kotipizza.fi
HTML metadata
Technology
- CMS
- Next.js
- Ads
-
- Meta Pixel
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (6)
- use.typekit.net×4
- mob-cdn.azureedge.net×2
- api.storyblok.com×1
- cdnjs.cloudflare.com×1
- connect.facebook.net×1
- maps.googleapis.com×1
Social
Registration
- Created
- 1990-12-31
- Name servers
-
- ns2-fin.global.sonera.fi [195.156.148.158] [2001:2060:ffdd:a02::53] [ok]
- ns1-fin.global.sonera.fi [193.210.18.31] [2001:2060:ffdd:a01::53] [ok]
- ns1-swe.global.sonera.se [ok]
- ns2-usa.global.sonera.net [ok]
DNS records live
- NS
-
- ns1-fin.global.sonera.fi
- ns1-swe.global.sonera.se
- ns2-fin.global.sonera.fi
- ns2-usa.global.sonera.net
- MX
-
- 0 kotipizza-fi.mail.protection.outlook.com
- TXT
-
Show 12 TXT records
MS=ms20598940kp-commerce-web.azurewebsites.net_7mv7qikoarrnw3vs8r88hvmo8mosm8lepuf958f1iuscje4at878v06lebd06lp95hl461v1cgk03p522m6yl1fnsMS=ms43445152f24kpt4kpkcd1jjq66cfbwt7sffpb8whhibp-verify=dweb_fy47gnyn1i399irn38ar7wkc9hg9ffk6961d8d91gdvj0474h5gwh295google-site-verification=3RaUzJqwsvDU64cwjbG1nKs-lSzJGvXYvUU7bHGoZSMz1lyf2lzc97m0f3364cvdbmvwfztsm93facebook-domain-verification=fh6lida4fodrsx3wwkpwtbfi3iyoon
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com ip4:149.72.35.103 ip4:149.72.85.169 ip4:159.183.43.195 ip4:159.183.43.33 ip4:167.89.23.33 ip4:167.89.86.48 ip4:168.245.113.52 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@1tt00t50.uriports.com;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvwy0MqEF23Szpq5EafLJr50DQLLhftwV7NkPCGKLxe0q+jsXsm4zx6+0xIkEgWM0nSdnKktAtKWCBl… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsIT30NJY0RPP/278V299FsjaMsE+XY9CHt3Y2E+AFttRuBMMxYOVNsTmEkjl2YUGllRyYoV27gH+IQ0b38… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCXfhcfIEfqHfzZeuc/eICSSYt+y398e6qziudiOptZ7ulXu2ynKT9FMoFkeqwob6yOHFMR4jIbgfwTH3k5aB2p4D…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 105 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- referrer-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
DENY- content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval'; frame-ancestors https://app.storyblok.com; object-src 'none'; img-src * 'unsafe-inline' 'unsafe-eval' data:; report-uri https://1tt00t50.uriports.com/reports/enforce; report-to default
Links to (4)
Linked from (1)
- fel.gg×1