zener.es
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (1)
- code.jquery.com×2
Social
DNS records live
- NS
-
- ns1.zener.es
- ns2.zener.es
- ns3.zener.es
- MX
-
- 1 d315504.a.ess.de.barracudanetworks.com
- 10 d315504.b.ess.de.barracudanetworks.com
- TXT
-
MS=5C95821E2C4547E9B6AACDF2D626506D2816DE36
- Verified for
-
- Microsoft 365
- OpenAI
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:informatica@zener.es; ruf=mailto:informatica@zener.es; pct=100policy: reject (enforced) - DKIM
-
- google:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDik9yBHN/+2DSB1sPbefYS6WoVw3I8bUuzKAqXMIyWsp1fOn7oEuKJBbWNPv0Dl2ucTs5s3lD37e4EGvNV48… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsc+KJ27/yEHIZ5sbTvViaqKhJgFJT2OIJ4/6foULi710TK8+jmMLbcY5akdEehd6PjIGv5/OFui+8V… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2KYG5IGQnxP+b+LZsS9K4cF2HTvcAZkwO6+YBBDo02L2ZMpQbrmZI2CbTzzxRMc3wRbYqoh5X+v/+r…
selectors probed - google:
Certificate (current)
R13
Expires in 43 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
block-all-mixed-content; connect-src 'self' *.google-analytics.com *.googleapis.com https://*.google.com https://*.doubleclick.net/j/collect https://cdn.plyr.io https://noembed.com https://*.facebook.com; font-src 'self' data: *.gstatic.com; frame-ancestors 'self'; frame-src 'self' *.google.com/recaptcha/ *.gstatic.com/recaptcha/ *.googletagmanager.com https://*.google.com youtube.com *.youtube.com youtube-nocookie.com *.youtube-nocookie.com https://*.vimeo.com/video/ https://www.facebook.com https://platform.twitter.com https://www.instagram.com https://*.slideshare.net; img-src 'self' data: *.ggpht.com *.google-analytics.com https://*.google.com/ads/ga-audiences *.googletagmanager.com *.gstatic.com *.doubleclick.net/r/ *.googleapis.com *.vimeocdn.com *.ytimg.com; manifest-src 'self' https://accounts.google.com/o/oauth2/auth; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.google.com/recaptcha/ https://*.gstatic.com/recaptcha/ google-analytics.com *.google-analytics.com goog- strict-transport-security
max-age=63072000; includeSubDomains
Links to (5)
Linked from (1)
- nobe.es×2