ifem-shop.de
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (6)
- schott-production.s3.eu-central-1.amazonaws.com×12
- www.googletagmanager.com×3
- app.usercentrics.eu×1
- download.digiaccess.org×1
- integrations.etrusted.com×1
- privacy-proxy.usercentrics.eu×1
Social
Contact
- Phone
Registration
- Updated
- 2009-02-12
- Name servers
-
- ns01.versatel.de.
- ns02.versatel.de.
- ns03.versatel.de.
DNS records live
- NS
-
- ns01.versatel.de
- ns02.versatel.de
- ns03.versatel.de
- MX
-
- 30 mail.schott-musik.de
- TXT
-
_pqvrqzbyb3v97pror5uom5d1hdk5qi5
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 66 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
font-src fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com www.paypalobjects.com *.fontawesome.com https://fonts.bunny.net *.schott-music.com fonts.googleapis.com *.hotjar.com sibforms.com *.brevo.com 'self' data: https://widgets.trustedshops.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.amazon.com *.amazon.co.uk *.amazon.co.jp *.amazon.jp *.amazon.it *.amazon.fr *.amazon.es *.amazon.de 'self' www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com *.schott-music.com apiuat.test.intelligent-payments.com turnkeyuat.test.myriadpayments.com apiuat.test.myriadpayments.com apiuat.test.boipapaymentgateway.com api.intelligent-payments.com turnkey.intelligent-payments.com api.myriadpayments.com turnkey