nationwideimaging.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (7)
- fonts.googleapis.com×2
- netdna.bootstrapcdn.com×2
- a.mailmunch.co×1
- gmpg.org×1
- translate.google.com×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Contact
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2001-04-10
- Expires
- 2027-04-10 323 days left
- Updated
- 2025-04-11
- Name servers
-
- ns55.domaincontrol.com
- ns56.domaincontrol.com
DNS records live
- NS
-
- ns55.domaincontrol.com
- ns56.domaincontrol.com
- MX
-
- 10 d182291a.ess.barracudanetworks.com
- 20 d182291b.ess.barracudanetworks.com
- TXT
-
Show 4 TXT records
s46u5ghuq51utm33fqjo30dhcmi6gk9478cmri2d3q2fs3g2b8q3notokenfoundrvo4jspkg9lcrdefltgffolhdv
Email authentication strong
- SPF
-
v=spf1 a mx ip4:104.237.129.102/32 ip4:98.109.192.42/32 ip6:2600:3c00::f03c:91ff:fedb:e437 ip6:2600:3c00::f03c:91ff:fee0:59c1 include:spf.protection.outlook.com include:servers.mcsv.net include:spf.ess.barracudanetworks.com include:aspmx.pardot.com -allstrict (-all) - DMARC
-
v=DMARC1\; p=none\; fo=1\; rua=mailto:dmarc.reports@nationwideimaging.com,mailto:rua+nationwideimaging.com@dmarc.barracudanetworks.com\; ruf=mailto:dmarc.reports@nationwideimaging.com,mailto:ruf+nationwideimaging.com@dmarc.barracudanetworks.comno policy tag - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwIPPCnmOO6oxhxB2Uxke6bEQPGJU8n8MrQ6QegdsBpI4HNllcxIuiZ75sSXfBDcNE/kj/0KVt9d6w3… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 19 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
base-uri *.mxrimaging.com 'self' 'unsafe-inline'; default-src *.nationwideimaging.com *.mailmunch.com *.mailmunch.co *.bootstrapcdn.com *.google.com https://www.youtube.com https://www.youtube-nocookie.com *.doubleclick.net *.gstatic.com *.google-analytics.com *.googleadservices.com *.googletagmanager.com *.googleapis.com *.mxrimaging.com *.pardot.com *.vimeo.com *.vimeocdn.com *.cloudflare.com blob: data: 'self' 'unsafe-inline' 'unsafe-eval'; frame-ancestors visit.mxrimaging.com 'self'; form-action *.mxrimaging.com 'self'; report-uri https://csp.mxrimaging.com/csp-reports; report-to csp-endpoint- strict-transport-security
max-age=86400; includeSubDomains