budget.de
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Apache
Third-party hosts loaded (1)
- budgetassets.abgemea.com×15
Social
Contact
- Phone
- Address
- ST Ident: DE16503
Registration
- Updated
- 2020-02-19
- Name servers
-
- ns1.netnames.net.
- ns2.netnames.net.
- ns5.netnames.net.
- ns6.netnames.net.
DNS records live
- NS
-
- ns1.netnames.net
- ns2.netnames.net
- ns5.netnames.net
- ns6.netnames.net
- MX
-
- 15 smtp.avis.de
- 5 budget-de.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
_fomock7r0b7ytjrj1u9gdt7vlasc56mjmf96z0b082dg3w9y5xvm6hjskz7pj70scczp8yjjl4rn9641c3m7tlk573nwjfq1E80-2E1A-BC85-340C-11D8-F4A1-D53D-5F596mq8t3hnzlcwgphqwgtg2fpknb0ngcgs_adpunq9vtz4epz4qjme3t5ttm9iapyv
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 exists:%{i}._i.%{d}._d.espf.agari-dns.net include:%{d}.5c.spf-protect.agari-dns.net -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; fo=1; ri=3600; rua=mailto:avis@rua.agari.com; ruf=mailto:avis@ruf.agari.compolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuANyLhRus05gfcTtqEmpW+ZTdWvs2bUmBDhCMrXAfKoEY3eWlaas7WAzyBdyEoeQCHRtVtj8wiUqK+…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 148 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- content-security-policy
default-src 'self' https://*.abgemea.com https://fonts.googleapis.com https://use.fontawesome.com ws.sharethis.com unpkg.com https://maxcdn.bootstrapcdn.com dpm.demdex.net avisbudgetgroup.tt.omtrdc.net https://*.bing.com https://*.virtualearth.net; object-src *; img-src data: *; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; frame-src *; connect-src *; font-src 'self' data: https://*.abgemea.com https://fonts.gstatic.com https://*.bing.com https://use.fontawesome.com https://*.virtualearth.net https://maxcdn.bootstrapcdn.com- strict-transport-security
max-age=31536000; includeSubDomains; preload