pggfamily.pl
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Ads
-
- Google AdSense
Third-party hosts loaded (2)
- www.googletagmanager.com×2
- pagead2.googlesyndication.com×1
Social
DNS records live
- NS
-
- zit-dns01.kwsa.pl
- zit-dns02.kwsa.pl
- MX
-
- 20 mail1.pgg.pl
- 20 mail2.pgg.pl
- TXT
-
mojecertpl-site-verification-3g213UYlna0n2W0tmrtxnkZrqi19g8ES
Email authentication strong
- SPF
-
v=spf1 mx a:mail1.pgg.pl a:mail2.pgg.pl a:zit-exed01.kwsa.pl a:zit-exed02.kwsa.pl -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:dmarc_raports@pgg.pl; ruf=mailto:dmarc_raports@pgg.pl; rf=afrf; sp=quarantine; fo=1; adkim=r; aspf=spolicy: quarantine · sp=quarantine - DKIM
- no key found at common selectors
Certificate (current)
Certum Extended Validation CA SHA2
Expires in 18 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
ALLOW-FROM https://kiosk.pgg.pl/- x-content-type-options
nosniff- content-security-policy
default-src 'self' data: 'unsafe-inline' 'unsafe-eval' https://ggpht.com https://*.ggpht.com https://googleapis.com https://*.googleapis.com https://gstatic.com https://*.gstatic.com https://doubleclick.net https://*.doubleclick.net https://ytimg.com https://*.ytimg.com https://google.com https://*.google.com https://google-analytics.com https://*.google-analytics.com https://googletagmanager.com https://*.googletagmanager.com https://youtube.com https://*.youtube.com https://google.pl https://*.google.pl https://*.pgg.pl https://*.googlesyndication.com https://*.adtrafficquality.google;- strict-transport-security
max-age=16070400; includeSubDomains