ontras.com
HTML metadata
Technology
- Server
- Apache
- CMS
- Drupal
Third-party hosts loaded (1)
- t2e0a1e0e.emailsys1a.net×1
Social
Registration
- Registrar
- InterNetX GmbH
- Created
- 2005-11-22
- Expires
- 2026-11-22 186 days left
- Updated
- 2025-11-23
- Name servers
-
- ns.webmatic.de
- ns2.slave-ns.de
DNS records live
- NS
-
- ns.webmatic.de
- ns2.slave-ns.de
- ns2.slave-ns.eu
- MX
-
- 10 ontras-com.mail.protection.outlook.com
- 32767 200bb7ba44dea771ddff704754dbd6526dbc45f8.msv1.invalid.ontras.com
- TXT
-
Show 5 TXT records
autodesk-domain-verification=ABDoJj5k1pC9Vq3Gn4kxE3E6BB8D9AD8ECF0E59D2C41428BE6A13C35B3BF76B2B350968D8F005044721CQ3CZJN2AFY7G2R75XWTIQVRADKQ1JSX8N0MTA635KFTZFET1Z871YWV46CVK6B25UJQNloMKSDtsiD3dBwtKHxTYE6QLeuRhbYC01hH0CPK+eJKbMFhTIbWIz1LCI9k65A8whQ2vtPDD6E9OY8mDsw==_telesec-domain-validation=327750_2024-11-05_RZ0v7apAWL8cS4lunk4mWYIMKiwfuScuGEbHp7YUmFBb2KAcCK
- Verified for
-
- Apple
- Atlassian
- DocuSign
Email authentication partial
- SPF
-
v=spf1 mx include:spf.gisa.de include:spf.protection.outlook.com include:_spf.zimpel.de ip4:37.247.72.13 ip4:37.247.72.20 ip4:167.235.131.137 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; sp=none; rua=mailto:it-management@ontras.com; ruf=mailto:it-management@ontras.com; adkim=s; aspf=s; fo=1;policy: none (monitoring only) · sp=none - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDNsV75BOTbmxsqjT5eP+TMLijrUIkYI/ssLomiGIOPZePoXHCuBAWP5rNKitEEeSKxKYHLkv9MZ417PmFglf… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDO0/2c2lcAUja7Kp9gNsnhzvxALXcLBbn0SoHdV6DSDbzJDL5gQMG/JLs493CqdIpt3BUgmJKpVZSqk7xpoq…
selectors probed - selector1:
Certificate (current)
E8
Expires in 35 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
SAMEORIGIN- permissions-policy
magnetometer=()- x-content-type-options
nosniff- content-security-policy
img-src 'self' data:; object-src 'none'; script-src * 'report-sample' 'unsafe-inline' 'unsafe-eval'; script-src-elem 'self' 'unsafe-inline' https://www.ontras.com https://t2e0a1e0e.emailsys1a.net https://matomo.ontras02.ueberbit.de https://cdn.jsdelivr.net; style-src * 'report-sample' 'unsafe-inline'; style-src-elem 'self' 'unsafe-inline'; webrtc 'allow'; worker-src 'self'; base-uri 'self' https://www.ontras.com https://matomo.ontras02.ueberbit.de; form-action 'self' https://login.microsoftonline.com; frame-ancestors 'self'- strict-transport-security
max-age=31536000; includeSubDomains; preload