surtec.com
HTML metadata
Technology
- Server
- Apache
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (3)
- consent.cookiebot.com×1
- img.youtube.com×1
- js.hcaptcha.com×1
Social
Registration
- Registrar
- COREhub, S.R.L.
- Created
- 1997-02-21
- Expires
- 2028-02-22 643 days left
- Updated
- 2026-02-22
- Name servers
-
- ns17.knipp.net
- ns2.knipp.de
- ns3.knipp.de
DNS records live
- NS
-
- ns17.knipp.net
- ns2.knipp.de
- ns3.knipp.de
- MX
-
- 10 surtec-com.mail.protection.outlook.com
- TXT
-
Show 8 TXT records
MS=ms78644810_zwpjhyij3bncfmn944f79uv4fxlnjec_8aern98to7162itdc95xfs7fjhlbyla2cm6734wpt58g61ygnv671db8crgcd75_7uuy3uu48z08yzt2xbwtnstavpw0m2xz7qvnq02qmx9bpdv7p17bwc95rhtcndggoogle-site-verification=xIG4k_rj8u3IVnHL4q_a3lRW9QGhJem1yoVBdZH8uXM_kdq9n2o35l44n0ix29k57r1wyhvwb0r
Email authentication weak
- SPF
-
v=spf1 ip4:5.9.96.176 ip4:85.10.213.41 ip4:62.134.187.0/26 ip4:108.166.45.120 ip4:50.31.43.169 a:mail.yathos.it include:spf.protection.outlook.com include:_spfededoc.idline.fr -allstrict (-all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxuUriOK9t3x1dq2VVV3yIWpsTzly/YpmdEfVnW66hodDcPgu5HMyycl9ZVY4mTC1omnw/4Fz0VcsDB…
selectors probed - selector1:
Certificate (current)
R13
Expires in 37 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(self "https://cdn.iframe.ly"), battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=*, execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(self "https://cdn.iframe.ly"), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=(self "https://cdn.iframe.ly"), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=(), clipboard-read=(), clipboard-write=(), gamepad=(), speaker-selection=()- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'none'; form-action 'self'; default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https:; style-src 'self' 'unsafe-inline' fast.fonts.net tagmanager.google.com www.googletagmanager.com; img-src 'self' data: https:; font-src 'self' data: www.googletagmanager.com; connect-src 'self' https:; frame-src 'self' https:;- strict-transport-security
max-age=63072000; includeSubDomains- cross-origin-opener-policy
same-origin- cross-origin-resource-policy
same-site