merchantmastery.io
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Shopify
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (12)
- cdn.shopify.com×10
- cdn.judge.me×3
- shop.app×2
- www.googletagmanager.com×2
- a.klaviyo.com×1
- ajax.googleapis.com×1
- cdn.shopifycloud.com×1
- fonts.shopifycdn.com×1
- js.hs-scripts.com×1
- monorail-edge.shopifysvc.com×1
- static.klaviyo.com×1
- v.shopify.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns39.domaincontrol.com
- ns40.domaincontrol.com
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
klaviyo-site-verification=V5zrwc
- Verified for
-
- Meta
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:594625.spf07.hubspotemail.net ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=quarantine;sp=quarantine;pct=100;rua=mailto:info@merchantmastery.io;ruf=mailto:info@merchantmastery.io;ri=86400;aspf=r;adkim=r;fo=1policy: quarantine · sp=quarantine - DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 42 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;- strict-transport-security
max-age=7889238