specterops.io
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (11)
- cdn.jsdelivr.net×8
- cdnjs.cloudflare.com×5
- cdn.parsely.com×2
- cdn.plyr.io×2
- code.jquery.com×2
- stackpath.bootstrapcdn.com×2
- stats.wp.com×2
- www.googletagmanager.com×2
- cdn-cookieyes.com×1
- px.ads.linkedin.com×1
- www.bugherd.com×1
Social
DNS records live
- NS
-
- ns-1071.awsdns-05.org
- ns-1706.awsdns-21.co.uk
- ns-172.awsdns-21.com
- ns-542.awsdns-03.net
- MX
-
- 0 specterops-io.mail.protection.outlook.com
- TXT
-
Show 12 TXT records
slack-domain-verification=PeOu7PPWLFlQbcmB4SXxCz1I5TksZpZOq3AHLIs8DFC45B0C27airtable-verification=4a6b5e97d5e5922a1324921558fb0201apple-domain-verification=zZmxuiK31KUKnuOmatlassian-domain-verification=WBK2KaFfYhCcUBRFz9QctTl1KLmo1ZG6CaRDZ8OwlC4HkytT0aOc2OhyYCXtK528docker-verification=52e7d9d8-0313-4671-9091-e1acb6b930ffgoogle-site-verification=KcQpgKPV_hsZ5SIkuW8jtx5hykiamPyd_1avtzKYzxAgoogle-site-verification=fu8NslshtUAtbmXi2TjvF24dkPDg1dPR9LquLFBsaekkeybase-site-verification=xRrlkmbQLxlybncjyj01lQ7NNelkSe5FnylGyOQCG7Ynotion-domain-verification=ouvHLd7QqaqL71BL6IOxnm2U3CqCgjVl37wQDuA5sOlpardot603731=b35c141b56f9dfcabe0c84a0bcaa350e495489a0d3948f4f14859a894c71c6ebppe-973e4497a8670ec25614
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.specterops_io._d.easydmarc.pro include:mail.zendesk.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:7467b97eb5@rua.easydmarc.eu,mailto:ugzn2kcu@ag.us.dmarcian.com;ruf=mailto:7467b97eb5@ruf.easydmarc.eu,mailto:ugzn2kcu@fr.us.dmarcian.com;ri=3600;fo=0:1:d:spolicy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCGZ7IMdKGs4I0zcwt5j+GvocMbvyEjHQTqKzYfHkI/xC7Lg3Lh7r5peuzZAiitvynM6d/S1d+Ch/qTvkTrKX… - selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDXf+ML3AnKX8+m5XwL2P+1iiVlVl7BzwdSpHNTDLKi8GLR7+5YXBAHyaLzHb/5VMxOYJBLuErL/CvfeKqI0w… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsf+uYw+fYBQGsbUmg5k6A552F2eusiK2ytptcLQY45mrLh7pgQzNpyr1YBLwbMAjHDLJQek3xcBAgpa0pC… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDkdB53C3fStFpuP36H/MH9BLzfUTxV65y8ANRCs/AI8sWSY+S4Q/nDmtPhYL1aUHpw2tMKOuTjEOxwHW3pcmzMmz…
selectors probed - google:
Certificate (current)
E8
Expires in 56 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' blob: cdn-cookieyes.com *.bugherd.com *.pusher.com https://*.googletagmanager.com https://*.google-analytics.com https://*.youtube.com https://*.pardot.com https://code.jquery.com https://cdn.jsdelivr.net https://cdn.plyr.io https://stackpath.bootstrapcdn.com https://s0.wp.com https://s1.wp.com https://s2.wp.com https://*.clearbitscripts.com https://snap.licdn.com https://go.specterops.io https://pages.specterops.io https://googleads.g.doubleclick.net https://unpkg.com https://sessionize.com https://js.zi-scripts.com https://stats.wp.com https://cdn.parsely.com https://trk.techtarget.com/tracking.js https://cdnjs.cloudflare.com/ajax/libs/html2canvas/1.4.1/html2canvas.min.js https://cdnjs.cloudflare.com/ajax/libs/jspdf/2.5.1/jspdf.umd.min.js https://munchkin.marketo.net https://tags.clickagy.com https://js.adsrvr.org/up_loader.1.1.0.js *.contentsquare.net app.contentsquare.com https://gist.github.com https://platform.twitter.com; sty- strict-transport-security
max-age=31536000;includeSubdomains
Links to (9)
- github.com×1
- humanitix.com×1
- instagram.com×1
- linkedin.com×1
- openai.com×1
- premera.com×1
- reddit.com×1
- twitter.com×1
- youtube.com×1
Linked from (1)
- nsec.io×1