travelwifi.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
- Fonts
-
- Google Fonts
Third-party hosts loaded (9)
- fonts.googleapis.com×12
- www.googletagmanager.com×2
- app.midtrans.com×1
- cdn.cookielaw.org×1
- fonts.gstatic.com×1
- js.stripe.com×1
- maps.googleapis.com×1
- static.zdassets.com×1
- www.google.com×1
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2006-09-10
- Expires
- 2026-09-10 114 days left
- Updated
- 2025-09-11
- Name servers
-
- ns-1432.awsdns-51.org
- ns-1925.awsdns-48.co.uk
- ns-353.awsdns-44.com
- ns-693.awsdns-22.net
DNS records live
- NS
-
- ns-1432.awsdns-51.org
- ns-1925.awsdns-48.co.uk
- ns-353.awsdns-44.com
- ns-693.awsdns-22.net
- MX
-
- 0 travelwifi-com.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
firebase=travelwifi-mobile-app2google-site-verification=9dGaeWFv9Uw712pM_alh1YrqQyno6-GFIGfZKFH7-Fgoogle-site-verification=9dGaeWFv9Uw712pM_alh1YrqQyno6-GFIGfZKFH7-FYgoogle-site-verification=TrYgRbzQTblqT0RwtxapqigH1YQ8HGFlvvq0tjxBTIggoogle-site-verification=_97UnzZWRsrsVpn_MdyPritDup-3OR9SaxtawvGKxH4onetrust-domain-verification=e2e8bf653d4b41b8908d55cb08c66878oneuptime-verification-mhseywWnUfPUoPHVlfgHstripe-verification=4f749353642490114f88eb4e99b33de6388f51bc09c1d87e6d399b795f1133b0.txtduo_sso_verification=DWiCvIIbYhlKhY8oyKH3IMrBt7HKX8LDL0hBgXw2KuDCwqqRWrSPgPOLXZr5aSx1facebook-domain-verification=w18bfebpzssejrzlxisdsglve1uohx
Email authentication strong
- SPF
-
v=spf1 include:_spf.bigcommerce.com include:spf.protection.outlook.com include:mail.zendesk.com include:spf.exclaimer.net include:mailgun.org include:spfa.cpmails.com include:_spf.firebasemail.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCoXT4wY2rHzJZ/0nV7mX1O/F5G6JDGDCaTlY6GyhPe1iFKOta3avfJAXUmpj7oBk9XTlWEEC92n4qoJ341FI… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 179 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
base-uri 'self';script-src rental.travelwifi.com rental.stg.travelwifi.io stg.navimo.io mynavimo.com www.mynavimo.com skyplus.stg.navimo.io 'unsafe-inline' 'unsafe-eval' data: *.travelwifi.id *.travelwifi.io *.travelwifi.com *.mynavimo.com *.navimo.io *.test *.googleapis.com *.googletagmanager.com *.google-analytics.com *.google.com *.gstatic.com *.stripe.com *.midtrans.com *.cookielaw.org *.zdassets.com *.hotjar.com bat.bing.com *.cloudfront.net *.clarity.ms *.mountain.com *.facebook.net omnisnippet1.com *.tiktok.com cdn.jsdelivr.net *.braintreegateway.com *.paypal.com *.smooch.io *.soundestlink.com *.facebook.com *.googleadservices.com travelwifi.zendesk.com;font-src rental.travelwifi.com rental.stg.travelwifi.io stg.navimo.io mynavimo.com www.mynavimo.com skyplus.stg.navimo.io 'unsafe-inline' 'unsafe-eval' data: *.travelwifi.id *.travelwifi.io *.travelwifi.com *.mynavimo.com *.navimo.io *.test *.googleapis.com *.googletagmanager.com *.google-analytics.com *.google.com *.gstatic.com- strict-transport-security
max-age=31536000; includeSubDomains