durex.de
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (3)
- eu-images.contentstack.com×28
- cdn.cookielaw.org×5
- www.googletagmanager.com×1
Social
Registration
- Updated
- 2021-04-12
- Name servers
-
- ha1.markmonitor.zone.
- ha2.markmonitor.zone.
- ha3.markmonitor.zone.
- ha4.markmonitor.zone.
DNS records live
- NS
-
- ha1.markmonitor.zone
- ha2.markmonitor.zone
- ha3.markmonitor.zone
- ha4.markmonitor.zone
- MX
-
- 10 durex.de
- 10 eu-smtp-inbound-1.mimecast.com
- 10 eu-smtp-inbound-2.mimecast.com
- TXT
-
Show 9 TXT records
facebook-domain-verification=mdcrs2gq8h0r7s3k358cgv7pt92vnofacebook-domain-verification=u1k3fwr23ym3skzho31hsyty7bpeknfacebook-domain-verification=y1azgjx7s7b6abvctgxgqmxmg2wutjgoogle-site-verification=EVw57WOzmvPwSFitrPApGeHH2buUuQXbOvIwvmFhtjkgoogle-site-verification=qsWu3qg7tSYQDQ9k5kYbCVYVo5w2KcSqwBphTKELnOEMS=ms37571753o0qp3pmqol829qm9hv1o5be1hqhosting-site=hkx-durex-de-prod-62540ed1fe018a0efd5c839da343469b21236ba63c9586
Email authentication partial
- SPF
-
v=spf1 include:us._netblocks.mimecast.com include:eu._netblocks.mimecast.com include:spf.protection.outlook.com include:spf.exclaimer.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; rua=mailto:102761038c0f856@rep.dmarcanalyzer.com; ruf=mailto:102761038c0f856@for.dmarcanalyzer.com; fo=1;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
WR3
Expires in 43 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
camera=(self), geolocation=(self), accelerometer=(self), gyroscope=(self), magnetometer=(self), microphone=(self)- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self' 'unsafe-inline' *.doubleclick.net www.facebook.com uk.cdn-net.com six.cdn-net.com *.analytics.google.com *.googletagmanager.com *.google-analytics.com ssl.gstatic.com stats.g.doubleclick.net; script-src 'self' 'unsafe-inline' 'unsafe-eval' cdn.cookielaw.org *.google-analytics.com connect.facebook.net facebook.com cdn.jsdelivr.net *.doubleclick.net apps.bazaarvoice.com display.ugc.bazaarvoice.com *.pricespider.com *.mapbox.com stg.api.bazaarvoice.com mpsnare.iesnare.com www.google.com/recaptcha/ www.gstatic.com/recaptcha/ cdnjs.cloudflare.com/ajax/libs/socket.io/2.3.0/socket.io.slim.js cdnjs.cloudflare.com/ajax/libs/handlebars.js/3.0.3/handlebars.runtime.min.js cdnjs.cloudflare.com/ajax/libs/handlebars.js/3.0.3/handlebars.min.js *.googletagmanager.com *.adimo.co *.adimouat.co 4dvq37jqcg.execute-api.eu-west-1.amazonaws.com *.mikmak.ai *.swaven.com tagmanager.google.com stats.g.doubleclick.net c.amazon-adsystem.com apis.google.com *.clarity.ms *.hotjar.- strict-transport-security
max-age=31556926