lidl.at
HTML metadata
Technology
- Server
- myracloud
- Cookie consent
-
- OneTrust
Third-party hosts loaded (1)
- cdn.cookielaw.org×1
Social
DNS records live
- NS
-
- ns1-211.akam.net
- ns4-65.akam.net
- ns5-65.akam.net
- ns7-66.akam.net
- MX
-
- 0 smtp.google.com
- 10 lidl-at.mail.protection.outlook.com
- TXT
-
adobe-sign-verification=9b971b4430a524bb9ef5b9db2dc1d128swisssign-check=U10xfSAZaWRJXy__R_ZW0Ef2P4gjamf-site-verification=j7CNupsntmrNeW0qCWTnxA
- Verified for
-
- Adobe
- Apple
- Meta
- OneTrust
- TeamViewer
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
SwissSign RSA TLS EV ICA 2022 - 1
Expires in 82 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' blob: https://*.facebook.com https://*.facebook.net https://*.adsrvr.org https://*.api.schwarz https://*.assets.schwarz https://*.batch.com https://*.bing.com https://bat.bing.net https://*.cliplister.com https://*.cookiebot.com https://*.creativecdn.com https://*.criteo.com https://*.exactag.com https://*.instana.io https://*.kameleoon.com https://*.kameleoon.eu https://*.kameleoon.io https://*.experimentation.dev https://*.kampyle.com https://*.leaflets.schwarz https://*.lidl-flyer.com https://*.lidl-shop.com https://*.lidl.de https://*.lidlplus.com https://*.livebuy.io https://*.medallia.eu https://mycliplister.com https://*.mycliplister.com https://*.peakprotect.com https://*.pingdom.net https://*.virtualearth.net https://*.friendlycaptcha.com https://*.googleapis.com https://asset.schwarz https://autosuggest.search.hereapi.com https://bidswitch.net https://cdn.cookielaw.org https://*.clarity.ms https://creativecdn.com htt- strict-transport-security
max-age=63072000; includeSubDomains; preload