webtelemetry.dev

harihareswara.net

F

Home | Cogito, Ergo Sumana

| Cogito, Ergo Sumana | Blog by Sumana Harihareswara, Changeset founder

Last scanned 56 min agoCompare with another site →

Built with

No platform, CMS or framework detected. Detection is passive: it only sees what a site exposes in its HTML, headers and cookies, so custom or well-hidden stacks show up as nothing rather than as a guess.

Also detected

Libraries
Bootstrap · jQuery
Infrastructure
Nginx

Overview

Status
alive
Registered
2009-03-14 (18 years ago)
First seen here
2026-09-22
Security grade
F (55/100, from headers & TLS)
Privacy score
82/100 (1 third-party script hosts, 0 tracking/marketing services)
Hosting
Leaseweb USA, Inc. · AS30633 · United States
Server header
nginx
Response time
1224 ms to first byte, measured from our crawler
TLS certificate
Let's Encrypt · TLSv1.2 · expires 2026-12-07
Language
en
Mobile-ready
yes (viewport meta tag)
RSS / Atom feed
yes
Linked to from
4 other sites seen so far

Loads scripts from

Third-party domains this page pulls JavaScript or iframes from. Each one can see who visits.

buttondown.email

What to fix

  1. Add Strict-Transport-Security
    Header: Strict-Transport-Security: max-age=31536000; includeSubDomains
  2. Add a Content-Security-Policy
    Limits which scripts can run, and is the main defense against XSS. Start with Content-Security-Policy-Report-Only to test.
  3. Mark cookies Secure and HttpOnly
    At least one cookie is sent without these flags, exposing it to interception or scripts.
  4. Publish an SPF record
    A DNS TXT record listing who may send email for this domain, which prevents spoofing.
  5. Publish a DMARC record
    A TXT record at _dmarc.<domain>; start with v=DMARC1; p=none; to monitor.

Security & email signals

Badge

Show this site's security grade in a README or footer:

webtelemetry security grade for harihareswara.net
<a href="https://webtelemetry.dev/site/harihareswara.net"><img src="https://webtelemetry.dev/badge/harihareswara.net.svg" alt="Security grade"></a>

Generated automatically from passive, publicly observable data. Think something here is wrong or want this profile removed? See /bot. Machine-readable: JSON.