karriere-thuenen.de
HTML metadata
Technology
- Server
- nginx
Registration
- Updated
- 2025-03-03
- Name servers
-
- a.ns.plusline.net.
- b.ns.plusline.de.
DNS records live
- NS
-
- a.ns.plusline.net
- b.ns.plusline.de
- MX
-
- 0 mailsrv-thuenen.beesite.de
- TXT
-
_132yeh7psvprnvc0otpr6129qkovhu5
Email authentication weak
- SPF
-
v=spf1 mx -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
DigiCert Global G2 TLS RSA SHA256 2020 CA1
Expires in 122 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP uses wildcard sources
- weak frame protection
- missing Permissions Policy
Header values
- referrer-policy
same-origin- x-frame-options
deny, SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' *.tiles.osmserver.milchundzucker.de osmserver.milchundzucker.de *.karriere-thuenen.de karriere-thuenen.de *.beesite.de blob: *.googleapis.com *.google.com *.openstreetmap.org; script-src 'self' *.gstatic.com *.googleapis.com; style-src 'self' *.googleapis.com; child-src * ; img-src * data: blob: filesystem:; font-src 'self' fonts.gstatic.com data:; media-src *- strict-transport-security
max-age=31536000; includeSubDomains