ingart.pl
HTML metadata
Technology
- Server
- Apache
- Cookie consent
-
- Usercentrics
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- web.cmp.usercentrics.eu×2
- code.netwerk.pl×1
- fonts.googleapis.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns.home.pl
- dns2.home.pl
- dns3.home.pl
- MX
-
- 10 mr1.ing.pl
- 20 mr2.ing.pl
- TXT
-
mailerlite-domain-verification=82c59d68bb53126f913a97262646ff46062017efidentrust_validate=hcrF5R50TArjWqbZ0WsnGbEe9wiy5V5c/82VxTqmEa6b
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx a ptr include:_spf.mlsend.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;rua=mailto:ejdvezzq@ag.eu.dmarcadvisor.compolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
HydrantID Server CA O1
Expires in 243 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.usercentrics.eu usercentrics.eu; font-src 'self' *.googleapis.com *.gstatic.com; style-src 'self' 'unsafe-inline' code.netwerk.pl *.googleapis.com *.gstatic.com; img-src 'self' code.netwerk.pl i.ytimg.com scontent.cdninstagram.com *.usercentrics.eu data:; frame-src 'self' www.youtube.com player.vimeo.com www.google.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' code.netwerk.pl googletagmanager.com google-analytics.com *.usercentrics.eu data:; object-src 'self'; frame-ancestors 'self';- strict-transport-security
max-age=3600; includeSubdomains
Links to (4)
- facebook.com×1
- instagram.com×1
- pineum.com×1
- vimeo.com×1
ingart.pl