lumeris.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (4)
- js.hs-scripts.com×3
- consent.cookiebot.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2008-10-12
- Expires
- 2026-10-12 145 days left
- Updated
- 2023-09-27
- Name servers
-
- ns-1282.awsdns-32.org
- ns-1955.awsdns-52.co.uk
- ns-354.awsdns-44.com
- ns-904.awsdns-49.net
DNS records live
- NS
-
- ns-1282.awsdns-32.org
- ns-1955.awsdns-52.co.uk
- ns-354.awsdns-44.com
- ns-904.awsdns-49.net
- MX
-
- 10 mxa-000c6a01.gslb.pphosted.com
- 10 mxb-000c6a01.gslb.pphosted.com
- TXT
-
Show 11 TXT records
google-site-verification=s9aOeCcqloyBrDhleW93PqrKvkLQxf2lx8nTAJnaGkYibmid=c670d845-a678-40d4-a7ec-d916062cb088pendo-domain-verification=3a6a81ac-6d96-442a-88cc-13cd6eb49715teamviewer-sso-verification=33553418ae6a4613ab76e94bf45340f3wiz-domain-verification=39f8cb34a6de4d16da0880a36ed255292623132c1810adfd27ccf18427af9bfcwrike-verification=NjIzNTI4MjpiN2JmNWVmZmYyOGVjODY3N2Y2ZWVmOWE0Mjk3OWQxNWNkZjc0NzFhNzBjMjE0Yjk1ZDM2MWZlYzgwYWU4MTRiDirectFedAuthUrl=https://login.microsoftonline.com/3bdec65b-3f6d-43bb-a194-ad92c0909287/saml2axios-domain-verification-8mtp4k=OVHiPFe5OiZRUjLp6FJeEjqHwdocusign=9d5de099-05dd-4c9b-8929-5c93af60cb93google-site-verification=F5asXarhM3n-ZSELrk6_t3ju475xNbabefvakphziUMgoogle-site-verification=ds3foUsuqQli1ciTcr2yyrDzzOf3uMVR6Z8Z-3Vn7Ok
Email authentication strong
- SPF
-
v=spf1 include:spfips.lumeris.com include:spfip2.lumeris.com include:spf.protection.outlook.com a:c.spf.service-now.com include:_spf.salesforce.com include:21143566.spf07.hubspotemail.net a:lumeris.loopback.exchange -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com, mailto:dmarc@mailinblue.com!10m; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.com, mailto:dmarc@mailinblue.com!10mpolicy: quarantine - DKIM
-
Show 4 DKIM selectors
- k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAo+bAUK1MnvKdN0UiAzo+JOhSTxVfhLXWE5V50HT9b2k9AoIqtmzl13ryEB4dVpX+dQgqJAattTTM+hij4J… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArw3NSYvcnJf9QsSo7f4SGBJIxXYGSBzl6FO+AI1UdrlcLi7rFppJnmoOAbbJnJlPNq+zl3W1YuQbmcRr0G… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - k2:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 127 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
geolocation=(), microphone=(), camera=()- x-content-type-options
nosniff- content-security-policy
font-src 'self' data: *.typekit.net *.gstatic.com; object-src 'none'; form-action 'self' https://forms.hsforms.com https://forms.hscollectedforms.net https://forms-na1.hsforms.com; frame-ancestors 'none'; base-uri 'self'; upgrade-insecure-requests; default-src 'self' data: https:; style-src 'self' 'unsafe-inline' data: https: *.typekit.net *.typekit.net; script-src 'self' 'unsafe-inline' https: *.googletagmanager.com *.google-analytics.com *.doubleclick.net *.hs-scripts.com *.hscollectedforms.net *.typekit.net *.googletagmanager.com *.google-analytics.com *.doubleclick.net *.hs-scripts.com *.hscollectedforms.net *.typekit.net; img-src 'self' 'unsafe-inline' data: https: *.hubspot.com *.hubspot.com; connect-src 'self' 'unsafe-inline' data: https: *.hubspot.com *.google.com *.hubspot.com *.google.com; frame-src 'self' https:; sandbox allow-same-origin allow-forms allow-modals allow-presentation allow-popups allow-popups-to-escape-sandbox allow-scripts allow-downloads allow-top-navigation- strict-transport-security
max-age=31536000; includeSubDomains
Links to (2)
- linkedin.com×2
- x.com×2