bimfo.cz

.cz crawl

First seen 2026-05-21 · Last seen 2026-05-31 · ok HTTP/1.1 200 2934 ms crawled 2026-05-27

CZ · 92.62.124.119 · AS47110 Cloud4com s.r.o.

Reputation 67/100 wrong cert no dmarc policy

Classifying

HTML metadata

Title
BIMfo - BIM - informační model budovy
Description
Portál s informacemi a novinkami pro zájemce o BIM technologie v procesu projektování a provozování staveb
Feeds

Technology

jQuery
3.4.1 known XSS (<3.5)
Stack
ASP.NET
Fonts
  • Google Fonts

Third-party hosts loaded (1)

  • fonts.googleapis.com×1

Social

Contact

Phone

Registration

Registrar
REG-WEBGLOBE
Created
2015-08-10
Expires
2026-08-09 69 days left
Updated
2022-12-26
Name servers
  • ns1.ignum.com
  • ns2.ignum.cz

DNS records live

NS
  • ns1.ignum.com
  • ns2.ignum.cz
MX
  • 10 email.webglobe.cz
  • 10 email2.webglobe.cz
  • 10 email3.webglobe.cz
  • 10 email4.webglobe.cz
TXT
Show 7 TXT records
  • &quot;14vttf8dk8xx0n3kpy7rb2m3hcp6ppk5&quot;
  • 14vttf8dk8xx0n3kpy7rb2m3hcp6ppk5
  • _9i2rqu6d17qtwbtumt674eoo08h4a9h
  • _kyalmndvu64yh0ak1mtxw6mhtrqig83
  • dcbxc1wd5nb5kt3hvq35w5yn0zslw216
  • hz3vn1mnt5k93rt9fs6xq2trr751mxbx
  • kwky5lgpk2r7wcf0v3dg3dzm8d0m3kvy
Verified for
  • Google

Email authentication weak

SPF
v=spf1 mx ip4:92.62.124.119 ip4:172.31.2.67 ip4:31.31.76.110 -all
strict (-all)
DMARC
not published
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuryQ2hAVkIEmZ60LZIkmevyGMLf5Ei+Pjis2CLq+0/p5zKo16nq+dzILIxjHXfDYNb+MQ9AogsH4cc…
selectors probed

Certificate (current) wrong cert

Thawte TLS RSA CA G1
from 2025-09-09 to 2026-09-16
Expires in 107 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.bimfo.cz/Home.aspx

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing Permissions Policy
Header values
referrer-policy
same-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src https:; script-src 'unsafe-inline' 'unsafe-eval' https:; style-src 'unsafe-inline' https:; img-src data: https:
strict-transport-security
max-age=63072000; includeSubDomains

Links to (4)

Linked from (6)