unifiller.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
Social
Contact
- Phone
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1997-04-22
- Expires
- 2028-04-23 705 days left
- Updated
- 2025-03-04
- Name servers
-
- marge.ns.cloudflare.com
- watson.ns.cloudflare.com
DNS records live
- NS
-
- marge.ns.cloudflare.com
- watson.ns.cloudflare.com
- MX
-
- 10 mxa-0019c401.gslb.pphosted.com
- 20 mxb-0019c401.gslb.pphosted.com
- TXT
-
Show 8 TXT records
6k7dogceui3lrfdov3ke6k2o8nMS=ms10679716MS=ms12356831MS=ms40831084docusign=bba0c2cc-4e5c-4686-a55d-47051960533eiContact1791010knowbe4-site-verification=6cb885db43bf9f062323b8341c4517f8ppe-bf232a43128de8d70f1f5107c40929b4f570ad55
Email authentication strong
- SPF
-
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; adkim=r; aspf=r; rua=mailto:dmarc_agg@vali.email; fo=1policy: quarantine - DKIM
-
- s2:
v=DKIM1; k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAk4PvMwTLbqhZH//5OTIOKnrpNwobWisRb6D5U8Fdtbway0eMqHxyI3y2ENoEzeww6aTzzt6Lt…
selectors probed - s2:
Certificate (current)
WE1
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=*, battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=*, execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=*, geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=(); report-to=default- x-content-type-options
nosniff- content-security-policy
default-src 'none'; object-src 'none'; report-to default; report-uri default; frame-ancestors 'self'; script-src 'unsafe-inline' 'unsafe-eval' https://*.g.doubleclick.net https://*.googletagmanager.com https://bam.nr-data.net https://cdn.lordicon.com https://cdnjs.cloudflare.com https://cse.google.com https://d2wp9ejnfgejdk.cloudfront.net https://d33i2vgywgme2s.cloudfront.net https://e.issuu.com https://*.flippingbook.com https://f.vimeocdn.com https://player.vimeo.com https://fs27.formsite.com https://i.simpli.fi https://js-agent.newrelic.com https://rules.quantcount.com https://secure.quantserve.com https://ssl.google-analytics.com https://tag.simpli.fi https://www.google-analytics.com https://www.google.com https://www.gstatic.com/recaptcha/ https://*.unifiller.com https://*.googlesyndication.com https://*.googleadservices.com; style-src 'unsafe-inline' https://cdnjs.cloudflare.com https://d2wp9ejnfgejdk.cloudfront.net https://e.issuu.com https://f.vimeocdn.com https://fonts.googlea- strict-transport-security
max-age=63072000; includeSubDomains;