elisabethinum.de
HTML metadata
Technology
- Server
- Apache
- CMS
- WordPress
Registration
- Updated
- 2021-11-23
- Name servers
-
- ns2.dotplex.de.
- ns3.dotplex.ie.
- ns.dotplex.net.
DNS records live
- NS
-
- ns.dotplex.net
- ns2.dotplex.de
- ns3.dotplex.ie
- MX
-
- 20 d316149.a.ess.de.barracudanetworks.com
- 21 d316149.b.ess.de.barracudanetworks.com
- TXT
-
MS=ms97748175
Email authentication weak
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.ess.de.barracudanetworks.com include:spf.de.umantis.com -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
E7
Expires in 27 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- weak frame protection
Header values
- referrer-policy
no-referrer- x-frame-options
SAMEORIGIN, deny- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(),display-capture=(), document-domain=(), encrypted-media=(), fullscreen=(self), gamepad=(), geolocation=(), gyroscope=(), layout-animations=(self), legacy-image-formats=(self), magnetometer=(), microphone=(), midi=(), notifications=(), oversized-images=(self), payment=(), picture-in-picture=(), publickey-credentials-get=(), push=(), screen-wake-lock=(), speaker-selection=(), sync-xhr=(self), unoptimized-images=(self), unsized-media=(self), usb=(), vibrate=(), xr=(), xr-spatial-tracking=(), speaker=(self), web-share=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' ; connect-src 'self' maps.googleapis.com analytics.elisabeth-vinzenz.de cdn.docmedico-rezeption.de; child-src 'self'; object-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' analytics.elisabeth-vinzenz.de maps.googleapis.com cdn.docmedico-rezeption.de; media-src 'self' cdn-public.borlabs.io analytics.elisabeth-vinzenz.de cdn.docmedico-rezeption.de; frame-src www.youtube.com youtube.com embed.docmedico-rezeption.de; img-src 'self' 'unsafe-inline' maps.gstatic.com maps.googleapis.com cdn-public.borlabs.io secure.gravatar.com cdn.docmedico-rezeption.de cdn.docmedico.de s.w.org ps.w.org wordpress.org data:; style-src 'self' 'unsafe-inline' fonts.googleapis.com maps.googleapis.com mein.clickskeks.at cdn.docmedico-rezeption.de font-src 'self' fonts.gstatic.com data: ; worker-src blob:, form-action 'self'; frame-ancestors 'none'; upgrade-insecure-requests; block-all-mixed-content- strict-transport-security
max-age=63072000; includeSubDomains; preload, max-age=31536000; includeSubDomains