imago-images.com
HTML metadata
Technology
- Server
- BunnyCDN-DE1-1330
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (3)
- www.googletagmanager.com×2
- consent.cookiefirst.com×1
- static.smartframe.io×1
Registration
- Registrar
- Mesh Digital Limited
- Created
- 2017-12-07
- Expires
- 2026-12-07 201 days left
- Updated
- 2025-11-07
- Name servers
-
- ns69.domaincontrol.com
- ns70.domaincontrol.com
DNS records live
- NS
-
- ns69.domaincontrol.com
- ns70.domaincontrol.com
- MX
-
- 50 mx0.imago-images.com
- TXT
-
Show 6 TXT records
_globalsign-domain-verification=M3ioUMOXXPPPY3XdwMS2TI8hcRDBRldgnOv_Fauroqyandex-verification: 66b3e0830fe737cfgoogle-site-verification=nJuuIIO6FSdpIc2Kc5KMwiXYLad8xJVuJYzWRWvXtx8_globalsign-domain-verification=q1_L2k92yEV-sXaP0AHbuLLwTZ-VXFCijJexcnEFoVgoogle-site-verification=tl6hxYfD-zpKxlnruKaXvNvnN6JA_j5m_M-Ihh09XrkMS=ms67390719
Email authentication weak
- SPF
-
v=spf1 a mx ip4:78.46.40.181 ip4:144.76.221.28 ip4:188.40.58.44 ip4:178.77.115.178 ip4:138.199.128.163 ip6:2a01:488:42:1000:b24d:73b2:ffe9:c06e -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
GlobalSign GCC R6 AlphaSSL CA 2025
Expires in 130 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
geolocation=(), camera=(), microphone=(), midi=(), payment=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' blob: data: https://*.imago-images.com https://*.imago-images.de https://p5resellerp.s3-accelerate.amazonaws.com https://p5cdnp.s3-accelerate.amazonaws.com https://p5iconsp.s3-accelerate.amazonaws.com https://*.hsforms.com https://*.hubspot.com https://*.hsforms.net https://*.hs-sites.com https://static.hsappstatic.net https://*.hubapi.com https://js.hsleadflows.net https://js.hs-scripts.com https://js.hs-analytics.net https://js.hscollectedforms.net https://js.hsadspixel.net https://js.hs-banner.com https://*.analytics.google.com https://*.google-analytics.com https://www.googletagmanager.com https://*.google.com https://www.google.de https://google.com https://www.gstatic.com https://*.doubleclick.net https://*.hotjar.com https://*.hotjar.io wss://ws.hotjar.com https://snap.licdn.com https://*.linkedin.com https://connect.facebook.net https://www.facebook.com https://www.googleadservices.com https://*.ahrefs.com https://*.posthog.com https://*.sentry.io https://*.p- strict-transport-security
max-age=31536000; includeSubDomains; preload