rohrhandel-jung.de
HTML metadata
Technology
- Server
- nginx
Third-party hosts loaded (1)
- metrics.mehrwert.de×1
Registration
- Updated
- 2013-07-05
- Name servers
-
- dns1.dpn.de.
- dns2.dpn.de.
DNS records live
- NS
-
- dns1.dpn.de
- dns2.dpn.de
- MX
-
- 10 avas.vianetworks.de
- 100 mxsink.vianetworks.de
- 5 hobergdriesch.in.tmes.trendmicro.eu
- 50 mx2.vianetworks.de
- TXT
-
spf.tmes.trendmicro.eutrend-micro-v1-domain-verification.6dadd9f9849c00dfac9f3ae94b2fa07a=004c446f-8c9f-42d2-8263-c26a3f8a24fd
- Verified for
-
- Microsoft 365
Email authentication weak
- SPF
-
v=spf1 mx a:relay.vianetworks.de include:spf.tmes.trendmicro.eu ip4:194.231.55.234 ip6:2001:aa0:180:201::101 -allstrict (-all) - DMARC
- not published
- DKIM
- no key found at common selectors
Certificate (current)
Starfield Secure Certificate Authority - G2
Expires in 274 days
HTTP security headers
- present
-
- content-security-policy
- x-content-type-options
- permissions-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing Referrer Policy
Header values
- permissions-policy
interest-cohort=()- x-content-type-options
nosniff- content-security-policy
base-uri 'self'; default-src 'self'; script-src https: blob: data: 'unsafe-inline' 'unsafe-eval' https://www.hoberg-driesch.com https://www.rohrhandel-jung.de https://www.hd-processing.com https://www.pouchard.fr https://www.schierle.de https://www.allsteelproducts.nl https://www.mutautomotive.com https://www.muttubes.com https://www.hoberg-driesch.fi https://www.hoberg-driesch.rs https://www.hoberg-driesch.com.tr https://www.hoberg-driesch.se https://www.hoberg-driesch.es https://www.stahlrohr.eu https://www.hd-roehrenhandel.com https://metrics.mehrwert.de https://piwik.hoberg-driesch.de https://www.youtube-nocookie.com https://v1.api.service.cmp.usercentrics.eu https://app.usercentrics.eu https://graphql.usercentrics.eu https://consents.usercentrics.eu https://uct.service.usercentrics.eu https://consent-api.service.consent.usercentrics.eu https://googleads.g.doubleclick.net https://www.googletagmanager.com https://www.google.de https://www.google.de; style-src https: 'unsafe-inline'