awado.de
HTML metadata
Technology
- Server
- nginx
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (1)
- consent.cookiebot.com×1
Social
Registration
- Updated
- 2026-04-13
- Name servers
-
- a.ns14.net.
- b.ns14.net.
- c.ns14.net.
- d.ns14.net.
DNS records live
- NS
-
- a.ns14.net
- b.ns14.net
- c.ns14.net
- d.ns14.net
- MX
-
- 10 genowolke.mail.protection.outlook.com
Email authentication partial
- SPF
-
v=spf1 a mx include:spf.genoverband.de include:spf.protection.outlook.com include:spf.mailingress.de include:spf.rmh1.net include:spf.brevo.com ip4:77.32.149.25 ip4:78.46.6.137 ip4:185.148.170.74 ip4:35.207.156.88 ip4:35.207.140.205 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@awado.de,mailto:dmarc_agg@vali.email;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtrbhCP1+DOjmbFkQ/duWKVBgDJh4WqssyFeo3u+lsOeig6NiUfD/7W8DZ2Y/+uSIueShVlNUqn7uPQ… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - selector1:
Certificate (current)
E8
Expires in 76 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src 'self' 'nonce-c32VU1ZkINFirEfkja-lVJr609-gBPDY_TUHLuiTOE_AqPgCZHyEBg' https://*.cookiebot.com https://*.typeform.com 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://*.youtube.com https://*.cookiebot.com https://*.typeform.com; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com https://*.cookiebot.com https://*.typeform.com; font-src 'self'; style-src-elem 'self' 'unsafe-inline' https://*.typeform.com 'report-sample'; style-src 'self' https://*.youtube.com https://*.cookiebot.com https://*.typeform.com 'report-sample'; script-src-attr 'self' 'report-sample'; script-src-elem 'self' 'unsafe-inline' https://*.cookiebot.com https://*.typeform.com 'report-sample'; worker-src blob:; connect-src 'self' https://*.cookiebot.com https://*.typeform.com; form-action 'self'; frame-ancestors 'none'; media-src 'self'; report-uri https://awado.de/@http-reporting?csp=re- strict-transport-security
max-age=15768000