ehrenamtssuche-hessen.de
HTML metadata
Technology
- Server
- Apache
Registration
- Updated
- 2024-05-16
- Name servers
-
- root-dns.netcup.net.
- second-dns.netcup.net.
- third-dns.netcup.net.
DNS records live
- NS
-
- root-dns.netcup.net
- second-dns.netcup.net
- third-dns.netcup.net
- MX
-
- 10 mail.ehrenamtssuche-hessen.de
- 50 mxe86c.netcup.net
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 include:spf.mailjet.com a mx ip4:213.216.17.189/32 include:_spf.webhosting.systems ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=reject;sp=none;pct=100;rua=mailto:infox@ehrenamtssuche-hessen.de;ruf=mailto:info@ehrenamtssuche-hessen.de;ri=86400;aspf=r;adkim=r;fo=1policy: reject (enforced) · sp=none - DKIM
-
- dkim:
v=DKIM1;t=s;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCzCf3KMzET1HGwTxAr5gqByHuJgaMM7cO8dYONOMGp/AEXfsAfP6f6HMQFEAXlDMrRuKE/VMiPYSCOJB19npWlhC…
selectors probed - dkim:
Certificate (current)
E8
Expires in 37 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
ALLOW-FROM *- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://use.ehrenamtssuche-hessen.de/js/container_7feFy264.js https://www.google.com https://www.gstatic.com https://www.googletagmanager.com https://cdn.jsdelivr.net/npm/algoliasearch@4.10.5/dist/algoliasearch-lite.umd.js; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://fonts.gstatic.com https://cdn.jsdelivr.net; img-src 'self' https: data: https://a.tile.openstreetmap.org/; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com; worker-src 'self'; connect-src 'self' https:; frame-src 'self' https://www.google.com https://www.openstreetmap.org https://datenschutzgenerator.hessen-agentur.de; object-src 'self' data:; report-uri /app/error/security;- strict-transport-security
max-age=31536000