nombdi.es

.es crawl

First seen 2026-04-14 · Last seen 2026-05-08 · ok HTTP/1.1 200 3057 ms crawled 2026-05-08

CA · 23.227.38.65 · AS13335 Cloudflare, Inc.

Reputation 92/100 no dmarc policy

ecommerce

HTML metadata

Title
STORE - BUY NOW
Language
ES

Technology

CDN
Cloudflare
CMS
Shopify
Fonts
  • Google Fonts

Third-party hosts loaded (4)

  • cdn.shopify.com×93
  • fonts.googleapis.com×2
  • fonts.gstatic.com×1
  • shop.app×1

Social

DNS records live

NS
  • arturo.ns.cloudflare.com
  • holly.ns.cloudflare.com
MX
  • 10 mx2.hostinger.com
  • 5 mx1.hostinger.com

Email authentication weak

SPF
v=spf1 include:_spf.mail.hostinger.com ~all
softfail (~all)
DMARC
not published
DKIM
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

E8
from 2026-04-27 to 2026-07-26
Expires in 67 days

HTTP security headers

Header hygiene 75/100 Checked live page: https://nombdi.es/collections/all

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
base-uri 'self'; default-src 'self' https://cdn.shopify.com https://shopify.com 'nonce-ff4bd54e5cf727f312c79fe9702c3fad'; frame-ancestors 'none'; style-src 'self' 'unsafe-inline' https://cdn.shopify.com; connect-src https://cdn.shopify.com 'self' https://monorail-edge.shopifysvc.com https://f5409c-2.myshopify.com https://f5409c-2.myshopify.com
strict-transport-security
max-age=31536000

Links to (4)

Linked from (1)