krone-trailer.com
HTML metadata
Technology
- Server
- Apache
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Cookiebot
Third-party hosts loaded (2)
- consent.cookiebot.com×1
- www.googletagmanager.com×1
Social
Registration
- Registrar
- Key-Systems GmbH
- Created
- 2005-09-19
- Expires
- 2026-09-19 122 days left
- Updated
- 2025-12-03
- Name servers
-
- ns.kunden.de
- sec.avency.de
- theopolis.avency.de
DNS records live
- NS
-
- ns.kunden.de
- sec.avency.de
- theopolis.avency.de
- MX
-
- 10 mx2.it-p-s.com
- 20 mx1.it-p-s.com
- TXT
-
Show 6 TXT records
MS=ms51209767202105062017152zu7pdogxfbbo8xyvbngnvutc6ry6xeudpfnoxaq176szhwg2hJ0GWLlzvTjtN8Ohf6MLGJB3RrVXPy1PP8+oYXX/oa986GZkjydM942xUxewaFgNsdHr59kPA49DrpmwEUwurPw==v=spf1 a mx include:26981824.spf04.hubspotemail.net -all_globalsign-domain-verification=3ROWVEkCrSot5zV2l3Ulc_lm7UE5IwTmVkiRGLWmG1google-site-verification=utJCXW1Y1zX5j_fsf06Q9N9gvANbW5D8deXON1yJiNo
Certificate (current)
GlobalSign RSA OV SSL CA 2018
Expires in 160 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self';style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; img-src 'self' https://www.google.com https://googleads.g.doubleclick.net https://www.facebook.com https://www.linkedin.com https://px.ads.linkedin.com https://imgsct.cookiebot.com https://*.google-analytics.com https://www.googletagmanager.com https://*.googleapis.com https://maps.gstatic.com https://i.ytimg.com https://www.google.de data: https://*.hsforms.com https://26981824.fs1.hubspotusercontent-eu1.net; object-src 'self' data:; frame-src 'self' *.googletagmanager.com *.youtube.com *.youtube-nocookie.com https://td.doubleclick.net https://consentcdn.cookiebot.com https://www.krone-trailer.com https://publish.flyeralarm.digital https://*.hsforms.com https://www.google.com https://js-eu1.hsforms.net/ https://google.com/; script-src 'self' 'unsafe-inline' https://snap.licdn.com https://connect.facebook.net https://www.googleadservices.com https://maps.googleapis.com https://www.googletagmanager.com htt