flex.es
HTML metadata
Technology
- CMS
- Gatsby
- Analytics
-
- Google Analytics
- Google Tag Manager
- Ads
-
- Meta Pixel
- Cookie consent
-
- Cookiebot
- Fonts
-
- Google Fonts
Third-party hosts loaded (13)
- fonts.gstatic.com×11
- bat.bing.com×2
- connect.facebook.net×2
- ct.pinterest.com×2
- www.google-analytics.com×2
- www.googletagmanager.com×2
- cdn-4.convertexperiments.com×1
- consent.cookiebot.com×1
- eu1-config.doofinder.com×1
- fonts.googleapis.com×1
- platform-api.sharethis.com×1
- snippet.plugins.emarsys.net×1
- www.dwin1.com×1
Social
Contact
- Phone
- Address
- st venta:91649
DNS records live
- NS
-
- ns1-01.azure-dns.com
- ns2-01.azure-dns.net
- ns3-01.azure-dns.org
- ns4-01.azure-dns.info
- MX
-
- 7 d303431.a.ess.de.barracudanetworks.com
- 9 d303431.b.ess.de.barracudanetworks.com
- TXT
-
Show 7 TXT records
_globalsign-domain-verification=4gs35DWvwJGKfY05Q7AfMq3ig4tUnK0qqCYOnC-CXjapple-domain-verification=xrxb3LV1uHwypVdo_globalsign-domain-verification=sRJp2_4GjBt5PZeyCrHSMiWdcNqEBS8U7y891aMRbi_globalsign-domain-verification=cgqCPuTwwnG_srLY2xe08Gyh8j2OygeNO0fywJwNPX_globalsign-domain-verification=TqwZgqVc27hwAi0zWL13b58RYnXCrob3Km94mCMlefapple-domain-verification=6PBoMR6qwl79ftrLglobalsign-domain-verification=IWHxKl6eaE69TTCeMB-2PvH2S-1IX7xE-j68DbWYNk
Email authentication strong
- SPF
-
v=spf1 include:_spf.flex_es._d.easydmarc.pro ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=quarantine;pct=100;rua=mailto:9fc96e733f@rua.ca.easydmarc.com;ruf=mailto:9fc96e733f@ruf.ca.easydmarc.com;ri=86400;fo=1;policy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCjkKcY4XUzebQzmQwArAcQDGhbCJHE+URnsJ54ejq+vL8n1q6OlVqauzXZcSlCffTM6CZ4E662QOlEDNnnDA… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - selector1:
Certificate (current)
R13
Expires in 80 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing Content Security Policy
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=31557600- content-security-policy-report-only
font-src fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com *.fontawesome.com https://play-widget.pepperfinance.es/ https://instantcredit.net/ *.googleapis.com *.stripe.com *.stripecdn.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com *.yotpo.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.mercadopago.com *.mercadolivre.com *.mercadolibre.com *.mercadolibre.com.br https://mercadopago.com.br *.mercadopago.com.br *.mlstatic.com 'self' www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com *.cardinalcommerce.com 3ds-secure.cardcomplete.com www.clicksafe.lloydstsb.com pay.activa-card.com *.wirecard.com acs.sia.eu *.touchtechpayments.com www.securesuite.co.uk rsa3dsau