spacegoats.io
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
Social
Contact
- Address
- Ginsterweg 7, 70794, Filderstadt, Baden-Württemberg, DE
DNS records live
- NS
-
- kevin.ns.cloudflare.com
- lila.ns.cloudflare.com
- MX
-
Show 7 MX records
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 10 inbound-smtp.eu-west-1.amazonaws.com
- 10 w01a5c5a.kasserver.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 7 TXT records
google-site-verification=WdJ5qvqo2LqjdU6BKqxxFJUn81XmAiiuV9eYSAGKtkwgoogle-site-verification=acW0yr4NKmOb89Ypf0AivgmOOifMiWesRf2FHLLYivUopenai-domain-verification=dv-8NGCNGUij14OO2fo04SjgDcxopenai-domain-verification=dv-zMi0QiaxbPu96SvXBaHMcQLMMS=D3AE37795B18A0BF57BCCEB1B15107B6A96AF97Bbrevo-code:e8bd49bf7a2cc2b120e15e56957dfe9cgoogle-site-verification=DzSd5PaQIL8BKmlf-E_7LvqwjkrN4NyudyEp1dWGxF0
Email authentication strong
- SPF
-
v=spf1 mx a include:_spf.google.com include:_spf.webhosting.systems include:mail.zendesk.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=5; rua=mailto:postmaster@spacegoats.iopolicy: quarantine · pct=5 - DKIM
-
Show 5 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs13KkNUR/AfDeqOZZFjYTToUL6d/Y1vG3eYijzzwSF2xS3PfntjjANTm4wEXA1u6GVyObNFV5sHSzA… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5mbjTRO/TJEJWIJXJn378uNlInLV2VEp45CTNfRGLcAaW26u5SxRKAgQ2RZjWGyvZOh+88c6aNsxiopywG… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsU+Ml2fvFlyJnGFC8+CZOdQd80N64GG+sLgB1MyinXske7qaHRIZEgQeamaAptfUkc4b3BXWFkTYOFrlyP… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
R12
Expires in 35 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), geolocation=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com https://sc.lfeeder.com https://tr-rc.lfeeder.com https://www.google-analytics.com https://analytics.google.com https://www.googleadservices.com https://www.google.com https://bat.bing.com https://connect.facebook.net https://www.facebook.com https://scripts.clarity.ms https://www.clarity.ms https://i.clarity.ms https://cdn.expertise.ai https://vercel.live; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; img-src 'self' data: https:; font-src 'self' data: https://fonts.gstatic.com; connect-src 'self' https:; media-src 'self' https: blob:; frame-src 'self' https://www.googletagmanager.com https://www.google.com https://www.facebook.com https://vercel.live; object-src 'none'; base-uri 'self'; form-action 'self' https:; frame-ancestors 'self'- strict-transport-security
max-age=63072000; includeSubDomains; preload- cross-origin-opener-policy
same-origin-allow-popups