aliorleasing.pl
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress 6.7.1
- PHP
- 8.3 security-only
- jQuery
- 3.7.1
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
- Fonts
-
- Font Awesome
- Google Fonts
Third-party hosts loaded (5)
- use.fontawesome.com×3
- fonts.googleapis.com×1
- gmpg.org×1
- static.cloudflareinsights.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- bethany.ns.cloudflare.com
- george.ns.cloudflare.com
- MX
-
- 0 aliorleasing-pl.mail.protection.outlook.com
- TXT
-
Show 18 TXT records
4376a8706f9935e7ba0e185130544431fe5483f511ad9b9e73a28cd483056dad235f0cf2350f70c6c61ad5c7f5c9e9fe78978843e341e064b8cbc7e4bc80aa0c4450173fe5bb150b95aaf14abd7690e3fa83c8a638967196c2a5c00100d179c3c3edfbe9aaeae650774ecadebc450a331c94d36cbb58f9ce5262ceb24bfa76d74e81e0641461f68408edc9f66d1d2e0a2db72a1486a9a48f082f37a94eb2fd085e66f6ca1530b4767eec6add0cc39df79f991ddba97506b3941cbcaa545154f3e8c419d15e80d0038285280ee54482ab8f58a31e91bb33d86ea55b719fd2e7cd6182eea61a9c2af2e7b3b52ae6c51f7d1ecaf4e2f3e73d993df8f0e4faacb6d4809656ce35a2674d3e567bdeeb045cacbdfbe9385d84a88d1a67a92a74e68cf199980c8fc1fae5b6e1ed5a63d27ec99ae7db86456721c32fe28a7ff673d5321eaeaca012d03a9883ba6a73164131c2e8106579130fd0a3e374240a42c227f40d2229f414d8b414c27af6074b138c7f0be37918febc4dbab902de67ff4fce06fe4490b84fc1989a432e844f05c8ec883146f705b4f4e4854e00d2 9ff4fce06fe4490b84fc1989a432e844f05c8ec883146f705b4f4e4854e00d29fdd41ba8612373d4610332666a458fbedf899c6c89c18d6c5e5494a471f9dbc89342ea1919e8dbbac13c91d765ac85eb269a3ec960d58bb0071fa9215bb77765a052fb7efdfbad20b677020faae1ed03e599b3b4adb4e13bec5481777bf661fdcd0e586521503eff9eaf92f33f7297d4c83ee82e6c69e9fb6a6a5481df71e83
- Verified for
-
- Apple
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx ip4:217.17.41.226/32 ip4:217.17.41.236 include:spf.protection.outlook.com include:_spf.salesforce.com include:_spf.freshmail.pl a:hybrid.aliorleasing.pl include:sendgrid.net include:_spf.emaillabs.net.pl -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;rua=mailto:3de07a7dc8@rua.easydmarc.eu;ruf=mailto:3de07a7dc8@ruf.easydmarc.eu;fo=1;policy: quarantine - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsJUyKTMCEl/JMwsOVWjilUfs//MGAcMNU5wNQ/YcUYt4f2EHIwPQmMjDZ8l/zg1M5wioDFRCqOzddW… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4/kL54aglCYmOrqAwO1iG7+EliyrIzmk0KZ1wHZb3MTwohp/V1YWgEa6uqVuDfpccD6gcNN2RrxUKf… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvLiGG5S1WFkN4IgtzEu/wS4oCV4YhIZiv1KOmhF+bCSmo2s9aSkt8PeTmBdAD+e8rNuTY7mj6bdepLe+If… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuRO54ky6bFe/c67PaygSpJCO8WMS7vyTXgBatLUQ31ypMH04JtKqmpibJkMveaIdnOb5zJt8PK4DBQGhBT…
selectors probed - selector1:
Certificate (current)
E7
Expires in 63 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' www.google.com maps.googleapis.com www.google-analytics.com stats.g.doubleclick.net www.google-analytics.com region1.analytics.google.com aliorleasing.traffit.com; img-src 'self' www.google.com www.google.pl maps.googleapis.com maps.gstatic.com secure.gravatar.com s.w.org *.tile.openstreetmap.org www.google-analytics.com region1.analytics.google.com cdn3.traffit.com data:; script-src 'unsafe-inline' 'unsafe-eval' al-test.pl aliorleasing.pl www.google-analytics.com skk.erecruiter.pl aliorleasing.traffit.com maps.googleapis.com www.google.com cdnjs.cloudflare.com use.fontawesome.com www.googletagmanager.com *.gstatic.com gstatic.com use.fontawesome.com unpkg.com static.cloudflareinsights.com; style-src 'unsafe-inline' al-test.pl aliorleasing.pl skk.erecruiter.pl fonts.googleapis.com cdnjs.cloudflare.com use.fontawesome.com unpkg.com; font-src 'self' use.fontawesome.com fonts.gstatic.com data:; frame-src 'self' www.linkedin.com; worker-src 'self' blob:;- strict-transport-security
max-age=31536000; includeSubDomains