dajbych4x4.cz

.cz crawl

First seen 2026-05-31 · Last seen 2026-06-02 · ok HTTP/1.1 200 939 ms crawled 2026-06-01

CZ · 185.175.85.22 · AS44984 Fortion Networks, s.r.o.

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
DAJBYCH 4x4 | Off-road centrum
Description
Terénní auta milujeme. Jsme off-road centrum Dajbych 4x4 – prodejce a servis vozů Toyota, Isuzu, INEOS Grenadier. Upravujeme 4x4 auta všech značek a jsme zástupce off-road příslušenství ARB.
Language
cs
Generator
Vytvořeno na ANT CMS, verze v28.4.0

Technology

Server
nginx
Stack
PHP
Analytics
  • Google Tag Manager

Third-party hosts loaded (2)

  • www.googletagmanager.com×1
  • www.youtube.com×1

Social

Registration

Registrar
REG-WEDOS
Created
2018-11-02
Expires
2028-11-01 882 days left
Updated
2022-11-27
Name servers
  • ns.wedos.com
  • ns.wedos.cz
  • ns.wedos.eu
  • ns.wedos.net

DNS records live

NS
  • ns.wedos.com
  • ns.wedos.cz
  • ns.wedos.eu
  • ns.wedos.net
MX
  • 10 mail.dajbych.cz

Email authentication strong

SPF
v=spf1 mx include:sparkpostmail.com include:mailteas.cz include:_spf.fortion.net -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; adkim=r; aspf=s
policy: quarantine
DKIM
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

R12
from 2026-05-19 to 2026-08-17
Expires in 75 days

HTTP security headers

Header hygiene 40/100 Checked live page: https://www.dajbych4x4.cz/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
report-uri api/v1/csp_report; img-src * data:; font-src * data:; connect-src *; form-action *; frame-ancestors 'self' http://*.antstudio.cz http://*.antstudio.eu https://*.antstudio.cz https://*.antstudio.eu; default-src 'self'; object-src *; media-src *; child-src *; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * blob: 'unsafe-inline';

Links to (6)

Linked from (1)