qssecurity.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- AmazonS3
- Cookie consent
-
- OneTrust
Third-party hosts loaded (2)
- cdn.cookielaw.org×3
- assets.adobedtm.com×2
Contact
- Phone
Registration
- Registrar
- Amazon Registrar, Inc.
- Created
- 2006-01-27
- Expires
- 2027-01-27 252 days left
- Updated
- 2025-12-23
- Name servers
-
- ns-13.awsdns-01.com
- ns-1424.awsdns-50.org
- ns-1590.awsdns-06.co.uk
- ns-708.awsdns-24.net
DNS records live
- NS
-
- ns-13.awsdns-01.com
- ns-1424.awsdns-50.org
- ns-1590.awsdns-06.co.uk
- ns-708.awsdns-24.net
- MX
-
- 0 mxa-00322702.gslb.pphosted.com
- 0 mxb-00322702.gslb.pphosted.com
- TXT
-
Show 12 TXT records
docusign=9835521d-1260-40c1-afc4-dfa1e0e90d99google-site-verification=lykFHmaD2gB7JJCIo5ejeOqEhSZMtOl-Ki7o70BG--Aknowbe4-site-verification=7020458016838214d121cad0451ab2afonetrust-domain-verification=512ddbcc38af40bc87ef52f4e7c9b41eonetrust-domain-verification=63f56e520c5844018bb136279f0bed9esmartsheet-site-validation=LfdTKTnxRDln6BssuzLnqWV9nUQQlqWDspecops-verification-code=62f3dc6f-f494-4354-a8bb-b16a041f6b46spycloud-domain-verification=e28e52a6-ae9b-4b1d-8991-09f94b56190aMS=ms50509934atlassian-domain-verification=AkOy+i2rwVANFnu4PZ7pvbpi8VM5jbUya/NIpH+tMHpq9Dd/nt2OIdGl/RNUJVDubluebeam-verification=dphcbhfn86bmqurkt6uo1z6ivkj3mkdocusign=504b88cf-353b-42cd-8e4a-6020748ba7af
Email authentication strong
- SPF
-
v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_rua@emaildefense.proofpoint.com; ruf=mailto:dmarc_ruf@emaildefense.proofpoint.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvChCqcac8nUuWoOPhdlh1CQzrFPN9umZLigPjHZaY7pnl+eJzjFcUok/FvwY4NtpLPDReGdOqLzfvY… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwn0HyfTXUk72Yz1oUYkohaPzgi9gsv9reWBRUagy8Mqqu2n+DTs2GJ+olle63Z/JiHMiW5CwdkTg1d…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 115 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SameOrigin- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'nonce-UB5MSFrdE+Mx3D2huwosXQ==' 'strict-dynamic'; style-src 'nonce-UB5MSFrdE+Mx3D2huwosXQ==' 'self' https://cdn.cookielaw.org cookie-cdn.cookiepro.com privacyportal.onetrust.com geolocation.onetrust.com assets.adobedtm.com; connect-src 'self' https://browser-intake-datadoghq.com https://cdn.cookielaw.org https://dpm.demdex.net https://qss.sc.omtrdc.net https://geolocation.onetrust.com; frame-src https://netjets.demdex.net; object-src 'none'; img-src 'self' *.google-analytics.com https://qss.sc.omtrdc.net https://cdn.cookielaw.org https://cm.everesttech.net https://dpm.demdex.net; worker-src 'self'; form-action 'self'; base-uri 'none'; report-uri https://browser-intake-datadoghq.com/api/v2/logs?dd-api-key=pubbf4ae0fae644d734d47bd9fe7e38113a&dd-evp-origin=content-security-policy&ddsource=csp-report https://browser-intake-datadoghq.com/api/v2/logs?dd-api-key=pub8385e81f176aca2afaede8be73cb2739&dd-evp-origin=content-security-policy&ddsource=csp-report;- strict-transport-security
max-age=63072000; includeSubdomains