deineapotheke.at
HTML metadata
Technology
- Server
- Apache
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (2)
- cdn.onesignal.com×1
- consent.cookiebot.com×1
DNS records live
- NS
-
- ns1.nameservice.at
- ns2.nameservice.at
- MX
-
- 10 mx.mymagenta.business
- TXT
-
swisssign-check=PxNVhbfHry7uPbEp0XHGESCqQuQ
Email authentication partial
- SPF
-
v=spf1 a mx include:_spf.mymagenta.business -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 63 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' *.marketingsuite.info 'unsafe-hashes' 'sha256-4Rip+G5xNqA42OtLNRhoV2UzSIVDzL6g+hv20tb3b1U=' 'sha256-8VVT4Do8HEnflLBVS7lqLpgBRx3By8/5ZLtKs4T5zNg=' 'sha256-PipDBblHIwl4UCSJGxOe2HimW3eqO/S9t5GiXoJDHMM=' 'sha256-tGHJwE8Jm0oOUj1EIhG1KiCCQpXq1kJZSkF+uMvCVBE=' 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com *.onesignal.com; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com *.cookiebot.com; font-src 'self' data:; connect-src 'self' *.onesignal.com *.cookiebot.com; script-src-elem 'self' *.deinegutscheine.at *.apoverlag.at *.onesignal.com onesignal.com 'unsafe-inline' *.marketingsuite.info *.cookiebot.com 'report-sample'; style-src-elem 'self' 'unsafe-inline' *.marketingsuite.info onesignal.com 'report-sample'; report-uri https://www.deineapotheke.at/@http-reporting?csp=report&requestTime=1780309335545120&requestHash=4bd21d06d6a358fa468675230f7bb0e46e1f4a76- strict-transport-security
max-age=15768000