k-gbs.pl
HTML metadata
Technology
- Stack
- Java
DNS records live
- NS
-
- ns1.nazwa.pl
- ns2.nazwa.pl
- ns3.nazwa.pl
- MX
-
- 10 k-gbs.pl
- TXT
-
Show 6 TXT records
33199731bdc92a05046438635d8a383307577891b0e5f3f422bf627335664c9f5bb4175fcb079f0f1cd58d7d160515e54df72576f701e073bfa53b4906ec32aae4b7f19bfeac9e3e87f3ad11aa2dbc5bc6743fee5499f51e99d0168e2b74737147de8a8a67ec0c52db6cec214c7b45c6c21ba83d78e48e4316f5c628d583251147b4cc7912885cb66aedbab248352ff1d12fcbf589d2e203eee90e0327a01503af9dfd1ddcc7bf63d7cd24ad14fb02ea71d5bb6a7a0ffde5eb5f298305be
Email authentication weak
- SPF
-
v=spf1 mx a ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Certum EV TLS G2 R39 CA
Expires in 147 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
Header values
- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), microphone=(), camera=(), payment=(), fullscreen=(self), autoplay=(self)- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' data:; style-src 'self' 'unsafe-inline'; connect-src 'self'; font-src 'self' data:; media-src 'none'; object-src 'none'; frame-src 'self'; frame-ancestors 'self'; manifest-src 'self'- strict-transport-security
max-age=31536000 ; includeSubDomains