evaluto.co.jp
HTML metadata
Technology
- Server
- nginx
- jQuery
- 1.11.2 known XSS (<3.5)
DNS records live
- NS
-
- ns1.xserver.jp
- ns2.xserver.jp
- ns3.xserver.jp
- ns4.xserver.jp
- ns5.xserver.jp
- MX
-
- 0 evaluto.co.jp
- Verified for
-
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 a:183.90.240.16 a:evaluto.co.jp include:gmail.com include:spf.protection.outlook.com +mx ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsEjkT2AD2zq4UtYjdiHMn4olg4MtMu7mSIy9q3DGRY2iRBiEABJY4cCZzAq18ptXJtnK7Lv7M6h3lD…
selectors probed - default:
Certificate (current)
R13
Expires in 38 days
HTTP security headers
- findings
-
- missing HSTS
- missing Content Security Policy
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy