henkoemocional.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (6)
- grupoanaya.es×4
- www.googletagmanager.com×4
- fonts.googleapis.com×3
- henkoemocional.stage-microsites-anaya.quodem.net×3
- sdk.privacy-center.org×1
- www.youtube.com×1
Social
Contact
- Phone
- Address
- st CLIENT_ID = "5ffff2c79fd848bb9b761ce31513
DNS records live
- NS
-
- dns1.p09.nsone.net
- dns2.p09.nsone.net
- dns3.p09.nsone.net
- dns4.p09.nsone.net
- MX
-
- 10 de-smtp-inbound-1.mimecast.com
- 10 de-smtp-inbound-2.mimecast.com
- TXT
-
0ed1fe018a1220aba5396941cf9d16f3f2a0eae07bMS=ms86797126
Email authentication strong
- SPF
-
v=spf1 redirect=_s4kwnave6.sdmarc.netno all qualifier - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:a.4kwnave6@sdmarc.netpolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 57 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' https://loscokitos.com https://www.loscokitos.com;, default-src 'self' https: data: 'unsafe-inline' 'unsafe-eval';- strict-transport-security
max-age=31536000; includeSubDomains
Links to (2)
Linked from (1)
- dide.org×1