everyware.ch
HTML metadata
Technology
- Server
- nginx
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- dns1.ewdns.ch
- dns2.ewdns.ch
- dns3.ewdns.ch
- MX
-
- 10 barracuda.everyware.ch
- TXT
-
Show 4 TXT records
EboGkP2G7kSKWAtB9mkMDx0ZHmyDAQncfrcNrD/QhbyJIs9AJvan1VRDe0py8SO7lRASbdPp7/IB63yMM9Igbg==_8f87lmj0y7ojwdr6nn07ctyjhafwdcc_s43we7z289xl6vc1eivpg65fp74d0ffFoYbvMwF/1MfqwTWm92720ZI0oSx6W/JG5qUMfTMlMibl/N8Sbwihc0WXxs26Ukj9NSVdbtzKHHMsYg301l/RQ==
- Verified for
-
- Anthropic
Email authentication partial
- SPF
-
v=spf1 mx a:webmail.ewadmin.ch ip4:217.71.90.170 ip4:212.71.109.144 ip4:212.71.125.36 ip4:217.71.89.107 ip4:212.103.71.210 include:_spf.ewmail.com include:_spf.psm.knowbe4.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@wsncke3e.uriports.com; ruf=mailto:dmarc@wsncke3e.uriports.com; fo=1:d:spolicy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; s=email;p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq/4QnzOSfkXzfbE6KOLvI0/PYO5sK2XgjpCRhDwXcnKTbgzyPa1XDmIqt3qfiBdUZysJoy…
selectors probed - default:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 196 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' www.google.com www.google-analytics.com www.googletagmanager.com www.gstatic.com *.doubleclick.net api.mapbox.com consentcdn.cookiebot.com consent.cookiebot.com 'self'; object-src 'none'; worker-src blob: ; child-src www.google.com consentcdn.cookiebot.com assist.zoho.eu blob: 'self' ; img-src imgsct.cookiebot.com data: blob: 'self' www.google.ch www.google.com www.google-analytics.com; connect-src 'self' *.tiles.mapbox.com consentcdn.cookiebot.com api.mapbox.com events.mapbox.com www.google-analytics.com stats.g.doubleclick.net region1.analytics.google.com; frame-ancestors 'self'- strict-transport-security
max-age=15768000; includeSubDomains; preload
Links to (2)
- linkedin.com×2
- ewcs.ch×2