dafuer-sein-ist-alles.de
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (2)
- cdn.consentmanager.net×1
- widget.moin.ai×1
Social
Registration
- Updated
- 2026-04-08
- Name servers
-
- ns.udag.de.
- ns.udag.net.
- ns.udag.org.
DNS records live
- NS
-
- ns.udag.de
- ns.udag.net
- ns.udag.org
- MX
-
- 10 mx00.udag.de
- 20 mx01.udag.de
Email authentication weak
- SPF
-
v=spf1 include:_smtp.udag.de ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 50 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
frame-ancestors 'self';, default-src 'none'; script-src 'self' 'unsafe-inline' *.consentmanager.net *.emailsys1a.net *.google.com *.gstatic.com *.maxcluster.net *.moin.ai *.flockler.com; style-src 'self' 'unsafe-inline' *.emailsys1a.net *.moin.ai *.flockler.com; manifest-src 'self'; img-src 'self' *.consentmanager.net *.emailsys1a.net *.moin.ai *.flockler.com *.flocklr.com *.fbcdn.net *.cdninstagram.com data:; font-src 'self' *.emailsys1a.net *.moin.ai; connect-src 'self' *.consentmanager.net *.emailsys1a.net *.google.com *.maxcluster.net *.moin.ai ws://bot.moin.ai *.flockler.app; frame-src *.consentmanager.net *.google.com *.vimeo.com; frame-ancestors 'none'; base-uri 'self'; form-action 'self'; object-src 'none';