mercadopago.com.co
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Analytics
-
- Google Tag Manager
- Hotjar
Third-party hosts loaded (3)
- http2.mlstatic.com×21
- static.hotjar.com×2
- www.googletagmanager.com×2
Social
DNS records live
- NS
-
- ns-1220.awsdns-24.org
- ns-185.awsdns-23.com
- ns-1969.awsdns-54.co.uk
- ns-609.awsdns-12.net
- MX
-
- 1 aspmx.l.google.com
- 10 aspmx2.googlemail.com
- 10 aspmx3.googlemail.com
- 5 alt1.aspmx.l.google.com
- 5 alt2.aspmx.l.google.com
- TXT
-
Show 7 TXT records
_jbdd530g3i6c27o58xlpiky1z2ksgykgoogle-site-verification: X_DZkdOpM1w6QoClZlWRw0MRk0ZdgbfswNFPVrfRoy4mcrsw46rfzmc68b44xxky5334lzqyc6rmonday-com-verification=G6gWiJdNb9CBcH8BHiELjqXSmd9b04RarDTXkffu_-kzxkwj03fnrcvccy0lmz9xyb64w06dtzy87p8v7jqq7ytrh4dyknjbsswms5qj0z4_eyxi9rssb899wnjtjsaawjs7xfxozsi
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 a:spfip.mercadopago.com include:spfrange.mercadopago.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:vsmcwony@ag.dmarcian.com,mailto:51d4679dd9@rep.dmarcanalyzer.com, mailto:dmarc_agg@vali.email; ruf=mailto:51d4679dd9@for.dmarcanalyzer.com; rf=afrf; pct=100;policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCNZkBbnNJEhvlc3Z8Y1qNBWWHIdEVVELXodwt2eXSBn8vXuF2/gNY8L7gbhxye2dNGJvnhsR5oUWd6mM+3Mc… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9N9cLWGA0SOTUAUsvGk7GColStKU7Gh1DGOTSlvehMRNFJwcjS+LCyWG3risedZcJ+QI7ZZH5OGP1SlSNF… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDDhvrOvKPNpw0s8VpsvQ800soxurpjg0SiJY1svD+xOGApMF7eqWXLoVebu4MealmkIXf5XzNbHTMYmDF9HNbYNA…
selectors probed - google:
Certificate (current)
Amazon RSA 2048 M01
Expires in 171 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-content-type-options
nosniff- content-security-policy
script-src 'nonce-YVMuTGxMm4UGzu1AHXJXqw==' 'strict-dynamic' 'unsafe-eval' 'unsafe-inline' https: 'report-sample'; base-uri 'none'; report-uri https://events.mercadolibre.com/csp/reports?identifier=sFvn_jK3nXaGrrgrvJAl9E106Nuk2G-BH3xMeWnswnl__1sqWC9b0iqvbeSic9tmFA==&policy_id=28711&user_id=&request_id=83d2d078-97c5-4ba1-a72d-71548de22f1d; report-to csp-endpoint-sfvnjknxagrrgrvjalenukgbhxmewnswnlsqwcbiqvbesictmfa; object-src https://http2.mlstatic.com/ https://mlstaticquic-a.akamaihd.net/; frame-ancestors 'self' https://*.mercadolibre.cl:* https://*.mercadolibre.com:* https://*.mercadolibre.com.ve:* https://*.mercadolibre.com.ar:* https://*.mercadolivre.com.br:* https://*.mercadolibre.com.co:* https://*.mercadolibre.com.ec:* https://*.mercadolibre.com.mx:* https://*.mercadolibre.com.pe:* https://*.mercadolibre.com.uy:* https://*.mercadopago.cl:* https://*.mercadopago.com.ar:* https://*.mercadopago.com.br:* https://*.mercadopago.com.co:* https://*.mercadopago.com.mx:* https://*.mercadopa- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (5)
- mercadolibre.com×8
- facebook.com×4
- linkedin.com×4
- x.com×4
- youtube.com×4