AIR NEW ZEALAND LIMITED
Excellent security posture. Strong in: dns, tls, headers, files, general.
The CSP includes 'unsafe-inline' or 'unsafe-eval' which weakens protection.
Recommendation: Remove unsafe directives and use nonces or hashes instead.
No DKIM records found for common selectors. DKIM provides email authentication.
Recommendation: Configure DKIM signing for your email service.
No security.txt file was found. This file helps security researchers contact you.
Recommendation: Add a security.txt file at /.well-known/security.txt per RFC 9116.
Valid certificate, HSTS enabled, and TLS 1.3 supported.
Essential security headers (CSP, X-Frame-Options, X-Content-Type-Options) are configured.
No robots.txt file was found at the root.
Recommendation: Consider adding a robots.txt file to control crawler behavior.