csres.cz
HTML metadata
Technology
- Server
- nginx
- CMS
- Joomla
- Stack
- Java
Social
DNS records live
- NS
-
- ns1.websupport.cz
- ns2.websupport.cz
- ns3.websupport.eu
- MX
-
- 10 mx10.websupport.cz
- 100 mx20.websupport.cz
- TXT
-
spf2.0/pra a mx include:_sid.m1.websupport.sk ?all
Email authentication weak
- SPF
-
v=spf1 a mx include:_spf.m1.websupport.sk ?allneutral (?all) - DMARC
- not published
- DKIM
-
- mail:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsrVrPgmBIupLFXZXaV9MN6zs+j4gJ+q+7zxrwSLQIl6sJkwUn8MMnc8CmjUIKLVfKlprkA1htrOIi3…
selectors probed - mail:
Certificate (current)
E7
Expires in 41 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
microphone 'none'; geolocation 'none'; camera 'none'- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src https: blob: data: 'unsafe-inline' 'unsafe-eval' *.disqus.com c.disquscdn.com; worker-src https: blob:; child-src https: blob: www.csres.cz; style-src https: data: 'unsafe-inline' 'unsafe-eval' c.disquscdn.com; img-src https: data: 'unsafe-inline' http://*.tile.osm.org; font-src https: data:; object-src blob: 'self'; base-uri 'none'; frame-ancestors 'self'; connect-src blob: 'self' *.openstreetmap.org *.disqus.com *.pixabay.com pixabay.com l.sharethis.com *.google-analytics.com *.sharethis.com maps.googleapis.com; frame-src 'self' www.csres.cz *.youtube.com *.vimeo.com docs.google.com disqus.com *.disqus.com api.mapy.cz www.google.com web.facebook.com www.facebook.com *.twitter.com kpzresults.sportsoft.cz; media-src https:; manifest-src 'self'- strict-transport-security
max-age=31536000; includeSubDomains
Links to (6)
- youtube.com×1
- predistribuce.cz×1
- linkedin.com×1
- egd.cz×1
- cezdistribuce.cz×1
- ceps.cz×1