arboe.at
HTML metadata
Technology
- jQuery
- 3.2.1 known XSS (<3.5)
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (4)
- cdn.priv.center×2
- fast.fonts.net×1
- maps.googleapis.com×1
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns1.a1.net
- dns2.a1.net
- dns3.a1.net
- MX
-
- 10 mx1-eu1.ppe-hosted.com
- 10 mx2-eu1.ppe-hosted.com
- TXT
-
offensity-domain-verification=6eb17024e7790496fd0eebe03542ea68b15826942cf5eb931d3ce99270f113f4ppe-a0501075095a3774998e2e63120d8ce010e137a7_ajhip4zpce1911kx4187b31yhj8p6jc
- Verified for
-
- Meta
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx ip4:80.120.70.53 ip4:193.228.86.27 ip4:80.121.147.149 a:fmlgw01.3-s.at a:fmlgw02.3-s.at a:fmlgw03.3-s.at include:spf.mlwrx.com include:_spf-eu.ppe-hosted.com ?allneutral (?all) - DMARC
-
v=DMARC1; p=none; adkim=s; aspf=rpolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 76 days
HTTP security headers
- present
-
- strict-transport-security
- x-content-type-options
- referrer-policy
- findings
-
- missing Content Security Policy
- missing frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff, nosniff- strict-transport-security
max-age=31536000; includeSubDomains