cni.es

.es crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 2022 ms crawled 2026-05-18

ES · 86.109.99.243 · AS16371 acens Technologies, S.L.

Reputation 75/100 wrong cert

Classifying

HTML metadata

Title
Inicio
Description
Somos el Centro Nacional de Inteligencia,
Language
es-es
Translations
  • ca-es
  • en-gb
  • es-es
  • eu-es
  • fr-fr
  • gl-es

Open Graph

locale
es-ES

Technology

CMS
Joomla
Social widgets
  • Vimeo Embed

Third-party hosts loaded (1)

  • player.vimeo.com×1

Contact

Phone

DNS records live

NS
  • ns1.interdomain.net
  • ns2.interdomain.net
  • ns3.interdomain.es
MX
  • 10 mx.cni.es
TXT
  • aplicacionesap.cni.es 536708286
  • [cni.es - 217730511]
  • _7g317cbczw1cwih3lx7904dfbwh9phy

Email authentication strong

SPF
v=spf1 a ip4:217.124.174.13/32 ip4:62.42.233.151/32 ip4:212.170.35.96/27 mx:cni.es -all
strict (-all)
DMARC
v=DMARC1; p=reject; rua=mailto:reports_dmarc@cni.es; ruf=mailto:reports_dmarc@cni.es; adkim=s; aspf=s;
policy: reject (enforced)
DKIM
  • s1: v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCWcimgRZDb0sebuyEOa8ZfYofOofsi/VNkVTy69kJ/yQ/fFOqMVsX4h5vsib8187tZQVYVhIEkhzCsH+lygZg9/Srl9…
selectors probed

Certificate (current) wrong cert

RapidSSL TLS RSA CA G1
from 2026-01-12 to 2027-02-10
Expires in 267 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.cni.es

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • weak frame protection
  • weak content type protection
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN, SAMEORIGIN
permissions-policy
geolocation=(), microphone=(), camera=(), fullscreen=(self), payment=(), midi=(), magnetometer=(),gyroscope=()
x-content-type-options
nosniff, nosniff
content-security-policy
default-src https: data:; style-src 'self' 'unsafe-inline' https:; object-src 'none'; script-src * 'unsafe-inline' 'unsafe-eval' https:; img-src 'self' https: data:; frame-src *; frame-ancestors 'self'; base-uri 'self'; form-action *
strict-transport-security
max-age=15552000

Links to (2)

Linked from (37)