hzv-web.de
HTML metadata
Technology
- Server
- Apache
Registration
- Updated
- 2016-12-13
- Name servers
-
- ns4.your-server.de.
- ns.second-ns.de.
DNS records live
- NS
-
- ns.second-ns.com
- ns1.your-server.de
- ns3.second-ns.de
- MX
-
- 0 hzvweb-de0i.mail.protection.outlook.com
- TXT
-
MS=ms91020784google-site-verification=8vC99VWWr9qkgef1ndQZzk7FGDSRZNRRo3xxTdHyho8google-site-verification=va8MhD_UpW3_I9Vc7u2FEX9TOP-D4MR6hAikUAhIim0
Email authentication strong
- SPF
-
v=spf1 ip4:153.92.186.42 ip4:153.92.187.42 a mx include:spf.mailjet.com include:spf.protection.outlook.com ~allsoftfail (~all) - DMARC
-
v=DMARC1;p=quarantine;sp=none;pct=30;rua=mailto:info@hzv-web.de;ruf=mailto:info@hzv-web.de;ri=86400;aspf=r;adkim=r;fo=1;policy: quarantine · pct=30 · sp=none - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6atB0Mp/LqO1FW+56BKvwLXdqGXpVzAPjWVRUJ+SmW6DyWluLLs72IpJUIjAlEHGmlClsPLmrrKftO…
selectors probed - selector1:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 268 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'none'; script-src 'self' 'nonce-k0psEwYJBPDY7xe7xAkRHb9FPjVngyrQV75Ulptm0kU'; connect-src 'self'; img-src 'self' data:; style-src 'self' 'unsafe-inline'; font-src 'self'; frame-src 'self'; media-src 'self'; object-src 'self'; frame-ancestors 'self';- strict-transport-security
max-age=2592000
Linked from (1)
- lzkh.de×2