openasset.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- fonts.gstatic.com×4
- cdn.jsdelivr.net×2
- cdnjs.cloudflare.com×2
- www.googletagmanager.com×2
- cdn.bizible.com×1
- fonts.googleapis.com×1
- gmpg.org×1
Social
Contact
- Phone
- Address
- st practices for 2026
Registration
- Registrar
- Gandi SAS
- Created
- 2002-08-07
- Expires
- 2027-08-07 444 days left
- Updated
- 2025-06-16
- Name servers
-
- ns-1186.awsdns-20.org
- ns-1632.awsdns-12.co.uk
- ns-425.awsdns-53.com
- ns-822.awsdns-38.net
DNS records live
- NS
-
- ns-1186.awsdns-20.org
- ns-1632.awsdns-12.co.uk
- ns-425.awsdns-53.com
- ns-822.awsdns-38.net
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 4 TXT records
google-site-verification=hfF-XbJ6hJXMg1HQQXiZGkBXSgJqAmyeP2tnMuGWueggoogle-site-verification=stnwQW1o3A2SnrvkgthJwRte6SodDo8GKyAFBpLfSlMadobe-idp-site-verification=cfcb9a2e3c25ef3cb785781d5160df1c9387608ff29b4e520e816d3c2cba72bdgoogle-site-verification=hSB2HY9nK1zKFTgxSY9BdIH4CH4QmraQ0zvfzdput9w
Email authentication partial
- SPF
-
v=spf1 include:_spf.openasset_com._d.easydmarc.pro ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=none;rua=mailto:bbb1af104c@rua.easydmarc.us,mailto:dmarc-reports@axomic.com;ruf=mailto:bbb1af104c@ruf.easydmarc.us,mailto:dmarc-reports@axomic.com;ri=3600;fo=1;policy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtxiwPwrAf72Gviu0tMQccVFPK0J2zG5XU3Of/Mw5OK6CiVLzSGkeGToXcdy/rEHOeRcnleGMLfkLQ5…
selectors probed - google:
Certificate (current)
WE1
Expires in 58 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.googlesyndication.com https://api.linkedin.com/* *.mindtickle.com *.scoreapp.com *.luckyorange.com https://*.luckyorange.com wss://*.visitors.live *.marker.io *.ytimg.com www.youtube.com www.googleadservices.com *.company-target.com *.reddit.com *.mktoresp.com wss://*.qualified.com *.linkedin.com *.demandbase.com *.pathfactory.com *.qualified.com *.g2crowd.com www.redditstatic.com *.bing.com *.licdn.com *.hotjar.com *.bizibly.com *.cloudflare.com *.jsdelivr.net *.marketo.net *.gravatar.com yoast.com *.marketo.com *.vimeocdn.com *.vimeo.com vimeo.com *.doubleclick.net *.google.com *.googleapis.com *.google-analytics.com *.gstatic.com *.openasset.com *.bamboohr.com *.zoominfo.com js.zi-scripts.com *.googletagmanager.com https://server-side-tagging-hyg77eqhja-uc.a.run.app cdn.bizible.com *.facebook.net *.facebook.com *.g2.com *.hotjar.io 'unsafe-inline' 'unsafe-eval' data: blob:;- strict-transport-security
max-age=63072000; includeSubDomains; preload- cross-origin-resource-policy
*