fontarel.es
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (6)
- cdn.jsdelivr.net×4
- assets.adobedtm.com×1
- consent.cookiebot.com×1
- unpkg.com×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
DNS records live
- NS
-
- dns1.nominalia.com
- dns2.nominalia.com
- MX
-
- 10 primary.emea.email.fireeyecloud.com
- 20 alt1.emea.email.fireeyecloud.com
- 30 alt2.emea.email.fireeyecloud.com
- 40 alt3.emea.email.fireeyecloud.com
- TXT
-
Show 4 TXT records
MS=ms46057185DfOV9tjwjS3Pym4diHK+DUlPUXeO6HmvUdwSzoNygqCs0/8rE0I1SlVwTBku6Cu6im6r3eBLQasm5LTrWlbAFQ==value MS=ms99687029google-site-verification=DNTyjA9S8ut8P_fu2tpUVvQqi7oHjlRMyUmQ1CEQ8co
Email authentication partial
- SPF
-
v=spf1 mx ip4:212.51.32.0/24 ip4:212.51.62.0/24 ip4:154.57.155.23 ip4:149.13.95.34 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:nic@estrellagalicia.es; ruf=mailto:nic@estrellagalicia.es; fo=1policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC7UTwyVysczFZ/hW4ZctjScYq/9J+FZYUUdaok9/El6ag0lcCfbuGsAz3tlOOUr5jLyWGwVNTVPvK7xCKW68… - s1:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDHoK0cCKeh4AdKKc/F+dIrz9zds+bmWLZDkkjEc2wiZVghkJ1mveSQR3A9B/oQfjjHc7iK6wTSURxSKkGJkv+9r7… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDJOwBE9VwO+mWF2yu5ourMz10D4M+za0fh5lBl8CmrzrSkDEShL3de83iFf7dkRzznJepp22Dg0H8tzWelK1WcVt…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 171 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self), microphone=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: https://ade.googlesyndication.com/ https://pagead2.googlesyndication.com/ https://cm.teads.tv/v3/conversion https://*.taboola.com https://fledge.teads.tv/ http://estrellagalicia.es/cervecerias-del-camino/dup-installer/ https://npmcdn.com https://egweb.servidor.gal https://*.w.org https://p.typekit.net https://stats.g.doubleclick.net https://fonts.googleapis.com https://*.gstatic.com https://use.fontawesome.com https://*.gigya.com https://*.sap.com https://frontal.estrellagalicia.es https://static.addtoany.com https://www.googletagmanager.com https://cdn.jsdelivr.net https://www.google.com https://cdn.plyr.io https://cdn.onesignal.com *.onesignal.com https://*.youtube.com https://*.youtube.com/embed http://*.youtube.com https://www.youtube-nocookie.com https://i.ytimg.com https://*.cookiebot.com https://onesignal.com https://images.hdriv.es https://www.google.es *.typekit.net *.amazonaws.com *.ondemand.com *.gravatar.com *.doublec- strict-transport-security
max-age=31557600