bwkg.de
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (2)
- consent.amedick-sommer.de×1
- www.dkgev.de×1
Registration
- Updated
- 2018-02-21
- Name servers
-
- ns1.amedick-sommer.de.
- ns2.amedick-sommer.de.
- ns3.amedick-sommer.de.
DNS records live
- NS
-
- ns1.amedick-sommer.de
- ns2.amedick-sommer.de
- ns3.amedick-sommer.de
- MX
-
- 10 bwkg-de.mail.cloud.nospamproxy.com
- TXT
-
p+Xxm9qgNPIDqMKytB7u0PbyvPlo8p9+jlalk8a8qx0=swisssign-check=zgufXp7QCjiOKRjmGudTFDyPajk
- Verified for
-
- Apple
- GlobalSign
- Microsoft 365
- Zoom
Email authentication strong
- SPF
-
v=spf1 a mx ip4:116.202.200.205 ip4:82.144.56.82 ip4:103.2.143.43 ip4:62.96.155.3 ip6:2a01:4f8:d0a:7449::2 include:spf.formdesk.com include:_spf.jpberlin.de include:spf.bwkg-de.cloud.nospamproxy.com include:spf.codepiraten.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; sp=quarantinepolicy: quarantine · sp=quarantine - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApW4vCZSSfMGbbUHvdBAWqFxa4Uu+7jZVlWZuP253vBglmK/si6BRDJagZJpZO6gKSSl3kH6soYzAPf…
selectors probed - selector1:
Certificate (current)
R12
Expires in 62 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' blob: data: www.youtube.com s.ytimg.com *.usercentrics.eu *.google.com *.googletagmanager.com *.google-analytics.com analyzer.amedick-sommer.de consent.amedick-sommer.de *.stage.bio ; style-src 'self' 'unsafe-inline' consent.amedick-sommer.de; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: www.youtube.com s.ytimg.com *.usercentrics.eu *.google.com *.googletagmanager.com *.google-analytics.com analyzer.amedick-sommer.de consent.amedick-sommer.de *.stage.bio www.dkgev.de; img-src * data: consent.amedick-sommer.de; object-src 'none'; frame-ancestors 'self'; frame-src *; media-src 'self' *.stage.bio data: blob:;- strict-transport-security
max-age=31536000; includeSubDomains