ploetzblog.de
HTML metadata
Technology
- Server
- Apache
Third-party hosts loaded (2)
- xahmz0tc.cloudimg.io×43
- steady.page×1
Social
Registration
- Updated
- 2025-02-04
- Name servers
-
- ns5.kasserver.com.
- ns6.kasserver.com.
DNS records live
- NS
-
- ns5.kasserver.com
- ns6.kasserver.com
- MX
-
- 10 w00d4135.kasserver.com
- Verified for
-
Email authentication partial
- SPF
-
v=spf1 a mx ip4:85.13.161.10 ip4:78.46.167.67 ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=nonepolicy: none (monitoring only) - DKIM
- no key found at common selectors
Certificate (current)
Encryption Everywhere DV TLS CA - G2
Expires in 57 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'unsafe-inline' 'self';font-src https://cdn.jsdelivr.net https://assets.steadyhq.com https://steady.page https://player.podigee-cdn.net 'self'; img-src https://cdn.printfriendly.com https://matomo.ploetzblog.de https://*.ytimg.com https://assets.steadyhq.com https://steady.page https://*.vgwort.de https://xahmz0tc.cloudimg.io https://webimages.we2p.de https://discussions.ploetzblog.de https://images.ploetzblog.de https://tiles.venus.bayern https://api.venus.bayern data: 'self'; style-src https://cdn.jsdelivr.net https://cdn.venus.bayern https://matomo.ploetzblog.de https://cdn.plyr.io https://discussions.ploetzblog.de https://player.podigee-cdn.net 'unsafe-inline' 'self'; script-src https://cdn.venus.bayern https://steadycdn.com https://steady.page https://*.printfriendly.com https://www.youtube.com https://cdn.plyr.io https://steadyhq.com https://matomo.ploetzblog.de https://player.podigee-cdn.net https://api.brotbacken.de https://gateway.ploetzblog.vns.services https://di