ttntm.me
HTML metadata
Technology
- CDN
- Cloudflare
Third-party hosts loaded (1)
- webmention.io×2
Social
DNS records live
- NS
-
- elisa.ns.cloudflare.com
- henrik.ns.cloudflare.com
- MX
-
- 10 mx1.alias.proton.me
- 20 mx2.alias.proton.me
- TXT
-
aspe:keyoxide.org:7DQAYHLWT6J6555DZFNBLP3IZIpm-verification=qvkfjtpdrzpcvytgevizgwnnzcxfwb
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 include:alias.proton.me ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; adkim=s; aspf=spolicy: quarantine - DKIM
-
- dkim:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDJudTILTG3qrzQzZzbptozaGQ03B5t5G748PkYB7u08c3VsJ4vqRt2XLAa12/fN8h4kQwFkQKYTVWmQNQFnn…
selectors probed - dkim:
Certificate (current)
WE1
Expires in 53 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer, strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
document-domain=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline'; img-src * data:; style-src 'self' 'unsafe-inline'; frame-ancestors 'none'- strict-transport-security
max-age=0; includeSubDomains; preload