abanana.pl
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Stack
- PHP
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- app.easy.tools×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- emerie.ns.cloudflare.com
- norm.ns.cloudflare.com
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- Verified for
-
- Meta
Email authentication weak
- SPF
-
v=spf1 a mx a:s1.hosts.eura7.com a:s2.hosts.eura7.com a:s3.hosts.eura7.com include:_spf.google.com ptr ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCfCeBTBJFTFQCHS5cyd2gGMhmDOfBkzpXkMPDy8uzcrUUefI6aVBzZq6rCeAA72pvJ7obqbHVGtoX+3jfK39…
selectors probed - google:
Certificate (current)
WE1
Expires in 81 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP uses wildcard sources
- weak frame protection
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN, ALLOW-FROM https://www.youtube.com/, ALLOW-FROM http://www.youtube.com/, ALLOW-FROM https://googleads.g.doubleclick.net/- permissions-policy
accelerometer=(),autoplay=*,camera=(),encrypted-media=(),fullscreen=*,geolocation=*,gyroscope=(),magnetometer=(),microphone=(),midi=(),payment=(),sync-xhr=*,usb=(),xr-spatial-tracking=(),browsing-topics=(),attribution-reporting=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' data: www.eura7.com e24files.com c.tile.openstreetmap.org b.tile.openstreetmap.org a.tile.openstreetmap.org maps.gstatic.com maps.googleapis.com www.gstatic.com fonts.googleapis.com fonts.gstatic.com i.ytimg.com www.youtube.com www.youtube-nocookie.com https://*.googletagmanager.com https://*.google-analytics.com https://*.g.doubleclick.net https://*.google.com https://*.google.pl https://pagead2.googlesyndication.com https://pixel.onaudience.com https://c1.adform.net https://spl.zeotap.com https://td.doubleclick.net https://match.adsrvr.org https://*.ads.linkedin.com https://analytics.tiktok.com https://www.tiktok.com https://sf16-website-login.neutral.ttwstatic.com https://www.facebook.com https://*.getresponse.com https://www.linkedin.com https://stags.bluekai.com https://challenges.cloudflare.com https://app.easy.tools https://jsonip.com https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com https://*.crwdcntrl.net https://widget.spreaker.com/; style-src 'se- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (8)
- tiktok.com×1
- linkedin.com×1
- labber.pl×1
- instagram.com×1
- grupaeura7.com×1
- google.com×1
- facebook.com×1
- eura7.com×1