mailto:dmarc-rua@jalios.compolicy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAw9g1ihXg6VDwBabROHByhkJwHdrxn8A4Udzksz0PViyHcoCgRd8MEu3ZK6OJPZY6eFKNRi4e5bD8Vov3Xh… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDcFjZkmX5ApXNoIVZVOoezlZhjxruhZBvYQfmOa3+FgWC5qMdJg+Xb/GtvrD1KzqBOIlo1M/T5JpXBtqm2uPPZ85…
selectors probed - s1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 74 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer- x-frame-options
sameorigin- permissions-policy
accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(), encrypted-media=(), fullscreen=(), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(self), usb=(), web-share=(), xr-spatial-tracking=(), clipboard-read=(), clipboard-write=(), gamepad=(), hid=(), idle-detection=(), interest-cohort=(), serial=(), unload=()- x-content-type-options
nosniff- content-security-policy
default-src https://* gap-iab://* wss://* data: blob: 'unsafe-inline' 'unsafe-eval'- strict-transport-security
max-age= 31536000; includeSubDomains; preload- cross-origin-opener-policy
: same-origin- cross-origin-embedder-policy
: require-corp- cross-origin-resource-policy
: same-origin
Links to (3)
- youtube.com×1
- x.com×1
- linkedin.com×1