miraclewebsoft.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- i.ytimg.com×4
- www.googletagmanager.com×3
- www.facebook.com×1
Contact
- Phone
- Address
- Chandigarh, Punjab, IN
Registration
- Registrar
- HOSTINGER operations, UAB
- Created
- 2016-09-20
- Expires
- 2026-09-20 123 days left
- Updated
- 2025-02-23
- Name servers
-
- ns1.dns-parking.com
- ns2.dns-parking.com
DNS records live
- NS
-
- ns1.dns-parking.com
- ns2.dns-parking.com
- MX
-
- 1 smtp.google.com
- TXT
-
mailerlite-domain-verification=d7503bd104ec0ce34ac66c02f6cd73f6f6154134google-site-verification=CFM-ULHdFF1rGXfa1UYjs9ENDvuvsyRb2Gn5I6sJqAcgoogle-site-verification=69gr2F1btjTufDcMoFHC7kgOCosLOnClUx6Mo1JRanA
Email authentication weak
- SPF
-
v=spf1 include:spf.mailjet.com include:_spf.mlsend.com include:_spf.mlsend.com include:_spf.google.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoZ95ZghLuu6EyzJxKomp34j0/ZQP623RAH9Ezk7docbxXZ7bL3yEZsUezRtP6sRWoHWqoZSJ845HgV…
selectors probed - google:
Certificate (current)
R13
Expires in 29 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak frame protection
- weak content type protection
Header values
- referrer-policy
strict-origin-when-cross-origin, same-origin- x-frame-options
DENY, SAMEORIGIN- permissions-policy
camera=(), microphone=(), geolocation=(), browsing-topics=(), interest-cohort=()- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self'; script-src 'self' 'nonce-XN14MXQjluRaAuXa91+DCA==' 'strict-dynamic' https:; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; img-src 'self' data: blob: https:; font-src 'self' https: data:; connect-src 'self' https://www.google.com https://www.google.co.uk https://www.google.co.in https://www.google.com.au https://www.google.ca https://www.google.de https://www.google.fr https://www.google.es https://www.google.it https://www.google.nl https://www.google.com.br https://www.google.co.jp https://www.google.co.kr https://www.google.com.mx https://www.google.com.sg https://www.google.com.hk https://www.google.com.tw https://www.google.se https://www.google.no https://www.google.dk https://www.google.fi https://www.google.pl https://www.google.ie https://www.google.ch https://www.google.at https://www.google.be https://www.google.pt https://www.google.gr https://www.google.ro https://www.google.cz https://www.google.hu https://www.google.com.ph https://www.- strict-transport-security
max-age=63072000; includeSubDomains; preload- cross-origin-opener-policy
same-origin-allow-popups