iluniontutienda.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 2486 ms crawled 2026-05-19

US · 45.223.20.195 · AS19551 Incapsula Inc

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
Regalos solidarios | ILUNION Tu Tienda
Description
Red de tiendas situadas en hospitales en España con productos sostenibles y puntos celéritas a tu disposición.
Language
es
Canonical
https://www.iluniontutienda.com/

Open Graph

title
Regalos solidarios | ILUNION Tu Tienda
description
Red de tiendas situadas en hospitales en España con productos sostenibles y puntos celéritas a tu disposición.

Technology

CMS
Drupal
Fonts
  • Font Awesome
Social widgets
  • YouTube Embed

Third-party hosts loaded (3)

  • use.fontawesome.com×2
  • www.google.com×1
  • www.youtube.com×1

Social

Contact

Phone

Registration

Registrar
Ascio Technologies, Inc. Danmark - Filial af Ascio technologies, Inc. USA
Created
2024-10-21
Expires
2026-10-21 153 days left
Updated
2025-10-22
Name servers
  • ns1.ascio.com
  • ns2.ascio.com
  • ns3.ascio.com
  • ns4.ascio.com

DNS records live

NS
  • ns1.ascio.com
  • ns2.ascio.com
  • ns3.ascio.com
  • ns4.ascio.com
MX
  • 0 iluniontutienda-com.mail.protection.outlook.com
TXT
  • pardot990782=320cd698c398998914c7d195fdb315fb4cdadf78533482515eed6ca60fff89f3
Verified for
  • Google
  • Microsoft 365

Email authentication weak

SPF
v=spf1 include:spf.protection.outlook.com include:_spf.salesforce.com ~all
softfail (~all)
DMARC
not published
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5UYsSvQmRHat/A3TgdjyyHb4dDSg/DhxbGs589DzP4Cz9dWvcZsf1nkl6lzua1dkdzVt6UO9E+ZYOl…
selectors probed

Certificate (current)

Thawte TLS RSA CA G1
from 2025-09-22 to 2026-10-24
Expires in 156 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.iluniontutienda.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' stats.g.doubleclick.net *.google.com *.google-analytics.com blob:;connect-src 'self' *.iluniontutienda.com *.ilunion.com *.visualwebsiteoptimizer.com app.vwo.com *.google-analytics.com pagead2.googlesyndication.com *.doubleclick.net *.google.com *.google.es *.googleadservices.com capig.stape.host *.facebook.com;img-src 'self' cdn.jsdelivr.net *.visualwebsiteoptimizer.com cdn.pushcrew.com chart.googleapis.com wingify-assets.s3.amazonaws.com app.vwo.com *.googletagmanager.com *.google.com *.google.es *.google-analytics.com *.tile.openstreetmap.org www.google.co.in *.doubleclick.net www.facebook.com data:;script-src 'unsafe-eval' 'unsafe-inline' 'self' *.gstatic.com *.visualwebsiteoptimizer.com app.vwo.com cdn.pushcrew.com *.iluniontutienda.com *.ilunion.com pi.pardot.com *.google-analytics.com *.googletagmanager.com *.google.com *.gstatic.com use.fontawesome.com connect.facebook.net googleads.g.doubleclick.net;script-src-elem 'unsafe-eval' 'unsafe-inline' 'self' *.gs
strict-transport-security
max-age=15552000; includeSubDomains

Links to (16)

Linked from (8)