ibbrugg.ch
HTML metadata
Technology
- CDN
- Cloudflare
- jQuery
- 3.5.1
Third-party hosts loaded (3)
- ik.imagekit.io×19
- hubspot.etrex.dev×15
- hubspot-no-cache-eu1-prod.s3.amazonaws.com×1
Social
Contact
- Phone
DNS records live
- NS
-
- ns1-38.azure-dns.com
- ns2-38.azure-dns.net
- ns3-38.azure-dns.org
- ns4-38.azure-dns.info
- MX
-
- 10 ibbrugg-ch.gate.seppmail.cloud
- TXT
-
swisssign-check=dgmeo3blHYjX8J-gvl7doIUwQ9c67r2omsoet4crhvgk7lpfvnmrq
- Verified for
-
- Microsoft 365
- OpenAI
Email authentication strong
- SPF
-
v=spf1 mx ip4:193.105.9.217 include:spf.turbo-smtp.com include:spf.protection.outlook.com include:spf.abacuscity.ch include:spf.mail.hostpoint.ch include:_spf.ch.seppmail.cloud include:25304444.spf07.hubspotemail.net -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; adkim=r; aspf=s; ruf=mailto:dmarc-forensics@ibbrugg.ch; pct=100policy: quarantine - DKIM
-
- default:
v=DKIM1; k=rsa; s=email; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvpT2l3jLNu2XF5C1C/Xw/T0dvXCKe0JYZkJF9k8PWdvN2cd3evIu/Jql6xkZjIwNunajy… - selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwEVv7Z1XsN2bnPb6KaQr/i4rB9dr48gYH6iFYedEdYwSnWvVJ5NJyeJmma1RcV2ni2ntIVTLTsUmYB… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4kP/vtWu+uyieN9desJTKDreNwbhRQjhstBd7iLeAw4fhdlBjRXc+sHURZJvJsUWQffYBxz7VWHcEn…
selectors probed - default:
Certificate (current)
WE1
Expires in 71 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
fullscreen=self, geolocation=self, microphone=self, payment=self- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline' *.etrex.dev *.ibbrugg.ch *.hsappstatic.net *.hubspot.com *.hsforms.com *.hs-analytics.net *.hsforms.net *.hubspotusercontent-eu1.net *.hubapi.com *.hs-banner.com *.hsadspixel.net *.hscollectedforms.net *.hsappstatic.net *.hubspotvideo.com *.doubleclick.net *.amazonaws.com *.google-analytics.com *.google.ch *.google.com *.googletagmanager.com *.googleapis.com *.gstatic.com *.youtube.com *.jobalino.ch *.hotjar.com *.hotjar.io *.twitter.com; script-src 'unsafe-inline' 'unsafe-eval' *.etrex.dev *.ibbrugg.ch *.hsappstatic.net *.hubspot.com *.hsforms.com *.hs-analytics.net *.hsforms.net *.hubspotusercontent-eu1.net *.hubapi.com *.hs-banner.com *.hsadspixel.net *.hscollectedforms.net *.hsappstatic.net *.hubspotvideo.com *.doubleclick.net *.amazonaws.com *.hotjar.com *.google-analytics.com *.google.ch *.google.com *.googletagmanager.com *.googleapis.com *.gstatic.com *.youtube.com *.jobalino.ch *.linkedin.com *.twitter.com *.facebook.net; style-src-elem 'unsa- strict-transport-security
max-age=31536000