minisom.pt
HTML metadata
Technology
- Server
- Apache
- CMS
- Joomla
Third-party hosts loaded (4)
- www.amplifon.com×11
- assets.adobedtm.com×1
- www.beterhoren.nl×1
- www.gaes.es×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns-1267.awsdns-30.org
- ns-1823.awsdns-35.co.uk
- ns-284.awsdns-35.com
- ns-825.awsdns-39.net
- MX
-
- 10 mxa-00677301.gslb.pphosted.com
- 10 mxb-00677301.gslb.pphosted.com
- TXT
-
wkcyrtdbmdbvfvrh1m8jgg1mwgfj1svfdtm-domain-verification=VUlL10wFS2rJ5ONvb70kN8j0-BSzrr-LrWkRNtTqmHg
- Verified for
-
- Apple
- Meta
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; aspf=s; adkim=s;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 86 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin, strict-origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-hashes' 'unsafe-eval' *.adobedc.net *.contentsquare.net *.fonts.gstatic.com *.everesttech.net; script-src-elem 'self' 'unsafe-inline' *.scene7.com *.contentsquare.net *.yextevents.com *.sitescdn.com *.taboola.com *.gstatic.com *.google.com *.minisom.pt *.aiaibot.com *.clarity.ms *.doubleclick.net *.logbor.com *.realytics.net *.metaffiliation.com *.realytics.io *.googleadservices.com *.pinterest.com *.pinimg.com *.iadvize.com *.zemanta.com *.adroll.com *.adform.net *.bing.com *.monsido.com *.tiktok.com *.outbrain.com *.hotjar.com *.adalyser.com *.responsetap.com *.exelator.com *.trustpilot.com *.adnxs.com *.crwdcntrl.net *.teads.tv *.googleapis.com *.facebook.net *.google-analytics.com maps.googleapis.com *.amplifon.com *.lpsnmedia.net *.tvsquared.com *.everestjs.net *.liveperson.net *.rfihub.net *.cookielaw.org *.adobedtm.com *.googletagmanager.com *.youtube.com; style-src 'self' 'unsafe-inline' 'unsafe-hashes' *.gstatic.com *.adobedc.net fo- strict-transport-security
max-age=31536000; includeSubDomains
Links to (5)
Linked from (2)
- apan.pt×1
- amplifon.com×1