stemline.com
HTML metadata
Technology
- Server
- Sucuri
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Fonts
-
- Font Awesome
Third-party hosts loaded (5)
- use.fontawesome.com×3
- cdn.cookielaw.org×2
- gmpg.org×1
- www.google.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2000-03-27
- Expires
- 2027-03-27 312 days left
- Updated
- 2024-03-11
- Name servers
-
- ns49.domaincontrol.com
- ns50.domaincontrol.com
DNS records live
- NS
-
- ns49.domaincontrol.com
- ns50.domaincontrol.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 18 TXT records
0ed1fe018af43159e35b9f4799964bd713f9615b9aMS=ms14815800google-site-verification=ra52xKGOLCWh74aWD5cfcl5qm9rLtGI4YWPrAGXO-AUdocusign=244fc39f-df79-4fe4-9b31-67d84b06704bkfb3xflmlhw7yg3lfzrbjggnm6ggs5dxb110pdadafn9604n75l7qgmkjoMS=D28EDA0BFD7D8397D183299D8091397FAD4545A2ZOOM_verify_vIP_tu87T52cULU5HWU5SQMS=ms79673437apple-domain-verification=ZJ8ZkTBGvoTEIohPMS=ms14815800finr1bjis1ts0c7fr8a91u0u8n0adaf7ea-123b-4302-8ae3-23be7845ac66smartsheet-site-validation=exfB87UJjBIoGWTG6REC6xRR8PHbhy1Ygoogle-site-verification=DOAmzuRZia82xe1sGzuCcFvEaqW0ZH-dfGQBo_kW83cMS=ms58744573smartsheet-site-validation=PZ4-qyY3axAX1bu3isybgouDbF_g-r8L7sjbhydrh0z4y6zvprdgqcnpbtj8kw6x
Email authentication strong
- SPF
-
v=spf1 include:emsd1.com include:spf.intermedia.net include:_spf.google.com include:_spf.menarini.it ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:postmaster@stemline.compolicy: reject (enforced) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArrmolF5pxesdNBQFavRJ4i3/dUhG5nu2mWhN9iLVKqJsv3cLOmXjf302LgdzQbzIv9qmgzBlw7lqm6WXA1… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAyVhS8fb+rzZ6Sy8qK8Rh+wb/Je1mwxXVgblZ+2J6L4VCw/zRr+OQUbNJ+RBayugY6duQ0t7hrZaj1g16rv…
selectors probed - s1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 27 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests;, default-src 'self' https: data: blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https:; style-src 'self' 'unsafe-inline' https:; img-src 'self' data: blob: https:; font-src 'self' data: https:; connect-src 'self' https:; frame-src 'self' https:; worker-src 'self' blob:; object-src 'none'; base-uri 'self'; form-action 'self' https:; frame-ancestors 'self'; upgrade-insecure-requests;- strict-transport-security
max-age=31536000; includeSubDomains