das-parlament.de
HTML metadata
Technology
- Server
- Apache
Third-party hosts loaded (1)
- statistik.bundestag.de×1
Social
Registration
- Updated
- 2024-07-23
- Name servers
-
- a.babieldns.de.
- b.babieldns.de.
- c.babieldns.de.
- d.babieldns.de.
DNS records live
- NS
-
- a.babieldns.de
- b.babieldns.de
- c.babieldns.de
- d.babieldns.de
- MX
-
- 10 mail2.babiel.net
- TXT
-
google-site-verification=E7TdfTgh0CXVS4Xv6gY58npMf7JraEO3pkDgUKDbi-Qglobalsign-domain-verification=g_PGzAKyk08ZV7EpGuNWzBfvaRpJ6QYHTKoWOZdosEIKI/FX0xKHQflRmUHMMMp4Br9Mc8pqleIQN9NaiI5RY=
Email authentication partial
- SPF
-
v=spf1 a mx ip4:85.215.200.111 ip4:46.243.121.245 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; sp=none; rua=mailto:dmarc-reports@babiel.net; ruf=mailto:dmarc-reports@babiel.net; fo=1;policy: none (monitoring only) · sp=none - DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 41 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' das-parlament.de epaper.das-parlament.de 'unsafe-inline' blob:; img-src 'self' https: data:; font-src 'self' data:; connect-src 'self' https://das-parlament.de https://statistik.bundestag.de https://webtv.bundestag.de https://playerservice.cdn.tv1.eu https://bitvtest.de https://platform.twitter.com https://firebaseinstallations.googleapis.com https://fcmregistrations.googleapis.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://statistik.bundestag.de https://webtv.bundestag.de https://*.tv1.eu https://platform.twitter.com https://www.instagram.com https://firebaseinstallations.googleapis.com blob:; frame-src 'self' https://www.bundestag.de https://webtv.bundestag.de https://*.tv1.eu https://www.youtube.com https://www.openstreetmap.org https://www.google.com https://platform.twitter.com https://www.facebook.com https://social.heise.de https://www.instagram.com https://giphy.com https://multimedia.europarl.europa.eu https://www.swr.de; object-src 'self' http- strict-transport-security
max-age=31536000
Links to (8)
- bpb.de×1
- bsky.app×1
- bund.de×1
- bundestag.de×1
- instagram.com×1
- linkedin.com×1
- whatsapp.com×1
- youtube.com×1