ororagroup.com
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- TrustArc
Third-party hosts loaded (4)
- consent.trustarc.com×1
- fast.fonts.net×1
- maps.googleapis.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2013-10-10
- Expires
- 2026-10-10 143 days left
- Updated
- 2025-10-06
- Name servers
-
- andy.ns.cloudflare.com
- melany.ns.cloudflare.com
DNS records live
- NS
-
- andy.ns.cloudflare.com
- melany.ns.cloudflare.com
- MX
-
- 10 us-smtp-inbound-1.mimecast.com
- 10 us-smtp-inbound-2.mimecast.com
- TXT
-
Show 17 TXT records
google-site-verification=F3c7apK_9eOF599OiOqE1atHXPMjojU-XUZWhxq3c-4ZOOM_verify_FY3T1O-6R4S6Odar9X-RRgpardot864602=02aad718cd9d9253d47b8e9c37b97edf58e2ff46d73cbc5e2b3a65d29d8fea59google-site-verification=cauGYJLfRigF4velzxfXgXIq8xCONdKODE-qcD1Z1GE323f1296-3c68-4be0-83a3-87c49aeaa102ZOOM_verify_RSkXzQ1XVeA1vuPLTm7ix2gEQvmGaiq/YNcYGNBtReIjcpjW4tDO2dQoMZDSMZfPHtHmDFX6/oynHX6/pm3d3Ed0o5tP137Vm7KgW73qMV4Q==successfactors-site-verification=YzRmNzc3ZTJmMWQ5OTNmOTRlNDZmYWExYWJjZmFhOTk0ODhjZWJjNTFlNDJhZmM5MzcyZDUxNzEyMWIwMGI4OA==sending_domain864602=6021c555002bce16a1aaf381f18e35b9460a4d992b9021e5c965aaa94644d081169ndACd2pI7t8LL6f9BGDVzmXOUuhPeHTjFQISsdOc=google-gws-recovery-domain-verification=52399002DirectFedAuthUrl=https://ororagroup.okta.com/app/ororagroup_pwctaxautomate_1/exk1vnqmi53DH922n358/sso/samlpardot757233=2e13c9059168e103845f08dae9fa434f2012a78c8eed202746ca51adab0e182aMS=ms90386614apple-domain-verification=psb7imYUOyr7dZssciscocidomainverification=1f000284dd488eb8b1d1e90279cf643f6d9c246d2224bb26e53573347fad142ewebexdomainverification.M3P2=be181bcb-1631-4096-9bf4-86930f61df3d
Email authentication strong
- SPF
-
v=spf1 ip4:54.66.120.162 include:us._netblocks.mimecast.com include:spf.dynect.net include:spf.mandrillapp.com include:servers.mcsv.net include:eskerondemand.com include:_spf-dc4.successfactors.com include:45004909.spf04.hubspotemail.net include:45547840.spf01.hubspotemail.net include:miraqle.com include:_spf.salesforce.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:fa57c9f62bf7274@rep.dmarcanalyzer.com; ruf=mailto:fa57c9f62bf7274@for.dmarcanalyzer.com; fo=1;policy: reject (enforced) - DKIM
-
- k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - k2:
Certificate (current)
Amazon RSA 2048 M01
Expires in 181 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), gyroscope=(), microphone=(), usb=(), payment=(), geolocation=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' https:; font-src 'self' https: data:; img-src 'self' https: data:; object-src *.googlesyndication.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.jotform.com https://cdn.jotfor.ms cdnjs.cloudflare.com https://*.googletagservices.com https://*.googlesyndication.com https://*.googleadservices.com https://*.doubleclick.net https://*.google.com https://*.truste.com https://choices.trustarc.com https://consent.trustarc.com https://fast.fonts.net https://google-analytics.com https://googletagmanager.com https://m.youtube.com https://maps.googleapis.com https://pi.pardot.com https://recaptcha.net https://ssl.google-analytics.com https://www.youtube.com https://www.gstatic.cn/recaptcha/ https://www.gstatic.com https://www.gstatic.com/recaptcha/ https://www.recaptcha.net https://www.google-analytics.com https://www.googletagmanager.com; style-src 'self' 'unsafe-inline' cdnjs.cloudflare.com *.jotform.com https://cdn.jotfor.ms fast.fonts.net hello.myfonts.net www.googlet- strict-transport-security
max-age=63072000; includeSubDomains
Links to (3)
- linkedin.com×2
- mufg.com×2
- youtube.com×2