otonomos.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- otonomos-web-public-assets.s3.us-west-2.amazonaws.com×56
- t.contentsquare.net×1
- www.googletagmanager.com×1
Social
Contact
Registration
- Registrar
- NameCheap, Inc.
- Created
- 2014-03-27
- Expires
- 2028-03-27 678 days left
- Updated
- 2023-03-24
- Name servers
-
- jim.ns.cloudflare.com
- olga.ns.cloudflare.com
DNS records live
- NS
-
- jim.ns.cloudflare.com
- olga.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 8 TXT records
brevo-code:4c1a409901ea9bb7914a3a8dae66ca49google-site-verification=89hPAZG5iu6zvBg5nSCkuuvUxWZ30kRXCmA8zsk4bEggoogle-site-verification=LIo-Bs_KrHMh2bQshGS1uK6qMyqGpk-fqqMXsudSN2Qgoogle-site-verification=Stl7z-1uLnaQ6zoQIH42dMYoHdTxzDr3DnkjVFckhlEgoogle-site-verification=XSTciGaGkO5IowFRkJzfOU1A9liihl6SG5wbVfyPpIElinkedin-site-verification=ea87c80e-f535-43b7-98b2-3cbf50abf818protonmail-verification=7d48005a6461fb6293e66fcea303f0d5f0bef11500Dal00001Niqzd=1TBVz00000008AW
Email authentication strong
- SPF
-
v=spf1 include:_spf.protonmail.ch mx include:_spf.google.com ~all include:zcsend.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p= reject; rua=mailto:marcio@otonomos.com; rua=mailto:rua@dmarc.brevo.compolicy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkxcOmu5xcAcaG5ITqOBnu/0hkwhFVHIhxmROMeW/ioWFJnUT8gFXgFYOF0WlyPzSh9IJyn6Cv4xnnO… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqvx0sVoE4j/g7mKUAw+GCtgGjZUXY3S6x1NliTLXZS1yHFMHkabaCNSSjZILOVhY7maNMZni9U1+ghU/bi… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAywaQcZyEeg58sTQ+1NseabmkZpaQswW6w3Q82i8pJs9uYZp0fB/HlZkiKMBiC1w6PkWYRm/5xrizjTzlpl…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M04
Expires in 234 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; connect-src 'self' https://admin-api.otonomos.com https://database-bucket-test.s3.us-west-2.amazonaws.com/ https://auth.privy.io wss://relay.walletconnect.com wss://relay.walletconnect.org wss://www.walletlink.org https://*.rpc.privy.systems https://explorer-api.walletconnect.com https://cdn.jsdelivr.net/npm/world-atlas/countries-110m.json https://test-otonomos-public.s3.us-west-2.amazonaws.com https://otonomos-web-public-assets.s3.us-west-2.amazonaws.com https://api.web3modal.org https://pulse.walletconnect.org https://*.contentsquare.net https://*.contentsquare.com https://www.google-analytics.com https://*.google-analytics.com https://www.googletagmanager.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://challenges.cloudflare.com https://cdn.jsdelivr.net/npm/globe.gl https://*.contentsquare.net https://app.contentsquare.com https://www.googletagmanager.com; img-src 'self' blob: data: https://explorer-api.walletconnect.com https://otonomos-web-public-as
Links to (30)
- lo.tech×2
- makerdao.com×2
- mute.io×2
- nexo.com×2
- powerloom.io×2
- radom.com×2
- rfox.com×2
- spencer-west.com×2
- t.me×2
- telosfoundation.io×2
- troverse.io×2
- twitter.com×2
- youtube.com×2
- 1inch.io×2
- andersen.com×2
- api3.org×2
- calendly.com×2
- creaticles.com×2
- creaton.io×2
- darienadvisors.io×2
- enrex.io×2
- ethereum.org×2
- fidira.io×2
- fluensure.io×2
- gnosis.io×2
- humandao.org×2
- instagram.com×2
- lawbeam.io×2
- linkedin.com×2
- linkpool.io×2