avv-augsburg.de
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (2)
- cdn.eye-able.com×2
- translate-cdn.eye-able.com×1
Contact
- Phone
Registration
- Updated
- 2023-11-14
- Name servers
-
- ns1.vwork.de.
- ns2.vwork.de.
- ns3.vwork.de.
DNS records live
- NS
-
- ns1.vwork.de
- ns2.vwork.de
- ns3.vwork.de
- MX
-
- 10 avvaugsburg-de0i.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
google-site-verification=mQTL9fjWOel6n2CL5ZdZ4vL7qVKBBMb7hFcBuzlyNus2MS=ms69700741brevo-code:385a46da51c1b74e1d82b3dbe1c2fbcbapple-domain-verification=JpSPrBRoUuZrfJKe
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.hornetsecurity.com include:spf.sendinblue.com include:spf.crsend.com include:spf.bulkmail.m-online.net a:mail.stawa.de a:mail2.stawa.de -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; adkim=s; aspf=spolicy: quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArSe3NG8ZvB1DJe5CiUJgC88d2Abtfh/Dju49pK2zobRlH8n4F32ctTwQUreEf5duPxamxCHBnkOv6p… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - selector1:
Certificate (current)
R13
Expires in 72 days
HTTP security headers
- present
-
- content-security-policy
- content-security-policy-report-only
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'nonce-I7JdOMW_oWaWm_0dG9qJRATrqYl_g8Q9qgRvEGIILKMtQavU3qY8xA' https://analytics.avv-augsburg.de https://cdn.eye-able.com https://translate-cdn.eye-able.com https://fahrtauskunft.avv-augsburg.de https://www.cdn.botfriendsx.com https://api.eu-1.smooch.io 'sha256-Pn59f+s+XVjLbIBPaKtcJMx+XrYnD9bly7kSRzkhfQw=' 'sha256-WMV6TCAKRqiJchBuLbDidJP71VKfKmtmQMLi2ITJGWY=' 'unsafe-eval' 'unsafe-inline' 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://cdn.eye-able.com https://www.cdn.botfriendsx.com https://www.gravatar.com https://analytics.vwork.de; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com https://kundencenter.avv-augsburg.de; style-src-elem 'self' https://cdn.eye-able.com https://www.cdn.botfriendsx.com 'unsafe-inline' 'report-sample'; connect-src 'self' https://fahrtauskunft.avv-augsburg.de https://analytics.avv-augsburg.de https://analytics.vwork- content-security-policy-report-only
default-src 'self'; script-src 'self' 'nonce-I7JdOMW_oWaWm_0dG9qJRATrqYl_g8Q9qgRvEGIILKMtQavU3qY8xA' https://analytics.avv-augsburg.de https://cdn.eye-able.com https://translate-cdn.eye-able.com https://fahrtauskunft.avv-augsburg.de https://www.cdn.botfriendsx.com https://api.eu-1.smooch.io 'sha256-Pn59f+s+XVjLbIBPaKtcJMx+XrYnD9bly7kSRzkhfQw=' 'sha256-WMV6TCAKRqiJchBuLbDidJP71VKfKmtmQMLi2ITJGWY=' 'unsafe-eval' 'unsafe-inline' 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://cdn.eye-able.com https://www.cdn.botfriendsx.com https://www.gravatar.com https://analytics.vwork.de; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com https://kundencenter.avv-augsburg.de; style-src-elem 'self' https://cdn.eye-able.com https://www.cdn.botfriendsx.com 'unsafe-inline' 'report-sample'; connect-src 'self' https://fahrtauskunft.avv-augsburg.de https://analytics.avv-augsburg.de https://analytics.vwork