orion180.com
HTML metadata
Technology
- Server
- nginx
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Piwik PRO
Third-party hosts loaded (4)
- www.googletagmanager.com×2
- bat.bing.com×1
- orion180.containers.piwik.pro×1
- policy.app.cookieinformation.com×1
Social
Contact
- Phone
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2016-07-29
- Expires
- 2026-07-29 70 days left
- Updated
- 2024-07-29
- Name servers
-
- ns61.domaincontrol.com
- ns62.domaincontrol.com
DNS records live
- NS
-
- ns61.domaincontrol.com
- ns62.domaincontrol.com
- MX
-
- 10 orion180-com.mx1.arsmtp.com
- 20 orion180-com.mx2.arsmtp.com
- TXT
-
Show 5 TXT records
Google-site-verification=7f_NRiI_wfItvSRUIY1iy1jaum7OeolhkhjnnW7_7ZYapple-domain-verification=50aq1slmUnI2Dvgporion180insurance.azurewebsites.netrippling-domain-verification=4656109a09a64278docker-verification=212a6e84-f405-4407-aa66-407d74f816e0
Email authentication partial
- SPF
-
v=spf1 include:7031614.spf07.hubspotemail.net ip4:149.72.132.192/29 ip4:159.183.162.152/29 include:spf.edgepilot.com include:amazonses.com include:orion180-com.spf.smtp25.com include:spf.tipalti.com include:spf.protection.outlook.com include:spf.emailsignatures365.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQChXa1HmD18U8tFU+d60xwMHaDlGJ/HxtefayTSpd9X1gPgELxDRXyqJQQntW8sG53Iyr59U5NBrwYSC+KJQd… - s1:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDJKlWCxO6cpUphFcD991ZeYycwFiLf+b+3VTdXbV/zBHJIGQH/F+4ksaPmvE0iemN8DJvPr3ouGWz2SMwcYGzTNC… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC80w6asY0Id/c8ITC+91xITitN50aDZwUEprQkQ2f829koD+kOmPI8aHND/wWSBUlnQdGOWyPy662H+PzXopUinC…
selectors probed - selector1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 120 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://orion180.com https://www.orion180.com https://*.cookieinformation.com https://*.cookieinformation.dk https://*.ripplingcdn.com https://*.rippling.com https://*.piwik.pro https://*.googletagmanager.com https://*.google-analytics.com https://*.newrelic.com https://*.nr-data.net https://*.bing.com https://*.clarity.ms https://*.linkedin.com https://*.licdn.com https://*.facebook.net https://*.facebook.com https://*.googleadservices.com https://*.g.doubleclick.net https://*.googlesyndication.com https://*.googleapis.com https://*.gstatic.com https://*.adsrvr.org https://*.google.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://policy.app.cookieinformation.com https://*.cookieinformation.com https://*.cookieinformation.dk https://*.ripplingcdn.com https://*.rippling.com https://*.piwik.pro https://orion180.containers.piwik.pro https://*.googletagmanager.com https://*.google-analytics.com https://*.newrelic.com https://*.nr-data.net https://*.bing.com h- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (7)
- apple.com×2
- facebook.com×2
- google.com×2
- instagram.com×2
- linkedin.com×2
- twitter.com×2
- youtube.com×2