gmk.net
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (2)
- static.etracker.com×1
- www.googletagmanager.com×1
Registration
- Registrar
- united-domains GmbH
- Created
- 2000-03-16
- Expires
- 2027-03-16 300 days left
- Updated
- 2026-03-25
- Name servers
-
- ns.udag.de
- ns.udag.net
- ns.udag.org
DNS records live
- NS
-
- ns.udag.de
- ns.udag.net
- ns.udag.org
- MX
-
- 10 mx01.hornetsecurity.com
- 20 mx02.hornetsecurity.com
- 30 mx03.hornetsecurity.com
- 40 mx04.hornetsecurity.com
- TXT
-
Show 4 TXT records
google-site-verification=mBFZCd-n8a_Ei2L2J_Jl3F_cDSQiZYmR65QZGRi40bQ_globalsign-domain-verification=ZW2FD3lfZoCyqvmxPGwkTMCYQvXuJxgevkbkhfKBe0MS=ms62038131domainVerification=910b23a1-dee2-4348-bdaf-a9f273ec1325
Email authentication partial
- SPF
-
v=spf1 include:spf.protection.outlook.com include:spf.hornetsecurity.com include:_spf.createsend.com include:agenturserver.de -allstrict (-all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 41 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' region1.google-analytics.com www.google-analytics.com fonts.googleapis.com maps.googleapis.com fonts.gstatic.com createsend.com www.redditstatic.com conversions-config.reddit.com pixel-config.reddit.com www.google.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' www.google.com www.gstatic.com static.etracker.com code.etracker.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com js.createsend1.com www.redditstatic.com www.googleadservices.com connect.facebook.net 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://*.typo3.org www.etracker.de maps.gstatic.com maps.googleapis.com www.googletagmanager.com www.google-analytics.com alb.reddit.com googleads.g.doubleclick.net www.google.com www.facebook.com; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com www.google.com td.doubleclick.net www.googletagmanager.com; worker-src blob:;- strict-transport-security
max-age=31536000; includeSubDomains