deutscheakademie.de
HTML metadata
Technology
- Server
- Apache
Social
Contact
- Phone
Registration
- Updated
- 2021-01-07
- Name servers
-
- ns25.domaincontrol.com.
- ns26.domaincontrol.com.
DNS records live
- NS
-
- ns25.domaincontrol.com
- ns26.domaincontrol.com
- MX
-
- 10 mx-01-eu-central-1.prod.hydra.sophos.com
- 20 mx-02-eu-central-1.prod.hydra.sophos.com
- TXT
-
u5a740l59gos63lnkj5aeffpefsophos-domain-verification=1d23edecfc3fba19a4efbb25909e3531fc81e52fgoogle-site-verification=irAfpxEjW2til1tF91QYe_u_Hy265qvgkMvlt2MQNCA
Email authentication strong
- SPF
-
v=spf1 include:spf.mailjet.com a mx mx:exchangehosted.deutscheakademie.de ip4:80.237.138.0/24 ip4:83.169.31.13 ip4:213.188.110.0/23 ip6:2a01:488:42::/48 ip6:2a01:488:42:1000:53a9:1f0d:ff56:157a include:_spf.prod.hydra.sophos.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_rua@onsecureserver.net; adkim=r; aspf=r;policy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
Starfield Secure Certificate Authority - G2
Expires in 103 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
base-uri 'none'; connect-src 'self' https:; default-src 'none'; font-src 'self' https://use.typekit.net; form-action 'self' https://www.paypal.com/donate; frame-ancestors 'none'; frame-src https://player.vimeo.com https://www.youtube-nocookie.com; img-src 'self' data: https:; media-src 'self'; script-src 'self'; style-src 'self' 'unsafe-inline' https://p.typekit.net https://use.typekit.net