diamir.de
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (3)
- cdn.consentmanager.net×3
- vod.api.video×2
- delivery.consentmanager.net×1
Social
Registration
- Updated
- 2015-09-03
- Name servers
-
- ns1.timmehosting.de.
- ns2.timmehosting.de.
- ns3.timmehosting.de.
DNS records live
- NS
-
- ns1.timmehosting.de
- ns2.timmehosting.de
- ns3.timmehosting.de
- MX
-
- 10 diamir-de.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
pinterest-site-verification=521bb581152cf3244d97a2cc70d6dcdbjetbrains-domain-verification=60n2kfmwkzjxhuvhtsl3vvnjotmes=bfdb910ef6e92de0f8149cb31916b96capple-domain-verification=2nBlUTUCbY8fdk-j4VvA4nRoVO_j7LS_ovnyr48pdeg
Email authentication strong
- SPF
-
v=spf1 include:spf1.diamir.de include:spf.protection.outlook.com include:midoffice.midoco.net include:spf.mxg.cloud include:spf.de.exclaimer.net a:mail.timmehosting.de -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:re+dol1orqkcje@dmarc.postmarkapp.com; ruf=mailto:dmarc@diamir.de; sp=quarantine; adkim=r; aspf=s;policy: quarantine · sp=quarantine - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC/4BwNXvAY6P13sUv8A4PfWOUgDM8Jf+5GrG84SOjIGppxDOfTdvh3LPT//NrRcCLFlEya7Rc9abcLMaZ1kU… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCwbkSr5hcbZXrXz9pHAbjWJKytouD7KLQotpG/Y9XvzsYc7kMgcaZ4ZWJ1cDYPwMS7380ZJP9a6X7FOlCPeE… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA7Cn6hcyKvy8Dnmxj2SAaKStRPbzoHsbg9MRU9fnHqiPs6X1pthY05qPJBzbSt9iot9CBoUsQaKZDjsqm71… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbLe+KO+6wZ2MZN/1fflZUYuO62HFtRoCwhKCoyf8tPBLlMPdydmlJpgBm7hnd4N4nUoO6qARmdcv6M9MbCziDde…
selectors probed - selector1:
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 13 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
camera=(), microphone=(), geolocation=(), gyroscope=()- x-content-type-options
nosniff- content-security-policy
connect-src *.googletagmanager.com *.googleadservices.com *.google-analytics.com *.analytics.google.com *.g.doubleclick.net *.google.com pagead2.googlesyndication.com https://*.googleapis.com https://*.gstatic.com data: blob: https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com https://*.clarity.ms https://c.bing.com vimeo.com 'self' *.diamir.de *.tripbuilder.app *.consentmanager.net *.api.video *.doubleclick.net *.pinterest.com *.convertexperiments.com *.metrics.convertexperiments.com logs.convertexperiments.com *.accessgo.de *.bing.com *.pinimg.com;img-src *.googletagmanager.com *.googleadservices.com *.google-analytics.com *.analytics.google.com *.g.doubleclick.net *.google.com pagead2.googlesyndication.com https://*.googleapis.com https://*.gstatic.com *.googleusercontent.com data: *.hotjar.com https://*.clarity.ms https://c.bing.com *.vimeocdn.com 'self' *.diamir.de *.tripbuilder.app *.consentmanager.net placehold.co *.google.de *.facebook.com *.wetu.com wetu.com images.uns- strict-transport-security
max-age=31536000; includeSubDomains; preload