myriadpro.com
HTML metadata
Technology
- Server
- Apache
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- dym77a36t593r.cloudfront.net×18
- fonts.googleapis.com×2
- s3.amazonaws.com×1
- www.datadoghq-browser-agent.com×1
- www.google.com×1
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2010-04-29
- Expires
- 2027-02-28 285 days left
- Updated
- 2026-02-09
- Name servers
-
- dion.ns.cloudflare.com
- dorthy.ns.cloudflare.com
DNS records live
- NS
-
- dion.ns.cloudflare.com
- dorthy.ns.cloudflare.com
- TXT
-
_1z1tacqqt2nyxw3q0z0phu132jhgki3_mhmp6xatqfjp9jnvyd0v1cosaboiic0t7k1376hwj8kvbtqtjwt55y626dszb6h
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
-
- smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - smtpapi:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 132 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self'; connect-src 'self' https://*.datadoghq.com https://*.myriad.com https://www.google-analytics.com; font-src 'self' https://fonts.gstatic.com; frame-src 'self' https://www.google.com https://myriadmyrisk.com https://myriadpro.staging.wpengine.com https://myriad.com; img-src 'self' data: https://dym77a36t593r.cloudfront.net https://www.google-analytics.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: https://dym77a36t593r.cloudfront.net https://www.google.com https://www.google-analytics.com https://www.gstatic.com https://s3.amazonaws.com https://www.datadoghq-browser-agent.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com;- strict-transport-security
max-age=31536000; includeSubDomains, max-age=31536000; includeSubDomains