setsuzei-hikaku.com

.com crawl

First seen 2026-05-02 · Last seen 2026-06-03 · ok HTTP/1.1 200 1205 ms crawled 2026-05-28

JP · 85.131.213.99 · AS131965 Xserver Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
節税比較ポータル | 自社に最適な節税対策を
Description
決算対策や資産形成に。GPUから車両、環境設備まで、自社の状況に合った節税商品を条件から簡単に絞り込めます。国税OB監修・無料相談受付中。
Language
ja
Canonical
https://setsuzei-hikaku.com/

Technology

Server
nginx
Analytics
  • Google Tag Manager

Third-party hosts loaded (1)

  • www.googletagmanager.com×2

Registration

Registrar
XServer, Inc.
Created
2025-12-08
Expires
2026-12-08 185 days left
Updated
2025-12-08
Name servers
  • ns1.xserver.jp
  • ns2.xserver.jp
  • ns3.xserver.jp
  • ns4.xserver.jp
  • ns5.xserver.jp

DNS records live

NS
  • ns1.xserver.jp
  • ns2.xserver.jp
  • ns3.xserver.jp
  • ns4.xserver.jp
  • ns5.xserver.jp
MX
  • 0 setsuzei-hikaku.com
Verified for
  • Google

Email authentication partial

SPF
v=spf1 +a:sv16718.xserver.jp +a:setsuzei-hikaku.com +mx include:spf.sender.xserver.jp include:_spf.google.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:yoshinori@lagoon-gk.com;
policy: none (monitoring only)
DKIM
  • default: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApwEFWLbaYyBrLZQDTys+AFgozeLjs3VbPKh8axLslwY0Y+QlBzJVHT4N/VRC4Viwy+DMH+RRMAuVZY…
selectors probed

Certificate (current)

R13
from 2026-04-07 to 2026-07-06
Expires in 30 days

HTTP security headers

Header hygiene 90/100 Checked live page: https://setsuzei-hikaku.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
SAMEORIGIN
permissions-policy
geolocation=(), microphone=(), camera=()
x-content-type-options
nosniff
content-security-policy
default-src * 'unsafe-inline' 'unsafe-eval' data: blob:; script-src * 'unsafe-inline' 'unsafe-eval' data: blob:; style-src * 'unsafe-inline' data: blob:; img-src * data: blob:; font-src * data:; connect-src * ws: wss:; frame-src *; object-src *; media-src *; worker-src * blob:; child-src * blob:; base-uri *; form-action *;
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (1)

Linked from (3)