journeyconstruction.com
HTML metadata
Technology
- Server
- Apache
- jQuery
- 3.4.0 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (9)
- com-journeyconstruction-cdn.s3.amazonaws.com×23
- www.youtube.com×9
- cdn.jsdelivr.net×2
- cdnjs.cloudflare.com×2
- stackpath.bootstrapcdn.com×2
- code.jquery.com×1
- kit.fontawesome.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Cloudflare, Inc.
- Created
- 2010-11-14
- Expires
- 2030-11-14 1626 days left
- Updated
- 2025-02-13
- Name servers
-
- keaton.ns.cloudflare.com
- meiling.ns.cloudflare.com
DNS records live
- NS
-
- keaton.ns.cloudflare.com
- meiling.ns.cloudflare.com
- MX
-
- 0 journeyconstruction-com.mail.protection.outlook.com
- TXT
-
reftab-domain-verification=7a78d29d825a2f4e4f380b5941aaf6a6amazon-business-verification=3b1333ae43de811d97b488c04a241a38f45c8177a552a7768f3cedf0b6716350
- Verified for
-
- Anthropic
- Apple
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com -all include:908c11.workshop-spf.netstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;pct=10policy: quarantine · pct=10 - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxVACkidv0LHecV4moWLZ0267K5b9jRnSC2NZYDYkYnwFx2bCYuEIDCR8St/OizCWSjJaqhs2DXu+CP… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC1IAMvnqBKxYSILb4xvWPq8/bjDFkQnqElmXI6Csam9zupE/56JU3BZJkr9qBPQ00wTrWbqtjMdmNiMqij8V… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - selector1:
Certificate (current)
E8
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
base-uri 'none'; form-action 'self' *.hsforms.com *.facebook.com *.youtube.com *.journeyconstruction.com; frame-ancestors 'self' *.journeyconstruction.com; upgrade-insecure-requests- strict-transport-security
max-age=31536000; preload