tarfin.com
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Analytics
- Google Tag Manager
- Ads
-
- Google Ads (DoubleClick)
- Meta Pixel
- Taboola
Third-party hosts loaded (10)
- d2941uvtj8higz.cloudfront.net×3
- www.googletagmanager.com×3
- ad.doubleclick.net×1
- cdn.jsdelivr.net×1
- connect.facebook.net×1
- jsdelivr.com×1
- metrica.yandex.com ×1
- taboola.com×1
- trc.taboola.com×1
- www.google-analytics.com×1
Social
Contact
- Phone
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2015-04-12
- Expires
- 2030-04-12 1422 days left
- Updated
- 2025-04-06
- Name servers
-
- ns-1527.awsdns-62.org
- ns-1655.awsdns-14.co.uk
- ns-305.awsdns-38.com
- ns-918.awsdns-50.net
DNS records live
- NS
-
- ns-1527.awsdns-62.org
- ns-1655.awsdns-14.co.uk
- ns-305.awsdns-38.com
- ns-918.awsdns-50.net
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:amazonses.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:development@tarfin.com; pct=100; fo=1policy: quarantine - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCprInVOwxhe8PkzY3p8lKEq2bhZnC2LJtKKfTXR/kOEe0i53Qb1Rv+ANq7c+XVIJczUUSVrDapGIj/DIoDVe…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M01
Expires in 208 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; connect-src 'self' https://u.clarity.ms https://analytics.tiktok.com *.google-analytics.com *.yandex.md *.yandex.ru *.taboola.com *.doubleclick.net https://d2941uvtj8higz.cloudfront.net *.tarfin.com https://www.facebook.com https://mc.yandex.com https://maps.googleapis.com *.gstatic.com https://www.google.com/ccm/collect https://www.google.com/rmkt/ https://analytics.google.com/g/collect; default-src 'self' https:; font-src 'self' data: *.gstatic.com *.tarfin.com; frame-src 'self' *.yandex.md *.yandex.com *.youtube.com *.google.com *.googletagmanager.com *.doubleclick.net; img-src * 'self' data: https://mc.yandex.com https://tarfinprod.s3.eu-central-1.amazonaws.com https://tarfinprod-public.s3.eu-central-1.amazonaws.com https://d2941uvtj8higz.cloudfront.net *.tarfin.com *.gstatic.com *.yandex.md *.googleapis.com *.facebook.com *.taboola.com *.google-analytics.com *.google.com *.google.com.tr; manifest-src 'self' https://d2941uvtj8higz.cloudfront.net *.tarfin.com; medi- strict-transport-security
max-age=31536000; includeSubdomains
Links to (6)
- apple.com×2
- facebook.com×2
- google.com×2
- instagram.com×2
- linkedin.com×2
- youtube.com×2