parkplacetechnologies.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- fonts.googleapis.com×4
- cdn.datatables.net×3
- ajax.googleapis.com×1
- dev.visualwebsiteoptimizer.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Network Solutions, LLC
- Created
- 2009-07-03
- Expires
- 2027-07-03 408 days left
- Updated
- 2024-05-04
- Name servers
-
- ns1.dnsbycomodo.net
- ns2.dnsbycomodo.net
DNS records live
- NS
-
- ns1.dnsbycomodo.net
- ns2.dnsbycomodo.net
- MX
-
- 10 parkplacetechnologies-com.mail.protection.outlook.com
- TXT
-
Show 11 TXT records
_gom8250evle7ozsxumedotk4iz5jkcr_gryz055v9li56efnkh9pe6qrzl6g33q_t66aaxda6yypax5q7k7r0k4ukawgyuygmvhv10yh6kp1c6zd9w83tn44q7chh00lc77s6bfr1ffqbrd01zc5djns466758lparkplace-prod-xp1-cd.azurewebsites.netv=DMARC1; p=none; rua=mailto:dmarc@parkplacetech.com; ruf=mailto:dmarc@parkplacetech.comv=msv1 t=CC1EDD5E-682D-48FB-91A9-02AD5C638418DOpC9QleMnDUL2yPgdBtHc8cts+yCixbqqBGAMZcW65L4e7lXuLcdW3KocQJK45NBVX8OEmxm/tNFxR7EtpC3w==_ckdmctemvh3iz99qz1bl5pmdysqpwxx_dv4024tss3zazepsaj4662nvj0mwatl
- Verified for
-
Email authentication weak
- SPF
-
v=spf1 include:mktomail.com include:sendgrid.net ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApLRNw0hjcwnKu51nCaxJKeiWEUXp8VIIff5W88ELw1jZmWvzuEDSR7ck/KnISEsc7z7NBaBjnL2rVLSb6U… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC6F1UDNCumxSeTzLEkLTQyIzwb8qN7N+wmbYNeU2H7dBLxRubRuu9tXpvn7fuPzUDlbeQ9iwMsPeNxRKCeACyt8t…
selectors probed - s1:
Certificate (current)
E7
Expires in 42 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
upgrade-insecure-requests; default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https:; script-src-elem 'self' https: blob: 'unsafe-inline' *.visualwebsiteoptimizer.com app.vwo.com; worker-src 'self' blob:; style-src 'self' 'unsafe-inline' https: *.visualwebsiteoptimizer.com app.vwo.com; img-src 'self' data: blob: https: *.visualwebsiteoptimizer.com app.vwo.com useruploads.vwo.io; font-src 'self' data: https:; connect-src 'self' https: *.visualwebsiteoptimizer.com app.vwo.com; object-src 'none'; frame-src 'self' https: *.visualwebsiteoptimizer.com app.vwo.com;- strict-transport-security
max-age=63072000; includeSubDomains; preload