soboce.com
HTML metadata
Technology
- Server
- soboce.com
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×1
- gmpg.org×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Contact
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1997-10-30
- Expires
- 2027-10-29 527 days left
- Updated
- 2024-10-25
- Name servers
-
- ns47.worldnic.com
- ns48.worldnic.com
DNS records live
- NS
-
- ns47.worldnic.com
- ns48.worldnic.com
- MX
-
- 10 mx01.soboce.com
- 20 mx02.soboce.com
- TXT
-
Show 5 TXT records
V3zhVwKTr6f2kj336srByTyNWWoY5sJ+G7gkdHtjLS0JHltGqAcCdYG5rkCOie2Nd14+Cl9GLvZCMSpjUZBMKA==ca3-d247781349e14339990e45461d67abe2MS=182A0F450E734988A1A76602C215ECFD9805E6C6MS=ms5827641961y/749fA5tH6rOJLm5flxXyX6r4VbEvwgF6CLTN0V/2zH7hfHm6zH/1JpgZ+a+5Jl7D6EYelX3Sm7gyBAuGiw==
Email authentication strong
- SPF
-
v=spf1 a mx ip4:200.105.137.84 ip4:181.114.119.230 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:webmaster@soboce.compolicy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
Sectigo RSA Domain Validation Secure Server CA
Expired 9 days ago
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=*,autoplay=*,camera=*,encrypted-media=*,fullscreen=*,geolocation=*,gyroscope=*,interest-cohort=(),magnetometer=(),microphone=(),midi=(),payment=(),sync-xhr=(),usb=(),xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src https: 'self' *.soboce.com; frame-ancestors 'self' https://calculadoraco2.soboce.com *.youtube.com *.youtube-nocookie.com *.googletagmanager.com; frame-src 'self' *.soboce.com *.youtube.com *.youtube-nocookie.com *.googletagmanager.com; font-src https: data: 'self' *.soboce.com *.gstatic.com *.googleapis.com *.google.com *.youtube.com *.youtube-nocookie.com *.googletagmanager.com; img-src https: 'self' data: *.soboce.com *.youtube.com *.ytimg.com; media-src https: 'self' *.soboce.com *.youtube.com *.youtube-nocookie.com; object-src https: 'self' *.soboce.com; script-src https: 'self' code.jquery.com/jquery-latest.min.js *.soboce.com *.google.com ajax.googleapis.com www.google-analytics.com *.youtube.com *.youtube-nocookie.com *.gstatic.com 'unsafe-inline' 'unsafe-eval'; style-src https: 'self' 'unsafe-inline' *.soboce.com *.googleapis.com; connect-src https: 'self' *.soboce.com *.youtube.com *.youtube-nocookie.com *.googletagmanager.com- strict-transport-security
includeSubDomains; preload; max-age=63072000