uizard.io
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- AmazonS3
- CMS
- Joomla
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- cdn.sanity.io×1
- maps.googleapis.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- ns-1125.awsdns-12.org
- ns-1809.awsdns-34.co.uk
- ns-286.awsdns-35.com
- ns-983.awsdns-58.net
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- Verified for
-
- Meta
- Microsoft 365
- Stripe
Email authentication strong
- SPF
-
v=spf1 include:_spf.createsend.com include:_spf.google.com include:mailgun.org include:mail.zendesk.com include:spf.mandrillapp.com include:servers.mcsv.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; sp=reject; rua=mailto:dmarc-reports@uizard.io; ruf=mailto:dmarc-reports@uizard.io; adkim=r; aspf=r; pct=100; rf=afrfpolicy: reject (enforced) · sp=reject - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCRHYqzv+h3AAMqIcKMp2LV6REmOynqoOW8YlbG01Z/k+4vENER9KLg8L9DYoVZMdEr7DZKwiNUO3ZdO/pZqL… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - s1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCswwNrPkFhoULbTccGC08qtrNqgYurdaTCpPIV18v/nlrJlW+70Gqtq+cnekk0TBpTP+Z0tBjSL5U/wmzhg1IOlIhD6Wy…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M04
Expires in 128 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'none'; default-src * data: blob: 'self'; img-src https://*.hotjar.com https://optimize.google.com https://www.google-analytics.com https://www.googletagmanager.com *.intercom.io *.intercomcdn.com *.intercomcdn.eu 'self' blob: data: filesystem: https:; script-src *.uizard.io uizard.io https://*.googleadservices.com https://*.doubleclick.net https://*.googlesyndication.com https://*.cookiebot.com https://*.hotjar.com typeform.com *.typeform.com https://analytics.tiktok.com https://www.redditstatic.com https://pvdpix.com https://*.pvdpix.com https://*.mouseflow.com *.clarity.ms clarity.ms https://bat.bing.com cookieinformation.com *.cookieinformation.com https://js-eu1.hscollectedforms.net *.hs-analytics.net *.hs-banner.com *.hs-scripts.com *.sentry.io sentry.io https://optimize.google.com https://www.googleanalytics.com https://www.google-analytics.com https://www.googleoptimize.com *.google.com google.com *.gstatic.com gstatic.com *.googleapis.com googleapis.com *.faceb- strict-transport-security
max-age=31536000; includeSubdomains; preload