alertcenter-ikarian.eu
HTML metadata
DNS records live
- NS
-
- dns112.ovh.net
- ns112.ovh.net
- TXT
-
1|ikarian.signalement.net
Email authentication no MX
- SPF
-
v=spf1 -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 16 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak content type protection
Header values
- referrer-policy
strict-origin- x-frame-options
DENY- permissions-policy
geolocation=(),midi=(),sync-xhr=(),microphone=(),camera=(),magnetometer=(),gyroscope=(),fullscreen=(self),payment=()- x-content-type-options
nosniff, nosniff- content-security-policy
default-src *.signalement.net *.equalweb.com *.tolk.ai data: api.friendlycaptcha.com 'unsafe-eval' 'unsafe-inline' blob: 'self' *.googleapis.com recaptcha.net *.gstatic.com; style-src 'self' 'unsafe-inline' *.equalweb.com *.googleapis.com ; script-src * data: *.equalweb.com 'unsafe-eval' 'unsafe-inline' blob: 'unsafe-inline' 'self' *.gstatic.com recaptcha.net googleapis.com amcharts.com code.jquery.com ajax.googleapis.com ghbtns.com cdnjs.cloudflare.com cdn.rawgit.com;- strict-transport-security
max-age=63072000; includeSubdomains, max-age=63072000; includeSubdomains- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
require-corp- cross-origin-resource-policy
same-origin
alertcenter-ikarian.eu