medisca.com
HTML metadata
Technology
- Server
- Microsoft-IIS
- CMS
- Next.js
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1998-04-18
- Expires
- 2029-04-17 1063 days left
- Updated
- 2026-04-17
- Name servers
-
- ns63.domaincontrol.com
- ns64.domaincontrol.com
DNS records live
- NS
-
- ns63.domaincontrol.com
- ns64.domaincontrol.com
- MX
-
- 10 mxa-00210901.gslb.pphosted.com
- 10 mxb-00210901.gslb.pphosted.com
- TXT
-
Show 10 TXT records
figma-domain-verification=436369ea9c5ff96869db2bc6527b51fe834fa30e6f10d036f5997b6542cf8140-1738271671MS=6D79FE7CBF5A171CC8ACDF22E726FED95DCA0CFDopenai-domain-verification=dv-AmCq9mE55NeRdpUr89k1c0dZgoogle-site-verification=ni4zBFZTWMniZyPFPXrSnYVMG5546Zj7k_XRvXUMkZYonetrust-domain-verification=a64d754204fc4be69ce090f1771b57e3autodesk-domain-verification=6JPzhn3PSWjbYLAuoeANM/+l29Gs96Pfb+TbgMq39rafsNZJDoHe0hov/4uX/dknbS+yWoJEpkojYaSy1bCHcbBdg2agUX6kSMqOfLnCcQ==atlassian-domain-verification=BE2gUwG9aK71wLaaEvnCyuSPCTFElQjxT3Xo56cRTppw9aCjPaMOv1UlWdWsNfvcatlassian-sending-domain-verification=a1141a83-7354-4da3-8bc2-13c3bdd68d66bcn=8FE15982-E703-11EE-83EA-3214C61062B8
Email authentication partial
- SPF
-
v=spf1 a:relay.medisca.com ip4:198.2.180.60 ip4:67.227.199.124 include:spf-00210901.pphosted.com include:spf.protection.outlook.com include:spf.mandrillapp.com include:docebosaas.com include:_spf.elasticemail.com include:spf-ca.emailsignatures365.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; fo=1; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.compolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDlQ1bylky2BsiUwu3BQcXbBQrJgSjMRYtGG+T7czd51YzOYirYwYwZz7KLPbcWEr+rSs0dK0wqamvaxlwZdn… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDgDYIzADMXHenMJeAcdhsbArP+WXvBWP3+uCJbEhHu4Quf6/CqlDSTgdC2t8GMh74Ly1f+pba0wHPgefl9aj…
selectors probed - selector1:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 42 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.medisca.com *.contentstack.com *.googletagmanager.com *.google-analytics.com *.sentry.io https://cdn.jsdelivr.net *.hotjar.com *.alg.li https://www.w3.org *.algolia.net *.algolia.io https://mediscawebsite01.s3.ca-central-1.amazonaws.com *.braintree-api.com *.braintreegateway.com *.facebook.com *.facebook.net *.doubleclick.net *.googlesyndication.com *.google.com *.google.ca *.youtube.com https://snap.licdn.com https://www.gstatic.com *.linkedin.com *.hotjar.io https://siteimproveanalytics.com https://google.com https://vimeo.com *.vimeo.com *.googleapis.com *.bpoint.com.au https://cnstrc.com *.cnstrc.com *.clarity.ms https://cdn.cookielaw.org *.onetrust.com https://bat.bing.com https://assets.calendly.com https://calendly.com chrome-extension://fdjamakpfbbddfjaooikfcpapjohcfmg 'unsafe-eval' 'unsafe-inline' blob: data: wss: ; img-src * data:;- strict-transport-security
max-age=31536000; includeSubDomains; preload