dumnatura.cz
HTML metadata
Technology
- Server
- Apache
- Stack
- PHP
- Fonts
-
- Google Fonts
Third-party hosts loaded (2)
- fonts.googleapis.com×1
- hcaptcha.com×1
Social
DNS records live
- NS
-
- ns.gransy.com
- ns2.gransy.com
- ns3.gransy.com
- ns4.gransy.com
- ns5.gransy.com
- MX
-
- 10 elisha.reklalink.cz
Email authentication weak
- SPF
-
v=spf1 a include:_spf.reklalink.cz ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- default:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDaoRdb6I7cpXsFaycJLzhqLiRgo02CFB21bKI+eE0NbrQ7AcI4KiRnoB2sdyjz2zhBHJuPRw0256BQQpjUui…
selectors probed - default:
Certificate (current)
R12
Expires in 80 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
script-src 'self' www.youtube.com www.google.com/maps/ hcaptcha.com *.hcaptcha.com;connect-src 'self' hcaptcha.com *.hcaptcha.com;img-src 'self' data:;style-src 'self' fonts.googleapis.com hcaptcha.com *.hcaptcha.com 'nonce-62f74e3ac071fd8f9bd67aa39c406931';font-src 'self' fonts.gstatic.com;frame-ancestors 'self' hcaptcha.com *.hcaptcha.com;base-uri 'self';form-action 'self';default-src 'none';child-src www.youtube.com www.google.com/maps/ hcaptcha.com *.hcaptcha.com;- strict-transport-security
max-age=31536000