colombiahosting.com.co
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Nuxt
Third-party hosts loaded (4)
- dev.visualwebsiteoptimizer.com×1
- embed.upmind.app×1
- status.hosting.com×1
- widget.trustpilot.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- meg.ns.cloudflare.com
- sterling.ns.cloudflare.com
- MX
-
- 1 mail.colombiahosting.com.co
- TXT
-
Show 7 TXT records
MS=3286C41A4FD002368AD0B07067749B4A61F65719_globalsign-domain-verification=yRNHf_VzSXI5nCtND-F4zJQCV9cnLh5WE6h83-nyO0facebook-domain-verification=v46qjdy7516y8as0cst1att79mwj2hgoogle-site-verification=1jv3Wk-LHwuNf1-ODq81ndfz_TuwHAVdI4KXAuptWx4google-site-verification=waipjXYeaWUrd-3LSm1nH2bSj8Pw8GVH2bO3kbGHPjIhosting-site=colombiahosting6VeUvlpbt4uuJqpt9Cx5xDZ49794kKwUXja4iu35bSo=
Email authentication partial
- SPF
-
v=spf1 ip4:190.8.178.230 ip4:190.8.178.235 ip4:216.40.44.0/24 ip4:216.40.42.17/32 ip4:64.98.42.0/24 ip4:64.98.36.17 ip4:66.128.54.83 include:_spf.colhost.com include:md02.com include:spf.postal.colombiahosting.com.co ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDFqv3TgE+etqZdLCT8eAXMx/cPi90KXBxHwoJzkf3lDeGYgpkRVS5BVykThJyqWQKU6mSjMX8se1tjL3mL7Q… - dkim:
v=DKIM1;k=rsa;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu2gAtnNzEfzNxLKMcfPJuuFoocS/mMTkSMoCz0ClygNC7Ojqc3aXw1GW+NAIGO9M62EX+lfWTt+/4Eks…
selectors probed - default:
Certificate (current)
WE1
Expires in 53 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-embedder-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), display-capture=(), fullscreen=(), geolocation=(), microphone=()- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; font-src 'self' https: data:; form-action 'self' https://www.facebook.com *.visualwebsiteoptimizer.com https://forms.hsforms.com; frame-ancestors 'self' https://cms.colombiahosting.com.co; img-src 'self' https: data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'unsafe-eval' https://stablechat.mysecurecloudhost.com https://www.googleadservices.com https://www.google.com https://www.googletagmanager.com https://tagmanager.google.com https://googleads.g.doubleclick.net; upgrade-insecure-requests; worker-src blob:;- strict-transport-security
max-age=15552000; includeSubDomains- cross-origin-embedder-policy
unsafe-none