aerztederwelt.org
HTML metadata
Technology
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (7)
- privacy-proxy.usercentrics.eu×3
- web.cmp.usercentrics.eu×2
- api.usercentrics.eu×1
- app.mailjet.com×1
- app.usercentrics.eu×1
- gmpg.org×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Registrar
- Cronon GmbH
- Created
- 2000-02-08
- Expires
- 2027-02-08 263 days left
- Updated
- 2025-08-17
- Name servers
-
- ns3-07.azure-dns.org
- ns1-07.azure-dns.com
- ns2-07.azure-dns.net
- ns4-07.azure-dns.info
DNS records live
- NS
-
- ns1-07.azure-dns.com
- ns2-07.azure-dns.net
- ns3-07.azure-dns.org
- ns4-07.azure-dns.info
- MX
-
- 0 aerztederwelt-org.mail.protection.outlook.com
- Verified for
-
- Apple
- Canva
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.mailjet.com include:mailgun.org include:_spf.mailcontrol.conova.com a:asponline.ifunds-germany.de -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:dmarc@aerztederwelt.org; ruf=mailto:dmarc@aerztederwelt.org; fo=1; adkim=s; aspf=spolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCRg9Tgo2q68YY9HmmgjHWXa4SCojFs6S+98vdEfHN9h5VC9AXnXsFq8MAsJL+G7bNlD/ARagiuh0ZeigLZ5m…
selectors probed - selector1:
Certificate (current)
E8
Expires in 77 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin, strict-origin-when-cross-origin, no-referrer- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self'; base-uri 'self'; object-src 'self'; frame-ancestors 'self'; upgrade-insecure-requests; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.usercentrics.eu https://*.mailjet.com https://*.fundraisingbox.com https://js.stripe.com https://www.googletagmanager.com https://www.google.com https://*.google-analytics.com https://*.googleadservices.com https://*.doubleclick.net https://*.hotjar.com https://connect.facebook.net https://*.youtube.com https://www.youtube-nocookie.com https://s.ytimg.com https://challenges.cloudflare.com; style-src 'self' 'unsafe-inline'; img-src 'self' blob: data: https:; font-src 'self' data:; frame-src 'self' blob: https://*.aerztederwelt.org https://*.usercentrics.eu https://*.fundraisingbox.com https://js.stripe.com https://pay.google.com https://www.googletagmanager.com https://*.youtube.com https://www.youtube-nocookie.com https://forms.office.com https://challenges.cloudflare.com; worker-src 'self' blob:; connect-src 'self' https:/- strict-transport-security
max-age=31536000, max-age=31556926; includeSubDomains, max-age=31536000; includeSubDomains- content-security-policy-report-only
default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'self'; form-action 'self'; script-src 'self' https://*.usercentrics.eu https://*.mailjet.com https://*.fundraisingbox.com https://js.stripe.com https://www.googletagmanager.com https://www.google.com https://*.google-analytics.com https://*.googleadservices.com https://*.doubleclick.net https://*.hotjar.com https://connect.facebook.net https://*.youtube.com https://www.youtube-nocookie.com https://s.ytimg.com https://challenges.cloudflare.com; style-src 'self' 'unsafe-inline'; img-src 'self' blob: data: https:; font-src 'self' data:; frame-src 'self' https://*.aerztederwelt.org https://*.usercentrics.eu https://*.fundraisingbox.com https://js.stripe.com https://pay.google.com https://www.googletagmanager.com https://*.youtube.com https://www.youtube-nocookie.com https://forms.office.com https://challenges.cloudflare.com; worker-src 'self'; connect-src 'self' https://*.usercentrics.eu https://www.google.com https:/