optumbhcare.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Next.js
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2022-06-29
- Expires
- 2026-06-29 40 days left
- Updated
- 2025-06-30
- Name servers
-
- ns53.domaincontrol.com
- ns54.domaincontrol.com
DNS records live
- NS
-
- ns53.domaincontrol.com
- ns54.domaincontrol.com
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv5muY/iUuFjXhTUvc/MzpK7X84fvtmHdbjuKhM+2K5VeUumakwJgCUOvJgEbhKkh94moDnvlJqxhVUSaqU… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2vSSqu8MnTEAOmR98fsdSqG90moaPGWe/dI3EJxEBZmBvID4wg+hUMccIeSUulCzEanwMC6RGD3JO902JO…
selectors probed - s1:
Certificate (current)
E8
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak content type protection
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self)- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self'; script-src 'self' blob: https://perfalytics.com https://*.perfalytics.com https://freshpaint-cdn.com https://www.datadoghq-browser-agent.com https://caredelivery.my.site.com https://maps.googleapis.com https://www.googletagmanager.com https://edge.fullstory.com https://polyfill.io https://assets.adobedtm.com https://player.vimeo.com 'unsafe-inline' 'unsafe-eval'; object-src 'none'; connect-src 'self' https://perfalytics.com https://*.perfalytics.com https://browser-intake-us5-datadoghq.com https://caredelivery.my.salesforce-scrt.com https://apiv2.optumbhcare.com https://www.google-analytics.com https://edge.fullstory.com https://rs.fullstory.com https://maps.googleapis.com https://*.googleapis.com https://dpm.demdex.net https://vimeo.com https://*.optum.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://cdnjs.cloudflare.com https://caredelivery.my.site.com; img-src 'self' https://optumbhcare.com https://www.optumbhcare.com https://smetrics.op- strict-transport-security
max-age=31536000; includeSubDomains