vitv.es
HTML metadata
Technology
- CDN
- Azure Front Door
Third-party hosts loaded (3)
- cdnjs.cloudflare.com×7
- cloud.typography.com×2
- images.mediapro.tv×1
DNS records live
- NS
-
- ns1-04.azure-dns.com
- ns2-04.azure-dns.net
- ns3-04.azure-dns.org
- ns4-04.azure-dns.info
- MX
-
- 0 vitv-es.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
w07Sl5IeMhRoVy5+WgptR4d56URkTqPe5Q1uVn4+WWuaBdEVMEMVj8JscXEcJ6bvnMXcZuiYD2jOFMKlHj0WjQ==knowbe4-site-verification=1eb18634a417aaf8e041615b4bbfe38catlassian-domain-verification=43KoC7xgzCXPd7nAWxm0gPlxOdsrmNOE1npJILhnraq6QWsdclFvlfJjcca7DdXlgoogle-site-verification=IvguM-xldOMP0LQCfAMN0Hnz6acoysul6gnEABiKWzcMS=ms74261549_globalsign-domain-verification=MJNcHLnknST3HkK5E-vIVdXzCWmEpjfRR-LUsC7VXR
Email authentication weak
- SPF
-
v=spf1 include:imagina-media.com -allstrict (-all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuM30O5QjKoCsfhVraurFYSFWCfdpzJX/qVmgqkhvfOo89EG7HeiyZ1Kjwyl0y6AUEWCQ2QMunp/yMV…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 74 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self), microphone=()- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; child-src 'self'; connect-src 'self' https: https://cdnjs.cloudflare.com https://cloud.typography.com; default-src 'self' https:; font-src 'self' https: data: https://cloud.typography.com https://fonts.gstatic.com; form-action 'self'; frame-src 'self' https://www.youtube.com https://www.youtube-nocookie.com https://youtu.be; img-src 'self' https: data:; media-src https://m.youtube.com https://www.youtube.com https://d21v263fkuo8rk.cloudfront.net https://vod-progressive.akamaized.net https://d16vhwy5squw7q.cloudfront.net https://youtu.be https://dxscqeuo31lkw.cloudfront.net https://www.youtube-nocookie.com https://vod-progressive-ak.vimeocdn.com; object-src 'self'; script-src https://maps.googleapis.com https://www.google-analytics.com https://apis.google.com https://www.youtube.com/iframe_api https://www.youtube.com https://images.mediapro.es https://www.googletagmanager.com 'self' https: data: 'unsafe-inline' 'unsafe-hashes' 'unsafe-eval'; style-src https://cloud.typo- strict-transport-security
max-age=31536000; includeSubDomains