bcmed.de
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
- Fonts
-
- Adobe Fonts
- Google Fonts
Third-party hosts loaded (2)
- fonts.googleapis.com×3
- use.typekit.net×2
Social
Contact
- Phone
Registration
- Updated
- 2008-10-31
- Name servers
-
- docks02.rzone.de.
- shades13.rzone.de.
DNS records live
- NS
-
- docks02.rzone.de
- shades13.rzone.de
- MX
-
- 10 bcmed-de.mail.protection.outlook.com
- 200 relay.rzone.de
Email authentication strong
- SPF
-
v=spf1 include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 126 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https://vimeo.com/* https://*.vimeo.com/ https://open.spotify.com https://embed.spotify.com https://scdn.co; img-src 'self' data: https://vimeo.com/* https://*.vimeo.com/ https://i.scdn.co https://open.spotify.com https://open.spotify.com https://embed.spotify.com https://scdn.co; object-src 'self' data: https://*.google.com/ https://vimeo.com/* https://*.vimeo.com/ https://open.spotify.com https://embed.spotify.com https://scdn.co; frame-src 'self' data: https://*.google.com/ https://vimeo.com/* https://*.vimeo.com/ https://open.spotify.com https://embed.spotify.com https://scdn.co;