pixton.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Joomla
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- fonts.googleapis.com×2
- fonts.gstatic.com×1
- static.hsappstatic.net×1
Social
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1998-12-15
- Expires
- 2027-12-14 561 days left
- Updated
- 2024-10-15
- Name servers
-
- ns-1448.awsdns-53.org
- ns-2020.awsdns-60.co.uk
- ns-380.awsdns-47.com
- ns-745.awsdns-29.net
DNS records live
- NS
-
- ns-1448.awsdns-53.org
- ns-2020.awsdns-60.co.uk
- ns-380.awsdns-47.com
- ns-745.awsdns-29.net
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
hubspot-developer-verification=ZDNmMjM2ZjEtYzczNi00NjM5LTkwZGYtZmIyN2Y4NmIyMmMxspf2.0/pra include:_spf.google.com include:amazonses.com include:8929196.spf05.hubspotemail.net include:bf05x.hubspotemail.net include:hubspotemail.net ~allMS=598D04829763E01C904409539B78675FE8DCE75E
- Verified for
-
- Ahrefs
- Atlassian
- GlobalSign
- Meta
- Stripe
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:amazonses.com include:8929196.spf05.hubspotemail.net include:bf05x.hubspotemail.net include:hubspotemail.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; adkim=r; aspf=r; rua=mailto:dmarc@pixton.com; ruf=mailto:dmarc@pixton.com; pct=100;policy: quarantine - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC7ryoPyBD3ho5Qsc0bm7Z/M2qanW3l7OeBZ/bqR6N/zYYnVwV6AlPUES04RUKGeIUdrhK5/GVUlcZ44NDrGn…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M04
Expires in 94 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'none'; font-src data: https://fonts.gstatic.com https://*.pixton.com https://*.hotjar.com; img-src 'self' data: https://*.pixton.com https://www.google.com https://www.google.ca https://track.hubspot.com https://static.hsappstatic.net https://f.hubspotusercontent40.net https://*.hubapi.com https://*.hubspotusercontent-na1.net https://*.hsforms.com https://www.ssa.gov https://i.ytimg.com https://*.hotjar.com https://googleads.g.doubleclick.net; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.pixton.com https://*.google.com https://*.googleapis.com https://*.stripe.com https://*.hsforms.net https://*.hsforms.com https://*.hs-scripts.com https://*.hs-banner.com https://*.hscollectedforms.net https://*.hs-analytics.net https://*.hsappstatic.net https://*.hubspot.com https://*.hubspot.net https://*.hubspotfeedback.com https://js.hsleadflows.net https://*.hubspotusercontent-na1.net https://js.hs-banner.com https://*.jquery.com https://*.usemessages.com https://cdn.jsde- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (5)
- youtube.com×1
- x.com×1
- tiktok.com×1
- instagram.com×1
- facebook.com×1