mebmarket.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Joomla
- jQuery
- 3.4.1 known XSS (<3.5)
- Stack
- PHP
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- accounts.google.com×1
- appleid.cdn-apple.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- eNom, LLC
- Created
- 2011-07-08
- Expires
- 2026-07-08 35 days left
- Updated
- 2025-07-01
- Name servers
-
- mns01.domaincontrol.com
- mns02.domaincontrol.com
DNS records live
- NS
-
- mns01.domaincontrol.com
- mns02.domaincontrol.com
- MX
-
Show 7 MX records
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 20 alt2.aspmx.l.google.com
- 30 aspmx2.googlemail.com
- 30 aspmx3.googlemail.com
- 30 aspmx4.googlemail.com
- 30 aspmx5.googlemail.com
- TXT
-
62iaqm7fejogtujslh2tepkjen
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:amazonses.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:webmaster+dmarc@mebmarket.com;policy: quarantine - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtQXni2TujkXROc7uOOUPoYBuop+Ky98wUipKME5McYMUQlYa0BVMEhhUU5BYdCQfJGA4l7zf5xB2YM… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlJpoe+0GZuj4ee7//Z36BBNodKCIu5PJ3gsAsbFFH0aSriq1dPLW0SjWaSCdflJ3rcTsHX58GYihx5pSWZ… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDrFfEPEU6XZeEyCRNTmFIyNXptQCEiQcLksgV+iHN/iNBapyLyP+kLjGCxynuGMghm52EB8bYXjKJnGkCwElnNSY…
selectors probed - google:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 167 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'none'; connect-src 'self' *.mebmarket.com *.readawrite.com www.facebook.com *.google-analytics.com *.analytics.google.com 1827855842.rsc.cdn77.org hytextsereader.s3-ap-southeast-1.amazonaws.com 1270371251.rsc.cdn77.org www.booksmilemeb.com aumento.officemate.co.th; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.mebmarket.com www.googletagmanager.com connect.facebook.net *.google-analytics.com apis.google.com maps.googleapis.com www.google.com accounts.google.com www.gstatic.com cdn.jsdelivr.net platform.twitter.com static.ads-twitter.com appleid.cdn-apple.com; img-src * data: blob:; style-src 'self' 'unsafe-inline' *.mebmarket.com fonts.googleapis.com; frame-src *; media-src 'self' *.mebmarket.com; font-src 'self' fonts.gstatic.com *.mebmarket.com- strict-transport-security
max-age=31536000; includeSubDomains