ffhs.ch
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns3.rhone.ch
- ns4.rhone.ch
- scsnms.switch.ch
- MX
-
- 0 ffhs-ch.mail.protection.outlook.com
- TXT
-
QuoVadis=e0f27568-0e62-4e01-aee1-72f71f3e8404
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 ip4:195.176.10.152 include:spf.protection.outlook.com include:spfa.myconvento.com include:spfhard.crsend.com include:spf.qb-feedback.com include:spf.terminland.de include:spf.abacuscity.ch -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:re+pu6wnxle4iq@dmarc.postmarkapp.com, mailto:dmarc@ffhs.ch; ruf=mailto:dmarc@ffhs.ch; adkim=s; aspf=s; fo=1policy: reject (enforced) - DKIM
-
- selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDL45V5U4ZUg0ooP+AV484dsg73+epn8/fDZFYUOhQL5RMif7sp97810wYgVIaNZnXx+GehVyeyzTpsBP2fey…
selectors probed - selector2:
Certificate (current)
E7
Expires in 35 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-content-type-options
- referrer-policy
- findings
-
- missing Content Security Policy
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-content-type-options
nosniff- strict-transport-security
max-age=31536000; includeSubDomains; preload- content-security-policy-report-only
connect-src 'self' noembed.com cdn.plyr.io cdn.linkedin.oribi.io www.facebook.com ad.doubleclick.net stats.g.doubleclick.net region1.analytics.google.com region1.google-analytics.com www.google-analytics.com maps.googleapis.com translate.googleapis.com; default-src 'self' 'unsafe-eval' 'unsafe-inline' www.google.ch tpc.googlesyndication.com www.google-analytics.com www.google.com data: *.adform.net www.youtube-nocookie.com cdn.plyr.io embed.eventfrog.ch *.ffhs.ch *.3vrooms.app i.ytimg.com www.youtube.com 12720745.fls.doubleclick.net adservice.google.com analytics.google.com maps.googleapis.com www.gstatic.com connect.facebook.net googleads.g.doubleclick.net region1.analytics.google.com snap.licdn.com stats.g.doubleclick.net www.facebook.com www.googleadservices.com www.googletagmanager.com www.linkedin.com cdn.linkedin.oribi.io px.ads.linkedin.com; font-src 'self' fonts.gstatic.com ; form-action 'self'; img-src 'self' data: px.ads.linkedin.com www.facebook.com www.google.com www.google