Security Analysis Results

www.xipere.com

Comprehensive domain security and infrastructure analysis

Live Website Preview

website screenshot of https://www.xipere.com/hcp/scs-microinjector/

No Security Risks Detected

This domain appears to be safe and secure

100%
Score

Disclaimer: This assessment is based on automated analysis of publicly available information. Results are for informational purposes only. For critical applications, consult security professionals.

Scan Information

Last checked:April 6, 2026 11:02:29
Scan Complete

Refresh page after 10 minutes
for updated results

Page Information

Target URL
https://www.xipere.com/hcp/scs-microinjector/
Page Title
XIPERE® (triamcinolone acetonide injectable suspension) SCS Microinjector®|HCP Website
www.xipere.com faviconSite Favicon
Status
Active

Host Information

Domain
www.xipere.com
Server
cloudflare
Country
United States
IP Address
172.64.145.34
ASN Information
13335
CLOUDFLARENET

Technologies

Sentry logo
Sentry
Issue trackers
Wistia logo
Wistia
Video players
Bootstrap logo
Bootstrap
UI frameworks
jQuery logo
jQuery
JavaScript libraries
HSTS logo
HSTS
Security
Google Tag Manager logo
Google Tag Manager
Tag managers
+2 more technologies detected

SSL Certificate

HTTPS Enabled
Secure
Certificate Issuer
N/A
Valid From
2026-04-05 11:02:34
Valid Until
2027-04-06 11:02:34
Subject Name
www.xipere.com

