a4info.pl
HTML metadata
DNS records live
- NS
-
- cecelia.ns.cloudflare.com
- everton.ns.cloudflare.com
- MX
-
- 10 autostradaa4.nazwa.pl
Email authentication weak
- SPF
-
v=spf1 include:sendgrid.net ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Certum DV TLS G2 R39 CA
Expires in 251 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
sameorigin- content-security-policy
default-src 'none';script-src 'self' *.googletagmanager.com;frame-src 'self';font-src 'self' data:;connect-src 'self' https://api.a4go.pl *.googletagmanager.com *.google-analytics.com *.analytics.google.com data:;img-src 'self' https://api.a4go.pl *.googletagmanager.com *.google-analytics.com data:;style-src 'self' 'unsafe-inline';manifest-src 'self';- strict-transport-security
max-age=2592000