lgseeds.pl
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- consent.cookiebot.eu×2
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns.w3line.fr
- ext01.w3line.fr
- mail.w3line.fr
- MX
-
- 10 mxa-00764001.gslb.pphosted.com
- 10 mxb-00764001.gslb.pphosted.com
- TXT
-
287096e5ac1b2306b75e006cf818e3a371b5a40a6f810aee9824ca9f8582192c
- Verified for
-
- Dynamics 365
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.fromearthtolife.net include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc.reporting@lgseeds.pl; ruf=mailto:dmarc.reporting@lgseeds.pl; sp=quarantine; aspf=s; adkim=s; ri=86400policy: quarantine · sp=quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwVvHl6yw597f5moMagDZAJ5B+aLu9urqVAOTvHjphooUy30Mqr5g8c2oUxYZU5Y5Zy4jz8s9dmYsv4…
selectors probed - selector1:
Certificate (current)
R12
Expires in 31 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(),midi=(),sync-xhr=(),microphone=(),camera=(),magnetometer=(),payment=()- x-content-type-options
nosniff- content-security-policy
default-src *; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: matomo.lg-tools.de *.googleapis.com *.hotjar.io *.hotjar.com stats.lg-tools.de *.cloudflare.com *.cloudflareinsights.com *.googleadservices.com *.doubleclick.net *.facebook.net *.facebook.com *.lgseeds.pl *.lgseeds.ee *.lgseeds.fr *.lgseeds.lt *.lgseeds.lv *.cookiebot.eu *.googletagmanager.com *.google-analytics.com *.youtube.com *.azureedge.net; style-src 'self' 'unsafe-inline' data: *.gstatic.com fonts.googleapis.com *.lgseeds.pl *.lgseeds.ee *.lgseeds.fr *.lgseeds.lt *.lgseeds.lv *.fontawesome.com; object-src 'self' 'unsafe-inline' data: blob:; img-src 'self' data: blob: *.google.com *.google.de *.google.pl *.ytimg.com *.gstatic.com maps.gstatic.com *.googleapis.com *.googleusercontent.com *.ggpht.com *.mkt.dynamics.com sw6.lg.keeen.net shop.lgseeds.de *.googletagmanager.com *.doubleclick.net *.facebook.com *.gos3.io *.lgseeds.pl *.lgseeds.ee *.lgseeds.fr *.lgseeds.lt *.lgseeds.lv *.usercentrics.eu *.google-a- strict-transport-security
max-age=31536000; includeSubDomains; preload