epojisteni.cz
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- CMS
- Nuxt
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (5)
- img2.storyblok.com×50
- a.storyblok.com×1
- consent.cookiebot.com×1
- dev.visualwebsiteoptimizer.com×1
- kit.fontawesome.com×1
Contact
- Phone
DNS records live
- NS
-
- ns-1466.awsdns-55.org
- ns-1776.awsdns-30.co.uk
- ns-407.awsdns-50.com
- ns-966.awsdns-56.net
- MX
-
Show 7 MX records
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 20 alt2.aspmx.l.google.com
- 30 aspmx2.googlemail.com
- 30 aspmx3.googlemail.com
- 30 aspmx4.googlemail.com
- 30 aspmx5.googlemail.com
- TXT
-
have-i-been-pwned-verification=19b95962654e493d639075bc9ad7ce78
- Verified for
-
- Microsoft 365
- Yandex
Email authentication strong
- SPF
-
v=spf1 a/24 a:epojisteni.cz/24 include:_spf.google.com include:spf.mailforce.cz include:spf.mail-komplet.cz include:spf.boldem.cz ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=reject;sp=reject;rua=mailto:pgef7pjm@ag.eu.dmarcadvisor.com;ruf=mailto:pgef7pjm@fr.eu.dmarcadvisor.com;policy: reject (enforced) · sp=reject - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwefo3xWeSLVudd6Dw0KHWLtg6mipS0iih45a51DlrCUb/nEVmsAAHeKsfABySJG+2bTyonZcn9NUXq…
selectors probed - google:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 202 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-embedder-policy
- cross-origin-resource-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing frame protection
Header values
- referrer-policy
no-referrer- permissions-policy
camera=(), display-capture=(), fullscreen=(), geolocation=(), microphone=()- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; font-src 'self' https: data:; form-action 'self'; img-src 'self' data: blob: https:; object-src 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'nonce-TAfUGrhLXqJUP3ve/V5Y7Q==' 'strict-dynamic' 'unsafe-eval' 'unsafe-inline' https:; upgrade-insecure-requests;- cross-origin-opener-policy
same-origin- cross-origin-embedder-policy
unsafe-none- cross-origin-resource-policy
same-origin