koelnerkarneval.de
HTML metadata
Technology
- Server
- LiteSpeed
Social
Contact
- Phone
- Address
- Haus des Kölner KarnevalsMaarweg 13450825 KölnÖffnungszeitenMo – Fr 9:00 Uhr – 13:00 Uhr undMo – Do 14:00 Uhr – 16:00 Uhr
Registration
- Updated
- 2024-02-29
- Name servers
-
- ns1.ganzgraph.de.
- nsb1.schlundtech.de.
- nsc1.schlundtech.de.
- nsd1.schlundtech.de.
DNS records live
- NS
-
- ns1.ganzgraph.de
- nsb1.schlundtech.de
- nsc1.schlundtech.de
- nsd1.schlundtech.de
- MX
-
- 0 koelnerkarneval-de.mail.protection.outlook.com
- Verified for
-
- Microsoft 365
Email authentication partial
- SPF
-
v=spf1 ip4:136.243.1.245 +a +mx +ip4:88.99.146.149 +ip4:188.40.158.150 +ip4:5.9.106.101 +include:spf.protection.outlook.com +include:spf.codepiraten.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzWkHoC8L1xa0adSh/sGU/VxC7Qdv6YwrP1e5edcII6tp2uMwCL8MZcZWpR4N7Zoj7QMGGK8mIjIcN/… - k2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed - default:
Certificate (current)
E7
Expires in 74 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; script-src 'self' 'nonce-ixRyi_N4MJ-OmH3O30Co3dMIQ0lHUgoYnLVUJiWtJgkA4VOyRvRg4w' https://*.youtube.com 'unsafe-inline' https://stat.ganzgraph.de 'sha256-rIj6dYL4D/m6YzqeBP4U67Mpdjc2ThOw/NKYd3JNAwo=' 'sha256-AN9wGT6yawoOqb5c0QfNZLpB90KkpYGKZGnUNuD/Qbs=' 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://*.openstreetmap.org https://stat.ganzgraph.de; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com https://*.youtube.com; style-src-elem 'self' 'nonce-ixRyi_N4MJ-OmH3O30Co3dMIQ0lHUgoYnLVUJiWtJgkA4VOyRvRg4w' 'report-sample'; connect-src 'self' https://stat.ganzgraph.de; worker-src 'self' 'nonce-ixRyi_N4MJ-OmH3O30Co3dMIQ0lHUgoYnLVUJiWtJgkA4VOyRvRg4w' blob: 'report-sample'; style-src 'self' 'unsafe-inline' 'report-sample'; script-src-elem 'self' 'nonce-ixRyi_N4MJ-OmH3O30Co3dMIQ0lHUgoYnLVUJiWtJgkA4VOyRvRg4w' https://*.youtube.com 'unsafe-hashes' 'sha256-Xo4t9KNhwrlM3X4GRj7