bvaeb-ambulatorien.at
HTML metadata
Technology
- Server
- eSV
- Stack
- Java
Third-party hosts loaded (2)
- base.streamdiver.com×2
- analysis.sozialversicherung.at×1
Social
DNS records live
- NS
-
- ns1.easyname.eu
- ns2.easyname.eu
- MX
-
- 10 mx01.easyname.eu
- 10 mx02.easyname.eu
- TXT
-
_hf0v57wsmdul7jz94rm78ayr5y9l34qcy687flzzdjzg77xrvn9jb8yjmjdywfdQuoVadis=a36d9232-aab6-439a-a99d-9cfa826c049f
Email authentication weak
- SPF
-
v=spf1 include:spf.easyname.com -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
DigiCert QV TLS ICA G1
Expires in 173 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; child-src 'self'; connect-src 'self' sso.sozialversicherung.at analysis.sozialversicherung.at cobrowsing.sv-services.at *.cobrowsing.sv-services.at sva-chatbot-prod.azurewebsites.net svs-chatbot-prod.azurewebsites.net europe.directline.botframework.com lf.o-c.io api.o-c.io *.googleapis.com mrtctcrawler.refactory.at *.pagestrip.com pagestrip.com kfawien.pi-asp.de recruitingapp-5692.de.umantis.com form.virtualq.tech wss://form.virtualq.tech *.ecard-test.sozialversicherung.at; font-src 'self' *.googleapis.com *.gstatic.com termine.sozialversicherung.at karriere.pv.at widget.virtualq.de data: *.pagestrip.com; frame-ancestors 'self' www.meinebvaeb.at www.meinesv.at www.meineoegk.at *.oegk.at *.sozialversicherung.at svpk.at *.svpk.at www.gp-portal.at www.e-impfpass.gv.at *.gesundheit.gv.at *.gesundheitskasse.at www.therapie-aktiv.at svs.at www.svs.at; frame-src 'self' cobrowsing.sv-services.at *.cobrowsing.sv-services.at www.youtube-nocookie.com base.streamdiver.com www.- strict-transport-security
max-age=31536000