bergland-lech.at
HTML metadata
Technology
- Server
- nginx
- jQuery
- 2.2.4 known XSS (<3.5)
- Cookie consent
-
- Termly
Third-party hosts loaded (9)
- le-cdn.website-editor.net×43
- cdn.website-editor.net×6
- dd-cdn.multiscreensite.com×4
- static-cdn.website-editor.net×3
- app.termly.io×1
- static.tacdn.com×1
- www.holidaycheck.at×1
- www.holidaycheck.de×1
- www.jscache.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1090.ui-dns.biz
- ns1090.ui-dns.com
- ns1090.ui-dns.de
- ns1090.ui-dns.org
- MX
-
- 0 berglandlech-at02b.mail.protection.outlook.com
Email authentication weak
- SPF
-
v=spf1 a mx include:spf.protection.outlook.com -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 179 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
frame-ancestors https://*.ionos.com https://*.ionos.at https://*.ionos.co.uk https://*.ionos.de https://*.ionos.es https://*.ionos.fr https://*.ionos.it https://*.ionos.ca https://*.ionos.mx https://*.ionos.us https://*.website-editor.net https://*.mywebsite-editor.com www.bergland-lech.at- strict-transport-security
max-age=15768000; preload