elvac.eu
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- WordPress 7.0
- jQuery
- 3.7.1
- Analytics
-
- Cloudflare Insights
- Google Tag Manager
Third-party hosts loaded (6)
- challenges.cloudflare.com×1
- gmpg.org×1
- px.ads.linkedin.com×1
- static.cloudflareinsights.com×1
- www.google.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- evan.ns.cloudflare.com
- jillian.ns.cloudflare.com
- MX
-
- 10 mail.elvac.eu
- 50 mail2.elvac.eu
- TXT
-
cywetadns-domain-verification=80b3129a32fa502db2b4d676bf84a08e
- Verified for
-
- Cisco
- Google Workspace
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=reject; rua=mailto:dmarc.it@elvac.eu; ruf=mailto:dmarc.it@elvac.eu; rf=afrf; pct=100; ri=86400; aspf=rpolicy: quarantine · sp=reject - DKIM
-
- mail:
v=DKIM1; t=s; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCNYsx13HBOpLO+UMlB1nCdi53h8/Hf89Wj4PbUWRh6ZGOHRbt8cj5OjsOX1Nopr5kl3uyrdF9gvLLjH…
selectors probed - mail:
Certificate (current)
WE1
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing Content Security Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(self), autoplay=(self), camera=(self), cross-origin-isolated=(self), display-capture=(self), encrypted-media=(self), fullscreen=(self), geolocation=(self), gyroscope=(self), keyboard-map=(self), magnetometer=(self), microphone=(self), midi=(self), payment=(self), picture-in-picture=(self), publickey-credentials-get=(self), screen-wake-lock=(self), sync-xhr=(self), usb=(self), web-share=(self), xr-spatial-tracking=(self), picture-in-picture=*- x-content-type-options
nosniff- strict-transport-security
max-age=31536000; includeSubDomains; preload- content-security-policy-report-only
default-src 'none'; script-src 'self'; script-src-elem 'self' 'unsafe-inline' challenges.cloudflare.com:* ct.leady.com:* googleads.g.doubleclick.net:* kit.fontawesome.com:* static.cloudflareinsights.com:* www.elvac.eu:* www.google.com:* www.googletagmanager.com:* www.gstatic.com:* www.youtube.com:*; style-src 'self' 'unsafe-inline'; style-src-elem 'self' 'unsafe-inline' fonts.googleapis.com:* www.elvac.eu:* www.gstatic.com:*; style-src-attr 'self' 'unsafe-inline'; img-src 'self' data: https:; font-src 'self' data: fonts.gstatic.com:* ka-p.fontawesome.com:* kit.fontawesome.com:* www.elvac.eu:*; connect-src 'self' analytics.google.com:* blog.elvac.eu:* eshop.elvac.eu:* ka-p.fontawesome.com:* kit.fontawesome.com:* region1.analytics.google.com:* region1.google-analytics.com:* stats.g.doubleclick.net:* t.leady.com:* www.elvac.eu:* www.google-analytics.com:* www.google.com.vn:* www.google.com:* www.google.cz:* www.google.ro:* www.google.sk:* www.googleadservices.com:* www.googletagmanager.co
Links to (15)
- youtube.com×1
- techis.eu×1
- smelvee.com×1
- rtu.cz×1
- linkedin.com×1
- ironscale.eu×1
- infopanels.eu×1
- facebook.com×1
- elvacsvetelnareklama.cz×1
- eilm.cz×1
- diktator.eu×1
- cookiedatabase.org×1
- bomes.io×1
- atesystem.cz×1
- apsolut.cz×1
Linked from (1)
- hcf-m.cz×1