nicolawealth.com
HTML metadata
Technology
- CDN
- Netlify
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- www.datocms-assets.com×4
- www.googletagmanager.com×1
Registration
- Registrar
- Cloudflare, Inc.
- Created
- 2006-03-22
- Expires
- 2027-03-21 306 days left
- Updated
- 2022-06-19
- Name servers
-
- phil.ns.cloudflare.com
- tani.ns.cloudflare.com
DNS records live
- NS
-
- phil.ns.cloudflare.com
- tani.ns.cloudflare.com
- MX
-
- 0 nicolawealth-com.mail.protection.outlook.com
- TXT
-
Show 21 TXT records
google-site-verification=k2FPorBBI1pOiWt8I1YIVNQlIL7FTOpJ-XqT1dv9i50ppno9lfsk45drg9tsfa3m2fujrzoho-verification=zb81157321.zmverify.zoho.comsmartsheet-site-validation=BjVjGcRekxZaH50BazZltR06yU8tmfhvperplexity-ai-domain-verification-gc964v=VkwHBm2WY03miXoSM2WVUVcFtadobe-idp-site-verification=0715ea64210c471506958ae9e389cb0e7a06114c88421e38c6d3a9feab6bc137MS=ms96567882slack-domain-verification=tFO3GANSbwY4NaQFDsOsP33SHpD34Uy9SSU3mbs8atlassian-domain-verification=eRY9fO+olaOHYJpciJ0GUpBBVOrQ0zsQDrkTOv6LWTwA6VKhn7NnPFJ0eZQecOwqajcg5v62cedo5q03diabadf4cepmmn19hd54q7pndvg2rmdbocfaqjk7farradc81mnk3bjdon6b10docusign=6d571beb-4d63-4522-a127-85848ab0ea48linear-domain-verification=tj9e6gi825e8google-site-verification=ZBeGAPS3FIyyaEFeL6EDkilPdEyYXgrOKhPXlbt4Heclogmein-verification-code=fd588e01-b0b8-4f7d-bdb6-1abc71cb326dJdnmC7V7ajHTRIUdI2eLaME7CDmorREDVAANM8b4Wqkn2thy728pGIqJ5J4/KXJUfjpormiaSrzNBjNu5NBqXg==mongodb-site-verification=3ePLR8aW0GDKxpEpfCq0c4qCmwaKfLzFg2dhvUqN2unRK6jV8ri31pEFwPuHT7p4bzW52UEif/0PHC9z/eMA1alXcEK3UOCah3Uf1GLh6/wq/mcKimVtiA==Foxit-domain-verification=9247e83cbec2de2aff77b373383e298cgoogle-site-verification=Pl4k8p6HTQb5kkMjpNfK94YL8-gcZCZzYvHryhjoVlM
Email authentication strong
- SPF
-
v=spf1 include:_s00402207.autospf.email include:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=quarantine;rua=mailto:dmarc_agg@vali.emailpolicy: quarantine - DKIM
-
Show 5 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4VIjdWSbEj+K265FIf9K9nE4Lrk+dWpSFFzDZC07w/EvPMH1LWLxKUbZoFmDm7nPRU0OVXHTDc5m71… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArcR78G7JIDrfqC2KaHJjL22vx4RP/FY6K2F0MYpQdnJTGCavZQOZRndNiqrJq1jQIzTntQmVRzmU3g… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3jnjXlh2LUMGbL3YWDq4oJjvc0LtR8oVWZBnMTi+Fr8oFzwp2N8gyPmucGnsEQncBqAFgPZz9G7s1LY1CV… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1aetAZxEkNFFHCpRMt4i/toU3gbmezGRcL7FROISNC+nNYpDWpryor+DNKzCO3vT6prQZYU3HSbx1dBe21…
selectors probed - selector1:
Certificate (current)
E8
Expires in 16 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(), microphone=(), geolocation=(), interest-cohort=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.clarity.ms *.hscollectedforms.net *.hs-banner.com *.hs-analytics.net *.marketo.net *.marketo.com *.youtube.com *.bing.com *.nicolawealth.com *.greenhouse.io *.bugherd.com *.hotjar.com *.hs-scripts.com https://maps.googleapis.com https://unpkg.com https://fonts.googleapis.com https://*.googletagmanager.com https://cdn.jsdelivr.net https://www.google-analytics.com https://snap.licdn.com https://googleads.g.doubleclick.net https://static.ads-twitter.com https://tags.srv.stackadapt.com https://connect.facebook.net https://www.googleadservices.com https://cdn.bizible.com https://ajax.googleapis.com/ajax/libs/jquery/3.6.0/jquery.min.js https://code.jquery.com/ui/1.11.4/jquery-ui.js https://cdnjs.cloudflare.com/ajax/libs/gsap/1.19.0/TweenMax.min.js https://cdnjs.cloudflare.com/ajax/libs/gsap/1.19.0/plugins/CSSPlugin.min.js; style-src 'self' 'unsafe-inline' https://unpkg.com https://fonts.googleapis.com *.nicolawealth.com- strict-transport-security
max-age=31536000; includeSubDomains; preload