prohyp.de
HTML metadata
Technology
- Server
- istio-envoy
- CMS
- Next.js
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (1)
- web.cmp.usercentrics.eu×1
Contact
- Phone
- Address
- August-Everding-Straße 24, 81671, München, DE
Registration
- Updated
- 2023-02-03
- Name servers
-
- ns1-01.azure-dns.com.
- ns2-01.azure-dns.net.
- ns3-01.azure-dns.org.
- ns4-01.azure-dns.info.
DNS records live
- NS
-
- ns1-01.azure-dns.com
- ns2-01.azure-dns.net
- ns3-01.azure-dns.org
- ns4-01.azure-dns.info
- MX
-
- 0 prohyp-de.mail.protection.outlook.com
- TXT
-
Show 4 TXT records
atlassian-domain-verification=OfeKDyChyqsLdovMkWV35ToUsSGnzlrjssnoJGrdG2rsZQkkC57cKvntt5hXEfCSmiro-verification=19cc26d2aedb3b6ee2c876c8cfae53be11c5174aMS=ms55146384adobe-idp-site-verification=8b81f7b92ccac0b65bab7d47f9fcecaeda6f04ac870b79133d8ac54be7b53534
Email authentication weak
- SPF
-
v=spf1 ip4:80.190.115.0/24 ip4:80.190.122.0/24 ip4:212.121.139.0/24 ip4:62.96.212.0/24 ip4:185.113.164.0/22 include:spf.protection.outlook.com -allstrict (-all) - DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC5iORc7w478lMgwGom3VJGmaz4NjFLo+oUW91jl89GoUx7frbURu1Rc6U94tkpOXMkYSDsOMcuoKDUB3fW9h… - selector2:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQD2htD3+ClKdGljtxOKH3m8MFpDymTfHMG2sWYDb938x/kE+5NWsvNAzFsANJgfsVjp7DyQ6N+6nF0CBR4a3+…
selectors probed - selector1:
Certificate (current)
Sectigo Public Server Authentication CA OV R36
Expires in 190 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
default-src 'self'; child-src 'self' blob:; connect-src 'self' data: bat.bing.com bat.bing.net *.captchafox.com *.contentsquare.net googleads.g.doubleclick.net www.facebook.com connect.facebook.com www.google.com www.google.de www.googleadservices.com *.googleapis.com www.googletagmanager.com www.gstatic.com *.gstatic.com *.hcaptcha.com *.interhyp-intern.de *.optimizely.com siteintercept.qualtrics.com s.qualtrics.com manager.eu.smartlook.cloud web-writer.eu.smartlook.cloud assets-proxy.smartlook.cloud events-writer.smartlook.com my.tealiumiq.com *.trustpilot.com *.usercentrics.eu *.wt-eu02.net *.youtube.com blob:; worker-src 'self' blob:; font-src 'self' data: 'unsafe-inline' fonts.gstatic.com; style-src 'self' 'unsafe-inline' *.captchafox.com *.hcaptcha.com fonts.googleapis.com; script-src 'self' 'unsafe-inline' bat.bing.com bat.bing.net *.captchafox.com app.contentsquare.com *.contentsquare.net googleads.g.doubleclick.net connect.facebook.net fat.financeads.net *.ggpht.com www.google- strict-transport-security
max-age=31536000; includeSubDomains