pointspot.co
HTML metadata
Technology
- CMS
- Gatsby
Third-party hosts loaded (6)
- apis.google.com×2
- firebasestorage.googleapis.com×2
- identitytoolkit.googleapis.com×2
- securetoken.googleapis.com×2
- www.googleapis.com×2
- www.gstatic.com×2
DNS records live
- NS
-
- ns-cloud-a1.googledomains.com
- ns-cloud-a2.googledomains.com
- ns-cloud-a3.googledomains.com
- ns-cloud-a4.googledomains.com
- TXT
-
Show 4 TXT records
google-site-verification=t62h_527kLAr-zvkMVhiEpf9r2ooAsLAifIF-XwTFnEgoogle-site-verification=oNJdSuiKW4LjD1oPEikSlX7Sio3p6XiVuWbAqNBA1Ssgoogle-site-verification=c6kTQLjGe0E5w3AgfVxkwRPwXrVu94hij-TqcbbmKF0facebook-domain-verification=mni08n9pw9zi6vt1igsby2vvr0aj3z
Email authentication no MX
- SPF
-
v=spf1 include:mailgun.org include:_spf.firebasemail.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; sp=quarantine; rua=mailto:f363865552cf633@rep.dmarcanalyzer.com; ruf=mailto:dmarc-report@mail.pointspot.co; pct=100; fo=1;policy: quarantine · sp=quarantine - DKIM
- no key found at common selectors
Certificate (current)
WR3
Expires in 41 days
HTTP security headers
- present
-
- strict-transport-security
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing Content Security Policy
Header values
- referrer-policy
strict-origin- x-frame-options
sameorigin- permissions-policy
camera=self, microphone=(), geolocation=(), payment=(), usb=(), interest-cohort=()- x-content-type-options
nosniff- strict-transport-security
max-age=31536000;includeSubdomains