dibt.de
HTML metadata
Technology
- Server
- nginx
Registration
- Updated
- 2021-07-24
- Name servers
-
- ns1.telekom.net.
- pns.dtag.de.
DNS records live
- NS
-
- ns1.telekom.net
- pns.dtag.de
- MX
-
- 10 mx11a.antispameurope.de
- 20 mx11b.antispameurope.de
- 30 mx11c.antispameurope.de
- 40 mx11d.antispameurope.de
- TXT
-
cisco-ci-domain-verification=65b861e22307eb67cbf614a5687a4445677a57128536f01a4ec97f15eeb703d6
Email authentication partial
- SPF
-
v=spf1 a mx ip4:87.130.114.129/26 include:spf.hornetsecurity.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
Sectigo Public Server Authentication CA DV R36
Expires in 59 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self'; frame-src 'self' player.vimeo.com; font-src 'self' fonts.gstatic.com; script-src-attr 'self' 'unsafe-inline' https://www.captcha.eu 'report-sample'; script-src-elem 'self' 'unsafe-inline' player.vimeo.com https://statistics.dibt.de/ https://www.captcha.eu 'report-sample'; style-src-attr 'self' 'unsafe-inline' https://www.captcha.eu 'report-sample'; style-src-elem 'self' 'unsafe-inline' https://www.captcha.eu 'report-sample'; img-src 'self' www.bitvtest.de https://statistics.dibt.de/ https://www.captcha.eu data:; connect-src 'self' https://statistics.dibt.de/ https://www.captcha.eu; worker-src 'self' blob: https://www.captcha.eu; report-uri https://www.dibt.de/de/@http-reporting?csp=report&requestTime=1778263899649664&requestHash=19192b8f9739622a073480051cf4588e5e662ecd- strict-transport-security
max-age=31536000;includeSubdomains