worldillustrationawards.com

.com crawl

First seen 2026-04-19 · Last seen 2026-05-18 · ok HTTP/1.1 200 4676 ms crawled 2026-05-13

US · 104.21.85.229 · AS13335 Cloudflare, Inc.

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
World Illustration Awards – World Illustration Awards
Language
en-GB
Generator
Site Kit by Google 1.178.0

Open Graph

url
https://worldillustrationawards.com/world-illustration-awards/
title
The AOI - World Illustration Awards
site name
The AOI

Technology

CDN
Cloudflare
CMS
WordPress
Analytics
  • Google Tag Manager
Third-party hosts loaded (7)
  • imagedelivery.net×20
  • theaoi.com×4
  • www.googletagmanager.com×3
  • challenges.cloudflare.com×2
  • cdn.jsdelivr.net×1
  • cdn.userway.org×1
  • unpkg.com×1

Contact

Phone

Registration

Registrar
Tucows Domains Inc.
Created
2014-10-15
Expires
2026-10-15 149 days left
Updated
2025-10-14
Name servers
  • aida.ns.cloudflare.com
  • charles.ns.cloudflare.com

DNS records live

NS
  • aida.ns.cloudflare.com
  • charles.ns.cloudflare.com
MX
  • 10 mx.hover.com.cust.hostedemail.com
TXT
  • google-site-verification=duoOPY07rAnAV_2ORh49cEsBnWBi6aIoG2AHLHc-zds
  • google-site-verification=FXwgdBtUdMzroJP-58j9SUSx7dGmo55_DS8nRtXJZ-I

Email authentication weak

SPF
not published
DMARC
not published
DKIM
no key found at common selectors

Certificate (current)

WE1
from 2026-05-09 to 2026-08-07
Expires in 80 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://worldillustrationawards.com/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
Header values
permissions-policy
geolocation=(); midi=();notifications=();push=();sync-xhr=();accelerometer=(); gyroscope=(); magnetometer=(); payment=(); camera=(); microphone=();usb=(); xr=();speaker=(self);vibrate=();fullscreen=(self);
x-content-type-options
nosniff
content-security-policy
default-src 'self'; connect-src *; font-src * data:; frame-src *; img-src * data:; media-src *; object-src *; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (2)

Linked from (4)