klett-gruppe.de
HTML metadata
Technology
- Server
- Webserver
Social
Registration
- Updated
- 2025-05-01
- Name servers
-
- a.domnic24.eu.
- b.domnic24.eu.
- c.domnic24.eu.
- d.domnic24.eu.
DNS records live
- NS
-
- a.domnic24.eu
- b.domnic24.eu
- c.domnic24.eu
- d.domnic24.eu
- MX
-
- 10 mx01.hornetsecurity.com
- 20 mx02.hornetsecurity.com
- 30 mx03.hornetsecurity.com
- 40 mx04.hornetsecurity.com
- Verified for
-
- Adobe
- Apple
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx ip4:94.186.152.98 ip4:148.251.113.148 ip4:178.77.73.232 ip4:91.207.162.20 ip4:91.207.162.23 ip4:185.219.102.195 include:network.mynewsdesk.com include:spf.de.umantis.com include:spf.protection.outlook.com include:spf.crsend.com include:spf.hornetsecurity.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;sp=reject;pct=100;adkim=r;aspf=rpolicy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 210 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self'; frame-ancestors 'self'; connect-src 'self' *.mpm-portal.de/ maps.googleapis.com/ ; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: *.googleapis.com/ *.google.com/ *.jquery.com/ *.mpm-portal.de/ *.gstatic.com/; worker-src 'self' data:; style-src 'self' 'unsafe-inline' fonts.googleapis.com; img-src 'self' *.gstatic.com/ *.googleapis.com/ data: ; font-src 'self' fonts.gstatic.com/; frame-src 'self' www.youtube-nocookie.com/ www.taskcards.de/;- strict-transport-security
max-age=15768000
klett-gruppe.de