tilcor.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Instra Corporation Pty Ltd.
- Created
- 2005-12-10
- Expires
- 2027-12-10 569 days left
- Updated
- 2025-11-23
- Name servers
-
- dale.ns.cloudflare.com
- maya.ns.cloudflare.com
DNS records live
- NS
-
- dale.ns.cloudflare.com
- maya.ns.cloudflare.com
- MX
-
- 0 tilcor-com.mail.protection.outlook.com
- TXT
-
google-site-verification=GS_pT2t28f0jd9ypHkl6Vr9IPvavFk3QsHmplAqXM5Ahave-i-been-pwned-verification=3e21f53b670401743e2ef35f1d4f4268ppe-ad59fcc988fde728211686168767025b38f633df
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:2382472.spf01.hubspotemail.net include:spf.nz.smxemail.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:9aeb9aa7a91c4cd9a8e8b18a3f6c6faf@dmarc-reports.cloudflare.net;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCl+j36AgR/bYKuA64LvLn5X/IXQzNj0VcLRgjJFVimDee5xp7NbhUC63cVMLK1G6SU1d3ZEUG+CUO+UeEJ/K…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), geolocation=(self), microphone=(), payment=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://googletagmanager.com https://*.googletagmanager.com https://tagmanager.google.com https://www.google-analytics.com https://js.hsforms.net https://sdks.shopifycdn.com https://ajax.googleapis.com https://static.hotjar.com https://snap.licdn.com https://bat.bing.com https://s.pinimg.com https://js.hs-scripts.com https://connect.facebook.net https://*.clarity.ms https://script.hotjar.com https://googleads.g.doubleclick.net https://js.hscollectedforms.net https://js.hsadspixel.net https://js.hs-banner.com https://js.hsleadflows.net https://js.hs-analytics.net https://js-ap1.hs-scripts.com https://js-ap1.hs-analytics.net https://js-ap1.hsleadflows.net https://js-ap1.hs-banner.com https://js-ap1.hsadspixel.net https://js-ap1.hscollectedforms.net https://bat.bing-int.com https://ct.pinterest.com https://js-ap1.hsforms.net https://www.google.com https://www.gstatic.com https://consent.cookiebot.com https://consentcdn.c- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (6)
- facebook.com×2
- instagram.com×2
- linkedin.com×2
- tilcor.eu×2
- twitter.com×2
- youtube.com×2