kordsa.com
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Network Solutions, LLC
- Created
- 1997-06-24
- Expires
- 2031-06-23 1859 days left
- Updated
- 2026-01-15
- Name servers
-
- ns1.sabancigrubu.com
- ns2.sabancigrubu.com
- ns3.sabancigrubu.com
- ns4.sabancigrubu.com
DNS records live
- NS
-
- ns1.sabancigrubu.com
- ns2.sabancigrubu.com
- ns3.sabancigrubu.com
- ns4.sabancigrubu.com
- MX
-
- 10 smtp2.sabancidx.com
- 100 smtp.bimsa.com.tr
- 5 smtp.sabancidx.com
- 50 smtpizmit.bimsa.com.tr
- TXT
-
Show 9 TXT records
3kkbb6cs8voof0p5ploh9phbd5o4qp26kt6t18a07svlmnk6f1i26qna7jmt3hp8surpjmgo4r4fr1dmkk1ip1760frikca4085ut0bgWNDr/YMb4lfQwx2MoAuSvcR9pxxehpnu/S9V7rTAMdtrI67ghh2EzWQOrEYvdk5SahNu8ixIfibZveI0KgvD9g==aJifD3V1MOLK1zShJKSkdUJJUNTKh2S4rc8qPhh5tH5NMyVEjyVrJZi4I8yQKP0hB2RuCaGp8JesIBkttTC9og==bj599tf47gsa4a72a8pqqaib7in3i1pgluc4kfb0epabb11raupitffee14ddpa3l20thakgu2kevo
- Verified for
-
- Apple
- Atlassian
- Cisco
- Google Workspace
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 a mx mx:smtp.sabancidx.com mx:smtp2.sabancidx.com ip4:195.214.166.167 ip4:212.57.13.132 ip4:82.222.83.245 include:servers.mcsv.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=quarantine; pct=50; rua=mailto:dmarc@kordsa.com; ruf=mailto:dmarc@kordsa.com; rf=afrf; sp=quarantine;policy: quarantine · pct=50 · sp=quarantine - DKIM
- no key found at common selectors
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 105 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), magnetometer=(), microphone=(), payment=(), usb=(), interest-cohort=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; connect-src *; font-src * data:; frame-src *; img-src * data:; media-src *; object-src *; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; frame-ancestors 'none';- strict-transport-security
max-age=31536000; includeSubDomains