investinbogota.org

.org crawl

First seen 2026-04-13 · Last seen 2026-05-19 · ok HTTP/1.1 200 10197 ms crawled 2026-05-07

US · 72.167.47.14 · AS398101 GoDaddy.com, LLC

Reputation 95/100 weak security headers

Classifying

HTML metadata

Title
Invest in Bogotá
Description
Agencia de promoción de inversiones de Bogotá
Language
es-CO
Generator
WordPress 6.9.4
Canonical
https://es.investinbogota.org/
Translations
  • en
  • es
Feeds

Open Graph

url
https://es.investinbogota.org/
title
Invest in Bogotá
locale
es_ES
site name
Investinbogota.org | Invierta en Bogotá
description
Agencia de promoción de inversiones de Bogotá
updated time
2026-02-18T10:18:26-05:00

Technology

Server
Apache
CMS
WordPress
Analytics
  • Google Tag Manager
Fonts
  • Google Fonts
Social widgets
  • YouTube Embed

Third-party hosts loaded (6)

  • fonts.googleapis.com×4
  • www.googletagmanager.com×3
  • cdn.fromdoppler.com×2
  • www.google.com×2
  • fonts.gstatic.com×1
  • www.youtube.com×1

Social

Contact

Email
Phone
Address
st in Bogotá 2025

Registration

Registrar
Register.com - Network Solutions, LLC
Created
2006-11-10
Expires
2029-11-10 1269 days left
Updated
2024-10-16
Name servers
  • dns101.register.com
  • dns102.register.com

DNS records live

NS
  • dns101.register.com
  • dns102.register.com
MX
  • 10 investinbogota-org.mail.protection.outlook.com
TXT
  • e6e03f356a8c9e827a64d269aaa172c5
Verified for
  • Cisco

Email authentication strong

SPF
v=spf1 include:spf.protection.outlook.com include:spf.masterbase.com include:spf.fromdoppler.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine;
policy: quarantine
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCfzGL5QLqvj+c/Dg4edExDUpS0i2GxqfbvnAsKOw68bZCouyw+iNf60WlHLdC8wDu5YLyRYDx5WKk6CvuQqc…
selectors probed

Certificate (current)

R13
from 2026-04-10 to 2026-07-09
Expires in 49 days

HTTP security headers

Header hygiene 45/100 Checked live page: https://es.investinbogota.org/

present
  • content-security-policy
  • permissions-policy
findings
  • missing HSTS
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing content type protection
  • missing Referrer Policy
Header values
permissions-policy
private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")
content-security-policy
default-src 'self'; base-uri 'self'; object-src 'self'; frame-ancestors 'self'; upgrade-insecure-requests; img-src 'self' https: data: blob:; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://cdn.fromdoppler.com; font-src 'self' https://fonts.gstatic.com data:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: https://code.highcharts.com https://code.jquery.com https://cdn.fromdoppler.com https://www.googletagmanager.com https://www.google-analytics.com https://www.google.com https://www.gstatic.com https://connect.facebook.net https://static.xx.fbcdn.net https://platform.linkedin.com https://snap.licdn.com; connect-src 'self' https: https://code.highcharts.com https://cdn.fromdoppler.com https://www.google-analytics.com https://www.googletagmanager.com https://graph.facebook.com https://www.facebook.com https://px.ads.linkedin.com https://api.linkedin.com https://www.linkedin.com https://*.powerbi.com https://*.analysis.windows.net http

Links to (11)

Linked from (8)