sproutstudio.com
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (7)
- cdn.jsdelivr.net×2
- cdn.firstpromoter.com×1
- cdn.optimizely.com×1
- js.stripe.com×1
- kit.fontawesome.com×1
- r.wdfl.co×1
- www.facebook.com×1
Registration
- Registrar
- Domain.com - Network Solutions, LLC
- Created
- 2006-06-27
- Expires
- 2027-06-27 403 days left
- Updated
- 2022-05-30
- Name servers
-
- ns10.dnsmadeeasy.com
- ns11.dnsmadeeasy.com
- ns12.dnsmadeeasy.com
- ns13.dnsmadeeasy.com
- ns14.dnsmadeeasy.com
- ns15.dnsmadeeasy.com
DNS records live
- NS
-
- ns10.dnsmadeeasy.com
- ns11.dnsmadeeasy.com
- ns12.dnsmadeeasy.com
- ns13.dnsmadeeasy.com
- ns14.dnsmadeeasy.com
- ns15.dnsmadeeasy.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
google-site-verification=SZjej6KQlx4Rg6VRtQorjA5C6FwGfGggXR8_9ObFJgY
Email authentication strong
- SPF
-
v=spf1 exists:%{i}._spf.sparkpostmail.com ip4:173.236.20.0/24 ip4:192.92.97.0/24 ip4:52.128.40.0/21 ip4:217.8.118.0/24 ip4:103.229.233.0/24 ip4:35.190.247.0/24 ip4:64.233.160.0/19 ip4:66.102.0.0/20 ip4:66.249.80.0/20 ip4:72.14.192.0/18 ip4:74.125.0.0/16 ip4:108.177.8.0/21 ip4:173.194.0.0/16 ip4:209.85.128.0/17 ip4:216.58.192.0/19 ip4:216.239.32.0/19 ip6:2001:4860:4000::/36 ip6:2404:6800:4000::/36 ip6:2607:f8b0:4000::/36 ip6:2800:3f0:4000::/36 ip6:2a00:1450:4000::/36 ip6:2c0f:fb50:4000::/36 ip4:172.217.0.0/19 ip4:172.217.32.0/20 ip4:172.217.128.0/19 ip4:172.217.160.0/20 ip4:172.217.192.0/19 ip4:172.253.56.0/21 ip4:172.253.112.0/20 ip4:108.177.96.0/19 ip4:35.191.0.0/16 ip4:130.211.0.0/22 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dev+dmarc@sproutstudio.com;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhfs2nnTsxayDlUxVASqEgowRdcKMtpZfzxpPDV1wjSdqE989KuSCSMJJoUxYksskRHrd73n/LEUr0A… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCvjsDi1v5dSjRBqEpHUXQvnEfP/YVdkMJxhAN4sPg3VdgJyC87K9rBcl1HXukFmzNbGPPgpRQ33kHfhwlypGN6v1z7bUv…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M03
Expires in 134 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak content type protection
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
DENY- permissions-policy
interest-cohort=()- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' http: https: ws: wss: data: blob: 'unsafe-inline' 'unsafe-eval'; frame-ancestors *;- strict-transport-security
max-age=31536000; includeSubDomains; preload