VoiceOps · Domain Security

Voiceops Domain Security

Domain security

Domain security posture for VoiceOps, probed live across 4 host(s) and 1 registrable domain(s). 4 host(s) serve HTTPS (up to TLSv1.3); 3 advertise HSTS. Email/DNS controls: DNSSEC absent, SPF present, DMARC present (p=quarantine).

CompanyAi AppsConversation IntelligenceCall CentersSales CoachingCustomer ExperienceArtificial IntelligenceSpeech AnalyticsModel Context ProtocolAgents

Transport & Host Security

www.voiceops.com
HTTPS: yes · TLS: TLSv1.3 · HSTS: yes · cert expires: Oct 14 16:53:26 2026 GMT
mcp.voiceops.com
HTTPS: yes · TLS: TLSv1.3 · HSTS: no · cert expires: Jan 25 23:59:59 2027 GMT
app.voiceops.com
HTTPS: yes · HSTS: yes
api.voiceops.com
HTTPS: yes · HSTS: yes

Domain (DNS/Email) Security

voiceops.com
DNSSEC: no · SPF: yes · DMARC: yes (p=quarantine) · CAA: none

Source

Domain Security

voiceops-domain-security.yml Raw ↑
generated: '2026-08-14'
method: probed
source: live DNS/TLS/HTTP probes of apis.yml + OpenAPI hosts
hosts:
- host: www.voiceops.com
  https: true
  tls_version: TLSv1.3
  cert_expires: Oct 14 16:53:26 2026 GMT
  hsts: true
  hsts_max_age: 31536000
- host: mcp.voiceops.com
  https: true
  tls_version: TLSv1.3
  cert_expires: Jan 25 23:59:59 2027 GMT
  hsts: null
- host: app.voiceops.com
  https: true
  hsts: true
  hsts_max_age: 31536000
  hsts_include_subdomains: true
  csp: true
  x_frame_options: SAMEORIGIN
  source: manual probe (not an apis.yml baseURL host)
- host: api.voiceops.com
  https: true
  hsts: true
  hsts_max_age: 15768000
  x_frame_options: DENY
  source: manual probe (not an apis.yml baseURL host)
certificate:
  issuer: C=US, O=Amazon, CN=Amazon RSA 2048 M01
  subject: CN=projectfrontline.net
  not_before: Jul 12 00:00:00 2026 GMT
  not_after: Jan 25 23:59:59 2027 GMT
  subject_alt_names:
  - projectfrontline.net
  - '*.projectfrontline.net'
  - app.voiceops.com
  - '*.app.voiceops.com'
  - api.voiceops.com
  - mcp.voiceops.com
  note: >-
    One certificate fronts the application, API and MCP hosts. This is the
    ownership evidence used throughout this profile.
findings:
- >-
  mcp.voiceops.com — the company's only public programmatic surface — returns no
  Strict-Transport-Security header, while the marketing site, application and
  API host all do.
- No CAA records and no DNSSEC on voiceops.com.
- DMARC policy is p=quarantine rather than p=reject.
domains:
- domain: voiceops.com
  dnssec: false
  caa: []
  spf: true
  dmarc: true
  dmarc_policy: quarantine