vaccinesafetynet.org
HTML metadata
Technology
- CDN
- Cloudflare
- Analytics
-
- Google Tag Manager
- Fonts
-
- Font Awesome
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (8)
- cdnjs.cloudflare.com×4
- kendo.cdn.telerik.com×3
- use.fontawesome.com×2
- cse.google.com×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
- www.youtube.com×1
Registration
- Registrar
- Network Solutions, LLC
- Created
- 2016-10-06
- Expires
- 2029-10-06 1234 days left
- Updated
- 2023-12-21
- Name servers
-
- ext-dns-2.cern.ch
- whqdns1.who.int
- whqdns2.who.int
- whqdns3.who.int
DNS records live
- NS
-
- ext-dns-2.cern.ch
- whqdns1.who.int
- whqdns2.who.int
- whqdns3.who.int
- MX
-
- 1 vaccinesafetynet.org
Email authentication weak
- SPF
-
v=spf1 +a +mx +ip4:23.88.36.92 ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5Jy7EtwzBiqTpwZ/c8hpFcFnGIGMSXR8UJDvl/KZrVAbfMQ7qtcdbzv9Hi4CQRgBH0PG4KTBKeOxQi…
selectors probed - default:
Certificate (current)
WE1
Expires in 82 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' cdnjs.cloudflare.com tiles.arcgis.com www.arcgis.com services.arcgis.com utility.arcgisonline.com js.arcgis.com player.4am.ch www.googleadservices.com assets.sitescdn.net *.nativechat.com *.addthis.com static.hotjar.com app.powerbi.com dc.services.visualstudio.com wabi-north-europe-redirect.analysis.windows.net pbipdfapp.azurewebsites.net content.powerapps.com visuals.azureedge.net gis.azureedge.net pbi.azureedge.net *.who.int www.who.int m.addthis.com liveapi-cached.yext.com covidfunding.eiu.com staging-dot-eiu-wellcome-7664.nw.r.appspot.com who-covid-answers.int.pagescdn.com who-answers.pagescdn.com liveapi.yext.com answers.yext-pixel.com westeurope.tts.speech.microsoft.com who.cloudflareaccess.com *.clarity.ms; script-src *.googleapis.com *.gstatic.com www.google.com apis.google.com *.google-analytics.com connect.facebook.net ajax.aspnetcdn.com platform.twitter.com https://syndication.twitter.com/ https://s.ytimg.com https://publish.twitter.com *.twimg.com platfor- strict-transport-security
max-age=31536000; preload