beds.es
HTML metadata
Technology
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (5)
- espadesa.my.site.com×1
- rum.hlx.page×1
- www.dwin1.com×1
- www.googletagmanager.com×1
- www.pikolin.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns01.ono.com
- dns02.ono.com
- dns03.ono.com
- MX
-
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 20 alt2.aspmx.l.google.com
- 30 aspmx2.googlemail.com
- 30 aspmx3.googlemail.com
- TXT
-
Show 4 TXT records
v=spf1 include:em.beds.es include:_spf.google.com ~allv=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCdxOczE97y/gz63fEHzc3/jLNgqKksLVyJ0LdYYqJnFuvsC1AlCrfWA4cMgoTlIP2+OWGRNRfUJdLJaFA8zpfQWwPP+ZxFgad+VVv3P8DRVC49LDIFA0Q2U9KTXS5ASCEZH1AFGBIFJ7Strend-micro-v1-domain-verification.4a1dbb2b6755a36d0578a285a52f0978=f33b7af1-4ad2-4b72-ab9d-9b6421a957e4
- Verified for
-
- Meta
Certificate (current)
R13
Expires in 25 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing Content Security Policy
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=31536000- content-security-policy-report-only
font-src fonts.gstatic.com use.typekit.net www.paypalobjects.com *.typekit.net *.gstatic.com cash-f.squarecdn.com https://*.gstatic.com *.pikolin.com/es *.pikolin.com/pt *.magentosite.cloud *.beds.es *.googleapis.com https://script.hotjar.com *.landbot.io applepay.cdn-apple.com/ data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com * *.adyen.com *.pikolin.com/es *.pikolin.com/pt *.magentosite.cloud *.beds.es api.paycomet.com *.ogone.com *.v-psp.com https://www.facebook.com *.redsys.es 'self' 'unsafe-inline'; frame-ancestors *.pikolin.com/es *.pikolin.com/pt *.magentosite.cloud *.beds.es *.adobe.com https://bid.g.doubleclick.net https://www.linkbux.com/ 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcommerce.com geo.cardinal