paramountdigitalcopy.com
HTML metadata
Technology
- Server
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- fonts.googleapis.com×2
- cdn.privacy.paramount.com×1
- fonts.gstatic.com×1
Registration
- Registrar
- MarkMonitor Inc.
- Created
- 2008-05-07
- Expires
- 2027-05-07 352 days left
- Updated
- 2026-04-05
- Name servers
-
- dns1.p09.nsone.net
- dns2.p09.nsone.net
- dns3.p09.nsone.net
- dns4.p09.nsone.net
- ns0004.secondary.cloudflare.com
- ns0243.secondary.cloudflare.com
DNS records live
- NS
-
- dns1.p09.nsone.net
- dns2.p09.nsone.net
- dns3.p09.nsone.net
- dns4.p09.nsone.net
- ns0004.secondary.cloudflare.com
- ns0243.secondary.cloudflare.com
- MX
-
- 10 mx1.emailsrvr.com
- 20 mx2.emailsrvr.com
- TXT
-
google-site-verification=cAYKdg2Yka7sJq2ORVfqdc0d8R0Ad8uLu4DHkH22tSc
Email authentication partial
- SPF
-
v=spf1 include:mail.zendesk.com ?allneutral (?all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
WR3
Expires in 71 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self'; base-uri 'self'; form-action 'self'; frame-ancestors 'none'; object-src 'none'; img-src 'self' https://www.google-analytics.com https://*.krxd.net https://mdeo-cms.imgix.net https://cms-img.mdeo.co https://mdeo.imgix.net https://img.mdeo.co https://cdn.cookielaw.org https://global.ketchcdn.com; font-src 'self' https://fonts.gstatic.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; frame-src https://www.google.com https://*.krxd.net; child-src https://www.google.com https://*.krxd.net; script-src 'self' 'unsafe-inline' https://a.mdeo.co https://www.google.com https://www.gstatic.com https://www.googletagmanager.com https://www.google-analytics.com https://*.krxd.net https://cdn.cookielaw.org https://production-cmp.isgprivacy.cbsi.com https://cdn.privacy.paramount.com https://*.onetrust.com https://global.ketchcdn.com https://cdn.ketchjs.com; connect-src 'self' https://a.mdeo.co https://cms.mdeo.co https://test-cms.mdeo.co https://www.google-analytic- strict-transport-security
max-age=31536000; includeSubDomains; preload;