nedgia.es
HTML metadata
Technology
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (5)
- ajax.googleapis.com×2
- player.vimeo.com×2
- js-eu1.hs-scripts.com×1
- sentndg-eeff1d583ba3.herokuapp.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- a1-26.akam.net
- a14-64.akam.net
- a16-65.akam.net
- a18-65.akam.net
- a7-65.akam.net
- a9-64.akam.net
- ns3.naturgy.eu
- MX
-
- 10 cluster5.eu.messagelabs.com
- 20 cluster5a.eu.messagelabs.com
- 70 nedgia-es.mail.protection.outlook.com
- TXT
-
Show 12 TXT records
_7o2r8azlqaga35asfdjw1xuqspov71a_dlyah0ae1mnd3hp2o3shoag3yny1dy6145788679.spf03.hubspotemail.netm20qqbtlt7t0xrjygcth8db1b5nwlf1bz2vx779mfzvs174yh2j4j8flggnfh7xvnedgiaprod.azurewebsites.net519bsc0pn147062hpxqcr14m8l6ssytgatlassian-sending-domain-verification=b91fe7ef-edbf-4e9a-8db0-489c06ae24843hcm3wzzy0yvqv95prhcftl3y9brmpqxG0A4S54988m7zw5mwnzqqw60zm9zgytpczdqz0gwlvinclude:145788679.spf03.hubspotemail.net
- Verified for
-
- Meta
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf.naturgy.com include:spf.protection.outlook.com include:spf.messagelabs.com include:145788679.spf03.hubspotemail.net include:spf.mailjet.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:naturgy_rua@dmarc.cybersoc.deloitte.es; ruf=mailto:naturgy_ruf@dmarc.cybersoc.deloitte.es; fo=1policy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnqDM1iH3HRz0TRSWEpLu5pUqRa+4zEjZBXShz9E7nNerbZlh7x77ICKWhQ1eBpQB2PcqKTycNuSTG0… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - smtpapi:
k=rsa;t=s;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76yo…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 188 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
DENY- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(self), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=(), clipboard-read=(), clipboard-write=(), gamepad=(), speaker-selection=(), conversion-measurement=(), focus-without-user-activation=(), hid=(), idle-detection=(), interest-cohort=(), serial=(), sync-script=(), trust-token-redemption=(), unload=(), window-placement=(), vertical-scroll=()- x-content-type-options
nosniff- content-security-policy
style-src-elem 'self' 'unsafe-inline' https://www.googletagmanager.com https://sdk.inbenta.io https://fonts.googleapis.com https://player.vimeo.com/ https://vimeo.com/ https://www.youtube.com/; img-src 'self' 'unsafe-inline' blob: data: https://145788679.fs1.hubspotusercontent-eu1.net https://perf-eu1.hsforms.com https://hubspot-no-cache-eu1-prod.s3.amazonaws.com https://trc.taboola.com https://track-eu1.hubspot.com https://track.hubspot.com/ https://perf-na1.hsforms.com https://forms-eu1.hsforms.com https://track.hubspot.com https://googleads.g.doubleclick.net https://fonts.gstatic.com https://s.w.org https://ad.doubleclick.net https://nedgia-chat.cognitive-contact-center.com https://cdn.cookielaw.org https://c.clarity.ms/ https://sentndg-eeff1d583ba3.herokuapp.com https://www.google.com https://www.google.es/ https://secure.gravatar.com https://www.googletagmanager.com https://www.facebook.com https://www.google-analytics.com https://www.nedgia.es/ https://sentimernedgia.herokuapp.co- strict-transport-security
max-age=31536000; includeSubDomains