Performance Statistics

52
Total Requests
8
Domains
8
IP Addresses
2.03 MB
Transfer Size
Content Size3.72 MB

HTTP Headers

CF-RAY
9e804d123c7b5a2e-SJC
Cache-Control
no-cache,no-store
Connection
keep-alive
Content-Encoding
gzip
Content-Security-Policy
child-src 'self' 'unsafe-eval' 'unsafe-inline' wss://ws.eu1.paradox.ai/; frame-src 'self' 'unsafe-eval' 'unsafe-inline' blob: *.redditstatic.com https://*.adnxs.com https://*.adsrvr.org https://*.basis.net https://*.bausch.com https://*.bl-ppd.com https://*.cloudfront.net https://*.consensu.org https://*.consentmanager.net https://*.doctor.com/ https://*.doubleclick.net https://*.eu1.paradox.ai https://*.facebook.com https://*.fingertipformulary.com https://*.fonts.net https://*.force.com https://*.google.com https://*.google.ie https://*.googletagmanager.com https://*.gotolstoy.com https://*.gstatic.com https://*.lumifyrewards.com https://*.mapbox.com https://*.marinsm.com https://*.mgr.consensu.org https://*.mikmak.ai https://*.mookie1.com https://*.pinterest.com https://*.pricespider.com https://*.rfihub.com https://*.salesforceliveagent.com https://*.sightmatters.com https://*.sitescout.com https://*.snapchat.com https://*.swaven.com https://*.wistia.net https://*.youtube.com https://copilotstudio.microsoft.com https://irxcm.com https://lumify-project-glimmer.netlify.app https://www.juicer.io wss://ws.eu1.paradox.ai/; worker-src 'self' blob: https://*.consentmanager.net https://*.powerapps.com; report-to stott-security-endpoint; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.redditstatic.com https://*.activehosted.com https://*.adnxs.com https://*.adsrvr.org https://*.aptrinsic.com https://*.bausch.com https://*.bing.com https://*.bl-ppd.com https://*.boomtrain.com https://*.bootstrapcdn.com https://*.bunny.net/ https://*.c360a.salesforce.com https://*.clarity.ms https://*.cloudflare.com https://*.cloudfront.net https://*.collect.igodigital.com https://*.consentmanager.net https://*.contextweb.com https://*.doctor.com/ https://*.doubleclick.net https://*.eu1.paradox.ai https://*.facebook.com https://*.facebook.net https://*.fontawesome.com https://*.fonts.net https://*.google-analytics.com https://*.google.com https://*.googleadservices.com https://*.googleapis.com https://*.googlesyndication.com https://*.googletagmanager.com https://*.gotolstoy.com https://*.gstatic.com https://*.jquery.com/ https://*.jsdelivr.net/ https://*.lassomarketing.io https://*.lhmos.com https://*.licdn.com https://*.linkedin.com https://*.litix.io https://*.mapbox.com https://*.marinsm.com https://*.marketo.net https://*.mikmak.ai https://*.mmitnetwork.com/ https://*.monitor.azure.com https://*.mookie1.com https://*.pinimg.com https://*.pinterest.com https://*.pmsrv.co https://*.powerapps.com https://*.pricespider.com https://*.prod.uidapi.com https://*.redditstatic.com https://*.rezync.com https://*.rfihub.net https://*.salesforce.com https://*.salesforceliveagent.com https://*.sentry-cdn.com https://*.services.visualstudio.com https://*.serving-sys.com https://*.snapchat.com https://*.spider-mails.com https://*.swaven.com https://*.tiktok.com https://*.wistia.com https://*.wistia.net https://*.yimg.com https://*.youtube.com https://copilotstudio.microsoft.com https://irxcm.com https://lumify-project-glimmer.netlify.app https://sc-static.net https://static.ads-twitter.com https://unpkg.com wss://ws.eu1.paradox.ai/ ; report-to stott-security-endpoint; style-src 'self' 'unsafe-eval' 'unsafe-inline' *.redditstatic.com https://*.adnxs.com https://*.aptrinsic.com https://*.bausch.com https://*.bl-ppd.com https://*.bootstrapcdn.com https://*.bunny.net/ https://*.cloudflare.com https://*.cloudfront.net https://*.consentmanager.net https://*.doctor.com/ https://*.eu1.paradox.ai https://*.facebook.com https://*.facebook.net https://*.fontawesome.com https://*.fonts.net https://*.googleapis.com https://*.googlesyndication.com https://*.googletagmanager.com https://*.gotolstoy.com https://*.gstatic.com https://*.jquery.com/ https://*.jsdelivr.net/ https://*.linkedin.com https://*.litix.io https://*.mapbox.com https://*.marinsm.com https://*.mikmak.ai https://*.mmitnetwork.com/ https://*.mookie1.com https://*.powerapps.com https://*.pricespider.com https://*.typekit.net https://*.wistia.com https://*.wistia.net https://cdn.fonts.net https://copilotstudio.microsoft.com https://res-1.cdn.office.net https://unpkg.com wss://ws.eu1.paradox.ai/ ; report-to stott-security-endpoint; connect-src 'self' 'unsafe-eval' blob: data: *.redditstatic.com https://*.adnxs.com https://*.adsrvr.org https://*.aptrinsic.com https://*.basis.net https://*.bausch.com https://*.bing.com https://*.bing.net https://*.bl-ppd.com https://*.bluecava.com https://*.bootstrapcdn.com https://*.bunny.net/ https://*.businesswire.com https://*.c360a.salesforce.com https://*.clarity.ms https://*.cloudflare.com https://*.cloudfront.net https://*.collect.igodigital.com https://*.consensu.org https://*.consentmanager.net https://*.consumerism.pressganey.com https://*.contextweb.com https://*.doctor.com/ https://*.doubleclick.net https://*.eu1.paradox.ai https://*.facebook.com https://*.facebook.net https://*.fontawesome.com https://*.fonts.net https://*.google-analytics.com https://*.google.co.in https://*.google.com https://*.google.nl https://*.googleadservices.com https://*.googleapis.com https://*.googlesyndication.com https://*.googletagmanager.com https://*.gotolstoy.com https://*.gstatic.com https://*.investis.com https://*.linkedin.com