khl.cz
HTML metadata
Technology
- Server
- Microsoft-IIS
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- zhk.blob.core.windows.net×26
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.websupport.cz
- ns2.websupport.cz
- ns3.websupport.eu
- MX
-
- 0 khl-cz.mail.protection.outlook.com
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 ip4:194.108.158.100 a:monitoring.khl.cz include:spf.protection.outlook.com include:amazonses.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject;policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCThF/QL3P0MkBMeaYahtZHSPSKfmLdJopCrvlf5QkO6otUxq1oj2ciXrDrRXmGlug5cMCpaVVVbK3AyqYaOa… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvFIT7C9VBthk9s620g7SlGr7oEHWuEDIPY8yZv+X95HI70d5Ee4g8/gLMOY1efdeyZy1qnHDJT/O4+…
selectors probed - selector1:
Certificate (current)
R13
Expires in 67 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), fullscreen=(self), payment=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'strict-dynamic' 'nonce-/VTqr3dW11pPRmxvNvX66g==' 'self'; style-src 'self' 'unsafe-inline'; font-src 'self'; img-src 'self' data: https://zhk.blob.core.windows.net api.mapy.cz; media-src 'self' https://zhk.blob.core.windows.net; frame-src 'self' mapy.com frame.mapy.cz www.google.com www.youtube.com www.linkedin.com docs.google.com www.facebook.com; connect-src 'self' api.mapy.cz www.google.com www.google-analytics.com *.google-analytics.com *.googlesyndication.com *.analytics.google.com; worker-src 'self'; form-action 'self' lekarnahk.zhk.dmpagency.cz khl.cz www.khl.cz; object-src 'none'; base-uri 'none'; frame-ancestors 'none'; upgrade-insecure-requests;- strict-transport-security
max-age=2592000
Links to (4)
- zhkhk.cz×1
- windows.net×1
- facebook.com×1
- dmpagency.cz×1