ponnath.de
HTML metadata
Technology
- CDN
- Vercel
- CMS
- Next.js
Social
Contact
Registration
- Updated
- 2026-01-14
- Name servers
-
- ns81.domaincontrol.com.
- ns82.domaincontrol.com.
DNS records live
- NS
-
- ns81.domaincontrol.com
- ns82.domaincontrol.com
- MX
-
- 10 ponnath-de.mail.protection.outlook.com
- TXT
-
globalsign-domain-verification=MOGH6lGAUx7r4eyjrqHfNFkkxQnzfEvY6cVv0xgBe7google-site-verification=7eWLmpIYwHhY8e3kb4a4NxouM14IObYoRNdCtv4ZczkuogaSyDBNcMMupeFHwzL3lmJdac8Wl8jEJmiRj21FEl7aSdX7E5Ah9b/A4sLYA7WKh8OUJrsQXjO7k1kn5mNDg==
Email authentication partial
- SPF
-
v=spf1 mx include:spf.protection.outlook.com include:spf.exclaimer.net include:spfv4.sosafe.de include:spfv6.sosafe.de a:k60002.coveto.de include:spf.crsend.com a ip4:194.25.141.80/28 -allstrict (-all) - DMARC
-
v=DMARC1; p=none; pct=100; sp=none; rua=mailto:dmarc@ponnath.de,mailto:dmarc_agg@vali.email; ruf=mailto:dmarc@ponnath.de; adkim=r; aspf=r; fo=1; rf=afrf; ri=3600;policy: none (monitoring only) · sp=none - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC60/qGT7ystvDtRsvC7/uZJh4TGk+8Pm5QZh6WDXbF7SMkbuD79oIZEC9FCCLXojErFT3kO1JQx8qhvz17Wa…
selectors probed - selector1:
Certificate (current)
R12
Expires in 63 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' *.googletagmanager.com *.google.com *.gstatic.com stackpath.bootstrapcdn.com cdnjs.cloudflare.com code.jquery.com *.cookiebot.com; style-src 'self' 'unsafe-inline' *.gstatic.com *.googleapis.com stackpath.bootstrapcdn.com; img-src 'self' data: *.contentful.com images.ctfassets.net *.gstatic.com *.google.com *.googletagmanager.com *.cookiebot.com; font-src 'self'; connect-src 'self' *.google.com *.googletagmanager.com *.contentful.com *.cookiebot.com; media-src 'self' videos.ctfassets.net; frame-src *.google.com *.recaptcha.net *.cookiebot.com; base-uri 'self'; form-action 'self'- strict-transport-security
max-age=31536000; includeSubDomains; preload