humaneva.com

.com crawl

First seen 2026-06-02 · Last seen 2026-06-02 · ok HTTP/1.1 200 361 ms crawled 2026-06-02

NL · 51.144.186.103 · AS8075 Microsoft Corporation

Reputation 100/100

Classifying

HTML metadata

Language
pl-PL

Technology

Server
Commodore64
jQuery
3.6.3
Analytics
  • Google Tag Manager
Fonts
  • Adobe Fonts

Third-party hosts loaded (4)

  • code.jquery.com×1
  • consent.cookiefirst.com×1
  • use.typekit.net×1
  • www.googletagmanager.com×1

Contact

Email
Phone

Registration

Registrar
PDR Ltd. d/b/a PublicDomainRegistry.com
Created
2023-09-11
Expires
2026-09-11 100 days left
Updated
2026-04-01
Name servers
  • ns1-02.azure-dns.com
  • ns2-02.azure-dns.net
  • ns3-02.azure-dns.org
  • ns4-02.azure-dns.info

DNS records live

NS
  • ns1-02.azure-dns.com
  • ns2-02.azure-dns.net
  • ns3-02.azure-dns.org
  • ns4-02.azure-dns.info
MX
  • 5 mailgateway.neuca.pl
TXT
  • knowbe4-site-verification=a9c810d08fcb48fbf6951d00497e34e2
  • mojecertpl-site-verification-ltfczlEnajdorlhAD3KmcBUj4fP97D44
Verified for
  • Google
  • Microsoft 365

Email authentication strong

SPF
v=spf1 ip4:130.214.193.64/26 ip4:130.214.156.192/26 ip4:193.192.185.0/24 a ip4:155.56.221.12/30 include:iweb.pl include:spf.protection.outlook.com include:docebosaas.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; pct=100; rua=mailto:dmarc-reports@humaneva.com; ruf=mailto:dmarc-reports@humaneva.com; fo=1; adkim=s; aspf=s;
policy: quarantine
DKIM
no key found at common selectors

Certificate (current)

Sectigo Public Server Authentication CA DV R36
from 2025-12-09 to 2026-12-29
Expires in 209 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://humaneva.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
sync-xhr=(self)
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' https://www.googletagmanager.com https://consent.cookiefirst.com 'nonce-a260795f91e78d0d51b5c7389e754936' 'sha256-Smfl7f5IDKqvs/s4a8K+sAaGa/+e5bK/11SixE8ts+8='; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://use.typekit.net https://p.typekit.net https://consent.cookiefirst.com; img-src 'self' data: https://consent.cookiefirst.com https://www.googletagmanager.com https://www.google-analytics.com; font-src 'self' data: https://fonts.gstatic.com https://use.typekit.net; connect-src 'self' https://www.google-analytics.com https://region1.google-analytics.com https://consent.cookiefirst.com https://edge.cookiefirst.com https://api.cookiefirst.com; frame-src https://consent.cookiefirst.com;, upgrade-insecure-requests
strict-transport-security
max-age=31536000; includeSubDomains; preload
cross-origin-opener-policy
same-origin;
cross-origin-embedder-policy
unsafe-none;
cross-origin-resource-policy
same-origin;

Linked from (6)