https://*.litix.io https://*.mapbox.com https://*.marinsm.com https://*.mgr.consensu.org https://*.mikmak.ai https://*.mmitnetwork.com/ https://*.monitor.azure.com https://*.mookie1.com https://*.paradox.ai https://*.pinimg.com https://*.pinterest.com https://*.powerapps.com https://*.pricespider.com https://*.prnewswire.com/ https://*.reddit.com https://*.redditstatic.com https://*.rubiconproject.com https://*.salesforce.com https://*.services.visualstudio.com https://*.serving-sys.com https://*.snapchat.com https://*.spider-mails.com https://*.swaven.com https://*.tiktok.com https://*.tiktokw.us https://*.tools.investis.com https://*.txttoi.com https://*.typekit.net https://*.wistia.com https://*.wistia.net https://cdn.fonts.net https://copilotstudio.microsoft.com https://google.com https://sc-static.net https://unpkg.com wss://ws.eu1.paradox.ai/ wss://wtbstream.pricespider.com/; font-src 'self' 'unsafe-eval' 'unsafe-inline' data: https://*.adnxs.com https://*.bausch.com https://*.bl-ppd.com https://*.bootstrapcdn.com https://*.bunny.net/ https://*.cloudflare.com https://*.cloudfront.net https://*.consentmanager.net https://*.doctor.com/ https://*.eu1.paradox.ai https://*.facebook.com https://*.facebook.net https://*.fontawesome.com https://*.fonts.net https://*.google-analytics.com https://*.google.com https://*.googleapis.com https://*.googlesyndication.com https://*.gotolstoy.com https://*.gstatic.com https://*.jsdelivr.net/ https://*.litix.io https://*.marinsm.com https://*.mikmak.ai https://*.mmitnetwork.com/ https://*.mookie1.com https://*.powerapps.com https://*.pricespider.com https://*.salesforceliveagent.com https://*.swaven.com https://*.tiktok.com https://*.typekit.net https://*.wistia.com https://*.wistia.net https://cdn.fonts.net https://cdn.yiban.io https://copilotstudio.microsoft.com wss://ws.eu1.paradox.ai/; img-src 'self' 'unsafe-eval' 'unsafe-inline' blob: data: *.redditstatic.com https://*.adentifi.com https://*.adnxs.com https://*.adsrvr.org https://*.akamaihd.net https://*.app-us1.com https://*.basis.net https://*.bausch.com https://*.bauschsurgical.com https://*.bidswitch.net https://*.bing.com https://*.bing.net https://*.bl-ppd.com https://*.bluecava.com https://*.businesswire.com https://*.casalemedia.com https://*.clarity.ms https://*.cloudflare.com https://*.cloudfront.net https://*.collect.igodigital.com https://*.consentmanager.net https://*.contextweb.com https://*.deepintent.com https://*.doctor.com/ https://*.doubleclick.net https://*.eu1.paradox.ai https://*.facebook.com https://*.fontawesome.com https://*.google-analytics.com https://*.google.ca https://*.google.co.in https://*.google.com https://*.google.ie https://*.google.nl https://*.googleadservices.com https://*.googleapis.com https://*.googlesyndication.com https://*.googletagmanager.com https://*.gotolstoy.com https://*.gstatic.com https://*.linkedin.com https://*.litix.io https://*.marinsm.com https://*.mathtag.com https://*.mikmak.ai https://*.mmitnetwork.com/ https://*.mookie1.com https://*.pinimg.com https://*.pinterest.com https://*.placeholder.com https://*.powerapps.com https://*.pricespider.com https://*.prnewswire.com/ https://*.reddit.com https://*.rezync.com https://*.rubiconproject.com https://*.salesforce-sites.com https://*.salesforceliveagent.com https://*.sharethis.com https://*.sitescout.com https://*.snapchat.com https://*.swaven.com https://*.tapad.com https://*.tiktok.com https://*.turn.com https://*.twitter.com https://*.wistia.com https://*.wistia.net https://*.ytimg.com https://bauschvisioncare.secure.force.com https://c212.net https://cdn.fonts.net https://copilotstudio.microsoft.com https://eyetube.net https://google.com https://sc-static.net https://t.co/ https://thrtle.com https://unpkg.com https://www.google.lu wss://ws.eu1.paradox.ai/; manifest-src https://*.adsrvr.org https://*.consentmanager.net; media-src 'self' 'unsafe-inline' blob: https://*.adsrvr.org https://*.bausch.com https://*.cloudfront.net https://*.consentmanager.net https://*.gotolstoy.com https://*.gstatic.com https://*.linkedin.com https://*.litix.io https://*.marinsm.com https://*.mookie1.com https://*.wistia.com https://*.wistia.net wss://ws.eu1.paradox.ai/; object-src 'self' https://*.adsrvr.org https://*.bausch.com https://*.consentmanager.net https://*.litix.io https://*.marinsm.com https://*.mookie1.com https://*.powerapps.com https://*.wistia.net https://copilotstudio.microsoft.com; report-to stott-security-endpoint; base-uri 'self' https://*.adsrvr.org; form-action 'self' 'unsafe-eval' 'unsafe-inline' https://*.adsrvr.org https://*.bausch.com https://*.consentmanager.net https://*.doctor.com/ https://*.facebook.com https://copilotstudio.microsoft.com; upgrade-insecure-requests; report-to stott-security-endpoint;
Content-Type
text/html; charset=utf-8
Date
Mon, 06 Apr 2026 11:02:34 GMT
Expires
-1
Permissions-Policy
accelerometer=(), camera=(), geolocation=(*), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()
Pragma
no-cache
Referrer-Policy
strict-origin-when-cross-origin
Reporting-Endpoints
stott-security-endpoint="https://www.xipere.com/stott.security.optimizely/api/cspreporting/reporttoviolation/"
Request-Context
appId=cid-v1:dcebd24e-8d7e-4583-9aa2-b908e28c8efe
Server
cloudflare
Strict-Transport-Security
max-age=31708800; includeSubDomains
Transfer-Encoding
chunked
X-Content-Type-Options
nosniff
X-Frame-Options
SAMEORIGIN
X-XSS-Protection
1
alt-svc
h3=":443"; ma=86400
cf-cache-status
DYNAMIC
21 headers detected

