erlebnisbank.ch
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Analytics
- Google Tag Manager
- Fonts
-
- Google Fonts
- Social widgets
-
- YouTube Embed
Third-party hosts loaded (5)
- fonts.googleapis.com×1
- go.erlebnisbank.safechat.pro×1
- google-analytics.com×1
- www.googletagmanager.com×1
- www.youtube-nocookie.com×1
Social
Contact
- Phone
- Address
- Bahnhofstrasse 13-15, 3924, St. Niklaus, Schweiz
DNS records live
- NS
-
- ns.hostpoint.ch
- ns2.hostpoint.ch
- ns3.hostpoint.ch
- MX
-
- 100 erlebnisbank-ch.mail.protection.outlook.com
- TXT
-
tc5mm954rp6nrgczjs2kzpqnls5snwm6wx2n1mx11xv75wcwm34k5j19159hsmz6
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 mx a ip4:93.187.238.29 ip4:81.201.204.208/29 ip4:194.11.223.129 ip4:194.11.223.130 include:ispgateway.de include:spf.mandrillapp.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
DigiCert G5 TLS EU RSA4096 SHA384 2022 CA1
Expires in 169 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(self "https://www.youtube-nocookie.com" "https://www.youtube.com"), battery=(), camera=(self), cross-origin-isolated=(), display-capture=(self), document-domain=(self), encrypted-media=(self), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(self "https://www.youtube-nocookie.com" "https://www.youtube.com"), geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(self), midi=(), navigation-override=(), payment=(self), picture-in-picture=(self "https://www.youtube-nocookie.com" "https://www.youtube.com"), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(self), usb=(), web-share=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'none'; media-src 'self' https://www.youtube.com https://www.youtube-nocookie.com https://youtu.be https://www.raiffeisen.ch; script-src 'self' https://go.erlebnisbank.safechat.pro https://www.googletagmanager.com https://connect.facebook.net https://www.youtube.com https://www.youtube-nocookie.com https://www.raiffeisen.ch 'unsafe-inline' 'unsafe-eval'; img-src 'self' blob: data: https://www.raiffeisen.ch https://scene7.raiffeisen.ch https://*.cloudfront.net https://i.ytimg.com https://*.tile.openstreetmap.org; style-src 'self' https://www.raiffeisen.ch 'unsafe-inline'; font-src 'self' https://www.raiffeisen.ch; frame-src 'self' https://www.youtube-nocookie.com https://www.youtube.com https://go.erlebnisbank.safechat.pro https://media10.simplex.tv; connect-src 'self' https://www.raiffeisen.ch https://offers.raiffeisen.ch https://go.erlebnisbank.safechat.pro https://*.google-analytics.com https://unpkg.com https://noembed.com https://cdn.plyr.io; manifest-src 'self'- strict-transport-security
max-age=31536000