melk-memorial.org

.org crawl

First seen 2026-05-30 · Last seen 2026-05-31 · ok HTTP/1.1 200 1166 ms crawled 2026-05-31

US · 192.124.249.134 · AS30148 Sucuri

Reputation 92/100 no dmarc policy

Classifying

HTML metadata

Title
KZ-Gedenkstätte Melk
Language
en

Technology

Server
Sucuri
jQuery
1.12.2 known XSS (<3.5)
Stack
Java

Social

Contact

Email
Phone

DNS records live

NS
  • ns1.nameservice.at
  • ns2.nameservice.at
MX
  • 0 melkmemorial-org01b.mail.protection.outlook.com
TXT
  • b6orfujfd82up1eleg14blcbp4
  • an4i1rogoe4l091hjqnunqj74c
  • v=DMARC1;p=quarantine;sp=none;adkim=r;aspf=s;pct=100;fo=0;rf=afrf;ri=86400;ruf=mailto:support@impit.at.
Verified for
  • Microsoft 365

Email authentication weak

SPF
v=spf1 include:spf.protection.outlook.com -all
strict (-all)
DMARC
not published
DKIM
  • selector1: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu1+MuoIMHOCTpJYwsaFL5+NitBQqG+nHPftCneNbAco+7L2NIdFwI7CCGwGV/+GbNgZyMUmDIYKgiK…
selectors probed

Certificate (current)

Starfield Secure Certificate Authority - G2
from 2026-05-08 to 2026-08-06
Expires in 61 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.melk-memorial.org/en

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
  • weak frame protection
  • weak content type protection
Header values
referrer-policy
same-origin
x-frame-options
SAMEORIGIN, SAMEORIGIN
permissions-policy
geolocation=(self), microphone=()
x-content-type-options
nosniff, nosniff
content-security-policy
upgrade-insecure-requests;, default-src https:; font-src https: data:; img-src https: data:; script-src 'unsafe-inline' https:; style-src 'unsafe-inline' https:;
strict-transport-security
max-age=63072000

Links to (7)

Linked from (1)