langenfeld-mfr.de
HTML metadata
Technology
- Server
- nginx
- CMS
- Joomla
Social
Registration
- Updated
- 2016-01-23
- Name servers
-
- dns.dns1.de.
- dns.dns2.de.
- dns.dns3.de.
- dns.dns4.de.
DNS records live
- NS
-
- dns.dns1.de
- dns.dns2.de
- dns.dns3.de
- dns.dns4.de
- MX
-
- 10 langenfeldmfr-de02e.mail.protection.outlook.com
Email authentication partial
- SPF
-
v=spf1 a mx include:spf.protection.outlook.com include:spf-de.emailsignatures365.com ip4:80.153.135.46 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none; pct=100;policy: none (monitoring only) - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzpXevwoq6fT3YkUoFYXaYuc+VFIap5BhWAY03mDYcLCWEWHSlwyRHfLL/9iMCHyry8VDzc52pNzU8L… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAo9KNDY2dN+vamxyzMYlxHxCcv31M7FOghKubhXpeWZJAYBI7e2VjomipwU73dTT2Mt9SmwVIK7tPSB…
selectors probed - selector1:
Certificate (current)
R13
Expires in 40 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self' 'unsafe-inline'