rhoen-it-service.de
HTML metadata
Technology
Third-party hosts loaded (1)
- securemessage.rhoen-klinikum-ag.com×2
Social
Contact
- Phone
Registration
- Updated
- 2024-02-19
- Name servers
-
- ns1.telekom-domains.de.
- ns2.telekom-domains.de.
DNS records live
- NS
-
- ns1.telekom-domains.de
- ns2.telekom-domains.de
- TXT
-
google-site-verification=Y8fe2Y1SnATSzFT3c8uWQiybPUMmhTuqm7YXVODakjU_telesec-domain-validation=332677_2025-03-10_p1hzxskXpxueacvWWLIgxfExcCqZbqVKbaAyg7EEAD7xjHagfe
Email authentication no MX
- SPF
- not published
- DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Telekom Security ServerID OV Class 2 CA
Expires in 286 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' securemessage.rhoen-klinikum-ag.com matomo.int.insignio.com *.moin.ai *.cookiebot.com 'report-sample'; style-src-attr 'unsafe-inline' 'report-sample'; img-src 'self' data: *.ytimg.com *.vimeocdn.com blob: securemessage.rhoen-klinikum-ag.com www.campus-nes.de *.rhoen-klinikum-ag.com matomo.int.insignio.com *.moin.ai *.cookiebot.com; base-uri 'self'; frame-src 'self' *.youtube-nocookie.com *.youtube.com *.vimeo.com securemessage.rhoen-klinikum-ag.com charts3.equitystory.com app.guide3d.com https://media.video.taxi matomo.int.insignio.com *.moin.ai *.cookiebot.com; script-src-elem 'self' 'unsafe-inline' 'unsafe-eval' securemessage.rhoen-klinikum-ag.com matomo.int.insignio.com *.moin.ai *.cookiebot.com 'report-sample'; style-src 'self' 'unsafe-inline' securemessage.rhoen-klinikum-ag.com matomo.int.insignio.com *.moin.ai *.cookiebot.com 'report-sample'; font-src 'self' data: securemessage.rhoen-klinikum-ag.com matomo.int.in