kruktfi.pl

.pl crawl

First seen 2026-06-02 · Last seen 2026-06-02 · ok HTTP/1.1 200 675 ms crawled 2026-06-02

FR · 54.37.105.54 · AS16276 OVH SAS

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Strona główna - KRUK TFI S.A.
Language
pl-PL
Canonical
https://kruktfi.pl/

Open Graph

url
https://kruktfi.pl/
title
Strona główna - KRUK TFI S.A.
locale
pl_PL
site name
KRUK TFI S.A.

Technology

Server
nginx
CMS
WordPress
jQuery
3.7.1
Stack
PHP

Third-party hosts loaded (1)

  • challenges.cloudflare.com×2

Contact

Phone

DNS records live

NS
  • ns1-06.azure-dns.com
  • ns2-06.azure-dns.net
  • ns3-06.azure-dns.org
  • ns4-06.azure-dns.info
MX
  • 20 smtp-01.kruk.eu
  • 20 smtp-02.kruk.eu
TXT
Show 5 TXT records
  • 68214cf56cf9ec9e7e60ab0298cca344361b1b19cedbf19cb88b2484528feeb
  • 84c5750b9cad1635d75c9e1d7fa386da04be192e6a83b489856f253a19307e7
  • 33123d54a8e25bf725274b33f55133710e1ef6c06b8e0d412e8bdcf5e208bfa
  • msgZe4heN3NXmeKbwp/tlIymj1Ja+XO13sOWH9VV+8FBJaBDujXZ/BhAbRQE9YfrT8E/QExekWj9712DxgITAg==
  • 6/0psKaapKC8JIFIBG+xE20+6kI2csKM0xqjpRhVzk9NUPgplXQdipNjjrCkBFsYewQJSMJiIEKOBPII7aEk4A==
Verified for
  • Google
  • Microsoft 365

Email authentication partial

SPF
v=spf1 mx a ip4:85.219.229.120 ip4:85.219.229.121 ip4:85.219.229.122 ip4:85.219.229.123 ip4:85.219.229.124 ip4:85.219.229.20 ip4:62.87.131.115 ip4:78.9.164.36 ip4:85.219.229.112/32 include:spf.protection.outlook.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarcreports@kruksa.pl
policy: none (monitoring only)
DKIM
  • mail: v=DKIM1; k=rsa; s=email; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCrNHMQUGTLEtOGVViwRNnCwHqCHTXwl1TuYquEsJcyoNbNKrP8AeH7FgA6ROCqrH2NpjgSfNPhP…
selectors probed

Certificate (current)

Certum DV TLS G2 R39 CA
from 2026-05-26 to 2026-12-11
Expires in 191 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://kruktfi.pl/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing content type protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-frame-options
sameorigin
content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *; style-src 'self' 'unsafe-inline' *; img-src 'self' data: blob: *; font-src 'self' data: *; connect-src 'self' *; frame-src 'self' https://*.google.com/recaptcha/ https://*.google.com/maps/embed https://*.googleapis.com/maps/api/ https://*.gstatic.com/recaptcha/ https://challenges.cloudflare.com;
strict-transport-security
max-age=31536000; includeSubDomains

Links to (1)

Linked from (1)