anobii.com
HTML metadata
Technology
- Server
- anobii-front-end
- Ads
-
- Google AdSense
Third-party hosts loaded (1)
- pagead2.googlesyndication.com×1
Registration
- Registrar
- Gandi SAS
- Created
- 2005-08-26
- Expires
- 2026-08-26 98 days left
- Updated
- 2025-07-25
- Name servers
-
- ns1.digitalocean.com
- ns2.digitalocean.com
- ns3.digitalocean.com
DNS records live
- NS
-
- ns1.digitalocean.com
- ns2.digitalocean.com
- ns3.digitalocean.com
- MX
-
- 10 spool.mail.gandi.net
- 50 fb.mail.gandi.net
- TXT
-
BZjwwxWCzgSDt/EZ2zjo6+7tfbxRL++wlVFlwBBGjYE=facebook-domain-verification=sdfe4nei401c60c7b4duw2gk9xzqkhgoogle-site-verification=gbCbalF1w4Lwmr4WEAeX8TXGHyx4ky8Z8la9jMudhdI
Email authentication strong
- SPF
-
v=spf1 a mx ip4:74.86.129.186 include:t.contactlab.it include:aspmx.googlemail.com include:mailer.postageapp.com include:_mailcust.gandi.net include:_spf.gpaas.net include:amazonses.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
- s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqNuO6+JmZ2xw0hnzyYlvSu6xX7nJpWDY82a5v3U9e6HZRkUjl+mU/abESgO6MMsEOs29B2/X/PkWYyXZ0H… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDDuiNtcujtG6+2x14oq+DZK7B2BDcXbRkF/JotveZdA9/AyPM2mYZtsdkYrp5+TBKIb/PFvZhmZZ2rM8n0rWaOWq…
selectors probed - s1:
Certificate (current)
E7
Expires in 63 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' *.anobii.com;script-src 'self' localhost:8000 *.anobii.com 'unsafe-inline' 'unsafe-eval' *.google.com *.google.it *.google.de *.google.fr *.google.co.uk *.googletagmanager.com *.googleadservices.com *.googlesyndication.com *.googleapis.com *.facebook.com connect.facebook.net *.cdn-apple.com *.apple-mapkit.com *.spotify.com *.vimeo.com *.youtube.com *.spotifycdn.com *.gstatic.com *.stripe.com securepubads.g.doubleclick.net cdn.exmarketplace.com *.id5-sync.com *.crwdcntrl.net *.creativecdn.com *.jsdelivr.net *.openxcdn.net *.33across.com *.criteo.net *.uidapi.com *.yahoo.com *.ad-score.com *.criteo.com *.ampproject.org *.googletagservices.com *.adtrafficquality.google blob:;script-src-attr 'unsafe-inline';connect-src *;frame-src 'self' *.anobii.com *.googleadservices.com *.googletagmanager.com *.googletagservices.com *.googlesyndication.com *.googleapis.com *.ggpht.com *.google.com *.google.co.uk *.doubleclick.net *.facebook.com *.vimeo.com youtube.com *.youtube.com *.- strict-transport-security
max-age=15552000; includeSubDomains, max-age=31536000; includeSubDomains- cross-origin-resource-policy
same-origin