amf.de
HTML metadata
Technology
- Server
- Apache
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (4)
- consent.cookiefirst.com×1
- magento.prd.amf.konekti.xyz×1
- www.googletagmanager.com×1
- www.youtube.com×1
Social
Contact
- Phone
- Address
- Waiblinger Str. 116, 70734, Fellbach, Baden-Wuerttemberg, DE
Registration
- Updated
- 2017-10-05
- Name servers
-
- b.ns14.net.
- c.ns14.net.
- d.ns14.net.
- ns1.circular.net.
- ns2.circular.net.
DNS records live
- NS
-
- b.ns14.net
- c.ns14.net
- d.ns14.net
- ns1.circular.net
- ns2.circular.net
- MX
-
- 5 mail.amf.de
- TXT
-
google-site-verification=QBNXpuPbR0SmtgwSMsuTSjkHj1HfnoXbrWP4LiZP5-A
Email authentication strong
- SPF
-
v=spf1 mx ip4:195.201.122.35 ip4:2.207.142.132 include:spf.mailjet.com mx ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=nonepolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 76 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com *.googleapis.com data: https://www.googletagmanager.com *.fontawesome.com data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com https://seo.mageplaza.com *.emailsys1a.net 'self' 'unsafe-inline'; frame-ancestors www.gstatic.com 'self'; frame-src bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.paypalobjects.com https://www.google.com/recaptcha/ *.braintreegateway.com *.paypal.com google.com *.google.com www.google.com secure.pay1.de payments.amazon.de jsctool.com www.jsctool.com js.playground.klarna.com *.tokenization.secure.payone.com *.konekti.xyz jobboard.easyhr.io amf-embedded.partcommunity.com *.emailsys1a.net 'self' 'unsafe-inline'; img-src data: widgets.magentocommerce.com www.googleadservices.com *.google-analytics.com googleads.g.doubleclic