sandstorm.de
HTML metadata
Technology
- Server
- Caddy
- CMS
- Gatsby
Social
Contact
- Phone
Registration
- Updated
- 2015-07-08
- Name servers
-
- ns1.sandstorm-media.de.
- ns2.sandstorm-media.de.
DNS records live
- NS
-
- ns1.sandstorm-media.de
- ns2.sandstorm-media.de
- MX
-
- 10 mail.sandstorm.de
- TXT
-
Show 4 TXT records
MS=1A4F121E910B437F75C6C13962FEB0431B6CD851apple-domain-verification=AWwcOkWtosANALWuanthropic-domain-verification-a7vva5=fVxhYRem6aTB6eRMvRETFG9Kngoogle-site-verification=NUTdFdt9Ml0NRqblm7TT-MSgwtwjebyaRIIL5tlFBrU
Email authentication strong
- SPF
-
v=spf1 mx include:bnw-bundesverband.de include:verteiler.la-dresden.de -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; pct=100; rua=mailto:re+shdte5qiapp@dmarc.postmarkapp.com; sp=quarantine; aspf=r;policy: quarantine · sp=quarantine - DKIM
-
- dkim:
v=DKIM1;k=rsa;t=s;s=email;p=MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAoYfs6OTMsrUPlsov3Y0DfH/ejWM0OAP6v8AvdgWBWEu06yZifbQkpXCCG/PURehkUnd8…
selectors probed - dkim:
Certificate (current)
R12
Expires in 67 days
HTTP security headers
- present
-
- content-security-policy
- findings
-
- missing HSTS
- CSP allows unsafe inline scripts/styles
- missing frame protection
- missing content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- content-security-policy
base-uri 'self'; connect-src 'self' https://www.youtube.com https://matomo.cloud.sandstorm.de/; default-src 'self'; form-action 'self'; img-src 'self' https://i.ytimg.com https:; media-src 'self'; frame-src 'self' https://www.youtube-nocookie.com https://player.vimeo.com https://www.youtube-nocookie.com/; object-src 'self'; script-src 'self' https://player.vimeo.com https://www.youtube.com https://matomo.cloud.sandstorm.de/ 'unsafe-eval' 'nonce-MjoQRZzcmI2CNiCt'; style-src 'self' 'nonce-MjoQRZzcmI2CNiCt'; style-src-attr 'self' 'unsafe-inline'; style-src-elem 'self' 'unsafe-inline'; font-src 'self' data:;