xtego.com

.com crawl

First seen 2026-04-23 · Last seen 2026-05-17 · ok HTTP/1.1 200 9855 ms crawled 2026-05-17

US · 172.67.153.4 · AS13335 Cloudflare, Inc.

Reputation 94/100 dmarc monitor-only

sector b2b services type homepage

HTML metadata

Title
Websites That Convert & Technology That Works
Description
Xtego Creative builds professional websites that turn visitors into customers. Web design, hosting, business technology, and automation for small businesses in Williamsport, PA.
Language
en
Canonical
https://xtego.com

Open Graph

url
https://xtego.com
title
Xtego Creative | Websites That Convert & Technology That Works
description
Professional websites that turn visitors into customers. Web design, hosting, business technology, and automation for small businesses.

Technology

CDN
Cloudflare
CMS
Next.js
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • gettermscmp.com×1
  • www.googletagmanager.com×1

Social

Contact

Phone
Address
400 Market Street, Suite 3C, 17701, Williamsport, PA, US

Registration

Registrar
NameSilo, LLC
Created
2005-04-23
Expires
2027-04-23 338 days left
Updated
2026-03-24
Name servers
  • aldo.ns.cloudflare.com
  • elle.ns.cloudflare.com

DNS records live

NS
  • aldo.ns.cloudflare.com
  • elle.ns.cloudflare.com
MX
  • 0 xtego-com.mail.protection.outlook.com
TXT
  • google-site-verification=zgdKa7hGBPAyF9qJzQs9IDO5iCpTUtUNMzBJfkg6Xnk
  • ppe-f466442d5b4c6eb6af2b
  • MS=ms87381106

Email authentication partial

SPF
v=spf1 include:spf.xtego.cloud include:_spf.smtp.mailtrap.live ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@xtegonetworks.com; ruf=mailto:dmarc@xtegonetworks.com; rf=afrf; pct=100
policy: none (monitoring only)
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC047+Li1NpwEhrddIuwqhJuxYUT7ZsxjMGiSOiNULDxOdL5b6BL27FaQtfAnG4frMecPFm9z7hTjLr9GtmX7…
selectors probed

Certificate (current)

WE1
from 2026-05-16 to 2026-08-14
Expires in 87 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://xtego.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(), microphone=(), camera=(), payment=(), usb=(), magnetometer=(), gyroscope=(), accelerometer=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://gettermscmp.com https://cdn.jsdelivr.net https://www.googletagmanager.com https://www.google-analytics.com https://analytics.xtego.cloud https://static.cloudflareinsights.com; style-src 'self' 'unsafe-inline'; img-src 'self' data: https:; font-src 'self'; connect-src 'self' https://www.google.com/recaptcha/ https://n8n.xtego.cloud https://www.google-analytics.com https://*.google-analytics.com https://analytics.google.com https://*.analytics.google.com https://*.googletagmanager.com https://analytics.xtego.cloud https://cloudflareinsights.com; frame-src https://www.google.com/maps/ https://www.google.com/recaptcha/ https://api.one.xtego.com
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (2)

Linked from (2)