wesendit.com
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- CloudFront
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (6)
- pay.datatrans.com×2
- cdnjs.cloudflare.com×1
- media.payrexx.com×1
- widget.crowdswap.org×1
- www.facebook.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- EPAG Domainservices GmbH
- Created
- 1998-11-02
- Expires
- 2026-11-01 165 days left
- Updated
- 2025-11-02
- Name servers
-
- ns-1228.awsdns-25.org
- ns-1943.awsdns-50.co.uk
- ns-28.awsdns-03.com
- ns-732.awsdns-27.net
DNS records live
- NS
-
- ns-1228.awsdns-25.org
- ns-1943.awsdns-50.co.uk
- ns-28.awsdns-03.com
- ns-732.awsdns-27.net
- MX
-
- 0 wesendit-com.mail.protection.outlook.com
- TXT
-
facebook-domain-verification=quvmt1kkvmwb6zvczmnf669ju23m4bgoogle-site-verification=Ohj8Bzrby0ZwGmTiluTWKkOoxtbhzq9kHXsOWyO-OSIgoogle-site-verification=TLTQHkDxbAaqcAh7R82O56KHOg5ETm2bpMgCWy1pxs0
Email authentication strong
- SPF
-
v=spf1 a mx a:mailbox.wesendit.com a:mail.wesendit.com a:ses.wesendit.com a:amazonses.com include:emsd1.com include:mail.zendesk.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; rua=mailto:27157b14@mxtoolbox.dmarc-report.com; ruf=mailto:27157b14@forensics.dmarc-report.com;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA7I6V6NxMnvkS6n6U7FaQjORArG6VBtJSW9803tR0w34vRHDxQwNJXec/Fk7ewgw005oA+MVUyN5yRt… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtRwEbOMZibweDQxMSkVlnQLC6r5rP0ErvJz80m5Dk5eSOMpa4u0BwEycToMqdpzABrp0LvjFLlJWK/… - mail:
v=DKIM1; k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCkxT8Is8F3kVTyI3cDfzldY12kxUSwMUK0EHps6TgbDnsCQP2rNWKO4C+FSS4n31jqOzVF7dHicXFXBCWAIIb…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M01
Expires in 182 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; connect-src 'self' https: wss:; default-src 'none'; media-src 'self' https://banners.wesendit.com; img-src 'self' https://*.gleap.io https://*.productfruits.com https: data: blob:; font-src 'self' data: https://fonts.gstatic.com https://*.productfruits.com https://widget.crowdswap.org; form-action 'self' https://*.facebook.com; frame-src 'self' https://*.gleap.io https://player.vimeo.com https://td.doubleclick.net https://*.sandbox.dat https://*.datatrans.com https://*.paypal.com https://*.cloudflare.com https://*.payrexx.com https://hooks.stripe.com https://verify.walletconnect.com https://*.googletagmanager.com https://banners.wesendit.com https://*.productfruits.com https://*.facebook.com https://*.youtube.com; frame-ancestors 'self'; manifest-src 'self'; object-src 'none'; script-src 'self' https://*.gleap.io https://*.googletagmanager.com https://*.google-analytics.com https://*.trstplse.com https://*.googleapis.com https://*.doubleclick.net https://*.datatrans.co- strict-transport-security
max-age=172800; includeSubDomains; preload