rakutenadvertising.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (4)
- stats.wp.com×2
- unpkg.com×2
- cdn.cookielaw.org×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2018-08-20
- Expires
- 2026-08-20 93 days left
- Updated
- 2025-08-16
- Name servers
-
- dns1.p09.nsone.net
- dns2.p09.nsone.net
- dns3.p09.nsone.net
- dns4.p09.nsone.net
DNS records live
- NS
-
- dns1.p09.nsone.net
- dns2.p09.nsone.net
- dns3.p09.nsone.net
- dns4.p09.nsone.net
- MX
-
- 1 smtp.google.com
- TXT
-
Show 9 TXT records
google-site-verification=6t_0n1x7bMXmi91QMLnevZUCNPoO_BDTkcJx6myq0Iogoogle-site-verification=ARHnNfUCXT_Wt_gC2HM2sZAh1m_sehYGqaaxRSuepmAgoogle-site-verification=eOCnllWp7i9j1ytqSTGOqBeQn4cEnM8u4BBl2PNE2Uogoogle-site-verification=0hoFTiJKCOWb5lSWrfjsj2Jq4A-x47NKENNwzSZc0w8google-site-verification=w74y42mKEQccfspLxWGl2J0YPMdw4wfU02-rMSK5ocAgoogle-site-verification=WmQXYsgFH-4wtIufmeVfD2LaKjlWyLwzfzA9TzKL78Qgoogle-site-verification=NmO9WHksTH1zgt_DSgIkTouILCKr_iODNQU7217r0A8tiktok-developers-site-verification=ewXB5hTmM1h7hon6AIQlbUBHwNJ8SfMNZOOM_verify_Au0L61Zp6uoScnxOiFGknq
Email authentication strong
- SPF
-
v=spf1 ip4:34.86.181.90/32 ip4:34.145.176.114/32 ip4:35.245.135.76/32 include:sendgrid.net include:mail.zendesk.com include:40067599.spf10.hubspotemail.net include:30741.spf08.hubspotemail.net include:_spf.google.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; fo=1; ri=3600; rua=mailto:79ff0a83@inbox.us.redsift.cloud; ruf=mailto:79ff0a83@inbox.us.redsift.cloud;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkS39Exe5rJ7ibQSqsPIdQRr8hJfeINeTqx8sCO9ZDDu4NYMNMylYpCcs88vOviJzvugivkOHIVmrrY… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5g+uNBuZtze36rF2cn9OdzIbY73Eqgsvcc4UMh5pZRzTZGg0Y2/LW1BP/E+WIccAZ0gTlwW/K4Sk1e6u9Y… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxo5jkWY/zPBC6Q3BIjQsIuZgU30cqYvh7lpD1yAkQVZ4M+nL7UAKfsrVoBuvhYrgV2BBo2jOUq5gGiOKQp…
selectors probed - google:
Certificate (current)
E8
Expires in 44 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src * blob: 'unsafe-inline' 'unsafe-eval'; script-src * blob: 'unsafe-inline' 'unsafe-eval'; worker-src * blob: 'unsafe-inline' 'unsafe-eval'; connect-src * 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; font-src * data: 'unsafe-inline'; frame-ancestors 'self'; form-action *; report-to endpoint-1