grupobahia.com

.com crawl

First seen 2026-04-20 · Last seen 2026-05-19 · ok HTTP/1.1 200 2405 ms crawled 2026-05-13

DE · 217.160.0.232 · AS8560 IONOS SE

Reputation 87/100 weak security headers no dmarc policy

Classifying

HTML metadata

Title
Grupo - Bahía, grupo empresarial que opera en diferentes mercados.
Description
Somos una grupo empresarial dedicado a diversos sectores relacionados con el turismo y la construccion entre otros.
Language
es-ES
Generator
WordPress 6.9.4
Canonical
https://grupobahia.com/
Translations
  • en
  • es
Feeds

Open Graph

url
https://grupobahia.com/
title
Grupo - Bahía, grupo empresarial que opera en diferentes mercados.
locale
es_ES
site name
Grupo - Bahía
description
Somos una grupo empresarial dedicado a diversos sectores relacionados con el turismo y la construccion entre otros.

Technology

Server
Apache
CMS
WordPress
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts

Third-party hosts loaded (5)

  • cdn.datatables.net×7
  • fonts.googleapis.com×4
  • www.google.com×2
  • gmpg.org×1
  • www.googletagmanager.com×1

Contact

Phone

Registration

Registrar
Arsys Internet, S.L. dba NICLINE.COM
Created
2010-07-02
Expires
2026-07-02 42 days left
Updated
2025-07-03
Name servers
  • ns1.lcsistemas.com
  • ns2.lcsistemas.com

DNS records live

NS
  • ns1.lcsistemas.com
  • ns2.lcsistemas.com
MX
  • 10 mx1.mtaroutes.com
  • 20 mx2.mtaroutes.com
  • 30 mx3.mtaroutes.com
  • 40 mx4.mtaroutes.com
Verified for
  • Microsoft 365

Email authentication weak

SPF
v=spf1 include:spf.mtaroutes.com include:_spf.serviciodecorreo.es ip4:80.35.21.70 ip4:185.130.145.208 include:spf.protection.outlook.com ~all
softfail (~all)
DMARC
not published
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs/5CgFl5+cIleCoiZppQ+bV2RVvCL02aQ1yZB8GIua0EozM0No6xH/qeNWX8GuALCIcJ3o2KJ5pNE2…
selectors probed

Certificate (current)

Sectigo RSA Domain Validation Secure Server CA
from 2025-05-29 to 2026-06-13
Expires in 23 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://grupobahia.com/

present
  • content-security-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
content-security-policy
default-src 'self'; script-src 'self' https://grupobahia.com https://www.grupobahia.com https://s.w.org https://stats.wp.com https://www.googletagmanager.com https://tagmanager.google.com https://www.google-analytics.com https://ssl.google-analytics.com https://region1.google-analytics.com https://analytics.google.com https://www.google.com https://www.gstatic.com https://ssl.gstatic.com https://www.recaptcha.net https://recaptcha.net https://challenges.cloudflare.com https://js.stripe.com https://www.paypal.com https://sandbox.paypal.com https://www.sandbox.paypal.com https://maps.googleapis.com https://maps.gstatic.com https://www.youtube.com https://youtube.com https://www.youtube-nocookie.com https://youtube-nocookie.com https://s.ytimg.com https://i.ytimg.com https://player.vimeo.com https://f.vimeocdn.com https://i.vimeocdn.com https://fonts.googleapis.com https://fonts.gstatic.com https://cdn.jsdelivr.net 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline' https://fo

Links to (2)

Linked from (1)