menusaccess.com
HTML metadata
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2017-07-19
- Expires
- 2026-07-19 60 days left
- Updated
- 2025-07-20
- Name servers
-
- clara.ns.cloudflare.com
- kip.ns.cloudflare.com
DNS records live
- NS
-
- clara.ns.cloudflare.com
- kip.ns.cloudflare.com
- MX
-
- 10 incoming.cdcservices.com
- TXT
-
google-site-verification=bHcW0vm-DgOsI6No___P1o0M2s6s7RKGe8OspPI7OAU
Email authentication strong
- SPF
-
v=spf1 include:mailgun.org ip4:198.91.42.0/23 ip4:64.135.26.0/24 a mx ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc_agg@dmarc.everest.email; ruf=mailto:dmarc_fr@dmarc.everest.email;policy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 61 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self';script-src 'self' 'nonce-TMh/T0JG6YyLD2MRxSly' 'unsafe-eval' https://www.google-analytics.com https://*.cendynaccess.com https://*.cendyn.com https://*.trustarc.com;object-src 'self';style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://*.cendyn.com https://*.trustarc.com;img-src 'self' https://*.cendynaccess.com https://*.hiltonemenus.com https://*.cendyn.com https://www.google-analytics.com https://*.trustarc.com;font-src 'self' https://fonts.gstatic.com data: https://*.cendyn.com;connect-src 'self' https://www.google-analytics.com https://trackerapi.trustarc.com;base-uri 'self';child-src https://*.trustarc.com;frame-ancestors https://visitingmedia.com https://www.plazahotelelpaso.com https://www.rittenhousehotel.com https://www.randtowerhotel.com https://www.hotelnia.com https://www.thejouledallas.com https://www.thesanctuarybeachresort.com https://www.hilton.com;plugin-types application/pdf;report-uri /WebResource.axd?cspReport=true- strict-transport-security
max-age=31536000; includeSubDomains