airport-nuernberg.de
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- AmazonS3
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (5)
- cdn0.scrvt.com×7
- api.scrivito.com×2
- app.usercentrics.eu×2
- privacy-proxy.usercentrics.eu×2
- api.usercentrics.eu×1
Social
Registration
- Updated
- 2023-04-02
- Name servers
-
- ns1.airport-nuernberg.de.
- ns2.airport-nuernberg.de.
- ns3.airport-nuernberg.de.
- ns4.airport-nuernberg.de.
DNS records live
- NS
-
- ns1.airport-nuernberg.de
- ns2.airport-nuernberg.de
- ns3.airport-nuernberg.de
- ns4.airport-nuernberg.de
- MX
-
- 5 de-smtp-inbound-1.mimecast.com
- 5 de-smtp-inbound-2.mimecast.com
- TXT
-
swisssign-check=KxXV53t_qbBmU0c6YIbNAe4PXhwQuoVadis=7ad6065d-13a8-47a9-9447-3fdc1c287203
- Verified for
-
- Apple
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:62.128.1.0/24 ip4:213.95.71.0/24 ip4:213.95.72.0/22 ip4:213.95.33.60 include:spf.protection.outlook.com include:spf-de.emailsignatures365.com include:_spf.psm.knowbe4.com include:de._netblocks.mimecast.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:39b1fc8837cf742@rep.dmarcanalyzer.com; ruf=mailto:39b1fc8837cf742@for.dmarcanalyzer.com; fo=1;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCYpg1DzeOe9KPxSfT3e/4dEcBcvBXiacUD3+RLRllFi17CudruWA53yDUlcaTmVJE2rnW41oWNOPovdFUSgb… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCzXtwTWN5cskn7PaUc6Xmd1pkuIZw15wdkdtJFgiw2YcQklsBAtl9/jM6zBiSdaAVlMNoZeZ+ONctsCvq99u…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M01
Expires in 161 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
base-uri 'none'; default-src 'self' data: blob: https: wss:; style-src 'self' data: https: wss: 'unsafe-inline'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://api.scrivito.com https://assets.scrivito.com https://www.google-analytics.com https://webmedia.ypsilon.net https://api.specials.de https://b2b.specials.de https://flr.ypsilon.net https://code.etracker.com https://www.etracker.de/ https://widgets.regiondo.net/ https://app.cituro.com/ https://app.usercentrics.eu https://privacy-proxy.usercentrics.eu https://webmedia.ypsilon.net https://js.stripe.com https://www.google.com https://www.gstatic.com https://www.regiondo.de https://widgets.regiondo.net https://player.livespotting.com https://widget-staging.moin.ai https://widget.moin.ai; object-src 'none'; block-all-mixed-content; frame-ancestors 'self' https://*.scrivito.com- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (6)
- gatestore.de×4
- facebook.com×4
- instagram.com×4
- linkedin.com×4
- xing.com×4
- youtube.com×4