trailofbits.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 837 ms crawled 2026-05-04

US · 104.26.15.195 · AS13335 Cloudflare, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Trail of Bits - Cybersecurity Consulting & Research
Generator
Hugo 0.148.1
Canonical
https://trailofbits.com/

Open Graph

url
https://trailofbits.com/
title
Trail of Bits
locale
en_us
site name
Trail of Bits
description
Trail of Bits helps secure some of the world's most targeted organizations and products.

Technology

CDN
Cloudflare
CMS
Hugo
Analytics
  • Cloudflare Insights

Third-party hosts loaded (5)

  • static.cloudflareinsights.com×2
  • ajax.googleapis.com×1
  • d3e54v103j8qbb.cloudfront.net×1
  • js.hs-scripts.com×1
  • js.hsforms.net×1

Social

Contact

Address
st work and industry newshbspt.forms.create({portalId:"22554

Registration

Registrar
1API GmbH
Created
2008-05-08
Expires
2027-05-08 354 days left
Updated
2026-05-03
Name servers
  • annalise.ns.cloudflare.com
  • jacob.ns.cloudflare.com

DNS records live

NS
  • annalise.ns.cloudflare.com
  • jacob.ns.cloudflare.com
MX
  • 1 aspmx.l.google.com
  • 10 aspmx2.googlemail.com
  • 10 aspmx3.googlemail.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 13 TXT records
  • MS=F7629F1FDF79EA86DE74BAFA3B773C43F9C174DC
  • amazon-business-verification=a55f318bc4dc6f065126ad82c554a36ba3cad3304bd1fcae409f2883582bc33b
  • anthropic-domain-verification-dyvqa2=31c300W8i8GmYsRyKcDhFyuR7
  • apple-domain-verification=Q5ic57F6eLtyfsSH
  • asv=7803e9f5001e7ac0e016b104e1e6bb74
  • cursor-domain-verification-wn7czd=AfuWTEZQEZbaqbm7y8K3Ylnq7
  • docusign=cf991024-a041-4476-afe6-08d45213c647
  • google-site-verification=QzeLJZ3krIrkhQV8WbHPNGOmRKT1KzoBYPE0wGEwsOY
  • google-site-verification=WTR8mmLtJUNAdjwAUScpeGFZFekCQIh_Z9ogShZ2VMQ
  • jetbrains-domain-verification=6vc2wbv5ssrilfbzhn0bf9r0s
  • openai-domain-verification=dv-JTvPJhILil5h4lDyVhOLIh3s
  • v=spf1 include:_spf.google.com include:servers.mcsv.net -all
  • ALIAS for apex-loadbalancer.netlify.com

Certificate (current)

WE1
from 2026-04-14 to 2026-07-13
Expires in 55 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://trailofbits.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(), microphone=(), camera=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https:; style-src 'self' 'unsafe-inline' https:; font-src 'self' data: https:; img-src 'self' data: https:; connect-src 'self' https:; frame-src 'self' https:; object-src 'none'; upgrade-insecure-requests
strict-transport-security
max-age=63072000; includeSubDomains; preload

Links to (18)

Linked from (11)