timingapp.com
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Cloudflare Insights
- Fathom
Third-party hosts loaded (2)
- cdn.usefathom.com×1
- static.cloudflareinsights.com×1
Social
Registration
- Registrar
- Cloudflare, Inc.
- Created
- 2011-02-12
- Expires
- 2027-02-12 269 days left
- Updated
- 2026-01-13
- Name servers
-
- dora.ns.cloudflare.com
- rocky.ns.cloudflare.com
DNS records live
- NS
-
- dora.ns.cloudflare.com
- rocky.ns.cloudflare.com
- MX
-
- 5 web.forumd.net
- TXT
-
Show 6 TXT records
google-site-verification=4puhb_IK--wOwhB6_lv_l64aAsOHNY2i1xOo8o3vbWYgoogle-site-verification=QLBPZNjAyBNFtzFsbYA227SKJ7YRRURkXSlVzQKhIYsopenai-domain-verification=dv-ZfE3jJqUcF30UeoCO0SwUlgSSendinblue-code:bc2a4591ed6d195527c7f5112e55a1abapple-domain-verification=8BSQvJIYGeg9DUlSPjDNWYfW6Q1t9xlbzQlZG9D6_FMapple-domain-verification=y2ZUwy8oyFf2-MweVpEtuQuI9vYgDsMPUroCkfiQ9ls
Email authentication strong
- SPF
-
v=spf1 mx ip6:2a01:4f8:c2c:6580::1 ip6:2a01:4f8:c2c:6580::2 ip4:116.203.152.44 include:_spf.google.com include:forumd.net include:sendgrid.net include:pm-bounces.timingapp.com include:spf.sendinblue.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:re+typt8hpstpr@dmarc.postmarkapp.com,mailto:dmarc@mailinblue.com!10m; ruf=mailto:dmarc@mailinblue.com!10m; sp=none; aspf=r; rf=afrfpolicy: quarantine · sp=none - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAi5hp0CgEcWHR8MbxGiFEMKnIy+MLzIkNG9EN2R5EaZuGGjDGFeDAnp9wLdaKwIjg2BJ1MmqRllOKvK… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvtcMs3MxnX8bK1cgPn8wv2fHIeHPSFncqirzpyMUHhbrn1bbpf3rxU1DbxBVBgzUV9g96lf+gUl5TzoDII… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDlJn0gJpGihlOg5LDfv/p2CRFClTTOwFaSNkVwUDQwSsaW00zVSfj9FHZa0eaooA/GwJKs/9tU+yWcike6W84tP6…
selectors probed - google:
Certificate (current)
WE1
Expires in 26 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
script-src 'self' ajax.cloudflare.com 'unsafe-inline' 'unsafe-eval' static.cloudflareinsights.com cdn.usefathom.com cdn.matomo.cloud cdn.paddle.com 1.replies.io checkout.paddle.com cdn.ampproject.org public.profitwell.com static.profitwell.com js.sentry-cdn.com browser.sentry-cdn.com cdnjs.cloudflare.com *.googleapis.com *.sentry-cdn.com *.paddle.com *.cloudflare.com *.profitwell.com- strict-transport-security
max-age=0; preload