ipl.pt
HTML metadata
Technology
- Server
- Apache
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- fonts.googleapis.com×2
- www.facebook.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.net.ipl.pt
- ns2.net.ipl.pt
- MX
-
- 10 mailrelay1.net.ipl.pt
- 20 mailrelay2.net.ipl.pt
- TXT
-
Show 4 TXT records
HARICA-bOJ5HFpqCv2zjBnovIiMS=ms77043594adobe-idp-site-verification=f5f2202d413a231ae43e2728bf075784db59dc95f5ba51e7de7091522a29efc4google-site-verification=FvEVQHg-nmr-CcEx8IOW51mvqQUexfB6Pok6LZk_LR8
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
GEANT TLS RSA 1
Expires in 71 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.ipl.pt https://www.google.com/maps/ https://www.youtube.com https://use.fontawesome.com *.flickr.com https://e.issuu.com https://calendar.google.com https://www.facebook.com/plugins/ https://w.soundcloud.com/player/; style-src 'unsafe-inline' 'self' *.ipl.pt https://fonts.googleapis.com https://use.fontawesome.com https://stackpath.bootstrapcdn.com https://combo.staticflickr.com https://cdn.jsdelivr.net; script-src 'unsafe-inline' 'unsafe-eval' 'self' *.ipl.pt https://www.googletagmanager.com https://www.youtube.com *.flickr.com https://ws.sharethis.com; img-src * data:; media-src 'self' *.ipl.pti data:; font-src 'self' *.ipl.pt https://fonts.gstatic.com https://use.fontawesome.com https://stackpath.bootstrapcdn.com data:; object-src 'unsafe-inline' 'unsafe-eval' 'self' *.ipl.pt;- strict-transport-security
max-age=15768000