zest.ai
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress
- Fonts
-
- Google Fonts
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (5)
- player.vimeo.com×3
- fonts.googleapis.com×2
- cdnjs.cloudflare.com×1
- fonts.gstatic.com×1
- unpkg.com×1
Social
Contact
- Address
- st insights on AI and lendingMktoForms2.loadForm("//go.zest.ai", "608-IHJ-205", 1191
Registration
- Registrar
- 101domain GRS Limited
- Created
- 2017-12-16
- Expires
- 2028-08-24 827 days left
- Updated
- 2024-05-29
- Name servers
-
- ns-438.awsdns-54.com
- ns-917.awsdns-50.net
DNS records live
- NS
-
- ns-1349.awsdns-40.org
- ns-1641.awsdns-13.co.uk
- ns-438.awsdns-54.com
- ns-917.awsdns-50.net
- MX
-
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 30 alt2.aspmx.l.google.com
- 40 aspmx2.googlemail.com
- 50 aspmx3.googlemail.com
- TXT
-
Show 12 TXT records
slack-domain-verification=2P5Z09HQ8CkFvhN3rKBmOsuZPGREeiRXVcMNhaxcMS=ms95336056airtable-verification=c544d9378d342e693b2817abdeed682canthropic-domain-verification-vejjew=SXhuj68pxrOmtQzI2TnPasplZapple-domain-verification=qORVwuhNIOLa4jajasv=7ccb2914d57a698c06c0a052b5925953atlassian-domain-verification=jlDk578kPYhcixiZ7Hi0pqNJt8/EP67yP2IeslZuqH2exnE3R5rpVwGkg0ixlosPatlassian-sending-domain-verification=65227a4e-202c-43ac-99ec-f1bc2606b6eegoogle-site-verification=I39ZUELkNvk7dIxd1W-mw9gSOT6mi7Nhpk2k09DY2_Ugoogle-site-verification=LgTqzgcMg4JAi-pQSBhdiEcF_afqxydyBJNJ85bhBRsgoogle-site-verification=qrctuZMtLiNZ22o7kq1JEqf5gEcIUhS1gdZYUYUlXoMopenai-domain-verification=dv-MMwrqSPOHUqk09tfQn4u8nGd
Email authentication strong
- SPF
-
v=spf1 include:_spf.google.com include:spf.mandrillapp.com include:mktomail.com mx include:_spf.salesforce.com include:amazonses.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:re+lxuofxohduf@dmarc.postmarkapp.com; sp=none; aspf=r;policy: quarantine · sp=none - DKIM
-
Show 4 DKIM selectors
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDFp7BvZRwbTuRM3rytXIyj+Ag19d5zGsQSbWC9RBfOVNJW+jGhJl9uagUBjJWfB1GdlhLqHF90Dy6v4NSMYR… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvCC38hh+olWClGnFHoeTi9xJAac+SnvhB2Yh5CI7ARM/id546yu7a3R5gqavqu57l3koQIZP2ayAlqPDtP… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6lXSr7sfIjYH19tj9hmYG1V/YW4AuiVKT0D9h6EMus76iuG/cAIIEs+4ZFhM8xXD15bF+KSpaKlNZUBFwG… - smtpapi:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed - google:
Certificate (current)
E8
Expires in 53 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), microphone=(), camera=(), fullscreen=(self), payment=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; frame-ancestors 'none'; worker-src 'self' blob:; script-src 'self' https://*.contentsquare.net https://capture.navattic.com https://assets.apollo.io https://*.doubleclick.net https://www.zest.ai https://script.hotjar.com https://okt.to https://*.googleapis.com https://*.gstatic.com https://*.googletagmanager.com https://*.google-analytics.com https://unpkg.com https://go.zest.ai https://cdnjs.cloudflare.com https://*.cloudfront.net https://player.vimeo.com 'unsafe-inline' blob:; script-src-elem 'self' https://*.contentsquare.net https://cdn.userway.org https://capture.navattic.com https://script.hotjar.com https://okt.to https://*.googleapis.com https://*.gstatic.com https://*.googletagmanager.com https://*.google-analytics.com https://unpkg.com https://go.zest.ai https://cdnjs.cloudflare.com https://munchkin.marketo.net https://assets.apollo.io https://*.doubleclick.net https://sc.lfeeder.com https://static.oktopost.com https://js.adsrvr.org https://vidassets.termi- strict-transport-security
max-age=15768000; includeSubdomains