sigtheatre.org
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (4)
- res.cloudinary.com×13
- d297x08tf5dzqn.cloudfront.net×2
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns-1369.awsdns-43.org
- ns-1589.awsdns-06.co.uk
- ns-200.awsdns-25.com
- ns-921.awsdns-51.net
- MX
-
- 0 sigtheatre-org.mail.protection.outlook.com
- TXT
-
v=spf2.0/pra include:spf.protection.outlook.com ip4:64.94.117.122 ip4:72.5.51.0/24 ip4:72.5.217.0/24 ip4:72.29.104.0/24 include:ramp.tessituranetwork.com ~all46gV380KH9Xg2Wpg591fTPKemwic16KblBBFdD6mhh2daUJd2LQcL+RbG0g+Cwu7xfPj21FZOw6mY7DCV5J7GQ==dkZSM63yTUyrykhWcjpP+wksBhKez1kSJb1uybUcnbshR3z0zAX08D6IplMvajtl+kB84ODx/6UxWxZ9o6oYsw==
- Verified for
-
- Apple
- Meta
- Zoom
Email authentication strong
- SPF
-
v=spf1 a mx include:spf.protection.outlook.com ip4:72.29.104.0/24 include:ramp.tessituranetwork.com include:_spf.google.com include:sendgrid.net include:mailgun.org include:rp.oracleemaildelivery.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc@sigtheatre.orgpolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCwaUlY8twcEoHkQuBfMGdO/VRVrFukG7HzYbTj17G7M+dqIOPI6jf2TuyZBkLh19HGWseHSOJhYy+YssnI//… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxXfPT4hoj4Dt5lx60vIkphU9mkOOkt7RkfEhWMJZb3IQkR9tQ2oro8vT4cmanXdIuFvugsSTxLnTInj45+… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCt+ncZ/ok9lclXNHMTsnsxqfZOJ6FnrBnHiQKKBjRUBGdNCerhyLmvfa1q7swaaKyhyWjkUzTNI/ydEgyCukS8DH…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M01
Expires in 241 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-eval' 'nonce-CAy4ZL2/FqwrgvUJkW/wz+wIxD+V4QgGwjCJ5L0AeO4=' d297x08tf5dzqn.cloudfront.net www.youtube.com cdn.plyr.io player.vimeo.com cdn.weglot.com www.google.com bat.bing.com script.hotjar.com edge.marker.io www.cognitoforms.com static.cognitoforms.com www.googletagmanager.com static.zdassets.com widget-mediator.zopim.com secure.quantserve.com s.adroll.com rules.quantcount.com connect.facebook.net *.acuityplatform.com analytics.tiktok.com *.mountain.com d.adroll.com scripts.clarity.ms ; style-src 'self' 'unsafe-inline' d297x08tf5dzqn.cloudfront.net *.typekit.net cdn.plyr.io cdn.weglot.com www.cognitoforms.com fonts.googleapis.com www.googletagmanager.com; img-src 'self' d297x08tf5dzqn.cloudfront.net data: res.cloudinary.com i.vimeocdn.com i.ytimg.com googleads.g.doubleclick.net bat.bing.com www.google.com www.google.ie www.google-analytics.com www.google.co.uk www.facebook.com pixel.quantserve.com ad.doubleclick.net www.googletagmanager.c- strict-transport-security
max-age=2592000; includeSubDomains