mon-cancer.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (3)
- cdn.cookielaw.org×2
- www.googletagmanager.com×1
- www.youtube-nocookie.com×1
Social
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2019-04-03
- Expires
- 2028-04-03 684 days left
- Updated
- 2026-03-02
- Name servers
-
- ns-1336.awsdns-39.org
- ns-1919.awsdns-47.co.uk
- ns-421.awsdns-52.com
- ns-715.awsdns-25.net
DNS records live
- NS
-
- ns-1336.awsdns-39.org
- ns-1919.awsdns-47.co.uk
- ns-421.awsdns-52.com
- ns-715.awsdns-25.net
- MX
-
- 0 msdcloud.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
google-site-verification=vsqPZwzMNDt_8TMUWfNUY801RLpC6POOCan7EL8xLwcsendinblue-code:8eace80ce76632cdd7ecb9cf02da5ca3FLzs2TjanAczGc1PSVCQziv+ZpE7tepsCfbaIgitCQib6yEduuVoAtRRYzoUt5Hr2N/hWFdwfyozF2zErkqEXg==MS=ms37662565|Mon-cancer.com|3600google-site-verification=kSVq-_kB-allDcG4GXH-j-NrkGqNlzeAhT9ykgK_Zpcgoogle-site-verification=soq_7SePlai4XpWFyry4jY05c0s6S3NjiT6bUBJ_Y6c
Email authentication strong
- SPF
-
v=spf1 a include:spf1.merck.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; ri=3600; rua=mailto:dcm_rua_reports@merck.com; ruf=mailto:dcm_ruf_reports@merck.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuFSzRzmxZFX79fsGeb1rdPDYa4AW6RNhZlOqeloWfeqmjj1ehgWvxoBncb+PxK5JlNTj9tI+XCEeds… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6TuQlR1epL12gj14OmFw7B3jFdQv5OiYQaUhjas1DaUgA7cTS9YST+v7QVYyp6FwJ/q5GEdP6gONWy… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - selector1:
Certificate (current)
E8
Expires in 49 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https: blob:; style-src 'self' 'unsafe-inline' https:; frame-src 'self' https:; frame-ancestors 'self'; img-src 'self' https: data:; media-src 'self' https: data: blob:; object-src 'none'; font-src 'self' https: data:; default-src 'self' https: wss:; base-uri 'none';- strict-transport-security
max-age=31536000