nordanex.de
HTML metadata
Technology
- Server
- nginx
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (1)
- web.cmp.usercentrics.eu×1
Social
Contact
- Phone
- Address
- Nordanex Systemverbund GmbH & Co. KGSoennecken Platz51491 Overath02206 607 - 680info-NOSPAM-nordanex.de
Registration
- Updated
- 2022-12-01
- Name servers
-
- ns1.your-server.de.
- ns3.second-ns.de.
- ns.second-ns.com.
DNS records live
- NS
-
- ns.second-ns.com
- ns1.your-server.de
- ns3.second-ns.de
- MX
-
- 10 nordanex-de.mail.protection.outlook.com
- TXT
-
google-site-verification=uUjVPa4-MocL2VmSZDr5jD2WXDUvk4kT8sI0xposR1cMS=ms70849085
Email authentication weak
- SPF
-
v=spf1 a:mailserver.nordanex.de ip4:62.40.22.147 ip4:62.40.22.148 ip4:144.76.190.9 ip4:144.76.190.98 ip4:144.76.190.99 include:spf.protection.outlook.com include:spf.nl2go.com include:mail.timmehosting.de include:agenturserver.de include:mailout.msp-am.de include:mailgun.org -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
R12
Expires in 38 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.googletagmanager.com https://*.googleadservices.com https://*.g.doubleclick.net https://*.gstatic.com https://*.google.com https://*.licdn.com https://cdn.leadinfo.eu https://*.ldnfrpl.com https://*.hsadspixel.net https://*.hs-analytics.net https://js.hscta.net https://js-eu1.hscta.net https://*.hubspot.com https://static.hsappstatic.net https://*.hubspot.net https://*.hscollectedforms.net https://*.hsleadflows.net https://*.hsforms.net https://*.hsforms.com https://*.hs-scripts.com https://*.hs-banner.com https://*.usercentrics.eu https://*.cmp.usercentrics.eu 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com https://*.analytics.google.com https://*.google.com https://*.google-analytics.com https://*.googletagmanager.com https://*.googleadservices.com https://*.g.doubleclick.net https://*.openstreetmap.org https://*.linkedin.com https://*.google.