wittur.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- code.jquery.com×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- px.ads.linkedin.com×1
- www.googletagmanager.com×1
Social
Contact
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 1998-09-29
- Expires
- 2026-09-28 131 days left
- Updated
- 2025-09-28
- Name servers
-
- ns1-08.azure-dns.com
- ns2-08.azure-dns.net
- ns3-08.azure-dns.org
- ns4-08.azure-dns.info
DNS records live
- NS
-
- ns1-08.azure-dns.com
- ns2-08.azure-dns.net
- ns3-08.azure-dns.org
- ns4-08.azure-dns.info
- MX
-
- 0 wittur-com.mail.protection.outlook.com
- TXT
-
Show 9 TXT records
Kb+5HRWUDvZg9oG9kWtGK0hFb5TVhB7iDdo6QjIqD3VdkGD67lAKUK6hXFV16tQJI8LwsrjLJPTOeUnmVoyQzQ==docusign=478b8ad6-eab2-4065-8bba-4921a7eff0b3sophos-domain-verification=b6c95910b0757b1b7b71929148a7745fcdcb261e9a1ef3933835aab3c60598f1anthropic-domain-verification-hmmn0q=eailo546RjJ9UeTBscgbrzS6kinfor-cloudsuite-domain-verification=NYFN9DVWHNHKMGL2ZCBVNBNMUX62FLG8HWQEM2CYGMMF9PVQX7ZLHTBLW7SF7HJHen5fLtk0U15qWQaTGVAcqe1/KvHWSZEyDOeqS05s4TEgScGhhIwZSbIBAtUpIDoZezWKE2A2IbtYBbera1tDbg==dd6324af22f824c9c5ae6ed713d5cd153139a626915f35890catlassian-domain-verification=D26RufqcptxuNyPdp23io8qPkyCNUI6XjRKIcndZXpWoVCPRWSw1NcLXwXY6J0aZieq5iurkm4t7qb1n5a2ftsdlb2
Email authentication strong
- SPF
-
v=spf1 mx ip4:80.76.65.102 ip4:80.76.69.0/24 ip4:80.122.153.6 ip4:80.122.153.9 ip4:80.122.153.252 ip4:82.218.178.6 ip4:88.99.54.89 ip4:195.53.156.107/29 ip4:91.90.150.0/24 ip4:91.90.154.0/24 ip4:132.145.238.228 ip4:132.145.238.229 ip4:132.145.241.145 ip4:13.54.7.185 ip4:13.210.155.43 ip4:54.79.14.179 ip4:52.63.121.74 ip4:195.50.178.169 ip4:193.228.122.61 ip4:193.228.122.60 ip4:40.74.15.22 include:all._spf.plma.se include:spf.protection.outlook.com include:mail.zendesk.com include:transmail.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:DMARC-Quarantine@wittur.com;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxANdYdEReSH3v76LJ2q4AcSVwm0hmSshaCPWJtOMNZkeDJ/KIjz3ufICtsh1zVYtr5ouxZxi/w9GhG… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArLXmezQ70EGNdkPGzudLatbxTcVM6pS9BliDtupd83y2fsmQYbjOqbiMZLywDztFjaF4xyyKnWMHOb… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 169 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'none'; base-uri 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.jquery.com www.googletagmanager.com tagmanager.google.com *.google-analytics.com *.analytics.google.com cdn.leadchampion.com *.doubleclick.net *.licdn.com *.google.com *.googleapis.com cdnjs.cloudflare.com platform.linkedin.com www.gstatic.com unpkg.com www.youtube.com production.witturdraw.digipara-liftdesigner.com js.cypheme.com; connect-src 'self' www.googletagmanager.com tagmanager.google.com *.google-analytics.com *.analytics.google.com *.google.com *.googleapis.com *.linkedin.com; img-src 'self' blob: data: www.googletagmanager.com tagmanager.google.com *.google-analytics.com *.doubleclick.net *.gstatic.com *.google.com *.google.it *.linkedin.com www.graphoservice.eu maps.googleapis.com qrickit.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com use.fontawesome.com cdnjs.cloudflare.com tagmanager.google.com; font-src 'self' data: fonts.gstatic.com fonts.googleapis.com use.fontawesome.com- strict-transport-security
max-age=31536000; includeSubDomains; preload- content-security-policy-report-only
default-src * data: blob: filesystem: about: ws: wss: 'unsafe-inline' 'unsafe-eval'; script-src * data: blob: 'unsafe-inline' 'unsafe-eval'; connect-src * data: blob: 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src * data: blob: ; style-src * data: blob: 'unsafe-inline'; font-src * data: blob: 'unsafe-inline'; frame-ancestors * data: blob:;