theresidenceclub.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (3)
- cdn.cookielaw.org×2
- use.typekit.net×1
- www.googletagmanager.com×1
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2010-10-26
- Expires
- 2026-10-26 159 days left
- Updated
- 2025-10-22
- Name servers
-
- ns1.netnames.net
- ns2.netnames.net
- ns5.netnames.net
- ns6.netnames.net
DNS records live
- NS
-
- ns1.netnames.net
- ns2.netnames.net
- ns5.netnames.net
- ns6.netnames.net
- MX
-
- 10 mxa-000a9401.gslb.pphosted.com
- 10 mxb-000a9401.gslb.pphosted.com
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.vistana.com include:spf.protection.outlook.com include:spf-000a9401.pphosted.com include:_spf.salesforce.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; sp=none;policy: none (monitoring only) · sp=none - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 71 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.vistana.com https://cdn.cookielaw.org/; script-src 'self' data: 'unsafe-inline' *.vistana.com https://ajax.googleapis.com ajax.googleapis.com *.googletagmanager.com *.google-analytics.com https://cdn.cookielaw.org/ https://privacy-portal-mvwc-cdn.my.onetrust.com/; object-src 'self' *.vistana.com https://cdn.cookielaw.org/; style-src 'self' data: 'unsafe-inline' https://*.typekit.net *.vistana.com https://saml.threatpulse.net/ https://cdn.cookielaw.org/ https://privacy-portal-mvwc-cdn.my.onetrust.com/; img-src 'self' *.vistana.com https://www.google-analytics.com www.google-analytics.com https://stats.g.doubleclick.net https://cdn.cookielaw.org/ data:; media-src 'self' *.vistana.com; frame-src 'self' *.vistana.com *.googletagmanager.com https://cdn.cookielaw.org/; font-src 'self' *.vistana.com https://use.typekit.net https://privacy-portal-mvwc-cdn.my.onetrust.com/;connect-src 'self' *.vistana.com https://www.google-analytics.com www.google-analytics.com https://sta- strict-transport-security
max-age=15552000