omnicell.de
HTML metadata
Technology
- CDN
- Cloudflare
- CMS
- Gatsby
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- OneTrust
Third-party hosts loaded (6)
- www.omnicell.co.uk×2
- cdn.cookielaw.org×1
- www.googletagmanager.com×1
- www.omnicell.com.au×1
- www.omnicell.fr×1
- www.omnicell.me×1
Social
Contact
- Phone
Registration
- Updated
- 2019-09-30
- Name servers
-
- ns1.savvis.net.
- ns2.savvis.net.
- ns3.savvis.net.
- ns4.savvis.net.
- ns5.savvis.net.
DNS records live
- NS
-
- ns1.savvis.net
- ns2.savvis.net
- ns3.savvis.net
- ns4.savvis.net
- ns5.savvis.net
- ns6.savvis.net
- ns6a.savvis.net
- MX
-
- 10 mxa-00100a01.gslb.pphosted.com
- 10 mxb-00100a01.gslb.pphosted.com
- TXT
-
Show 4 TXT records
hv1f3e154101313ucebj3gkui0MS=1D4E91676DD0B83060E0171A069B956F3A69B44Dclca8me4hd7ek5l3lu7neelf6c2uh6uaqek5874nlmdqkju7tvjn
- Verified for
-
- Adobe
- Microsoft 365
- Zoom
Email authentication weak
- SPF
-
v=spf1 redirect=Omnicell.comno all qualifier - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Go Daddy Secure Certificate Authority - G2
Expires in 24 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
child-src 'self'; connect-src 'self' https://cdn.cookielaw.org https://geolocation.onetrust.com https://privacyportal.onetrust.com https://www.google.com; default-src 'self'; font-src 'self' https://*.cloudfront.net/graphik/ https://*.cloudfront.net/lato/; frame-src 'self' https://fast.wistia.com; img-src 'self' data: https://cdn.cookielaw.org https://www.google.com; script-src-elem 'self' 'unsafe-eval' 'unsafe-inline' https://cdn.cookielaw.org https://js.monitor.azure.com https://www.googletagmanager.com; script-src 'self' 'unsafe-eval' 'unsafe-inline'; style-src-elem 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; report-to stott-security-endpoint stott-security-external-endpoint;- strict-transport-security
max-age=31536000