finio.cz
HTML metadata
Technology
- Server
- nginx
- Stack
- PHP
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Contact
- Phone
DNS records live
- NS
-
- ns1.websupport.cz
- ns2.websupport.cz
- ns3.websupport.eu
- MX
-
- 0 finio-cz.mail.protection.outlook.com
- Verified for
-
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 include:spf.protection.outlook.com include:mail.finio.cz include:_spf.m1.websupport.sk -allstrict (-all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv/xVZMHYaec4vES2VhGUmGw2zr9hHGPGIwCWrp2JC1LSrKXrLtN7E9dfXI2VVytksJEj9GX8wj9QFd…
selectors probed - selector1:
Certificate (current)
R12
Expires in 72 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
report-uri api/v1/csp_report; img-src * data:; font-src * data:; connect-src *; form-action *; frame-ancestors 'self' http://*.antstudio.cz http://*.antstudio.eu https://*.antstudio.cz https://*.antstudio.eu; default-src 'self'; object-src *; media-src *; child-src *; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * blob: 'unsafe-inline';, upgrade-insecure-requests;
Links to (1)
Linked from (1)
- aiacz.cz×1