generated: '2026-08-11' method: probed source: live DNS/TLS/HTTP probes of apis.yml + OpenAPI hosts hosts: - host: www.cubbystorage.com https: true tls_version: TLSv1.3 cert_expires: Oct 5 20:21:26 2026 GMT hsts: true hsts_max_age: 31536000 - host: api.cubbystorage.com https: true tls_version: TLSv1.3 cert_expires: Nov 2 10:05:52 2026 GMT hsts: true hsts_max_age: 31536000 hsts_include_subdomains: true hsts_note: >- Recorded as null by the automated probe because the API host root returns a JSON 404; a direct HEAD confirms 'strict-transport-security: max-age=31536000 ; includeSubDomains' is served on every response from this host, including the 404 and the /mcp 401. Corrected by hand from the observed header on 2026-08-11. other_headers_observed: - x-content-type-options: nosniff - x-frame-options: DENY - x-xss-protection: '0' - 'cache-control: no-cache, no-store, max-age=0, must-revalidate' domains: - domain: cubbystorage.com dnssec: false caa: [] spf: true dmarc: true dmarc_policy: reject