rwlogin.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 6866 ms crawled 2026-05-18

US · 104.18.42.245 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
RW Secure Login
Description
Official RevenueWell login. Grow your practice, connect with patients & boost office productivity with RevenueWell’s all-in-one dental marketing & patient communication platform.

Technology

CDN
Cloudflare
CMS
Ghost
Fonts
  • Google Fonts

Third-party hosts loaded (3)

  • rwlvcdn-pc365-endpoint.azureedge.net×5
  • fonts.googleapis.com×1
  • maps.googleapis.com×1

Registration

Registrar
GoDaddy.com, LLC
Created
2016-01-15
Expires
2027-01-15 240 days left
Updated
2025-01-15
Name servers
  • ingrid.ns.cloudflare.com
  • newt.ns.cloudflare.com

DNS records live

NS
  • ingrid.ns.cloudflare.com
  • newt.ns.cloudflare.com
TXT
  • detectify-verification=13b94296fbb9050639bf41b3fb78ae4d
  • Probely=c1727d1c-fd90-402d-aa87-ae30fcdd148c
  • XzGYc11T6Y++9l0OJVp7pnZ9UZ8nLfPkxlDMaEdys/g=

Email authentication no MX

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-03-25 to 2026-06-23
Expires in 34 days

HTTP security headers

Header hygiene 55/100 Checked live page: https://oidc.rwlogin.com/PracticePortalAuthentication/SignIn?returnUrl=%2Fconnect%2Fauthorize%2Fcallback%3Fclient_id%3Dpractice.portal%26redirect_uri%3Dhttps%253A%252F%252Fp1.revenuewell.com%252Fsignin-oidc%26response_type%3Dcode%2520id_token%26scope%3Dopenid%2520profile%2520rwlapi%2520rwinternal%2520rwinternalapi%26state%3DOpenIdConnect.AuthenticationProperties%253DYensUcgMAd_9n3jbpM8Gg0Uv4od9iU5RyzLIQZeeHFLdDllscLr9xMr0_X68RbkxqusK-D_TVZjYJvpKb9pjP7YvhsBsifTRAcqYSqD4SrdLJpVYa-hX8hTY58PCG2rf-pRSrsZfsBf8g2JOUBlnWPa35NuhKooVnBzXmv_KnonrYFTfNFSl1BGm9mGJd5mkT92emTl_am5zH9lDPqCz6rky0jW-pV1KsmSmJGJzyxg%26response_mode%3Dform_post%26nonce%3D639147337370869366.OTNjOTBkMWMtMzgwOC00ZGExLTk1NTAtMGJlZWVhZThhYjU2ZWQ1YWU4ZjAtOTdmZi00Yzc2LWE3ZTgtMjA4YzkyYmU5MTJh%26x-client-SKU%3DID_NET461%26x-client-ver%3D5.3.0.0

present
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-inline' *;script-src 'unsafe-inline';script-src-elem 'unsafe-inline' *;

Links to (2)

Linked from (5)