jumbomail.me
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Gatsby
- Ads
-
- Google AdSense
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- cdnjs.cloudflare.com×1
- fonts.googleapis.com×1
- pagead2.googlesyndication.com×1
DNS records live
- NS
-
- ns1.jumbomail.me
- ns2.jumbomail.me
- ns3.jumbomail.me
- ns4.jumbomail.me
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=Nm-eltqcJf9Wi7K7X9c0wtvvcNxNBfCI3JzV3vjw4gU
Email authentication strong
- SPF
-
v=spf1 a:jumbomail.me include:_spf.google.com include:amazonses.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:re+rfhlkwttqcz@dmarc.postmarkapp.com;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtjz7LnYd12QG0Yyg3cOHkEl14XcpMijwawdVGc4NHx9PFU2G3tQ6vesdT5cM6TEAB+tomG/YRdzv1j… - selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDHuRu+Xs9cWPJ9MhJs9YQ6wZCnsuvfFn5cxNvtEGqnbn50sTEe5Qjus4ahVHHped8wg81MTaqa8/1PeBnXxi… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8qCpCMxbocdzuB1Ugdkc3T6fCf7Ltzzs+AtXZSk1dxfz1GCoVlQr4maXiM6EmufDHBbOY7fERsnhsk…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M03
Expires in 115 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing Content Security Policy
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
geolocation=(), microphone=()- x-content-type-options
nosniff- strict-transport-security
max-age=63072000; includeSubDomains; preload- content-security-policy-report-only
default-src 'self'; script-src 'nonce-/rJ1Mo+FxDUDv4P4PCPEvA==' 'strict-dynamic' 'unsafe-eval' *.jumbomail.me *.googlesyndication.com *.doubleclick.net *.googleadservices.com *.googletagmanager.com *.google.com *.gstatic.com *.2mdn.net *.adtrafficquality.google fundingchoicesmessages.google.com *.clarity.ms www.clarity.ms *.facebook.net challenges.cloudflare.com *.netfree.link; style-src 'self' 'unsafe-inline' https:; img-src 'self' data: blob: https: *.jumbomail.me *.doubleclick.net *.google.com *.google.co.il *.googleadservices.com *.clarity.ms *.facebook.com; font-src 'self' data: https:; frame-src 'self' https:; connect-src 'self' data: blob: https: wss: *.jumbomail.me *.doubleclick.net *.google.com *.googleadservices.com *.adtrafficquality.google *.google-analytics.com analytics.google.com *.clarity.ms *.facebook.com; media-src 'self' https: blob:; worker-src 'self' blob:; object-src 'none'; base-uri 'self'; form-action 'self' https:; frame-ancestors 'self'; report-uri https://nap