kompotherm.de
HTML metadata
Technology
- Server
- Apache
Third-party hosts loaded (1)
- consent.cookiefirst.com×1
Social
Contact
Registration
- Updated
- 2008-01-03
- Name servers
-
- dns1.fhd.de.
- dns2.fhd.de.
DNS records live
- NS
-
- dns1.fhd.de
- dns2.fhd.de
- MX
-
- 10 antispam.fhd.de
- TXT
-
22.02.2023
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 ip4:91.221.204.51 ip4:91.221.204.128 ip6:2001:67c:56c::2:0:128 -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:edv@kompotherm.depolicy: quarantine - DKIM
-
- dkim:
v=DKIM1; h=sha256; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoZTMEmx3Fx4mJPgbrjy7YtvNlzJ/PtOJgIAUdQBGpCZi4DHcZqtHYbzdUd00pYanJbsr…
selectors probed - dkim:
Certificate (current)
E8
Expires in 41 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.embedista.com/ https://*.googletagmanager.com https://*.google-analytics.com https://*.cookiefirst.com https://googleads.g.doubleclick.net https://www.googleadservices.com https://*.google.com; style-src-elem 'self' 'unsafe-inline' https://use.typekit.net https://p.typekit.net/ https://cdn.jsdelivr.net https://*.cookiefirst.com data:; font-src 'self' https://use.typekit.net https://cdn.jsdelivr.net https://*.cookiefirst.com/ data:; img-src * 'self' data: https:; style-src 'self' 'unsafe-inline' https://*.cookiefirst.com data:; connect-src 'self' https://*.cookiefirst.com/ https://*.google-analytics.com https://*.google.com https://googleads.g.doubleclick.net; frame-src https://www.youtube.com/ https://*.cookiefirst.com/ https://*.google.com/ https://td.doubleclick.net/;