olx.pl
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- nginx
- CMS
- Gatsby
- Analytics
-
- Google Analytics
- Google Tag Manager
- Ads
-
- Google Ads (DoubleClick)
- Cookie consent
-
- OneTrust
Third-party hosts loaded (22)
- ireland.apollo.olxcdn.com×28
- categories.olxcdn.com×26
- cdn.slots.baxter.olx.org×3
- www.olx.kz×2
- www.olx.ua×2
- www.olx.uz×2
- 531717763×1
- cdn.cookielaw.org×1
- frankfurt.apollo.olxcdn.com×1
- img-resizer.prd.01.eu-west-1.eu.olx.org×1
- js-agent.newrelic.com×1
- ninja.data.olxcdn.com×1
- pl.tablica×1
- securepubads.g.doubleclick.net×1
- static.criteo.net×1
- tracking.olx-st.com×1
- www.google-analytics.com×1
- www.googletagmanager.com×1
- www.olx.bg×1
- www.olx.com×1
- www.olx.pt×1
- www.olx.ro×1
Social
DNS records live
- NS
-
- ns1.olx.pl
- ns2.olx.pl
- ns3.olx.pl
- ns4.olx.pl
- MX
-
- 10 aspmx.l.google.com
- 20 alt1.aspmx.l.google.com
- 30 aspmx2.googlemail.com
- TXT
-
Show 8 TXT records
jamf-site-verification=HNjXkfEAt8yOvtu4ysulOgstrike-domain-verification=b7b34df8-d62d-4118-95b9-c5dd2fa54531_u3w19to6xedw7esolw5z4qzps30gvyqbitrise-verification=06c19ea29130acb8-lKG5AWURenKPdatadome-domain-verify=1jInokUpB06ddak7x5CDxMZxO9k7kwGIdocker-verification=0f912419-1e41-4fef-a672-2e1aa94b01efeXb9dWsQqV0T-B5ndkKgmgelevenlabs=8RVYe4dOBGq2xwPsFL2sydcV3LRnoo_cgPGzw9E_U9s
- Verified for
-
- Anthropic
- Apple
- Atlassian
- Brevo
- Cursor
- Microsoft 365
- Miro
- OneTrust
- OpenAI
- TeamViewer
- Workplace
- Yahoo
- Zapier
- Zoom
Email authentication strong
- SPF
-
v=spf1 ip4:192.161.144.0/20 ip4:185.12.80.0/22 ip4:188.172.128.0/20 ip4:216.198.0.0/18 ip4:103.151.192.0/23 ip4:199.255.192.0/22 ip4:199.127.232.0/22 ip4:54.240.0.0/18 ip4:69.169.224.0/20 ip4:23.249.208.0/20 ip4:23.251.224.0/19 ip4:76.223.176.0/20 ip4:54.240.64.0/19 ip4:91.230.36.0/23 ip4:178.249.92.0/28 ip4:185.70.36.0/23 ip4:185.100.228.0/22 ip4:185.192.100.0/22 ip4:185.233.160.0/22 ip4:152.111.195.0/24 ip4:197.80.198.14 ip4:197.80.198.15 ip4:197.80.198.16 ip4:41.86.109.24/29 include:_spf.salesforce.com include:_spf.google.com include:_spf.redlink.pl include:mg-spf.greenhouse.io include:mail.zendesk.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:k6zc3g74cn@rua.powerdmarc.com; ruf=mailto:k6zc3g74cn@ruf.powerdmarc.com; fo=1;policy: reject (enforced) - DKIM
-
- default:
v=DKIM1; g=*; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDAqB0ia/Ng5rk8NlFId9tMrRikb9gon49XKb3KQlqfVZ8fg0xqtp8270TS23IhSt9WjnPZ26kteFbDp… - google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCilN3FxnB5B2oQonHcXOhg2/w5KiwnEJ7lgRDF0yrKuFAFxBmZq/NHC3DHTnt7oRoRQncH9NRSj25D+PUYoU… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - default:
Certificate (current)
Amazon RSA 2048 M01
Expires in 136 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=*, cross-origin-isolated=(self), display-capture=(self), document-domain=(self), encrypted-media=(self), execution-while-not-rendered=(self), execution-while-out-of-viewport=(self), fullscreen=*, geolocation=*, gyroscope=(), magnetometer=(), microphone=(self), midi=(), navigation-override=(self), payment=*, picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(self), sync-xhr=(), usb=(), web-share=*, xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' * ;style-src https: data: 'unsafe-inline';img-src https: blob: data:;child-src data:;object-src 'none';worker-src blob: https://*.olx.pl ;frame-src https: blob:;script-src https: 'unsafe-inline' 'unsafe-eval';font-src data: 'self' https: ;connect-src 'self' * blob:- strict-transport-security
max-age=15552000; includeSubDomains- cross-origin-resource-policy
cross-origin
Links to (14)
- youtube.com×1
- tiktok.com×1
- pinterest.com×1
- otomoto.pl×1
- otodom.pl×1
- olxgroup.com×1
- olx.pt×1
- obido.pl×1
- linkedin.com×1
- instagram.com×1
- google.com×1
- fixly.pl×1
- facebook.com×1
- apple.com×1
Linked from (21)
- aromma.pl×1
- zlotmorsow.mielno.pl×1
- galeriareguly.pl×1
- bikestorebielsko.pl×1
- nex-group.pl×1
- quay.pl×1
- ebikepro.pl×1
- influencermarketing.org.pl×1
- olx.pt×1
- onlybestminers.com×1
- kross.pl×1
- qvertech.eu×1
- zignagovetro.com×1
- fixly.pl×1
- hsm-staszic.pl×1
- sdcm.pl×1
- sokolka.tv×1
- otodom.pl×1
- elektronikmedia.pl×1
- olx.com×1
- ouzhou123.com×1