labor-gaertner.de
HTML metadata
Technology
- Server
- nginx
- CMS
- Joomla
- Analytics
-
- Google Tag Manager
Third-party hosts loaded (1)
- www.googletagmanager.com×1
Social
Contact
Registration
- Updated
- 2011-10-26
- Name servers
-
- hulk.work.de.
- ns.work.de.
DNS records live
- NS
-
- hulk.work.de
- ns.work.de
- MX
-
- 10 mailscanner01.work.de
- 10 mailscanner02.work.de
- 10 mailscanner03.work.de
- TXT
-
Show 4 TXT records
e7bf148ab2e53f3c24737c92a1eff5a8f2a68a5cdb27cc9ac206654d29db941lmc=34a64ba7-d358-460f-9620-8d12c4e9d9d2apple-domain-verification=btxzF2KVW4bthh3zMS=6BEA9C437413739184A456EA756AFC4EB51E282C
Email authentication strong
- SPF
-
v=spf1 ip4:3.123.180.250/32 ip4:18.159.3.2/32 ip4:18.198.205.209/32 mx a:domino.labor-gaertner.de ip4:217.7.7.48/29 ip4:37.24.111.201/29 include:workspf.work.de include:spf.de.umantis.com include:spf.umantis.com -allstrict (-all) - DMARC
-
v=DMARC1;p=reject;rua=mailto:dmarc-reports@labor-gaertner.depolicy: reject (enforced) - DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 65 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' www.chatbase.co *.etracker.de *.labor-limbach-hannover.de *.labor-limbach-lehrte.de limbachgruppe.ftapi.com *.laborpublisher.de api.newsletter2go.com maps.googleapis.com *.google-analytics.com cmill.de *.cmill.de prime-psf.2b-advice.com; script-src 'self' blob: 'unsafe-inline' 'unsafe-eval' www.chatbase.co limbachgruppe.ftapi.com *.laborpublisher.de static.newsletter2go.com maps.googleapis.com 2badvice-cdn.azureedge.net prime-psf.2b-advice.com *.etracker.com *.etracker.de *.labor-limbach-hannover.de *.labor-limbach-lehrte.de *.googletagmanager.com *.regio-tv.de; img-src * data: *.etracker.com *.etracker.de; style-src 'self' 'unsafe-inline' 2badvice-cdn.azureedge.net *.etracker.com; frame-ancestors 'self'; frame-src 'self' www.chatbase.co www.youtube-nocookie.com youtube.com player.vimeo.com vimeo.com cmill.de *.cmill.de termin.samedi.de lv.dialoglabor.de *.etracker.com *.regio-tv.de; font-src 'self' data: fonts.gstatic.com- strict-transport-security
max-age=31536000; includeSubDomains;