naty.app

.app crawl

First seen 2026-04-29 · Last seen 2026-05-19 · ok HTTP/1.1 200 1657 ms crawled 2026-05-07

BR · 189.26.122.187 · AS18881 TELEFONICA BRASIL S.A

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
Naty App Oficial | WhatsApp Oficial com Governança e Automação
Description
Plataforma enterprise para operar WhatsApp Oficial com governança, automação e inteligência.
Language
pt
Generator
Astro v6.1.3
Canonical
https://www.natyapp.com.br/pt/
Translations
  • en
  • es
  • pt
Feeds

Open Graph

url
http://localhost:4321/pt/
title
Naty App Oficial | WhatsApp Oficial com Governança e Automação
locale
pt_BR
description
Plataforma enterprise para operar WhatsApp Oficial com governança, automação e inteligência.

Technology

Server
openresty
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • www.natyapp.com.br×6
  • lh3.googleusercontent.com×2
  • fonts.googleapis.com×1
  • fonts.gstatic.com×1

Social

Contact

Phone
Address
Rua Alexander Fleming, 2194, Terreo - Edif.Charles Darwin, Biopark, Toledo Paraná, CEP:, Toledo - PR, 85919-899

DNS records live

NS
  • ns-1058.awsdns-04.org
  • ns-130.awsdns-16.com
  • ns-1687.awsdns-18.co.uk
  • ns-546.awsdns-04.net
MX
  • 10 mxa.mailgun.org
  • 10 mxb.mailgun.org
Verified for
  • Meta

Email authentication partial

SPF
v=spf1 include:mailgun.org ~all
softfail (~all)
DMARC
v=DMARC1; p=none; pct=100; fo=1; ri=3600; rua=mailto:461067@dmarc.mailgun.org,mailto:a808e531@inbox.ondmarc.com; ruf=mailto:461067@dmarc.mailgun.org,mailto:a808e531@inbox.ondmarc.com;
policy: none (monitoring only)
DKIM
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt0eWULG91w2xTdiKl+r9fEbl2oyR7HAEKz3vNQgiPW5yerb3UeSgOoAX10w0Bwlct4evffozgfauIcdI4C…
  • s2: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1ErMEciYVYyQZ4gyjIV6f/EkVdtV/dLoPuEOuBuhXpOjoFTjmUSpjzo9aWvFt8AIzZMuY/V8p/EAjnEJT4…
selectors probed

Certificate (current)

E8
from 2026-03-31 to 2026-06-29
Expires in 39 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://naty.app/pt/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
DENY
permissions-policy
camera=(), microphone=(), geolocation=()
x-content-type-options
nosniff
content-security-policy
default-src 'self'; script-src 'self' 'nonce-6156b3c4-a78b-452c-ad79-a13ad7395bf9' 'unsafe-inline' 'unsafe-eval' blob: https://challenges.cloudflare.com; worker-src 'self' blob:; style-src 'self' 'unsafe-inline'; style-src-elem 'self' 'unsafe-inline'; style-src-attr 'unsafe-inline'; img-src 'self' data: https://lh3.googleusercontent.com https://*.googleusercontent.com https://*.google.com https://*.naty.app; font-src 'self' data:; object-src 'none'; frame-src https://challenges.cloudflare.com; frame-ancestors 'none'; base-uri 'self'; form-action 'self'; connect-src 'self' https://challenges.cloudflare.com https://*.googleusercontent.com
strict-transport-security
max-age=31536000; includeSubDomains; preload, max-age=63072000; preload

Links to (5)

Linked from (1)