hogum
selenagomez.com

selenagomez.com security report

Certificate, security headers, email authentication, DNS, registration, and exposed hosts — from public sources.

93risk

Critical

Exposed services or known CVEs need attention now.

4Critical
15High
9Medium
9Low
2Info
Collected 25.3sfrom cache
  1. Certificate Transparency
  2. DNS resolution2
  3. Network ownership0
  4. CDN / WAF detection0
  5. Exposed ports & CVEs701
  6. Registration
  7. DNS posture4
  8. Email authentication0
  9. Certificate
  10. Security headers4
  11. Archived URLs
  12. Analysis39
  • noteCertificate Transparency did not complete (HTTP 404). Results below are partial.
  • noteCertificate inspection is unavailable in this runtime.
  • noteNetwork ownership lookup is unavailable in this runtime; ASN and org are omitted.
  • noteCDN/WAF detection is unavailable in this runtime.
final https://store.selenagomez.com/status 200time 1297msstack cloudflare
  • http:// redirects to https://
  • !Strict-Transport-Security
    max-age=7889238
  • Content-Security-Policy
    block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;
  • Clickjacking protection
    DENY
  • X-Content-Type-Options
    nosniff
  • Referrer-Policy
  • Permissions-Policyoptional
  • security.txt publishedoptional — tells researchers where to report bugs
  • Cookie _shopify_y
    no Secure · no HttpOnly · SameSite=lax
  • Cookie _shopify_s
    no Secure · no HttpOnly · SameSite=lax
  • Cookie localization
    no Secure · no HttpOnly · SameSite=lax
  • Cookie cart_currency
    no Secure · no HttpOnly · SameSite=lax
  • Cookie _shopify_essential
    Secure · HttpOnly · SameSite=lax
  • Cookie _shopify_analytics
    Secure · HttpOnly · SameSite=lax
  • Cookie _shopify_marketing
    Secure · HttpOnly · SameSite=lax
AddressPortsCVEsEdgeNetwork
45.60.37.79
1121254353808182+360
0direct
45.60.39.79
11255380828497110+325
0direct
Archived URLs

Endpoints the Wayback Machine has kept — config files, backups, scripts. Slow to fetch, so it is here on request.