mushroommusic.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- cdn.shopify.com×6
- www.googletagmanager.com×3
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- www.facebook.com×1
Social
Registration
- Registrar
- Key-Systems GmbH
- Created
- 1997-10-17
- Expires
- 2026-10-16 149 days left
- Updated
- 2025-11-28
- Name servers
-
- ns1.partnerconsole.net
- ns2.partnerconsole.net
- ns3.partnerconsole.net
DNS records live
- NS
-
- ns1.partnerconsole.net
- ns2.partnerconsole.net
- ns3.partnerconsole.net
- MX
-
- 0 d169062a.ess.barracudanetworks.com
- 10 d169062b.ess.barracudanetworks.com
- TXT
-
Show 5 TXT records
google-site-verification=Sv2ni7Tx4QpwueXRFaitrFNyGc5IVVnCHS90U8FeBXY924zshn7fs486azle9ccBPL=6774182Yr2hCH71YlL1xYRfgUvGwHnydK8lmtKsj43WWNirRD1udEdMgLD0RQbSlInbhgI+xdhGZXFPIufPX7Fy+zvGiw==2tllmilkd61tklid82vm37rv4m
Email authentication strong
- SPF
-
v=spf1 include:spf.emailsignatures365.com include:mandrillapp.com include:spf.ess.barracudanetworks.com include:_spf.google.com include:servers.mcsv.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; fo=1; rua=mailto:rua+mushroommusic.com@dmarc.barracudanetworks.com; ruf=mailto:ruf+mushroommusic.com@dmarc.barracudanetworks.compolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCg6TJc4r3T0NIN9p1kHPzZ+yNlSpsckykO24fNxOpo4ZAvZghTpxzy21zbGYZ5zzK+EpHY45K+5zx9RvDSu… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
E7
Expires in 16 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'unsafe-inline' 'unsafe-eval' https: data: blob:;- strict-transport-security
max-age=63072000; includeSubDomains; preload