lidl.dk
HTML metadata
Technology
- Server
- myracloud
- Cookie consent
-
- OneTrust
Third-party hosts loaded (3)
- widget.leaflets.schwarz×2
- cdn.cookielaw.org×1
- eum.instana.io×1
Social
Contact
- Phone
DNS records
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
SwissSign RSA TLS EV ICA 2022 - 1
Expires in 82 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN- x-content-type-options
nosniff- content-security-policy
default-src 'self' blob: https://*.facebook.com https://*.facebook.net https://*.adsrvr.org https://*.api.schwarz https://*.assets.schwarz https://*.batch.com https://*.bing.com https://bat.bing.net https://*.cliplister.com https://*.cookiebot.com https://*.creativecdn.com https://*.criteo.com https://*.exactag.com https://*.instana.io https://*.kameleoon.com https://*.kameleoon.eu https://*.kameleoon.io https://*.experimentation.dev https://*.kampyle.com https://*.leaflets.schwarz https://*.lidl-flyer.com https://*.lidl-shop.com https://*.lidl.de https://*.lidlplus.com https://*.livebuy.io https://*.medallia.eu https://mycliplister.com https://*.mycliplister.com https://*.peakprotect.com https://*.pingdom.net https://*.virtualearth.net https://*.friendlycaptcha.com https://*.googleapis.com https://asset.schwarz https://autosuggest.search.hereapi.com https://bidswitch.net https://cdn.cookielaw.org https://*.clarity.ms https://creativecdn.com htt- strict-transport-security
max-age=63072000; includeSubDomains; preload
Links to (10)
- adjust.com×1
- apple.com×1
- facebook.com×1
- findsmiley.dk×1
- google.com×1
- instagram.com×1
- linkedin.com×1
- microsoft.com×1
- mozilla.org×1
- youtube.com×1