scandlines.de
HTML metadata
Technology
- CDN
- Azure Front Door
- CMS
- Next.js
- Analytics
-
- Google Tag Manager
- Cookie consent
-
- Usercentrics
Third-party hosts loaded (6)
- www.scandlines.com×2
- web.cmp.usercentrics.eu×1
- www.googletagmanager.com×1
- www.scandlines.dk×1
- www.scandlines.pl×1
- www.scandlines.se×1
Social
Contact
- Phone
- Address
- Drehbahn 720354 HamburgDeutschlandVAT: DE 811 423 486
Registration
- Updated
- 2024-05-02
- Name servers
-
- ns-a.eurodns.com.
- ns-b.eurodns.org.
- ns-c.eurodns.eu.
- ns-d.eurodns.biz.
DNS records live
- NS
-
- ns-a.eurodns.com
- ns-b.eurodns.org
- ns-c.eurodns.eu
- ns-d.eurodns.biz
- MX
-
- 10 mailgw03.netgroup.dk
- 10 mailgw04.netgroup.dk
- TXT
-
Show 12 TXT records
google-site-verification=Hnx6qo5bKN6oIK2vwEohCW4CpCzgxPIhZL3Bdlp0MAwgoogle-site-verification=X3tOvfOztcuT3TXNochgxUH6G_CbTopQQkLWnQ351Zcgoogle-site-verification=stJoohkU2FFIDXaU2hfcuff_KWtzW6P-NAtSA4w1a_4google-site-verification=yBiTzG-WuY-nULh3uRM0FbYamCAq3xivP6RuM3Gah7k_globalsign-domain-verification=-XR3BmORipdcM38P6IB0pUS9DCt16-79UEaZTGsp3D_globalsign-domain-verification=ZwxHbJ4W388_oqZBctUhvsCwmNd_o5jUW6kQEuqNTI_globalsign-domain-verification=_48EuzKJ94-IWFDXSM1Z29mbcT8saQ-kSeWXp9LhX2MS=ms98325357IpH3oYeSIxIscyAqBeL/2U3EbAOTDWQU5J/KznKRZGA=Tp+LLAnVmWUkMA5ZMACcjVV6rt7E04QC6+/qwImTtl0=rV7PjIyRsKfF4i/kJDoAgh4IBxnp/SuQBMNHvHGd04g=facebook-domain-verification=8qs7jk3v4rgwrpbgx3t0xq2mp5j242
Email authentication weak
- SPF
- not published
- DMARC
- not published
- DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4Ahuv3/8TBpRoERC58be8dDcvkrP/hzCE2hJXZub66dbOtSZH1Fre6f6Zpo+gtm/f6okbSdrwP4rzT…
selectors probed - selector1:
Certificate (current)
GlobalSign RSA OV SSL CA 2018
Expires in 60 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- findings
-
- short HSTS max-age
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing Permissions Policy
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://www.googletagmanager.com https://web.cmp.usercentrics.eu https://customer.cludo.com https://d21oefkcnoen8i.cloudfront.net https://s2.adform.net https://track.adform.net https://connect.facebook.net https://api.eu1.exponea.com *.mouseflow.com https://bat.bing.com *.taboola.com https://*.playable.com https://static.readpeak.com https://*.zdassets.com https://*.zendesk.com https://*.exponea.com https://*.zopim.com; style-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://d21oefkcnoen8i.cloudfront.net https://*.zdassets.com https://*.zendesk.com https://*.playable.com; img-src 'self' blob: data: https://www.google-analytics.com https://www.googletagmanager.com https://www.google.com/ccm/collect https://majestic-cat-b9dd160e07.media.strapiapp.com https://tranquil-memory-872d2ee12f.media.strapiapp.com https://thoughtful-car-05deee9d00.media.strapiapp.com https://complete-harmony-41d693229b.m- strict-transport-security
max-age=86400