virusfree.cz
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- www.google.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- REG-ACTIVE24
- Created
- 2004-05-25
- Expires
- 2028-05-24 721 days left
- Updated
- 2025-04-02
- Name servers
-
- ns1.websupport.cz
- ns2.websupport.cz
- ns3.websupport.eu
DNS records live
- NS
-
- ns1.websupport.cz
- ns2.websupport.cz
- ns3.websupport.eu
- MX
-
- 12801 ax.virusfree.cz
- 12817 bx.virusfree.cz
- 12833 cx.spamfree.cz
- 12849 dx.spamfree.cz
- TXT
-
g9dem55ebnsq2i52hvmckkicj3.
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 include:spf.smartemailing.cz redirect=spfsoft.virusfree.czmissing all - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarcar@excello.cz; ruf=mailto:dmarcfr@excello.czpolicy: quarantine - DKIM
-
- default:
v=DKIM1; k=rsa; p=MHwwDQYJKoZIhvcNAQEBBQADawAwaAJhAMW9bAVWaS+nxBjZWKfvILZiEhLiC9hk2Y1TApnZyk0y4lOHoODdQyjkT06moTyjf7RdaILNpQ9ozAtiuwWzO4igrG…
selectors probed - default:
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 5 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
style-src 'self' *.googleapis.com se-forms.cz 'unsafe-inline'; default-src 'self' *.googleapis.com *.googletagmanager.com *.gstatic.com *.smartemailing.cz; connect-src 'self' *.googleapis.com *.googletagmanager.com *.google-analytics.com *.smartemailing.cz stats.g.doubleclick.net 'unsafe-inline'; script-src 'self' *.googleapis.com *.googletagmanager.com *.google-analytics.com *.smartemailing.cz se-forms.cz *.google.com *.gstatic.com 'unsafe-inline' 'unsafe-eval'; frame-src 'self' *.googleapis.com *.googletagmanager.com *.google-analytics.com *.smartemailing.cz se-forms.cz *.google.com *.gstatic.com 'unsafe-inline' 'unsafe-eval'; img-src 'self' *.googleapis.com *.googletagmanager.com *.google-analytics.com *.gstatic.com images.ctfassets.net *.google.com *.google.cz data: 'unsafe-inline';
Linked from (2)
- kdu.cz×1
- excello.cz×1