summitto.com

.com crawl

First seen 2026-05-27 · Last seen 2026-05-30 · ok HTTP/1.1 200 314 ms crawled 2026-05-30

US · 151.101.65.195 · AS54113 Fastly, Inc.

Reputation 94/100 dmarc monitor-only

Classifying

HTML metadata

Title
summitto – confidential real-time reporting – Combat VAT fraud, reduce the administrative burden of companies and increase compliance
Language
en

Open Graph

url
https://summitto.com
title
Summitto - confidential real-time reporting
description
Summitto - confidential real-time reporting

Technology

jQuery
3.6.0

Third-party hosts loaded (1)

  • www.gstatic.com×1

Social

Registration

Registrar
Key-Systems GmbH
Created
2017-09-27
Expires
2026-09-27 118 days left
Updated
2025-11-26
Name servers
  • ns0.transip.net
  • ns1.transip.nl
  • ns2.transip.eu

DNS records live

NS
  • ns0.transip.net
  • ns1.transip.nl
  • ns2.transip.eu
MX
  • 1 aspmx.l.google.com
  • 10 alt3.aspmx.l.google.com
  • 10 alt4.aspmx.l.google.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
Verified for
  • Google

Email authentication partial

SPF
v=spf1 include:_spf.google.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc@summitto.com
policy: none (monitoring only)
DKIM
  • k1: k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
  • mail: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDF0HnLVdXKJ2EEV0Uko+HCuV0OA7xLQRA6wGZ2xF9alA/NXJXrdBhwH0DJKCsypENaEmjws+y8EXek2NCgxv…
selectors probed

Certificate (current)

WR3
from 2026-04-28 to 2026-07-27
Expires in 56 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://summitto.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer
x-frame-options
DENY
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-inline' *.summitto.com *.lending-engine.com *.gstatic.com *.googleapis.com https://stackpath.bootstrapcdn.com https://cdnjs.cloudflare.com https://code.jquery.com cdn-images.mailchimp.com summitto.us16.list-manage.com s3.amazonaws.com *.googletagmanager.com
strict-transport-security
max-age=31556926

Links to (2)

Linked from (1)