hofer.at
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Apache
- Ads
-
- Meta Pixel
- Cookie consent
-
- OneTrust
Third-party hosts loaded (9)
- s7g10.scene7.com×16
- accounts.google.com×1
- apis.google.com×1
- appleid.cdn-apple.com×1
- assets.adobedtm.com×1
- cdn.cookielaw.org×1
- connect.facebook.net×1
- rum.hlx.page×1
- service.force.com×1
Social
DNS records live
- NS
-
- udns1.cscdns.net
- udns2.cscdns.uk
- MX
-
- 1 asgportal.in.tmes.trendmicro.eu
- TXT
-
Show 21 TXT records
knowbe4-site-verification=ff9339437acba116e403abeb2fdc35afmentimeter-776ac8a0-9502-4e46-80c5-235e0229fc4eapple-domain-verification=zPC1N5BQjTw9fI63Dynatrace-site-verification=5f7101b3-57a5-4d5c-b6d7-60c6e52e994f__emfgjbcetirfqvi1qkp82rap6nbw=BE6yib2iIWogIyPRA7CjN48IpDz9Dxp1Ko0Qz2QJxIBqN113ZuCt0u8g0pcHnRoeokX/xif2KDZunSYcSweYLC+/vQa+E+l5TD9mkxv4uMzSi3XBv9ew3drhEJ9bK7IIZA==MS=ms10320889tmes=eb3a762d42bca2fcf690ca59688ba02cgoogle-site-verification=eMm47EVZpH9teQQorksSB_dddF_Bxe2RpGv_B0J0PngaD9eeqQZ0NC/UlyS5NPY4dvtR24QqPps+lQFzwYQBy2Mqro7He3gU8lPzfkVSGGcqNLIjnvZKjIaK6ufW/SNuQ==atlassian-domain-verification=cSRTDhs5UwDH4pea7XptFsuAk/N7XohIYFXb6raTgBq2N7luzhkuFEgm3qAbL0S7docker-verification=dea0289f-0b66-4b65-9d85-ea7143e6577fmiro-verification=38ca58e3f143e17421169d4c41241f68462dddd4docusign=8c7c7d8c-3a4f-4f47-acfb-8d4d31eaef60facebook-domain-verification=086bak94jplzrbsu3zii8gfmzd4unkdocusign=d3d0794d-bdc2-4c83-b38b-5b8e08e0ff20adobe-idp-site-verification=4813f4ab63fde94558b0581883685f00492480d445aacf979f4916eb28be60f1_3s0cv2m3poalnafc5ub6292a0o5vf4kapple-domain-verification=on-CX6MHgOLMGo5aQJ0HkLowv3xd2h3kDOxFRMZTrrIDynatrace-site-verification=1c78c0e0-156b-41fe-8a37-c20b38f88f5e__q6konc38h611vksoktnd1o56523ac1b9fc97604e45a204658c20a3a2d6
Email authentication strong
- SPF
-
v=spf1 redirect=hofer.at.hosted.spf-report.comno all qualifier - DMARC
-
v=DMARC1; p=reject; rua=mailto:aff515ed@mxtoolbox.dmarc-report.com; ruf=mailto:aff515ed@forensics.dmarc-report.com; adkim=r; aspf=r; fo=1:spolicy: reject (enforced) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCbSa0yA8M9BCSFiyfRE8vjp8eHprzf9ypv6Jam1+87wUajeD+AB6/Y2rsSiQEoJMDZ0aL57BeRrURBNjH9G7… - mail:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC2IQGbWCjbbCpcJyJJSmiJrSdiCPCnfQYjhsEDgaFvOWrDK2CHekW8A3LpX9Xlrj7oJKYdpD3MHMFBDJ0A6R…
selectors probed - selector1:
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 58 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Permissions Policy
Header values
- referrer-policy
no-referrer-when-downgrade- x-content-type-options
nosniff- content-security-policy
script-src 'self' 'unsafe-inline' 'unsafe-eval' assets.adobedtm.com *.salesforceliveagent.com service.force.com *.my.salesforce.com *.google.com *.facebook.net *.facebook.com *.omtrdc.net *.youtube.com *.ytimg.com *.doubleclick.net *.googleapis.com *.iesnare.com appleid.cdn-apple.com www.googletagmanager.com www.googleadservices.com activitymap.adobe.com qasfix-hofer.cs101.force.com cs101.salesforce.com https://www.googletagmanager.com/gtag/js *.bing.com https://s.pinimg.com/ct/core.js https://s.pinimg.com/ct/lib/main.2a04f3ee.js hofer.force.com hofer.secure.force.com static.lightning.force.com js-cdn.dynatrace.com int-crm.my.salesforce.com EU17.salesforce.com EU17.force.com EU36.salesforce.com EU36.force.com secure.force.com *.cookielaw.org *.onetrust.com *.salesforce-sites.com s7g10.scene7.com collect.tealiumiq.com tags.tiqcdn.com *.googlesyndication.com https://rum.hlx.page *.mapbox.com https://locator.uberall.com; object-src 'none'; connect-src 'self' *.omtrdc.net *.demdex.net *.po- strict-transport-security
max-age=63072000; includeSubdomains;
Links to (15)
Linked from (1)
- aldi.de×1