scorenavigator.com
HTML metadata
Technology
Third-party hosts loaded (4)
- cdn.forms-content.sg-form.com×1
- seal-centralgeorgia.bbb.org×1
- www.google.com×1
- www.rapidscansecure.com×1
Social
Contact
- Phone
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2011-06-05
- Expires
- 2026-06-05 16 days left
- Updated
- 2025-06-06
- Name servers
-
- ns-1205.awsdns-22.org
- ns-1797.awsdns-32.co.uk
- ns-332.awsdns-41.com
- ns-813.awsdns-37.net
DNS records live
- NS
-
- ns-1205.awsdns-22.org
- ns-1797.awsdns-32.co.uk
- ns-332.awsdns-41.com
- ns-813.awsdns-37.net
- MX
-
- 0 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=XhZugcae8ghgJZyHnht8Utx_yu4hhZ5UZBOBr6Sj-NQ
Email authentication partial
- SPF
-
v=spf1 ip4:54.68.15.149 include:_spf.google.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc-reports@scorenavigator.compolicy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDBCniKlmiSnG3yUKEvUhLzn3qA5UGNLYl+yLMG+fS2g7X7bDn0hf2zDOEL5dH9BzfPeV+b14Y5uNcRprYPki… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3nxGNBW8EALCa5OqOaFehunslwKBRvzkltsLQcKeYCL9yRy4iF7v4rq/RCICCLFqKK1gQ0yRjHY8vhpH9u… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtGlqX1TzrZ6+5QmphGRPpQVrkZKphmOHAxlvx1RJEgJHXiKlBlh4lIcpzqAN3k/neDi1DTd2R660cVB12O…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M01
Expires in 252 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
Header values
- referrer-policy
same-origin- x-frame-options
ALLOW-FROM https://encompassloconnect.com/ https://encompass.ice.com/ https://prod-ha-2.ssf.epc.ellieservices.com/ https://prod-ha-sc.smartclient.epc.ellieservices.com/ https://*encompasstpoconnect.com- permissions-policy
geolocation=(self), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' https:; frame-ancestors 'self' encompassloconnect.com encompass.ice.com prod-ha-2.ssf.epc.ellieservices.com prod-ha-sc.smartclient.epc.ellieservices.com *.encompasstpoconnect.com https:; font-src 'self' https: data:; img-src 'self' https: data:; script-src 'unsafe-inline' 'unsafe-eval' 'self' https:; style-src 'unsafe-inline' 'unsafe-eval' 'self' https:;- strict-transport-security
max-age=63072000; includeSubDomains
Links to (15)
- apple.com×1
- bbb.org×1
- bold.org×1
- equifax.com×1
- experian.com×1
- facebook.com×1
- google.com×1
- instagram.com×1
- linkedin.com×1
- namb.org×1
- ncrainc.org×1
- scorenavigatorblog.com×1
- tiktok.com×1
- transunion.com×1
- youtube.com×1