lkh.de
HTML metadata
Technology
- Server
- nginx
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (1)
- web.cmp.usercentrics.eu×1
Social
Contact
- Phone
- Address
- Landeskrankenhilfe V.V.a.G. (LKH)Uelzener Straße12021335Lüneburg
Registration
- Updated
- 2019-09-24
- Name servers
-
- dns1.cscdns.net.
- dns2.cscdns.net.
DNS records live
- NS
-
- dns1.cscdns.net
- dns2.cscdns.net
- MX
-
- 10 mail1.lkh.de
- 20 mail2.lkh.de
- 30 mail.lkh.de
- TXT
-
Show 7 TXT records
MS=C12CA3FC2298C579D16411A27BD4E45FA6631A85swisssign-check=KAHPrLPyLIUVhGbu-93d-Sp_Sncswisssign-check=xjc6lz8woob4RrRFOsxm72RnliCx50fzELXKZSNsQ8v=spf1 a mx ip4:82.198.213.165 ip4:138.201.15.119 ip4:138.201.15.120 ip4:144.76.235.72 include:spf.protection.outlook.com -allD-TRUST=XKIVP4USU9X86Q89O4HJ79J_1hhkmg17mtspm1pccdzg2pqlt3mlj4q_l5rjn6rffioxl9odbywp3rp7tbobd2w
- Verified for
-
- Adobe
- Apple
- Atlassian
- Brevo
- Microsoft 365
Certificate (current)
GeoTrust TLS RSA CA G1
Expires in 73 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://lkh.de https://*.lkh.de; child-src blob:; connect-src 'self' https://lkh.de https://*.lkh.de https://*.usercentrics.eu www.googletagmanager.com www.google.com api.friendlycaptcha.com; font-src 'self' data:; frame-src 'self' https://*.usercentrics.eu https://*.googletagmanager.com; img-src 'self' data: https://lkh.de https://*.lkh.de https://*.usercentrics.eu https://www.facebook.com/ www.googletagmanager.com www.google.com www.google.de; script-src 'self' 'unsafe-inline' 'unsafe-eval' 'wasm-unsafe-eval' https://lkh.de https://*.lkh.de https://*.usercentrics.eu https://connect.facebook.net/ https://www.googletagmanager.com https://googleads.g.doubleclick.net/; style-src 'self' 'unsafe-inline'; worker-src blob:;- strict-transport-security
max-age=31536000; includeSubDomains; preload
Links to (3)
Linked from (7)
- ascore.de×3
- lkh-arena.de×2
- svg-lueneburg.de×2
- ifvw.de×2
- gvg.org×2
- dasscoring.de×2
- mofino.de×1