doxx.de
HTML metadata
Technology
- Server
- nginx
- CMS
- Joomla
Third-party hosts loaded (1)
- cloud.ccm19.de×1
Social
Contact
- Phone
- Address
- Wilckensstraße 1a, 69120, Heidelberg, Baden-Württemberg, DE
Registration
- Updated
- 2025-10-01
- Name servers
-
- ns5.kasserver.com.
- ns6.kasserver.com.
DNS records live
- NS
-
- ns5.kasserver.com
- ns6.kasserver.com
- MX
-
- 10 doxx-de.mail.protection.outlook.com
- TXT
-
qp7jl8c14rg1vqag4h46cnufpsdomainVerification=6c3a2e64-c42f-4b2e-9ec6-f3761626cbe4
- Verified for
-
- Atlassian
- Meta
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:ispgateway.de include:spf.cluster0.4hr.de include:spf.crsend.com include:www.connect.doxx.de -allstrict (-all) - DMARC
-
v=DMARC1; p=none; pct=100policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDb2pK+VtETgzhuPhRPIS1uK3TRxxY3q6wuNJiVNRox3/MSagXn7eaMBQ41pzRJMIojCsF5SqBOet6vD9tuK0…
selectors probed - selector1:
Certificate (current)
Starfield Secure Certificate Authority - G2
Expires in 149 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self' cloud.ccm19.de fonts.gstatic.com; script-src 'self' 'nonce-89lW5n3m7j7epeBLcMJAW_ohiSiOaqdF29ub7EkvJrnBYeHNw7Zk9A' *.insightful-datavisionary.com *.ccm19.de *.ytimg.com *.jsdelivr.net *.googletagmanager.com *.youtube-nocookie.com *.youtube.com *.google-analytics.com *.googleapis.com *.google.com *.g.doubleclick.net googleads.g.doubleclick.net *.emailsys1a.net *.hcaptcha.com hcaptcha.com *.facebook.net connect.facebook.net *.facebook.com *.chaindesk.ai *.leadinfo.net *.leadinfo.com *.ahrefs.com *.clarity.ms *.ddev.site *.doxx.de analytics.doxx.de static.cloudflareinsights.com youtu.be 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com *.doxx.de *.clarity.ms c.bing.com *.ccm19.de *.chaindesk.ai *.google-analytics.com *.googletagmanager.com *.google.com *.facebook.net connect.facebook.net *.facebook.com *.google.de *.gstatic.com youtu.be; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com- strict-transport-security
max-age=31536000; includeSubDomains
Links to (6)
- facebook.com×1
- google.com×1
- instagram.com×1
- linkedin.com×1
- xing.com×1
- youtube.com×1