peli.com
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (6)
- www.pelican.com×5
- fonts.googleapis.com×3
- ajax.googleapis.com×1
- cdn.weglot.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1998-01-21
- Expires
- 2027-01-20 245 days left
- Updated
- 2024-09-12
- Name servers
-
- adel.ns.cloudflare.com
- yevgen.ns.cloudflare.com
DNS records live
- NS
-
- adel.ns.cloudflare.com
- yevgen.ns.cloudflare.com
- MX
-
- 10 us-smtp-inbound-1.mimecast.com
- 10 us-smtp-inbound-2.mimecast.com
- TXT
-
Show 16 TXT records
zoho-sites-verification=sxu1dmalw1guq0tbgn5u49cp0msu5llmn0h61730qa7gg7hksaqmhmrbnqromMS=ms19687396cat9s9ria895rs4ooqlfqql8todocusign=17a6b278-d3fe-4331-8ebd-944ff74f7725facebook-domain-verification=udt8kidpav007mgq73b1pa6oprpsiigoogle-site-verification=9Ep5TPU_fXc00AvyHB2VUF0kR7OLseExCNLWcWD0Pl8google-site-verification=idZ-x9MJywKMcQJUT4HDZZDbS6gSVX8CnjBdr-txJFIgoogle-site-verification=yzgTcV8qSB2wFDz8yK-9cW4EP_-XQbDxJ0RkLVom8Ukknowbe4-site-verification=1d71a5688e7e5b9e4527154f9c454f53openai-domain-verification=dv-P4DfRdjSte1OpjxxAHtq25lbsending_domain1095992=93ea7c610756a06e63f52988bb6e14c18a70c9b8eac459a22474ad984f714bc6smartsheet-site-validation=hQYBc5BLXYPcDfxollchC3QRFps5sN_Straction-guest=b8dc21cb-a701-48a1-a6e6-6b140ee1bffewiz-domain-verification=ed89d83b6218238fc7d1add6a7b1ea25db360076bf8ba3770a7399bb92254bea
Email authentication strong
- SPF
-
v=spf1 include:_netblocks.mimecast.com include:_spf.salesforce.com ip4:67.231.158.158 ip4:67.231.151.29 ip4:67.231.152.177 ip4:208.84.65.220 ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=reject;pct=100;rua=mailto:c4f423d363@rua.easydmarc.us;ruf=mailto:c4f423d363@ruf.easydmarc.us;ri=86400;aspf=s;adkim=s;fo=1;policy: reject (enforced) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxBU/cgKVc6iClGIIAxfhJkmt1fL1ElULlNDi6I15jHfRsC1PrZe8XhYKah+5lKE9twrdizhRNHN6WfSnMk… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzL+bZeT/cDXsYTv4S4YYBOdpD0sRPi1hk8Fj80AO5E2qxsCpHKpEg6/6/XXRxQplHgUlifovVyTGGjpsFG… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - s1:
Certificate (current)
Amazon RSA 2048 M01
Expires in 240 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: *.googletagmanager.com cdn-cookieyes.com snap.licdn.com *.hscollectedforms.net *.hsleadflows.net *.hsforms.net *.hsforms.com *.hubspot.com js.hscollectedforms.net js.hsadspixel.net *.hs-scripts.com js.hs-banner.com js.hs-analytics.net forms.hsforms.com *.usemessages.com *.peli.com *.pelican.com *.stackadapt.com *.emarsys.net *.adroll.com cdnjs.cloudflare.com ajax.googleapis.com *.klaviyo.com js.adsrvr.org tags.crwdcntrl.net *.dynamicyield.com *.hotjar.com www.googletagmanager.com connect.facebook.net snap.licdn.com www.googleadservices.com static.ads-twitter.com analytics.twitter.com bat.bing.com *.avmws.com use.fontawesome.com googleads.g.doubleclick.net *.yotpo.com *.en25.com www.google-analytics.com *.clarity.ms assets.pinterest.com www.google.com cdnapisec.kaltura.com www.gstatic.com cdn.rawgit.com *.datadome.co code.jquery.com *.svn0czn.com cdn.dynamicyield.com *.scarabresearch.com *.simpli.fi *.klarnaservic- strict-transport-security
max-age=63072000; includeSubDomains