erotik-directory.de
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (4)
- images.rotlicht-mv.de×39
- amateur-sofa.de×4
- ad-mv.de×2
- c.ad-mv.de×1
Registration
- Updated
- 2023-03-02
- Name servers
-
- cns1.alfahosting.info.
- cns2.alfahosting.info.
- cns3.alfahosting.info.
DNS records live
- NS
-
- cns1.alfahosting.info
- cns2.alfahosting.info
- cns3.alfahosting.info
- MX
-
- 10 mx03.secure-mailgate.com
- 10 mx04.secure-mailgate.com
Email authentication weak
- SPF
-
v=spf1 a mx include:secure-mailgate.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 16 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- weak frame protection
- weak content type protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin, strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff, nosniff- content-security-policy
default-src 'self'; img-src 'self' data: https://images.rotlicht-mv.de https://*.rotlicht-mv.de https://media.rotlicht.de https://rotlicht.de https://*.rotlicht.de https://ad-mv.de https://web-portale.net https://amateur-sofa.de https://rotlicht-cafe.de https://c.ad-mv.de; script-src 'self' 'unsafe-inline' https://ad-mv.de https://c.ad-mv.de; style-src 'self' 'unsafe-inline'; connect-src 'self' https://c.ad-mv.de; frame-src https://ad-mv.de; base-uri 'self'; form-action 'self'