kinders.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Shopify
Third-party hosts loaded (5)
- cdn.shopify.com×73
- images.ctfassets.net×45
- a.klaviyo.com×1
- shop.app×1
- static.klaviyo.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1998-11-25
- Expires
- 2026-11-24 188 days left
- Updated
- 2025-11-25
- Name servers
-
- ns05.domaincontrol.com
- ns06.domaincontrol.com
DNS records live
- NS
-
- ns05.domaincontrol.com
- ns06.domaincontrol.com
- MX
-
- 0 kinders-com.mail.protection.outlook.com
- TXT
-
Show 8 TXT records
openai-domain-verification=dv-ZDAoGAP18kQ5GzE9EadAHhZkgoogle-site-verification=hn0J5j4Zyvrp1s_eJ60kMpgSj4WtiwwIdB2bVZkKmgcgoogle-site-verification=fUF-GEtXE92t55dtlM9m03oqwJVDkMBtaN0O_mZk_zkrippling-domain-verification=0ef365e67d117cb4google-site-verification=boVYI0Rzoef1VoqU_BKAsAso8NexvlvfevVAuziIwwgwrike-verification=NjM3N2QNDplMzQyMjgzYjQ0OGRkYTI5NDBmN2MzODNjY2M3ZjBiMTUxYWNkYzE5MmZjNWNm3N2Y0NmJjNjJjOTg2Y2gzYmYvMigoogle-site-verification=5A-dSXgen_KCB0SdsyXHOr66YItXtpr1Vok2ofGgpaEklaviyo-site-verification=RCgd9N
Email authentication strong
- SPF
-
v=spf1 ip4:4.53.23.26 ip4:44.219.226.180 ip4:18.215.69.26 include:spf.protection.outlook.com include:mail.zendesk.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCSvfI9NrhBptvy2oJ193WQPNJDsijARyEaXdGnm/tUp3CTKHMHBN4SA+q/z9lfGdcSVT3uFRBnnZ65D9vC/Z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqKQFjqAmZighVBz/xV/Iazw0YgDW0+/bb+mT9HzrjkLbn5k1/uPuQrdLdYtHGW/DbQfNSzUWUj+xV2r/H2… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtTPheK5xe+tXYXLIRUy/N1LaSlnJXDfl30URTt0ZNMCgW/o7mIXVaYv8e8YaUKT9AgVQT1NcqQnf3QmJ4S…
selectors probed - selector1:
Certificate (current)
E8
Expires in 43 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self' 'nonce-410e299ccc962b60d1ce7dc6719a4bc8' https://cdn.shopify.com https://shopify.com; frame-ancestors 'self' app.contentful.com *.myshopify.dev *.goodness.inc; style-src *.googletagmanager.com googletagmanager.com tagmanager.google.com fonts.googleapis.com *.audioeye.com privacyportalde-cdn.onetrust.com c.lytics.io *.click2cart.com click2cart.com mondelez.review.eprize.com maxcdn.bootstrapcdn.com use.fontawesome.com use.typekit.net https://p.typekit.net https://*.bazaarvoice.com *.klaviyo.com *.termageddon.com app.termageddon.com *.greenhouse.io *.greenhouse.com https://js.arcgis.com https://*.arcgis.com 'self' 'unsafe-inline' https://cdn.shopify.com; connect-src 'self' *.shopify.com *.myshopify.com *.googletagmanager.com *.mdlzapps.cloud *.google-analytics.com *.analytics.google.com analytics.google.com pagead2.googlesyndication.com www.googleadservices.com www.google.com google.com googleads.g.doubleclick.net *.audioeye.com privacyportalde-cdn.onet- strict-transport-security
max-age=31536000