workstreamone.com

.com crawl

First seen 2026-05-11 · Last seen 2026-05-11 · ok HTTP/1.1 200 30580 ms crawled 2026-05-18

US · 173.227.26.57 · AS3549 Level 3 Parent, LLC

Reputation 100/100

Classifying

HTML metadata

Title
FSSI | workStreamOne

Technology

Server
Microsoft-IIS
CMS
Ghost
Fonts
  • Google Fonts

Third-party hosts loaded (2)

  • fonts.googleapis.com×2
  • fonts.gstatic.com×1

DNS records live

NS
  • ns0.dnsmadeeasy.com
  • ns1.dnsmadeeasy.com
  • ns2.dnsmadeeasy.com
  • ns3.dnsmadeeasy.com
  • ns4.dnsmadeeasy.com
MX
  • 10 email.fssi-ca.com
TXT
Show 5 TXT records
  • _nisvq4tmd73sqdbpuxmbb3k0el8cxu0
  • _jqqehl2bysv72f2y0uimt9ll2jfcpzt
  • nbj3htz8bl580xb6s7x4g17rkmz26ft9
  • p4dz1y3b3px1027hymgfdk5qlhgk47d3
  • wallarm-domain-verification=9e1771a874b796c351a10c93058f5dcf3080737314b63e624db97603bb9e4fad

Email authentication strong

SPF
v=spf1 include:spf.protection.outlook.com include:sendgrid.net ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; rua=mailto:6c4d60ae@mxtoolbox.dmarc-report.com; ruf=mailto:6c4d60ae@forensics.dmarc-report.com; fo=1; pct=100
policy: reject (enforced)
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6czTtNZ1TzXg5Q2EjjVuR6jPsw4hE5kn6UNej0fyI6P12X2ILuJoQdCtsbd9MngNKb9LENYS4I0v5g6Chj…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCpJ09+86C8EozwuxHMUnP7V8URmPuMWUHVENjjhNwy4RYxhK7pcnnATnQsL+2FHfPh9RzgTFZL+fnRXqeXY1pch+…
selectors probed

Certificates

Loading certificate

HTTP security headers

Header hygiene 75/100 Checked live page: https://www.workstreamone.com/Account/LogOn?ReturnUrl=%2f

present
  • strict-transport-security
  • content-security-policy-report-only
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • missing Content Security Policy
  • missing Permissions Policy
Header values
referrer-policy
origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
strict-transport-security
max-age=31536000
content-security-policy-report-only
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdnjs.cloudflare.com https://maxcdn.bootstrapcdn.com https://ajax.googleapis.com https://use.fontawesome.com; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com https://fonts.gstatic.com https://use.fontawesome.com https://stackpath.bootstrapcdn.com https://ajax.googleapis.com https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com; img-src 'self' data: https://ajax.googleapis.com; font-src 'self' https://fonts.gstatic.com https://use.fontawesome.com https://maxcdn.bootstrapcdn.com; report-uri https://cspendpoint.azurewebsites.net/api/HttpTrigger1; report-to csp-endpoint

Linked from (1)