lusiadas.pt
HTML metadata
Technology
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- TrustArc
Third-party hosts loaded (2)
- consent.trustarc.com×1
- www.googletagmanager.com×1
Social
Contact
DNS records live
- NS
-
- ns1-07.azure-dns.com
- ns2-07.azure-dns.net
- ns3-07.azure-dns.org
- ns4-07.azure-dns.info
- MX
-
- 25 mxh.eu.mpssec.net
- 25 mxi.eu.mpssec.net
- TXT
-
Show 8 TXT records
yu7fywg35spw24tn5y0re843lk3hfoisui75lobqk5uud5vonoo9n8jdfAomF1jzuATUM5L8pbbIFgKNtR/n8x3BAC6T72pzS5gqfz6oDdE30vhYdGWU8aEyH5uykz8slJJXA3TA5szfoQ==rb20mivljde3bkipq423er8b593c28pqmqc9fvipj3va3r92j73e7baploj45ndm2gbdbqfq62qqt6u3sthpaervtm27ftgk7scfppcs9pm6q9rchgag4518vr28ic7guh
- Verified for
-
- Anthropic
- OneTrust
Email authentication strong
- SPF
-
v=spf1 ip4:88.157.237.2 include:spf.protection.outlook.com include:_spflusiadas.anubisnetworks.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc-a@lusiadas.pt; ruf=mailto:dmarc-f@lusiadas.pt;rf=iodefpolicy: quarantine - DKIM
-
- k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - k2:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 117 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: static.addtoany.com consent.truste.com *.trustarc.com *.gstatic.com *.googleapis.com *.googleadservices.com *.googletagmanager.com *.google-analytics.com *.google.com *.google.pt *.googleusercontent.com *.hotjar.com *.hotjar.io wss://*.hotjar.com *.facebook.net *.facebook.com *.adform.net *.doubleclick.net *.youtube.com *.mappedin.com *.googlesyndication.com *.addtoany.com *.conversionsapigateway.com *.a.run.app; report-uri /report-csp-violation- strict-transport-security
max-age=31536000; includeSubDomains