bayerninvest.de
HTML metadata
Technology
- Server
- Apache
Social
Contact
- Phone
- Address
- st Kapitalverwaltungsgesellschaft mbHKarlstraße 35803
Registration
- Updated
- 2019-11-26
- Name servers
-
- ns1.m-online.net.
- ns2.m-online.net.
- ns3.m-online.net.
- ns4.m-online.net.
DNS records live
- NS
-
- ns1.m-online.net
- ns2.m-online.net
- ns3.m-online.net
- ns4.m-online.net
- MX
-
- 0 mailgw.bayerninvest.de
- TXT
-
Show 5 TXT records
MS=ms67118348swisssign-check=kAFV2uMV-9csVCUo4dhBhesPw5scisco-ci-domain-verification=69bd0b8a52afd55e3dc9b2e8b74b45b8c222a15b2fdcb53b7838f11f6002d8f2MS=51BF3FB5127EE70CA3581C9D0DA6DB432ECD8BA4atlassian-domain-verification=4exW0nd3k8RMzlDxiG/FujfM761jqptWFLfOBOn1trNDOAeJlzfBwzgWYaWFkALD
Email authentication weak
- SPF
-
v=spf1 a:mail-out.m-online.net a:server.ba89.spacenet.de a:mailgw.bayerninvest.de a:mx01.rexx-systems.de a:portal.iqsuite.com include:spf.protection.outlook.com include:_spf.rexx-suite.com -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 73 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' https://code.highcharts.com https://*.anevis-solutions.com; script-src 'self' 'nonce-ZfzETIGpC2jtJQzavn6m5XFoBFdl4VOApZfwwU9CLQZ1ZLkzw7HUyg' https://*.openstreetmap.org 'unsafe-inline' 'unsafe-eval' *.anevis-solutions.com https://code.highcharts.com https://www.bayerninvest.de 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://*.openstreetmap.org https://*.anevis-solutions.com; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com player.vimeo.com www.youtube.com youtu.be www.youtube-nocookie.com; style-src-elem 'self' 'nonce-ZfzETIGpC2jtJQzavn6m5XFoBFdl4VOApZfwwU9CLQZ1ZLkzw7HUyg' 'report-sample'; connect-src 'self' data: https://*.openstreetmap.org https://code.highcharts.com https://documents.anevis-solutions.com/bayerninv/ https://www.bayerninvest.de; style-src 'self' https://code.highcharts.com https://*.anevis-solutions.com 'unsafe-inline' api.anevis-solutions.com- strict-transport-security
max-age=15553000