kochtueren.at
HTML metadata
Technology
- Server
- nginx
Social
Contact
- Phone
DNS records live
- NS
-
- ispconfig3.ikbnet.at
- ns4.ikbnet.at
- ns5.ikbnet.at
- MX
-
- 5 mail.kochtueren.at
- TXT
-
MS=A2073CADBF5BFB3630B0CFCAB0FFB3B9B014CB23
Email authentication strong
- SPF
-
v=spf1 mx include:spf.mailjet.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; adkim=r; aspf=r; sp=rejectpolicy: reject (enforced) · sp=reject - DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 68 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
same-origin- x-frame-options
SAMEORIGIN- permissions-policy
geolocation=(), midi=(), microphone=(), camera=(), magnetometer=(), gyroscope=(), fullscreen=(self), payment=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' 'unsafe-inline'; style-src-elem 'self' 'unsafe-inline' *.googleapis.com *.ckeditor.com; img-src 'self' data: blob: *.doubleclick.net *.linkedin.com i.ytimg.com *.facebook.com *.openstreetmap.org *.googletagmanager.com maps.gstatic.com maps.googleapis.com *.google.at *.google.com *.bing.com *.clarity.ms cdn-cookieyes.com *.ckeditor.com; font-src 'self' data: *.gstatic.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob blob:* *.kochtueren.at cdn-cookieyes.com *.cdn-cookieyes.com *.cookieyes.com *.googleapis.com *.googletagmanager.com *.doubleclick.net *.google.com *.googlesyndication.com *.ckeditor.com; script-src-elem 'self' 'unsafe-inline' snap.licdn.com *.kochtueren.at *.facebook.net *.youtube.com *.ckeditor.com *.bing.com cdn-cookieyes.com *.googleapis.com *.googletagmanager.com *.doubleclick.net *.google.com *.googlesyndication.com *.clarity.ms; connect-src 'self' *.facebook.com *.linkedin.com *.google-analytics.com *.doubleclick.net *.kochtueren.at noembed