ffm.de
HTML metadata
Technology
- CMS
- Next.js
Third-party hosts loaded (2)
- dialog-box-prod-bucket.s3.eu-central-1.amazonaws.com×31
- initag-dialogbox-stageassets-prod-xdcfvc.s3.eu-central-1.amazonaws.com×3
Registration
- Updated
- 2018-04-26
- Name servers
-
- ns2.stadt-frankfurt.de.
- ns.stadt-frankfurt.de.
DNS records live
- NS
-
- ns.stadt-frankfurt.de
- ns2.stadt-frankfurt.de
- MX
-
- 100 rzs01.init.de
- 100 rzs02.init.de
- TXT
-
swisssign-check=roR1uvMnslez3_ZMWb9H3LV8Luk_telesec-domain-validation=313587_2023-11-29_IXRZDkqFc4EHTuqUnKQHBL8TsfXG4yqMRmnkhrXcrPguGBf5QT
Email authentication weak
- SPF
-
v=spf1 ip4:185.49.52.0/22 include:spf.init.de mx ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 31 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Permissions Policy
Header values
- referrer-policy
same-origin- content-security-policy
default-src https: 'unsafe-inline'; frame-ancestors 'none'; img-src https: data: blob:;- strict-transport-security
max-age=31536000; includeSubDomains