likes.io
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (8)
- res.cloudinary.com×15
- analytics.ahrefs.com×1
- client.crisp.chat×1
- consent.cookiebot.com×1
- i.ytimg.com×1
- images.dmca.com×1
- static.cloudflareinsights.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- dean.ns.cloudflare.com
- violet.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=EgQVa9iaW0DLx-8bZOdo7jEWS2eSawSRbscumIxq3Gogoogle-site-verification=c7t5NOqgOnJ78z7vFa_zN3_MDEcTnxicFjP7kOIbx90
Email authentication partial
- SPF
-
v=spf1 include:_spf.google.com include:sendgrid.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; pct=100; rua=mailto:dmarc@likes.io,mailto:34657a714d814ba798c35bcc6077af44@dmarc-reports.cloudflare.net; ruf=mailto:dmarc@likes.io; fo=1; adkim=r; aspf=rpolicy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoYlFBhEo8NXU3Nat2wbgBgRL7rMQeD4BGhgdlbauI9vEgQWYbkoVdQLaTD4OOrKTq+pdr6vB+A2Dg4TISY… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAycklf2c71i/MPEPU0lC0FflQ/0NN9Ei2cSONWPp2i+IlzYU2CLCnc+t61w8hfvtKDifpmWcsKyC2nGfZ8C…
selectors probed - s1:
Certificate (current)
WE1
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(), microphone=(), geolocation=(), payment=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; frame-ancestors 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://www.google-analytics.com https://client.crisp.chat https://*.crisp.chat https://challenges.cloudflare.com https://consent.cookiebot.com https://consentcdn.cookiebot.com https://static.cloudflareinsights.com https://privacy-analytics-proxy.cookiebot.com https://analytics.ahrefs.com https://images.dmca.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://client.crisp.chat https://*.crisp.chat https://consent.cookiebot.com https://consentcdn.cookiebot.com; img-src 'self' data: blob: https://res.cloudinary.com https://www.googletagmanager.com https://www.google-analytics.com https://image.crisp.chat https://client.crisp.chat https://*.crisp.chat https://avatars.githubusercontent.com https://lh3.googleusercontent.com https://cdn.likes.io https://images.unsplash.com https://i.pravatar.cc https://consent.cookiebot.com https://consentcdn.coo- strict-transport-security
max-age=31536000; includeSubDomains; preload