ontheball.co
HTML metadata
Technology
- Server
- DPS
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (4)
- img1.wsimg.com×19
- i.vimeocdn.com×1
- player.vimeo.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns19.domaincontrol.com
- ns20.domaincontrol.com
- MX
-
- 0 ontheball-co.mail.protection.outlook.com
- TXT
-
NETORGFT13114485.onmicrosoft.com
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 include:spf.em.secureserver.net include:_spf.ontheball_co._d.easydmarc.pro -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:ac0a8d6cb6@rua.easydmarc.us;ruf=mailto:ac0a8d6cb6@ruf.easydmarc.us;fo=1;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA351k9krdR5YNYBBkpsyWHGKG5MbGAUPk6LwqV6gvQUulGp5rCNBfCTGfeHoaqMTzSOPd5WU1Isod+w… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz45ek4xXEOLIMU9wsO3Yj/4H0XAiolr4+6u6nL4BwBcgYSvLreXYHwGEqKwQekfsotctKrjj169O6xo98w… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCcuBAam7T0o+TS8zlDe0EgSvLXh4U/gxjRaLZcM3R3+UZUX+DbC6aDFuyWGEvtaX4rWT8Z361aVCUXyVMP0niZek…
selectors probed - selector1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 293 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
frame-ancestors 'self' godaddy.com *.godaddy.com dev-godaddy.com *.dev-godaddy.com test-godaddy.com *.test-godaddy.com- strict-transport-security
max-age=63072000; includeSubDomains; preload