nbrii.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- AmazonS3
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×3
- fonts.gstatic.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1997-09-13
- Expires
- 2027-09-12 481 days left
- Updated
- 2023-07-11
- Name servers
-
- pdns92.ultradns.biz
- pdns92.ultradns.com
- pdns92.ultradns.net
- pdns92.ultradns.org
DNS records live
- NS
-
- pdns92.ultradns.biz
- pdns92.ultradns.com
- pdns92.ultradns.net
- pdns92.ultradns.org
- MX
-
- 0 nbrii-com.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
google-site-verification=2X95uArOIxJA7aYhRd9RR2iTDtAujglAHSs0iMlJKasgoogle-site-verification=WtIyTwhvPvQzQwMuf11GweQDkIi09-i7YpYiR1w5JAogoogle-site-verification=r9Xns4GSFl3wW4udGzdMFc4zZSSXyNzpMWaIoieNLqIMS=ms21453727nffbrrl4zmb6pc9xd6q2vvpmyw5d1xqqfacebook-domain-verification=gpbnv897res3g2ibhybtmjxotnsgbj
Email authentication strong
- SPF
-
v=spf1 ip4:207.21.193.170 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@auth.returnpath.net,mailto:DMARCAggregate@nbrii.com; ruf=mailto:dmarc_afrf@auth.returnpath.net,mailto:DMARCForensic@nbrii.com;fo=1policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwu7CImNY8trtrl6ig/wIlhhBEOYRd2viieqQbVumU53ZbtH8D8sAe/Eoo7PRwJxuh8vsyJ13ux9fUt… - mail:
v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC/rUjWUNn63dGO6PQZSlpEX61VqvUCHFcHf8ueoBgyexjkYmL9JU5+zEtYYaT5QXI6au/uJUpSVFfZZ9IC7A9834C5j…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 235 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self' https:; img-src 'self' https: data:; font-src 'self' fonts.googleapis.com fonts.gstatic.com cdn.livechatinc.com data:; frame-ancestors 'none'; object-src 'none'; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.cptn.co *.clickcease.com *.doubleclick.net *.google-analytics.com *.google.com *.googleadservices.com *.googletagmanager.com *.gstatic.com *.gomega.ai *.liadm.com *.livechatinc.com *.remarketstats.com *.scriptintel.io *.tctm.co *.usbrowserspeed.com *.youtube.com bat.bing.com cdn.searchkings.ca; style-src 'self' fonts.googleapis.com *.google.com 'unsafe-inline';- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (2)
- linkedin.com×2
- x.com×2