diezminutos.es

.es crawl

First seen 2026-04-21 · Last seen 2026-05-14 · ok HTTP/1.1 200 2001 ms crawled 2026-05-14

US · 151.101.64.200 · AS54113 Fastly, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Revista del corazón, prensa rosa y famosos - Últimas noticias del corazón
Description
Actualidad del mundo del corazón con todas las noticias sobre monarquía, casas reales y crónica social
Language
es-ES
Canonical
https://www.diezminutos.es/
Feeds

Open Graph

title
Revista del corazón, prensa rosa y famosos - Últimas noticias del corazón
site name
Diez Minutos
description
Actualidad del mundo del corazón con todas las noticias sobre monarquía, casas reales y crónica social

Technology

CMS
Next.js
Cookie consent
  • OneTrust

Third-party hosts loaded (2)

  • hips.hearstapps.com×86
  • cdn.cookielaw.org×1

Social

DNS records live

NS
  • ns-1499.awsdns-59.org
  • ns-1725.awsdns-23.co.uk
  • ns-298.awsdns-37.com
  • ns-515.awsdns-00.net
MX
  • 1 mx.diezminutos.es
TXT
  • BSI91896679786
Verified for
  • GlobalSign
  • Google
  • Meta
  • Pinterest

Email authentication weak

SPF
not published
DMARC
v=DMARC1; p=none;
policy: none (monitoring only)
DKIM
no key found at common selectors

Certificate (current)

GlobalSign Atlas R3 DV TLS CA 2025 Q4
from 2026-01-02 to 2027-02-03
Expires in 259 days

HTTP security headers

Header hygiene 80/100 Checked live page: https://www.diezminutos.es/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing Permissions Policy
Header values
referrer-policy
no-referrer-when-downgrade
x-content-type-options
nosniff
content-security-policy
upgrade-insecure-requests; default-src https: data: 'unsafe-inline' 'unsafe-eval' https:; script-src data: 'unsafe-inline' 'unsafe-eval' https: blob: https://api.pushpushgo.com https://s-eu-1.pushpushgo.com https://s-us-1.pushpushgo.com https://cdn.pushpushgo.com; style-src data: 'unsafe-inline' https:; img-src data: https: blob:; font-src data: https:; connect-src https: wss: blob: https://api.pushpushgo.com; media-src data: https: blob:; object-src https:; child-src https: data: blob:; form-action https:; frame-ancestors 'none'
strict-transport-security
max-age=31557600; includeSubDomains

Links to (13)

Linked from (3)