workbenchenergy.com
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Fonts
-
- Adobe Fonts
- Google Fonts
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (9)
- ajax.googleapis.com×2
- fonts.googleapis.com×2
- fonts.gstatic.com×1
- gmpg.org×1
- kit.fontawesome.com×1
- platform-api.sharethis.com×1
- player.vimeo.com×1
- use.typekit.net×1
- www.eventbrite.ca×1
Social
Contact
- Phone
- Address
- Workbench Energy14a Hazelton Ave, Suite 301,Toronto, Ontario, Canada, M5R 2E2
Registration
- Registrar
- GoDaddy.com, LLC
- Created
- 2015-03-03
- Expires
- 2028-03-03 652 days left
- Updated
- 2026-03-04
- Name servers
-
- ns67.domaincontrol.com
- ns68.domaincontrol.com
DNS records live
- NS
-
- ns67.domaincontrol.com
- ns68.domaincontrol.com
- MX
-
- 0 workbenchenergy-com.mail.protection.outlook.com
- TXT
-
ima2ue55kkrf33mktq83eagun7ca3-2e5c6bfd70e548028218bb94f21ba1e3
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.act-on.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none;rua=mailto:admin@workbenchenergy.com;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvD06pZpOxphAWHuW31gEU4QulcraiNs3tt81PXGNRiTpEmEUhaB3/yHZ/Vc3ckZjboOEdyblgZAlPT… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwO7YEkyxy/w1Xelu4EdFFkhnl2oXvpchr2/nc/G+pSqOCkR2pNMTGwDndBO+bG5AvLC2/cjevMdSye04qw… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu8wwnLB5N+6r93RvvxIZ3oc3id2G1EMMQpVqk7Ed2GW3KGnEZ31D9neJAo2IOJ5HeKIqagJ4cnT3XSkHlj…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src * data:; media-src * 'self' blob: data: https:;img-src * 'self' data: https:; script-src 'self' data: blob: 'unsafe-inline' 'unsafe-eval' *; style-src 'self' 'unsafe-inline' *- strict-transport-security
max-age=31536000