naylorbp.com
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- www.googletagmanager.com×2
- js.hs-scripts.com×1
Social
Contact
- Phone
- Address
- Head Office455 North Service Road E,Oakville, ON, L6H 1A5, CanadaT +1 905 338 8000F +1 905 338 8369Toll Free:1-888-694-4443info@naylorbp.comService CallsEmail:service@naylorbp.comCanada:+1 905 338 8000Toll Free:+1 888 694 4443
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2014-08-25
- Expires
- 2026-08-25 97 days left
- Updated
- 2025-04-21
- Name servers
-
- ns1-03.azure-dns.com
- ns2-03.azure-dns.net
- ns3-03.azure-dns.org
- ns4-03.azure-dns.info
DNS records live
- NS
-
- ns1-03.azure-dns.com
- ns2-03.azure-dns.net
- ns3-03.azure-dns.org
- ns4-03.azure-dns.info
- MX
-
- 10 naylorbp-com.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
_globalsign-domain-verification=qQG_RglYro321b81hqI4Y9Qr1KklZ24b0T2KxjCJZ__globalsign-domain-verification=nDrsKkRfY2f7eoKtZf6Wve_EneSVanVXEvZ09Ib7aAuehkq6jma2hhmtml0gnk1hr727sophos-domain-verification=d26a348b68fd66119ed789ec10150ef001888b4cbf0f90ba81c525d16f7efcdcsophos-domain-verification=b8748447daefbd4060bd9fcb0130dff32759169f
Email authentication strong
- SPF
-
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.emailpolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyO6DfH0gunT271HRTnGLdPMRH/HFUDFuSd8CJVQtNr4SzpvmhvUWC2iAkniOnzYj8mDsvd6XF7I6Os… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxAdIaINMzAO0SfoX5aRzznaQqYLfv3ZruM9sNxUawpnI7HXISrPGjaR20DApy0BBYQKqEhd8HCo24R…
selectors probed - selector1:
Certificate (current)
R13
Expires in 80 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self' data: api.hubapi.com api.hubspot.com static.hsappstatic.net track.hubspot.com *.doubleclick.net *.google.com *.google-analytics.com *.googleadservices.com *.googleapis.com *.googletagmanager.com *.gstatic.com i.ytimg.com idx.liadm.com insight.adsrvr.org js.callrail.com recruiting.paylocity.com ws.zoominfo.com js.zi-scripts.com js.hs-scripts.com; script-src 'self' blob: js.hsadspixel.net js.hs-banner.com js.usemessages.com 'nonce-f9752bab16b88f368269ea1a07e09dad' 'nonce-d86b3450141f883dbb4fad4ed7789f46' *.bugherd.com *.google.com *.google-analytics.com *.googleapis.com *.googletagmanager.com *.gstatic.com *.wrayward.dev:35729 *.youtube.com frontend.id-visitors.com jobs.ourcareerpages.com js.callrail.com js.hs-scripts.com js.hs-analytics.net js.zi-scripts.com script.hotjar.com secure.leadforensics.com ws.zoominfo.com tags.clickagy.com; style-src 'self' *.googleapis.com jobs.ourcareerpages.com; frame-src 'self' app.hubspot.com *.google.com *.youtube.com go.servicetitan.- strict-transport-security
max-age=63072000; includeSubDomains