lionworldtravel.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (5)
- code.jquery.com×2
- use.typekit.net×2
- lcw.prod.travcorpservices.com×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Contact
- Phone
Registration
- Registrar
- Namescout Ltd
- Created
- 1998-10-16
- Expires
- 2026-10-15 147 days left
- Updated
- 2025-10-16
- Name servers
-
- ns-1282.awsdns-32.org
- ns-150.awsdns-18.com
- ns-1938.awsdns-50.co.uk
- ns-551.awsdns-04.net
DNS records live
- NS
-
- ns-1282.awsdns-32.org
- ns-150.awsdns-18.com
- ns-1938.awsdns-50.co.uk
- ns-551.awsdns-04.net
- MX
-
- 0 lionworldtravel-com.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
knowbe4-site-verification=4e226d3b1f93d8955aff0508274ac820l12s2Pjv3JcYufqPf8T9YNLuJU8iwN8MtNZ6kGVSsuaD05OtVTst1Qin6iMTd8/7oDbO5S9pln8Qgv1+ez9ILQ==00d1u000000gdouuac_qffmsjksrbft4xmcum71gq440l7nbu2e2ma-verification=82n
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 ip4:52.33.50.145/32 ip4:205.189.38.0/24 ip4:203.171.220.0/24 include:amazonses.com include:spf.protection.outlook.com include:bbemaildelivery.com ip4:52.33.50.145 ip4:54.70.176.202 include:e2ma.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:re+daf185d952a8@inbound.dmarcdigests.com; ruf=mailto:dmarc-forensics@lionworldtravel.com; adkim=r; aspf=r; fo=1policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8pJG4J4ftTeLrpS3YtVUKSaWWzT0FKDAfycaKVvJN1rnZL/C0a5k57FQ9UBPJvQ7Kxi/+YPzGGJKxD… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1loy5LArcMLH7KZGgUv8n0/fWo+HTKrRUHjcsbYcYstP1feNFmfLCSSzath/Vo/RVg3FK+vOIioZfrEcaD… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCqUjFLl9IJj/0dAFponh0aB1NjbLfBEjQxbr4aNR0TglIPIn0MVPRiPtiOWSI0lC4UuV0FZ86AmgMqNCmhh5l3pP…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 182 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- weak content type protection
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
interest-cohort=()- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' http: https: 'unsafe-eval' data: blob: 'unsafe-inline'; frame-ancestors 'self';