gustav-wolf.com
HTML metadata
Technology
- Server
- nginx
- jQuery
- 3.4.1 known XSS (<3.5)
- Stack
- PHP
Contact
- Phone
Registration
- Registrar
- InterNetX GmbH
- Created
- 2006-02-03
- Expires
- 2027-02-03 247 days left
- Updated
- 2026-02-04
- Name servers
-
- ns01.iok.net
- ns02.iok.net
- ns03.iok.net
- ns04.iok.de
DNS records live
- NS
-
- ns01.iok.net
- ns02.iok.net
- ns03.iok.net
- ns04.iok.de
- MX
-
- 1 mx01.hornetsecurity.com
- 10 mx03.hornetsecurity.com
- 15 mx04.hornetsecurity.com
- 40 gustavwolf-com01e.mail.protection.outlook.com
- 5 mx02.hornetsecurity.com
- TXT
-
_24e2pg08pqj67pyeuyigq2t4eojspcx
Email authentication partial
- SPF
-
v=spf1 a:gate.gustav-wolf.de include:spf.protection.outlook.com include:spf.hornetsecurity.com include:spf-de.emailsignatures365.com -allstrict (-all) - DMARC
-
v=DMARC1; p=none; rua=mailto:dmarc@gustav-wolf.de; ruf=mailto:dmarc@gustav-wolf.depolicy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDZ5h7RteHADoalVkAVT6qFdzNl1S55nHK6j6lnHfM0afj4cgnvFXAzKu6bwuy9WjxD661MTOupDC9xLSgZUE… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCwcjxkyeMrm2w223vWbbcbeePa+5ME32uwBFf4KVR5+EdoCikcFVdiQC1gfL8zXxALZYQ6zKNizPAcu3ovB3…
selectors probed - selector1:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 70 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
Header values
- referrer-policy
no-referrer- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=*, battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=*, execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=*, geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=*, sync-xhr=*, usb=(), web-share=*, xr-spatial-tracking=(), clipboard-read=*, clipboard-write=*, gamepad=(), speaker-selection=()- x-content-type-options
nosniff- content-security-policy
default-src 'self'; connect-src 'self' https://www.gustav-wolf.de https://www.gustav-wolf.com https://www.gustav-wolf.cn https://matomo.gustav-wolf.de https://*.emailsys1a.net https://newsletter.gustav-wolf.de; script-src https: 'unsafe-inline' https://matomo.gustav-wolf.de; img-src 'self' https://matomo.gustav-wolf.de blob:; style-src https: 'unsafe-inline'; font-src 'self' data:; frame-ancestors 'self'; frame-src 'self';- strict-transport-security
max-age=31536000