corvuspay.com

.com crawl

First seen 2026-06-01 · Last seen 2026-06-02 · ok HTTP/1.1 200 1270 ms crawled 2026-06-02

HR · 213.147.98.201 · AS35549 A1 Hrvatska d.o.o.

Reputation 100/100

Classifying

HTML metadata

Title
CorvusPay - Sve opcije plaćanja
Description
Plaćaj brzo u web shopovima, aplikacijama i na prodajnim mjestima i integriraj platna rješenja bez muke.
Language
hr
Generator
WordPress 7.0
Canonical
https://www.corvuspay.com/
Feeds

Open Graph

url
https://www.corvuspay.com/
title
CorvusPay - Sve opcije plaćanja
locale
hr_HR
site name
CorvusPay
description
Plaćaj brzo u web shopovima, aplikacijama i na prodajnim mjestima i integriraj platna rješenja bez muke.

Technology

Server
nginx
CMS
WordPress 7.0
jQuery
3.7.1
Analytics
  • Google Tag Manager

Third-party hosts loaded (5)

  • cdn.elementor.com×2
  • cdn-cookieyes.com×1
  • gmpg.org×1
  • www.google.com×1
  • www.googletagmanager.com×1

Social

Contact

Email
Phone

Registration

Registrar
COREhub, S.R.L.
Created
2013-12-06
Expires
2028-12-06 917 days left
Updated
2025-11-06
Name servers
  • dns2.a1.hr
  • ns1.msan.hr

DNS records live

NS
  • dns2.a1.hr
  • ns1.msan.hr
MX
  • 10 smtp01.msangrupa.com
Verified for
  • Cisco
  • Google
  • OpenAI

Email authentication strong

SPF
v=spf1 mx a ip4:213.147.98.219/32 ip4:213.147.98.135/32 ip4:213.147.98.175/32 a:smtp01.msangrupa.com a:smtp.msan.hr -all
strict (-all)
DMARC
v=DMARC1; p=reject; sp=reject; rf=afrf; pct=100; ri=1209600
policy: reject (enforced) · sp=reject
DKIM
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

RapidSSL TLS RSA CA G1
from 2025-10-01 to 2026-11-02
Expires in 152 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://www.corvuspay.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • short HSTS max-age
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
origin
x-frame-options
sameorigin
permissions-policy
fullscreen=(self "https://www.youtube.com" "https://youtu.be"), geolocation=(self), microphone=(), camera=(), payment=()
x-content-type-options
nosniff
content-security-policy
default-src 'self';script-src 'self' https: 'unsafe-inline' 'unsafe-eval' blob:;style-src 'self' https: 'unsafe-inline';img-src 'self' https: data: blob:;font-src 'self' https: data:;connect-src 'self' https: blob:;frame-src 'self' https: blob:;worker-src 'self' blob:;
strict-transport-security
max-age=2592000

Links to (4)

Linked from (3)