community-in-health.ch
HTML metadata
Technology
- Server
- Apache
- CMS
- Gatsby
- Stack
- PHP
- Social widgets
-
- Vimeo Embed
Third-party hosts loaded (1)
- player.vimeo.com×1
DNS records live
- NS
-
- ns41.infomaniak.com
- ns42.infomaniak.com
- MX
-
- 1 fl-11-100.zhdk.cloud.switch.ch
- 5 mta-gw.infomaniak.ch
- TXT
-
1|www.community-in-health.chp|https
Email authentication strong
- SPF
-
v=spf1 mx ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 49 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src *; connect-src *; font-src 'self' https://* http://* *; frame-src https://* http://* *; img-src https://* http://* * data:; object-src 'self'; script-src 'nonce-lLjAmn1yhXOztUJ4x4PAeapK' 'self' https://* http://* * 'unsafe-inline' 'report-sample'; style-src * https://* http://* * 'unsafe-inline'; block-all-mixed-content;- strict-transport-security
max-age=31536000