bvkj-shop.de
HTML metadata
Technology
- Server
- Apache
- CMS
- Gatsby
Registration
- Updated
- 2022-06-29
- Name servers
-
- ns5.ns35.de.
- ns6.ns35.de.
- ns7.ns35.de.
- ns8.ns35.de.
DNS records live
- NS
-
- ns5.ns35.de
- ns6.ns35.de
- ns7.ns35.de
- ns8.ns35.de
- MX
-
- 0 mail.bvkj-shop.de
- TXT
-
maxcluster-domain-verification=e73jkt4j8ne4ntfwxy99abqeabcze3iv
Email authentication partial
- SPF
-
v=spf1 a mx a:mxout3bln1.prossl.de ip4:91.233.87.28 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:bvkjs-onlineshop@uminfo.de; ruf=mailto:bvkjs-onlineshop@uminfo.de; fo=1policy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4OHf6Nh8HzCA9k/EoswQnME9sSGkBLpyuQHkc3xQM5BuO4R2K3KTPfeK2dM/zPVRT1OEDPlfCDYrzS…
selectors probed - default:
Certificate (current)
E8
Expires in 34 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing Content Security Policy
- weak frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff- strict-transport-security
max-age=15768000- content-security-policy-report-only
font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com *.fontawesome.com maxcdn.bootstrapcdn.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src *.youtube.com *.youtube-nocookie.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.paypalobjects.com player.vimeo.com https://www.google.com/recaptcha/ bid.g.doubleclick.net *.braintreegateway.com *.paypal.com google.com *.google.com www.xtento.com 'self' 'unsafe-inline'; img-src data: widgets.magen
Linked from (1)
- bvkj.de×2