tbwa.ch
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- cdn.jsdelivr.net×2
- www.googletagmanager.com×2
- cdn-images.mailchimp.com×1
- s3.amazonaws.com×1
Social
DNS records live
- NS
-
- pdns82.ultradns.biz
- pdns82.ultradns.com
- pdns82.ultradns.net
- pdns82.ultradns.org
- MX
-
- 0 tbwa-ch.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
google-site-verificationFEhkbYnc1tQ3b7CB7svaabDZVqvz3LjaIrQUfpc2_Fgbox-domain-verification=9ee37f7ae37efe84cc4fe80cbb6d595cf05afdd79d4f096e05878bf4d3e52836x6pmmzvql7cg5q20n9w4jg6c3m6t8xchibmid=3727ed14-9d1f-4e67-9cb2-ba5655de7ca4
- Verified for
-
- Atlassian
- OpenAI
Email authentication strong
- SPF
-
v=spf1 include:_spf.oneomnicom.com include:servers.mcsv.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:rc7yjbis@ag.us.dmarcian.com;policy: reject (enforced) - DKIM
-
Show 11 DKIM selectors
- default:
v=DKIM1; p= - google:
v=DKIM1; p= - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArc8cn3Fs8lnNTjxZIc4uuaLpVSUDq/x/pUlW9Mzm1kljXMWHUhJK8O90I/5Ny8/0e7EcUJwJG0cAZz… - k1:
v=DKIM1; p= - k2:
v=DKIM1; p= - mail:
v=DKIM1; p= - dkim:
v=DKIM1; p= - s1:
v=DKIM1; p= - s2:
v=DKIM1; p= - mxvault:
v=DKIM1; p= - smtpapi:
v=DKIM1; p=
selectors probed - default:
Certificate (current)
WE1
Expires in 48 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
DENY- permissions-policy
geolocation=(), midi=(),sync-xhr=(),accelerometer=(), gyroscope=(), magnetometer=(), camera=(), fullscreen=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' https: data: 'unsafe-inline' 'unsafe-eval'- strict-transport-security
max-age=31536000; includeSubDomains; preload- cross-origin-opener-policy
unsafe-none- cross-origin-embedder-policy
unsafe-none; report-to='default'- cross-origin-resource-policy
cross-origin