luxsci.com
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (8)
- fonts.googleapis.com×8
- www.google.com×4
- www.googletagmanager.com×2
- d4hm2u4pioc0c.cloudfront.net×1
- djrufvackyewl.cloudfront.net×1
- fonts.gstatic.com×1
- gmpg.org×1
- www.gstatic.com×1
Social
Registration
- Registrar
- easyDNS Technologies Inc.
- Created
- 2002-03-28
- Expires
- 2027-03-28 313 days left
- Updated
- 2026-03-13
- Name servers
-
- dns1.easydns.com
- dns2.easydns.net
- dns3.easydns.org
- dns4.easydns.info
- ns-1356.awsdns-41.org
- ns-1787.awsdns-31.co.uk
- ns-490.awsdns-61.com
- ns-558.awsdns-05.net
DNS records live
- NS
-
- dns1.easydns.com
- dns2.easydns.net
- dns3.easydns.org
- dns4.easydns.info
- MX
-
- 1 mx1-us1.ppe-hosted.com
- 2 mx2-us1.ppe-hosted.com
- TXT
-
Show 9 TXT records
openai-domain-verification=dv-6ouOSzbPekt3AMhwpljfweTCapple-domain-verification=PbE4k4P21gd1Bu2eLux Scientiae, Incorporatedanthropic-domain-verification-m0c6ff=wqI2ijLCsyhMYJgTKlBM9tWnFatlassian-domain-verification=cbwwWFPAJ+4z0JxVoISJoCh5CpqPewK2x6o3l1w7h+x6rStWdJAOM+XYspUIPO7astripe-verification=216BAF681666FF376D1D0AFA4CAE3BD4BA1DB4883610151D6660F29871513DB1jetbrains-domain-verification=81itcuyr0xc6r4axsjccj7i66status-page-domain-verification=1r9yrzf0msspgoogle-site-verification=Z_KbUgdnVGGQ2FIK1ympMtpDekGx3yLyzBLIGOcYhF0
Email authentication strong
- SPF
-
v=spf1 include:_netblocks1.luxsci.com include:_netblocks1.luxscioffice.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;pct=100policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0eFZzbs85kWjh2fDjqgxYYW2MznlmqCQaTioLHTe6ZcjEm75fDJ2945loImgpn/M6wasMKXAZ/d0xh… - dkim:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzkLlnGLFfqbKBuyCa1Mj6CNhuNNFWTaRkezJDaFbI5ghnwRWAF2hUM1sFVW2pS+h7IZ3ljm8IV25+Q…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 281 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
report-to endpoint-csp; default-src 'self' report-sample; script-src 'self' https://www.google.com https://www.google-analytics.com/analytics.js https://secureform.luxsci.com https://storage.googleapis.com https://www.gstatic.com https://www.googleadservices.com https://pagead2.googlesyndication.com https://googleads.g.doubleclick.net https://*.getbee.io https://*.googletagmanager.com https://cdn-cookieyes.com https://d3nojzhs96djbd.cloudfront.net/static/js/ink_signatures_v3.js https://snap.licdn.com 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline' data: blob:; object-src 'none'; base-uri 'self'; connect-src 'self' https://secureform.luxsci.com https://*.cookieyes.com https://cdn-cookieyes.com https://*.google-analytics.com https://*.google.com https://*.googletagmanager.com https://pagead2.googlesyndication.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://px.ads.linkedin.com https://px4.ads.linkedin.com https://dc.ads.linkedin.com https://sjs.- strict-transport-security
max-age=31536000; includeSubDomains; preload