caisse-des-medecins.ch
HTML metadata
Technology
- Server
- nginx
- jQuery
- 2.2.4 known XSS (<3.5)
- Stack
- PHP
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Address
- Chemin du Curé Desclouds 1, 1226, Thônex, CH
DNS records live
- NS
-
- beluga.smis.ch
- oscietre.smis.ch
- pcldns01.smis.ch
- sevruga.smis.ch
- MX
-
- 10 mailgw25.smis.ch
- 10 mailgw26.smis.ch
- Verified for
-
- Anthropic
Email authentication weak
- SPF
-
v=spf1 ip4:195.15.213.70 ip4:193.247.83.0/25 a:mx3.hin.ch a:mx4.hin.ch a:mail.asp4experts.ch a:mail.git-cloud.ch ip4:164.128.163.167 ip4:164.128.163.171 ip4:164.128.163.164 ip4:80.74.144.119 ip4:80.74.144.28 ip4:80.74.144.29 include:spf.protection.outlook.com -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 55 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src https: data: 'unsafe-inline' 'unsafe-eval'- strict-transport-security
max-age=31536000; includeSubDomains; preload