big.at
HTML metadata
Technology
- jQuery
- 3.3.1 known XSS (<3.5)
Third-party hosts loaded (1)
- cdn.truendo.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns1.a1.net
- dns2.a1.net
- dns3.a1.net
- MX
-
- 10 big-at.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
fmvccik110eglt5lrkqbtf1aksfuh2o5dogfhl0vgg1631ggksr1TXT : cisco-ci-domain-verification=10ff5900889212986a99e87ff8ae9f9415d035b054c3830515d80b8371be6870coc15bu2iucm62ifanfhh55ttp
- Verified for
-
- Brevo
- Dynamics 365
- Miro
Email authentication partial
- SPF
-
v=spf1 ip4:46.16.79.112 ip4:94.177.9.134 ip4:192.138.228.168 mx:umantis.com ip4:193.110.11.165 ip4:80.120.70.53 ip4:194.37.243.4 ip4:194.37.243.5 ip4:193.110.11.176 include:spf.umantis.com include:serv38246955.secure-node.at include:spf.protection.outlook.com include:_spf.retarus.com include:spf.sendinblue.com include:mailing.sagedpw.at include:spf.mailjet.com -allstrict (-all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDih4MW199eoHI0QDAYIvai3dh9C9LNdKduSQtAp1KJxMPioTMnpMl1vLA0+fVYHcjKc1Y58qtqVSYxJOLsrd… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCVbFdbfHreZv6Rk+sdX+wJbloAQRMDh6KtlqGfk7Z/De6DM8PFWUHUaWCh7/INHMrTFstZEdTIGoVccKk6aB… - mail:
k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2z…
selectors probed - selector1:
Certificate (current)
R12
Expires in 59 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing Content Security Policy
- weak content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff, nosniff- strict-transport-security
max-age=31536000; includeSubDomains- content-security-policy-report-only
default-src 'self'; script-src 'self' 'unsafe-inline' https://cdn.truendo.com https://matomo.big.at https://maps.google.com http://maps.google.com https://connect.facebook.net https://protection.retarus.com 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: https://maps.googleapis.com https://maps.gstatic.com https://img.youtube.com https://i.ytimg.com https://www.gstatic.com https://translate.google.com https://www.google.com; base-uri 'self'; frame-src 'self' https://www.youtube.com https://www.youtube-nocookie.com https://player.vimeo.com https://maps.google.com https://maps.google.de *.google.com; style-src-elem 'self' 'unsafe-inline' https://www.gstatic.com 'report-sample'; connect-src 'self' https://matomo.big.at https://eu-api.friendlycaptcha.eu https://jobs.big.at https://prod-origin.truendo.com https://prod-fra.truendo.com https://px.ads.linkedin.com https://www.facebook.com; style-src 'inline' 'self' 'unsafe-inline' 'report-sample'; font-src
Links to (8)
- are.at×1
- big-art.at×1
- instagram.com×1
- kununu.com×1
- linkedin.com×1
- pinterest.com×1
- vergabeportal.at×1
- youtube.com×1
Linked from (7)
- ig-lebenszyklus.at×1
- anotherviewture.at×1
- bim-t.com×1
- big-art.at×1
- oiz.at×1
- oegfa.at×1
- efast.at×1