mydays.de
HTML metadata
Technology
- CDN
- Amazon CloudFront
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (7)
- cdn-eu.dynamicyield.com×5
- www.googletagmanager.com×2
- app.usercentrics.eu×1
- rcom-eu.dynamicyield.com×1
- st-eu.dynamicyield.com×1
- www.mydays.at×1
- www.mydays.ch×1
Social
Registration
- Updated
- 2026-04-08
- Name servers
-
- ns-1178.awsdns-19.org.
- ns-2041.awsdns-63.co.uk.
- ns-247.awsdns-30.com.
- ns-661.awsdns-18.net.
DNS records live
- NS
-
- ns-1178.awsdns-19.org
- ns-2041.awsdns-63.co.uk
- ns-247.awsdns-30.com
- ns-661.awsdns-18.net
- MX
-
- 10 mx01.hornetsecurity.com
- 20 mx02.hornetsecurity.com
- 30 mx03.hornetsecurity.com
- 40 mx04.hornetsecurity.com
- TXT
-
Show 7 TXT records
l6r8YlQyh4qoS6CndVLeo+qXaw99teeBbPIKiNMimeoFR0/A/XBo6Xm9nEm2RW90EcUYYkOOcUT0ya/XwA4YWA==loaderio=7a46f880a7167ff3f4785d97e9eb22c7MS=ms17008306ZOOM_verify_SHvtmKQsTA6fb_T0xyqc4Qgoogle-site-verification=DeNY2GSA5ntQT4mmZlLNsaaZ4M6vTCkAxkY_d7DmJZIh68ncuGesjAbX2t6tVMU4iWbEwtccDrn+0PlwMBmX7gQbe0sVp95+Yx6vLuVdT2pv3qRhIIjGXAG3ZevbjnhTg==hl6zXbnBeSD7yBRHYKXqUcVFBA0q6GvpcTbmzf6deHkXD4ysMjWEy/jLGul3A2Eyh5vJDgeht6gRiYJqG9jk7w==
Email authentication partial
- SPF
-
v=spf1 a mx include:spf.protection.outlook.com include:spf.hornetsecurity.com ip4:188.65.77.144 include:_spf.salesforce.com include:iagent-ondemand._spf.novomind.com include:spf.cluster-team.net ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=none;policy: none (monitoring only) - DKIM
-
- default:
v=DKIM1; k=rsa; s=email;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC74K720IyumMWh0DuG5HmGOBfvg+emeGQjOPvua7xi8eJhhopCHRr3XtVyHYoK2QpOEZK81iiI5X… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtbOCg+AbaCJqw7eXkWHPz5K1ee10OaPt0WKxiGQkzfOrEZ/fRWKO2M74H/4S6CRC8YwQ7bIziQWnnfwiV3… - s2:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwqjyATcU6fHA0CEd2qF16og8TPuY4HhEHEO54m22P5WownTW1yVyhvCMak27/Ku8jDIlTdgPXr7JS4ZW5q…
selectors probed - default:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 49 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- cross-origin-opener-policy
- findings
-
- CSP allows unsafe inline scripts/styles
Header values
- referrer-policy
no-referrer-when-downgrade- x-frame-options
SAMEORIGIN- permissions-policy
unload=()- x-content-type-options
nosniff- content-security-policy
default-src 'self' https:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: data:; style-src 'self' 'unsafe-inline' https:; img-src 'self' data: https:; font-src 'self' data: https:; connect-src 'self' https:; frame-src https:; base-uri 'self'; form-action 'self' https:; worker-src 'self' blob:;- strict-transport-security
max-age=63072000; includeSubDomains; preload- cross-origin-opener-policy
same-origin-allow-popups