scheibler-wear.de
HTML metadata
Technology
- Server
- nginx
- CMS
- Gatsby
Contact
Registration
- Updated
- 2025-02-04
- Name servers
-
- ns1.antagus.de.
- ns2.antagus.de.
DNS records live
- NS
-
- ns1.antagus.de
- ns2.antagus.de
- MX
-
- 10 mx01.hornetsecurity.com
- 20 mx02.hornetsecurity.com
- 30 mx03.hornetsecurity.com
- 40 mx04.hornetsecurity.com
Email authentication strong
- SPF
-
v=spf1 a ip4:167.86.115.99 include:spf.nl2go.com include:spf.hornetsecurity.com include:spf.protection.outlook.com -allstrict (-all) - DMARC
-
v=DMARC1; p=quarantine; rua=mailto:dmarc@scheibler-wear.de; ruf=mailto:dmarc@scheibler-wear.de; fo=1; adkim=spolicy: quarantine - DKIM
- no key found at common selectors
Certificate (current)
E8
Expires in 51 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy-report-only
- x-frame-options
- x-content-type-options
- findings
-
- missing Content Security Policy
- weak frame protection
- weak content type protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-frame-options
SAMEORIGIN, SAMEORIGIN- x-content-type-options
nosniff, nosniff- strict-transport-security
max-age=31536000- content-security-policy-report-only
font-src fonts.gstatic.com use.typekit.net *.googleapis.com *.gstatic.com *.fontawesome.com https://cdnjs.cloudflare.com data: 'self' 'unsafe-inline'; form-action 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com player.vimeo.com https://www.google.com/recaptcha/ *.google.com/ https://b2b.scheibler-wear.de www.xtento.com 'self' 'unsafe-inline'; img-src data: googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com *.vimeocdn.com i.ytimg.com *.youtube.com p.typekit.net *.googleapis.com *.gstatic.com https://www.magezon.com www.google.de *.cdninstagram.com maps.gstatic.com fonts.googleapis.com fonts.gstatic.com mypromode.eu www.xtento.com cdn.xtento.com data: 'self' 'unsafe-inline'; script-src googleads.g.doubleclick.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com s.yt