fliedner.de
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- cdn.consentmanager.net×1
- www.googletagmanager.com×1
Social
Contact
- Phone
Registration
- Updated
- 2025-09-11
- Name servers
-
- ns2.inwx.de.
- ns3.inwx.de.
- ns.inwx.de.
DNS records live
- NS
-
- ns.inwx.de
- ns2.inwx.de
- ns3.inwx.de
- MX
-
- 10 fliedner-de.mail.protection.outlook.com
- TXT
-
Show 6 TXT records
google-site-verification=dyIoTUm7Fv7gq3kSU3DzhK-5OiLtn7yqBJgdWUI-RoUadobe-idp-site-verification=6ba47dbff89f4371348a6f80c6b43eb28a05f51bba6ae7baa5f971e4e9b66545MS=A88F1743162EF0CF36CA1F26FC1D88AD42D3B418google-site-verification=EQTp2ADqxiDOpz8z6HizO0LJin7P-wraqGR1vmgqxU4MS=ms72135152GM0xs+bxYjsGursdEUdS9EtXL3FAKqJS+7H/Z0aNHaA=
Email authentication weak
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.fliedner-der.cloud.nospamproxy.com include:spf.crsend.com ip4:159.255.168.119 ip4:195.243.230.56 ip4:80.72.143.200 -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 14 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(self)- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://*.consentmanager.net; script-src 'report-sample' 'self' 'nonce-YWY4VjJoNHpjVGpvNzI0MUpGRXZGZ0FBQUVv' https://cs-assets.b-ite.com/theodor-fliedner-stiftung/jobs-api/ https://maps.googleapis.com/maps/api/ https://static.b-ite.com https://www.googletagmanager.com https://www.googletagmanager.com/gtag/js https://*.consentmanager.net; style-src 'unsafe-inline' 'report-sample' https://*.consentmanager.net 'self' https://cs-assets.b-ite.com https://fonts.googleapis.com https://p.typekit.net https://static.b-ite.com https://use.typekit.net; object-src 'none'; base-uri 'self'; connect-src 'self' data: https://*.consentmanager.net https://cs-assets.b-ite.com https://dot.niiid.io wss://dot.niiid.io https://jobs.b-ite.com https://static.b-ite.com https://maps.googleapis.com https://analytics.google.com https://*.googlesyndication.com https://*.analytics.google.com https://*.google-analytics.com https://stats.g.doubleclick.net https://www.googleadservices.com https://www.- strict-transport-security
max-age=31536000; includeSubDomains