cjd.de
HTML metadata
Technology
- Server
- nginx
- CMS
- Drupal
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- spenden.twingle.de×2
- cdn-eu.readspeaker.com×1
- www.googletagmanager.com×1
Social
Registration
- Updated
- 2020-03-11
- Name servers
-
- ns01.agenturserver.co.
- ns01.agenturserver.de.
- ns01.agenturserver.it.
DNS records live
- NS
-
- ns01.agenturserver.co
- ns01.agenturserver.de
- ns01.agenturserver.it
- MX
-
- 10 mx-in01.eu.retarus.com
- 10 mx-in02.eu.retarus.com
- TXT
-
3aTZ7fT7VGcXaa0e8s7x5pdbs+/6DDeP5cGahDQiZOJklJSl6XfMgHCahNRyK3rCdyTL4vvfD4WsjGM6NIlDSg==
- Verified for
-
- Apple
Email authentication partial
- SPF
-
v=spf1 a include:agenturserver.de a:mail5.chamaeleon.de include:spf.nl2go.com include:_spf.retarus.com include:_spf.zimpel.de ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
Thawte TLS RSA CA G1
Expires in 17 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer, strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
connect-src *; img-src * blob: data:; object-src 'none'; script-src * 'unsafe-inline' 'unsafe-eval'; style-src * 'unsafe-inline'; worker-src 'self'; base-uri 'self'; form-action 'self'; frame-ancestors 'self' https://*.etracker.com https://jugenddorfwerk.sharepoint.com- strict-transport-security
max-age=31536000
Links to (14)
- beb-ev.de×2
- bildungsverband.info×2
- certqua.de×2
- cvjm.de×2
- diakonie.de×2
- facebook.com×2
- instagram.com×2
- kununu.com×2
- linkedin.com×2
- readspeaker.com×2
- spendenrat.de×2
- tuev-nord.de×2
- xing.com×2
- youtube.com×2