compass-group.de
HTML metadata
Technology
- Server
- Apache
- Cookie consent
-
- OneTrust
Third-party hosts loaded (2)
- cdn.cookielaw.org×2
- www.google.com×1
Social
Contact
- Phone
- Address
- Compass Group Deutschland GmbHHelfmann-Park 265760 EschbornTelefon:+49 (0) 61 96/478 - 500Telefax:+49 (0) 61 96/478 - 569info.compass@compass-group.de
Registration
- Updated
- 2024-11-20
- Name servers
-
- dns1.cscdns.net.
- dns2.cscdns.net.
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 10 compassgroup-de01i.mail.protection.outlook.com
- TXT
-
Show 9 TXT records
have-i-been-pwned-verification=58c08ebc1cd9cd899bb6013a5493dc68atlassian-domain-verification=31D3yfed2wzAUEW6Q1ak35Ii/D1lkWVZHd7kjuz5gd7nszBkVxkMNba5ON77tpi3v=spf1 ip4:87.191.51.100/32 ip4:158.120.80.55/32 include:spf.protection.outlook.com include:_spf.netigate.se include:spf.crsend.com include:_spf.zimpel.de include:_spf.tivian.com include:_spf-dc33.sapsf.eu a:er-mail.erecruiter.net -allMS=ms220671178MOWQ7TDTCLPXJJ42FDOJ0A8R8YLKF15JQZN03YHapple-domain-verification=iSLdN4j6n4IvW9B4d365mktkey=hynuxBq6zT2XXOabk32CEMFZFKw1hO2e0BjIW4oftW4xonetrust-domain-verification=1167edb6fccb4397b0a61b648e1d4e9bonetrust-domain-verification=e961188eae024f1587f68793639d28c9
Certificate (current)
R13
Expires in 22 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak content type protection
Header values
- referrer-policy
no-referrer- x-frame-options
deny- permissions-policy
accelerometer=(),ambient-light-sensor=(),autoplay=(),battery=(),camera=(),display-capture=(),document-domain=(),encrypted-media=(),fullscreen=(),gamepad=(),geolocation=(),gyroscope=(),layout-animations=(self),legacy-image-formats=(self),magnetometer=(),microphone=(),midi=(),oversized-images=(self),payment=(),picture-in-picture=(),publickey-credentials-get=(),speaker-selection=(),sync-xhr=(self),unoptimized-images=(self),unsized-media=(self),usb=(),screen-wake-lock=(),web-share=(),xr-spatial-tracking=()- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' https://geolocation.onetrust.com https://cdn.cookielaw.org https://privacyportal-eu-cdn.onetrust.com https://privacyportal-eu.onetrust.com https://maps.googleapis.com https://matomo.compass-group.de; img-src 'self' data: https://cdn.cookielaw.org https://maps.gstatic.com https://maps.googleapis.com; style-src 'self' 'unsafe-inline' https://privacyportal-eu-cdn.onetrust.com https://fonts.googleapis.com; script-src 'self' 'unsafe-inline' https://cdn.cookielaw.org https://privacyportal-eu-cdn.onetrust.com https://www.google.com https://www.gstatic.com https://matomo.compass-group.de https://maps.googleapis.com; font-src 'self' fonts.gstatic.com https://privacyportal-eu-cdn.onetrust.com; form-action 'self'; object-src 'none'; frame-ancestors https://www.google.com; upgrade-insecure-requests; frame-src https://www.google.com https://www.youtube-nocookie.com/ https://www.youtube.com; block-all-mixed-content- strict-transport-security
max-age=31536000; includeSubDomains- cross-origin-opener-policy
same-origin- cross-origin-resource-policy
cross-origin