freiheitplus.de
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Next.js
Social
Registration
- Updated
- 2020-02-13
- Name servers
-
- gordon.ns.cloudflare.com.
- sara.ns.cloudflare.com.
DNS records live
- NS
-
- gordon.ns.cloudflare.com
- sara.ns.cloudflare.com
- MX
-
- 10 freiheitplus-de.mail.eo.outlook.com
- TXT
-
2y0YIfMnE5lOddX05HSE+hfb3tPTGkON/8pffLdUncyiEMBvaO09ykh759XkScINskpqtY5RN8HNou1LBsRxqw==MS=ms25605155
Email authentication strong
- SPF
-
v=spf1 include:spf.mailjet.com include:spf.protection.outlook.com include:mail.zendesk.com include:_spf.mailgun.org include:_spf.eu.mailgun.org -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; pct=100; rua=mailto:ced39abae2c84f43ac80f67f1554c318@dmarc-reports.cloudflare.net; fo=1:d:s; ri=14400; sp=rejectpolicy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDcRJmMMECZP+9wIlIvNs7ncdHinUrlN37nocqFIKk8pFCk7Ep6mA6wYub6r6JuNkJrxp9yBrDazBTC847ulE…
selectors probed - selector1:
Certificate (current)
WE1
Expires in 27 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self' consentcdn.cookiebot.eu; connect-src 'self' https://cdn.incodesmile.com/ https://cdn.jsdelivr.net/npm/lottie-web@5.13.0/build/player/lottie_light.min.js https://pixel-config.reddit.com/pixels/a2_hut6ffohyaad/config https://tr6.snapchat.com https://tr.snapchat.com https://incode-demo-assets-4e2aoord.s3.amazonaws.com https://client-assets-saas.s3.amazonaws.com https://demo-onboarding.incodesmile.com https://saaseu-onboarding.incodesmile.com https://api.ipify.org https://cdn.i18nexus.com blob: https://featureassets.org https://prodregistryv2.org data: https://fingerprint.incodesmile.com https://d3vv997wtl2myz.cloudfront.net https://api.incode.com https://demo-api.incodesmile.com https://saaseu-api.incodesmile.com https://api.i18nexus.com *.cloudflarestream.com bat.bing.com bat.bing.net *.bing.net *.clarity.ms *.cookiebot.eu *.cookiebot.eu *.facebook.net *.facebook.com *.freiheitplus.de accounts.google.com *.google-analytics.com https://www.google.com/ccm/coll- strict-transport-security
max-age=31536000; includeSubDomains
Links to (13)
- bild.de×2
- bildungschancen.de×2
- buwei.de×2
- chip.de×2
- facebook.com×2
- focus.de×2
- gluecksspiel-behoerde.de×2
- instagram.com×2
- tiktok.com×2
- trustpilot.com×2
- tuv-saar.com×2
- welt.de×2
- youtube.com×2