7.cz
HTML metadata
Technology
- Server
- openresty
DNS records live
- NS
-
- ns1.websupport.cz
- ns2.websupport.cz
- ns3.websupport.eu
- MX
-
- 10 fm.mus.cz
- TXT
-
5MdsEnTYdwUfqG0uBGbpULCh0uY9S9XtK41KTCh2P2JfNe3d1kxocZHFCJdeNTiOrmhG1HVtfft9C1I2VelJ6A==
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 a:fm.mus.cz ip4:90.182.90.102 ip4:90.182.90.103 ip4:195.39.19.14 ip4:90.182.90.104 -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@7group.cz; ruf=mailto:dmarc.fail@7group.cz; fo=1policy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 61 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
no-referrer- permissions-policy
geolocation=(self), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' maxcdn.bootstrapcdn.com *.google-analytics.com *.googletagmanager.com cdn.jsdelivr.net *.google.com *.facebook.net *.facebook.com fonts.googleapis.com maps.googleapis.com maps.gstatic.com fonts.gstatic.com https://7energy.proebiz.com https://*.google-analytics.com data: w3.org/svg/2000; script-src 'self' 'unsafe-inline' 'unsafe-eval'; script-src-elem 'self' 'unsafe-inline' 'unsafe-eval' https://*.jsdelivr.net https://*.adform.net https://*.google-analytics.com https://connect.facebook.net https://maps.googleapis.com *.google-analytics.com *.googletagmanager.com cdn.jsdelivr.net https://*.buzzsprout.com; style-src 'self' 'unsafe-inline' https://maxcdn.bootstrapcdn.com https://fonts.googleapis.com https://maps.googleapis.com *.google-analytics.com *.googletagmanager.com cdn.jsdelivr.net *.google.com *.facebook.net; frame-src 'self' https://www.google.com/ https://*.youtube.com *.google.com *.facebook.net *.googletagmanager.com https://360.ponterecords.cz/ https://mapy- strict-transport-security
max-age=31536000; includeSubDomains