datev.com
HTML metadata
Technology
- Cookie consent
-
- OneTrust
Third-party hosts loaded (4)
- datev.scene7.com×3
- apps.datev.de×2
- assets.adobedtm.com×2
- cdn.cookielaw.org×1
Social
Registration
- Registrar
- InterNetX GmbH
- Created
- 1998-11-05
- Expires
- 2026-11-04 169 days left
- Updated
- 2026-04-07
- Name servers
-
- ns01.datev.de
- ns02.datev.com
DNS records live
- NS
-
- ns01.datev.de
- ns02.datev.com
- MX
-
- 0 cdxmailin01.datev.de
- 0 cdxmailin02.datev.com
- TXT
-
google-site-verification=eRMRrDQBG-6CwTTWInNh3ElopeF6k-sCcIUF2fnSUgY
Email authentication strong
- SPF
-
v=spf1 -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:dmarc-a@reports.datev.depolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
Thawte TLS RSA CA G1
Expires in 149 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
origin-when-cross-origin- x-frame-options
deny- permissions-policy
accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(), encrypted-media=(), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(self), usb=(), web-share=(), xr-spatial-tracking=(), clipboard-read=(), clipboard-write=(), gamepad=(), hid=(), idle-detection=(), interest-cohort=(), serial=(), unload=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'wasm-unsafe-eval' blob: https://localhost:58456 *.ads.linkedin.com *.bazaarvoice.com *.datev.com *.datev.de *.grafana.net *.scene7.com *.onetrust.com adobedc.demdex.net api.ipify.org apps.bazaarvoice.com assets.adobedtm.com connect.facebook.net dtveg.sc.omtrdc.net edge.adobedc.net eu-api.friendlycaptcha.eu faro-collector-prod-eu-west-2.grafana.net googleads.g.doubleclick.net px.ads.linkedin.com www.redditstatic.com pixel-config.reddit.com alb.reddit.com salesviewer.org snap.licdn.com www.datev-magazin.de www.facebook.com www.google.com www.google.de www.googletagmanager.com ldgnrtn.com ; media-src 'self' blob: *.scene7.com ; base-uri 'self'; frame-ancestors 'none'; upgrade-insecure-requests;- strict-transport-security
max-age=31557600- cross-origin-opener-policy
same-origin- cross-origin-resource-policy
same-site