animar-dl.pt
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- PHP
- 7.2.34 end of life
- jQuery
- 3.7.1
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- cdn.jsdelivr.net×2
- www.googletagmanager.com×2
- gmpg.org×1
- plus.google.com×1
- www.google.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- nsp1.mydnspt.net
- nsp2.mydnspt.net
- nsp3.mydnspt.net
- nsp4.mydnspt.net
- MX
-
- 0 animardl-pt01e.mail.protection.outlook.com
- TXT
-
MS=735F281BA4032D40BB0709451F41C7FBBA643ADCMS=ms68617704
Email authentication partial
- SPF
-
v=spf1 ip4:94.46.183.168 include:_spf.cleanmx.pt include:_spf.mlsend.com +a +mx +ip4:94.46.15.50 +include:spf.protection.outlook.com +include:_spf.kmitd.com +include:_spf.transip.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@animar-dl.ptpolicy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1QSZp+IFMjiXmE1seGFystkEFeMnRbrfa9ytk9tyhDsdFm+ID4bLKVGwlTS1/6Dbc8gDQUlHnTtnz5… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs+oiSbZTPaX7S6cxM3crrRACO00SOmfTsqlMyXpj3S80VquQG0CIsxmotU+WbGkuuCBNQKzjRhcYWj…
selectors probed - default:
Certificate (current)
R12
Expires in 82 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
sameorigin- permissions-policy
accelerometer=(self), autoplay=(self), camera=(self), cross-origin-isolated=(self), display-capture=(self), encrypted-media=(self)- x-content-type-options
nosniff- content-security-policy
script-src 'self' https://* 'unsafe-inline' 'unsafe-eval'; default-src https://* 'unsafe-inline'; style-src https://* 'unsafe-inline' ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://www.google-analytics.com 'unsafe-inline' data: ; img-src https://* data:- strict-transport-security
max-age=63072000; includeSubDomains