osef.de
HTML metadata
Technology
- Server
- nginx
Social
Registration
- Updated
- 2024-02-05
- Name servers
-
- cns1.alfahosting.info.
- cns2.alfahosting.info.
- cns3.alfahosting.info.
DNS records live
- NS
-
- cns1.alfahosting.info
- cns2.alfahosting.info
- cns3.alfahosting.info
- MX
-
- 10 mx03.secure-mailgate.com
- 10 mx04.secure-mailgate.com
Email authentication weak
- SPF
-
v=spf1 include:secure-mailgate.com ip4:109.237.128.0/20 ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Sectigo RSA Domain Validation Secure Server CA
Expires in 8 days
HTTP security headers
- present
-
- content-security-policy
- x-frame-options
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
sameorigin- x-content-type-options
nosniff- content-security-policy
default-src 'self' https://smile.amazon.de/ https://www.youtube.com/ https://umap.openstreetmap.de/ 'unsafe-inline'; img-src https://osef.de/ data: https://www.paypalobjects.com/ https://www.paypal.com/de_DE/i/scr/pixel.gif https://images-na.ssl-images-amazon.com/images/; media-src https://osef.de/; script-src https://osef.de/ 'unsafe-inline' 'unsafe-eval'; frame-ancestors https://osef.de/; form-action https://osef.de/ https://www.paypal.com/donate