contacto.de
HTML metadata
Technology
- Server
- Microsoft-IIS
- ASP.NET
- 4.0.30319
- jQuery
- 1.12.4 known XSS (<3.5)
- Stack
- ASP.NET
Contact
Registration
- Updated
- 2010-11-09
- Name servers
-
- nsa9.schlundtech.de.
- nsb9.schlundtech.de.
- nsc9.schlundtech.de.
- nsd9.schlundtech.de.
DNS records live
- NS
-
- nsa9.schlundtech.de
- nsb9.schlundtech.de
- nsc9.schlundtech.de
- nsd9.schlundtech.de
- MX
-
- 10 mail2.contacto.de
- 20 mail1.contacto.de
Email authentication strong
- SPF
-
v=spf1 a mx a:go.contacto.de a:mail2.contacto.de a:mail1.contacto.de ip4:185.212.53.249 ip4:91.52.94.33 ip4:217.92.96.141 -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;sp=none;pct=100;ruf=mailto:admin@contacto.de;ri=86400;fo=1;policy: reject (enforced) · sp=none - DKIM
-
- dkim:
v=DKIM1; k=rsa;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC0JEFb49GBLGrdc5+2V8Vs3ovcV+T15uGbJyELGKqDOvTZRcqJm6CO7pD/aA+iZAOoSUu8XDMGu21NITipp2/…
selectors probed - dkim:
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 31 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' https://connect.facebook.net https://staticxx.facebook.com https://maps.googleapis.com blob:; worker-src 'self' data: blob:; style-src 'self' 'unsafe-inline'; base-uri 'self';
Links to (1)
Linked from (1)
- hausa.at×1