skodak.cz
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
- Fonts
-
- Google Fonts
Third-party hosts loaded (5)
- skodakcz.b-cdn.net×116
- fonts.googleapis.com×3
- www.googletagmanager.com×2
- cdn.puxdesign.cz×1
- fonts.gstatic.com×1
Social
Contact
- Phone
- Address
- Kvítkovická 1528, 763 61, Napajedla, CZ
DNS records live
- NS
-
- ns.forpsi.cz
- ns.forpsi.it
- ns.forpsi.net
- MX
-
- 10 mxavas.forpsi.com
Email authentication strong
- SPF
-
v=spf1 include:_spf.forpsi.com a mx -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantinepolicy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 83 days
HTTP security headers
- present
-
- content-security-policy
- content-security-policy-report-only
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
no-referrer- permissions-policy
camera=(), microphone=(), geolocation=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' data: https://api.dhl.com https://www.ppl.cz; script-src 'self' 'unsafe-inline' https://www.google.com https://www.youtube.com https://www.ppl.cz https://*.googletagmanager.com https://cdn.puxdesign.cz https://widget.packeta.com https://ps-maps.gls-czech.com https://api.dhl.com https://*.trustedshops.com https://www.gstatic.com https://bat.bing.com https://connect.facebook.net https://googleads.g.doubleclick.net https://*.clarity.ms https://c.bing.com https://www.heureka.cz https://cdn.heureka.group https://api.dpd.cz/ https://www.ppl.cz 'unsafe-eval' https://www.googletagmanager.com https://analytics.tiktok.com https://*.im9.cz https://*.seznam.cz; font-src 'self' data: https://fonts.googleapis.com https://fonts.gstatic.com https://api.dhl.com https://*.trustedshops.com https://www.ppl.cz; style-src 'self' https://fonts.googleapis.com 'unsafe-inline' https://www.ppl.cz https://cdn.puxdesign.cz https://www.googletagmanager.com; connect-src 'self' https://www.googl- content-security-policy-report-only
default-src 'self' data: https://api.dhl.com https://www.ppl.cz; script-src 'self' 'unsafe-inline' https://www.google.com https://www.youtube.com https://www.ppl.cz https://*.googletagmanager.com https://cdn.puxdesign.cz https://widget.packeta.com https://ps-maps.gls-czech.com https://api.dhl.com https://*.trustedshops.com https://www.gstatic.com https://bat.bing.com https://connect.facebook.net https://googleads.g.doubleclick.net https://*.clarity.ms https://c.bing.com https://www.heureka.cz https://cdn.heureka.group https://api.dpd.cz/ https://www.ppl.cz 'unsafe-eval' https://www.googletagmanager.com https://analytics.tiktok.com https://*.im9.cz; font-src 'self' data: https://fonts.googleapis.com https://fonts.gstatic.com https://api.dhl.com https://*.trustedshops.com https://www.ppl.cz; style-src 'self' https://fonts.googleapis.com 'unsafe-inline' https://www.ppl.cz https://cdn.puxdesign.cz https://www.googletagmanager.com; connect-src 'self' https://www.google.com https://*.goog