tuesdayhealth.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (7)
- fd.cleantalk.org×2
- js.hs-scripts.com×2
- www.googletagmanager.com×2
- gmpg.org×1
- js.hsforms.net×1
- p.visitorqueue.com×1
- t.visitorqueue.com×1
Social
Contact
- Phone
- Address
- Avenue South, Ste. 1700
Registration
- Registrar
- Tucows Domains Inc.
- Created
- 2023-01-11
- Expires
- 2027-01-11 236 days left
- Updated
- 2026-03-13
- Name servers
-
- ns1-02.azure-dns.com
- ns2-02.azure-dns.net
- ns3-02.azure-dns.org
- ns4-02.azure-dns.info
DNS records live
- NS
-
- ns1-02.azure-dns.com
- ns2-02.azure-dns.net
- ns3-02.azure-dns.org
- ns4-02.azure-dns.info
- MX
-
- 0 tuesdayhealth-com.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
ZOOM_verify_IDKWT5VbNEzMfGX9g2XHNTq6pc47h87g5j1zzcqnyvfy3q7jsj8q21google-site-verification=0Er12r6Jz-aF9ZobKnaLPd9gmXeaOMHpcmrVzbv5jcYuut2ij61e7pjaupokfehr554cstwilio-domain-verification=0d22061d883d8c7b471a7da9596ea4a6rippling-domain-verification=02e0db94755e80d6289502BF2Ewindsurf-verification=FmwPboWzwPtc_LycOiFGexDDoB7Q_ackduQIHc4dp3g=google-site-verification=lYpOKw4ewyk9x3S1otjfyRSun5W9A3Qlh_gIAHbpW_cMS=ms77417827
Email authentication strong
- SPF
-
v=spf1 ip4:50.18.189.239 ip4:54.219.79.196 ip4:151.236.35.177 ip4:92.48.103.58 include:spf.protection.outlook.com include:_spf.intacct.com include:_spf.psm.knowbe4.com include:44298160.spf01.hubspotemail.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc@tuesdayhealth.com, mailto:dmarc@tuesdayhealth.com; pct=100; adkim=r; aspf=rpolicy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAncMoiI2kKYysbQAvNoOrhYv3bD6RUJXs5aNPfSfRJ0LyMPz13om9CD/Ktl3qCtm1oZgP+OmAtISOa1… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3GsShZgjFg5FeUV/VIgHjdEocXqSpNODJuBXqRFE96BrV6tWos8pZcJm9sd/w79hzC7oZCNX0mrYWi…
selectors probed - google:
Certificate (current)
R13
Expires in 46 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' pagead2.googlesyndication.com *.io *.net *.com *.org *.github.io *.smartlook.com *.paywhirl.com *.jsdelivr.net *.google.com *.googletagmanager.com *.uptimerobot.com *.tawk.to *.lottiefiles.com *.shortpixel.ai *.youtube.com *.gstatic.com *.googleapis.com *.google-analytics.com *.6sense.com *.6sc.co cdnjs.cloudflare.com assets.zendesk.com connect.facebook.net; object-src 'self'; worker-src * data: 'unsafe-eval' 'unsafe-inline' blob:- strict-transport-security
max-age=31536000; includeSubdomains; preload;