fakturace-zdarma.cz
HTML metadata
Technology
- jQuery
- 1.10.2 known XSS (<3.5)
- Stack
- ASP.NET
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Contact
- Phone
Registration
- Registrar
- REG-ZONER
- Created
- 2011-11-15
- Expires
- 2026-11-14 166 days left
- Updated
- 2011-11-15
- Name servers
-
- ns1.regzone.cz
- ns1.regzone.de
- ns1.regzone.info
DNS records live
- NS
-
- ns1.regzone.cz
- ns1.regzone.de
- ns1.regzone.info
- MX
-
- 1 relay.zoner.com
- 10 10mx.zoner.com
- 15 15mx.zoner.com
- TXT
-
Show 4 TXT records
_4fis6tn44o1hhxqndjoy1zpui0krcio_xpqkfbmzkn0nfi7vbtfsrzslgn1lf0g1fnjkgtcv376fw4spr7sz1qbvq2tx8j62f7dz2wv0tdyfjvpx82xxmj1f498k5l2
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
GeoTrust EV RSA CA G2
Expires in 152 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' https://fonts.gstatic.com/ https://ekr.zdassets.com/ wss://widget-mediator.zopim.com/ https://v2.zopim.com/ data:; object-src 'self' https://www.youtube.com/; img-src 'self' https://fonts.gstatic.com/ https://www.stormware.cz/ http://www.mojepohoda.cz/ https://ssl.google-analytics.com/ https://www.adobe.com/ https://maps.gstatic.com/ https://maps.googleapis.com/ https://v2.zopim.com https://www.google.com https://www.google-analytics.com https://www.google.cz https://i.ytimg.com https://stormware.bot.artin.cz https://c.seznam.cz https://stats.g.doubleclick.net https://www.facebook.com https://*.clarity.ms https://*.bing.com https://www.googletagmanager.com data:; child-src https://www.youtube.com https://www.instagram.com https://www.youtube-nocookie.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com/ https://www.googletagmanager.com/; media-src 'self' https://stormware.bot.artin.cz/; script-src 'self' 'unsafe-inline' 'unsafe-eval' htt- strict-transport-security
max-age=31536000; includeSubDomains; preload