lavozdeasturias.es
HTML metadata
Technology
- Analytics
-
- Google Analytics
- Google Tag Manager
- Ads
-
- Google Ads (DoubleClick)
Third-party hosts loaded (13)
- img.lavdg.com×46
- cflvdg.avoz.es×15
- css.lavdg.com×5
- js.lavdg.com×5
- securepubads.g.doubleclick.net×2
- service.wemass.com×2
- adservice.google.com×1
- miperfil.lavozdegalicia.es×1
- sb.scorecardresearch.com×1
- sdk.privacy-center.org×1
- static.wemass.com×1
- www.google-analytics.com×1
- www.googletagmanager.com×1
Social
Contact
- Address
- Calle Santiago de Compostela, 14-2º C, 33012
DNS records live
- NS
-
- dns1.lavoz.com
- dns2.lavoz.com
- MX
-
- 1 aspmx.l.google.com
- 10 alt3.aspmx.l.google.com
- 10 alt4.aspmx.l.google.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 ip4:46.31.65.84/32 ip4:82.98.137.202/32 include:spf.acumbamail.com include:google.com include:email.freshdesk.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:informes.dmarc@lavoz.es; ruf=mailto:informes.dmarc@lavoz.espolicy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArG42KfaVc1JsvArCv9YC+he2yMs8pKNviwHxEuvpQZPOJm+ko/BKK4lnwoLI/6JEd9k1uzMsi66EBC… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArN07lQ1TJOZlVAuNXObavUu703wDfjqsL3hrKjNIkEYnAFozdRhv4XfidLqmTiFXFM9WILF7V3iHUVYih5… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDVYCXe2Ka43z/nYRrjATxF6MO2f9wcCt97K4STtp5XnHRnl2uCQaS6pGofQiKLjfmm8iGWt0RPPhgDUAYKhu5G+E…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M02
Expires in 132 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src https: data: 'unsafe-inline' 'unsafe-eval'; child-src https: data: blob:; connect-src https: data: blob:; font-src https: data:; img-src https: data:; media-src https: blob:; object-src https:; script-src https: data: blob: 'unsafe-inline' 'unsafe-eval'; style-src https: 'unsafe-inline'; block-all-mixed-content; upgrade-insecure-requests;