abra-meble.pl
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Ghost
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- www.googletagmanager.com×2
- cdn.domain.com×1
- fonts.gstatic.com×1
- wrap.tradedoubler.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- jim.ns.cloudflare.com
- olga.ns.cloudflare.com
- MX
-
- 0 abrameble-pl01b.mail.protection.outlook.com
- TXT
-
Show 5 TXT records
e6149c1e477b3f1c87fc74a9894be9d6982a13705e65cb6b27005b7cb46aa453f8ed9d806308f841eb3f76932c2f473efe53e24a08fe50c20ed37c87be150be8fa270b859694839588119671778f29274f9cf028909b3b0258178f46ace08b01a6188680aef1050c6d9d3e01e9cb3828604118ddf87e3d100f075e70f3e7a660473d7f96e202268c7dab281f10958c797323e1065cd7582ada2d868e29f64
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:91.208.133.0/24 include:clients.spartavity.com include:spf.protection.outlook.com include:spf.emailsignatures365.com include:_spf.edrone.me ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc.rua@edrone.app; ruf=mailto:dmarc.ruf@edrone.apppolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCLcTDN0PjTcPd6lhpgsoMejuBHWPsyAG95K/OVUurm+kcjBiaIBOm+xOWhY/PJONVdCF+udemYamvHzEivzS… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsLqJcAnAlr6TmphJ2VwoQQTxDV+iVtbhXFDWC1ILTFAi2IiMZOTtynFhuL8xkLG5LuHtApN34cM8Ds…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 89 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- permissions-policy
accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), payment=*, usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; connect-src *; font-src * data:; frame-src *; img-src * data:; media-src *; object-src *; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline';- strict-transport-security
max-age=63072000