brotzeitfuerkinder.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
Third-party hosts loaded (6)
- cdnjs.cloudflare.com×4
- cdn.eye-able.com×2
- cdn.jsdelivr.net×2
- stackpath.bootstrapcdn.com×2
- gmpg.org×1
- translate-cdn.eye-able.com×1
Social
Contact
Registration
- Registrar
- Mesh Digital Limited
- Created
- 2009-04-06
- Expires
- 2027-04-06 321 days left
- Updated
- 2026-04-05
- Name servers
-
- ns15.domaincontrol.com
- ns16.domaincontrol.com
DNS records live
- NS
-
- ns15.domaincontrol.com
- ns16.domaincontrol.com
- MX
-
- 100 mxlb.ispgateway.de
- TXT
-
pq2558h98tnfg9dodh6nmqrqkf
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Starfield Secure Certificate Authority - G2
Expires in 147 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
no-referrer- x-frame-options
sameorigin- permissions-policy
accelerometer=(); ambient-light-sensor=(); autoplay=(self); camera=(); encrypted-media=(); fullscreen; geolocation=(self); gyroscope=(); magnetometer=(); microphone=(); midi=(); payment=(); picture-in-picture=(self); speaker=(); usb=(); vr=(), private-state-token-redemption=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com"), private-state-token-issuance=(self "https://www.google.com" "https://www.gstatic.com" "https://recaptcha.net" "https://challenges.cloudflare.com" "https://hcaptcha.com")- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' https: data: *.brotzeitfuerkinder.com;- strict-transport-security
max-age=31536000; includeSubDomains
brotzeitfuerkinder.com