lecker.de
HTML metadata
Technology
- Analytics
-
- Google Tag Manager
- Ads
-
- Google AdSense
- Google Ads (DoubleClick)
Third-party hosts loaded (5)
- dev.visualwebsiteoptimizer.com×1
- pagead2.googlesyndication.com×1
- proxy.xceler8.io×1
- securepubads.g.doubleclick.net×1
- www.googletagmanager.com×1
Social
Contact
- Address
- Burchardstraße 11, 20077, Hamburg, HH, DE
Registration
- Updated
- 2024-12-11
- Name servers
-
- ns-1086.awsdns-07.org.
- ns-1723.awsdns-23.co.uk.
- ns-19.awsdns-02.com.
- ns-665.awsdns-19.net.
DNS records live
- NS
-
- ns-1086.awsdns-07.org
- ns-1723.awsdns-23.co.uk
- ns-19.awsdns-02.com
- ns-665.awsdns-19.net
- MX
-
- 10 lecker-de.mail.protection.outlook.com
- TXT
-
Show 10 TXT records
MS=ms82349408Sendinblue-code:8e4e013a6825ec564c3ce3ab87a82611XVecx1viT7CPsDSUvwXImbjgGum0yb3D3eglMMu38y271+YPC1NhRz2vkCKDY63vn1ZXg2SMCHXcUTEmIYtJug==ahrefs-site-verification_7f8e040fca38ee266401c0e28983179d347db1e2a49ff374fa743a84b184caecfacebook-domain-verification=ybbr1fihdj7nvwvaitnbx1ckd90709google-site-verification=2gFRxTs5wGI9uGZvWcaom7LHa4vtQ4qGGAoTjLgTM_Ygoogle-site-verification=HU6ivHQVGTahDjRp9jtG6-Pl_SojhfRgJ4fzsOMCAjQgoogle-site-verification=zIJXTumUYIMO43y0PCRFzjRhr2xJjaTIR9qP0yl9UyIsite-verification=f844ef0154a2bcfcec9bd1ded3f14b12tollbit-domain-verification=148352f43cad175981d6847ab0571eb794adf97c193e1c12d3198b5b21b2307c
Email authentication strong
- SPF
-
v=spf1 include:_u.lecker.de._spf.smart.ondmarc.com ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; pct=100; sp=reject; rua=mailto:5352a03e@inbox.eu.redsift.cloud,mailto:dmarc@mailinblue.com; ruf=mailto:5352a03e@inbox.eu.redsift.cloud,mailto:dmarc@mailinblue.com; fo=1; rf=afrf; ri=86400policy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtbUcxzsDMool4K+KdST/V8r3sr7ZpMwSUYMUaehctA3SfG/TheZ3RZJpXLSXzCyhgxBwFePCWuCgpl… - mail:
k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDeMVIzrCa3T14JsNY0IRv5/2V1/v2itlviLQBwXsa7shBD6TrBkswsFUToPyMRWC9tbR/5ey0nRBH0ZVxp+lsmTxid2Y2…
selectors probed - selector1:
Certificate (current)
Amazon RSA 2048 M04
Expires in 134 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- content-security-policy
default-src 'self' * data: blob:;font-src 'self' * data:;script-src 'self' * 'unsafe-inline' 'unsafe-eval' blob:;style-src 'self' * 'unsafe-inline';media-src 'self' * blob:;frame-ancestors 'self' http://localhost:3000 https://the-gui.testing.nxt.zone https://the-gui.staging.nxt.zone/ https://the-gui.production.nxt.zone/ https://the-gui.cloud- strict-transport-security
max-age=31536000; includeSubDomains; preload