hau4.de
HTML metadata
Technology
- Server
- Apache
Registration
- Updated
- 2026-02-17
- Name servers
-
- dns01.manitu.net.
- dns02.manitu.net.
DNS records live
- NS
-
- dns01.manitu.net
- dns02.manitu.net
- MX
-
- 10 mail036.webhosting.manitu.net
Email authentication weak
- SPF
-
v=spf1 mx a include:_spf.manitu.net -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://hau.a2hosted.com https://stat.hau123.de https://t.rausgegangen.de https://www.alex-berlin.de/alextv_event https://docs.google.com/ https://www.twitch.tv https://player.twitch.tv https://burningfutures.podigee.io https://player.podigee-cdn.net/podcast-player/podigee-podcast-player.html https://chatbot.hau4.de http://localhost:3000 http://localhost:8000 https://hau4-chatbot.beta3.brettinghams-dev.de 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: https://i.vimeocdn.com https://i.ytimg.com https://chatbot.hau4.de http://localhost:3000 http://localhost:8000 https://hau4-chatbot.beta3.brettinghams-dev.de; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com https://www.youtube-nocookie.com https://www.youtube.com https://player.vimeo.com https://vimeo.com https://soundcloud.com https://w.soundcloud.com https://t.rausgegangen.de https://dringeblieben- strict-transport-security
max-age=31536000; includeSubdomains