teledynecaris.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (5)
- d73v3rdaoqh96.cloudfront.net×25
- maps.googleapis.com×1
- static.cloudflareinsights.com×1
- use.typekit.net×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Key-Systems GmbH
- Created
- 2016-05-09
- Expires
- 2027-05-09 353 days left
- Updated
- 2026-04-08
- Name servers
-
- cris.ns.cloudflare.com
- margot.ns.cloudflare.com
DNS records live
- NS
-
- cris.ns.cloudflare.com
- margot.ns.cloudflare.com
- MX
-
- 10 us1mail01.teledyne.com
- 10 us1mail02.teledyne.com
- 10 us3mail01.teledyne.com
- 10 us3mail02.teledyne.com
- TXT
-
Show 5 TXT records
5d3700bf758a41f99a864b34a81cfb358v402cjhx8n0xjpg1hmpwq0t2y4mdllwv=spf1 ip4:208.75.120.0/22 ip4:192.88.92.240/30 ip4:74.201.16.49 ip4:74.201.16.125 include:_tdy-ipblocks.teledyne.com include:shops.shopify.com include:amazonses.com include:_spf.act-on.net -allz3w49v7lddcxgc01k14fwbxynxx438f224ch2rzzd9hy8hz24b0b11kf16mwrx0x
- Verified for
-
- Microsoft 365
Certificate (current)
WE1
Expires in 39 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
accelerometer=(), camera=(), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; frame-ancestors 'self' *.kontent.ai *.hosted.positive.co.uk *.raymarine.com; frame-src 'self' data: https: *.cookiebot.com; img-src 'self' data: https: *.googletagmanager.com *.cloudfront.net; media-src 'self' data: https: *.googletagmanager.com *.canto.global; script-src 'self' 'unsafe-inline' data: https: *.googletagmanager.com *.amazonaws.com *.canto.global; font-src 'self' data: https: *.gstatic.com; style-src 'self' 'unsafe-inline' data: https: *.googleapis.com; connect-src data: https: *.googleapis.com *.hsforms.com *.hs-scripts.com; worker-src 'self' blob: *.raymarine.com;- strict-transport-security
max-age=31536000; includeSubDomains; preload