kross-cesko.cz
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- www.googletagmanager.com×2
- trustmate.io×1
Social
Registration
- Registrar
- REG-ASCIO
- Created
- 2022-02-02
- Expires
- 2027-02-01 245 days left
- Updated
- 2026-04-09
- Name servers
-
- coraline.ns.cloudflare.com
- zod.ns.cloudflare.com
DNS records live
- NS
-
- coraline.ns.cloudflare.com
- zod.ns.cloudflare.com
- MX
-
- 0 krosscesko-cz01c.mail.protection.outlook.com
- TXT
-
21zyf9cpl1zv3x9p9mry8tzsq5h5j8c409b52xws6rtzmgrv81xynk36m2hjfln81|www.kross-cesko.cz
- Verified for
-
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 include:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
WE1
Expires in 45 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
font-src fonts.gstatic.com use.typekit.net *.googleapis.com *.gstatic.com data: https://secure.tpay.com https://secure.sandbox.tpay.com https://tpay.com https://geowidget.easypack24.net *.fontawesome.com kross.pl https://trustmate.io https://cdn.trustmate.io https://cdn.thulium.com https://static.payu.com analytics.tiktok.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com https://ewniosek.credit-agricole.pl https://raty.aliorbank.pl https://test.raty.internet.alior.corp:33443 https://pc.pkoleasing.pl/ https://stpc.pkoleasing.pl/ https://wniosek.eraty.pl https://irata.bnpparibas.pl/eshop-form/1a.page https://www.facebook.com 'self' 'unsafe-inline'; frame-ancestors www.gstatic.com 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com- strict-transport-security
max-age=36000
Links to (6)
- youtube.com×1
- kross.pl×1
- kross.eu×1
- kross-europe.eu×1
- instagram.com×1
- facebook.com×1