coviandina.com

.com crawl

First seen 2026-04-21 · Last seen 2026-05-11 · ok HTTP/1.1 200 963 ms crawled 2026-05-14

US · 162.240.99.178 · AS46606 Unified Layer

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
COVIANDINA
Language
en
Canonical
https://coviandina.com/

Technology

Server
Apache
CMS
Drupal
Fonts
  • Google Fonts
Social widgets
  • YouTube Embed

Third-party hosts loaded (5)

  • www.youtube.com×5
  • cdnjs.cloudflare.com×1
  • fonts.googleapis.com×1
  • www.google.com×1
  • www.skynettechnologies.com×1

Social

Contact

Email
Phone
Address
Vía Bogotá – Villavicencio |314 372 2765

Registration

Registrar
GoDaddy.com, LLC
Created
2015-09-16
Expires
2026-09-16 118 days left
Updated
2025-09-11
Name servers
  • ns35.domaincontrol.com
  • ns36.domaincontrol.com

DNS records live

NS
  • ns35.domaincontrol.com
  • ns36.domaincontrol.com
MX
  • 0 coviandina-com.mail.protection.outlook.com
TXT
  • 4f9ebcd2-904e-11ed-ba3f-8e3f126ad9d7
  • 77j2zg7xfnkfxc4mfv603k0mvldjd44b
Verified for
  • Microsoft 365

Email authentication partial

SPF
v=spf1 include:spf.protection.outlook.com include:_spf.goskope.com -all
strict (-all)
DMARC
v=DMARC1; p=none; pct=100
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

R13
from 2026-04-01 to 2026-06-30
Expires in 41 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://coviandina.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • weak frame protection
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN, SAMEORIGIN
permissions-policy
accelerometer=(), autoplay=(self), camera=(), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), payment=(), publickey-credentials-get=(self), usb=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' https://www.youtube.com https://www.youtube-nocookie.com https://i.ytimg.com https://s.ytimg.com forecast7.com fonts.googleapis.com fonts.gstatic.com weatherwidget.io cdnjs.cloudflare.com https://www.googletagmanager.com https://www.google-analytics.com stats.g.doubleclick.net https://*.skynettechnologies.com https://*.skynettechnologies.us https://*.googleapis.com https://*.gstatic.com https://*.vlibras.gov.br; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.youtube.com https://www.youtube-nocookie.com https://s.ytimg.com forecast7.com fonts.googleapis.com weatherwidget.io cdnjs.cloudflare.com https://www.googletagmanager.com https://www.google-analytics.com stats.g.doubleclick.net cdn.ckeditor.com https://maps.googleapis.com https://*.gstatic.com https://*.skynettechnologies.com https://*.skynettechnologies.us https://*.googleapis.com https://*.vlibras.gov.br; style-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.youtube.com forecast7.com fonts.goo
strict-transport-security
max-age=63072000; includeSubDomains
cross-origin-resource-policy
same-origin

Links to (14)

Linked from (1)