ikb.de
HTML metadata
Technology
- CDN
- Amazon CloudFront
- Server
- Apache
Third-party hosts loaded (1)
- code.etracker.com×1
Registration
- Updated
- 2025-07-01
- Name servers
-
- ns1.telekom.net.
- pns.dtag.de.
DNS records live
- NS
-
- ns1.telekom.net
- pns.dtag.de
- MX
-
- 10 mx-81708637.mail.eu.retarus.com
- TXT
-
swisssign-check=mZDFFINRKtgiFl-pSEJr4TSCJRgmindmanager-verification=798ee007b01dcf367d9acf79a2363dbf8cff278c8d240dc7949220c72460a914
- Verified for
-
- Atlassian
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 a:mx1.kordoba.info a:mx2.kordoba.info a:mx3.kordoba.info a:mx4.kordoba.info a:mail.bankakademie.de ip4:217.115.68.180/31 ip4:62.157.208.155/29 ip4:62.157.208.135/32 ip4:62.157.208.136/32 ip4:62.157.208.177/32 ip4:62.157.208.178/32 ip4:57.133.145.16/32 include:_spf.senders.scnem.com include:spf.protection.outlook.com include:spfhost.messageprovider.com include:_spf.zimpel.de include:_spf.retarus.com -allstrict (-all) - DMARC
-
v=DMARC1;p=quarantine;rua=mailto:dmarc@ikb.de;ruf=mailto:dmarc@ikb.de;sp=reject;fo=1policy: quarantine · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
SwissSign RSA TLS DV ICA 2022 - 1
Expires in 86 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- cross-origin-opener-policy
- cross-origin-resource-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- missing Permissions Policy
Header values
- referrer-policy
, strict-origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
frame-src 'self' https://ikb-services.softgarden.io https://www.youtube.com https://td.doubleclick.net https://www.googletagmanager.com https://certificate.softgarden.io;, script-src 'self' https://code.etracker.com http://code.etracker.com 'unsafe-inline' https://www.youtube.com https://ldgnrtn.com https://www.googletagmanager.com http://etracker.de https://googleads.g.doubleclick.net http://www.etracker.de;, script-src-elem 'self' 'unsafe-inline' https://code.etracker.com http://code.etracker.com https://www.youtube.com https://ldgnrtn.com https://www.googletagmanager.com http://www.etracker.de https://www.google.com https://googleads.g.doubleclick.net;, connect-src 'self' https://ldgnrtn.com https://www.google.com https://www.etracker.de https://ikb.scnem.com https://api.softgarden.io;, img-src 'self' https://www.google.com https://www.google.de https://i.ytimg.com data:;, style-src 'self' 'unsafe-inline' https://code.etracker.com;, frame-ancestors 'self';, form-action 'self';, mani- strict-transport-security
max-age=31536000; includeSubDomains; preload- cross-origin-opener-policy
same-origin- cross-origin-resource-policy
cross-origin