fundacaobial.com
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- images.ctfassets.net×4
- bialfoundation.com×1
- fonts.googleapis.com×1
- fonts.gstatic.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Network Solutions, LLC
- Created
- 2000-05-24
- Expires
- 2027-05-24 368 days left
- Updated
- 2026-03-27
- Name servers
-
- ns1.ptempresas.pt
- ns10.ptempresas.pt
- ns2.ptempresas.pt
DNS records live
- NS
-
- ns1.ptempresas.pt
- ns10.ptempresas.pt
- ns2.ptempresas.pt
- MX
-
- 10 mxf.eu.mpssec.net
- 10 mxg.eu.mpssec.net
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsdKWZP9lsegkhclVzTT5j289khUJO2yHt/upr49Tuyw/tyUifRlUnqly6bqmUfLyBFz+PlV0cL1eem… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvoIAXzsuCJqoCWeY02O6fKbKyu8k3aN5vWuvORTAwEbfzOD4sMPmdVCbeI+P8E5Ity4qpr04oCWtwd…
selectors probed - selector1:
Certificate (current)
R12
Expires in 48 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer,strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
upgrade-insecure-requests;frame-ancestors 'self' https://app.contentful.com;frame-src 'self' https://www.google.com https://www.googletagmanager.com https://*.usabilla.com https://bial-static-components.vercel.app https://d6tizftlrpuof.cloudfront.net https://player.vimeo.com https://td.doubleclick.net https://w.soundcloud.com https://www.youtube.com;style-src 'self' https://*.usabilla.com https://d6tizftlrpuof.cloudfront.net https://fonts.googleapis.com 'unsafe-inline';style-src-attr 'self' fonts.googleapis.com https://privacyportalde-cdn.onetrust.com 'unsafe-inline';script-src 'self' https://www.gstatic.com https://*.googletagmanager.com https://*.onetrust.com https://*.usabilla.com https://cdn.cookielaw.org https://connect.facebook.net https://d6tizftlrpuof.cloudfront.net https://g10696554090.co https://googletagmanager.com https://player.vimeo.com https://ssl.google-analytics.com https://tagmanager.google.com https://www.google-analytics.com https://www.google.com https://googleads.- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (7)
- facebook.com×2
- instagram.com×2
- linkedin.com×2
- twitter.com×2
- wa.me×2
- x.com×2
- youtube.com×2