bitmarck.de
HTML metadata
Technology
- Server
- Apache
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (2)
- consent.cookiebot.com×1
- download.digiaccess.org×1
Registration
- Updated
- 2025-10-08
- Name servers
-
- ns1.nodesecure.com.
- ns2.nodesecure.de.
DNS records live
- NS
-
- ns1.nodesecure.com
- ns2.nodesecure.de
- MX
-
- 10 bravo01.bitmarck.de
- 10 bravo02.bitmarck.de
- TXT
-
Show 13 TXT records
apple-domain-verification=Iw7NXvcDXWRyPZT9OmXy8MseRMSHEy9p5Jl92PyENU4EJrfwscv7ItNl2hM=google-site-verification=s01H6STrFaUkIJpIxMJ_AX57TUex3ytbeGMhVIFQfXcjamf-site-verification=vLM_7QSMbOTtN9rwR-ha1Qv455ec6VkR1y28T/knt+Gz/94JIi89X0TH359n05bAs=_globalsign-domain-verification=0JeEnza0Q6y9otjH1YNYUut0tBpUm6CLzgMpkFEkpktKLTt44fmnW1PPnRV3Im68P2wzxws93Q4BeLTBjrR+sB/BYoTLzLqoDnNzh31LXudV+Y3BRWImVfZJCzMcSWlw==D-TRUST=VV62EVVJ7H52XESP2A9G6EScisco-ci-domain-verification=301c32d5901d005abfb7112c9b166fcbc00f8f320081978be625fc0316da9ed9have-i-been-pwned-verification=1c1dbda6091f5f2d1faf92fb5c103735o0kJbfqHQfMCCNMgNY3NfkYLHArr/NLdNtO0v9UDDXzroFqU+tZVbP29/w9CzXqboYQ1tN7M22BlhtzROpeG1Q==OSSRH-57108MS=ms47659918
Email authentication partial
- SPF
-
v=spf1 mx ip4:194.113.7.249 ip4:194.113.7.250 ip4:62.245.133.43 ip4:91.208.68.41 ip4:91.208.68.56 ip4:91.208.68.57 ip4:193.159.189.174 ip4:217.6.174.70 ip4:62.245.133.5 ip4:62.245.133.41/32 ip4:62.245.133.42/31 ip4:62.55.182.68 ip4:149.154.96.219 ip4:149.154.96.220 ip4:149.154.96.227 ip4:149.154.96.228 ip4:91.208.68.242 ip4:91.208.68.243 ip4:91.208.68.240 ip4:91.208.68.241 ip4:159.48.12.109 ip6:2a05:cc00::12:109:10 include:_spf-e.cegedim.fr include:_spf-i.cegedim.fr include:spf.evidenz.de include:_spf.materna-ms.cloud -allstrict (-all) - DMARC
-
v=DMARC1;p=none;rua=mailto:mail-reports@bitmarck.de;ruf=mailto:mail-reports@bitmarck.de;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 80 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- weak content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src blob: 'self'; script-src blob: 'self' 'unsafe-inline' 'unsafe-eval' https://consent.cookiebot.com https://consentcdn.cookiebot.com https://download.digiaccess.org; style-src 'self' 'unsafe-inline' https://consent.cookiebot.com; img-src 'self' https://imgsct.cookiebot.com data:; frame-src 'self' https://bitmarck.adito.cloud https://www.youtube-nocookie.com https://consentcdn.cookiebot.com; frame-ancestors 'self' https://www.youtube-nocookie.com; connect-src 'self' https://api.digiaccess.org https://consentcdn.cookiebot.com blob:;- strict-transport-security
max-age=63072000; includeSubdomains; preload