diakonie-michaelshoven.de
HTML metadata
Technology
- Server
- Apache
- CMS
- Joomla
Third-party hosts loaded (1)
- static.etracker.com×1
Social
Contact
- Phone
Registration
- Updated
- 2021-10-13
- Name servers
-
- ns73.domaincontrol.com.
- ns74.domaincontrol.com.
DNS records live
- NS
-
- ns73.domaincontrol.com
- ns74.domaincontrol.com
- MX
-
- 10 mx1.diakonie-michaelshoven.de
- 10 mx2.diakonie-michaelshoven.de
- TXT
-
Show 7 TXT records
_7seu1j7boyhcg3in7ntufs1sivsex1hljmn1jqitd4m20d708v8dp8tdihave-i-been-pwned-verification=dweb_kjpgmnnav23tjtzj9mo2tpy2hg42do7ai7tr3hmmkmmc7d9oimjodn513etch60f8v2s524e1ootswisssign-check=TBc5eWP5rYetjfRGlzZ0n7lSwsU_c6x0fqqz30kafstiwqqnbx18zs5duy9
- Verified for
-
- Apple
- Atlassian
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 a mx a:mx1.diakonie-michaelshoven.de a:mx2.diakonie-michaelshoven.de ip4:78.35.5.10 ip4:91.24.93.168 ip4:91.24.93.163 ip4:91.24.93.165 ip4:94.134.215.138 include:spf.protection.outlook.com include:_spf-dc12.sapsf.com include:spf.mailjet.com include:spf.crsend.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:logmanager@diakonie-michaelshoven.de; ruf=mailto:logmanager@diakonie-michaelshoven.de; sp=none; fo=1; aspf=rpolicy: none (monitoring only) · sp=none - DKIM
- no key found at common selectors
Certificate (current)
Starfield Secure Certificate Authority - G2
Expires in 191 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.diakonie-michaelshoven.de https://*.twingle.de https://*.youtube-nocookie.com https://maps.googleapis.com https://maps.gstatic.com; base-uri 'self'; font-src 'self' https://fonts.gstatic.com https://userlike-cdn-umm.b-cdn.net; form-action 'self' https://*.successfactors.eu; prefetch-src 'self'; frame-ancestors 'self' https://*.etracker.com https://*.twingle.de; img-src 'self' https://*.ytimg.com https://*.youtube.com https://maps.googleapis.com https://maps.gstatic.com https://userlike-cdn-operators.userlike.com data:; style-src 'self' https://*.twingle.de https://maps.googleapis.com https://fonts.googleapis.com 'unsafe-inline'; script-src 'self' https://*.etracker.com https://*.etracker.de https://api.signalize.com https://*.twingle.de https://maps.googleapis.com https://userlike-cdn-widgets.s3-eu-west-1.amazonaws.com https://userlike-cdn-umm.b-cdn.net https://api.userlike.com 'unsafe-inline' 'unsafe-eval'; script-src-elem 'self' https://*.etracker.com htt- strict-transport-security
max-age=31536000; includeSubDomains; preload