workatgila.com
HTML metadata
Technology
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (7)
- cdn.sites.paradox.ai×13
- dokumfe7mps0i.cloudfront.net×13
- cdn.jsdelivr.net×2
- fonts.googleapis.com×2
- ajax.googleapis.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2023-02-06
- Expires
- 2027-02-06 263 days left
- Updated
- 2025-02-07
- Name servers
-
- ns13.domaincontrol.com
- ns14.domaincontrol.com
DNS records live
- NS
-
- ns13.domaincontrol.com
- ns14.domaincontrol.com
- TXT
-
facebook-domain-verification=8plvf0dvzucvnmid9e4mmthey4d81s
Email authentication no MX
- SPF
-
v=spf1 include:_u.workatgila.com._spf.smart.ondmarc.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; sp=reject; rua=mailto:3b9b1341@inbox.ondmarc.com; ruf=mailto:3b9b1341@inbox.ondmarc.com; fo=1; ri=3600policy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
Amazon RSA 2048 M03
Expires in 139 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
img-src 'self' data: dy5f5j6i37p1a.cloudfront.net olivia.paradox.ai dokumfe7mps0i.cloudfront.net i.ytimg.com *.google-analytics.com *.recruiting.com *.paradox.ai secure.adnxs.com s.amazon-adsystem.com www.facebook.com px.ads.linkedin.com alb.reddit.com t.co analytics.twitter.com www.googletagmanager.com px4.ads.linkedin.com *.imagekit.io; font-src d2ir6gu3mx7cqv.cloudfront.net dokumfe7mps0i.cloudfront.net maxcdn.bootstrapcdn.com fonts.gstatic.com 'self' *.paradox.ai data:; frame-src 'self' match.adsrvr.org www.youtube.com www.google.com www.youtube-nocookie.com www.googletagmanager.com ct.pinterest.com insight.adsrvr.org recaptcha.google.com; style-src 'self' https: dy5f5j6i37p1a.cloudfront.net dokumfe7mps0i.cloudfront.net 'unsafe-inline' *.paradox.ai; script-src 'self' *.googleapis.com d2ir6gu3mx7cqv.cloudfront.net www.youtube.com player.vimeo.com *.google-analytics.com *.googletagmanager.com www.gstatic.com *.pardot.com dokumfe7mps0i.cloudfront.net www.google.com 'unsafe-inline' 'uns- strict-transport-security
max-age=31536000; includeSubDomains
Links to (6)
- facebook.com×2
- instagram.com×2
- playatgila.com×2
- tiktok.com×2
- x.com×2
- youtube.com×2