wealthbox.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Fonts
-
- Adobe Fonts
- Google Fonts
Third-party hosts loaded (5)
- use.typekit.net×4
- cdnjs.cloudflare.com×2
- fonts.googleapis.com×2
- maxcdn.bootstrapcdn.com×2
- apis.google.com×1
Social
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2007-02-17
- Expires
- 2033-02-17 2466 days left
- Updated
- 2024-12-18
- Name servers
-
- ns-106.awsdns-13.com
- ns-1364.awsdns-42.org
- ns-1964.awsdns-53.co.uk
- ns-661.awsdns-18.net
DNS records live
- NS
-
- ns-106.awsdns-13.com
- ns-1364.awsdns-42.org
- ns-1964.awsdns-53.co.uk
- ns-661.awsdns-18.net
- MX
-
- 1 aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 16 TXT records
h1-domain-verification=U6jBP8Ysp6gnbCHhrLyZ8KS2cSLQChQhyGuXCdmE3CtErzXSpardot980273=048fff9016b0f97c09b3561e1576d2c81f603afe0e6199deb1bbd49ec32b77beapple-domain-verification=ttYe0HglGjGc1ArcfDcvZZI0hjIUmmiHUu7n8-uLbox-domain-verification=90fc751a9e3e4fd64921aede29f199ec8f7f674869f9247b772b0fd62f4dadf21password-site-verification=XICQQQJ5YVGBTCBHH5YUHCOC6Izoom-domain-verification=ZOOM_verify_cbd65637ac2f48e39be4e6632c676735box-domain-verification=872201a6dc558b9617af27a59c8c3a04bc714b93cab29cffa14a04d93a3c706dzoom-domain-verification=ZOOM_verify_e184f0ace90a4480b6731c1f1b5eac1bgoogle-site-verification=FAxkOOcibdbeEhvCLZzVEK9UzmvXSOOB4FpsghMfWnEMS=ms48080869pardot980273=91d8b1cc5cb184450b3d6b58cd60c0d5f68113e8e2c50223f9bd91e565a0379cpardot980273=7022a5462ef7d2fa32650c230cb6e825ca202f352fe6c5ea1e7b737b61ed5fa4vitally-domain-verification=a2cea074-a414-4ca1-9115-18925cc4fd54google-site-verification=ceQvpuRBKIpHWcHsZgigFV9u_d9uDHPjaACBymZhbBQanthropic-domain-verification-agb1jk=suWW8bM9FVJ6xsTGb5hVKQrDz
Email authentication strong
- SPF
-
v=spf1 include:_netblocks.google.com include:_netblocks2.google.com include:_netblocks3.google.com include:mail.zendesk.com include:_spf.salesforce.com include:et._spf.pardot.com include:sendgrid.net include:helpscoutemail.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=quarantine; pct=100; ri=86400; rua=mailto:dmarcflags@wealthbox.com; adkim=r; aspf=r;policy: quarantine · sp=quarantine - DKIM
-
- google:
v=DKIM1;k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCDfl8C7naoR9aA6kedCS+6YfOxqCH4jo/IzkddRfaLFtFsgjX8EQKQxqIjT7yV5jHwDQx+QzkzZys30f/OTyCf… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
E7
Expires in 76 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- referrer-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' wealthbox.com *.reddit.com www.redditstatic.com *.wealthbox.com *.typekit.net *.google.com tracking.g2crowd.com fonts.googleapis.com p.typekit.net googletagmanager.com secure.gravatar.com www.googletagmanager.com *.addthis.com *.twitter.com static.ads-twitter.com t.co cdnjs.cloudflare.com calendly.com *.calendly.com maxcdn.bootstrapcdn.com fonts.gstatic.com my.wpengine.com dify.wpengine.com cdn.jsdelivr.net *.w.org z.moatads.com v1.addthisedge.com *.wistia.net *.google-analytics.com snap.licdn.com bat.bing.com cdn.linkedin.oribi.io public.profitwell.com www2.profitwell.com *.sentry-cdn.com js.stripe.com *.linkedin.com *.wistia.com beacon-v2.helpscout.net *.googleadservices.com *.litix.io d3hb14vkzrxvla.cloudfront.net dna8twue3dlxq.cloudfront.net *.akamaihd.net *.doubleclick.net d33v4339jhl8k0.cloudfront.net *.glitch.com avatars0.githubusercontent.com fcmatch.youtube.com pi.pardot.com connect.facebook.net www.facebook.com *.adroll.com www