rdsx.dev
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
Third-party hosts loaded (1)
- rudro.dev×1
Social
DNS records live
- NS
-
- achiel.ns.cloudflare.com
- josephine.ns.cloudflare.com
- MX
-
- 2 route3.mx.cloudflare.net
- 32 route2.mx.cloudflare.net
- 83 route1.mx.cloudflare.net
- TXT
-
brevo-code:072a80eeb3559984900e429297e7c752google-site-verification=5w0cvAZseAN3Jhq_YZOpLMQGc8k77bazeUSn_5i7VHoopenai-domain-verification=dv-UD6cFoh43XY2JcflzjdduN4E
Email authentication partial
- SPF
-
v=spf1 include:_spf.mx.cloudflare.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:rua@dmarc.brevo.compolicy: none (monitoring only) - DKIM
-
- mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - mail:
Certificate (current)
R13
Expires in 58 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src * data: mediastream: blob: filesystem: about: ws: wss: 'unsafe-eval' 'wasm-unsafe-eval' 'unsafe-inline'; script-src * data: blob: 'unsafe-inline' 'unsafe-eval'; script-src-elem * data: blob: 'unsafe-inline' 'unsafe-eval';connect-src * data: blob: 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; media-src * data: blob: 'unsafe-inline'; frame-src * data: blob: ; style-src * data: blob: 'unsafe-inline';font-src * data: blob: 'unsafe-inline';frame-ancestors * data: blob:;- strict-transport-security
max-age=63072000
Links to (10)
- youtube.com×2
- github.com×2
- google.com×2
- linkedin.com×2
- rudrodip.tech×2
- sonicrypt.org×2
- vercel.app×2
- x.com×2
- discordapp.com×2
- youtu.be×1