transactcampus.com

Illumia | Experience Technology for Essential Organizations

Illumia provides secure, intelligent technology that helps mission-critical organizations streamline operations and deliver better experiences.

https://illumiatech.com/Language: enIP: 192.133.11.1

Technologies
25
Scanned
2 hours ago
Compare with…

25 technologies

How we detected these (25)

Each technology is matched against a public fingerprint. Evidence is which part of the page or DNS matched; "implied" means another detected technology requires it. Confidence is the fingerprint's own certainty. Dates are when our scanner first and most recently observed it.

Changes over time

No changes since we first indexed this site on 28 Sept 2026. We re-scan about monthly; additions and removals will appear here.

Security headers

D45 of 100 · 4 of 6 checks need attention

Response headers on the home page that tell browsers how to protect visitors, graded the way securityheaders.com does. They describe the site's own defences, not the technologies on it.

HTTPS enforcement (HSTS)Good · 20/20
Set for six months or more. Adding includeSubDomains extends it to every subdomain.max-age=31536000; preload
Content Security PolicyGood · 25/25
Set and restricts where scripts may come from, the strongest defence against injected content.default-src *.fontawesome.com *.typekit.net https://cdn.insight.sitefinity.com https://pro.itech.cloud.sitefinity.com 'self' https://cdn.cookielaw.org https://*.clarity.ms https://c.bing.com; style-src 'unsafe-inline' *.typekit.net https://www.gstatic.com 'self' https://ka-f.fontawesome.com https://kit.fontawesome.com https://www.ssa.gov https://cdn.cookielaw.org https://tagmanager.google.com googletagmanager.com www.googletagmanager.com https://cdn.insight.sitefinity.com; script-src *.fontawesome.com https://js.hsforms.net/forms/embed/v2.js 'unsafe-inline' 'unsafe-eval' 'self' https://www.google.com https://www.gstatic.com https://cdn.insight.sitefinity.com kit.fontawesome.com ka-f.fontawesome.com https://cdn.cookielaw.org https://www.googletagmanager.com https://www.ssa.gov https://ajax.googleapis.com https://tagmanager.google.com https://www.clarity.ms https://scripts.clarity.ms/ *.ipredictive.com https://js.ipredictive.com/viant_universal_pixel.js https://www.googleadservices.com https://pagead2.googlesyndication.com https://googleads.g.doubleclick.net https://player.vimeo.com/api/player.js https://www.youtube.com/iframe_api; connect-src *.fontawesome.com forms.hubspot.com *.hubspot.com *.hsforms.com *.hsforms.net 'self' https://www.google.com https://www.gstatic.com https://ka-f.fontawesome.com https://cdn.cookielaw.org https://geolocation.onetrust.com/ https://roper-privacy.my.onetrust.com/request/v1/consentreceipts/anonymous https://www.googletagmanager.com https://www.google-analytics.com https://*.google-analytics.com https://*.analytics.google.com https://www.clarity.ms https://c.clarity.ms https://n.clarity.ms/collect https://*.clarity.ms https://c.bing.com *.ipredictive.com https://analytics.google.com https://stats.g.doubleclick.net www.googletagmanager.com www.google.com https://*.g.doubleclick.net https://*.google.com https://*.google.<TLD> https://pagead2.googlesyndication.com https://www.googleadservices.com https://googleads.g.doubleclick.net https
Clickjacking protectionMissing · 0/15
Not set. The page can be embedded invisibly on another site to trick clicks; add X-Frame-Options: DENY or a frame-ancestors directive.
MIME type sniffingMissing · 0/15
Not set. Add X-Content-Type-Options: nosniff so browsers never reinterpret files as scripts.
Referrer policyMissing · 0/15
Not set, so full page addresses may leak to other sites in the Referer header.
Browser feature permissionsMissing · 0/10
Not set. Embedded content inherits every browser feature; a Permissions-Policy header narrows that.
Other headers seen (1), not counted in the grade
  • Cross-origin isolation (COOP) · Optional. Isolates the window from pages that opened it; mostly matters for sites using SharedArrayBuffer.

Services behind the domain

Found in transactcampus.com's DNS records rather than on the page: email, verification and other tools the organisation uses. A DNS record shows an association; it does not prove the service is still in active use.

How we detected these (13)

Each technology is matched against a public fingerprint. Evidence is which part of the page or DNS matched; "implied" means another detected technology requires it. Confidence is the fingerprint's own certainty. Dates are when our scanner first and most recently observed it.

Found on the page

Share:Stack card imageFirst indexed 28 Sept 2026. How we scan sites