iconparc.de
HTML metadata
Technology
- Server
- Apache
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
- Phone
- Address
- Sophienstr. 1, 80333, München, DE
Registration
- Updated
- 2022-01-29
- Name servers
-
- dns1.iconparc.de.
- dns2.iconparc.de.
- dns3.iconparc.de.
DNS records live
- NS
-
- dns1.iconparc.de
- dns2.iconparc.de
- dns3.iconparc.de
- MX
-
- 10 mail.iconparc.de
- 20 t.iconparc.de
- 30 pluto.iconparc.de
- TXT
-
MS=1A9AC2374CE4D707144827D92938C32D30D820FC
Email authentication partial
- SPF
-
v=spf1 mx ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 44 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), camera=(self), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(self), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(self), midi=(), navigation-override=(), payment=(), picture-in-picture=(), publickey-credentials-get=(self), screen-wake-lock=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=()- x-content-type-options
nosniff- content-security-policy
report-uri https://www.iconparc.de/ajp13/IPFrontend/contentSecurityPolicyReport.ipm; default-src 'self' app.chatwoot.com https://www.youtube-nocookie.com https://www.youtube.com https://userlike-cdn-umm.b-cdn.net wss://umd.userlike.com; script-src 'self' app.chatwoot.com https://www.youtube-nocookie.com https://www.youtube.com https://userlike-cdn-umm.b-cdn.net wss://umd.userlike.com https://*.iconparc.de *.zopim.com *.zdassets.com *.google-analytics.com https://userlike-cdn-widgets.s3-eu-west-1.amazonaws.com https://api.userlike.com wss://widget-mediator.zopim.com https://www.youtube-nocookie.com maps.googleapis.com app.chatwoot.com data: https://*.googletagmanager.com https://googletagmanager.com https://tagmanager.google.com https://www.googleadservices.com https://www.google.com https://pagead2.googlesyndication.com 'unsafe-inline' 'unsafe-eval'; connect-src https://*.iconparc.de *.zopim.com *.zdassets.com *.google-analytics.com https://userlike-cdn-widgets.s3-eu-west-1.amazonaws.c- strict-transport-security
max-age=31536000