text-em-all.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- no-cache.hubspot.com×7
- static.hsappstatic.net×1
- widget.trustpilot.com×1
- www.g2.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Gandi SAS
- Created
- 2007-09-14
- Expires
- 2026-09-14 117 days left
- Updated
- 2025-08-10
- Name servers
-
- ns-1416.awsdns-49.org
- ns-1774.awsdns-29.co.uk
- ns-383.awsdns-47.com
- ns-523.awsdns-01.net
DNS records live
- NS
-
- ns-1416.awsdns-49.org
- ns-1774.awsdns-29.co.uk
- ns-383.awsdns-47.com
- ns-523.awsdns-01.net
- MX
-
- 1 smtp.google.com
- TXT
-
MS=840ADEF689E188AE211DF07333D03B0F6CDB0E6E
- Verified for
-
- Microsoft 365
- Postman
Email authentication strong
- SPF
-
v=spf1 ip4:40.142.101.140 ip4:172.17.17.27 include:spf.mandrillapp.com include:helpscoutemail.com include:_spf.google.com include:2513604.spf04.hubspotemail.net include:cmail1.com include:trustpilotservice.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:dmarc-rua-reports@text-em-all.com; adkim=r; aspf=rpolicy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCRzkBzIOrP/pD/qqWdLFg87GRbKgbb0UTL/gTdL/rOf/iP2LX0hBnClJrfA8disHilC1jWkh7f6V4T5m1xpz… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M01
Expires in 151 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
microphone=*- x-content-type-options
nosniff- content-security-policy
default-src 'self' http: https: data: blob: 'unsafe-inline' 'unsafe-eval' *.crazyegg.com *.hotjar.com; script-src 'self' http: https: data: blob: 'unsafe-inline' 'unsafe-eval' *.crazyegg.com *.hotjar.com; connect-src 'self' http: https: data: blob: 'unsafe-inline' 'unsafe-eval' *.crazyegg.com *.hotjar.com wss://*.hotjar.com; style-src 'self' http: https: data: blob: 'unsafe-inline' 'unsafe-eval' *.crazyegg.com *.hotjar.com fonts.googleapis.com; frame-src 'self' http: https: data: blob: 'unsafe-inline' 'unsafe-eval' *.crazyegg.com *.hotjar.com; img-src 'self' http: https: data: blob: 'unsafe-inline' 'unsafe-eval' *.crazyegg.com *.hotjar.com; font-src 'self' http: https: data: blob: 'unsafe-inline' 'unsafe-eval' fonts.gstatic.com; worker-src 'self' http: https: data: blob: 'unsafe-inline' 'unsafe-eval';; upgrade-insecure-requests- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (8)
- facebook.com×1
- g2.com×1
- hubspot.com×1
- instagram.com×1
- linkedin.com×1
- trustpilot.com×1
- twitter.com×1
- youtube.com×1