innowacyjnedrogi.pl
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
- Fonts
-
- Google Fonts
Third-party hosts loaded (4)
- fonts.googleapis.com×2
- consent.cookiebot.com×1
- maps.googleapis.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- dns.home.pl
- dns2.home.pl
- dns3.home.pl
- TXT
-
1650b69717ee06e8fce94f6834b0b561045ca2401d501643d3e7c7d11170c678056336f15919af41ff9b40cbdbfbd087dc1e876b87c5b093aabea55e3acf34
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Certum Organization Validation CA SHA2
Expires in 14 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self' www.orlen-asfalt.pl consent.cookiebot.com consentcdn.cookiebot.com;script-src 'self' 'unsafe-inline' 'unsafe-eval' maps.googleapis.com www.googletagmanager.com consent.cookiebot.com consentcdn.cookiebot.com;style-src 'self' 'unsafe-inline' fonts.googleapis.com consent.cookiebot.com consentcdn.cookiebot.com; connect-src *.google-analytics.com 'self' maps.googleapis.com www.google-analytics.com consent.cookiebot.com consentcdn.cookiebot.com;font-src 'self' fonts.gstatic.com consent.cookiebot.com consentcdn.cookiebot.com;img-src 'self' www.google-analytics.com maps.gstatic.com maps.googleapis.com www.orlen-asfalt.pl consent.cookiebot.com consentcdn.cookiebot.com *.cookiebot.com *.orlen.pl data:;frame-ancestors 'none'- strict-transport-security
max-age=63072000; includeSubDomains; preload- content-security-policy-report-only
default-src 'self' www.orlen-asfalt.pl www.google-analytics.com maps.googleapis.com consent.cookiebot.com consentcdn.cookiebot.com;script-src 'self' 'unsafe-inline' 'unsafe-eval' maps.googleapis.com www.googletagmanager.com consent.cookiebot.com consentcdn.cookiebot.com;style-src 'self' 'unsafe-inline' fonts.googleapis.com consent.cookiebot.com consentcdn.cookiebot.com; connect-src *.google-analytics.com 'self' maps.googleapis.com www.google-analytics.com consent.cookiebot.com consentcdn.cookiebot.com;font-src 'self' fonts.gstatic.com consent.cookiebot.com consentcdn.cookiebot.com;img-src 'self' www.orlen-asfalt.pl consent.cookiebot.com consentcdn.cookiebot.com www.google-analytics.com maps.gstatic.com maps.googleapis.com *.cookiebot.com *.orlen.pl data:;frame-ancestors 'none';report-uri /report-csp