myharmony.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- Cookie consent
-
- OneTrust
Third-party hosts loaded (3)
- images.logitech.com×18
- cdn.cookielaw.org×1
- maxcdn.bootstrapcdn.com×1
Social
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2004-09-04
- Expires
- 2026-09-04 108 days left
- Updated
- 2025-08-03
- Name servers
-
- ns-1079.awsdns-06.org
- ns-1674.awsdns-17.co.uk
- ns-433.awsdns-54.com
- ns-805.awsdns-36.net
DNS records live
- NS
-
- ns-1079.awsdns-06.org
- ns-1674.awsdns-17.co.uk
- ns-433.awsdns-54.com
- ns-805.awsdns-36.net
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=xEaNckgDSKdbSUQuTEPRjhqnJ-ubJI8lQHksAiX6dJc
Email authentication strong
- SPF
-
v=spf1 include:spf.mandrillapp.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:qojun7kz@ag.us.dmarcian.com; ruf=mailto:qojun7kz@fr.us.dmarcian.com;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqEviUrdNPE7TY5rNLypi3cqbkxbnkJE0WLSHCIgHZCWUbyQaKi6UYpv4+1fbwhqgw8sxYqirRznn2e…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M04
Expires in 207 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
img-src 'self' 'unsafe-inline' images.logitech.com cdn-cx-images.dynamite.myharmony.com cdn.cookielaw.org cx-images.s3.amazonaws.com;script-src 'self' 'unsafe-inline' 'unsafe-hashes' cdn.cookielaw.org recaptcha.net static.zdassets.com;connect-src 'self' 'unsafe-inline' cdn.cookielaw.org geolocation.onetrust.com privacyportal.onetrust.com;script-src-attr 'unsafe-inline';default-src 'self';base-uri 'self';font-src 'self' https: data:;form-action 'self';frame-ancestors 'self';object-src 'none';style-src 'self' https: 'unsafe-inline';upgrade-insecure-requests