recovery.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
Third-party hosts loaded (1)
- res.cloudinary.com×14
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1999-04-23
- Expires
- 2027-04-23 337 days left
- Updated
- 2024-07-18
- Name servers
-
- owen.ns.cloudflare.com
- uma.ns.cloudflare.com
DNS records live
- NS
-
- owen.ns.cloudflare.com
- uma.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
include:5563304.spf02.hubspotemail.netneon-domain-verification=ToO6nwoHfbRO2hRnymBhqdhP84Pro3QGf0095018235b8109a2bf9f65674a1784b6971ed6
- Verified for
-
- Anthropic
- Cursor
- Google Workspace
- Slack
Email authentication partial
- SPF
-
v=spf1 include:_spf.google.com include:spf.mailjet.com include:5563304.spf02.hubspotemail.net include:_spf.mailforward.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyM3wp+DgzyfgslLqI7U0MF3oGi4T3ETTMZOdTGg4cTj9BBdQr6y39ls4K7inymAlmmhUz40tloXZwX…
selectors probed - google:
Certificate (current)
WE1
Expires in 72 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(), microphone=(), geolocation=(), payment=(), usb=(), bluetooth=(), midi=(), magnetometer=(), gyroscope=(), accelerometer=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' https://vercel.live https://*.amplitude.com https://*.algolia.net https://*.algolianet.com https://*.sentry.io https://cdn.segment.com https://static.elfsight.com https://*.elfsightcdn.com https://www.doctify.com https://www.googletagmanager.com https://*.clerk.accounts.dev https://*.clerk.com https://clerk.reach.recovery.com https://challenges.cloudflare.com https://embed.recovery.com https://*.embed.recovery.com https://securepubads.g.doubleclick.net https://d2gjftn19i3x3l.cloudfront.net https://cdn.cookielaw.org https://maps.googleapis.com https://*.greencolumnart.com https://cdn.jsdelivr.net https://*.taboola.com https://googleads.g.doubleclick.net https://app.wonderchat.io http://*.outbrain.com https://pixel.byspotify.com http://collector-45532.tvsquared.com https://rec.smartlook.com https://www.buzzsprout.com https://snap.licdn.com https://www.redditstatic.com https://*.talkfurther.com https://*.tctm.co https://d2gjftn19i3x3l.- strict-transport-security
max-age=31536000; includeSubDomains
Links to (7)
Linked from (1)
- elev8.io×1