be.ch
HTML metadata
Technology
- Server
- Apache
- CMS
- Joomla
DNS records live
- NS
-
- ns1.be.ch
- ns2.be.ch
- MX
-
- 10 mailhub1.be.ch
- 10 mailhub2.be.ch
- TXT
-
Show 15 TXT records
058548b2-c2e1-4406-9ab6-7e8725b8e82cadobe-idp-site-verification=cb7cad2a12dc3582a4b58a0648e1e5a33e49fdf280ac3b0fb95ebc598ddc9e07_0hu0rzemzaxzpjdidhqq7v1y3ar6rd8_ni8hyaqpzec766ie4nzsr5x8w0nome42uzsXM6C2uYY/0LlKl2VsxBp2fEAIll2dRCjPKL+Z3g=dnrd0cqxr1n6c270zpqhs0jrym5tgfzjMS=ms98363302_globalsign-domain-verification=688rCAM4O8Ji_n47kr_qyoG7gox5kj3q_JgPwCDVVD_globalsign-domain-verification=oFl-5LuQvUmnGKiP-Op-TVaJ2xDeWX6Vt-j8oodszdZOOM_verify_HMCWAjFKQrGXRKNoxheWTAXJngvTPYzFd6f6jQK-7Tr4k7kl7lspsc8r6t0qxc6f51cbtrwqzgswisssign-check=pZbrRTEHNjpStfrpZXmRE2_j6JYSendinblue-code:6ef1bdca0140128a0b0cdffd769c529fLNRo/iP6vX9wHl5kwjCJ09zGK/r2eLZBK4HN0wnoz0kCPm4N17Ea+lD7M91c7JuSvpkb2mKIwuT9nMjJxwX/xw==
Email authentication strong
- SPF
-
v=spf1 ip4:194.124.140.27 ip4:194.124.140.28 ip4:195.48.42.216 ip4:194.88.197.38 ip4:92.42.184.212 ip4:159.144.156.45 ip4:159.144.157.32 ip4:217.115.153.192/27 ip4:217.115.132.160/27 ip4:176.28.29.0/27 ip4:217.115.137.48/28 ip4:62.138.228.0/26 ip4:151.106.66.0/24 ip6:2a07:2904:fff0:1f00::3:7 ip6:2a07:2904:fff0:1f00::3:8 a:b.spf.service-now.com a:c.spf.service-now.com a:d.spf.service-now.com include:spf.privasphere.com include:spf.protection.outlook.com include:spf.sendinblue.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; fo=1; rua=mailto:dmarc@dmarc.net.be.ch; ruf=mailto:dmarc@dmarc.net.be.ch;policy: reject (enforced) · sp=reject - DKIM
-
- mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - mail:
Certificate (current)
SwissSign RSA TLS OV ICA 2022 - 1
Expires in 213 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
accelerometer=(), ambient-light-sensor=(), battery=(), bluetooth=(), camera=(), display-capture=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), screen-wake-lock=(), usb=(), xr-spatial-tracking=(), gamepad=(), idle-detection=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.be.ch; connect-src 'self' *.readspeaker.com https://*.be.ch https://*.jaxforms.com ws://*.jaxforms.com; frame-src 'self' https://*.be.ch https://bern.gines.ch https://*.jaxforms.com https://*.prospective.ch https://assets.adobedtm.com https://*.youtube.com https://*.youtu.be https://www.youtube-nocookie.com https://search.ch https://map.search.ch https://*.google.com https://*.geo.admin.ch https://*.promio-connect.com https://vimeo.com https://*.vimeo.com https://*.bubble-chat.ch; frame-ancestors 'self' https://*.be.ch; style-src 'self' *.readspeaker.com https://*.be.ch https://*.jaxforms.com https://*.bubble-chat.ch 'unsafe-inline'; script-src 'self' *.readspeaker.com https://*.be.ch https://*.jaxforms.com https://siteimproveanalytics.com https://cdnjs.cloudflare.com https://system.promio-connect.com https://*.bubble-chat.ch 'unsafe-inline' 'unsafe-eval'; font-src 'self' *.readspeaker.com data: https://*.jaxforms.com; img-src * data:; object-src 'none';- strict-transport-security
max-age=31536000