kolping-ostbayern.de
HTML metadata
Technology
- Server
- Apache
Social
Registration
- Updated
- 2023-04-13
- Name servers
-
- nsa3.schlundtech.de.
- nsb3.schlundtech.de.
- nsc3.schlundtech.de.
- nsd3.schlundtech.de.
DNS records live
- NS
-
- nsa3.schlundtech.de
- nsb3.schlundtech.de
- nsc3.schlundtech.de
- nsd3.schlundtech.de
- MX
-
- 10 mxpool.de2.hostedoffice.ag
Email authentication weak
- SPF
-
v=spf1 a mx ip4:91.184.33.198 ip6:2a01:198:0:5::198 include:hostedoffice.ag -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R13
Expires in 24 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'nonce-xwa763QOfl9DDKZrtqjk8r4BopCNE73zCfh4CQd983hae1kyK9nLag' 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com; base-uri 'self'; style-src-elem 'self' 'nonce-xwa763QOfl9DDKZrtqjk8r4BopCNE73zCfh4CQd983hae1kyK9nLag' 'report-sample'; object-src 'none'; style-src 'self' 'report-sample'; font-src 'self' data:; worker-src blob:; report-uri https://www.kolping-ostbayern.de/@http-reporting?csp=report&requestTime=1778405413670360&requestHash=13941927c145a5c6a6b49def5a2de5c1a3aab0c9