erlebnisplus.ch
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Analytics
- Fonts
-
- Google Fonts
Third-party hosts loaded (3)
- fonts.googleapis.com×1
- go.erlebnisbank.safechat.pro×1
- google-analytics.com×1
Social
Contact
- Phone
- Address
- Bahnhofstrasse 13-15, 3924, St. Niklaus, Schweiz
DNS records live
- NS
-
- ns.hostpoint.ch
- ns2.hostpoint.ch
- ns3.hostpoint.ch
- MX
-
- 10 erlebnisplus-ch.mail.protection.outlook.com
- TXT
-
_j4c8r49558z3z9yjvn1usnpd3lqqnjg
- Verified for
-
- Twilio
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:_spf.bexio.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzhZu1lkX6Rxxgw3pOMmfPnzOdG+7WDv+jjfKZUVW8GEHK2sFCYUSfK8MMMlCK66dxXc8t8h1Gg+vpE… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvadHKHjx0d20buqGw7gKAarstpmI84+eYpZSeWzh+8wYgigEnLIm5KNkpmInR25ZqUh4cpZ0lr8rap…
selectors probed - selector1:
Certificate (current)
DigiCert G5 TLS EU RSA4096 SHA384 2022 CA1
Expires in 169 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(self "https://www.youtube-nocookie.com" "https://www.youtube.com"), battery=(), camera=(self), cross-origin-isolated=(), display-capture=(self), document-domain=(self), encrypted-media=(self), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(self "https://www.youtube-nocookie.com" "https://www.youtube.com"), geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(self), midi=(), navigation-override=(), payment=(self), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(self), usb=(), web-share=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
default-src 'none'; media-src 'self' https://www.youtube.com https://www.youtube-nocookie.com https://youtu.be https://www.raiffeisen.ch; script-src 'self' https://go.erlebnisbank.safechat.pro https://www.googletagmanager.com https://connect.facebook.net https://www.youtube.com https://www.youtube-nocookie.com https://www.raiffeisen.ch 'unsafe-inline' 'unsafe-eval'; img-src 'self' blob: data: https://www.erlebnisbank.ch https://www.raiffeisen.ch https://scene7.raiffeisen.ch https://*.cloudfront.net https://i.ytimg.com https://*.tile.openstreetmap.org; style-src 'self' https://www.raiffeisen.ch 'unsafe-inline'; font-src 'self' https://www.raiffeisen.ch; frame-src 'self' https://www.youtube-nocookie.com https://www.youtube.com https://go.erlebnisbank.safechat.pro https://media10.simplex.tv; connect-src 'self' https://www.raiffeisen.ch https://offers.raiffeisen.ch https://go.erlebnisbank.safechat.pro https://*.google-analytics.com https://unpkg.com https://noembed.com https://cdn.plyr.io;- strict-transport-security
max-age=31536000