big-direkt.de
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (3)
- consent.cookiebot.com×1
- sentry.big-osp.de×1
- www.googletagmanager.com×1
Social
Contact
- Address
- Rheinische Straße 1, 44137, Dortmund, DE
Registration
- Updated
- 2024-03-11
- Name servers
-
- a11-66.akam.net.
- a1-188.akam.net.
- a16-66.akam.net.
- a18-66.akam.net.
- a24-64.akam.net.
- a3-66.akam.net.
DNS records live
- NS
-
- a1-188.akam.net
- a11-66.akam.net
- a16-66.akam.net
- a18-66.akam.net
- a24-64.akam.net
- a3-66.akam.net
- MX
-
- 5 bgmta.in.tmes.trendmicro.eu
- TXT
-
Show 22 TXT records
_7px32joj692qle0bup49u1l6mggwshe46l12d27ydcqxlrngl5bbwgwljkftz70_ogl081c3wyhyb3xauki0y8mkjoclytv202110032047521reluwyt1ue5idkdpv89e3qe9eplseuxuaolirx4etay5ff2p5_9mslu4obshqdc0afhxl4nbgqsz4enm1q8rrjx42fjbgdpy6b5mn9df5gyxmxb3szvg05dg413l0nq3s0svmhjxs9qjysmqv202110032208465s0if74cz2yg1segrkv2ddsmbburfdlp48t0in3l6kbzyd0hf3_bbtqcouhpyk7lh3anwjcjv8bb64jps7tmes=946e7ab1cbaef264d333df4f51e9909b_0atof817zzujsg1kxnybh2kc0bczyn7202203232259022j5niqjidpt2zbzwmebl50en3x4by1njgnj6chd2zqfqtfcvlc202203232301324j64v6lwi0mdor0srepaeel6bjzo9a5pc6l2z1vgxjqwomdkz4G4R-nc7-o36202103300120503hm3gvecaxw66gcj4qol60gsjuceecgoqftyh2gds0t5zpua5nMS=4AF258A5B7CC2802C386099EEDA2864EA34FB843_uh90rjiehfysmz26v4tlgh02xj8dh43202103300118573aj3jv3d6l5zer19al4qlezmth748kfhphf6f72ash461i50m7_8i6gujlrkd1zo0a712a4m780h7482c0QuoVadis=78e9e988-22a9-46d2-9ad2-16a3af2bf71c202209270000012u0wz0i67o6zchkubu4x2siov4p9jdtibs3b897mpnnoweimpu_hs1wot5frrlsiex8ofmcjzndyxc4ad8
- Verified for
-
- Apple
- Cisco
- Cisco Webex
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 include:spf1.big-direkt.de include:spf2.big-direkt.de -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=none; rua=mailto:bgmta@dmarcrua.tmes.trendmicro.eu; aspf=s; fo=1; pct=100policy: reject (enforced) · sp=none - DKIM
- no key found at common selectors
Certificate (current)
GeoTrust EV RSA CA G2
Expires in 263 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
frame-ancestors 'self' cms.big-direkt.de; default-src data: 'self' 'unsafe-inline' http: https: blob:; script-src * 'self' 'unsafe-inline' 'unsafe-eval'; script-src-elem * 'self' 'unsafe-inline'; script-src-attr 'self' 'unsafe-inline'; connect-src * 'self' *.hotjar.com www.googletagmanager.com www.google.de www.google.com www.google-analytics.com *.g.doubleclick.net *.chatvisor.com www.googleadservices.com *.cookiebot.com sentry.big-osp.de; worker-src * 'self' blob:- strict-transport-security
max-age=31536000; includeSubDomains
Links to (6)
- apple.com×3
- facebook.com×3
- google.com×3
- instagram.com×3
- tiktok.com×3
- youtube.com×3