Technology Stack Analysis

Sentry

Sentry

Issue trackers

Sentry is an open-source platform for workflow productivity, aggregating errors from across the stack in real time.

Wistia

Wistia

Video players

Wistia is designed exclusively to serve companies using video on their websites for marketing, support, and sales.

Bootstrap

Bootstrap

UI frameworks

Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.

jQuery

jQuery

JavaScript libraries

jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.

HSTS

HSTS

Security

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

Google Tag Manager

Google Tag Manager

Tag managers

Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.

Cloudflare

Cloudflare

CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

HTTP/3

HTTP/3

Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

Website Cookies 6

__cmpcccx59463

.xipere.com

Secure None
Value
aCQiQ7v_AAAAAAA
Expires:4/20/2026

ARRAffinitySameSite

.www.xipere.com

HttpOnly Secure None
Value
e12f8e885f16a776bb3cfbff4064c27424a6af3291426b22333f3255c25f2e4b
Expires:Session

ARRAffinity

.www.xipere.com

HttpOnly Secure
Value
e12f8e885f16a776bb3cfbff4064c27424a6af3291426b22333f3255c25f2e4b
Expires:Session

.AspNetCore.Session

www.xipere.com

HttpOnly Secure Lax
Value
[.AspNetCore.Session redacted]
Expires:Session

EPiNumberOfVisits

www.xipere.com

HttpOnly Secure
Value
1%2C2026-04-06T11%3A02%3A34
Expires:4/6/2027

EPiStateMarker

www.xipere.com

Secure
Value
[EPiStateMarker redacted]
Expires:Session

External Links 11

Bausch + Lomb Home

www.bausch.com

Analyze
Target URL
https://www.bausch.com/

www.fda.gov/medwatch

www.fda.gov

Analyze
Target URL
https://www.fda.gov/medwatch

here

pi.bausch.com

Analyze
Target URL
https://pi.bausch.com/globalassets/pdf/packageinserts/vision-care/xipere_prescribing_information.pdf

Untitled Link

submit-irm.trustarc.com

Analyze
Target URL
https://submit-irm.trustarc.com/services/validation/57c4f658-fcc9-4285-a079-28407529c706

Unsubscribe

cloud.marketing.bausch.com

Analyze
Target URL
https://cloud.marketing.bausch.com/Privacy-Page-Unsubscribe

Do Not Sell or Share My Personal Information

cloud.marketing.bausch.com

Analyze
Target URL
https://cloud.marketing.bausch.com/do-not-sell-or-share

Do Not Target

cloud.marketing.bausch.com

Analyze
Target URL
https://cloud.marketing.bausch.com/do-not-target

Limit the Use of My Sensitive Personal Information

cloud.marketing.bausch.com

Analyze
Target URL
https://cloud.marketing.bausch.com/Limit-Sensitive-Personal-Information-Usage

Contact Us

www.bausch.com

Analyze
Target URL
https://www.bausch.com/about-bausch-lomb/contact-us/

Privacy Policy

www.bausch.com

Analyze
Target URL
https://www.bausch.com/privacy/

Legal Notice

www.bausch.com

Analyze
Target URL
https://www.bausch.com/terms/

Requested Domains 8

cdn.consentmanager.net

Unknown Type
No category information available

d.delivery.consentmanager.net

Unknown Type
No category information available

dc.services.visualstudio.com

Unknown Type
No category information available

fast.wistia.com

Unknown Type
No category information available

fonts.googleapis.com

Unknown Type
No category information available

fonts.gstatic.com

Unknown Type
No category information available

pipedream.wistia.com

Unknown Type
No category information available

www.xipere.com

Unknown Type
No category information available
LinkCheck

© 2026 LinkCheck. Secure domain analysis you can trust.