roaradventures.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Analytics
- Google Tag Manager
- Ads
-
- Google Ads (DoubleClick)
- Meta Pixel
- Cookie consent
-
- Iubenda
- Fonts
-
- Google Fonts
Third-party hosts loaded (15)
- connectio.s3.amazonaws.com×2
- www.facebook.com×2
- aff.roar.link×1
- cdn.iubenda.com×1
- cdnjs.cloudflare.com×1
- client.crisp.chat×1
- connect.facebook.net×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- js.stripe.com×1
- stats.g.doubleclick.net×1
- trackcmp.net×1
- translate.google.com×1
- www.google-analytics.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Cloudflare, Inc.
- Created
- 2016-06-24
- Expires
- 2026-06-24 35 days left
- Updated
- 2025-05-25
- Name servers
-
- jill.ns.cloudflare.com
- noah.ns.cloudflare.com
DNS records live
- NS
-
- jill.ns.cloudflare.com
- noah.ns.cloudflare.com
- MX
-
- 10 mx1.emailsrvr.com
- 20 mx2.emailsrvr.com
- TXT
-
facebook-domain-verification=qkj9bqo42nae806p90spnydxsnd1iv
Email authentication strong
- SPF
-
v=spf1 a include:emailsrvr.com include:spf.messagingengine.com ip4:199.255.192.0/22 ip4:199.127.232.0/22 ip4:54.240.0.0/18 include:_spf.elasticemail.com include:spf.mandrillapp.com include:emsd1.com include:_spf.postaffiliatepro.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:84ff5dd28007053@rep.dmarcanalyzer.com; sp=reject; aspf=r;policy: reject (enforced) · sp=reject - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA85TbtfoqzDq1kOqDbRolVOVMKirJwl721rzJAzu3jTreJAJFGA8gwMO/BXha6HqblUddf3Mf6MWEoXV71G… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDGgNLbhtTaVAPUKVGyNtunPDmI2HMD+aHnWzKcfnra8Dl91WETJU5DIgH7eArXQM4VDjjs0PXHZzw1u1mUR3G9AT…
selectors probed - s1:
Certificate (current)
WE1
Expires in 65 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, DENY- x-content-type-options
nosniff, nosniff- content-security-policy
default-src *; base-uri 'self'; child-src 'self' https://*.twitter.com https://*.facebook.com https://*.facebook.net https://*.stripe.com https://*.iubenda.com https://*.apester.com https://*.addthis.com https://*.upviral.com https://*.newrelic.com https://*.pinterest.com https://couponfollow.com gsa: https://*.googlesyndication.com https://*.doubleclick.net https://aff.roar.link https://*.cfjump.com https://*.magic.al https://*.dojomojo.com https://*.hotjar.com https://*.hotjar.io https://*.youtube.com https://*.google.com; connect-src 'self' wss: https:; font-src 'self' https: data: blob: https://fonts.googleapis.com; form-action 'self' https://*.stripe.com https://*.facebook.com https://*.facebook.net https://*.twitter.com https://*.upviral.com https://*.activehosted.com https://*.magic.al https://*.dojomojo.com; frame-ancestors 'self' https://*.roaradventures.com www.roaradventures.com https://*.bikeroar.com http://*.bikeroar.com; img-src 'self' https: data: blob: cloudfront.net ht- strict-transport-security
max-age=172800; includeSubDomains