nevesdealmeida.pt
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Apache
- Analytics
-
- Google Tag Manager
- Matomo
Third-party hosts loaded (15)
- static.nevesdealmeida.pthttps×13
- static3.cegos.fr×2
- www.googletagmanager.com×2
- browsehappy.com×1
- cegos.matomo.cloud×1
- nevesdealmeida.protecaodedados.pt×1
- nevesdealmeida.workky.com×1
- schema.org×1
- www.cegos.com×1
- www.facebook.com×1
- www.instagram.com×1
- www.linkedin.com×1
- www.livroreclamacoes.pt×1
- www.w3.org×1
- www.youtube.com×1
Social
DNS records live
- NS
-
- pdns07.domaincontrol.com
- pdns08.domaincontrol.com
- MX
-
- 10 mxf.eu.mpssec.net
- 10 mxg.eu.mpssec.net
- TXT
-
nlnp42jjkc3o8vlntgpmmbqdib
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:servers.mcsv.net include:25784455.spf01.hubspotemail.net include:eu.transmail.net -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@nevesdealmeida.pt; ruf=mailto:dmarc@nevesdealmeida.pt;rf=iodefpolicy: none (monitoring only) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwcze0y3KT2mEvduaK2LhrWG13t5RbrG37XAUvA7qbxLLmm4969alRZYSyh9XAy0dgbSXIGci1+ieyT… - k1:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2waKCCTBwWOMF6SCn2+hPw2sBg0HbYFgWoyKGpNUUB76BLMGy63s29lvCUB5xQmvIKpaC5x4rORPeYhVpv… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvA5EkF/TbN+8XgDweAELK6HcI41AeR61yu2VrvOPQIiB0I48gTIslnVVUxOlhSASiq5x9M10gBI1YjEIYU…
selectors probed - selector1:
Certificate (current)
Sectigo RSA Domain Validation Secure Server CA
Expired 145 days ago
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'strict-dynamic' 'unsafe-eval' *.cegos.fr *.cegos.com *.cegos.es *.cegos.it *.cegoc.pt *.cegos-integrata.de *.cegos-channels-alliances.com *.cegos.ch *.cegos.co.uk *.cegos.com.sg *.cegoslatam.com *.groupecimes.com *.ib-formation.fr *.gstatic.com www.google.com/recaptcha www.googletagmanager.com tagmanager.google.com *.googleadservices.com www.google.fr/pagead/attribution *.google-analytics.com *.linkedin.com snap.licdn.com static.ads-twitter.com/uwt.js *.twitter.com cdn.syndication.twimg.com/timeline sjs.bizographics.com/insight.min.js googleads.g.doubleclick.net/pagead/viewthroughconversion *.hotjar.com *.marketo.net *.marketo.com connect.facebook.net www.youtube.com s.ytimg.com bam.nr-data.net bat.bing.com *.abtasty.com flagship.com cdn.segment.com *.matomo.cloud *.clarity.ms accounts.google.com *.easy-lms.com cdnjs.cloudflare.com cdn.botframework.com/botframework-webchat/latest/webchat-es5.js ajax.googleapis.com code.jquery.com c.leadlab.click scnem2.com static.hsa- strict-transport-security
max-age=31536000