pgesystemy.pl
HTML metadata
Social
Contact
- Phone
DNS records live
- NS
-
- dns01.gkpge.pl
- dns02.gkpge.pl
- sec1.gkpge.pl
- sec2.gkpge.pl
- TXT
-
Show 4 TXT records
6c68a82effd1545393977fb37acd7494128bc438ea984ad28d24a9cd48e33f75a85b42a7adc5bdc7ed396eb99161169d7533921ad8ac53e09a625f59b6443ad8680638262862115e2ad9bb6ad3ed72b8dab3f433395196a6bb7bafc0f8ddcrovag_verification_token=AC777B4B4069405CA5DC5EFDE0F4225B
Email authentication no MX
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; adkim=s; aspf=s;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
Certum DV TLS G2 R39 CA
Expires in 261 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
style-src 'self' fonts.googleapis.com www.googletagmanager.com *.google-analytics.com 'unsafe-inline' 'unsafe-eval'; script-src 'self' googleads.g.doubleclick.net cdn.inis360.com connect.facebook.net cdn.tmtarget.com www.google.com www.gstatic.com *.google-analytics.com *.googletagmanager.com 'unsafe-inline' 'unsafe-eval'; img-src 'self' www.facebook.com *.google.com *.google.pl www.googletagmanager.com *.google-analytics.com data: content: fonts.gstatic.com *.openstreetmap.org; frame-src 'self' www.google.com ssl.gstatic.com recaptcha.google.com *.youtube.com stream360.pl; font-src 'self' data: fonts.gstatic.com fonts.googleapis.com; default-src 'self' data: gap: https://ssl.gstatic.com; connect-src 'self' *.openstreetmap.org fonts.googleapis.com fonts.gstatic.com *.google-analytics.com *.analytics.google.com pge.notoria.pl stats.g.doubleclick.net;- strict-transport-security
max-age=31536000
Links to (6)
- youtube.com×1
- twitter.com×1
- linkedin.com×1
- instagram.com×1
- gkpge.pl×1
- facebook.com×1