ringover.de
HTML metadata
Technology
- CDN
- Cloudflare
Third-party hosts loaded (11)
- www.ringover.com×2
- js-eu1.hsforms.net×1
- webcdn.ringover.com×1
- www.ringover.be×1
- www.ringover.co.uk×1
- www.ringover.es×1
- www.ringover.fr×1
- www.ringover.it×1
- www.ringover.mx×1
- www.ringover.nl×1
- www.ringover.pt×1
Social
Contact
Registration
- Updated
- 2022-05-14
- Name servers
-
- nia.ns.cloudflare.com.
- sonny.ns.cloudflare.com.
DNS records live
- NS
-
- nia.ns.cloudflare.com
- sonny.ns.cloudflare.com
- MX
-
- 1 mx4.mail.ovh.net
- 10 mx3.mail.ovh.net
- TXT
-
1|www.ringover.de
Email authentication weak
- SPF
-
v=spf1 include:mx.ovh.com ~allsoftfail (~all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
WE1
Expires in 81 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing content type protection
- missing Referrer Policy
Header values
- permissions-policy
accelerometer=(), ambient-light-sensor=(), camera=(), autoplay=(self 'https://www.youtube-nocookie.com'), microphone=(self), document-write=(), encrypted-media=(), fullscreen=(self 'https://ringover.com'), geolocation=(), gyroscope=(), layout-animations=(), legacy-image-formats=(), magnetometer=(), midi=(), oversized-images=(self 'https://ringover.com'), payment=(), picture-in-picture=(), speaker=(self), sync-script=(self 'https://facebook.com' 'https://linkedin.com' 'https://link-page.info' 'https://snippets.freshchat.com' 'https://snap.licdn.com' 'https://dc.ads.linkedin.com' 'https://googleads.g' 'https://storage.googleapis.com' 'https://px.ads.linkedin.com' 'https://ct.capterra.com' 'https://google.com' 'https://google.fr' 'https://embed.tawk.to' 'https://gotolstoy.com' 'https://youtube.com' 'https://pi.pardot.com' 'https://redirectmail.ringover.com' 'https://static-v.tawk.to' 'https://google-analytics.com' 'https://googleadservices.com' 'https://googletagmanager.com' 'https://gsta- content-security-policy
default-src 'self' *.targetfirst.com *.hsforms.com heeet.io *.heeet.io 'unsafe-inline' *.googleadservices.com webcdn.ringover.com *.schedulehero.io *.revenuehero.io; img-src user-images.crazyeggcdn.com *.crazyegg.com *.albacross.com *.targetfirst.com http://watcheebox.net http://*.watcheebox.net *.reddit.com *.bing.net tag.nrich.ai audience.nrich.ai storage.googleapis.com fonts.gstatic.com *.hsforms.com *.hubspot.com *.linkedin.com *.liadm.com 'self' data: *.clarity.ms *.google.com *.bing.com *.rlcdn.com *.sitescout.com *.clickagy.com www.google.fr webcdn.ringover.com ct.capterra.com *.ytimg.com ytimg.com www.google.com www.facebook.com google-analytics.com *.google-analytics.com *.googletagmanager.com *.ads.linkedin.com cdn.livechat-files.com; script-src 'self' *.crazyegg.com *.guideflow.com *.athenahq.ai *.albacross.com www.redditstatic.com *.nrich.ai appvizer.one *.hsforms.net *.heeet.io cdn.heeet.io/js/localstorage-gau.js *.snitcher.com *.amazonaws.com *.liadm.com *.hsforms.com *.h- strict-transport-security
max-age=63072000
Links to (12)
- youtube.com×2
- instagram.com×2
- linkedin.com×2
- ringover.com×2
- ringover.es×2
- ringover.fr×2
- facebook.com×2
- ringover.co.uk×2
- ringover.be×1
- ringover.pt×1
- ringover.it×1
- ringover.nl×1
Linked from (7)
- ringover.co.uk×2
- ringover.fr×2
- ringover.es×2
- ringover.it×1
- ringover.nl×1
- ringover.be×1
- ringover.pt×1