denzel.at
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
- Fonts
-
- Adobe Fonts
Third-party hosts loaded (5)
- widget.meinereifen.at×2
- translate.google.com×1
- use.typekit.net×1
- www.facebook.com×1
- www.googletagmanager.com×1
Social
DNS records live
- NS
-
- dns1.a1.net
- dns2.a1.net
- dns3.a1.net
- MX
-
- 10 denzel-pm.blue-shield.at
- TXT
-
tmes=c2ee92e1588713b532fba0dbbe534ef4rm_verify=90213ca6ce
- Verified for
-
- Apple
- Atlassian
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 a mx include:spf1.denzel.at include:spf_mdata.denzel.at include:nl-sent.de ip4:67.219.240.0/20 ip4:80.245.195.212 ip4:80.245.195.213 ip4:80.245.195.214 ip4:80.245.195.217 include:servers.mail.veact.eu -allstrict (-all) - DMARC
-
v=DMARC1; p=none; fo=1policy: none (monitoring only) - DKIM
-
- dkim:
v=DKIM1;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxKk+PtPV92v8QN6pf4wGPXqB8LwZpRldf0b7tUm9NafUS8zA4zEsqxVertjeb723FPdkilKpZzKZJyKLIl3sfi…
selectors probed - dkim:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 287 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN, DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' data: *.analytics.google.com www.google.at *.cookieyes.com rns.matelso.de log.cookieyes.com stats.g.doubleclick.net analytics.google.com td.doubleclick.net www.google.com cdn-cookieyes.com *.googletagmanager.com *.meinereifen.at api.geoapify.com cloud.email.denzel.at *.amazonaws.com *.autouncle.com wss://widget.vivelacar.com *.adform.net *.vivelacar.com https://assets.autouncle.com *.autouncle.at *.servicelister.de *.itt-dev.de https://www.paypal.com https://paypal.com https://api.hpm.itt-dev.de https://hpm.itt-dev.de https://www.youtube-nocookie.com https://static-v.tawk.to https://va.tawk.to https://tawk.link https://cdn.jsdelivr.net https://plugins.tawk.to https://karriere.denzel.at http://karriere.denzel.at https://karriere.denzel.at https://test-otb.motiondata-vector.com https://otb.motiondata-vector.com https://test-osb.motiondata-vector.com https://osb.motiondata-vector.com https://www.google-analytics.com https://news.denzel.at h