gleich-aluminium-shop.de
HTML metadata
Technology
- Server
- Apache
Third-party hosts loaded (1)
- userlike-cdn-widgets.s3-eu-west-1.amazonaws.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1.dc-cluster.de
- ns2.dc-cluster.de
- ns3.dc-cluster.de
- ns4.dc-cluster.de
Email authentication no MX
- SPF
-
v=spf1 mx ip4:62.138.208.97 -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Thawte TLS RSA CA G1
Expires in 227 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
connect-src 'self' wss://chat.userlike.com www.google.com chat.userlike.com api.userlike.com *.facebook.com *.google-analytics.com *.trustedshops.com http://api.trustedshops.com/rest/public/v2/shops/X364C6C905CAAD4B91245B5308CB41C0B/quality/reviews.json *.gleich-aluminium-shop.de https://userlike-cdn-widgets.s3-eu-west-1.amazonaws.com/umm-manifest.json https://userlike-cdn-widgets.s3-eu-west-1.amazonaws.com wss://umd.userlike.com *.doubleclick.net umd.userlike.com api.userlike.com d3upe020n1uosc.cloudfront.net https://api.friendlycaptcha.com https://eu-api.friendlycaptcha.eu www.userlike.com blob: forms-eu1.hscollectedforms.net *.hubapi.com js.hscta.net js-eu1.hscta.net *.hubspot.com *.hsforms.com www.googleadservices.com static.hsappstatic.net bat.bing.com;default-src https://www.gleich-aluminium-shop.de *.googleapis.com *.gstatic.com *.youtube.com *.facebook.com *.facebook.net *.google-analytics.com *.googletagmanager.com *.typekit.net *.google.com *.google.de stats.g.doubleclick.net- strict-transport-security
max-age=31536000; includeSubDomains; preload