jjlco.net
HTML metadata
Technology
Third-party hosts loaded (1)
- cdn.jsdelivr.net×3
Registration
- Registrar
- Name.com, Inc.
- Created
- 2023-03-30
- Expires
- 2027-03-30 314 days left
- Updated
- 2026-02-23
- Name servers
-
- ns1.tinyurl.com
- ns2.tinyurl.com
- ns3.tinyurl.com
- ns4.tinyurl.com
DNS records live
- NS
-
- ns1.tinyurl.com
- ns2.tinyurl.com
- ns3.tinyurl.com
- ns4.tinyurl.com
- MX
-
- 10 smtp.tinyurl.com
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 40 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
camera=(), geolocation=(), microphone=(), payment=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'strict-dynamic' 'unsafe-inline' https://challenges.cloudflare.com https://js.stripe.com https://*.paddle.com https://www.googletagservices.com https://*.googletagservices.com https://securepubads.g.doubleclick.net https://www.google-analytics.com https://*.googlesyndication.com https://cdn.jsdelivr.net https://*.adtrafficquality.google https://fundingchoicesmessages.google.com https://*.pub.network https://cdn.ampproject.org https://public.profitwell.com https://*.profitwell.com https://cdn.privacy-mgmt.com ; script-src-elem 'self' 'unsafe-inline' https://challenges.cloudflare.com https://js.stripe.com https://*.paddle.com https://www.googletagservices.com https://*.googletagservices.com https://securepubads.g.doubleclick.net https://www.google-analytics.com https://*.googlesyndication.com https://cdn.jsdelivr.net https://*.adtrafficquality.google https://fundingchoicesmessages.google.com https://*.pub.network https://cdn.ampproject.org https://p- strict-transport-security
max-age=31536000; includeSubDomains; preload