gisma.com
HTML metadata
Technology
- Server
- nginx
- CMS
- WordPress
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Osano
Third-party hosts loaded (3)
- cmp.osano.com×2
- www.googletagmanager.com×2
- dev.visualwebsiteoptimizer.com×1
Social
Contact
- Address
- Konrad-Zuse-Ring 11, 14469, Potsdam, DE
Registration
- Registrar
- InterNetX GmbH
- Created
- 1997-05-28
- Expires
- 2026-05-27 8 days left
- Updated
- 2025-05-28
- Name servers
-
- ns-1340.awsdns-39.org
- ns-1641.awsdns-13.co.uk
- ns-462.awsdns-57.com
- ns-646.awsdns-16.net
DNS records live
- NS
-
- ns-1340.awsdns-39.org
- ns-1641.awsdns-13.co.uk
- ns-462.awsdns-57.com
- ns-646.awsdns-16.net
- MX
-
- 10 mx1.hc6443-94.iphmx.com
- 20 mx2.hc6443-94.iphmx.com
- TXT
-
Show 6 TXT records
linkedin-site-verification=0aa5480d-4baf-4a9a-b2c0-b46c406650e7pardot891811=12562c247b27d625e3807be356a94ed139b26c3cf12f82c4bb1ddc6497e5d57cvIyEG40P6Bs7TeOnrTnB/Zo5Kk5dJcIYQbfWXFZGFJa7nHvb3bcy8wl10dK2gU3n0CKeTknHzrKFC9eutWo5rQ==Unbounce 222255adobe-idp-site-verification=39b4d52703678f67c74850db2ecc2c7033a6d7a1d66df4347fb1b44ce832c2e2gqX8LzIGumqNBykLb6YDGC/NLpfSazjzsMpY+dpxmjcd6qauPSe8dauHyI5QvTN5u7+4WqCuY+raxTvjE9niMA==
Email authentication weak
- SPF
-
v=spf1 mx a:mx61.gus.global a:mx62.gus.global include:spf.protection.outlook.com exists:%{i}.spf.hc6443-94.iphmx.com include:spf-uk.emailsignatures365.com include:aspmx.pardot.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzlP3XEnLgLzkJYppLKFLWTbIlpImXaK36R4G1YR5N8j4HTF5QkNUPQxxqNIHYsaignyDTHraD7UUBe…
selectors probed - selector1:
Certificate (current)
E8
Expires in 61 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
strict-origin-when-cross-origin- permissions-policy
geolocation=(self), camera=(), microphone=(), accelerometer=(self "https://www.youtube.com"), gyroscope=(self "https://www.youtube.com"), magnetometer=(), payment=(), usb=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://service.force.com https://*.googletagmanager.com https://*.google-analytics.com https://*.doubleclick.net https://googleads.g.doubleclick.net https://*.osano.com https://www.youtube.com https://*.instagram.com https://acsbapp.com https://connect.facebook.net https://*.edology.com https://dev.visualwebsiteoptimizer.com https://*.bing.com https://*.bing.net https://snap.licdn.com https://*.googleadservices.com https://*.googlesyndication.com https://*.clarity.ms https://*.facebook.com https://*.youtube.com https://*.ads.linkedin.com https://px.ads.linkedin.com https://*.tiktok.com https://*.neutral.ttwstatic.com https://*.infisecure.com https://*.typeform.com https://*.pingdom.net https://*.gisma.com; worker-src 'self' blob:; child-src 'self' blob:; style-src 'self' https://*.neutral.ttwstatic.com https://*.typeform.com 'unsafe-inline'; img-src 'self' data: https://*.googletagmanager.com https://*.google-analytic- strict-transport-security
max-age=31536000