energy.eu
HTML metadata
Technology
- Server
- nginx
- PHP
- 8.2.31 security-only
- jQuery
- 3.6.0
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- code.jquery.com×1
- www.googletagmanager.com×1
DNS records live
- NS
-
- ns1.taskforce.eu
- ns2.taskforce.eu
- MX
-
- 10 mail.energy.eu
- TXT
-
6d7562026d1ce61d1f4dff3de830e85369ee1ed6
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 +a +mx ip4:83.172.160.74 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@energy.eupolicy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDTilqj9Q0qxniUhJtgJSV3knCq5dqETPNPwVC8053glBvYm4FfcyR41lzUboB6SDyiG8HJXhACMOiPViVkXQkWHWnPM…
selectors probed - default:
Certificate (current)
YR2
Expires in 88 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' www.google-analytics.com translate.google.com translate.googleapis.com ajax.googleapis.com code.jquery.com googleads.g.doubleclick.net www.googletagmanager.com www.googleadservices.com www.google.com www.gstatic.com static.cloudflareinsights.com- strict-transport-security
max-age=15768000; includeSubDomains
Links to (3)
Linked from (1)
- preda.pl×1