hirschvogel.com
HTML metadata
Technology
- Server
- Apache
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (1)
- web.cmp.usercentrics.eu×1
Social
Registration
- Registrar
- EPAG Domainservices GmbH
- Created
- 1999-02-10
- Expires
- 2027-02-10 267 days left
- Updated
- 2026-02-11
- Name servers
-
- ns1.global-dns.de
- ns2.global-dns.de
DNS records live
- NS
-
- ns1.global-dns.de
- ns2.global-dns.de
- MX
-
- 0 hirschvogel-com.mail.protection.outlook.com
- TXT
-
Show 7 TXT records
miro-verification=c61159d3b5299396999d90fa59f9f7553aa181fbapple-domain-verification=M60Rql9GdcSBqOyRgoogle-site-verification=-8yGMkK2vITlRGglz0oznr4faxfDtbzyszZuI2p_xhEmsfpkey=198ipp7pw4nxogknth1um934jadobe-idp-site-verification=49177593829442462452c2fbf86ae9ee43738a99c87db11912856bb0a5a59576atlassian-domain-verification=GK2slCAEE7/FSovV7ke54cm1Y3qIThdQoffTqpidUNi/WXWiGLF3ZUWOHNtqeV55MS=ms33411452
Email authentication strong
- SPF
-
v=spf1 mx a:mx01.hirschvogel.com ip4:194.76.142.40 ip4:185.228.148.132 include:spf.protection.outlook.com include:spf.smtp.net include:_spf-dc12.successfactors.com include:email.prnewswire.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email;policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApA/fHHWrzrIv/f1eKaFpdDIISpNQp+Gq0Q4UfYv4vdeIDkJHkHLHp9gPzWkqyHCwU62MTDwUnP2wiy… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApCiydEmXZfpkPpKo24yRh1YCBbjYzQzoAfV/vQ7mM4Y4DnqfllXEPYQU5tV6RFsWIxREl6EKlS/ZSi… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoAVO6Ux4I/Ic0nBnpV7gAZ70LkHKXNTjgtq/RW4olVsnn3n6RSZqQIyze8IcsNf4T96fbo16slB1X0NtkP… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCxeNI6N5nqfW+p6ldo5QN6YQ1Kss54nBp2AD0+7WcQ/tsw47fj5fdixT/olsN4ZA+lGx0fTqyhJ1zOyXEiiv1mD8…
selectors probed - selector1:
Certificate (current)
E8
Expires in 52 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self'; frame-src 'self' analytics.hirschvogel.com *.matthias-baumgartner.de embed.neospace.io *.easygenerator.com; font-src 'self' *.bootstrapcdn.com data:; img-src 'self' hirschvogel.com *.hirschvogel.com *.usercentrics.eu data:; object-src 'self'; script-src 'self' 'unsafe-inline' analytics.hirschvogel.com https://ajax.googleapis.com https://maxcdn.bootstrapcdn.com web.cmp.usercentrics.eu blob:; style-src 'self' 'unsafe-inline' https://maxcdn.bootstrapcdn.com http://netdna.bootstrapcdn.com; connect-src 'self' hirschvogel.com *.hirschvogel.com *.usercentrics.eu; media-src 'self' blob:; worker-src 'self' blob:- strict-transport-security
max-age=31536000; includeSubDomains